SpyHolesList Version:7.2 Build:6.9.7.20-64b 25.03.2013 9:39:33 PM WinDir=C:\Windows Startup=C:\Users\WayneAdams\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Common Startup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ Windows 7 Ultimate (6.1.7600) Internet Explorer 9.0.8112.16421 [Internet Explorer] [Default Home Page] :HKLM Default_Page_URL=http://www.yahoo.com/?fr=fp-tyc9 [Current Home Page] :HKCU Start Page=http://www.yahoo.com/ [Current Home Page] :HKCU HOMEOldSP="" [Search URL Template] :HKLM 1=www.%s.com [Search URL Template] :HKLM 2=www.%s.org [Search URL Template] :HKLM 3=www.%s.net [Search URL Template] :HKLM 4=www.%s.edu [All Users Search] :HKLM Default_Search_URL="" [All Users Search] :HKLM Search Page="" [Current Users Search] :HKCU Search Page=http://go.microsoft.com/fwlink/?LinkId=54896 [Current Users Search] :HKCU Search Bar="" [IE Local Blank Page] :HKCU Local Page=C:\Windows\system32\blank.htm [IE Local Blank Page] :HKLM Local Page=C:\Windows\SYSTEM32\blank.htm [Browser Helper Objects] {18DF081C-E8AD-4283-A596-FA578C2EBDC3}=C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ACROBAT\ACTIVEX\ACROIEHELPERSHIM.DLL ### Adobe PDF Helper for Internet Explorer Adobe Systems Incorporated AcroIEHelperShim Library 11.0.0.379 [Browser Helper Objects] {3049C3E9-B461-4BC5-8870-4C09146192CA}=C:\PROGRAMDATA\REALNETWORKS\REALDOWNLOADER\BROWSERPLUGINS\IE\RNDLBROWSERRECORDPLUGIN.DLL ### RealPlayer Download and Record Plugin RealDownloader 1.3.1.2 [Browser Helper Objects] {53707962-6F74-2D53-2644-206D7942484F}=C:\PROGRA~2\SPYBOT~1\SDHELPER.DLL ### SBSD IE Protection Safer Networking Limited Spybot - Search & Destroy 1, 6, 0, 0 [Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\PROGRAM FILES (X86)\JAVA\JRE7\BIN\SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 7 U17 7.0.170.2 [Browser Helper Objects] {AA58ED58-01DD-4d91-8333-CF10577473F7}=C:\PROGRAM FILES (X86)\GOOGLE\GOOGLE TOOLBAR\GOOGLETOOLBAR_32.DLL ### Google Toolbar Google Inc. Google Toolbar for Internet Explorer 7, 4, 3607, 2246 [Browser Helper Objects] {B4F3A835-0E21-4959-BA22-42B3008E02FF}=C:\PROGRA~2\MICROS~3\OFFICE14\URLREDIR.DLL ### Microsoft Office Document Cache Handler Microsoft Corporation Microsoft Office 2010 14.0.4750.1000 [Browser Helper Objects] {DBC80044-A445-435b-BC74-9C25C1C588A9}=C:\PROGRAM FILES (X86)\JAVA\JRE7\BIN\JP2SSV.DLL ### Java(TM) Platform SE binary Oracle Corporation Java(TM) Platform SE 7 U17 7.0.170.2 [Auto Search URL] :HKCU provider="" [Auto Search URL] :HKCU "Default Value"="" [Search Assistant] :HKCU SearchAssistant="" [Search Assistant] :HKLM SearchAssistant=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm [Search Assistant] :HKCU CustomizeSearch="" [Search Assistant] :HKLM CustomizeSearch=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm [CustomizeSearch] :HKLM CustomizeSearch="" [URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\WINDOWS\SYSWOW64\IEFRAME.DLL ### Internet Browser Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [URLSearchHook] :HKCU {81017EA9-9AA8-4A6A-9734-7AF40E7D593F}=C:\PROGRAM FILES (X86)\YAHOO!\COMPANION\INSTALLS\CPN0\YT.DLL ### Yahoo! Toolbar Yahoo! Inc. Yahoo! Toolbar 8, 5, 1, 4 [Default Prefix] :HKLM "Default Value"=http:// [URL Default Prefixes] :HKLM mosaic=http:// [URL Default Prefixes] :HKLM www=http:// [URL Default Prefixes] :HKLM home=http:// [URL Default Prefixes] :HKLM ftp=ftp:// [AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm [AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm [AboutURLs] :HKLM InPrivate=res://ieframe.dll/inprivate.htm [AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm [AboutURLs] :HKLM Home=270 [AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm [AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM OfflineInformation=res://ieframe.dll/offcancl.htm [AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm [User Style Sheet] :HKCU User Stylesheet="" [User Style Sheet] :HKUS User Stylesheet="" [User Style Sheet] :HKCU Use My Stylesheet=0 [User Style Sheet] :HKUS Use My Stylesheet=0 [Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=1 [Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1 [Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=3 [Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3 [Links Toolbar] :HKCU LinksFolderName=Links [Toolbars] :HKLM {2318C2B1-4965-11d4-9B18-009027A5CD4F}=C:\PROGRAM FILES (X86)\GOOGLE\GOOGLE TOOLBAR\GOOGLETOOLBAR_32.DLL ### Google Toolbar Google Inc. Google Toolbar for Internet Explorer 7, 4, 3607, 2246 [IE Extensions - All Users] :HKLM {2670000A-7350-4f3c-8081-5663EE0C6C49} ### File is deleted or hidden by rootkit or could not be located. [IE Extensions - All Users] :HKLM {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} ### File is deleted or hidden by rootkit or could not be located. [IE Extensions - All Users] :HKLM {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} ### File is deleted or hidden by rootkit or could not be located. [Protocols Filter] :HKLM application/octet-stream=C:\Windows\system32\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 2.0.50727.4927 [Protocols Filter] :HKLM application/x-complus=C:\Windows\system32\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 2.0.50727.4927 [Protocols Filter] :HKLM application/x-msdownload=C:\Windows\system32\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 2.0.50727.4927 [Protocols Filter] :HKLM text/xml=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\OFFICE14\MSOXMLMF.DLL ### Microsoft Office XML MIME Filter Microsoft Corporation Microsoft Office InfoPath 14.0.4750.1000 [Protocols Handler] :HKLM about=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM cdl=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM dvd=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL ### ActiveX control for streaming video Microsoft Corporation DirectShow 6.05.7600.16385 [Protocols Handler] :HKLM file=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM ftp=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM gopher=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM http=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM https=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM its=C:\WINDOWS\SYSTEM32\ITSS.DLL ### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Protocols Handler] :HKLM javascript=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM local=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM mailto=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM mhtml=C:\WINDOWS\SYSTEM32\INETCOMM.DLL ### Microsoft Internet Messaging API Resources Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16807 [Protocols Handler] :HKLM mk=C:\WINDOWS\SYSWOW64\URLMON.DLL ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM ms-help=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\HELP\HXDS.DLL ### Microsoft® Help Data Services Module Microsoft Corporation Microsoft® Help 2.7 2.07.61224.00 [Protocols Handler] :HKLM ms-its=C:\WINDOWS\SYSTEM32\ITSS.DLL ### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Protocols Handler] :HKLM pure-go=C:\PROGRAM FILES (X86)\COMMON FILES\PURE NETWORKS SHARED\PLATFORM\PURESP4.DLL ### Pure Service Provider DLL Cisco Systems, Inc. Pure Networks Platform 11.2.09195.1 [Protocols Handler] :HKLM res=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Protocols Handler] :HKLM tv=C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL ### ActiveX control for streaming video Microsoft Corporation DirectShow 6.05.7600.16385 [Protocols Handler] :HKLM vbscript=C:\WINDOWS\SYSWOW64\MSHTML.DLL ### Microsoft (R) HTML Viewer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Proxy] :HKCU ProxyServer="" [Proxy] :HKCU ProxyEnable=0 [Network Settings] [Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc [Domain Name] :HKLM Domain="" [Name Server] {C27EF250-A2EE-4DB1-AC09-15DAF292E389}=10.0.0.1 ### Network Card:Linksys RangePlus Wireless USB Network Adapter DHCPNameServer:10.0.0.1 DhcpDefaultGateway:10.0.0.1 DhcpServer:10.0.0.1 [WinSock2 Components] :HKLM NLAapi.dll=C:\WINDOWS\SYSTEM32\NLAAPI.DLL ### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [WinSock2 Components] :HKLM mswsock.dll=C:\WINDOWS\SYSTEM32\MSWSOCK.DLL ### Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [WinSock2 Components] :HKLM winrnr.dll=C:\WINDOWS\SYSTEM32\WINRNR.DLL ### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [WinSock2 Components] :HKLM napinsp.dll=C:\WINDOWS\SYSTEM32\NAPINSP.DLL ### E-mail Naming Shim Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [WinSock2 Components] :HKLM pnrpnsp.dll=C:\WINDOWS\SYSTEM32\PNRPNSP.DLL ### PNRP Name Space Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [WinSock2 Components] :HKLM mdnsNSP.dll=C:\PROGRAM FILES (X86)\BONJOUR\MDNSNSP.DLL ### Bonjour Namespace Provider Apple Inc. Bonjour 3,0,0,10 [Software Components] [Internet Components] :HKLM C:\Windows\System32\LegitCheckControl.DLL=C:\Windows\System32\LegitCheckControl.DLL ### File is deleted or hidden by rootkit or could not be located. [Windows Shell] [Display Scrap's Extensions] :HKLM NeverShowExt="" [ScreenSaver] :HKCU SCRNSAVE.EXE=C:\WINDOWS\SYSTEM32\BUBBLES.SCR ### Bubbles Screen Saver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [System.ini] shell=C:\Windows\explorer.exe [User Shell] :HKCU shell="" [Main File Extensions] :HKLM .exe="%1" %* [Main File Extensions] :HKLM .com="%1" %* [Main File Extensions] :HKLM .pif="%1" %* [Main File Extensions] :HKLM .bat="%1" %* [Main File Extensions] :HKLM .cmd="%1" %* [Main File Extensions] :HKLM .scr="%1" /S [Main File Extensions] :HKLM .txt=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .reg=regedit.exe "%1" [Main File Extensions] :HKLM .inf=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .ini=%SystemRoot%\system32\NOTEPAD.EXE %1 [Main File Extensions] :HKLM .js=C:\Windows\System32\WScript.exe "%1" %* [Main File Extensions] :HKLM .vbs="%SystemRoot%\System32\WScript.exe" "%1" %* [Main File Extensions] :HKLM .vbe="%SystemRoot%\System32\WScript.exe" "%1" %* [Main File Extensions] :HKLM .msc=%SystemRoot%\system32\mmc.exe "%1" %* [Main File Extensions] :HKLM .jpg=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [Main File Extensions] :HKLM .jpeg=%SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [Shell Execute Hooks] :HKLM {F552DDE6-2090-4bf4-B924-6141E87789A5}=C:\PROGRA~2\GREATIS\REGRUN~1\RRSHELL.DLL ### RRShell Module Greatis Software, LLC RRShell Module 1, 0, 1, 3 [UserInit Value] :HKLM UserInit=C:\Windows\SYSTEM32\Userinit.exe, [App Paths] :HKLM 7zFM.exe=C:\Program Files\7-Zip\7zFM.exe ### 7zFM.exe 7-Zip File Manager Igor Pavlov 7-Zip 9.04 beta [App Paths] :HKLM AcroRd32.exe=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe ### AcroRd32.exe Adobe Reader Adobe Systems Incorporated Adobe Reader 11.0.02.0 [App Paths] :HKLM Backup_Central10.exe=C:\Program Files (x86)\Roxio\BackOnTrack\Main\Backup_Central10.exe ### Backup_Central10.exe BackOnTrack [App Paths] :HKLM ccleaner.exe=C:\Program Files\CCleaner\CCleaner64.exe ### ccleaner.exe CCleaner Piriform Ltd CCleaner 3, 28, 0, 1913 [App Paths] :HKLM chrome.exe=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ### chrome.exe Google Chrome Google Inc. Google Chrome 25.0.1364.172 [App Paths] :HKLM cmmgr32.exe ### cmmgr32.exe [App Paths] :HKLM excel.exe=C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE ### excel.exe Microsoft Excel Microsoft Corporation Microsoft Office 2010 14.0.6117.5003 [App Paths] :HKLM firefox.exe=C:\Program Files (x86)\Mozilla Firefox\firefox.exe ### firefox.exe Firefox Mozilla Corporation Firefox 19.0.2 [App Paths] :HKLM IEDIAGCMD.EXE=C:\Program Files (x86)\Internet Explorer\IEDIAGCMD.EXE ### IEDIAGCMD.EXE [App Paths] :HKLM IEXPLORE.EXE=C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE ### IEXPLORE.EXE Internet Explorer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [App Paths] :HKLM install.exe ### install.exe [App Paths] :HKLM javaws.exe=C:\Windows\system32\javaws.exe ### javaws.exe Java(TM) Web Start Launcher Oracle Corporation Java(TM) Platform SE 7 U17 7.0.170.2 [App Paths] :HKLM KMPlayer.exe=C:\Program Files (x86)\The KMPlayer\KMPlayer.exe ### KMPlayer.exe The KMPlayer KMP Media co.,Ltd The KMPlayer 3.5.0.0 [App Paths] :HKLM mbam.exe=C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe ### mbam.exe Malwarebytes Anti-Malware Malwarebytes Corporation Malwarebytes Anti-Malware 1.70.0009 [App Paths] :HKLM mip.exe=%CommonProgramFiles%\Microsoft Shared\Ink\mip.exe ### mip.exe [App Paths] :HKLM mplayer2.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe ### mplayer2.exe [App Paths] :HKLM MSACCESS.EXE=C:\PROGRA~2\MICROS~3\Office14\MSACCESS.EXE ### MSACCESS.EXE Microsoft Access Microsoft Corporation Microsoft Office 2010 14.0.4750.1000 [App Paths] :HKLM MsoHtmEd.exe ### MsoHtmEd.exe [App Paths] :HKLM msoxmled.exe=C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLED.EXE ### msoxmled.exe XML Editor Microsoft Corporation Microsoft Office InfoPath 14.0.4750.1000 [App Paths] :HKLM MSPUB.EXE=C:\PROGRA~2\MICROS~3\Office14\MSPUB.EXE ### MSPUB.EXE Microsoft Publisher Microsoft Corporation Microsoft Office 2010 14.0.5126.5000 [App Paths] :HKLM OCCT.exe=C:\Program Files (x86)\OCCTPT\OCCT.exe ### OCCT.exe OCCT OCCT - Ocbase - Adrien Mercier OCCT 4.4.0.99 [App Paths] :HKLM ois.exe=C:\PROGRA~2\MICROS~3\Office14\OIS.EXE ### ois.exe Microsoft Office 2010 Microsoft Corporation Microsoft Office 2010 14.0.4750.1000 [App Paths] :HKLM OneNote.exe=C:\PROGRA~2\MICROS~3\Office14\ONENOTE.EXE ### OneNote.exe Microsoft OneNote Microsoft Corporation Microsoft OneNote 14.0.6117.5003 [App Paths] :HKLM OUTLOOK.EXE=C:\PROGRA~2\MICROS~3\Office14\OUTLOOK.EXE ### OUTLOOK.EXE Microsoft Outlook Microsoft Corporation Microsoft Outlook 14.0.6117.5001 [App Paths] :HKLM pbrush.exe=%SystemRoot%\System32\mspaint.exe ### pbrush.exe [App Paths] :HKLM PictureViewer.exe=C:\Program Files (x86)\QuickTime\PictureViewer.exe ### PictureViewer.exe PictureViewer Apple Inc. QuickTime QuickTime 7.7.3 (1680.64) [App Paths] :HKLM powerpnt.exe=C:\PROGRA~2\MICROS~3\Office14\POWERPNT.EXE ### powerpnt.exe Microsoft PowerPoint Microsoft Corporation Microsoft Office 2010 14.0.6009.1000 [App Paths] :HKLM PowerShell.exe=%SystemRoot%\system32\WindowsPowerShell\v1.0\PowerShell.exe ### PowerShell.exe [App Paths] :HKLM QuickTimePlayer.exe=C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe ### QuickTimePlayer.exe QuickTime Player Apple Inc. QuickTime QuickTime 7.7.3 (1680.64) [App Paths] :HKLM RealPlay.exe=C:\Program Files (x86)\Real\RealPlayer\realplay.exe ### RealPlay.exe RealPlayer RealNetworks, Inc. RealPlayer (32-bit) 16.0.1.18 [App Paths] :HKLM RealUpgrade.exe=C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe ### RealUpgrade.exe RealUpgrade Launcher RealNetworks, Inc. RealUpgrade 16.0.1.18 [App Paths] :HKLM recordingmanager.exe=C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe ### recordingmanager.exe RealDownloader RealNetworks, Inc. RealDownloader (32-bit) 1.3.1.2 [App Paths] :HKLM regrun2.exe=C:\Program Files (x86)\Greatis\RegRunSuite\regrun2.exe ### regrun2.exe RegRun Start Control Greatis Software RegRun Security Suite 6.99 release [App Paths] :HKLM RevoUninPro.exe=C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe ### RevoUninPro.exe Revo Uninstaller Pro VS Revo Group Revo Uninstaller Pro 2.5.5.0 [App Paths] :HKLM rnxproc.exe=C:\Program Files (x86)\Real\RealPlayer\Update\rnxproc.exe ### rnxproc.exe RNX file processor RealNetworks, Inc. RealPlayer (32-bit) 16.0.1.18 [App Paths] :HKLM sed.exe=C:\Program Files (x86)\Greatis\RegRunSuite\sed.exe ### sed.exe System Files Editor Greatis Software RegRun Security Suite 6.9 [App Paths] :HKLM setup.exe ### setup.exe [App Paths] :HKLM sidebar.exe="%ProgramFiles%\Windows Sidebar\sidebar.exe" ### sidebar.exe [App Paths] :HKLM smplayer.exe=C:\Program Files (x86)\SMPlayer\smplayer.exe ### smplayer.exe SMPlayer Ricardo Villalba SMPlayer for Windows (32-bit) 0.8.3.0 [App Paths] :HKLM Speccy.exe=C:\Program Files\Speccy\Speccy64.exe ### Speccy.exe Speccy Piriform Ltd Speccy 1.20.0.446 [App Paths] :HKLM table30.exe ### table30.exe [App Paths] :HKLM wab.exe=%ProgramFiles%\Windows Mail\wab.exe ### wab.exe [App Paths] :HKLM wabmig.exe=%ProgramFiles%\Windows Mail\wabmig.exe ### wabmig.exe [App Paths] :HKLM WinRAR.exe=C:\Program Files\WinRAR\WinRAR.exe ### WinRAR.exe [App Paths] :HKLM Winword.exe=C:\PROGRA~2\MICROS~3\Office14\WINWORD.EXE ### Winword.exe Microsoft Word Microsoft Corporation Microsoft Office 2010 14.0.5123.5000 [App Paths] :HKLM wmplayer.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe ### wmplayer.exe [App Paths] :HKLM WORDPAD.EXE=C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WORDPAD.EXE ### WORDPAD.EXE Windows Wordpad Application Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [App Paths] :HKLM WRITE.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" ### WRITE.EXE [Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0 [Disable Registry Tools] :HKCU DisableRegistryTools =0 [Print Monitors] :HKLM HP B111 Status Monitor=C:\Windows\system32\HPINKSTSB111LM.DLL ### Print Status Language Monitor Hewlett-Packard Co. HP Digital Imaging 027.000.820.000 [Print Monitors] :HKLM HP Discovery Port Monitor (HP Photosmart 5520 series)=C:\Windows\system32\HPDISCOPMB111.DLL ### HP Discovery Port Monitor Hewlett-Packard Co. HP Digital Imaging 027.000.847.000 [Print Monitors] :HKLM Local Port=C:\Windows\system32\LOCALSPL.DLL ### Local Spooler DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Print Monitors] :HKLM Microsoft Shared Fax Monitor=C:\Windows\system32\FXSMON.DLL ### Microsoft Fax Print Monitor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Print Monitors] :HKLM Standard TCP/IP Port=C:\Windows\system32\TCPMON.DLL ### Standard TCP/IP Port Monitor DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Print Monitors] :HKLM USB Monitor=C:\Windows\system32\USBMON.DLL ### Standard Dynamic Printing Port Monitor DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Print Monitors] :HKLM WSD Port=C:\Windows\system32\WSDMON.DLL ### WSD Printer Port Monitor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Shell Icon Overlay Handlers] :HKLM EnhancedStorageShell=C:\WINDOWS\SYSTEM32\EHSTORSHELL.DLL ### Windows Enhanced Storage Shell Extension DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Shell Icon Overlay Handlers] :HKLM SharingPrivate=C:\WINDOWS\SYSTEM32\NTSHRUI.DLL ### Shell extensions for sharing Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Context Menu Handlers] :HKLM 7-Zip={23170F69-40C1-278A-1000-000100020000} [Context Menu Handlers] :HKLM BriefcaseMenu=C:\WINDOWS\SYSTEM32\SYNCUI.DLL ### Windows Briefcase Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Context Menu Handlers] :HKLM ESET Smart Security - Context Menu Shell Extension=C:\PROGRAM FILES\ESET\ESET SMART SECURITY\X86\SHELLEXT.DLL ### ESET Shell Extension ESET ESET Smart Security 6.0.314.0 [Context Menu Handlers] :HKLM Glary Utilities=C:\PROGRA~2\GLARYU~1\CONTEX~1.DLL ### Context Menu Handler Glarysoft Ltd Glary Utilities 2.16 [Context Menu Handlers] :HKLM Open With=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Context Menu Handlers] :HKLM Open With EncryptionMenu=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Context Menu Handlers] :HKLM PhotoStreamsExt=C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\INTERNET SERVICES\SHELLSTREAMS.DLL ### ShellStreams.dll Apple Inc. [Context Menu Handlers] :HKLM PowerISO={967B2D40-8B7D-4127-9049-61EA0C2C6DCE} [Context Menu Handlers] :HKLM Sharing=C:\WINDOWS\SYSTEM32\NTSHRUI.DLL ### Shell extensions for sharing Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Context Menu Handlers] :HKLM WinRAR={B41DB860-64E4-11D2-9906-E49FADC173CA} [Context Menu Handlers] :HKLM WinRAR32=C:\PROGRAM FILES\WINRAR\RAREXT32.DLL [Context Menu Handlers] :HKLM {90AA3A4E-1CBA-4233-B8BB-535773D48449}=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Context Menu Handlers] :HKLM {a2a9545d-a0c2-42b4-9708-a0b2badd77c8}=C:\WINDOWS\SYSTEM32\SHELL32.DLL ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Context Menu Handlers] :HKLM {CA8ACAFA-5FBB-467B-B348-90DD488DE003}={CA8ACAFA-5FBB-467B-B348-90DD488DE003} [Kernel Auto Boot] [Svchost DLLs] :HKLM AeLookupSvc=C:\WINDOWS\SYSTEM32\AELUPSVC.DLL ### Application Experience Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM CertPropSvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL ### Microsoft Smartcard Certificate Propagation Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SCPolicySvc=C:\WINDOWS\SYSTEM32\CERTPROP.DLL ### Microsoft Smartcard Certificate Propagation Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM lanmanserver=C:\WINDOWS\SYSTEM32\SRVSVC.DLL ### Server Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM gpsvc=C:\WINDOWS\SYSTEM32\GPSVC.DLL ### Group Policy Client Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM AudioSrv=C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL ### Windows Audio Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM FastUserSwitchingCompatibility [Svchost DLLs] :HKLM Ias [Svchost DLLs] :HKLM Irmon [Svchost DLLs] :HKLM Nla [Svchost DLLs] :HKLM Ntmssvc [Svchost DLLs] :HKLM NWCWorkstation [Svchost DLLs] :HKLM Nwsapagent [Svchost DLLs] :HKLM Rasauto=C:\WINDOWS\SYSTEM32\RASAUTO.DLL ### Remote Access AutoDial Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Rasman=C:\WINDOWS\SYSTEM32\RASMANS.DLL ### Remote Access Connection Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Remoteaccess=C:\WINDOWS\SYSTEM32\MPRDIM.DLL ### Dynamic Interface Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SENS=C:\WINDOWS\SYSTEM32\SENS.DLL ### System Event Notification Service (SENS) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Sharedaccess=C:\WINDOWS\SYSTEM32\IPNATHLP.DLL ### Microsoft NAT Helper Components Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SRService [Svchost DLLs] :HKLM Tapisrv=C:\WINDOWS\SYSTEM32\TAPISRV.DLL ### Microsoft® Windows(TM) Telephony Server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Wmi [Svchost DLLs] :HKLM WmdmPmSp [Svchost DLLs] :HKLM TermService=C:\WINDOWS\SYSTEM32\TERMSRV.DLL ### Remote Desktop Session Host Server Remote Connections Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\SYSTEM32\WUAUENG.DLL ### Windows Update Agent Microsoft Corporation Microsoft® Windows® Operating System 7.6.7600.256 [Svchost DLLs] :HKLM BITS=C:\WINDOWS\SYSTEM32\QMGR.DLL ### Background Intelligent Transfer Service Microsoft Corporation Microsoft® Windows® Operating System 7.5.7600.16385 [Svchost DLLs] :HKLM ShellHWDetection=C:\WINDOWS\SYSTEM32\SHSVCS.DLL ### Windows Shell Services Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM LogonHours [Svchost DLLs] :HKLM PCAudit [Svchost DLLs] :HKLM helpsvc [Svchost DLLs] :HKLM uploadmgr [Svchost DLLs] :HKLM iphlpsvc=C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL ### Service that offers IPv6 connectivity over an IPv4 network. Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM msiscsi=C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL ### iSCSI Discovery service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM schedule=C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL ### Task Scheduler Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SessionEnv=C:\WINDOWS\SYSTEM32\SESSENV.DLL ### Remote Desktop Configuration service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM winmgmt=C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL ### WMI Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM AppMgmt=C:\WINDOWS\SYSTEM32\APPMGMTS.DLL ### Software installation Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM RemoteRegistry=C:\WINDOWS\SYSTEM32\REGSVC.DLL ### Remote Registry Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WinHttpAutoProxySvc=C:\Windows\system32\WINHTTP.DLL ### Windows HTTP Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM sppuinotify=C:\WINDOWS\SYSTEM32\SPPUINOTIFY.DLL ### SPP Notification Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM netprofm=C:\WINDOWS\SYSTEM32\NETPROFM.DLL ### Network List Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WebClient=C:\WINDOWS\SYSTEM32\WEBCLNT.DLL ### Web DAV Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Netman=C:\WINDOWS\SYSTEM32\NETMAN.DLL ### Network Connections Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM AudioEndpointBuilder=C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL ### Windows Audio Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM dot3svc=C:\WINDOWS\SYSTEM32\DOT3SVC.DLL ### Wired AutoConfig Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WPDBusEnum=C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL ### Portable Device Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM wlansvc=C:\WINDOWS\SYSTEM32\WLANSVC.DLL ### Windows WLAN AutoConfig Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM PLA=C:\WINDOWS\SYSTEM32\PLA.DLL ### Performance Logs & Alerts Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM RpcSs=C:\WINDOWS\SYSTEM32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM BthHFSrv [Svchost DLLs] :HKLM LmHosts=C:\WINDOWS\SYSTEM32\LMHSVC.DLL ### TCPIP NetBios Transport Services DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM wscsvc=C:\WINDOWS\SYSTEM32\WSCSVC.DLL ### Windows Security Center Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WPCSvc=C:\WINDOWS\SYSTEM32\WPCSVC.DLL ### WPC Filtering Service Microsoft Corporation Windows 1.0.0.1 [Svchost DLLs] :HKLM SSDPSRV=C:\WINDOWS\SYSTEM32\SSDPSRV.DLL ### SSDP Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM upnphost=C:\WINDOWS\SYSTEM32\UPNPHOST.DLL ### UPnP Device Host Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SCardSvr=C:\WINDOWS\SYSTEM32\SCARDSVR.DLL ### Smart Card Resource Management Server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM TBS=C:\WINDOWS\SYSTEM32\TBSSVC.DLL ### TBS Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM QWAVE=C:\WINDOWS\SYSTEM32\QWAVE.DLL ### Windows NT Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM wcncsvc=C:\WINDOWS\SYSTEM32\WCNCSVC.DLL ### Windows Connect Now - Config Registrar Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Power=C:\WINDOWS\SYSTEM32\UMPO.DLL ### User-mode Power Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM PlugPlay=C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL ### User-mode Plug-and-Play Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM DcomLaunch=C:\WINDOWS\SYSTEM32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM CryptSvc=C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL ### Cryptographic Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM DHCP=C:\WINDOWS\SYSTEM32\DHCPCORE.DLL ### DHCP Client Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM DNSCache=C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL ### DNS Caching Resolver Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM NapAgent=C:\WINDOWS\SYSTEM32\QAGENTRT.DLL ### Quarantine Agent Service Run-Time Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM nlasvc=C:\WINDOWS\SYSTEM32\NLASVC.DLL ### Network Location Awareness 2 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WinRM=C:\WINDOWS\SYSTEM32\WSMSVC.DLL ### WSMan Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WECSVC=C:\WINDOWS\SYSTEM32\WECSVC.DLL ### Event Collector Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM StiSvc=C:\WINDOWS\SYSTEM32\WIASERVC.DLL ### Still Image Devices Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WcsPlugInService=C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL ### WcsPlugInService DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM w3svc=C:\WINDOWS\SYSTEM32\INETSRV\IISW3ADM.DLL ### IIS Web Admin Service Microsoft Corporation Internet Information Services 7.5.7600.16385 [Svchost DLLs] :HKLM was=C:\WINDOWS\SYSTEM32\INETSRV\IISW3ADM.DLL ### IIS Web Admin Service Microsoft Corporation Internet Information Services 7.5.7600.16385 [Svchost DLLs] :HKLM apphostsvc=C:\WINDOWS\SYSTEM32\INETSRV\APPHOSTSVC.DLL ### IIS Application Host Helper Service Microsoft Corporation Internet Information Services 7.5.7600.16385 [Svchost DLLs] :HKLM AppIDSvc=C:\WINDOWS\SYSTEM32\APPIDSVC.DLL ### Application Identity Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Appinfo=C:\WINDOWS\SYSTEM32\APPINFO.DLL ### Application Information Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM AxInstSV=C:\WINDOWS\SYSTEM32\AXINSTSV.DLL ### ActiveX Installer Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM BDESVC=C:\WINDOWS\SYSTEM32\BDESVC.DLL ### BDE Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM BFE=C:\WINDOWS\SYSTEM32\BFE.DLL ### Base Filtering Engine Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Browser=C:\WINDOWS\SYSTEM32\BROWSER.DLL ### Computer Browser Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM bthserv=C:\WINDOWS\SYSTEM32\BTHSERV.DLL ### Bluetooth Support Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM CscService=C:\WINDOWS\SYSTEM32\CSCSVC.DLL ### CSC Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM DEFRAGSVC=C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL ### Microsoft\Disk Defragmenter Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM DPS=C:\WINDOWS\SYSTEM32\DPS.DLL ### WDI Diagnostic Policy Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM EapHost=C:\WINDOWS\SYSTEM32\EAPSVC.DLL ### Microsoft EAPHost service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\SYSTEM32\ES.DLL ### COM+ Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM fdPHost=C:\WINDOWS\SYSTEM32\FDPHOST.DLL ### Function Discovery Provider host service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM FDResPub=C:\WINDOWS\SYSTEM32\FDRESPUB.DLL ### Function Discovery Resource Publication Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM FontCache=C:\WINDOWS\SYSTEM32\FNTCACHE.DLL ### Windows Font Cache Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM hidserv=C:\WINDOWS\SYSTEM32\HIDSERV.DLL ### HID Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM hkmsvc=C:\WINDOWS\SYSTEM32\KMSVC.DLL ### Key Management Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM HomeGroupListener=C:\WINDOWS\SYSTEM32\LISTSVC.DLL ### Windows HomeGroup Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM HomeGroupProvider=C:\WINDOWS\SYSTEM32\PROVSVC.DLL ### Windows HomeGroup Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM IKEEXT=C:\WINDOWS\SYSTEM32\IKEEXT.DLL ### IKE extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM IPBusEnum=C:\WINDOWS\SYSTEM32\IPBUSENUM.DLL ### PnP-X IP Bus Enumerator DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM KtmRm=C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL ### Microsoft Distributed Transaction Coordinator OLE Transactions KTM Resource Manager DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM LanmanWorkstation=C:\WINDOWS\SYSTEM32\WKSSVC.DLL ### Workstation Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM lltdsvc=C:\WINDOWS\SYSTEM32\LLTDSVC.DLL ### Link-Layer Topology Mapper Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Mcx2Svc=C:\WINDOWS\SYSTEM32\MCX2SVC.DLL ### Media Center Extender Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM MMCSS=C:\WINDOWS\SYSTEM32\MMCSS.DLL ### Multimedia Class Scheduler Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM MpsSvc=C:\WINDOWS\SYSTEM32\MPSSVC.DLL ### Microsoft Protection Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM nsi=C:\WINDOWS\SYSTEM32\NSISVC.DLL ### Network Store Interface RPC server Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM p2pimsvc=C:\WINDOWS\SYSTEM32\PNRPSVC.DLL ### PNRP Service Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM p2psvc=C:\WINDOWS\SYSTEM32\P2PSVC.DLL ### Peer-to-Peer Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM PcaSvc=C:\WINDOWS\SYSTEM32\PCASVC.DLL ### Program Compatibility Assistant Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM PolicyAgent=C:\WINDOWS\SYSTEM32\IPSECSVC.DLL ### Windows IPsec SPD Server DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM ProfSvc=C:\WINDOWS\SYSTEM32\PROFSVC.DLL ### ProfSvc Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM RpcEptMapper=C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL ### RPC Endpoint Mapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM seclogon=C:\WINDOWS\SYSTEM32\SECLOGON.DLL ### Secondary Logon Service DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SensrSvc=C:\WINDOWS\SYSTEM32\SENSRSVC.DLL ### Microsoft Windows ambient light service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SstpSvc=C:\WINDOWS\SYSTEM32\SSTPSVC.DLL ### Provides the facility of using Secure Socket Tunneling Protocol (SSTP) to connect to remote computers (using VPN). Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM swprv=C:\WINDOWS\SYSTEM32\SWPRV.DLL ### Microsoft® Volume Shadow Copy Service software provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM SysMain=C:\WINDOWS\SYSTEM32\SYSMAIN.DLL ### Superfetch Service Host Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM TabletInputService=C:\WINDOWS\SYSTEM32\TABSVC.DLL ### Microsoft Tablet PC Input Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM Themes=C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL ### Windows Shell Theme Service Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM THREADORDER=C:\WINDOWS\SYSTEM32\MMCSS.DLL ### Multimedia Class Scheduler Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM TrkWks=C:\WINDOWS\SYSTEM32\TRKWKS.DLL ### Distributed Link Tracking Client Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM UmRdpService=C:\WINDOWS\SYSTEM32\UMRDP.DLL ### Remote Desktop Services Device Redirector Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM UxSms=C:\WINDOWS\SYSTEM32\UXSMS.DLL ### Microsoft User Experience Session Management Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM W32Time=C:\WINDOWS\SYSTEM32\W32TIME.DLL ### Windows Time Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WbioSrvc=C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL ### Windows Biometric Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WdiServiceHost=C:\WINDOWS\SYSTEM32\WDI.DLL ### Windows Diagnostic Infrastructure Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WdiSystemHost=C:\WINDOWS\SYSTEM32\WDI.DLL ### Windows Diagnostic Infrastructure Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM wercplsupport=C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL ### Problem Reports and Solutions Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WerSvc=C:\WINDOWS\SYSTEM32\WERSVC.DLL ### Windows Error Reporting Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM WinDefend=C:\PROGRAM FILES\WINDOWS DEFENDER\MPSVC.DLL ### Service Module Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Svchost DLLs] :HKLM wudfsvc=C:\WINDOWS\SYSTEM32\WUDFSVC.DLL ### Windows Driver Foundation - User-mode Driver Framework Service Microsoft Corporation Microsoft® Windows® Operating System 6.2.9200.16384 [Svchost DLLs] :HKLM WwanSvc=C:\WINDOWS\SYSTEM32\WWANSVC.DLL ### WWAN Auto Config Service Microsoft Corporation Microsoft® Windows® Operating System 08.01.02.00 [Bootexecute] :HKLM BootExecute=autocheck autochk * [Winlogon System] :HKLM system="" ### File is deleted or hidden by rootkit or could not be located. [Winlogon System] :HKLM taskman="" ### File is deleted or hidden by rootkit or could not be located. [Winlogon System] :HKLM UIHost="" ### File is deleted or hidden by rootkit or could not be located. [Winlogon Autostart] :HKLM VmApplet=SystemPropertiesPerformance.exe /pagefile [Winlogon Autostart] :HKLM AppSetup="" [KnownDLLs] :HKLM clbcatq=clbcatq.dll [KnownDLLs] :HKLM ole32=ole32.dll [KnownDLLs] :HKLM advapi32=advapi32.dll [KnownDLLs] :HKLM COMDLG32=COMDLG32.dll [KnownDLLs] :HKLM DllDirectory=%SystemRoot%\system32 [KnownDLLs] :HKLM DllDirectory32=%SystemRoot%\syswow64 [KnownDLLs] :HKLM gdi32=gdi32.dll [KnownDLLs] :HKLM IERTUTIL=IERTUTIL.dll [KnownDLLs] :HKLM IMAGEHLP=IMAGEHLP.dll [KnownDLLs] :HKLM IMM32=IMM32.dll [KnownDLLs] :HKLM kernel32=kernel32.dll [KnownDLLs] :HKLM LPK=lpk.dll [KnownDLLs] :HKLM MSCTF=MSCTF.dll [KnownDLLs] :HKLM MSVCRT=MSVCRT.dll [KnownDLLs] :HKLM NORMALIZ=NORMALIZ.dll [KnownDLLs] :HKLM NSI=NSI.dll [KnownDLLs] :HKLM OLEAUT32=OLEAUT32.dll [KnownDLLs] :HKLM PSAPI=PSAPI.DLL [KnownDLLs] :HKLM rpcrt4=rpcrt4.dll [KnownDLLs] :HKLM sechost=sechost.dll [KnownDLLs] :HKLM Setupapi=Setupapi.dll [KnownDLLs] :HKLM SHELL32=SHELL32.dll [KnownDLLs] :HKLM SHLWAPI=SHLWAPI.dll [KnownDLLs] :HKLM URLMON=URLMON.dll [KnownDLLs] :HKLM user32=user32.dll [KnownDLLs] :HKLM USP10=USP10.dll [KnownDLLs] :HKLM WININET=WININET.dll [KnownDLLs] :HKLM WLDAP32=WLDAP32.dll [KnownDLLs] :HKLM WS2_32=WS2_32.dll [KnownDLLs] :HKLM DifxApi=difxapi.dll [KnownDLLs] :HKLM Cabinet=Cabinet.dll [KnownDLLs] :HKLM WINSPOOL=WINSPOOL.DRV [KnownDLLs] :HKLM mscms=mscms.dll [KnownDLLs] :HKLM MLANG=MLANG.dll [KnownDLLs] :HKLM bthprops=bthprops.cpl [KnownDLLs] :HKLM oobefldr=oobefldr.dll [KnownDLLs] :HKLM WSCAPI=WSCAPI.dll [KnownDLLs] :HKLM SXS=SXS.DLL [KnownDLLs] :HKLM bcrypt=bcrypt.dll [KnownDLLs] :HKLM eappcfg=eappcfg.dll [KnownDLLs] :HKLM eappprxy=eappprxy.dll [KnownDLLs] :HKLM OneX=OneX.DLL [KnownDLLs] :HKLM Wlanapi=Wlanapi.dll [KnownDLLs] :HKLM wlanutil=wlanutil.dll [KnownDLLs] :HKLM wevtapi=wevtapi.dll [KnownDLLs] :HKLM QUtil=QUtil.dll [KnownDLLs] :HKLM pnidui=pnidui.dll [KnownDLLs] :HKLM WINSTA=WINSTA.dll [KnownDLLs] :HKLM ntshrui=ntshrui.dll [KnownDLLs] :HKLM ExplorerFrame=ExplorerFrame.dll [KnownDLLs] :HKLM WINTRUST=WINTRUST.dll [KnownDLLs] :HKLM MMDevAPI=MMDevAPI.DLL [KnownDLLs] :HKLM WINMM=WINMM.dll [KnownDLLs] :HKLM ieframe=ieframe.dll [KnownDLLs] :HKLM NTMARTA=NTMARTA.DLL [KnownDLLs] :HKLM LINKINFO=LINKINFO.dll [KnownDLLs] :HKLM MSIMG32=MSIMG32.dll [KnownDLLs] :HKLM authui=authui.dll [KnownDLLs] :HKLM USERENV=USERENV.dll [KnownDLLs] :HKLM WINBRAND=WINBRAND.dll [KnownDLLs] :HKLM OLEACC=OLEACC.dll [KnownDLLs] :HKLM NETAPI32=NETAPI32.dll [KnownDLLs] :HKLM ATL=ATL.DLL [KnownDLLs] :HKLM timedate=timedate.cpl [KnownDLLs] :HKLM rsaenh=rsaenh.dll [KnownDLLs] :HKLM Secur32=Secur32.dll [KnownDLLs] :HKLM apphelp=apphelp.dll [KnownDLLs] :HKLM DUser=DUser.dll [KnownDLLs] :HKLM BROWSEUI=BROWSEUI.dll [KnownDLLs] :HKLM PROPSYS=PROPSYS.dll [KnownDLLs] :HKLM slc=slc.dll [KnownDLLs] :HKLM dwmapi=dwmapi.dll [KnownDLLs] :HKLM POWRPROF=POWRPROF.dll [KnownDLLs] :HKLM UxTheme=UxTheme.dll [KnownDLLs] :HKLM SHDOCVW=SHDOCVW.dll [Environment - Path] :HKLM Path=C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\12.0\DLLShared\;C:\Program Files (x86)\QuickTime\QTSystem\; [List of Injected DLLs] :HKLM AppInit_DLLs="" [LSA Notification Packages] :HKLM scecli=C:\Windows\system32\SCECLI.DLL ### scecli Windows Security Configuration Editor Client Engine Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [LSA Security Packages] :HKLM kerberos=C:\Windows\system32\KERBEROS.DLL ### kerberos Kerberos Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [LSA Security Packages] :HKLM msv1_0=C:\Windows\system32\MSV1_0.DLL ### msv1_0 Microsoft Authentication Package v1.0 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [LSA Security Packages] :HKLM schannel=C:\Windows\system32\SCHANNEL.DLL ### schannel TLS / SSL Security Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [LSA Security Packages] :HKLM wdigest=C:\Windows\system32\WDIGEST.DLL ### wdigest Microsoft Digest Access Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [LSA Security Packages] :HKLM tspkg=C:\Windows\system32\TSPKG.DLL ### tspkg Web Service Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [LSA Security Packages] :HKLM pku2u=C:\Windows\system32\PKU2U.DLL ### pku2u Pku2u Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] !SASCORE ### Internal Name: !SASCORE. Status: service running. Actual File: "C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE" * SUPERAntiSpyware Core Service Core Service SUPERAntiSpyware.com Core Service 1, 0, 0, 1068 [Auto Services] 9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269 ### Internal Name: 9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269. Status: service stopped. Actual File: C:\Program Files (x86)\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe * SaibSVC Application SaibSVC Application 1, 0, 0, 1 [Auto Services] AdobeARMservice ### Internal Name: AdobeARMservice. Status: service stopped. Actual File: "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" * Adobe Acrobat Updater keeps your Adobe software up to date. Adobe Acrobat Update Service Adobe Systems Incorporated Adobe Acrobat Update Service 1, 7, 2, 0 [Auto Services] AppHostSvc ### Internal Name: AppHostSvc. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k apphost * Provides administrative services for IIS, for example configuration history and Application Pool account mapping. If this service is stopped, configuration history and locking down files or directories with Application Pool specific Access Control Entries will not work. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] AudioEndpointBuilder ### Internal Name: AudioEndpointBuilder. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Manages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] AudioSrv ### Internal Name: AudioSrv. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * Manages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] BFE ### Internal Name: BFE. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Bonjour Service ### Internal Name: Bonjour Service. Status: service stopped. Actual File: "C:\Program Files\Bonjour\mDNSResponder.exe" * Enables hardware devices and software services to automatically configure themselves on the network and advertise their presence. Bonjour Service Apple Inc. Bonjour 3,0,0,10 [Auto Services] CinemaNow Service ### Internal Name: CinemaNow Service. Status: service stopped. Actual File: C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CinemanowSvc.exe * CinemaNow Service Application CinemaNow, Inc. CinemaNow Service Application 1, 9, 0, 2 [Auto Services] CISVC ### Internal Name: CISVC. Status: service stopped. Actual File: C:\Windows\system32\CISVC.EXE * Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language. Content Index service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] clr_optimization_v4.0.30319_32 ### Internal Name: clr_optimization_v4.0.30319_32. Status: service stopped. Actual File: C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe * Microsoft .NET Framework NGEN .NET Runtime Optimization Service Microsoft Corporation Microsoft® .NET Framework 4.0.30319.17929 [Auto Services] clr_optimization_v4.0.30319_64 ### Internal Name: clr_optimization_v4.0.30319_64. Status: service stopped. Actual File: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe * Microsoft .NET Framework NGEN .NET Runtime Optimization Service Microsoft Corporation Microsoft® .NET Framework 4.0.30319.17929 [Auto Services] CryptSvc ### Internal Name: CryptSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] CscService ### Internal Name: CscService. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * The Offline Files service performs maintenance activities on the Offline Files cache, responds to user logon and logoff events, implements the internals of the public API, and dispatches interesting events to those interested in Offline Files activities and changes in cache state. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] DcomLaunch ### Internal Name: CscService. