Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

explorer exe has to close the memory could not be written to


  • Please log in to reply

#1
archie10

archie10

    Member

  • Member
  • PipPip
  • 26 posts
Well its not malware and its not hard ware but it is something.
symtoms
on shut down
Explorer exe has to shut down because memory could not be written to,
hidden fax window and explorer exe has to close memory could not be written to.
any attempt to update the cpu drivers or the drivers for my video card well generate these errors
Also bios are shadowed and can not be written to.
Another little tid bit downloaded and installed speed fan,
and that has some interesting information for me as well it seems that the memory that control's the
the cpu fan speed is write only .
hard ware changes
new memory sticks
reman mother board
power supply
fan and cpu
and hard drive
system hp socket 754 athelon newcastle on a salmon mb
2 gigs ram and a geforce 7300 agp vid card
450 watt power supply.
before my power supply went down this critter screamed
after replacing it,now its out of breath cpu has to go into over drive just open win zip,
and memory use keeps growing to the point where I have none left and have to reboot
the computer any thoughts??
other topic in malware forum

http://www.geekstogo...rs/page__st__15

Edited by archie10, 04 April 2012 - 11:13 PM.

  • 0

Advertisements


#2
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
Run hard drive diagnostics: http://www.tacktech....ay.cfm?ttid=287
Make sure, you select tool, which is appropriate for the brand of your hard drive.
Depending on the program, it'll create bootable floppy, or bootable CD.
If downloaded file is of .iso type, use ImgBurn: http://www.imgburn.com/ to burn .iso file to a CD (select "Write image file to disc" option), and make the CD bootable.

NOTE. If your hard drive is made by Toshiba, try the Hitachi DFT CD Image version of the software

Thanks to Broni for the instructions




If you have more than one RAM module installed, try starting computer with one RAM stick at a time.

NOTE Keep in mind, the manual check listed above is always superior to the software check, listed below. DO NOT proceed with memtest, if you can go with option A

B. If you have only one RAM stick installed...
...run memtest...


1. Download - Pre-Compiled Bootable ISO (.zip). If you prefer to use the USB version then use this link USB KEY
2. Unzip downloaded /memtest86+-4.20.iso.zip file.
3. Inside, you'll find /memtest86+-4.20.iso file.
4. Download, and install ImgBurn: http://www.imgburn.com/
5. Insert blank CD into your CD drive.
6. Open ImgBurn, and click on Write image file to disc
7. Click on Browse for a file... icon:

Posted Image

8. Locate memtest86+-4.20.iso file, and click Open button.
9. Click on ImgBurn green arrow to start burning bootable memtest86 CD:

Posted Image

10. Once the CD is created, boot from it, and memtest will automatically start to run. You may have to change the boot sequence in your BIOS to make it work right.

To change Boot Sequence in your BIOS

Reboot the system and at the first post screen (where it is counting up memory) start tapping the DEL button
This will enter you into the Bios\Cmos area.
Find the Advanced area and click Enter
Look for Boot Sequence or Boot Options and highlight that click Enter
Now highlight the first drive and follow the directions on the bottom of the screen on how to modify it and change it to CDrom.
Change the second drive to the C or Main Drive
Once that is done then click F10 to Save and Exit
You will prompted to enter Y to verify Save and Exit. Click Y and the system will now reboot with the new settings.


The running program will look something like this depending on the size and number of ram modules installed:


Posted Image

It's recommended to run 5-6 passes. Each pass contains very same 8 tests.

This will show the progress of the test. It can take a while. Be patient, or leave it running overnight.

Posted Image

The following image is the test results area:

Posted Image

The most important item here is the “errors” line. If you see ANY errors, even one, most likely, you have bad RAM.





Please Run the PCPitstop.com OverDrive Full Tests

Here's how:

You must use your Internet Explorer for this procedure. (doesn't work so well in Firefox or others). If your machine is running Vista or Windows 7, you must Select IE to “Run as Administrator”. After completing PCPitstop OverDrive you can close your IE browser and re-open it Normally so that you are no longer running as administrator.

Go to: http://www.pcpitstop.com
Click on "Free Computer Check-up" listed below PC Pitstop OverDrive
In the User Login - Click on "Sign up FREE!"
You'll need to submit a valid email address and create your own password, then click - Create Account(button)

Now enter your email address and password to Log in, Select - Scan this system Now!(button)
You will then be asked to download an ActiveX component and allow it to install.
It is safe and does not compromise your privacy.
Follow the on-screen prompts to install the ActiveX and to allow the Full Tests to be run on your machine.

The Full Tests take about 2 1/2 - 3 minutes on most machines.
When complete, a Results - Summary - Recommended Fixes will be displayed.

Please post the URL internet address, from your Results, back here into this Topic Thread so that we can review the configuration and present performance levels of your machine.

Note: During the graphics 2D and graphics 3D testing, your screen will display some rapidly moving objects.
If you are sensitive to visual flashing, it may cause dizziness. Therefore, look away from the screen during that portion of the testing.

After reviewing the results we will be more informed and may be able to provide better recommendations for you to work towards improving your machine's performance.

While PCPitstop does offer a variety of Paid Products, the PCPitstop OverDrive testing is FREE. Please ignore the references to Paid Products. We prefer to provide manual solution instructions that you can apply directly to your machine.

Best Regards



Go to

Start and then to Run
Type in Chkdsk /r Note the space between k and /
Click Enter ...It will probably ask if you want to do this on the next reboot...click Y
If the window doesn't shutdown on its own then reboot the system manually. On reboot the system will start the chkdsk operation
This one will take longer then chkdsk /f

Note... there are 5 stages...
It may appear to hang at a certain percent for a hour or more or even back up and go over the same area...this is normal...
DO NOT SHUT YOUR COMPUTER DOWN WHILE CHKDSK IS RUNNING OR YOU CAN HAVE SEVERE PROBLEMS
This can take several hours to complete.
When completed it will boot the system back into windows.

Reboot after your done running chkdsk /r...
then Go to Start...Run and type: eventvwr.msc press Enter
When Event Viewer opens, click on Applications... then scroll down to Winlogon and double-click on it. This is the log created after running Checkdisk...copy and paste the log back here


We will advise after studying the log.
  • 0

#3
archie10

archie10

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts
hello
test one
all good do not know how to retrieve the log for it though.
hard drive diagnostics
test 2
memtest
time 41 minutes pass no errors
test 3
pc pit stop
results
http://www.pcpitstop...?conid=24863995
test 4 proceeding now and will advise on completion


thanks for your time it is greatly appreciated
  • 0

#4
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
Download Autoruns from the link in my signature below:

1: Extract the Autoruns Zip file contents to a folder.
2: Double-click the "Autoruns.exe".
3: Click on the "Everything" tab
4: Remove any entries that mention "File Not Found" by right-clicking the entry and select Delete.
5: Go to File then to Export As or Save in some versions.
6: Save AutoRuns.txt file to known location like your Desktop.
7: Attach to your next reply.








Download Speedfan (The download link is to the right), and install it. Once it's installed, run the program and post here the information it shows.
The information I want you to post is the stuff that is circled in the example picture I have attached.
To make sure we are getting all the correct information it would help us if you were to attach a screenshot like the one below of your Speedfan results.

To do a screenshot please have click on your Print Screen on your keyboard.
  • It is normally the key above your number pad between the F12 key and the Scroll Lock key
  • Now go to Start and then to All Programs
  • Scroll to Accessories and then click on Paint
  • In the Empty White Area click and hold the CTRL key and then click the V
  • Go to the File option at the top and click on Save as
  • Save as file type JPEG and save it to your Desktop
  • Attach it to your next reply

Posted Image
  • 0

#5
archie10

archie10

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts
Download Autoruns from the link in my signature below:

1: Extract the Autoruns Zip file contents to a folder.
2: Double-click the "Autoruns.exe".
3: Click on the "Everything" tab
4: Remove any entries that mention "File Not Found" by right-clicking the entry and select Delete.
5: Go to File then to Export As or Save in some versions.
6: Save AutoRuns.txt file to known location like your Desktop.
7: Attach to your next reply.
Try as I might I cannot find this in your signature below because you don't
have a signature below.
the test 4 log results

Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 4/5/2012
Time: 6:32:59 PM
User: N/A
Computer: YOUR-4F1261A8E5
Description:
Checking file system on C:
The type of the file system is NTFS.
Volume label is PRESARIO.

A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 573 unused index entries from index $SII of file 0x9.
Cleaning up 573 unused index entries from index $SDH of file 0x9.
Cleaning up 573 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
Windows replaced bad clusters in file 216279
of name \SYSTEM~1\_restore{DDE3EB95-4B24-44D8-AD38-1F974B96C2F0}\RP1802\snapshot\_REGISTRY_USER_NTUSER_S-1-5-21-3135469109-2156850678-1911169484-1009.
File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
Free space verification is complete.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
CHKDSK discovered free space marked as allocated in the volume bitmap.
Windows has made corrections to the file system.

117049588 KB total disk space.
71755288 KB in 356525 files.
132200 KB in 31175 indexes.
0 KB in bad sectors.
651996 KB in use by the system.
65536 KB occupied by the log file.
44510104 KB available on disk.

4096 bytes in each allocation unit.
29262397 total allocation units on disk.
11127526 allocation units available on disk.

Internal Info:
b0 b2 08 00 7e ea 05 00 00 fe 08 00 00 00 00 00 ....~...........
89 59 00 00 02 00 00 00 cf 06 00 00 00 00 00 00 .Y..............
aa 54 2d 10 00 00 00 00 80 ff d3 ce 00 00 00 00 .T-.............
ec a9 a0 0f 00 00 00 00 d8 c7 a9 f4 0c 00 00 00 ................
1c c4 eb 41 01 00 00 00 28 96 31 29 0f 00 00 00 ...A....(.1)....
99 9e 36 00 00 00 00 00 c8 3b 07 00 ad 70 05 00 ..6......;...p..
00 00 00 00 00 60 98 1b 11 00 00 00 c7 79 00 00 .....`.......y..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft....ink/events.asp.

The crap in the speed fan initialize box.

Win9x:NO 64Bit:NO GiveIO:YES SpeedFan:YES
I/O properly initialized
Linked ISA BUS at $0290
Linked SiS760 (SiS964) SMBUS at $1060
Found nVidia GeForce 7300 GT
Linked nVidiaI2C0 SMBUS at $3D403E3F
Linked nVidiaI2C1 SMBUS at $3D403637
Linked nVidiaI2C2 SMBUS at $3D405051
Scanning ISA BUS at $0290...
Scanning SiSx30 SMBus at $1060...
DME1737 (ID=$89) found on SMBus at $2E
Scanning I2CNVidia SMBus at $3D403E3F...
Address $2D appears to be WRITE ONLY...
Address $2E appears to be WRITE ONLY...
Address $48 appears to be WRITE ONLY...
Address $49 appears to be WRITE ONLY...
Address $4C appears to be WRITE ONLY...
Address $50 appears to be WRITE ONLY...
Scanning I2CNVidia SMBus at $3D403637...
Address $2D appears to be WRITE ONLY...
Address $2E appears to be WRITE ONLY...
Address $48 appears to be WRITE ONLY...
Address $49 appears to be WRITE ONLY...
Address $4C appears to be WRITE ONLY...
Address $50 appears to be WRITE ONLY...
Scanning I2CNVidia SMBus at $3D405051...
Address $2D appears to be WRITE ONLY...
Address $2E appears to be WRITE ONLY...
Address $48 appears to be WRITE ONLY...
Address $49 appears to be WRITE ONLY...
Address $4C appears to be WRITE ONLY...
Found ST3802110A on AdvSMART
Found WDC WD2500AAJB-00J3A0 on AdvSMART
Found ACPI temperature (40.0C)
End of detection
Loaded 0 events
the picture of speed fan

Do I have to enable something in order to let me see your signature below ???

also on first reboot after check disk it could not find my processor driver sys
so I flailed around and found one on the net
wrong one but it works the right one wont work because it fails with memory cannot be written to
error.