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * The Offline Files service performs maintenance activities on the Offline Files cache, responds to user logon and logoff events, implements the internals of the public API, and dispatches interesting events to those interested in Offline Files activities and changes in cache state. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Dhcp ### Internal Name: Dhcp. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Dnscache ### Internal Name: Dnscache. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] DPS ### Internal Name: Dnscache. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ehRecvr ### Internal Name: ehRecvr. Status: service stopped. Actual File: C:\Windows\ehome\ehRecvr.exe * Windows Media Center Service for TV and FM broadcast reception Windows Media Center Receiver Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ehSched ### Internal Name: ehSched. Status: service stopped. Actual File: C:\Windows\ehome\ehsched.exe * Starts and stops recording of TV programs within Windows Media Center Windows Media Center Scheduler Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ekrn ### Internal Name: ekrn. Status: service stopped. Actual File: "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe" * ESET Service ESET Service ESET ESET Smart Security 6.0.314.0 [Auto Services] eventlog ### Internal Name: eventlog. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] EventSystem ### Internal Name: EventSystem. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k LocalService * Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] FDResPub ### Internal Name: FDResPub. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Publishes this computer and resources attached to this computer so they can be discovered over the network. If this service is stopped, network resources will no longer be published and they will not be discovered by other computers on the network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] FontCache ### Internal Name: FontCache. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] gpsvc ### Internal Name: FontCache. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation * Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] gupdate ### Internal Name: gupdate. Status: service stopped. Actual File: "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc * Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it. Google Installer Google Inc. Google Update 1.2.183.21 [Auto Services] IKEEXT ### Internal Name: IKEEXT. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] iphlpsvc ### Internal Name: iphlpsvc. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k NetSvcs * Provides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] LanmanServer ### Internal Name: LanmanServer. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] LanmanWorkstation ### Internal Name: LanmanWorkstation. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] lmhosts ### Internal Name: lmhosts. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] MMCSS ### Internal Name: MMCSS. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables relative prioritization of work based on system-wide task priorities. This is intended mainly for multimedia applications. If this service is stopped, individual tasks resort to their default priority. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] MpsSvc ### Internal Name: MpsSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Windows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] NetMsmqActivator ### Internal Name: NetMsmqActivator. Status: service stopped. Actual File: "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator * Receives activation requests over the net.msmq and msmq.formatname protocols and passes them to the Windows Process Activation Service. SMSvcHost.exe Microsoft Corporation Microsoft® .NET Framework 4.0.30319.17929 [Auto Services] NetPipeActivator ### Internal Name: NetPipeActivator. Status: service stopped. Actual File: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe * Receives activation requests over the net.pipe protocol and passes them to the Windows Process Activation Service. SMSvcHost.exe Microsoft Corporation Microsoft® .NET Framework 4.0.30319.17929 [Auto Services] NetTcpActivator ### Internal Name: NetTcpActivator. Status: service stopped. Actual File: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe * Receives activation requests over the net.tcp protocol and passes them to the Windows Process Activation Service. SMSvcHost.exe Microsoft Corporation Microsoft® .NET Framework 4.0.30319.17929 [Auto Services] NlaSvc ### Internal Name: NlaSvc. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] nmservice ### Internal Name: nmservice. Status: service stopped. Actual File: "C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmsrvc.exe" * Enables Pure Networks Platform services such as file sharing, printer sharing, and network monitoring. Pure Networks Platform Service Cisco Systems, Inc. Pure Networks Platform 11.2.09170.0 [Auto Services] nsi ### Internal Name: nsi. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] nvsvc ### Internal Name: nvsvc. Status: service stopped. Actual File: "C:\Windows\system32\nvvsvc.exe" * Provides system and desktop level support to the NVIDIA display driver NVIDIA Driver Helper Service, Version 314.07 NVIDIA Corporation NVIDIA Driver Helper Service, Version 314.07 8.17.13.1407 [Auto Services] PlugPlay ### Internal Name: PlugPlay. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Power ### Internal Name: Power. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Manages power policy and power policy notification delivery. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ProfSvc ### Internal Name: ProfSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] RpcEptMapper ### Internal Name: ProfSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] RpcSs ### Internal Name: ProfSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] SamSs ### Internal Name: SamSs. Status: service stopped. Actual File: C:\Windows\system32\lsass.exe * The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16915 [Auto Services] Schedule ### Internal Name: SamSs. Status: service stopped. Actual File: C:\Windows\system32\lsass.exe * The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16915 [Auto Services] seclogon ### Internal Name: seclogon. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] SENS ### Internal Name: SENS. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Monitors system events and notifies subscribers to COM+ Event System of these events. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] ShellHWDetection ### Internal Name: ShellHWDetection. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Provides notifications for AutoPlay hardware events. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Spooler ### Internal Name: Spooler. Status: service stopped. Actual File: C:\Windows\System32\spoolsv.exe * Loads files to memory for later printing Spooler SubSystem App Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] sppsvc ### Internal Name: sppsvc. Status: service stopped. Actual File: C:\Windows\system32\sppsvc.exe * Enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is disabled, the operating system and licensed applications may run in a notification mode. It is strongly recommended that you not disable the Software Protection service. Microsoft Software Protection Platform Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] stisvc ### Internal Name: stisvc. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k imgsvc * Provides image acquisition services for scanners and cameras Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] SysMain ### Internal Name: SysMain. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * Maintains and improves system performance over time. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Themes ### Internal Name: Themes. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * Provides user experience theme management. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] TrkWks ### Internal Name: TrkWks. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Maintains links between NTFS files within a computer or across computers in a network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] UMVPFSrv ### Internal Name: UMVPFSrv. Status: service stopped. Actual File: C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe * UMVPF is a user mode Logitech driver Logitech User mode UMVPF service Logitech Inc. Logitech Webcam Software 13.31.1044.0 [Auto Services] UxSms ### Internal Name: UxSms. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Provides Desktop Window Manager startup and maintenance services Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] W3SVC ### Internal Name: W3SVC. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k iissvcs * Provides Web connectivity and administration through the Internet Information Services Manager Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] WinDefend ### Internal Name: WinDefend. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k secsvcs * Protection against spyware and potentially unwanted software Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Winmgmt ### Internal Name: Winmgmt. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Wlansvc ### Internal Name: Wlansvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * The WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] WMPNetworkSvc ### Internal Name: WMPNetworkSvc. Status: service stopped. Actual File: "C:\Program Files\Windows Media Player\wmpnetwk.exe" * Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play Windows Media Player Network Sharing Service Microsoft Corporation Microsoft® Windows® Operating System 12.0.7600.16385 [Auto Services] wscsvc ### Internal Name: wscsvc. Status: service stopped. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * The WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet settings (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Action Center (AC) UI uses the service to provide systray alerts and a graphical view of the security health states in the AC control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] WSearch ### Internal Name: WSearch. Status: service stopped. Actual File: C:\Windows\system32\SearchIndexer.exe /Embedding * Provides content indexing, property caching, and search results for files, e-mail, and other content. Microsoft Windows Search Indexer Microsoft Corporation Windows® Search 7.00.7600.16385 [Auto Services] wuauserv ### Internal Name: wuauserv. Status: service stopped. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Enables the detection, download, and installation of updates for Windows and other programs. If this service is disabled, users of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Services] Stereo Service ### Internal Name: Stereo Service. Status: service stopped. Actual File: "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" * Provides system support for NVIDIA Stereoscopic 3D driver Stereo Vision Control Panel API Server NVIDIA Corporation Stereo Vision Control Panel API Server 7.17.13.1407 [Auto Services] BootlogService ### Internal Name: BootlogService. Status: service stopped. Actual File: C:\Program Files (x86)\Greatis\RegRunSuite\BootLogService.exe * Bootlog XP Service Greatis Software (c) BootLog XP 2, 0, 5, 1 [Drivers] ntoskrnl.exe=C:\Windows\SYSTEM32\NTOSKRNL.EXE ### NT Kernel & System Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17207 [Drivers] hal.dll=C:\Windows\SYSTEM32\HAL.DLL ### Hardware Abstraction Layer DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] kdcom.dll=C:\Windows\SYSTEM32\KDCOM.DLL ### Serial Kernel Debugger Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16757 [Drivers] mcupdate_GenuineIntel.dll=C:\Windows\SYSTEM32\MCUPDATE_GENUINEINTEL.DLL ### Intel Microcode Update Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] PSHED.dll=C:\Windows\SYSTEM32\PSHED.DLL ### Platform Specific Hardware Error Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] CLFS.SYS=C:\Windows\SYSTEM32\CLFS.SYS ### Common Log File System Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] CI.dll=C:\Windows\SYSTEM32\CI.DLL ### Code Integrity Module Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Wdf01000.sys=C:\Windows\SYSTEM32\DRIVERS\WDF01000.SYS ### Kernel Mode Driver Framework Runtime Microsoft Corporation Microsoft® Windows® Operating System 1.11.9200.16384 [Drivers] WDFLDR.SYS=C:\Windows\SYSTEM32\DRIVERS\WDFLDR.SYS ### Kernel Mode Driver Framework Loader Microsoft Corporation Microsoft® Windows® Operating System 1.11.9200.16384 [Drivers] ACPI.sys=C:\Windows\SYSTEM32\DRIVERS\ACPI.SYS ### ACPI Driver for NT Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] WMILIB.SYS=C:\Windows\SYSTEM32\DRIVERS\WMILIB.SYS ### WMILIB WMI support library Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] msisadrv.sys=C:\Windows\SYSTEM32\DRIVERS\MSISADRV.SYS ### ISA Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] pci.sys=C:\Windows\SYSTEM32\DRIVERS\PCI.SYS ### NT Plug and Play PCI Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] vdrvroot.sys=C:\Windows\SYSTEM32\DRIVERS\VDRVROOT.SYS ### Virtual Drive Root Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] partmgr.sys=C:\Windows\SYSTEM32\DRIVERS\PARTMGR.SYS ### Partition Management Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] volmgr.sys=C:\Windows\SYSTEM32\DRIVERS\VOLMGR.SYS ### Volume Manager Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] volmgrx.sys=C:\Windows\SYSTEM32\DRIVERS\VOLMGRX.SYS ### Volume Manager Extension Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] pciide.sys=C:\Windows\SYSTEM32\DRIVERS\PCIIDE.SYS ### Generic PCI IDE Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] PCIIDEX.SYS=C:\Windows\SYSTEM32\DRIVERS\PCIIDEX.SYS ### PCI IDE Bus Driver Extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] mountmgr.sys=C:\Windows\SYSTEM32\DRIVERS\MOUNTMGR.SYS ### Mount Point Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] atapi.sys=C:\Windows\SYSTEM32\DRIVERS\ATAPI.SYS ### ATAPI IDE Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] ataport.SYS=C:\Windows\SYSTEM32\DRIVERS\ATAPORT.SYS ### ATAPI Driver Extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] amdxata.sys=C:\Windows\SYSTEM32\DRIVERS\AMDXATA.SYS ### Storage Filter Driver Advanced Micro Devices Storage Filter Driver 1.1.2.5 [Drivers] fltmgr.sys=C:\Windows\SYSTEM32\DRIVERS\FLTMGR.SYS ### Microsoft Filesystem Filter Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] fileinfo.sys=C:\Windows\SYSTEM32\DRIVERS\FILEINFO.SYS ### FileInfo Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] PxHlpa64.sys=C:\Windows\SYSTEM32\DRIVERS\PXHLPA64.SYS ### Px Engine Device Driver for 64-bit Windows Sonic Solutions PxHelp64 [Drivers] Ntfs.sys=C:\Windows\SYSTEM32\DRIVERS\NTFS.SYS ### NT File System Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] msrpc.sys=C:\Windows\SYSTEM32\DRIVERS\MSRPC.SYS ### Kernel Remote Procedure Call Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] ksecdd.sys=C:\Windows\SYSTEM32\DRIVERS\KSECDD.SYS ### Kernel Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [Drivers] cng.sys=C:\Windows\SYSTEM32\DRIVERS\CNG.SYS ### Kernel Cryptography, Next Generation Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [Drivers] pcw.sys=C:\Windows\SYSTEM32\DRIVERS\PCW.SYS ### Performance Counters for Windows Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Fs_Rec.sys=C:\Windows\SYSTEM32\DRIVERS\FS_REC.SYS ### File System Recognizer Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16970 [Drivers] ndis.sys=C:\Windows\SYSTEM32\DRIVERS\NDIS.SYS ### NDIS 6.20 driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] NETIO.SYS=C:\Windows\SYSTEM32\DRIVERS\NETIO.SYS ### Network I/O Subsystem Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16569 [Drivers] ksecpkg.sys=C:\Windows\SYSTEM32\DRIVERS\KSECPKG.SYS ### Kernel Security Support Provider Interface Packages Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [Drivers] tcpip.sys=C:\Windows\SYSTEM32\DRIVERS\TCPIP.SYS ### TCP/IP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] fwpkclnt.sys=C:\Windows\SYSTEM32\DRIVERS\FWPKCLNT.SYS ### FWP/IPsec Kernel-Mode API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17206 [Drivers] vmstorfl.sys=C:\Windows\SYSTEM32\DRIVERS\VMSTORFL.SYS ### Virtual Storage Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] volsnap.sys=C:\Windows\SYSTEM32\DRIVERS\VOLSNAP.SYS ### Volume Shadow Copy Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] rdyboost.sys=C:\Windows\SYSTEM32\DRIVERS\RDYBOOST.SYS ### ReadyBoost Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Saibad64.sys=C:\Windows\SYSTEM32\DRIVERS\SAIBAD64.SYS ### Disk Filter Driver Sonic Solutions 1.0.0000.0 [Drivers] Sahdad64.sys=C:\Windows\SYSTEM32\DRIVERS\SAHDAD64.SYS ### Disk Filter Driver Sonic Solutions 1.0.0000.0 [Drivers] mup.sys=C:\Windows\SYSTEM32\DRIVERS\MUP.SYS ### Multiple UNC Provider Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] hwpolicy.sys=C:\Windows\SYSTEM32\DRIVERS\HWPOLICY.SYS ### Hardware Policy Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] fvevol.sys=C:\Windows\SYSTEM32\DRIVERS\FVEVOL.SYS ### BitLocker Drive Encryption Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] disk.sys=C:\Windows\SYSTEM32\DRIVERS\DISK.SYS ### PnP Disk Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] CLASSPNP.SYS=C:\Windows\SYSTEM32\DRIVERS\CLASSPNP.SYS ### SCSI Class System Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Null.SYS=C:\Windows\SYSTEM32\DRIVERS\NULL.SYS ### NULL Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Beep.SYS=C:\Windows\SYSTEM32\DRIVERS\BEEP.SYS ### BEEP Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] avgtpx64.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AVGTPX64.SYS ### AVG Technologies 14.1,0.7 [Drivers] vga.sys=C:\Windows\SYSTEM32\DRIVERS\VGA.SYS ### VGA/Super VGA Video Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] VIDEOPRT.SYS=C:\Windows\SYSTEM32\DRIVERS\VIDEOPRT.SYS ### Video Port Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] watchdog.sys=C:\Windows\SYSTEM32\DRIVERS\WATCHDOG.SYS ### Watchdog Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] rdpencdd.sys=C:\Windows\SYSTEM32\DRIVERS\RDPENCDD.SYS ### RDP Encoder Miniport Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Msfs.SYS=C:\Windows\SYSTEM32\DRIVERS\MSFS.SYS ### Mailslot driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Npfs.SYS=C:\Windows\SYSTEM32\DRIVERS\NPFS.SYS ### NPFS Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] tdx.sys=C:\Windows\SYSTEM32\DRIVERS\TDX.SYS ### TDI Translation Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] TDI.SYS=C:\Windows\SYSTEM32\DRIVERS\TDI.SYS ### TDI Wrapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] netbt.sys=C:\Windows\SYSTEM32\DRIVERS\NETBT.SYS ### MBT Transport driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] afd.sys=C:\Windows\SYSTEM32\DRIVERS\AFD.SYS ### Ancillary Function Driver for WinSock Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] ws2ifsl.sys=C:\Windows\SYSTEM32\DRIVERS\WS2IFSL.SYS ### Winsock2 IFS Layer Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] wfplwf.sys=C:\Windows\SYSTEM32\DRIVERS\WFPLWF.SYS ### WFP NDIS 6.20 Lightweight Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] pacer.sys=C:\Windows\SYSTEM32\DRIVERS\PACER.SYS ### QoS Packet Scheduler Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] EpfwLWF.sys=C:\Windows\SYSTEM32\DRIVERS\EPFWLWF.SYS ### Epfw NDIS LightWeight Filter ESET ESET Smart Security 6.0.308.0 [Drivers] netbios.sys=C:\Windows\SYSTEM32\DRIVERS\NETBIOS.SYS ### NetBIOS interface driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] rdbss.sys=C:\Windows\SYSTEM32\DRIVERS\RDBSS.SYS ### Redirected Drive Buffering SubSystem Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] nsiproxy.sys=C:\Windows\SYSTEM32\DRIVERS\NSIPROXY.SYS ### NSI Proxy Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] csc.sys=C:\Windows\SYSTEM32\DRIVERS\CSC.SYS ### Windows Client Side Caching Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] dfsc.sys=C:\Windows\SYSTEM32\DRIVERS\DFSC.SYS ### DFS Namespace Client Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16804 [Drivers] tunnel.sys=C:\Windows\SYSTEM32\DRIVERS\TUNNEL.SYS ### Microsoft Tunnel Interface Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] HDAudBus.sys=C:\Windows\SYSTEM32\DRIVERS\HDAUDBUS.SYS ### High Definition Audio Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] HECIx64.sys=C:\Windows\SYSTEM32\DRIVERS\HECIX64.SYS ### Intel(R) Management Engine Interface Intel Corporation Intel(R) Management Engine Interface 7.0.0.1144 [Drivers] usbehci.sys=C:\Windows\SYSTEM32\DRIVERS\USBEHCI.SYS ### EHCI eUSB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16788 [Drivers] USBPORT.SYS=C:\Windows\SYSTEM32\DRIVERS\USBPORT.SYS ### USB 1.1 & 2.0 Port Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] nusb3xhc.sys=C:\Windows\SYSTEM32\DRIVERS\NUSB3XHC.SYS ### USB 3.0 Host Controller Driver Renesas Electronics Corporation USB 3.0 Device Driver 2.0.34.0 [Drivers] USBD.SYS=C:\Windows\SYSTEM32\DRIVERS\USBD.SYS ### Universal Serial Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16788 [Drivers] Rt64win7.sys=C:\Windows\SYSTEM32\DRIVERS\RT64WIN7.SYS ### Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver Realtek Realtek 8136/8168/8169 PCI/PCIe Adapters 7.046.0610.2011 [Drivers] i8042prt.sys=C:\Windows\SYSTEM32\DRIVERS\I8042PRT.SYS ### i8042 Port Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] kbdclass.sys=C:\Windows\SYSTEM32\DRIVERS\KBDCLASS.SYS ### Keyboard