guess what i found your signature

here is the log

"HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logoff" "" "" ""
+ "Local Group Policy" "" "" "c:\program files\privacy shield\xp.cmd"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "00ERSRRRNKY" "" "" "c:\program files\1st evidence remover\eraser.exe"
+ "Acronis Scheduler2 Service" "Acronis Scheduler Helper" "Acronis" "c:\program files\common files\acronis\schedule2\schedhlp.exe"
+ "Adobe ARM" "Adobe Reader and Acrobat Manager" "Adobe Systems Incorporated" "c:\program files\common files\adobe\arm\1.0\adobearm.exe"
+ "Adobe Reader Speed Launcher" "Adobe Acrobat SpeedLauncher" "Adobe Systems Incorporated" "c:\program files\adobe\reader 9.0\reader\reader_sl.exe"
+ "AlcxMonitor" "Realtek Audio - Event Monitor" "Realtek Semiconductor Corp." "c:\windows\alcxmntr.exe"
+ "Apoint" "Alps Pointing-device Driver" "Alps Electric Co., Ltd." "c:\program files\apoint2k\apoint.exe"
+ "Immunet Protect" "Immunet Protect Tray Client" "Immunet" "c:\program files\immunet\3.0.5\iptray.exe"
+ "Info Center" "PCPitstopInfoCenter" "PC Pitstop LLC" "c:\program files\pcpitstop\info center\infocenter.exe"
+ "IntelliPoint" "IPoint.exe" "Microsoft Corporation" "c:\program files\microsoft intellipoint\ipoint.exe"
+ "itype" "IType.exe" "Microsoft Corporation" "c:\program files\microsoft intellitype pro\itype.exe"
+ "Local Group Policy" "" "" "c:\program files\privacy shield\xp.cmd"
+ "Malwarebytes' Anti-Malware" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files\malwarebytes' anti-malware\mbamgui.exe"
+ "MSC" "Microsoft Security Client User Interface" "Microsoft Corporation" "c:\program files\microsoft security client\msseces.exe"
+ "NvCplDaemon" "NVIDIA Display Properties Extension" "NVIDIA Corporation" "c:\windows\system32\nvcpl.dll"
+ "nwiz" "NVIDIA nView Wizard, Version 135.18 " "NVIDIA Corporation" "c:\program files\nvidia corporation\nview\nwiz.exe"
+ "PC Booster" "PC Booster 2008" "inKline Global Inc." "c:\program files\inkline global\pc booster\pcbooster.exe"
+ "PC Pitstop PC Matic Reminder" "PC Matic" "PC Pitstop LLC" "c:\program files\pcpitstop\pc matic\reminder-pcmatic.exe"
+ "SAOB Monitor" "Acronis True Image Monitor" "Acronis" "c:\program files\acronis\trueimagehome\onlinebackupstandalone\trueimagemonitor.exe"
+ "SiSRaid" "SiS Windows Raid Utility" "Silicon Integrated Systems Corp." "c:\program files\silicon integrated systems\sisraidpackage\sraid.exe"
+ "SunJavaUpdateSched" "Java™ Update Scheduler" "Sun Microsystems, Inc." "c:\program files\common files\java\java update\jusched.exe"
+ "TrojanScanner" "Trojan Scanner" "Simply Super Software" "c:\program files\trojan remover\trjscan.exe"
+ "TrueImageMonitor.exe" "Acronis True Image Monitor" "Acronis" "c:\program files\acronis\trueimagehome\trueimagemonitor.exe"
"C:\Documents and Settings\All Users\Start Menu\Programs\Startup" "" "" ""
+ "Taskbar Manager.lnk" "Taskbar Management utility" "Askarya Technologies" "c:\program files\askarya\taskbar manager\taskbarmanager.exe"
+ "Xfire.lnk" "Xfire" "Xfire Inc." "c:\program files\xfire\xfire.exe"
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Address Book 6" "Outlook Express Setup Library" "Microsoft Corporation" "c:\program files\outlook express\setup50.exe"
+ "Microsoft Outlook Express 6" "Outlook Express Setup Library" "Microsoft Corporation" "c:\program files\outlook express\setup50.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "RoboForm" "RoboForm TaskBar Icon" "Siber Systems" "c:\program files\siber systems\ai roboform\robotaskbaricon.exe"
"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" ""
+ "belarc" "Belarc VoilaX Control" "Belarc, Inc." "c:\program files\belarc\advisor\system\bavoilax.dll"
+ "ms-itss" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\program files\common files\microsoft shared\information retrieval\msitss.dll"
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "Acronis True Image Shell Context Menu Extension" "Acronis True Image Shell Extensions" "Acronis" "c:\program files\acronis\trueimagehome\tishell.dll"
+ "CopyToCD" "CopyToCD shell integration DLL" "VSO Software" "c:\program files\vso\copytodvd\ctcdshell.dll"
+ "EPP" "Microsoft Security Client Shell Extension" "Microsoft Corporation" "c:\program files\microsoft security client\shellext.dll"
+ "HexWorkshopContextMenu" "Hex Workshop Shell Extension" "BreakPoint Software, Inc." "c:\program files\breakpoint software\hex workshop 4.2\hwext.dll"
+ "Immunet Protect Context Menu Handler" "Immunet Protect Context Menu Handle" "Immunet Corporation" "c:\program files\immunet\3.0.5\dcm.dll"
+ "NBShellHook Class" "Nero BackItUp Application" "Nero AG" "c:\program files\nero\nero 7\nero backitup\nbshell.dll"
+ "Notepad++" "ShellHandler for Notepad++ (64 bit)" "" "c:\program files\notepad++\nppshell_04.dll"
+ "RhinoShExt" "Rhino 3.0 3DM File Extension for Windows Explorer" "Robert McNeel & Associates" "c:\windows\system32\rhinoshext.dll"
+ "SlimShellExt" "SlimCleaner Shell Extension" "Slimware Utilities, Inc." "c:\program files\slimcleaner\slimshell.dll"
+ "Trojan Remover" "Trojan Remover Shell Extension" "Simply Super Software" "c:\program files\trojan remover\trshlex.dll"
+ "VersionsPageShellExt" "Versions Page" "Acronis" "c:\program files\acronis\trueimagehome\versions_page.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, Inc." "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Classes\*\ShellEx\PropertySheetHandlers" "" "" ""
+ "VersionsPageShellExt Class" "Versions Page" "Acronis" "c:\program files\acronis\trueimagehome\versions_page.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files\malwarebytes' anti-malware\mbamext.dll"
+ "SlimShellExt" "SlimCleaner Shell Extension" "Slimware Utilities, Inc." "c:\program files\slimcleaner\slimshell.dll"
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "CopyToCD" "CopyToCD shell integration DLL" "VSO Software" "c:\program files\vso\copytodvd\ctcdshell.dll"
+ "EPP" "Microsoft Security Client Shell Extension" "Microsoft Corporation" "c:\program files\microsoft security client\shellext.dll"
+ "Immunet Protect Context Menu Handler" "Immunet Protect Context Menu Handle" "Immunet Corporation" "c:\program files\immunet\3.0.5\dcm.dll"
+ "SlimShellExt" "SlimCleaner Shell Extension" "Slimware Utilities, Inc." "c:\program files\slimcleaner\slimshell.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, Inc." "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, Inc." "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" ""
+ "SmartFTPCopyHook" "SmartFTP Client CopyHook" "SmartFTP" "c:\program files\smartftp client 2.0\smarthook.dll"
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "00nView" "NVIDIA Desktop Explorer, Version 135.18 " "NVIDIA Corporation" "c:\program files\nvidia corporation\nview\nvshell.dll"
+ "NvCplDesktopContext" "NVIDIA Display Properties Extension" "NVIDIA Corporation" "c:\windows\system32\nvcpl.dll"
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "NeroDigitalColumnHandler Class" "Nero Digital Shell Extension" "Nero AG" "c:\program files\common files\ahead\lib\nerodigitalext.dll"
+ "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll"
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Context Menu Extension" "Acronis True Image Shell Extensions" "Acronis" "c:\program files\acronis\trueimagehome\tishell.dll"
+ "CopyToCD" "CopyToCD shell integration DLL" "VSO Software" "c:\program files\vso\copytodvd\ctcdshell.dll"
+ "Immunet Protect Context Menu Handler" "Immunet Protect Context Menu Handle" "Immunet Corporation" "c:\program files\immunet\3.0.5\dcm.dll"
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files\malwarebytes' anti-malware\mbamext.dll"
+ "NBShellHook Class" "Nero BackItUp Application" "Nero AG" "c:\program files\nero\nero 7\nero backitup\nbshell.dll"
+ "Trojan Remover" "Trojan Remover Shell Extension" "Simply Super Software" "c:\program files\trojan remover\trshlex.dll"
+ "VersionsPageShellExt" "Versions Page" "Acronis" "c:\program files\acronis\trueimagehome\versions_page.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, Inc." "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "NBShellHook" "Nero BackItUp Application" "Nero AG" "c:\program files\nero\nero 7\nero backitup\nbshell.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, Inc." "c:\program files\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" ""
+ "VersionsPageShellExt Class" "Versions Page" "Acronis" "c:\program files\acronis\trueimagehome\versions_page.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll"
+ "Adobe PDF Reader Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll"
+ "Anonymizer Proxy" "Anonymizer Proxy Engine for Internet Explorer" "Anonymizer Software" "c:\program files\netconeal\anonymity shield\proxynew.dll"
+ "ATLAS Toolbar" "ATLAS/HomePage Translation(Internet Explorer)" "FUJITSU LIMITED" "c:\program files\atlas v13\atliecp.dll"
+ "FGCatchUrl" "Flashget CatchUrl Module" "www.flashget.com" "c:\program files\flashget\jccatch_1.dll"
+ "FlashGet GetFlash Class" "Flashget GetFlash Module" "www.flashget.com" "c:\program files\flashget\getflash.dll"
+ "IeMonitorBho Class" "Mega Manager IE Click Catcher" "Megaupload Limited" "c:\program files\megaupload\mega manager\megaiemn.dll"
+ "Java™ Plug-In 2 SSV Helper" "Java™ Platform SE binary" "Oracle Corporation" "c:\program files\java\jre7\bin\jp2ssv.dll"
+ "TBSB05974 Class" "IE Toolbar Engine" "" "c:\program files\search toolbar\tbcore3.dll"
+ "TheBflix Class" "Injector" "Injector" "c:\documents and settings\all users\application data\thebflix\bhoclass.dll"
+ "{724d43a9-0d85-11d4-9908-00400523e39a}" "RoboForm Main Module" "Siber Systems Inc." "c:\program files\siber systems\ai roboform\roboform.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks" "" "" ""
+ "ToolbarURLSearchHook Class" "IE Toolbar Helper Module" "" "c:\program files\search toolbar\tbhelper.dll"
"HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" ""
+ "&RoboForm" "RoboForm Main Module" "Siber Systems Inc." "c:\program files\siber systems\ai roboform\roboform.dll"
+ "ATLAS Toolbar" "ATLAS/HomePage Translation(Internet Explorer)" "FUJITSU LIMITED" "c:\program files\atlas v13\atliecp.dll"
+ "FlashGet Bar" "FlashGet IE Bar" "Amaze Soft" "c:\program files\flashget\fgiebar.dll"
+ "Search Toolbar" "IE Toolbar Engine" "" "c:\program files\search toolbar\tbcore3.dll"
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "ATLAS Translation" "" "" "c:\program files\atlas v13\atlscript.html"
+ "Fill Forms" "" "" "c:\program files\siber systems\ai roboform\roboformcomfillforms.html"
+ "FlashGet" "FlashGet" "FlashGet.com" "c:\program files\flashget\flashget.exe"
+ "RoboForm Toolbar" "" "" "c:\program files\siber systems\ai roboform\roboformcomshowtoolbar.html"
+ "Save Forms" "" "" "c:\program files\siber systems\ai roboform\roboformcomsavepass.html"
+ "Sothink SWF Catcher" "" "" "c:\program files\common files\sourcetec\swf catcher\internetexplorer.htm"
+ "Windows Messenger" "Windows Messenger" "Microsoft Corporation" "c:\program files\messenger\msmsgs.exe"
"Task Scheduler" "" "" ""
+ "Adobe Flash Player Updater.job" "Adobe® Flash® Player Update Service 11.2 r202" "Adobe Systems Incorporated" "c:\windows\system32\macromed\flash\flashplayerupdateservice.exe"
+ "DriverNavigator Scheduled Scan.job" "DriverNavigator" "Easeware" "c:\program files\easeware\drivernavigator\drivernavigator.exe"
+ "Immunet Scan 2233828.job" "Immunet Protect Scan Client" "Immunet Corporation" "c:\program files\immunet\ips.exe"
+ "Immunet Scan 3374359.job" "Immunet Protect Scan Client" "Immunet Corporation" "c:\program files\immunet\ips.exe"
+ "Immunet Scan 90750515.job" "Immunet Protect Scan Client" "Immunet Corporation" "c:\program files\immunet\ips.exe"
+ "Immunet Scan 90774421.job" "Immunet Protect Scan Client" "Immunet Corporation" "c:\program files\immunet\ips.exe"
+ "MP Scheduled Scan.job" "Microsoft Malware Protection Command Line Utility" "Microsoft Corporation" "c:\program files\microsoft security client\antimalware\mpcmdrun.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "AcrSch2Svc" "Task scheduling for Acronis applications." "Acronis" "c:\program files\common files\acronis\schedule2\schedul2.exe"
+ "AdobeFlashPlayerUpdateSvc" "This service keeps your Adobe Flash Player installation up to date with the latest enhancements and security fixes." "Adobe Systems Incorporated" "c:\windows\system32\macromed\flash\flashplayerupdateservice.exe"
+ "afcdpsrv" "Provides nonstop backup for partitions of the computer." "Acronis" "c:\program files\common files\acronis\cdp\afcdpsrv.exe"
+ "AgereModemAudio" "Agere Soft Modem Call Progress Service" "Agere Systems" "c:\windows\system32\agrsmsvc.exe"
+ "Diskeeper" "Allows Diskeeper to run on this computer and improve file system performance." "Diskeeper Corporation" "c:\program files\diskeeper corporation\diskeeper\dkservice.exe"
+ "EraserThread" "" "" "c:\program files\1st evidence remover\erasrv.exe"
+ "gusvc" "gusvc" "Google" "c:\program files\google\common\google updater\googleupdaterservice.exe"
+ "IDriverT" "Provides support for the Running Object Table for InstallShield Drivers" "Macrovision Corporation" "c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe"
+ "ImmunetProtect" "Immunet 3.0" "Sourcefire, Inc." "c:\program files\immunet\3.0.5\agent.exe"
+ "iPodService" "iPod hardware management services" "Apple Computer, Inc." "c:\program files\ipod\bin\ipodservice.exe"
+ "JavaQuickStarterService" "Prefetches JRE files for faster startup of Java applets and applications" "Oracle Corporation" "c:\program files\java\jre7\bin\jqs.exe"
+ "LBTServ" "Logitech Bluetooth Service" "Logitech, Inc." "c:\program files\common files\logishrd\bluetooth\lbtserv.exe"
+ "LightScribeService" "Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work." "" "c:\program files\common files\lightscribe\lssrvc.exe"
+ "MBAMService" "Malwarebytes Anti-Malware service" "Malwarebytes Corporation" "c:\program files\malwarebytes' anti-malware\mbamservice.exe"
+ "MDM" "Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly." "Microsoft Corporation" "c:\program files\common files\microsoft shared\vs7debug\mdm.exe"
+ "MsMpSvc" "Helps protect users from malware and other potentially unwanted software" "Microsoft Corporation" "c:\program files\microsoft security client\antimalware\msmpeng.exe"
+ "npggsvc" "nProtect GameGuard Service" "INCA Internet Co., Ltd." "c:\windows\system32\gamemon.des"
+ "nvsvc" "Provides system and desktop level support to the NVIDIA display driver" "NVIDIA Corporation" "c:\windows\system32\nvsvc32.exe"
+ "OS Selector" "Required for Acronis OS Selector reactivation." "" "c:\program files\acronis\diskdirector\oss\reinstall_svc.exe"
+ "PCPitstop Scheduling" "This service handles the scheduling for PCPitstop Applications" "PC Pitstop LLC" "c:\program files\pcpitstop\pcpitstopscheduleservice.exe"
+ "scan" "scan" "S.C. BitDefender S.R.L" "c:\program files\immunet\tetra\scan.dll"
+ "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "afcdp" "Acronis File Level CDP Helper" "Acronis" "c:\windows\system32\drivers\afcdp.sys"
+ "AgereSoftModem" "SoftModem Device Driver" "LSI Corporation" "c:\windows\system32\drivers\agrsm.sys"
+ "ALCXWDM" "Realtek AC'97 Audio Driver (WDM)" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\alcxwdm.sys"
+ "AmdK8" "AMD Processor Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdk8.sys"
+ "amie8kcj" "" "" "File not found: C:\WINDOWS\System32\Drivers\amie8kcj.sys"