Class Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] cdrom.sys=C:\Windows\SYSTEM32\DRIVERS\CDROM.SYS ### SCSI CD-ROM Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] wmiacpi.sys=C:\Windows\SYSTEM32\DRIVERS\WMIACPI.SYS ### Windows Management Interface for ACPI Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] blbdrive.sys=C:\Windows\SYSTEM32\DRIVERS\BLBDRIVE.SYS ### BLB Drive Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] CompositeBus.sys=C:\Windows\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS ### Multi-Transport Composite Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] mssmbios.sys=C:\Windows\SYSTEM32\DRIVERS\MSSMBIOS.SYS ### System Management BIOS Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] AgileVpn.sys=C:\Windows\SYSTEM32\DRIVERS\AGILEVPN.SYS ### RAS Agile Vpn Miniport Call Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] rasl2tp.sys=C:\Windows\SYSTEM32\DRIVERS\RASL2TP.SYS ### RAS L2TP mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] ndistapi.sys=C:\Windows\SYSTEM32\DRIVERS\NDISTAPI.SYS ### NDIS 3.0 connection wrapper driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] ndiswan.sys=C:\Windows\SYSTEM32\DRIVERS\NDISWAN.SYS ### MS PPP Framing Driver (Strong Encryption) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] raspppoe.sys=C:\Windows\SYSTEM32\DRIVERS\RASPPPOE.SYS ### RAS PPPoE mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] raspptp.sys=C:\Windows\SYSTEM32\DRIVERS\RASPPTP.SYS ### Peer-to-Peer Tunneling Protocol Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] rassstp.sys=C:\Windows\SYSTEM32\DRIVERS\RASSSTP.SYS ### RAS SSTP Miniport Call Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] rdpbus.sys=C:\Windows\SYSTEM32\DRIVERS\RDPBUS.SYS ### Microsoft RDP Bus Device driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] termdd.sys=C:\Windows\SYSTEM32\DRIVERS\TERMDD.SYS ### Remote Desktop Server Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] mouclass.sys=C:\Windows\SYSTEM32\DRIVERS\MOUCLASS.SYS ### Mouse Class Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] swenum.sys=C:\Windows\SYSTEM32\DRIVERS\SWENUM.SYS ### Plug and Play Software Device Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] ks.sys=C:\Windows\SYSTEM32\DRIVERS\KS.SYS ### Kernel CSA Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16543 [Drivers] umbus.sys=C:\Windows\SYSTEM32\DRIVERS\UMBUS.SYS ### User-Mode Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] usbhub.sys=C:\Windows\SYSTEM32\DRIVERS\USBHUB.SYS ### Default Hub Driver for USB Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] nusb3hub.sys=C:\Windows\SYSTEM32\DRIVERS\NUSB3HUB.SYS ### USB 3.0 Hub Driver Renesas Electronics Corporation USB 3.0 Device Driver 2.0.34.0 [Drivers] NDProxy.SYS=C:\Windows\SYSTEM32\DRIVERS\NDPROXY.SYS ### NDIS Proxy Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] crashdmp.sys=C:\Windows\SYSTEM32\DRIVERS\CRASHDMP.SYS ### Crash Dump Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] dumpata.sys=C:\Windows\SYSTEM32\DRIVERS\DUMP_DUMPATA.SYS [Drivers] atapi.sys=C:\Windows\SYSTEM32\DRIVERS\DUMP_ATAPI.SYS [Drivers] dumpfve.sys=C:\Windows\SYSTEM32\DRIVERS\DUMP_DUMPFVE.SYS [Drivers] hidusb.sys=C:\Windows\SYSTEM32\DRIVERS\HIDUSB.SYS ### USB Miniport Driver for Input Devices Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] HIDCLASS.SYS=C:\Windows\SYSTEM32\DRIVERS\HIDCLASS.SYS ### Hid Class Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] HIDPARSE.SYS=C:\Windows\SYSTEM32\DRIVERS\HIDPARSE.SYS ### Hid Parsing Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] mouhid.sys=C:\Windows\SYSTEM32\DRIVERS\MOUHID.SYS ### HID Mouse Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] netr28ux.sys=C:\Windows\SYSTEM32\DRIVERS\NETR28UX.SYS ### Ralink 802.11n Wireless Adapter Driver Ralink Technology Corp. Ralink 802.11n Wireless Adapters 2.03.06.0000 [Drivers] usbccgp.sys=C:\Windows\SYSTEM32\DRIVERS\USBCCGP.SYS ### USB Common Class Generic Parent Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16788 [Drivers] win32k.sys=C:\Windows\SYSTEM32\WIN32K.SYS ### Multi-User Win32 Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] Dxapi.sys=C:\Windows\SYSTEM32\DRIVERS\DXAPI.SYS ### DirectX API Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] dxg.sys=C:\Windows\SYSTEM32\DRIVERS\DXG.SYS ### DirectX Graphics Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] TSDDD.dll=C:\Windows\SYSTEM32\TSDDD.DLL ### Framebuffer Display Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] framebuf.dll=C:\Windows\SYSTEM32\FRAMEBUF.DLL ### Framebuffer Display Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] nwifi.sys=C:\Windows\SYSTEM32\DRIVERS\NWIFI.SYS ### NativeWiFi Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] ndisuio.sys=C:\Windows\SYSTEM32\DRIVERS\NDISUIO.SYS ### NDIS User mode I/O driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] bowser.sys=C:\Windows\SYSTEM32\DRIVERS\BOWSER.SYS ### NT Lan Manager Datagram Receiver Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16765 [Drivers] mpsdrv.sys=C:\Windows\SYSTEM32\DRIVERS\MPSDRV.SYS ### Microsoft Protection Service Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] mrxsmb.sys=C:\Windows\SYSTEM32\DRIVERS\MRXSMB.SYS ### Windows NT SMB Minirdr Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16808 [Drivers] mrxsmb10.sys=C:\Windows\SYSTEM32\DRIVERS\MRXSMB10.SYS ### Longhorn SMB Downlevel SubRdr Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16847 [Drivers] mrxsmb20.sys=C:\Windows\SYSTEM32\DRIVERS\MRXSMB20.SYS ### Longhorn SMB 2.0 Redirector Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16808 [Drivers] ntdll.dll=C:\WINDOWS\SYSTEM32\NTDLL.DLL ### NT Layer DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] smss.exe=C:\WINDOWS\SYSTEM32\SMSS.EXE ### Windows Session Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] apisetschema.dll=C:\WINDOWS\SYSTEM32\APISETSCHEMA.DLL ### ApiSet Schema DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Drivers] autochk.exe=C:\WINDOWS\SYSTEM32\AUTOCHK.EXE ### Auto Check Utility Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM vidc.mrle=C:\Windows\system32\MSRLE32.DLL ### Microsoft RLE Compressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM vidc.msvc=C:\Windows\system32\MSVIDC32.DLL ### Microsoft Video 1 Compressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM msacm.imaadpcm=C:\Windows\system32\IMAADP32.ACM ### IMA ADPCM CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM msacm.msg711=C:\Windows\system32\MSG711.ACM ### Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM msacm.msgsm610=C:\Windows\system32\MSGSM32.ACM ### Microsoft GSM 6.10 Audio CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM msacm.msadpcm=C:\Windows\system32\MSADP32.ACM ### Microsoft ADPCM CODEC for MSACM Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midimapper=C:\Windows\system32\MIDIMAP.DLL ### Microsoft MIDI Mapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wavemapper=C:\Windows\system32\MSACM32.DRV ### Microsoft Sound Mapper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM vidc.uyvy=C:\Windows\system32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16490 [Codecs] :HKLM vidc.yuy2=C:\Windows\system32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16490 [Codecs] :HKLM vidc.yvyu=C:\Windows\system32\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16490 [Codecs] :HKLM vidc.iyuv=C:\Windows\system32\IYUV_32.DLL ### Intel Indeo(R) Video YUV Codec Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM vidc.i420=C:\WINDOWS\Syswow64\LVCODEC2.DLL ### Video Codec Logitech Inc. Logitech Webcam Software 13.31.1044.0 [Codecs] :HKLM vidc.yvu9=C:\Windows\system32\TSBYUV.DLL ### Toshiba Video Codec Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16490 [Codecs] :HKLM msacm.l3acm=C:\WINDOWS\SYSWOW64\L3CODECA.ACM ### MPEG Layer-3 Audio Codec for MSACM Fraunhofer Institut Integrierte Schaltungen IIS MPEG Layer-3 Audio Codec for MSACM 1, 0, 0, 0 [Codecs] :HKLM vidc.cvid=C:\WINDOWS\Syswow64\ICCVID.DLL ### Cinepak® Codec Radius Inc. Cinepak for Windows 32 1.10.0.0 [Codecs] :HKLM wave1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM aux1=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave5=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi5=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer5=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM aux=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave2=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi2=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer2=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave3=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi3=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer3=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave4=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi4=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer4=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave7=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi7=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer7=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave8=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi8=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer8=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave6=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi6=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer6=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM wave9=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM midi9=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Codecs] :HKLM mixer9=C:\Windows\system32\WDMAUD.DRV ### Winmm audio system driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Auto Start Apps] [Win.ini] load="" [Win.ini] run="" [Scheduled Tasks] RegClean Pro_UPDATES=C:\PROGRAM FILES (X86)\REGCLEAN PRO\REGCLEANPRO.EXE ### RegClean Pro Systweak Inc RegClean Pro 6.21.65.2601 [Scheduled Tasks] RegClean Pro_DEFAULT=C:\PROGRAM FILES (X86)\REGCLEAN PRO\REGCLEANPRO.EXE ### RegClean Pro Systweak Inc RegClean Pro 6.21.65.2601 [Scheduled Tasks] GoogleUpdateTaskMachineUA=C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE ### Google Installer Google Inc. Google Update 1.2.183.21 [Scheduled Tasks] GoogleUpdateTaskMachineCore=C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE ### Google Installer Google Inc. Google Update 1.2.183.21 [Scheduled Tasks] Adobe Flash Player Updater=C:\WINDOWS\SYSWOW64\MACROMED\FLASH\FLASHPLAYERUPDATESERVICE.EXE ### Adobe® Flash® Player Update Service 11.6 r602 Adobe Systems Incorporated Adobe® Flash® Player Update Service 11,6,602,180 [Scheduled Tasks] RegRun WatchDog Schedule Task=C:\PROGRAM FILES (X86)\GREATIS\REGRUNSUITE\WATCHDOG.EXE ### WatchDog Greatis Software RegRun Security Suite 6.9 [In memory] [Running Processes] C:\PROGRAM FILES (X86)\GREATIS\REGRUNSUITE\REGRUNCENTER.EXE ### RegRun Control Center Greatis Software RegRun Security Suite 6.99 [Running Processes] C:\PROGRAM FILES (X86)\GREATIS\REGRUNSUITE\REGRUN2.EXE ### RegRun Start Control Greatis Software RegRun Security Suite 6.99 release [Loaded DLLs] C:\Windows\system32\SAMLIB.dll ### SAM Library DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\samcli.dll ### Security Accounts Manager Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\wevtapi.dll ### Eventing Consumption and Configuration API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\Wpc.dll ### WPC Settings Library Microsoft Corporation Windows 1.0.0.1 [Loaded DLLs] C:\Windows\system32\d3d10core.dll ### Direct3D 10 Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\d3d10.dll ### Direct3D 10 Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\msls31.dll ### Microsoft Line Services library file Microsoft Corporation Microsoft® Line Services 3.10 [Loaded DLLs] C:\Windows\system32\D3D10Warp.dll ### Direct3D 10 Rasterizer Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16972 [Loaded DLLs] C:\Windows\system32\d3d10_1core.dll ### Direct3D 10.1 Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16972 [Loaded DLLs] C:\Windows\system32\d3d10_1.dll ### Direct3D 10.1 Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16972 [Loaded DLLs] C:\Windows\syswow64\dwmapi.dll ### Microsoft Desktop Window Manager API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\dxgi.dll ### DirectX Graphics Infrastructure Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\DWrite.dll ### Microsoft DirectX Typography Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\d2d1.dll ### Microsoft D2D Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16972 [Loaded DLLs] C:\Windows\SysWOW64\jscript9.dll ### Microsoft ® JScript Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Loaded DLLs] C:\Windows\syswow64\MLANG.dll ### Multi Language Support DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\msimtf.dll ### Active IMM Server DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll ### Microsoft .NET IE MIME Filter Microsoft Corporation Microsoft® .NET Framework 2.0.50727.4927 [Loaded DLLs] C:\Windows\system32\mscoree.dll ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® .NET Framework 2.0.50727.4927 [Loaded DLLs] C:\Windows\SysWOW64\mshtml.dll ### Microsoft (R) HTML Viewer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Loaded DLLs] C:\Windows\syswow64\SXS.DLL ### Fusion 2.5 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\OLEACC.dll ### Active Accessibility Core Component Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16872 [Loaded DLLs] C:\Windows\SysWOW64\ieframe.dll ### Internet Browser Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Loaded DLLs] C:\Windows\System32\itss.dll ### Microsoft® InfoTech Storage System Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\HHCTRL.OCX ### Microsoft® HTML Help Control Microsoft Corporation HTML Help 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\NTDSAPI.dll ### Active Directory Domain Services API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\ACLUI.dll ### Security Descriptor Editor Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\dsrole.dll ### DS Role Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\EhStorAPI.dll ### Windows Enhanced Storage API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\PortableDeviceApi.dll ### Windows Portable Device API Components Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\netutils.dll ### Net Win32 API Helpers DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\wkscli.dll ### Workstation Service Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\DAVHLPR.dll ### DAV Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\davclnt.dll ### Web DAV Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16723 [Loaded DLLs] C:\Windows\System32\ntlanman.dll ### Microsoft® Lan Manager Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\WINSTA.dll ### Winstation Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\System32\drprov.dll ### Microsoft Remote Desktop Session Host Server Network Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\thumbcache.dll ### Microsoft Thumbnail Cache Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\EhStorShell.dll ### Windows Enhanced Storage Shell Extension DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\msi.dll ### Windows Installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16992 [Loaded DLLs] C:\Windows\system32\sfc_os.DLL ### Windows File Protection Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\sfc.dll ### Windows File Protection Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\acppage.dll ### Compatibility Tab Shell Extension Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\LINKINFO.dll ### Windows Volume Tracking Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\SYNCENG.dll ### Windows Briefcase Engine Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17130 [Loaded DLLs] C:\Windows\system32\syncui.dll ### Windows Briefcase Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files\ESET\ESET Smart Security\x86\shellExt.dll ### ESET Shell Extension ESET ESET Smart Security 6.0.314.0 [Loaded DLLs] C:\Windows\system32\oledlg.dll ### OLE User Interface Support Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\PROGRA~2\GLARYU~1\vcl70.bpl ### Borland Component Package Borland Software Corporation Borland Package Library 7.0 [Loaded DLLs] C:\Windows\system32\wsock32.dll ### Windows Socket 32-Bit DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\PROGRA~2\GLARYU~1\rtl70.bpl ### Borland Component Package Borland Software Corporation Borland Package Library 7.0 [Loaded DLLs] C:\PROGRA~2\GLARYU~1\CONTEX~1.DLL ### Context Menu Handler Glarysoft Ltd Glary Utilities 2.16 [Loaded DLLs] C:\Windows\system32\WindowsCodecs.dll ### Microsoft Windows Codecs Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCR80.dll ### Microsoft® C Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2005 8.00.50727.6195 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCP80.dll ### Microsoft® C++ Runtime Library Microsoft Corporation Microsoft® Visual Studio® 2005 8.00.50727.6195 [Loaded DLLs] C:\Program Files (x86)\Common Files\Apple\Internet Services\ShellStreams.dll ### ShellStreams.dll Apple Inc. [Loaded DLLs] C:\Windows\syswow64\slc.dll ### Software Licensing Client Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\cscapi.dll ### Offline Files Win32 API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\srvcli.dll ### Server Service Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\ntshrui.dll ### Shell extensions for sharing Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Program Files\WinRAR\rarext32.dll [Loaded DLLs] C:\Windows\System32\shdocvw.dll ### Shell Doc Object and Control Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\wer.dll ### Windows Error Reporting DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\XmlLite.dll ### Microsoft XmlLite Library Microsoft Corporation Microsoft XML Core Services 1.3.1001.0 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.17007_none_72f44f3186198a88\gdiplus.dll ### Microsoft GDI+ Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17007 [Loaded DLLs] C:\Windows\SysWOW64\gameux.dll ### Games Explorer Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\twext.dll ### Previous Versions property page Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\apphelp.dll ### Application Compatibility Client Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\DEVRTL.dll ### Device Management Run Time Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16820 [Loaded DLLs] C:\Windows\syswow64\Secur32.dll ### Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [Loaded DLLs] C:\Windows\syswow64\Normaliz.dll ### Unicode Normalization DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\WININET.dll ### Internet Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Loaded DLLs] C:\Windows\syswow64\iertutil.dll ### Run time utility for Internet Explorer Microsoft Corporation Windows® Internet Explorer 9.00.8112.16470 [Loaded DLLs] C:\Windows\syswow64\urlmon.dll ### OLE32 Extensions for Win32 Microsoft Corporation Windows® Internet Explorer 9.00.8112.16421 [Loaded DLLs] C:\Windows\system32\sxproxy.dll ### Microsoft® Windows System Protection Proxy Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\RpcRtRemote.dll ### Remote RPC Extension Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\VssTrace.DLL ### Microsoft® Volume Shadow Copy Service Tracing Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\ATL.DLL ### ATL Module for Windows XP (Unicode) Microsoft Corporation Microsoft (R) Visual C++ 6.05.2284 [Loaded DLLs] C:\Windows\system32\VSSAPI.DLL ### Microsoft® Volume Shadow Copy Requestor/Writer Services API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\SPP.dll ### Microsoft® Windows Shared Protection Point Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\srclient.dll ### Microsoft® Windows System Restore Client Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17018 [Loaded DLLs] C:\Windows\System32\mstask.dll ### Task Scheduler interface DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\rasadhlp.dll ### Remote Access AutoDial Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\DNSAPI.dll ### DNS Client API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\dhcpcsvc6.DLL ### DHCPv6 Client Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\dhcpcsvc.DLL ### DHCP Client Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\WINNSI.DLL ### Network Store Information RPC interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\IPHLPAPI.DLL ### IP Helper API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\mswsock.dll ### Microsoft Windows Sockets 2.0 Service Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\credssp.dll ### Credential Delegation Security Package Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\NSI.dll ### NSI User-mode interface DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\WS2_32.dll ### Windows Socket 2.0 32-Bit DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\webio.dll ### Web Transfer Protocols API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\WINHTTP.dll ### Windows HTTP Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\SensApi.dll ### SENS Connectivity API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\cryptnet.dll ### Crypto Network Related API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [Loaded DLLs] C:\Windows\system32\GPAPI.dll ### Group Policy Client API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\profapi.dll ### User Profile Basic API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\USERENV.dll ### Userenv Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\ncrypt.dll ### Windows cryptographic