+ "ApfiltrService" "Alps Touch Pad Driver" "Alps Electric Co., Ltd." "c:\windows\system32\drivers\apfiltr.sys"
+ "BANTExt" "" "" "c:\windows\system32\drivers\bantext.sys"
+ "BCMNTIO" "" "" "c:\program files\checkit\diagnostics\bcmntio.sys"
+ "DKRtWrt" "Diskeeper Virtualization FileSystem Mini-Filter Driver" "Diskeeper Corporation" "c:\windows\system32\drivers\dkrtwrt.sys"
+ "dvd43llh" "dvd43llh.sys" "RIF" "c:\windows\system32\drivers\dvd43llh.sys"
+ "GEARAspiWDM" "CD DVD Filter" "GEAR Software Inc." "c:\windows\system32\drivers\gearaspiwdm.sys"
+ "giveio" "" "" "c:\windows\system32\giveio.sys"
+ "ImmunetProtectDriver" "Immunet Protect Driver" "Windows ® Win 7 DDK provider" "c:\windows\system32\drivers\immunetprotect.sys"
+ "ImmunetSelfProtectDriver" "Immunet Self Protection Driver" "Windows ® Win 7 DDK provider" "c:\windows\system32\drivers\immunetselfprotect.sys"
+ "KMWDFILTER" "KMWDFilter Driver from UASSOFT.COM" "Windows ® Codename Longhorn DDK provider" "c:\windows\system32\drivers\kmwdfilter.sys"
+ "LBeepKE" "Logitech Consumer Control Filter Driver." "Logitech, Inc." "c:\windows\system32\drivers\lbeepke.sys"
+ "LHidFilt" "Logitech HID Filter Driver." "Logitech, Inc." "c:\windows\system32\drivers\lhidfilt.sys"
+ "LMouFilt" "Logitech Mouse Filter Driver." "Logitech, Inc." "c:\windows\system32\drivers\lmoufilt.sys"
+ "LUsbFilt" "Logitech USB Filter Driver." "Logitech, Inc." "c:\windows\system32\drivers\lusbfilt.sys"
+ "Maplom" "Maplom.sys" "Jacal Consulting" "c:\windows\system32\drivers\maplom.sys"
+ "MAPMEM" "" "" "c:\program files\checkit\diagnostics\mapmem.sys"
+ "MBAMProtector" "Malwarebytes' Anti-Malware" "Malwarebytes Corporation" "c:\windows\system32\drivers\mbam.sys"
+ "MpKsl68c24a3e" "KSLDriver" "Microsoft Corporation" "c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{267efa42-ffa8-48f5-85b2-309daa38c651}\mpksl68c24a3e.sys"
+ "nv" "NVIDIA Compatible Windows 2000 Miniport Driver, Version 257.21 " "NVIDIA Corporation" "c:\windows\system32\drivers\nv4_mini.sys"
+ "Pcouffin" "Patin-Couffin low level access layer for CD devices" "VSO Software" "c:\windows\system32\drivers\pcouffin.sys"
+ "Ps2" "PS2 SYS" "Hewlett-Packard Company" "c:\windows\system32\drivers\ps2.sys"
+ "Ptilink" "Direct Parallel Link Driver" "Parallel Technologies, Inc." "c:\windows\system32\drivers\ptilink.sys"
+ "PxHelp20" "Px Engine Device Driver for Windows 2000/XP" "Sonic Solutions" "c:\windows\system32\drivers\pxhelp20.sys"
+ "Revoflt" "Revo Uninstaller Filter driver" "VS Revo Group" "c:\windows\system32\drivers\revoflt.sys"
+ "rtl8139" "Realtek RTL8139 NDIS 5.0 Driver" "Realtek Semiconductor Corporation" "c:\windows\system32\drivers\rtl8139.sys"
+ "Secdrv" "SafeDisc driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "Sentinel" "Sentinel System Driver (NT Parallel driver)" "Rainbow Technologies, Inc." "c:\windows\system32\drivers\sentinel.sys"
+ "SiS315" "SiS Compatible Super VGA Driver" "Silicon Integrated Systems Corporation" "c:\windows\system32\drivers\sisgrp.sys"
+ "SISAGP" "SiS AGPv3.5 Filter" "Silicon Integrated Systems Corporation" "c:\windows\system32\drivers\sisagpx.sys"
+ "SiSkp" "SiS VGA Driver Manager" "Silicon Integrated Systems Corporation" "c:\windows\system32\drivers\srvkp.sys"
+ "SISNIC" "SiS PCI Fast Ethernet Adapter Driver" "SiS Corporation" "c:\windows\system32\drivers\sisnic.sys"
+ "SISNICXP" "SiS PCI Fast Ethernet Adapter Driver" "SiS Corporation" "c:\windows\system32\drivers\sisnicxp.sys"
+ "SiSRaid" "SiS RAID Miniport Driver" "Silicon Integrated Systems" "c:\windows\system32\drivers\sisraid.sys"
+ "snapman" "Acronis Snapshot API" "Acronis" "c:\windows\system32\drivers\snapman.sys"
+ "speedfan" "SpeedFan Device Driver" "Windows ® 2000 DDK provider" "c:\windows\system32\speedfan.sys"
+ "sptd" "" "" "c:\windows\system32\drivers\sptd.sys"
+ "SSKBFD" "Spy Sweeper Keyboard Filter Driver" "Webroot Software Inc (www.webroot.com)" "c:\windows\system32\drivers\sskbfd.sys"
+ "SysTool" "Low-Level Driver" "" "c:\windows\system32\drivers\systool.sys"
+ "tdrpman273" "Acronis Try&Decide Volume Filter Driver" "Acronis" "c:\windows\system32\drivers\tdrpm273.sys"
+ "timounter" "Acronis Backup Archive Explorer" "Acronis" "c:\windows\system32\drivers\timntr.sys"
+ "TPkd" "InterLok system file" "PACE Anti-Piracy, Inc." "c:\windows\system32\drivers\tpkd.sys"
+ "Trufos" "Trufos Mini-Filter Driver" "BitDefender S.R.L." "c:\windows\system32\drivers\trufos.sys"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "msacm.iac2" "Indeo® audio software" "Intel Corporation" "c:\windows\system32\iac25_32.ax"
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"
+ "msacm.sl_anet" "Audio codec for MS ACM" "Sipro Lab Telecom Inc." "c:\windows\system32\sl_anet.acm"
+ "msacm.trspch" "DSP Group TrueSpeech™ Audio Codec for MSACM V3.50" "DSP GROUP, INC." "c:\windows\system32\tssoft32.acm"
+ "SENTINEL" "Sentinel Driver Setup DLL" "Rainbow Technologies, Inc." "c:\windows\system32\snti386.dll"
+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\system32\iccvid.dll"
+ "VIDC.FFDS" "ffdshow VFW" "" "c:\windows\system32\ff_vfw.dll"
+ "VIDC.FPS1" "Fraps" "Beepa P/L" "c:\windows\system32\frapsvid.dll"
+ "vidc.iv31" "" "" "c:\windows\system32\ir32_32.dll"
+ "vidc.iv32" "" "" "c:\windows\system32\ir32_32.dll"
+ "vidc.iv41" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
+ "vidc.iv50" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"
+ "vidc.VP60" "VP6 VIDEO FOR WINDOWS CODEC " "On2.com" "c:\windows\system32\vp6vfw.dll"
+ "vidc.VP61" "VP6 VIDEO FOR WINDOWS CODEC " "On2.com" "c:\windows\system32\vp6vfw.dll"
+ "VIDC.XFR1" "Xfire Video Codec" "" "c:\windows\system32\xfcodec.dll"
"HKLM\Software\Classes\Filter" "" "" ""
+ "Indeo® video 4.4 Compression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
+ "Indeo® video 4.4 Decompression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "9x8Resize" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "ACELP.net Audio Decoder" "ACELP.net Audio Decoder" "Sipro Lab Telecom Inc." "c:\windows\system32\acelpdec.ax"
+ "Allocator Fix" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Bitmap" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "DV Scenes" "DV-Timecode based Scenechange Detection" "Nero AG" "c:\program files\nero\nero 7\nero vision\nvdv.dll"
+ "DV Source Filter" "DV-Timecode based Scenechange Detection" "Nero AG" "c:\program files\nero\nero 7\nero vision\nvdv.dll"
+ "ffdshow Audio Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files\ffdshow\ffdshow.ax"
+ "ffdshow Audio Processor" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files\ffdshow\ffdshow.ax"
+ "ffdshow DXVA Video Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files\ffdshow\ffdshow.ax"
+ "ffdshow raw video filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files\ffdshow\ffdshow.ax"
+ "ffdshow subtitles filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files\ffdshow\ffdshow.ax"
+ "ffdshow Video Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files\ffdshow\ffdshow.ax"
+ "Frame Eater" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "HighMAT and MPV Navigator Filter" "MPV Playback Filter" "" "c:\program files\common files\ahead\dsfilter\hmnavigator.ax"
+ "HighMAT/MPV Navigation Client Filter" "MPV Playback Filter" "" "c:\program files\common files\ahead\dsfilter\hmnavigator.ax"
+ "Indeo® audio software" "Indeo® audio software" "Intel Corporation" "c:\windows\system32\iac25_32.ax"
+ "Indeo® video 5.10 Compression Filter" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"
+ "Indeo® video 5.10 Decompression Filter" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"
+ "InterVideo Audio Decoder" "IVIAUDIO LOGID.25577" "InterVideo Inc." "c:\program files\intervideo\common\bin\iviaudio.ax"
+ "InterVideo Audio Processor" "" "" "c:\program files\intervideo\common\bin\iviaudioprocess.ax"
+ "InterVideo Navigator" "IVINAV LOGID.25577" "InterVideo Inc." "c:\program files\intervideo\common\bin\ivinav.ax"
+ "InterVideo Video Decoder" "IVIVIDEO LOGID.25577" " InterVideo Inc." "c:\program files\intervideo\common\bin\ivivideo.ax"
+ "MPEG Layer-3 Decoder" "MPEG Layer-3 Audio Decoder" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codecx.ax"
+ "NeAudio2" "Nero Audio Decoder 2" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudio2.ax"
+ "Nero Audible Decoder" "Nero Audible Decoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudible.ax"
+ "Nero Audio CD Filter" "Nero Audio CD Source Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio CD Navigator" "Nero Audio CD Source Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio Processor" "Nero Audio Processor" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudioconv.ax"
+ "Nero Audio Source" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "Nero AV Synchronizer" "Audio/Video Synchronizer" "Nero AG" "c:\program files\common files\ahead\dsfilter\neavsync.ax"
+ "Nero Deinterlace" "Deinterlacing Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nedeinterlace.ax"
+ "Nero Digital Audio Decoder" "Nero Audio Decoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudio.ax"
+ "Nero Digital AVC Audio Encoder" "AAC LC/HE Audio Encoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendaud.ax"
+ "Nero Digital AVC File Writer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Muxer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Null Renderer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Subpicture Enc" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital Parser" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files\common files\ahead\dsfilter\ndparser.ax"
+ "Nero DV Splitter" "DV Splitter Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nedvsplitter.ax"
+ "Nero DVD Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideo.ax"
+ "Nero DVD Navigator" "DVD Navigator Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nedvd.ax"
+ "Nero ES Video Reader" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files\common files\ahead\dsfilter\ndparser.ax"
+ "Nero File Source" "Nero SVCD source filter" "Nero AG " "c:\program files\common files\ahead\dsfilter\nefilesrc.ax"
+ "Nero File Source (Async.)" "Nero Home" "Nero AG" "c:\program files\common files\ahead\dsfilter\nefilesourceasync.ax"
+ "Nero File Source / Splitter" "Push Mode VOB Source Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nefsource.ax"
+ "Nero Format Converter" "Frame rate / Color space converter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neroformatconv.ax"
+ "Nero Frame Capture" "Direct Show frame grabber filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\necapture.ax"
+ "Nero FTC" "Frame Time Corrector Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neftc.ax"
+ "Nero InteractiveGraphics Decoder" "Graphics Decoder Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nebdgraphic.ax"
+ "Nero Mpeg2 Encoder" "MPEG 1/2 encoder filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevcr.ax"
+ "Nero Overlay Mixer" "Overlay Mixer Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neoverlaymixer.ax"
+ "Nero Photo Source" "Nero Home" "Nero AG" "c:\program files\common files\ahead\dsfilter\nephotosource.ax"
+ "Nero PresentationGraphics Decoder" "Graphics Decoder Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nebdgraphic.ax"
+ "Nero PS Muxer" "" "" "c:\program files\common files\ahead\dsfilter\nepsmuxer.ax"
+ "Nero QuickTime™ Audio Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero QuickTime™ Video Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero Resize" "Nero Resizing Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neresize.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Splitter" "Splitter Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nesplitter.ax"
+ "Nero Stream Buffer Sink" "Nero Stream Buffer Engine" "Nero AG" "c:\program files\common files\ahead\dsfilter\nesbe.ax"
+ "Nero Stream Buffer Source" "Nero Stream Buffer Engine" "Nero AG" "c:\program files\common files\ahead\dsfilter\nesbe.ax"
+ "Nero Stream Control" "Transport Stream Controller Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nestreamcontrol.ax"
+ "Nero Subpicture Decoder" "Nero Subpicture Decoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\nesubpicture.ax"
+ "Nero Thumbnail Decoder" "Thumbnail Decoder Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nebdthumbnail.ax"
+ "Nero Vcd Navigator" "Nero Vcd Navigator Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevcd.ax"
+ "Nero Video Analyzer" "Nero Video Analyzer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideoanalyzer.ax"
+ "Nero Video Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideo.ax"
+ "Nero Video Decoder HD" "Nero HD Video Decoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideohd.ax"
+ "Nero Video Processor" "Resize / Deinterlace / Color Correction / Film Effect / Frame Capture Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerovideoproc.ax"
+ "Nero Video Renderer" "Nero Video Renderer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideorenderer.ax"
+ "Nero Video Source" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "Nero3D Text Effect" "Nero 3D DirectShow Filter" "Nero AG" "c:\program files\common files\ahead\lib\nsg_dxfilter.dll"
+ "Nero3D Transition" "Nero 3D DirectShow Filter" "Nero AG" "c:\program files\common files\ahead\lib\nsg_dxfilter.dll"
+ "Nero3D Video Filter" "Nero 3D DirectShow Filter" "Nero AG" "c:\program files\common files\ahead\lib\nsg_dxfilter.dll"
+ "Photo Story 2 Trial Source Filter" "Plus! Photo Story 2 LE" "Microsoft Corporation" "c:\program files\microsoft plus! photo story 2 le\pssf2try.dll"
+ "RealPlayer Audio Filter" "Audio Filter Plugin" "RealNetworks, Inc." "c:\program files\real\realplayer\rdsf3260.dll"
+ "Record Queue" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "ShotDetect" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Stetch" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WAV Dest Trial" "Plus! Photo Story 2 LE" "Microsoft Corporation" "c:\program files\microsoft plus! photo story 2 le\wavd2try.dll"
+ "WIA Stream Snapshot Filter" "WIA Stream Snapshot Filter" "MyCompanyName" "c:\windows\system32\wiasf.ax"
+ "WM VIH2 Fix" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Audio Analyzer" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Black Frame Generator" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT DirectX Transform Wrapper" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT DV Extract Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT FormatConversion" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Import Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Interlacer" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Log Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT MuxDeMux Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Sample Info Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Screen capture Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Switch Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Virtual Renderer" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Virtual Source" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Volume" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify" "" "" ""
+ "LBTWlgn" "Logitech Bluetooth Service" "Logitech, Inc." "c:\program files\common files\logishrd\bluetooth\lbtwlgn.dll"
"HKCU\Control Panel\Desktop\Scrnsave.exe" "" "" ""
+ "C:\WINDOWS\MORNIN~1.SCR" "AnimateIt MFC Application" "AllerSoft" "c:\windows\morning has broken.scr"