library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\imagehlp.dll ### Windows NT Image Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16970 [Loaded DLLs] C:\Windows\SysWOW64\bcryptprimitives.dll ### Windows Cryptographic Primitives Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\bcrypt.dll ### Windows Cryptographic Primitives Library (Wow64) Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\rsaenh.dll ### Microsoft Enhanced Cryptographic Provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\CRYPTSP.dll ### Cryptographic Service Provider API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\PSAPI.DLL ### Process Status Helper Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\WLDAP32.dll ### Win32 LDAP API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\ntmarta.dll ### Windows NT MARTA provider Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\propsys.dll ### Microsoft Property System Microsoft Corporation Windows® Search 7.00.7600.16385 [Loaded DLLs] C:\Windows\syswow64\CLBCatQ.DLL ### COM+ Configuration Catalog Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\DEVOBJ.dll ### Device Information Set DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16820 [Loaded DLLs] C:\Windows\syswow64\CFGMGR32.dll ### Configuration Manager DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16820 [Loaded DLLs] C:\Windows\syswow64\SETUPAPI.dll ### Windows Setup API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll ### User Experience Controls Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\RICHED20.dll ### Rich Text Edit Control, v3.1 Microsoft Corporation Microsoft RichEdit Control, version 3.1 3.1 [Loaded DLLs] C:\Windows\system32\RICHED32.DLL ### Wrapper Dll for Richedit 1.0 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\UXTHEME.DLL ### Microsoft UxTheme Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\MSASN1.dll ### ASN.1 Runtime APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16415 [Loaded DLLs] C:\Windows\syswow64\CRYPT32.dll ### Crypto API32 Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [Loaded DLLs] C:\Windows\syswow64\wintrust.dll ### Microsoft Trust Verification APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17115 [Loaded DLLs] C:\Windows\system32\olepro32.dll [Loaded DLLs] C:\Windows\system32\shfolder.dll ### Shell Folder Service Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\MSCTF.dll ### MSCTF Server DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\IMM32.DLL ### Multi-User Windows IMM32 API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\ole32.dll ### Microsoft OLE for Windows Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\oleaut32.dll ### Microsoft Corporation 6.1.7600.16872 [Loaded DLLs] C:\Windows\syswow64\winmm.dll ### MCI API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\SHELL32.dll ### Windows Shell Common Dll Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\SHLWAPI.dll ### Shell Light-weight Utility Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\comdlg32.dll ### Common Dialogs DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16661_none_ebfb56996c72aefc\comctl32.dll ### Common Controls Library Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\USP10.dll ### Uniscribe Unicode script processor Microsoft Corporation Microsoft(R) Uniscribe Unicode script processor 1.0626.7600.17174 [Loaded DLLs] C:\Windows\syswow64\LPK.dll ### Language Pack Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\USER32.dll ### Multi-User Windows USER API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\GDI32.dll ### GDI Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\winspool.drv ### Windows Spooler Driver Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\version.dll ### Version Checking and File Installation Libraries Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\system32\mpr.dll ### Multiple Provider Router DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\CRYPTBASE.dll ### Base cryptographic API DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\SspiCli.dll ### Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17035 [Loaded DLLs] C:\Windows\syswow64\RPCRT4.dll ### Remote Procedure Call Runtime Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\SysWOW64\sechost.dll ### Host for SCM/SDDL/LSA Lookup APIs Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\msvcrt.dll ### Windows NT CRT DLL Microsoft Corporation Microsoft® Windows® Operating System 7.0.7600.16930 [Loaded DLLs] C:\Windows\syswow64\advapi32.dll ### Advanced Windows 32 Base API Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Loaded DLLs] C:\Windows\syswow64\KERNELBASE.dll ### Windows NT BASE API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17179 [Loaded DLLs] C:\Windows\syswow64\kernel32.dll ### Windows NT BASE API Client DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.17179 [Loaded DLLs] C:\Windows\SysWOW64\ntdll.dll ### NT Layer DLL Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] !SASCORE ### Internal Name: !SASCORE. Status: service running. Actual File: "C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE" * SUPERAntiSpyware Core Service Core Service SUPERAntiSpyware.com Core Service 1, 0, 0, 1068 [Running Services] Appinfo ### Internal Name: Appinfo. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Facilitates the running of interactive applications with additional administrative privileges. If this service is stopped, users will be unable to launch applications with the additional administrative privileges they may require to perform desired user tasks. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] BFE ### Internal Name: BFE. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] CryptSvc ### Internal Name: CryptSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] DcomLaunch ### Internal Name: CryptSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Dhcp ### Internal Name: Dhcp. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Dnscache ### Internal Name: Dnscache. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k NetworkService * The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] EapHost ### Internal Name: EapHost. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k netsvcs * The Extensible Authentication Protocol (EAP) service provides network authentication in such scenarios as 802.1x wired and wireless, VPN, and Network Access Protection (NAP). EAP also provides application programming interfaces (APIs) that are used by network access clients, including wireless and VPN clients, during the authentication process. If you disable this service, this computer is prevented from accessing networks that require EAP authentication. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] eventlog ### Internal Name: eventlog. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted * This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] IKEEXT ### Internal Name: IKEEXT. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] KeyIso ### Internal Name: KeyIso. Status: service running. Actual File: C:\Windows\system32\lsass.exe * The CNG key isolation service is hosted in the LSA process. The service provides key process isolation to private keys and associated cryptographic operations as required by the Common Criteria. The service stores and uses long-lived keys in a secure process complying with Common Criteria requirements. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16915 [Running Services] LanmanWorkstation ### Internal Name: LanmanWorkstation. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] lmhosts ### Internal Name: lmhosts. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted * Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] MpsSvc ### Internal Name: MpsSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork * Windows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Netman ### Internal Name: Netman. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted * Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] NlaSvc ### Internal Name: NlaSvc. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k NetworkService * Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] nsi ### Internal Name: nsi. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalService * This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] PlugPlay ### Internal Name: PlugPlay. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Power ### Internal Name: Power. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k DcomLaunch * Manages power policy and power policy notification delivery. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] ProfSvc ### Internal Name: ProfSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] RpcEptMapper ### Internal Name: ProfSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] RpcSs ### Internal Name: ProfSvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] WinDefend ### Internal Name: WinDefend. Status: service running. Actual File: C:\Windows\System32\svchost.exe -k secsvcs * Protection against spyware and potentially unwanted software Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Winmgmt ### Internal Name: Winmgmt. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k netsvcs * Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Running Services] Wlansvc ### Internal Name: Wlansvc. Status: service running. Actual File: C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted * The WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter. Host Process for Windows Services Microsoft Corporation Microsoft® Windows® Operating System 6.1.7600.16385 [Uninstall] [Applications] :HKLM Adobe Flash Player 11 ActiveX=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_180_ActiveX.exe -maintain activex ### Adobe Flash Player ActiveX Adobe® Flash® Player Installer/Uninstaller 11.6 r602 Adobe Systems Incorporated Adobe® Flash® Player Installer/Uninstaller 11,6,602,180 [Applications] :HKLM Adobe Flash Player 11 Plugin=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_180_Plugin.exe -maintain plugin ### Adobe Flash Player Plugin Adobe® Flash® Player Installer/Uninstaller 11.6 r602 Adobe Systems Incorporated Adobe® Flash® Player Installer/Uninstaller 11,6,602,180 [Applications] :HKLM CinePlayer.exe=C:\Windows\SysWOW64\\MSIEXEC.EXE /x {7B91CBFD-0671-4819-9724-CABE3014E886} ### CinePlayer.exe Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Connection Manager ### Connection Manager [Applications] :HKLM Glary Utilities Pro 2.16.0.758="C:\Program Files (x86)\Glary Utilities\unins000.exe" ### Glary Utilities_is1 Setup/Uninstall Inno Setup 0.0.0.0 [Applications] :HKLM Google Chrome="C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.172\Installer\setup.exe" --uninstall --multi-install --chrome --system-level ### Google Chrome Google Chrome Google Inc. Google Chrome 25.0.1364.172 [Applications] :HKLM HP Photo Creations=C:\Program Files (x86)\HP Photo Creations\uninst.exe ### HP Photo Creations [Applications] :HKLM InstallShield Uninstall Information ### InstallShield Uninstall Information [Applications] :HKLM SmartSound Quicktracks Plugin=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E} ### InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E} InstallDriver Module InstallShield Software Corporation InstallDriver Module 9.01 [Applications] :HKLM Renesas Electronics USB 3.0 Host Controller Driver="C:\Program Files (x86)\InstallShield Installation Information\{5442DAB8-7177-49E1-8B22-09A049EA5996}\setup.exe" -runfromtemp -l0x0409 -removeonly ### InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} Setup launcher Renesas Electronics Corporation Renesas Electronics USB 3.0 Host Controller Driver 2.0.34.0 [Applications] :HKLM K-Lite Codec Pack 9.3.0 (Basic)="C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe" ### KLiteCodecPack_is1 [Applications] :HKLM Malwarebytes Anti-Malware version 1.70.0.1100="C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe" ### Malwarebytes' Anti-Malware_is1 Setup/Uninstall [Applications] :HKLM Mozilla Firefox 19.0.2 (x86 en-US)=C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ### Mozilla Firefox 19.0.2 (x86 en-US) Firefox Helper Mozilla Corporation Firefox 19.0.2 [Applications] :HKLM Mozilla Maintenance Service="C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe" ### MozillaMaintenanceService Mozilla Maintenance Service Installer Mozilla Corporation Firefox 19.0.2 [Applications] :HKLM NVIDIA Stereoscopic 3D Driver="C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask ### NVIDIAStereo Stereoscpic 3D driver Installer API NVIDIA Corporation Stereoscpic 3D driver Installer API 7.17.13.1407 [Applications] :HKLM OCCT 4.4.0=C:\Program Files (x86)\OCCTPT\uninst.exe ### OCCT [Applications] :HKLM Microsoft Office Professional 2010="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall SINGLEIMAGE /dll OSETUP.DLL ### Office14.SingleImage Microsoft Setup Bootstrapper Microsoft Corporation Microsoft Setup Bootstrapper 14.0.4755.1000 [Applications] :HKLM PowerISO="C:\Program Files (x86)\PowerISO\uninstall.exe" ### PowerISO PowerISO Setup Power Software Ltd PowerISO Setup 5.5.0.0 [Applications] :HKLM RealPlayer=C:\Program Files (x86)\Real\RealPlayer\Update\r1puninst.exe RealNetworks|RealPlayer|16.0 ### RealPlayer 16.0 Uninstaller Shell executable RealNetworks, Inc. Uninstaller Shell executable (32-bit) 16.0.1.18 [Applications] :HKLM RegClean Pro="C:\Program Files (x86)\RegClean Pro\unins000.exe" /silent ### RegClean Pro_is1 Setup/Uninstall [Applications] :HKLM RegRun Security Suite Platinum=C:\Program Files (x86)\Greatis\RegRunSuite\R3UR.exe ### RegRun Security Suite_is1 Uninstall Routine Greatis Software RegRun Security Suite 6.9 [Applications] :HKLM SMPlayer 0.8.3=C:\Program Files (x86)\SMPlayer\uninst.exe ### SMPlayer SMPlayer Installer (32-bit) SMPlayer 0.8.3 [Applications] :HKLM StarCraft II=C:\Program Files (x86)\Common Files\Blizzard Entertainment\StarCraft II (3)\Uninstall.exe ### StarCraft II Blizzard Uninstaller Blizzard Uninstaller 1, 0, 0, 1 [Applications] :HKLM The KMPlayer (remove only)="C:\Program Files (x86)\The KMPlayer\uninstall.exe" ### The KMPlayer [Applications] :HKLM Tweaking.com - Windows Repair (All in One)="C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\uninstall.exe" "/U:C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Uninstall\uninstall.xml" ### Tweaking.com - Windows Repair (All in One) Setup Application Indigo Rose Corporation Setup Factory Runtime 9.1.0.0 [Applications] :HKLM VLC media player 2.0.5=C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe ### VLC media player [Applications] :HKLM Blasterball 3="C:\Program Files (x86)\WildGames\Blasterball 3\Uninstall.exe" ### WT015801 Installer for Blasterball 3 WildTangent Blasterball 3 2.0.0.49 [Applications] :HKLM Yahoo! Toolbar=C:\PROGRA~2\Yahoo!\Common\UNYT_W~1.EXE ### Yahoo! Companion Yahoo! Toolbar Uninstall Setup Yahoo! Inc. [Applications] :HKLM Yahoo! Toolbar=C:\PROGRA~2\Yahoo!\Common\UNYT_W~1.EXE ### Yahoo! Toolbar Yahoo! Toolbar Uninstall Setup Yahoo! Inc. [Applications] :HKLM tools-freebsd=MsiExec.exe /X{003BFBBD-6C67-419E-A24D-0DCAFC3A5249} ### {003BFBBD-6C67-419E-A24D-0DCAFC3A5249} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Live Update 5="C:\Program Files (x86)\MSI\Live Update 5\unins000.exe" ### {009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1 Setup/Uninstall [Applications] :HKLM Who Is On My Wifi version 2.1.6="C:\Program Files (x86)\IO3O LLC\Who Is On My Wifi\unins000.exe" ### {010D45A1-093D-4534-8147-4E10E80F81CC}_is1 Setup/Uninstall [Applications] :HKLM Google Toolbar for Internet Explorer=MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C} ### {18455581-E099-4BA8-BC6B-F34B2F06600C} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM MSXML 4.0 SP3 Parser=MsiExec.exe /I{196467F1-C11F-4F76-858B-5812ADC83B94} ### {196467F1-C11F-4F76-858B-5812ADC83B94} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM tools-netware=MsiExec.exe /X{197597A7-AD33-4898-9D8E-73066818B464} ### {197597A7-AD33-4898-9D8E-73066818B464} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM MSXML 4.0 SP3 Parser (KB2758694)=MsiExec.exe /I{1D95BA90-F4F8-47EC-A882-441C99D30C1E} ### {1D95BA90-F4F8-47EC-A882-441C99D30C1E} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Google Toolbar for Internet Explorer="C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarManager_94DDE1EDD1CDF6A3.exe" /uninstall ### {2318C2B1-4965-11d4-9B18-009027A5CD4F} Google Toolbar Manager Google Inc. Google Toolbar for Internet Explorer 7, 4, 3607, 2246 [Applications] :HKLM Java 7 Update 17=MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217017FF} ### {26A24AE4-039D-4CA4-87B4-2F83217017FF} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM RealUpgrade 1.1=MsiExec.exe /I{28C2DED6-325B-4CC7-983A-1777C8F7FBAB} ### {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM HiJackThis=MsiExec.exe /X{45A66726-69BC-466B-A7A4-12FCBA4883D7} ### {45A66726-69BC-466B-A7A4-12FCBA4883D7} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Java Auto Updater ### {4A03706F-666A-4037-7777-5F2748764D10} [Applications] :HKLM SmartSound Quicktracks Plugin ### {4A7FDA4D-F4D7-4A49-934A-066D59A43C7E} [Applications] :HKLM Renesas Electronics USB 3.0 Host Controller Driver=MsiExec.exe /X{5442DAB8-7177-49E1-8B22-09A049EA5996} ### {5442DAB8-7177-49E1-8B22-09A049EA5996} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM CinemaNow Media Manager=MsiExec.exe /X{6C122441-1861-4CD7-B1C5-A163A6984E12} ### {6C122441-1861-4CD7-B1C5-A163A6984E12} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM RealNetworks - Microsoft Visual C++ 2008 Runtime=MsiExec.exe /X{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA} ### {7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Apple Software Update=MsiExec.exe /I{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ### {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM MSXML 4.0 SP2 (KB954430)=MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ### {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM NVIDIA PhysX=MsiExec.exe /I{8B922CF8-8A6C-41CE-A858-F1755D7F5D29} ### {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office Access MUI (English) 2010=MsiExec.exe /X{90140000-0015-0409-0000-0000000FF1CE} ### {90140000-0015-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office Excel MUI (English) 2010=MsiExec.exe /X{90140000-0016-0409-0000-0000000FF1CE} ### {90140000-0016-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-0409-0000-0000000FF1CE}" "{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" "1033" "0" ### {90140000-0016-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office PowerPoint MUI (English) 2010=MsiExec.exe /X{90140000-0018-0409-0000-0000000FF1CE} ### {90140000-0018-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0409-0000-0000000FF1CE}" "{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" "1033" "0" ### {90140000-0018-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office Publisher MUI (English) 2010=MsiExec.exe /X{90140000-0019-0409-0000-0000000FF1CE} ### {90140000-0019-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office Outlook MUI (English) 2010=MsiExec.exe /X{90140000-001A-0409-0000-0000000FF1CE} ### {90140000-001A-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0409-0000-0000000FF1CE}" "{1EEFF749-6F29-4F0B-AB08-4C6EA52AA110}" "1033" "0" ### {90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{1EEFF749-6F29-4F0B-AB08-4C6EA52AA110} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0409-0000-0000000FF1CE}" "{47894754-0FEC-4920-9A65-6C1E732587AC}" "1033" "0" ### {90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{47894754-0FEC-4920-9A65-6C1E732587AC} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0409-0000-0000000FF1CE}" "{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" "1033" "0" ### {90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office Word MUI (English) 2010=MsiExec.exe /X{90140000-001B-0409-0000-0000000FF1CE} ### {90140000-001B-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-0409-0000-0000000FF1CE}" "{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" "1033" "0" ### {90140000-001B-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office Proof (English) 2010=MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE} ### {90140000-001F-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0C0A-0000-0000000FF1CE}" "{C633216E-FF30-45B6-B2AB-21922A9353EF}" "1033" "0" ### {90140000-001F-0C0A-0000-0000000FF1CE}_Office14.SingleImage_{C633216E-FF30-45B6-B2AB-21922A9353EF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{1CBEDB37-C438-473F-8BA0-2535B0D237E2}" "1033" "0" ### {90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{1CBEDB37-C438-473F-8BA0-2535B0D237E2} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft OneNote 2010 (KB2760600) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{280E2D43-11CC-4ADE-A171-9286CCB5412B}" "1033" "0" ### {90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{280E2D43-11CC-4ADE-A171-9286CCB5412B} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{5DA2D071-A54C-47C0-83E5-43C63DBFD936}" "1033" "0" ### {90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{5DA2D071-A54C-47C0-83E5-43C63DBFD936} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{967EF02C-5C7E-4718-8FCB-BDC050190CCF}" "1033" "0" ### {90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{967EF02C-5C7E-4718-8FCB-BDC050190CCF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Filter Pack 2.0 (KB2553501) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{F0CF1EB7-3E57-4F85-843F-B3C79088510D}" "1033" "0" ### {90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F0CF1EB7-3E57-4F85-843F-B3C79088510D} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0409-1000-0000000FF1CE}" "{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979}" "1033" "0" ### {90140000-002A-0409-1000-0000000FF1CE}_Office14.SingleImage_{D6C6B46A-6CE1-4561-84A0-EFD58B8AB979} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office Proofing (English) 2010=MsiExec.exe /X{90140000-002C-0409-0000-0000000FF1CE} ### {90140000-002C-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office Single Image 2010=MsiExec.exe /X{90140000-003D-0000-0000-0000000FF1CE} ### {90140000-003D-0000-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2598039) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{01F2485C-FAEE-47E7-986E-B4F2FFC22D57}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{01F2485C-FAEE-47E7-986E-B4F2FFC22D57} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2553091)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{07CA44F3-F5B3-4D12-8C91-EDC5FE91D45C}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{07CA44F3-F5B3-4D12-8C91-EDC5FE91D45C} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2553096)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{10802A6D-EDBF-4383-BCBD-9D5B32F56D35}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{10802A6D-EDBF-4383-BCBD-9D5B32F56D35} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{18B3CF2A-73F7-4716-B1AE-86D68726D408}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{18B3CF2A-73F7-4716-B1AE-86D68726D408} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2289078)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{1D1A4F08-2F17-475B-BA72-476CE5992FEE}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{1D1A4F08-2F17-475B-BA72-476CE5992FEE} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{35698CB7-AAA2-4577-B505-DBFF504AEF23}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{35698CB7-AAA2-4577-B505-DBFF504AEF23} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft OneNote 2010 (KB2589345) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{3613AECC-1454-4DDD-AC36-C42DC16D6DEE}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{3613AECC-1454-4DDD-AC36-C42DC16D6DEE} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{38990592-F6A1-4A26-96C7-0600E36AE794}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38990592-F6A1-4A26-96C7-0600E36AE794} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft InfoPath 2010 (KB2553322) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{3D0733E7-4A94-4BE6-97DA-9F09A26ADE0D}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{3D0733E7-4A94-4BE6-97DA-9F09A26ADE0D} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2494150)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{48E1B6C2-7299-4F3F-AA63-42F0ACE55AA4} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{4D98EEEA-A31B-42FA-991A-F989594F4DA5}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4D98EEEA-A31B-42FA-991A-F989594F4DA5} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{61461470-8168-4F4B-97B7-617AF354F028}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{61461470-8168-4F4B-97B7-617AF354F028} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2202188)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{86B7A074-265D-420C-9E1E-7A920EF0ECA7}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{86B7A074-265D-420C-9E1E-7A920EF0ECA7} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{9FD050BA-79BD-42A4-9E24-E8E13F1C775F}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9FD050BA-79BD-42A4-9E24-E8E13F1C775F} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Word 2010 (KB2345000)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A6D422EE-1196-45EE-B9AE-6B5B64975E8B}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{A6D422EE-1196-45EE-B9AE-6B5B64975E8B} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2553065)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{A8686D24-1E89-43A1-973E-05A258D2B3F8}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{A8686D24-1E89-43A1-973E-05A258D2B3F8} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2598243) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{B5489515-6DD4-47A5-AE4E-64751D15F10E}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B5489515-6DD4-47A5-AE4E-64751D15F10E} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Visio Viewer 2010 (KB2597981) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{B75541D4-3970-4CC7-934B-D48F8C26DCA5}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B75541D4-3970-4CC7-934B-D48F8C26DCA5} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Excel 2010 (KB2597166) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{B76D8C6D-1F13-42A7-9931-D7504CB89D6D}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B76D8C6D-1F13-42A7-9931-D7504CB89D6D} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2523113)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{C0FF04BF-A05E-408B-81CA-B7FACDA508A3}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{C0FF04BF-A05E-408B-81CA-B7FACDA508A3} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Publisher 2010 (KB2409055)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{C3C277D5-36E3-4B1A-926A-175B2BC019CF}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{C3C277D5-36E3-4B1A-926A-175B2BC019CF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{C8694FF0-8203-483B-A07A-2BC40433167D}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{C8694FF0-8203-483B-A07A-2BC40433167D} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2553447) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{CC39BA1F-7A25-440C-86A7-77E35D8CC88C}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{CC39BA1F-7A25-440C-86A7-77E35D8CC88C} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2553371) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{CCC48FE2-175F-4CDE-82DF-F7BC4672C1A3}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{CCC48FE2-175F-4CDE-82DF-F7BC4672C1A3} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{DCE6D0BF-93E4-46C5-9A7C-F1EFF9707C02}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DCE6D0BF-93E4-46C5-9A7C-F1EFF9707C02} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{ED31DE9A-3E13-4E2C-9106-E0D8AFFB9FA6} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2566458)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{EFB525A0-E1C0-4E32-9968-FE401BC87363}" "1033" "0" ### {90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{EFB525A0-E1C0-4E32-9968-FE401BC87363} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office Shared MUI (English) 2010=MsiExec.exe /X{90140000-006E-0409-0000-0000000FF1CE} ### {90140000-006E-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0409-0000-0000000FF1CE}" "{4560037C-E356-444A-A015-D21F487D809E}" "1033" "0" ### {90140000-006E-0409-0000-0000000FF1CE}_Office14.SingleImage_{4560037C-E356-444A-A015-D21F487D809E} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0409-0000-0000000FF1CE}" "{73E67A3A-8D61-44EF-90C2-1697C3DBE668}" "1033" "0" ### {90140000-006E-0409-0000-0000000FF1CE}_Office14.SingleImage_{73E67A3A-8D61-44EF-90C2-1697C3DBE668} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office OneNote MUI (English) 2010=MsiExec.exe /X{90140000-00A1-0409-0000-0000000FF1CE} ### {90140000-00A1-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office 2010 Service Pack 1 (SP1)="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0409-0000-0000000FF1CE}" "{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF}" "1033" "0" ### {90140000-00A1-0409-0000-0000000FF1CE}_Office14.SingleImage_{6BD185A0-E67F-4F77-8BCD-E34EA6AE76DF} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition="C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0409-0000-0000000FF1CE}" "{9865DC3A-2898-48D9-B96A-46397571C934}" "1033" "0" ### {90140000-00A1-0409-0000-0000000FF1CE}_Office14.SingleImage_{9865DC3A-2898-48D9-B96A-46397571C934} Microsoft Office update uninstall exe Microsoft Corporation Microsoft Office 2010 14.0.4730.1010 [Applications] :HKLM Microsoft Office Shared Setup Metadata MUI (English) 2010=MsiExec.exe /X{90140000-0115-0409-0000-0000000FF1CE} ### {90140000-0115-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Office Access Setup Metadata MUI (English) 2010=MsiExec.exe /X{90140000-0117-0409-0000-0000000FF1CE} ### {90140000-0117-0409-0000-0000000FF1CE} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Intel(R) Processor ID Utility=MsiExec.exe /X{961C5B66-92B7-47C6-923B-AB492B5E55D4} ### {961C5B66-92B7-47C6-923B-AB492B5E55D4} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM HP Update=MsiExec.exe /X{97486FBE-A3FC-4783-8D55-EA37E9D171CC} ### {97486FBE-A3FC-4783-8D55-EA37E9D171CC} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Google Update Helper=MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ### {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM RealNetworks - Microsoft Visual C++ 2010 Runtime=MsiExec.exe /X{AAECF7BA-E83B-4A10-87EA-DE0B333F8734} ### {AAECF7BA-E83B-4A10-87EA-DE0B333F8734} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM tools-solaris=MsiExec.exe /X{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4} ### {AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Adobe Reader XI (11.0.02)=MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-AB0000000001} ### {AC76BA86-7AD7-1033-7B44-AB0000000001} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM tools-winPre2k=MsiExec.exe /X{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D} ### {AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM QuickTime=MsiExec.exe /I{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A} ### {AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM DirectX 9 Runtime=MsiExec.exe /I{AF9E97C1-7431-426D-A8D5-ABE40995C0B1} ### {AF9E97C1-7431-426D-A8D5-ABE40995C0B1} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Spybot - Search & Destroy="C:\Program Files (x86)\Spybot - Search & Destroy\unins000.exe" ### {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1 Setup/Uninstall [Applications] :HKLM Apple Application Support=MsiExec.exe /I{CCE825DB-347A-4004-A186-5F4A6FDD8547} ### {CCE825DB-347A-4004-A186-5F4A6FDD8547} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM tools-linux=MsiExec.exe /X{D102611A-6466-4101-A51D-51069303AC65} ### {D102611A-6466-4101-A51D-51069303AC65} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM RealDownloader=MsiExec.exe /X{EA1FAE0F-2354-4E32-B423-ABAE8E358F91} ### {EA1FAE0F-2354-4E32-B423-ABAE8E358F91} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219=MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} ### {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM Microsoft Games for Windows - LIVE=MsiExec.exe /X{F97E3841-CA9D-4964-9D64-26066241D26F} ### {F97E3841-CA9D-4964-9D64-26066241D26F} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [Applications] :HKLM tools-windows=MsiExec.exe /X{FFD9383C-01D5-4897-A954-43AF599AED30} ### {FFD9383C-01D5-4897-A954-43AF599AED30} Windows® installer Microsoft Corporation Windows Installer - Unicode 5.0.7600.16385 [MD5] [E04F07B9B3A91A8FFA0F788DBD6EED04][1 36352 ]C:\PROGRA~2\GLARYU~1\CONTEX~1.DLL [A45F4416A75C6E40599C81D526257197][2 335943 ]C:\PROGRA~2\GREATIS\REGRUN~1\RRSHELL.DLL [0A63D9A102C3C0209465EA60199E6882][1 561552 ]C:\PROGRA~2\MICROS~3\OFFICE14\URLREDIR.DLL [022C2F6DCCDFA0AD73024D254E62AFAC][1 1879896 ]C:\PROGRA~2\SPYBOT~1\SDHELPER.DLL [40947436A70E0034E41123DF5A0A7702][1 121704 6C27E1DD1C1533FEB6435190A5074300AC2A9822 ]C:\PROGRAM FILES (X86)\BONJOUR\MDNSNSP.DLL [127D4D0E9F78834FFD1EEEA3FCFB47C1][1 127352 ]C:\PROGRAM FILES (X86)\CINEMANOW\CINEMANOW MEDIA MANAGER\CINEMANOWSVC.EXE [F9616D202B0124D373D2D82A4AA66B1D][1 60568 B331BC1AA27B2E7BDBF88E8BA5CAD0C29AECC29D ]C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ACROBAT\ACTIVEX\ACROIEHELPERSHIM.DLL [3927397AC60D943DAF8808AFFED582B7][1 65192 D95D0163CB309EE15A36ECFE5CB0680D01993B5C ]C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ARMSVC.EXE [FC581F9CBDDA9F68DFA25FC6AE84D72D][1 657888 8F2CCD590ACCD9404E08B42053EF387BE237A2BB ]C:\PROGRAM FILES (X86)\COMMON FILES\APPLE\INTERNET SERVICES\SHELLSTREAMS.DLL [67A95B9D129ED5399E7965CD09CF30E7][1 450848 5B17F63843294FD82EEB8A4982D19F8408F33D8D ]C:\PROGRAM FILES (X86)\COMMON FILES\LOGISHRD\LVMVFM\UMVPFSRV.EXE [9EB245FA86E69033D844913E6FF4F39E][1 988488 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\HELP\HXDS.DLL [81E7E920312D372CF57A817049AC7C76][1 49024 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\OFFICE14\MSOXMLMF.DLL [9D10F99A6712E28F8ACD5641E3A7EA6B][1 149352 ]C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\SOURCE ENGINE\OSE.EXE [CD569FA91EC6F59D045C19D0D3850F44][1 647216 ]C:\PROGRAM FILES (X86)\COMMON FILES\PURE NETWORKS SHARED\PLATFORM\NMSRVC.EXE [130203D3313A0323DC333B941C3AA87A][1 133168 ]C:\PROGRAM FILES (X86)\COMMON FILES\PURE NETWORKS SHARED\PLATFORM\PURESP4.DLL [5D4BC124FAAE6730AC002CDB67BF1A1C][1 194032 A0518FF004E75F16AED891285B4D26A8BEDCBF5B ]C:\PROGRAM FILES (X86)\GOOGLE\COMMON\GOOGLE UPDATER\GOOGLEUPDATERSERVICE.EXE [B9497C5ACAEA521663BFFBB321DD3AFA][1 192144 B8CA4113E3346322F96CF99A3FB017B8C166F16A ]C:\PROGRAM FILES (X86)\GOOGLE\GOOGLE TOOLBAR\GOOGLETOOLBAR_32.DLL [F02A533F517EB38333CB12A9E8963773][1 136176 ]C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE [B76DAF4243C1EEA90E59410677DDA696][1 65304 4610FDDB1CA4788BB5082DA0DF86BE09C58E33D0 ]C:\PROGRAM FILES (X86)\GREATIS\REGRUNSUITE\BOOTLOGSERVICE.EXE [021895DFB2B72AFC9A84F4B481AB392B][2 8503296 F32038C608CCEB92736D579DCFCE817F0120FB87 ]C:\PROGRAM FILES (X86)\GREATIS\REGRUNSUITE\REGRUN2.EXE [07C6873E45DAEDB05643B699647056CA][2 1802240 8329A08D6FD7798FEA923815C9585B3D7EA868AB ]C:\PROGRAM FILES (X86)\GREATIS\REGRUNSUITE\REGRUNCENTER.EXE [F743A93B7B25D6C6BE643203CBC87239][1 1123608 3D35C6872B589538967D99E132DDE3F063B60E59 ]C:\PROGRAM FILES (X86)\GREATIS\REGRUNSUITE\WATCHDOG.EXE [27861540F6A834218C9ED6E2FE75E32B][1 170912 AC8265B742905FA723E21ED14CA7F3518C669019 ]C:\PROGRAM FILES (X86)\JAVA\JRE7\BIN\JP2SSV.DLL [0E0D229CC5AD08ADB848878FD167E0C5][1 461216 2DB8D90E60D3AA3B86168A6FC26662B372D4C917 ]C:\PROGRAM FILES (X86)\JAVA\JRE7\BIN\SSV.DLL [8A7C8F4C713E70D73946833D76B77035][1 115608 7EDCF66C0EADE0F6EC1E3B234A95349F282FE6B1 ]C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\MAINTENANCESERVICE.EXE [1B32C54B95121AB1683C7B83B2DB4B96][1 14136 5F8356FFA8201F338DD2EA979EB47881A6DB9F03 ]C:\PROGRAM FILES (X86)\MSI\LIVE UPDATE 5\NTIOLIB_X64.SYS [78216A10BF8B200890A88D8820F33F14][1 383264 980889A40DADF9D31AC3F268A73A5CE4B612BDA2 ]C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\3D VISION\NVSCPAPISVR.EXE [89525CC2DBAD44F7199B9CC188B3F9C5][1 39056 A17AD6ED4F3541AA4FA8763A2AE2C4E66BFB0F02 ]C:\PROGRAM FILES (X86)\REALNETWORKS\REALDOWNLOADER\RNDLRESOLVERSVC.EXE [0C9A0DFC59B49EAF11C96262C5F758D0][1 7853400 3B75943EA8E9F9A398A7639B5DA4D3F6EEBF0CE0 ]C:\PROGRAM FILES (X86)\REGCLEAN PRO\REGCLEANPRO.EXE [A15069EEC83EBC54150564B2585CFDBA][1 457200 ]C:\PROGRAM FILES (X86)\ROXIO\BACKONTRACK\DISASTER RECOVERY\SAIBSVC.EXE [ -2][0 -1 ]C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\WMPNETWK.EXE [39BFD86634004B7C0D3FD81D2CBB8F92][1 4247040 ]C:\PROGRAM FILES (X86)\WINDOWS NT\ACCESSORIES\WORDPAD.EXE [9E74ACD50AE9CE20603824A1223CA4F9][1 1525088 FC290791A3F96F732160D1C7071971141099393B ]C:\PROGRAM FILES (X86)\YAHOO!\COMPANION\INSTALLS\CPN0\YT.DLL [EBBCD5DFBB1DE70E8F4AF8FA59E401FD][1 462184 5CA966B9A5FF4ECD0E139E21B3E30F3EA48E1A88 ]C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE [61BFFB5F57AD12F83AB64B7181829B34][1 4925184 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\OFFICESOFTWAREPROTECTIONPLATFORM\OSPPSVC.EXE [92D594450A59686DA534E9BC5782EF58][1 1341664 5B9E4A714F369E16D310E421DBB66526286298DC ]C:\PROGRAM FILES\ESET\ESET SMART SECURITY\X86\EKRN.EXE [232BC6F4F76DB4B9B81917EF471574B5][1 175704 120E5681FEEE60FA3B06E5C5ACFB101EEE348F23 ]C:\PROGRAM FILES\ESET\ESET SMART SECURITY\X86\SHELLEXT.DLL [A8EBEBCD9F5C49475194099FCD276992][1 763424 F42E9FA9AF9B79FE20A7DC63FE781BD10CD87B1C ]C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE [581D88B25C4D4121824FED2CA38E562F][1 140672 EBC80578EB6492E1389BE01A81D0DA2C62A8BCC1 ]C:\PROGRAM FILES\SUPERANTISPYWARE\SASCORE64.EXE [3289766038DB2CB14D07DC84392138D5][1 14928 D04286973C48C767C8723F4094396BDED792EA90 ]C:\PROGRAM FILES\SUPERANTISPYWARE\SASDIFSV64.SYS [58A38E75F3316A83C23DF6173D41F2B5][1 12368 9FF00F34B5DFAE4BE15ED8E59E9C7A05640CBDC3 ]C:\PROGRAM FILES\SUPERANTISPYWARE\SASKUTIL64.SYS [CF318F60A84F15AF352439465A8D05F4][1 1011712 ]C:\PROGRAM FILES\WINDOWS DEFENDER\MPSVC.DLL [9BF014C20F91D97055532F2F5496E7BD][1 1525248 ]C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE [F2F27F6EC3B98EBBA447F913508DE8E4][1 1728000 ]C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\PHOTOVIEWER.DLL [30A23A61E651C7487407CF74176C6AB1][2 141824 ]C:\PROGRAM FILES\WINRAR\RAREXT32.DLL [58FF2910C998D943CF0C4B98E6DCD08C][1 540328 F01DD76EB42D5708911BCF8FC190909E75C06CA2 ]C:\PROGRAMDATA\REALNETWORKS\REALDOWNLOADER\BROWSERPLUGINS\IE\RNDLBROWSERRECORDPLUGIN.DLL [47C071994C3F649F23D9CD075AC9304A][1 696320 ]C:\WINDOWS\EHOME\EHRECVR.EXE [4705E8EF9934482C5BB488CE28AFC681][1 127488 ]C:\WINDOWS\EHOME\EHSCHED.EXE [0862495E0C825893DB75EF44FAEA8E93][1 2870272 E4B9A40FA341BCB82F20C9C3CEFAD84825E0D194 ]C:\WINDOWS\EXPLORER.EXE [D88040F816FDA31C3B466F0FA0918F29][1 66384 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V2.0.50727\MSCORSVW.EXE [6D7C8A951AF6AD6835C029B3CB88D333][1 104912 9D1B94CDAF745B73102A72C7F7007B28811F83F5 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\MSCORSVW.EXE [D1CEEA2B47CB998321C579651CE3E4F8][1 89920 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V2.0.50727\MSCORSVW.EXE [2F2BE70D3E02B6FA877921AB9516D43C][1 856384 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\INFOCARD.EXE [8D89E3131C27FDD6932189CB785E1B7A][1 42840 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE [108FB6DDB69E537A2EA53F425363FAE5][1 51648 D95BFF9BC7C9CD0635B91F37E4FEC72D70952D64 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\ASPNET_STATE.EXE [86329C35FF23CFEF0FB6C0023BA06BCE][1 123856 E3529CCA09DD0E6C1D44A5BBE310074B6D53BD94 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\MSCORSVW.EXE [5243CFC2E7161C91C2B355240035B9E4][1 139696 8C49D449D546A3DDDA70B09B7071D6F70CE0A631 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SMSVCHOST.EXE [840F7FB849F5887A49BA18C13B2DA920][1 194048 ]C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE [4B78B431F225FD8624C5655CB1DE7B61][1 72192 ]C:\WINDOWS\SYSTEM32\AELUPSVC.DLL [3290D6946B5E30E70414990574883DDB][1 79360 ]C:\WINDOWS\SYSTEM32\ALG.EXE [316663537A203220F15B9D426D5B44F8][1 6656 ]C:\WINDOWS\SYSTEM32\APISETSCHEMA.DLL [0BC381A15355A3982216F7172F545DE1][1 32256 ]C:\WINDOWS\SYSTEM32\APPIDSVC.DLL [D065BE66822847B7F127D1F90158376E][1 70144 ]C:\WINDOWS\SYSTEM32\APPINFO.DLL [4ABA3E75A76195A3E38ED2766C962899][1 193536 ]C:\WINDOWS\SYSTEM32\APPMGMTS.DLL [07721A77180EDD4D39CCB865BF63C7FD][1 676864 ]C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL [8B7F8E882A649D81CEA1EDE9BBB68FFF][1 777728 ]C:\WINDOWS\SYSTEM32\AUTOCHK.EXE [B20B5FA5CA050E9926E4D1DB81501B32][1 114688 ]C:\WINDOWS\SYSTEM32\AXINSTSV.DLL [FDE360167101B4E45A96F939F388AEB0][1 100864 ]C:\WINDOWS\SYSTEM32\BDESVC.DLL [4992C609A6315671463E30F6512BC022][1 703488 ]C:\WINDOWS\SYSTEM32\BFE.DLL [6B054C67AAA87843504E8E3C09102009][1 136704 12C8822E4A6B78C1F781603F70CAF1A33C202C49 ]C:\WINDOWS\SYSTEM32\BROWSER.DLL [95F9C2976059462CBBF227F7AAB10DE9][1 83968 ]C:\WINDOWS\SYSTEM32\BTHSERV.DLL [39762030FFF791E031C86AFB4223652F][1 899584 ]C:\WINDOWS\SYSTEM32\BUBBLES.SCR [312E2F82AF11E79906898AC3E3D58A1F][1 80384 ]C:\WINDOWS\SYSTEM32\CERTPROP.DLL [02F31439AF6499B530AC285C0863BB9E][1 780224 ]C:\WINDOWS\SYSTEM32\CI.DLL [FF60401F1C659CA2ED4BAE85D3FD14DA][1 19456 E9B7A0DC4224E1F28FB28B8FD0319E0C4B683A39 ]C:\WINDOWS\SYSTEM32\CISVC.EXE [FE1EC06F2253F691FE36217C592A0206][1 367696 ]C:\WINDOWS\SYSTEM32\CLFS.SYS [BAF19B633933A9FB4883D27D66C39E9A][1 182272 11AFB4D08974AA2E427EFB820546143CABB481E8 ]C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL [873FBF927C06E5CEE04DEC617502F8FD][1 689152 ]C:\WINDOWS\SYSTEM32\CSCSVC.DLL [A6C09924C6730DE8DEED9890A12AA691][1 569344 ]C:\WINDOWS\SYSTEM32\DDRAW.DLL [3CEC7631A84943677AA8FA8EE5B6B43D][1 291328 ]C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL [CE3B9562D997F69B330D181A8875960F][1 314368 ]C:\WINDOWS\SYSTEM32\DHCPCORE.DLL [A8EDB86FC2A4D6D1285E4C70384AC35A][1 9728 ]C:\WINDOWS\SYSTEM32\DLLHOST.EXE [85CF424C74A1D5EC33533E1DBFF9920A][1 182272 F1083FDF4B3712BA01E8B0B844BEA60C5B84E2AF ]C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL [14452ACDB09B70964C8C21BF80A13ACB][1 252416 ]C:\WINDOWS\SYSTEM32\DOT3SVC.DLL [8C2BA6BEA949EE6E68385F5692BAFB94][1 162816 ]C:\WINDOWS\SYSTEM32\DPS.DLL [A87D604AEA360176311474C87A63BB88][1 229888 38DBE54A022B6C73EDBDB8BF5CBA32A882D2DF2A ]C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS [6F11E88748CDEFD2F76AA215F97DDFE5][1 334416 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS [63B05A0420CE4BF0E4AF6DCC7CADA254][1 12288 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPIPMI.SYS [2F6B34B83843F0C5118B63AC634F5BF4][1 491088 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADP94XX.SYS [597F78224EE9224EA1A13D6350CED962][1 339536 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADPAHCI.SYS [E109549C90F62FB570B9540C4B148E54][1 182864 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADPU320.SYS [DB9D6C6B2CD95A9CA414D045B627422E][1 499200 7F37AB0B1ECB64096CCBBE33CED2938EA87276C9 ]C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS [7ECFF9B22276B73F43A99A15A6094E90][1 60416 ]C:\WINDOWS\SYSTEM32\DRIVERS\AGILEVPN.SYS [608C14DBA7299D8CB6ED035A68A15799][1 61008 ]C:\WINDOWS\SYSTEM32\DRIVERS\AGP440.SYS [5812713A477A3AD7363C7438CA2EE038][1 15440 ]C:\WINDOWS\SYSTEM32\DRIVERS\ALIIDE.SYS [1FF8B4431C353CE385C875F194924C0C][1 15440 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDIDE.SYS [7024F087CFF1833A806193EF9D22CDA9][1 64512 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS [1E56388B3FE0D031C44144EB8C4D6217][1 60928 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS [EC7EBAB00A4D8448BAB68D1E49B4BEB9][1 107904 4385DA308393DBCC0B198A694C20A20487B587F9 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS [F67F933E79241ED32FF46A4F29B5120B][1 194128 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS [DB27766102C7BF7E95140A2AA81D042E][1 27008 2A4CF63E8B183BD1EA63553277C75D965D468968 ]C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS [42FD751B27FA0E9C69BB39F39E409594][1 61440 ]C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS [C484F8CEB1717C540242531DB7845C4E][1 87632 ]C:\WINDOWS\SYSTEM32\DRIVERS\ARC.SYS [019AF6924AEFE7839F61C830227FE79C][1 97856 ]C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS [769765CE2CC62867468CEA93969B2242][1 23040 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS [02062C0B390B7729EDC9E69C680A6F3C][1 24128 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS [AA2186F7944104A16D6ED176ED462CEC][1 155728 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPORT.SYS [4C05242DC361A217223E9B8EC2B3A76B][1 39768 C83A39CB16A5CD3E075BF35712C8FA1F3E1D9E62 ]C:\WINDOWS\SYSTEM32\DRIVERS\AVGTPX64.SYS [B5ACE6968304A3900EEB1EBFD9622DF2][1 270848 ]C:\WINDOWS\SYSTEM32\DRIVERS\B57ND60A.SYS [16A47CE2DECC9B099349A5F840654746][1 6656 ]C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS [61583EE3C3A17003C4ACD0475646B4D3][1 45056 ]C:\WINDOWS\SYSTEM32\DRIVERS\BLBDRIVE.SYS [19D20159708E152267E53B66677A4995][1 90624 4C719C75E6DD9461FD7D3B4ED6DA7D153CBB1376 ]C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS [F09EEE9EDC320B5E1501F749FDE686C8][1 18432 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTLO.SYS [B114D3098E9BDB8BEA8B053685831BE6][1 8704 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRFILTUP.SYS [43BEA8D483BF1870F018E2D02E06A5BD][1 286720 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRSERID.SYS [A6ECA2151B08A09CACECA35C07F05B42][1 47104 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRSERWDM.SYS [B79968002C277E869CF38BD22CD61524][1 14976 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBMDM.SYS [A87528880231C54E75EA7A44943B38BF][1 14720 ]C:\WINDOWS\SYSTEM32\DRIVERS\BRUSBSER.SYS [9DA669F11D1F894AB4EB69BF546A42E8][1 72192 ]C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS [3E5B191307609F7514148C6832BB0842][1 468480 ]C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS [B8BD2BB284668C84865658C77574381A][1 92160 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS [83D2D75E1EFB81B3450C18131443F7DB][1 147456 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS [D7CD5C4E1B71FA62050515314CFB52CF][1 45568 ]C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS [62F1ED63F0CB0B5A2F65D15A6490C2FD][1 178752 ]C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS [0840155D0BDDF1190F84A663C284BD33][1 17664 ]C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS [E19D3F095812725D88F9001985B94EDD][1 17488 ]C:\WINDOWS\SYSTEM32\DRIVERS\CMDIDE.SYS [CA7720B73446FDDEC5C69519C1174C98][1 459216 D336646D1623092F6739FD16E0D83492039F26D6 ]C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS [102DE219C3F61415F964C88E9085AD14][1 21584 ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPBATT.SYS [F26B3A86F6FA87CA360B879581AB4123][1 38912 ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPOSITEBUS.SYS [3E588B60EC061686BA05D33574A344C6][1 39504 ]C:\WINDOWS\SYSTEM32\DRIVERS\CRASHDMP.SYS [1C827878A998C18847245FE1F34EE597][1 24144 ]C:\WINDOWS\SYSTEM32\DRIVERS\CRCDISK.SYS [4A6173C2279B498CD8F57CAE504564CB][1 514048 ]C:\WINDOWS\SYSTEM32\DRIVERS\CSC.SYS [9C253CE7311CA60FC11C774692A13208][1 102400 3CDD9B42A49CCA9AD3C966BDD633A618E8FCBA8A ]C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS [13096B05847EC78F0977F2C0F79E9AB3][1 40448 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISCACHE.SYS [9819EEE8B5EA3784EC4AF3B137A5244C][1 73280 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS [9B19F34400D24DF84C858A421C205754][1 5632 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS [BF24D6F2ED97FE830BFD52B246F98E67][1 16896 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS [FEDE0629ECB23650D48989517D4914DA][1 98816 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXG.SYS [1633B9ABF52784A1331476397A48CBEF][1 982912 507EEA7335BEB2FEE67EAB69E106AB7C8EACEA93 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS [398904F1FBF13CEF0FCB822E9CA5F2D5][1 213416 CFE472BA5A5856EB04EEB07B28E4E6D90366F638 ]C:\WINDOWS\SYSTEM32\DRIVERS\EAMONM.SYS [9E39134330C18CBAC0F24C1283701D7E][1 150616 D9C3B97D74F70389D031AE9632F069C9078A7D26 ]C:\WINDOWS\SYSTEM32\DRIVERS\EHDRV.SYS [0E5DA5369A0FCAEA12456DD852545184][1 530496 ]C:\WINDOWS\SYSTEM32\DRIVERS\ELXSTOR.SYS [392EC4EA0C265F5BC50D057BEAA593CD][1 190232 77A5D37FCB527E9A35A7842FD4F32044E50184B4 ]C:\WINDOWS\SYSTEM32\DRIVERS\EPFW.SYS [0C9EC63C5BAE9506161F14B8A5C10280][1 59440 857AFF92BFC15DFA67F73737059150F5376D56A3 ]C:\WINDOWS\SYSTEM32\DRIVERS\EPFWLWF.SYS [AD03E0C95E750F3FBE84EDA87B2C4E08][1 58416 5F92287D8C9A94A6308B51940C19CFB3E3574481 ]C:\WINDOWS\SYSTEM32\DRIVERS\EPFWWFP.SYS [34A3C54752046E79A126E15C51DB409B][1 9728 ]C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS [DC5D737F51BE844D8C82C695EB17372F][1 3286016 ]C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS [D765D19CD8EF61F650C384F62FAC00AB][1 29696 ]C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS [655661BE46B5F5F3FD454E2C3095B930][1 70224 ]C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS [5F671AB5BC87EEA04EC38A6CD5962A47][1 34304 ]C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS [C172A0F53008EAEB8EA33FE10E177AF5][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS [F7866AF72ABBAF84B1FA5AA195378C59][1 290368 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS [D3E3F93D67821A2DB2B3D9FAC2DC2064][1 22896 A05784B6CA85EA16748D748DE40CEB6DB68160C2 ]C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS [D43703496149971890703B4B1B723EAC][1 55376 ]C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS [AE87BA80D0EC3B57126ED2CDC15B24ED][1 223448 ]C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS [2FFDCD3E5ABAC88C3C193F3AC3360ED9][1 287576 323A5FE88AC624BF02459F8A996200B75C57F894 ]C:\WINDOWS\SYSTEM32\DRIVERS\FWPKCLNT.SYS [8C778D335C9D272CFD3298AB02ABE3B6][1 65088 ]C:\WINDOWS\SYSTEM32\DRIVERS\GAGP30KX.SYS [F2523EF6460FC42405B12248338AB2F0][1 31232 ]C:\WINDOWS\SYSTEM32\DRIVERS\HCW85CIR.SYS [0A49913402747A0B67DE940FB42CBDBB][1 122368 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS [6410F6F415B2A5A9037224C41DA8BF12][1 350208 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS [A6518DCC42F7A6E999BB3BEA8FD87567][1 56344 65CE5C5FCA38058E8A5B159B0E6786FEE149F3BC ]C:\WINDOWS\SYSTEM32\DRIVERS\HECIX64.SYS [78E86380454A7B10A5EB255DC44A355F][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS [7FD2A313F7AFE5C4DAB14798C48DD104][1 100864 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS [685FEC2407FC121EB937CB658B3C0F35][1 76288 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS [0A77D29F311B88CFAE3B13F9C1A73825][1 46592 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS [49EE2E52E6CD03947DAD72F65367BE06][1 32896 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS [B3BF6B5B50006DEF50B66306D99FCF6F][1 30208 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS [0886D440058F203EBA0E1825E4355914][1 77888 ]C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS [CEE049CAC4EFA7F4E1E4AD014414A5D4][1 751616 ]C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS [F17766A19145F111856378DF337A5D79][1 14416 ]C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS [FA55C73D4AFFA7EE23AC4BE53B4592D3][1 105472 ]C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS [B75E45C564E944A2657167D197AB29DA][1 410496 ACE0CCE35674B333D26E38303EABB8EDC28D73C4 ]C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS [5C18831C61933628F5BB0EA2675B9D21][1 44112 ]C:\WINDOWS\SYSTEM32\DRIVERS\IIRSP.SYS [F00F20E70C6EC3AA366910083A0518AA][1 16960 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS [ADA036632C664CAA754079041CF1F8C1][1 62464 ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS [722DD294DF62483CECAAE6E094B4D695][1 82944 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS [E2B4A4494DB7CB9B89B55CA268C337C5][1 78848 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS [AF9B39A7E7B6CAA203B3862582E9F2D0][1 116224 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS [3ABF5E7213EB28966D55D58B515D5CE9][1 17920 ]C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS [2F7B28DC3E1183E5EB418DF55C204F38][1 20544 ]C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS [BC02336F1CBA7DCC7D1213BB588A68A5][1 50768 ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS [0705EFF5B42A9DB58548EEC3B26BB484][1 33280 2B09AF2317078BF4322B8FBE24C8518ADE5D5CEB ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS [5C7AF4A20F5BF67042B2E613D123D111][1 243712 ]C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS [4F4B5FDE429416877DE7143044582EB5][1 95088 DEC6AF6A38F7181D0259405D8DCA0A258DC2C08E ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS [6F40465A44ECDC1731BEFAFEC5BDD03C][1 152432 1C73165EA48FFAB8A4118C8ACB528C771D4A21BE ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS [6869281E78CB31A43E969F06B57347C4][1 20992 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS [1538831CF8AD2979A04C423779465827][1 60928 ]C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS [1A93E54EB0ECE102495A51266DCDB6A6][1 114752 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_FC.SYS [1047184A9FDC8BDBFF857175875EE810][1 106560 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS [30F5C0DE1EE8B5BC9306C1F0E4A75F93][1 65600 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2.SYS [0504EACAFF0D3C8AED161C4B0D369D4A][1 115776 ]C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SCSI.SYS [43D0F98E1D56CCDDB0D5254CFF7B356E][1 113152 ]C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS [0C85B2B6FB74B36A251792D45E0EF860][1 351136 99977784874FA2B00623AC39EB00C7661CA3F2AF ]C:\WINDOWS\SYSTEM32\DRIVERS\LVRS64.SYS [FF3A488924B0032B1A9CA6948C1FA9E8][1 4865568 5DBE54DE7069B1F911C40B84671C16B258B426F5 ]C:\WINDOWS\SYSTEM32\DRIVERS\LVUVC64.SYS [A55805F747C6EDB6A9080D7C633BD0F4][1 35392 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS.SYS [BAF74CE0072480C3B6B7C13B2A94D6B3][1 284736 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS [800BA92F7010378B09F9ED9270F07137][1 40448 ]C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS [B03D591DC7DA45ECE20B3B467E6AADAA][1 30208 ]C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS [7D27EA49F3C1F687D357E77A470AEA99][1 49216 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS [D3BF052C40B0C4166D9FD86A4288C1E6][1 31232 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS [791AF66C4D0E7C90A3646066386FB571][1 94784 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS [A44B420D30BD56E145D6A2BC8768EC58][1 155008 56ED01BC0D4072007C973C79D088FA4B49BE72D1 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPIO.SYS [6C38C9E45AE0EA2FA5E551F2ED5E978F][1 77312 ]C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS [30524261BB51D96D6FCBAC20C810183C][1 140800 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS [040D62A9D8AD28922632137ACDD984F2][1 157696 9FF4643DA6768075C8C70A1B28009FAD93BD248E ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS [F0067552F8F9B33D7C59403AB808A3CB][1 287744 F3BBE460A0AC64BA8E6F3510CDD02B07FD8A030E ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB10.SYS [3C142D31DE9F2F193218A53FE2632051][1 126464 90A38641ADFDE8E0664B5DB100E82FA57B8A7EF6 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS [5C37497276E3B3A5488B23A326A754B7][1 30272 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSAHCI.SYS [DB801A638D011B9633829EB6F663C900][1 140672 63E99B0FB7207E5B6AE794D007793DCD5AA41170 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSDSM.SYS [AA3FB40E17CE1388FA1BEDAB50EA8F96][1 26112 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS [F9D215A46A8B9753F61767FA72A20326][1 8192 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS [D916874BBD4F8B07BFB7FA9B3CCAE29D][1 15424 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS [D931D7309DEB2317035B07C9F9E6B0BD][1 273792 6D88647E363B7826A70C0A374764DD38E6D625C7 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS [49CCF2C4FEA34FFAD8B1B59D49439366][1 11136 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS [BDD71ACE35A232104DDD349EE70E1AB3][1 7168 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS [4ED981241DB27C3383D72092B618A1D0][1 6784 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS [89CB141AA8616D8C6A4610FA26C60964][1 367168 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSRPC.SYS [0EED230E37515A0EAEE3C2E1BC97B288][1 32320 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS [2E66F9ECB30B4221A318C92AC2250779][1 8064 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS [7EA404308934E675BFFDE8EDF0757BCD][1 15360 ]C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS [F9A18612FD3526FE473C1BDA678D61C8][1 60496 ]C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS [CAD515DBD07D082BB317D9928CE8962C][1 947776 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS [9F9A1F53AAD7DA4D6FEF5BB73AB811AC][1 35328 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS [30639C932D9FEF22B31268FE25A1B6E5][1 24064 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS [F105BA1E22BF1F2EE8F005D4305E4BEC][1 56320 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS [557DFAB9CA1FCB036AC77564C010DAD3][1 164352 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS [659B74FB74B86228D6338D643CD3E3CF][1 57856 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS [86743D9F5D2B1048062B14B1D84501C4][1 44544 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS [9162B273A44AB9DCE5B44362731D062A][1 259072 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS [02903EB9D9308541D032417ACDFB975C][1 374664 355738CEDD3BB3B64B9514687F26E70F16ABC6C2 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETIO.SYS [9C7234623096284339C698FFB41DAECE][1 900608 73180C5B3C59349B65A3262F084C86DCFDC87797 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETR28UX.SYS [77889813BE4D166CDAB78DDBA990DA92][1 51264 ]C:\WINDOWS\SYSTEM32\DRIVERS\NFRD960.SYS [1E4C4AB5C9B8DD13179BBDC75A2A01F7][1 44032 ]C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS [E7F5AE18AF4168178A642A9247C63001][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS [184C189D4FC416978550FC599BB4EDDA][1 1656688 EBE230077C696E21C64C0CABF0DA3E64122932CA ]C:\WINDOWS\SYSTEM32\DRIVERS\NTFS.SYS [9899284589F75FA8724FF3D16AED75C1][1 6144 ]C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS [0EBC9D13CD96C15B1B18D8678A609E4B][1 82432 A25D6D0B3FD76604576BEFB4C57FFC25385C2CFA ]C:\WINDOWS\SYSTEM32\DRIVERS\NUSB3HUB.SYS [7BDEC000D56D485021D9C1E63C2F81CA][1 181760 3AF7F36A3C85619DFBD937032A479AB6BF031FA5 ]C:\WINDOWS\SYSTEM32\DRIVERS\NUSB3XHC.SYS [270D7CD42D6E3979F6DD0146650F0E05][1 122960 ]C:\WINDOWS\SYSTEM32\DRIVERS\NV_AGP.SYS [B4F53BCA4C688FF47F04FA90098F896E][1 194488 30B474A7BBD1FB9378A0E3C650953E8F4F86E735 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVHDA64V.SYS [0A2F27B5BCC45B64E152DD6AE0815198][1 11040544 0C3FE6CDE9E748B202393C71D3468B040C089277 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVLDDMKM.SYS [A4D9C9A608A97F59307C2F2600EDC6A4][1 148352 0FFAC76128824C0F22CBBC8200BBD7023243C467 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS [6C1D5F70E7A6A3FD1C90D840EDC048B9][1 166272 D6A96C7B3C5C36C3EE66E13E7B0D83C3C699F199 ]C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS [1EA3749C4114DB3E3161156FFFFA6B33][1 318976 ]C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS [3589478E4B22CE21B41FA1BFC0B8B8A0][1 72832 ]C:\WINDOWS\SYSTEM32\DRIVERS\OHCI1394.SYS [EE992183BD8EAEFD9973F352E587A299][1 131584 ]C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS [0086431C29C35BE1DBC43F52CC273887][1 97280 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTIZAN.SYS [90061B1ACFE8CCAA5345750FFE08D8B8][1 75632 26CF2A13683D0BDDBE021D5189DE2B30F1B21CFC ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS [F36F6504009F2FB0DFD1B17A116AD74B][1 183872 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS [B5B8B5EF2E5CB34DF8DCF8831E3534FA][1 12352 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS [144497DAA145BA0F7BE896064146C058][1 48720 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS [B2E81D4E87CE48589F98CB8C05B01F2F][1 220752 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS [D6B9C2E1A11A3A4B26A182FFEF18F603][1 50768 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS [68769C3356B3BE5D1C732C97B9A80D6E][1 651264 ]C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS [FB83B6C62DFF5ABE36304351D2BED581][1 33328 3D0102DFAD843BDABA1FCFCEAD96EA009805D27B ]C:\WINDOWS\SYSTEM32\DRIVERS\PNARP.SYS [0D922E23C041EFB1C3FAC2A6F943C9BF][1 60416 ]C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS [1B3434642CE3C26E6F24D3A76D749C2A][1 35376 DBE0185B14D1FED21B96C793D26800B2DE295819 ]C:\WINDOWS\SYSTEM32\DRIVERS\PURENDIS.SYS [4712CC14E720ECCCC0AA16949D18AAF1][1 55280 ]C:\WINDOWS\SYSTEM32\DRIVERS\PXHLPA64.SYS [A53A15A11EBFD21077463EE2C7AFEEF0][1 1524816 ]C:\WINDOWS\SYSTEM32\DRIVERS\QL2300.SYS [4F6D12B51DE1AAEFF7DC58C4D75423C8][1 128592 ]C:\WINDOWS\SYSTEM32\DRIVERS\QL40XX.SYS [76707BB36430888D9CE9D705398ADB6C][1 46592 ]C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS [5A0DA8AD5762FA2D91678A8A01311704][1 14848 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS [87A6E852A22991580D6D39ADC4790463][1 130048 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS [855C9B1CD4756C5E9A2AA58A15F58C25][1 92672 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS [27CC19E81BA5E3403C48302127BDA717][1 111616 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS [E8B1E447B008D07FF47D016C2B0EEECB][1 83968 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASSSTP.SYS [3BAC8142102C15D59A87757C1D41DCE5][1 309248 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS [302DA2A0539F2CF54D7C6CC30C1F2D8D][1 24064 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS [CEA6CC257FC9B7715F1C2B4849286D24][1 7680 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS [9706B84DBABFC4B4CA46C5A82B14DFA3][1 165376 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS [BB5971A4F00659529A5C44831AF22365][1 7680 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPENCDD.SYS [216F3FA57533D98E1F74DED70113177A][1 8192 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPREFMP.SYS [634B9A2181D98F15941236886164EC8B][1 214096 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS [9C3AC71A9934B884FAC567A8807E9C4D][1 31800 B10B5F98D00BD5054D57531FC998BDBBBBD84A75 ]C:\WINDOWS\SYSTEM32\DRIVERS\REVOFLT.SYS [DDC86E4F8E7456261E637E3552E804FF][1 76800 ]C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS [EE082E06A82FF630351D1E0EBBD3D8D0][1 539240 0887B697D551440145A2692A4E7E229E54790FF7 ]C:\WINDOWS\SYSTEM32\DRIVERS\RT64WIN7.SYS [27DB9153D259D632D15483DEEAB799ED][1 27120 ]C:\WINDOWS\SYSTEM32\DRIVERS\SAHDAD64.SYS [F77849D909B90BCACFCF7295AECF299B][1 19952 ]C:\WINDOWS\SYSTEM32\DRIVERS\SAIBAD64.SYS [704D415290A568F68DE20942DAC23F7E][1 27632 ]C:\WINDOWS\SYSTEM32\DRIVERS\SAIBVDAD64.SYS [E3BBB89983DAF5622C1D50CF49F28227][1 104016 ]C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS [C94DA20C7E3BA1DCA269BC8460D98387][1 29696 ]C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS [CB624C0035412AF0DEBEC78C41F5CA1B][1 23552 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS [C1D8E28B2C2ADFAEC4BA89E9FDA69BD6][1 94208 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS [1C545A7D0691CC4A027396535691C3E3][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS [DECACB6921DED1A38642642685D77DAC][1 12288 ]C:\WINDOWS\SYSTEM32\DRIVERS\SERSCAN.SYS [A554811BCD09279536440C964AE35BBF][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFDISK.SYS [FF414F0BAEFEBA59BC6C04B3DB0B87BF][1 13824 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_MMC.SYS [DD85B78243A19B59F0637DCF284DA63C][1 14336 5E4C4AB261ECB1DADF28AF6465ABAB1CF591044A ]C:\WINDOWS\SYSTEM32\DRIVERS\SFFP_SD.SYS [A9D601643A1647211A1EE2EC4E433FF4][1 16896 ]C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS [843CAF1E5FDE1FFD5FF768F23A51E2E1][1 43584 ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS [6A6C106D42E9FFFF8B9FCB4F754F6DA4][1 80464 ]C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS [548260A7B8654E024DC30BF8A7C5BAA4][1 93184 ]C:\WINDOWS\SYSTEM32\DRIVERS\SMB.SYS [2408C0366D96BCDF63E8F1C78E4A29C5][1 461312 E12714B30390AD8B6EF0DC009D43D057D9DBEA61 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS [76548F7B818881B47D8D1AE1BE9C11F8][1 399872 F813FAA7228AB4116737973971CB8599501B21D5 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS [0AF6E19D39C70844C5CAA8FB0183C36E][1 161792 908F420E2E879EDCDCBD575D1AE9AB3E0BA6E84E ]C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS [3CE3066AB1CCC094B4F0F1285CDA4609][1 95544 6CB2107C3D2D9FBDE8E1F86387F50CCBA43300D1 ]C:\WINDOWS\SYSTEM32\DRIVERS\SSUDBUS.SYS [C683E87AC3F8EB55735338A6AD5CC096][1 203320 85D8F409317FCF76433D4EA2A92922275D1C4188 ]C:\WINDOWS\SYSTEM32\DRIVERS\SSUDMDM.SYS [F3817967ED533D08327DC73BC4D5542A][1 24656 ]C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS [8FCCBEFC5C440B3C23454656E551B09A][1 34896 ]C:\WINDOWS\SYSTEM32\DRIVERS\STORVSC.SYS [D01EC09B6711A5F8E7E6564A4D0FBC90][1 12496 ]C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS [5CFB7AB8F9524D1A1E14369DE63B83CC][1 1893224 3796BB6F827159D048D30EA8CB950BE53F985684 ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS [76D078AF6F587B162D50210F761EB9ED][1 44544 ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS [0CA6FE26ACC7FFEE1BD0463F40835F32][1 26624 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS [3371D21011695B16333A3934340C4E7C][1 15872 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDPIPE.SYS [7518F7BCFD4B308ABC9192BACAF6C970][1 23552 4C9C42CF0F9348EDA143D5A6D973A20D6F154015 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDTCP.SYS [079125C4B17B01FCAEEBCE0BCB290C0F][1 99840 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS [C448651339196C0E869A355171875522][1 62544 ]C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS [61B96C26131E37B24E93327A0BD1FB95][1 38400 ]C:\WINDOWS\SYSTEM32\DRIVERS\TSSECSRV.SYS [3836171A2CDF3AF8EF10856DB9835A70][1 125440 ]C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS [B4DD609BD7E282BFC683CEC7EAAAAD67][1 64080 ]C:\WINDOWS\SYSTEM32\DRIVERS\UAGP35.SYS [D47BAEAD86C65D4F4069D7CE0A4EDCEB][1 327168 ]C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS [4BFE1BC28391222894CBF1E7D0E42320][1 64592 ]C:\WINDOWS\SYSTEM32\DRIVERS\ULIAGPKX.SYS [EAB6C35E62B1B0DB0D1B48B671D3A117][1 48640 ]C:\WINDOWS\SYSTEM32\DRIVERS\UMBUS.SYS [B2E8E8CB557B156DA5493BBDDCC1474D][1 9728 ]C:\WINDOWS\SYSTEM32\DRIVERS\UMPASS.SYS [77B01BC848298223A95D4EC23E1785A1][2 109568 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO.SYS [7B6A127C93EE590E4D79A5F2A76FE46F][1 98816 269AF32F6B252AFEB3CA32CA88EF9A7F4AC3A43D ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS [AF0892A803FDDA7492F595368E3B68E7][1 100352 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS [70B5A5A7E0DDD5EBAF6E35B7257A6B9D][1 7936 8C01FA1020A6B47AAF2CF8ECCC20EDD952FB38BF ]C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS [92969BA5AC44E229C55A332864F79677][1 52224 418FE55582FAE43355D813CC8C1E3F398EA34E04 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS [E7DF1CFD28CA86B35EF5ADD0735CEEF3][1 343040 EAB1057B07A3A38383F10FF178C6582C7EC8786C ]C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS [F1BB1E55F1E7A65C5839CCC7B36D773E][1 25600 F4DFA21F67D3B048BE3BBAC69722DD838D3CECC4 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS [BBF36EB7117F6B976975C9D8D877DF18][1 324608 58CC345E42C806A329F685F4DF10DB5A195C2621 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS [73188F58FB384E75C4063D29413CEE3D][1 25088 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS [F39983647BC1F3E6100778DDFE9DCE29][1 91136 F5D7A1D0FA16B0EFE613FB0883746C4796D1E34E ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS [BC3070350A491D84B518D7CCA9ABD36F][1 30720 5E1679F65CFFE18902F020D55D80D849DBCEB433 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS [C5C876CCFC083FF3B128F933823E87BD][1 36432 ]C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS [53E92A310193CB3C03BEA963DE7D9CFC][1 29184 ]C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS [DA4DA3F5E02943C2DC8C6ED875DE68DD][1 29184 ]C:\WINDOWS\SYSTEM32\DRIVERS\VGAPNP.SYS [2CE2DF28C83AEAF30084E1B1EB253CBB][1 215936 7E204BFBEB262DBB255E93E8BA758025DD82E656 ]C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS [E5689D93FFE4E5D66C0178761240DD54][1 17488 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIAIDE.SYS [E7353D59C9842BC7299FAEB7E7E09340][1 129024 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS [1501699D7EDA984ABC4155A7DA5738D1][1 200272 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMBUS.SYS [AE10C35761889E65A6F7176937C5592C][1 21760 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMBUSHID.SYS [88AF6E02AB19DF7FD07ECDF9C91E9AF6][1 6656 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMS3CAP.SYS [FFD7A6F15B14234B5B0E5D49E7961895][1 46672 ]C:\WINDOWS\SYSTEM32\DRIVERS\VMSTORFL.SYS [2B1A3DAE2B4E70DBBA822B7A03FBD4A3][1 71760 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS [99B0CBB569CA79ACAED8C91461D765FB][1 363584 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS [9E425AC5C9A5A973273D169F43B4F5E1][1 295792 68F7E351B81DDA6BB775D60FC7396FC91624AEC9 ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS [ABD9B4A7E2D0AE51A3B8DF1AF3152D61][1 187904 ]C:\WINDOWS\SYSTEM32\DRIVERS\VPCHBUS.SYS [31924E31BC315773E6D149B157DB46D5][1 95232 ]C:\WINDOWS\SYSTEM32\DRIVERS\VPCUSB.SYS [5E2016EA6EBACA03C04FEAC5F330D997][1 161872 ]C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS [36D4720B72B5C5D9CB2B9C29E9DF67A1][1 24576 ]C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIBUS.SYS [4E9440F4F152A7B944CB1663D3935A3E][1 27776 ]C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS [47CA49400643EFFD3F1C9A27E1D69324][1 88576 ]C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS [FC438D1430B28618E2D0C7C332A710AD][1 42496 ]C:\WINDOWS\SYSTEM32\DRIVERS\WATCHDOG.SYS [72889E16FF12BA0F235467D6091B17DC][1 21056 ]C:\WINDOWS\SYSTEM32\DRIVERS\WD.SYS [442783E2CB0DA19873B7A63833FF4CB4][1 785512 A1515F46B756DFE0F11E5E45551409266D9CE752 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS [AEA0A67275CFBA0E463E00C6E9A1DDAE][1 54376 2355C403E9767B701B8B230446535A86ED7565EF ]C:\WINDOWS\SYSTEM32\DRIVERS\WDFLDR.SYS [611B23304BF067451A9FDEE01FBDD725][1 12800 ]C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWF.SYS [05ECAEC3E4529A7153B3136CEB49F0EC][1 22096 ]C:\WINDOWS\SYSTEM32\DRIVERS\wimmount.sys [817EAFF5D38674EDD7713B9DFB8E9791][1 40448 ]C:\WINDOWS\SYSTEM32\DRIVERS\WINUSB.SYS [F6FF8944478594D0E414D3F048F0D778][1 14336 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS [FC146F46872D4C5B529B89A5131FD1E6][1 16464 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS [6BCC1D7D2FD2453957C5479A32364E52][1 21504 ]C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS [AB886378EEB55C6C75B4F2D14B6C869F][1 87040 21F2F0DC07BCE7326BCC569153D1DEE966549C17 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS [DDA4CAF29D8C0A297F886BFE561E6659][1 198656 8E5BC147D32F54E1D30CCE09C86F9FE6B299FDA1 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS [9110FFAD124283F37D38771BB60556AF][1 540672 ]C:\WINDOWS\SYSTEM32\DSOUND.DLL [E2DDA8726DA9CB5B2C4000C9018A9633][1 111104 ]C:\WINDOWS\SYSTEM32\EAPSVC.DLL [024352FEEC9042260BB4CFB4D79A206B][1 203264 ]C:\WINDOWS\SYSTEM32\EHSTORSHELL.DLL [4166F82BE4D24938977DD1746BE9B8A0][1 402944 ]C:\WINDOWS\SYSTEM32\ES.DLL [0438CAB2E03F4FB61455A7956026FE86][1 16384 ]C:\WINDOWS\SYSTEM32\FDPHOST.DLL [802496CB59A30349F9A6DD22D6947644][1 34816 ]C:\WINDOWS\SYSTEM32\FDRESPUB.DLL [CB5E4B9C319E3C6BB363EB7E58A4A051][1 1135104 DD5D813C6D60F707522445B8AD1FAEFFA8BA489D ]C:\WINDOWS\SYSTEM32\FNTCACHE.DLL [E30B04A8FE665C52162D70233ABEA9A3][1 14848 3F92A8B59E286BDEC5DFB5CF7C39E780A6DE44D3 ]C:\WINDOWS\SYSTEM32\FRAMEBUF.DLL [20BEB8C403C6E28C9B13644787F5177D][6 41472 ]C:\WINDOWS\SYSTEM32\FXSMON.DLL [D607B2F1BEE3992AA6C2C92C0A2F0855][1 689152 ]C:\WINDOWS\SYSTEM32\FXSSVC.EXE [FE5AB4525BC2EC68B9119A6E5D40128B][1 776192 ]C:\WINDOWS\SYSTEM32\GPSVC.DLL [C0A6F6E05E14FBCAEDE7796C8590B7AC][1 263232 ]C:\WINDOWS\SYSTEM32\HAL.DLL [BD9EB3958F213F96B97B1D897DEE006D][1 38912 ]C:\WINDOWS\SYSTEM32\HIDSERV.DLL [5DE52B818F1FFD82E1411A1470A10FA8][1 712552 81DEA208D7ACDCC379C2D6A06CBF54CA6A69AA66 ]C:\WINDOWS\SYSTEM32\HPDISCOPMB111.DLL [B18CBD2952EEA4ABDD804FB46979750B][1 328552 71C38AE7CABADE8BD86764442D27C7B5D97A136F ]C:\WINDOWS\SYSTEM32\HPINKSTSB111LM.DLL [C5B4683680DF085B57BC53E5EF34861F][1 845824 ]C:\WINDOWS\SYSTEM32\IKEEXT.DLL [DA6C4B5FEEEA4DC7162B5D0C055EB967][1 22016 ]C:\WINDOWS\SYSTEM32\IMAADP32.ACM [AA2C08CE85653B1A0D2E4AB407FA176C][2 167424 ]C:\WINDOWS\SYSTEM32\IMM32.DLL [C324594634A19031932A63FFD8F1267E][1 976896 D40B61D022765513037967BE2472E4EF44FB8E4A ]C:\WINDOWS\SYSTEM32\INETCOMM.DLL [03FBB7C5EA4EF153F10282614B9771CB][1 65536 ]C:\WINDOWS\SYSTEM32\INETSRV\APPHOSTSVC.DLL [06D2B9BC146BB0F45F45FF7A296D50C4][1 451072 ]C:\WINDOWS\SYSTEM32\INETSRV\IISW3ADM.DLL [098A91C54546A3B878DAD6A7E90A455B][1 101888 ]C:\WINDOWS\SYSTEM32\IPBUSENUM.DLL [F8E058D17363EC580E4B7232778B6CB5][1 565760 ]C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL [B95F6501A2F8B2E78C697FEC401970CE][1 359424 ]C:\WINDOWS\SYSTEM32\IPNATHLP.DLL [166EB40D1F5B47E615DE3D0FFFE5F243][1 500224 ]C:\WINDOWS\SYSTEM32\IPSECSVC.DLL [808E98FF49B155C522E6400953177B08][1 156672 ]C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL [06DC527364A8CF48E472ECF2BA3F8403][1 170496 ]C:\WINDOWS\SYSTEM32\ITSS.DLL [F69E35AF06BA0C06DD80ACA358A16A1C][1 54272 ]C:\WINDOWS\SYSTEM32\IYUV_32.DLL [F413DF1D84E4CE2546790D9B9A50ADAB][1 17792 3D6C1E1A70E9F3CC3C4BF5656583EA6C3F6D1B55 ]C:\WINDOWS\SYSTEM32\KDCOM.DLL [00B40A10E3DB79E4D3E127B9C2233A6B][1 714752 BC6759193046262F652C913B564414AF0366F6A8 ]C:\WINDOWS\SYSTEM32\KERBEROS.DLL [EFA58EDE58DD74388FFD04CB32681518][1 90624 ]C:\WINDOWS\SYSTEM32\KMSVC.DLL [ -2][0 -1 ]C:\WINDOWS\SYSTEM32\LEGITCHECKCONTROL.DLL [046B2673767CA626E2CFB7FDF735E9E8][1 231936 ]C:\WINDOWS\SYSTEM32\LISTSVC.DLL [C1185803384AB3FEED115F79F109427F][1 300032 ]C:\WINDOWS\SYSTEM32\LLTDSVC.DLL [F993A32249B66C9D622EA5592A8B76B8][1 23552 ]C:\WINDOWS\SYSTEM32\LMHSVC.DLL [8CFACC72081C21519676BF4AAA1A88A9][1 956416 6A7B287330B0D33F5442A6007A1785A78EBF4EEB ]C:\WINDOWS\SYSTEM32\LOCALSPL.DLL [D5BA242D4CF8E384DB90E6A8ED850B8C][1 10240 ]C:\WINDOWS\SYSTEM32\LOCATOR.EXE [D202223587518B13D72D68937B7E3F70][1 41984 ]C:\WINDOWS\SYSTEM32\LPK.DLL [156F6159457D0AA7E59B62681B56EB90][1 31232 8D303B224A9F644F5BD5729014B45D1054E31EBC ]C:\WINDOWS\SYSTEM32\LSASS.EXE [C821485E380B307D9D5D5D65CC66BF85][1 255552 ]C:\WINDOWS\SYSTEM32\MCUPDATE_GENUINEINTEL.DLL [F84C8F1000BC11E3B7B23CBD3BAFF111][1 84480 ]C:\WINDOWS\SYSTEM32\MCX2SVC.DLL [CA2A0750ED830678997695FF61B04C30][1 20480 ]C:\WINDOWS\SYSTEM32\MIDIMAP.DLL [E40E80D0304A73E8D269F7141D77250B][1 67584 ]C:\WINDOWS\SYSTEM32\MMCSS.DLL [254FB7A22D74E5511C73A3F6D802F192][1 97792 ]C:\WINDOWS\SYSTEM32\MPRDIM.DLL [AECAB449567D1846DAD63ECE49E893E3][1 824832 ]C:\WINDOWS\SYSTEM32\MPSSVC.DLL [1B7C3A37362C7B2890168C5FC61C8D9B][1 25600 ]C:\WINDOWS\SYSTEM32\MSACM32.DRV [329FEB3452982A377726DEDAFE9BBDF0][1 24064 ]C:\WINDOWS\SYSTEM32\MSADP32.ACM [E57022A90673A3C9183C50C90EC349D7][1 403264 ]C:\WINDOWS\SYSTEM32\MSCOREE.DLL [DE0ECE52236CFA3ED2DBFC03F28253A8][1 141824 ]C:\WINDOWS\SYSTEM32\MSDTC.EXE [6AB66E16AA859232F64DEB66887A8C9C][1 368640 ]C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL [1C81E1BEA4847F406BBDB74D19721CE6][1 14848 ]C:\WINDOWS\SYSTEM32\MSG711.ACM [E5B9A2FA94D21C44DA2B898DC326B0C2][1 29184 ]C:\WINDOWS\SYSTEM32\MSGSM32.ACM [228577912C977E2CBE04920F6172C39E][1 127488 ]C:\WINDOWS\SYSTEM32\MSIEXEC.EXE [1EAACB451EA762E54475342F04D56110][1 16384 ]C:\WINDOWS\SYSTEM32\MSRLE32.DLL [FA4DB05923DDDEDE3196ABD09AE0F1E9][1 311808 ]C:\WINDOWS\SYSTEM32\MSV1_0.DLL [BA3F885C69EA136ADA34E3B3BE71FC9E][1 38912 ]C:\WINDOWS\SYSTEM32\MSVIDC32.DLL [FC76FE3C1E1FDB761244D4F74EF560FD][1 320000 ]C:\WINDOWS\SYSTEM32\MSWSOCK.DLL [104D9E6A1FD65CE0CD5BF964A87106F2][1 25088 ]C:\WINDOWS\SYSTEM32\MSYUV.DLL [58A0CDABEA255616827B1C22C9994466][1 68096 ]C:\WINDOWS\SYSTEM32\NAPINSP.DLL [847D3AE376C0817161A14A82C8922A9E][1 360448 ]C:\WINDOWS\SYSTEM32\NETMAN.DLL [5F28111C648F1E24F7DBC87CDEB091B8][1 459776 ]C:\WINDOWS\SYSTEM32\NETPROFM.DLL [86E3822A34D454032D8E88C72AE8CF2D][1 70144 ]C:\WINDOWS\SYSTEM32\NLAAPI.DLL [D9A0CE66046D6EFA0C61BAA885CBA0A8][1 302080 ]C:\WINDOWS\SYSTEM32\NLASVC.DLL [D54BFDF3E0C953F823B3D0BFE4732528][1 25600 ]C:\WINDOWS\SYSTEM32\NSISVC.DLL [68DB778AC4FD7896CE2F153353BA15C8][1 1739160 D0D8EDAED538815F39FC309059207F4CB2A73D7D ]C:\WINDOWS\SYSTEM32\NTDLL.DLL [5DEF532B4661D612CD4E894CD3688E4C][1 5500776 9EC438F9F9D21CB64DBB0252A78A0F430D8EE7CF ]C:\WINDOWS\SYSTEM32\NTOSKRNL.EXE [5F917AEEEA363B8A5DC8624795CB1D60][1 509952 676BB18B8B9B863CE89D357706AB0E1CF8A57CB3 ]C:\WINDOWS\SYSTEM32\NTSHRUI.DLL [574087EA9105F23FB522A4FDDD5292D9][1 877856 49AD9026374C19CB8BB94D24925EC2AB6039AA00 ]C:\WINDOWS\SYSTEM32\NVVSVC.EXE [927463ECB02179F88E4B9A17568C63C3][1 438784 ]C:\WINDOWS\SYSTEM32\P2PSVC.DLL [3AEAA8B561E63452C655DC0584922257][1 186368 ]C:\WINDOWS\SYSTEM32\PCASVC.DLL [E08088A97F95345E181C3DFCE2C615EF][1 240640 ]C:\WINDOWS\SYSTEM32\PKU2U.DLL [557E9A86F65F0DE18C9B6751DFE9D3F1][1 1390080 ]C:\WINDOWS\SYSTEM32\PLA.DLL [613C8CE10A5FDE582BA5FA64C4D56AAA][1 86016 ]C:\WINDOWS\SYSTEM32\PNRPNSP.DLL [3EAC4455472CC2C97107B5291E0DCAFE][1 327168 ]C:\WINDOWS\SYSTEM32\PNRPSVC.DLL [97293447431311C06703368AD0F6C4BE][1 208896 90DE17D693668F17D4B71FB4E7A5C6A4EF2CA10F ]C:\WINDOWS\SYSTEM32\PROFSVC.DLL [06A7422224D9865A5613710A089987DF][1 187904 ]C:\WINDOWS\SYSTEM32\PROVSVC.DLL [A3DB3C17EE6CAE65D53602B4E80BCCBC][1 57424 ]C:\WINDOWS\SYSTEM32\PSHED.DLL [2BFFCFFDDC984B3F900D34DB90075D74][1 292736 6A95F917A055DF35824C3D69D81387BD08FB6C08 ]C:\WINDOWS\SYSTEM32\PURANDEFRAGS.EXE [4987E079A4530FA737A128BE54B63B12][1 475648 ]C:\WINDOWS\SYSTEM32\QAGENTRT.DLL [7F0C323FE3DA28AA4AA1BDA3F575707F][1 848384 ]C:\WINDOWS\SYSTEM32\QMGR.DLL [906191634E99AEA92C4816150BDA3732][1 242688 ]C:\WINDOWS\SYSTEM32\QWAVE.DLL [8F26510C5383B8DBE976DE1CD00FC8C7][1 99328 ]C:\WINDOWS\SYSTEM32\RASAUTO.DLL [47394ED3D16D053F5906EFE5AB51CC83][1 343552 ]C:\WINDOWS\SYSTEM32\RASMANS.DLL [E4D94F24081440B5FC5AA556C7C62702][1 159232 ]C:\WINDOWS\SYSTEM32\REGSVC.DLL [E4DC58CF7B3EA515AE917FF0D402A7BB][1 67072 ]C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL [7266972E86890E2B30C0C322E906B027][1 509440 ]C:\WINDOWS\SYSTEM32\RPCSS.DLL [DD81D91FF3B0763C392422865C9AC12E][1 45568 ]C:\WINDOWS\SYSTEM32\RUNDLL32.EXE [9B7395789E3791A3B6D000FE6F8B131E][1 190976 ]C:\WINDOWS\SYSTEM32\SCARDSVR.DLL [398712DDDAEFB85EDF61DF6A07B65C79][1 232448 ]C:\WINDOWS\SYSTEM32\SCECLI.DLL [90B780886BD813882CB382FF3E90E092][1 340992 B2B40A8196BFD02696EF7B43EA5084611A975006 ]C:\WINDOWS\SYSTEM32\SCHANNEL.DLL [624D0F5FF99428BB90A5B8A4123E918E][1 1114624 543FCB554D74F30748AFB843192CB4CD6A3517F0 ]C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL [8CD2A697B18069A62A035E756E51E934][1 593408 A27F8D8C3AABE69BC09FFC9E23EED2523AF61F1E ]C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE [463B386EBC70F98DA5DFF85F7E654346][1 30720 ]C:\WINDOWS\SYSTEM32\SECLOGON.DLL [C32AB8FA018EF34C0F113BD501436D21][1 64512 ]C:\WINDOWS\SYSTEM32\SENS.DLL [0336CFFAFAAB87A11541F1CF1594B2B2][1 29184 ]C:\WINDOWS\SYSTEM32\SENSRSVC.DLL [C3BC61CE47FF6F4E88AB8A3B429A36AF][1 104960 ]C:\WINDOWS\SYSTEM32\SESSENV.DLL [48CC125A6AB6C72A13E3D3E9C39AD9D9][1 14165504 D2B4835D6C609A0CE28CA41F9EB14CDE291B55C6 ]C:\WINDOWS\SYSTEM32\SHELL32.DLL [0298AC45D0EFFFB2DB4BAA7DD186E7BF][1 369664 ]C:\WINDOWS\SYSTEM32\SHSVCS.DLL [1911A3356FA3F77CCC825CCBAC038C2A][1 112640 ]C:\WINDOWS\SYSTEM32\SMSS.EXE [6313F223E817CC09AA41811DAA7F541D][1 14336 ]C:\WINDOWS\SYSTEM32\SNMPTRAP.EXE [567977DC43CC13C4C35ED7084C0B84D5][1 559104 EEA5042BB03F47426E50694ED8370895875DDB62 ]C:\WINDOWS\SYSTEM32\SPOOLSV.EXE [913D843498553A1BC8F8DBAD6358E49F][1 3524608 ]C:\WINDOWS\SYSTEM32\SPPSVC.EXE [93D7D61317F3D4BC4F4E9F8A96A7DE45][1 65536 ]C:\WINDOWS\SYSTEM32\SPPUINOTIFY.DLL [81F1D04D4D0E433099365127375FD501][1 236032 ]C:\WINDOWS\SYSTEM32\SRVSVC.DLL [51B52FBD583CDE8AA9BA62B8B4298F33][1 193024 ]C:\WINDOWS\SYSTEM32\SSDPSRV.DLL [AB7AEBF58DAD8DAAB7A6C45E6A8885CB][1 75264 ]C:\WINDOWS\SYSTEM32\SSTPSVC.DLL [C78655BC80301D76ED4FEF1C1EA40A7D][1 27136 ]C:\WINDOWS\SYSTEM32\SVCHOST.EXE [E08E46FDD841B7184194011CA1955A0B][1 524288 ]C:\WINDOWS\SYSTEM32\SWPRV.DLL [11EAC0C9B2D59C3E250127BADC543F03][1 200192 ]C:\WINDOWS\SYSTEM32\SYNCUI.DLL [3C1284516A62078FB68F768DE4F1A7BE][1 1780736 ]C:\WINDOWS\SYSTEM32\SYSMAIN.DLL [870726CDCC241A92785572628B89CC07][1 82432 ]C:\WINDOWS\SYSTEM32\SYSTEMPROPERTIESPERFORMANCE.EXE [238935C3CF2854886DC7CBB2A0E2CC66][1 93184 ]C:\WINDOWS\SYSTEM32\TABSVC.DLL [884264AC597B690C5707C89723BB8E7B][1 316416 ]C:\WINDOWS\SYSTEM32\TAPISRV.DLL [1BE03AC720F4D302EA01D40F588162F6][1 65536 ]C:\WINDOWS\SYSTEM32\TBSSVC.DLL [32A3C8600AF124CBAAD845F13CFAE3CB][6 195072 ]C:\WINDOWS\SYSTEM32\TCPMON.DLL [0F05EC2887BFE197AD82A13287D2F404][1 706560 ]C:\WINDOWS\SYSTEM32\TERMSRV.DLL [F0344071948D1A1FA732231785A0664C][1 44544 ]C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL [7E7AFD841694F6AC397E99D75CEAD49D][1 119808 ]C:\WINDOWS\SYSTEM32\TRKWKS.DLL [E15EC9FE76B666197ED53D4CB8E05665][1 14848 ]C:\WINDOWS\SYSTEM32\TSBYUV.DLL [F29FE765E1448EF371CFE05BFAC74ADB][1 17408 ]C:\WINDOWS\SYSTEM32\TSDDD.DLL [0DEFD5FBF801DD8F83BC0ED09861A8EC][1 86016 ]C:\WINDOWS\SYSTEM32\TSPKG.DLL [3CBDEC8D06B9968ABA702EBA076364A1][1 40960 ]C:\WINDOWS\SYSTEM32\UI0DETECT.EXE [98B1721B8718164293B9701B98C52D77][1 404992 82EDE32FBCD96721E7190EC746B87D89319F26FA ]C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL [6BA9D927DDED70BD1A9CADED45F8B184][1 163840 ]C:\WINDOWS\SYSTEM32\UMPO.DLL [AF0AC98EE5077EB844413EB54287FDE3][1 195072 ]C:\WINDOWS\SYSTEM32\UMRDP.DLL [D47EC6A8E81633DD18D2436B19BAF6DE][1 353792 ]C:\WINDOWS\SYSTEM32\UPNPHOST.DLL [DF72A9936D0C3F517083119648814B09][6 45056 ]C:\WINDOWS\SYSTEM32\USBMON.DLL [72D7B3EA16946E8F0CF7458150031CC6][1 1008640 ]C:\WINDOWS\SYSTEM32\USER32.DLL [6F8F1376A13114CC10C0E69274F5A4DE][1 30208 ]C:\WINDOWS\SYSTEM32\USERINIT.EXE [EDBB23CBCF2CDF727D64FF9B51A6070E][1 38912 ]C:\WINDOWS\SYSTEM32\UXSMS.DLL [D29E998E8277666982B4F0303BF4E7AF][1 332288 ]C:\WINDOWS\SYSTEM32\UXTHEME.DLL [44D73E0BBC1D3C8981304BA15135C2F2][1 532480 ]C:\WINDOWS\SYSTEM32\VDS.EXE [787898BF9FB6D7BD87A36E2D95C899BA][1 1598976 ]C:\WINDOWS\SYSTEM32\VSSVC.EXE [1C9D80CC3849B3788048078C26486E1A][1 381952 ]C:\WINDOWS\SYSTEM32\W32TIME.DLL [3CEC96DE223E49EAAE3651FCF8FAEA6C][1 1255736 ]C:\WINDOWS\SYSTEM32\WAT\WATADMINSVC.EXE [38B84C94C5A8AF291ADFEA478AE54F93][1 203264 ]C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE [19B07E7E8915D701225DA41CB3877306][1 242688 ]C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL [5AB1BB85BD8B5089CC5D64200DEDAE68][1 1503744 ]C:\WINDOWS\SYSTEM32\WBENGINE.EXE [3AA101E8EDAB2DB4131333F4325C76A3][1 202240 ]C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL [DD1BAE8EBFC653824D29CCF8C9054D68][1 367104 4A29AD68B1402EB1F1927BDEE5AAC4F50287D757 ]C:\WINDOWS\SYSTEM32\WCNCSVC.DLL [20F7441334B18CEE52027661DF4A6129][1 40960 ]C:\WINDOWS\SYSTEM32\WCSPLUGINSERVICE.DLL [BF1FC3F79B863C914687A737C2F3D681][1 90624 ]C:\WINDOWS\SYSTEM32\WDI.DLL [95FB6CA4374E343DDD653FCC43F9D26B][1 210432 ]C:\WINDOWS\SYSTEM32\WDIGEST.DLL [30F9BACA07F8251D7DD1805A9E919CE0][1 217088 ]C:\WINDOWS\SYSTEM32\WDMAUD.DRV [733006127F235BE7C35354EBEE7B9A7B][1 258048 33C5224F289724BF44004FE857617736204DF0D2 ]C:\WINDOWS\SYSTEM32\WEBCLNT.DLL [C749025A679C5103E575E3B48E092C43][1 237568 ]C:\WINDOWS\SYSTEM32\WECSVC.DLL [7E591867422DC788B9E5BD337A669A08][1 84480 ]C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL [6D137963730144698CBD10F202E9F251][1 76800 ]C:\WINDOWS\SYSTEM32\WERSVC.DLL [52D0E33B681BD0F33FDC08812FEE4F7D][1 578560 ]C:\WINDOWS\SYSTEM32\WIASERVC.DLL [4B8FAB281A9310C45A4F65378E5F7D81][1 3150848 C269DE0BA2D7141D5DD6B1463F992DF3B0283948 ]C:\WINDOWS\SYSTEM32\WIN32K.SYS [0BF0C2A72F2CB0BA4382C392D3E331AF][1 442880 093ED0DB431991F33D7864C1D158EE78D7614374 ]C:\WINDOWS\SYSTEM32\WINHTTP.DLL [2E2072EB48238FCA8FBB7A9F5FABAC45][1 28672 ]C:\WINDOWS\SYSTEM32\WINRNR.DLL [27026EAC8818E8A6C00A1CAD2F11D29A][1 118784 ]C:\WINDOWS\SYSTEM32\WKSSVC.DLL [4FADA86E62F18A1B2F42BA18AE24E6AA][1 886784 ]C:\WINDOWS\SYSTEM32\WLANSVC.DLL [96C6E7100D724C69FCF9E7BF590D1DCA][1 12288 ]C:\WINDOWS\SYSTEM32\WPCSVC.DLL [2E57DDF2880A7E52E76F41C7E96D327B][1 116736 ]C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL [8886E0697B0A93C521F99099EF643450][1 168960 ]C:\WINDOWS\SYSTEM32\WSCRIPT.EXE [8F9F3969933C02DA96EB0F84576DB43E][1 97280 A4C84870A7BB4B4614C739617BB32362FA407F55 ]C:\WINDOWS\SYSTEM32\WSCSVC.DLL [A1D7E3ADCDB07DDB6F423862DCB1A52B][6 224768 ]C:\WINDOWS\SYSTEM32\WSDMON.DLL [41FBB751936B387F9179E7F03A74FE29][1 2018816 ]C:\WINDOWS\SYSTEM32\WSMSVC.DLL [D9EF901DCA379CFE914E9FA13B73B4C4][1 2428952 64A55A014A2DE34F86F17CFA31C727E270FCD83F ]C:\WINDOWS\SYSTEM32\WUAUENG.DLL [B20F051B03A966392364C83F009F7D17][1 84992 CE87205EB920F4B7EF00E0BD7CBFA721E6443911 ]C:\WINDOWS\SYSTEM32\WUDFSVC.DLL [9A3452B3C2A46C073166C5CF49FAD1AE][1 229888 ]C:\WINDOWS\SYSTEM32\WWANSVC.DLL [17A4BE67FB6B9219A802F39C263AC8AC][1 82944 ]C:\WINDOWS\SYSWOW64\ICCVID.DLL [D3EAB9BCB2B92EFCA615781C215644C0][1 9738240 30137A342B70339843AC6D84C4CF143CF93F7909 ]C:\WINDOWS\SYSWOW64\IEFRAME.DLL [1C7F1C3EA5894995E6C563E9AE9F029F][1 64000 ]C:\WINDOWS\SYSWOW64\L3CODECA.ACM [E56A6F80F57EA7BBCF6C9FD7DC4ABA32][1 307488 F5EEDFB27F17D91679B9784AFFE6E3849A05A788 ]C:\WINDOWS\SYSWOW64\LVCODEC2.DLL [EA856F4A46320389D1899B2CAA7BF40F][1 253656 804F193B6BFF48A396E35305F002E0C056FE66C5 ]C:\WINDOWS\SYSWOW64\MACROMED\FLASH\FLASHPLAYERUPDATESERVICE.EXE [263963D93A3CA8F685EFA5966F1E6581][1 12321792 5BA38BC2B42B7B545EBCEAD88073C1991AC088E7 ]C:\WINDOWS\SYSWOW64\MSHTML.DLL [BE21C5C05E5E8536F1385100CC8EAFA5][1 2291712 ]C:\WINDOWS\SYSWOW64\MSVIDCTL.DLL [C10459DBDC2099C5A8428CB7D87DB85F][1 90112 ]C:\WINDOWS\SYSWOW64\OLEPRO32.DLL [E495E408C93141E8FC72DC0C6046DDFA][1 20992 ]C:\WINDOWS\SYSWOW64\PERFHOST.EXE [180D098704551DE37C6299AA888D6821][1 1103872 F9D38641750000F40CA3CCAAC3D3A2A4554BDFF1 ]C:\WINDOWS\SYSWOW64\URLMON.DLL === [MBR] [MD5=004BC502E8A0AB7DDDB5C2C67E1CDFEE] M8CO0LwAfI7Ajti+AHy/AAa5AAL886RQaBwGy/u5BAC9vgeAfgAAfAsPhQ4Bg8UQ4vHNGIhW AFXGRhEFxkYQALRBu6pVzRNdcg+B+1WqdQn3wQEAdAP+RhBmYIB+EAB0JmZoAAAAAGb/dgho AABoAHxoAQBoEAC0QopWAIv0zROfg8QQnusUuAECuwB8ilYAinYBik4Cim4DzRNmYXMc/k4R dQyAfgCAD4SKALKA64RVMuSKVgDNE13rnoE+/n1VqnVu/3YA6I0AdRf6sNHmZOiDALDf5mDo fACw/+Zk6HUA+7gAu80aZiPAdTtmgftUQ1BBdTKB+QIBcixmaAe7AABmaAACAABmaAgAAABm U2ZTZlVmaAAAAABmaAB8AABmYWgAAAfNGloy9uoAfAAAzRigtwfrCKC2B+sDoLUHMuQFAAeL 8Kw8AHQJuwcAtA7NEOvy9Ov9K8nkZOsAJALg+CQCw0ludmFsaWQgcGFydGl0aW9uIHRhYmxl AEVycm9yIGxvYWRpbmcgb3BlcmF0aW5nIHN5c3RlbQBNaXNzaW5nIG9wZXJhdGluZyBzeXN0 ZW0AAABje5o= ===