there is one in there that wont come out.

File not found: C:\WINDOWS\System32\Drivers\amie8kcj.sys
thanks for your time it is greatly appreciated

Attached Thumbnails

  • speed fan ss.JPG

Edited by archie10, 05 April 2012 - 07:48 PM.

  • 0

#6
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts




CHKDSK is verifying file data (stage 4 of 5)...
Windows replaced bad clusters in file 216279
of name \SYSTEM~1\_restore{DDE3EB95-4B24-44D8-AD38-1F974B96C2F0}\RP1802\snapshot\_REGISTRY_USER_NTUSER_S-1-5-21-3135469109-2156850678-1911169484-1009.
File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
Free space verification is complete.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
CHKDSK discovered free space marked as allocated in the volume bitmap.
Windows has made corrections to the file system
.



Rerun chkdsk again as there were problems found. Bad clusters could be a sign of hd failure. :(
  • 0

#7
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
Voltages and temps are not bad at all.

Open Autoruns, click on "Logon" tab, and UN-check:

+ "Adobe ARM"
+ "Adobe Reader Speed Launcher"
+ "NvCplDaemon"
+ "SunJavaUpdateSched"







When done restart computer and then:



Download TFC by OldTimer to your desktop
  • Please double-click TFC.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
  • It will close all programs when run, so make sure you have saved all your work before you begin.
  • Click the Start button to begin the process. Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two. Let it run uninterrupted to completion.
  • Once it's finished it should reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.


Download Auslogics Defrag from the link in my signature below. Auslogics Defrag in my opinion is better because:

It does a more comprehensive job at Defragging
It will actually show you what it is doing
At the end of working it will show you how much speed you picked up
You can view a online log of the files that Auslogics defragged
Please do not run any other Auslogics programs other then this one as they may cause unwanted results.
  • 0

#8
archie10

archie10

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts
okay here is winlog #2
must have copied the bad sectors from my hard drive clone of the old drive
(lol)

Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 4/6/2012
Time: 12:39:28 AM
User: N/A
Computer: YOUR-4F1261A8E5
Description:
Checking file system on C:
The type of the file system is NTFS.
Volume label is PRESARIO.

A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 2 unused index entries from index $SII of file 0x9.
Cleaning up 2 unused index entries from index $SDH of file 0x9.
Cleaning up 2 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
Free space verification is complete.

117049588 KB total disk space.
71830612 KB in 356607 files.
132240 KB in 31188 indexes.
0 KB in bad sectors.
651520 KB in use by the system.
65536 KB occupied by the log file.
44435216 KB available on disk.

4096 bytes in each allocation unit.
29262397 total allocation units on disk.
11108804 allocation units available on disk.

Internal Info:
b0 b2 08 00 dd ea 05 00 5f fe 08 00 00 00 00 00 ........_.......
90 59 00 00 02 00 00 00 94 04 00 00 00 00 00 00 .Y..............
04 b7 2f 10 00 00 00 00 92 94 8b cf 00 00 00 00 ../.............
a6 b9 4b 0e 00 00 00 00 d0 45 ab f5 0c 00 00 00 ..K......E......
1e ce 12 41 01 00 00 00 16 01 7a 28 0f 00 00 00 ...A......z(....
99 9e 36 00 00 00 00 00 c8 3b 07 00 ff 70 05 00 ..6......;...p..
00 00 00 00 00 50 31 20 11 00 00 00 d4 79 00 00 .....P1 .....y..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft....ink/events.asp.

commit charge is down by 125 megs load time is about the same
but come up to the log on screen much faster and shuts down quicker as well
process numbers after the smoke clears is 45 (lol went up by 2.
going to run the defrag program now
again thanks for your help it is truly appreciated
  • 0

#9
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
Great to hear and it sounds like the TFC and chkdsk has done a great job helping out. :thumbsup:
  • 0

#10
archie10

archie10

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts
stupid question?
cpu still overloads when running apps
like poser some times it just stalls out and i have to bail out
with the task manager.
and as yet have yet to find the right driver for my processor
the one i am using is for service pack 2 not 3
i think that's whats making it wheeze, hp dont have the right driver
may be in service pack 3??
the over head is way better
and it unloads real fast an loads to the login screen much faster
and it still wont save my settings
been trying to get the language bar to not load on system restart but i keep disabling it and
next time system comes up its back
have to disable it again
thanks again for your time
  • 0

Advertisements


#11
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts

cpu still overloads when running apps

Please post a screenshot of where you are getting this info.


and as yet have yet to find the right driver for my processor
the one i am using is for service pack 2 not 3
i think that's whats making it wheeze, hp dont have the right driver
may be in service pack 3??

Do you not have SP3 installed?
What CPU driver exactly are you looking for?
Have you done all Windows updates?



been trying to get the language bar to not load on system restart but i keep disabling it and
next time system comes up its back
have to disable it again

Where are you disabling it at exactly?
Have you checked your Startup folder in your All Programs in the Start Menu?
How about Msconfig Startups?
  • 0

#12
archie10

archie10

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts
Okay how can I explain this:
First I am a retired mechanic.
Its like an engine missing a spark plug,
it runs but not very well.
As long as there is no load or demands put on it its fine,
but try to climb a hill with it, you never get out of first gear.
Because its fighting the loss of one cylinder.
All the parts are there but its out of time,
when this is running right it screams. It will slam a program like poser
up in less that ten seconds.
Now you might as well go get a cup of coffee and a donut,
it will be up when you get back and almost run.
A simple scene swap should take no more then ten seconds,
now it takes better than 2 minutes and may crash the program.
Modo forgets what its doing when I am working on my models,
it cant remember how many vertices are in the model, then the cpu panics and
I have to wait for it to catch up
It makes no difference which mother board or processor I am using
the symptoms are identical one of the components is corrupted.
But I cant load drivers or roll them back because (explorer exe has to shut down the memory cannot be written to)
on exit.
Its like an engine with no throttle it idles but you cant give it any gas
no foot feed.
I am sorry but this is the only way that I can explain whats happening.
What ever happened when my power supply blew,
put one part of it in safe mode.
Even though its fixed, it cant remember it is fixed.
excuse me for my computer ignorance (may know just enough to be dangerous)

again thanks for your time it is greatly appreciated
  • 0

#13
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
Go Start and then to Run ("Start Search" in Vista),
Type in: sfc /scannow
Click OK (Enter in Vista).
Have Windows CD/DVD handy.
If System File Checker (sfc) finds any errors, it may ask you for the CD/DVD.
If sfc does not find any errors in Windows XP, it will simply quit, without any message.
In Vista you will receive the following message: "Windows resource protection did not find any integrity violations".

For Vista users ONLY: Navigate to C:\Windows\Logs\CBS folder. You'll see CBS.log file.
Usually, it's pretty big file, so upload it to Flyupload, and post download link.


If you don't have Windows CD....
This applies mostly to Windows XP, since Vista rarely requires use of its DVD while running "sfc"
Note This method will not necessarily work as well, as when using Windows CD, because not always ALL system files are backed up on your hard drive. Also, backed up files may be corrupted as well.

Go Start and then Run
type in regedit and click OK


Navigate to the following key:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup

You will see various entries Values on the right hand side.

The one we want is called: SourcePath

It probably has an entry pointing to your CD-ROM drive, usually D and that is why it is asking for the XP CD.
All we need to do is change it to: C:
Now, double click the SourcePatch setting and a new box will pop up.
Change the drive letter from your CD drive to your root drive, usually C:
Close Registry Editor.

Now restart your computer and try sfc /scannow again!


Thanks to Broni for the instructions
  • 0

#14
archie10

archie10

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts
run this a number of times
always exits clean
just like this time
i could find no log file check event viewer?

Event Type: Information
Event Source: Windows File Protection
Event Category: None
Event ID: 64017
Date: 4/7/2012
Time: 12:40:12 AM
User: N/A
Computer: YOUR-4F1261A8E5
Description:
Windows File Protection file scan completed successfully.

For more information, see Help and Support Center at http://go.microsoft....ink/events.asp.

there you go
again thanks for you help it is greatly appreciated
  • 0

#15
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
OK lets try a Repair Installation and see if that will correct the issue.


What I would suggest you do is to Backup your Data Files.
For this I would suggest using a External Hard Drive Enclosure. This will allow you to keep your Important Data safe and Separated from the main system in case of problems. The cost for this kind of Backup System has come down a lot. I would suggest a 500 Gig capacity for your needs. Since you will only be Backing Up Data Files Only this should be sufficient to do that for you. Follow the next two links to see examples of the price you will be looking at.
HERE
HERE

I suggest going to Microsofts Backup Tutorial and follow the steps to do a Backup to a External Drive and also it will guide you on how to do a Scheduled Backup even at night.

Another way you can do a Backup is by using DVD’s. This method is just as effective and can be done using the same steps as above.


After the above is done then go on to the next step.



Repair Installation Instructions

· Insert your Windows XP CD in your CD-ROM and then Restart your computer.

· At the first post screen start tapping the Del key to enter System Bios
· Find the Advance Options or Boot Sequence screen.
· You will need to change the boot sequence so that the CDrom is first and the HD is second.
· Press F10 to Save and Exit and then press Enter to accept.
· The system will now reboot
· When the "Press any key to boot from CD" message is displayed on your screen, press a key to start your computer from the Windows XP CD.
· When you see the following message displayed on the Welcome to Setup screen, press ENTER
· To setup Windows XP now, press ENTER.
· At this point an option to press R to enter the Recovery Console is displayed. DO NOT SELECT THIS OPTION.

· On the Windows XP Licensing Agreement screen, press F8 to agree to the license agreement.
· Make sure that your current installation of Windows XP is selected and highlighted in the box, and then press the R key to repair Windows XP.
· Follow the instructions on the screen to complete Setup.

You can also go HERE
to read a step by step tutorial with screenshots.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP