Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

I've Still Got A Mess

Slow Locks up in IE Videos wont run in any app Auto updates dont load

  • Please log in to reply

#1
JimBow

JimBow

    Member

  • Member
  • PipPip
  • 88 posts
I've been getting help for a couple of weeks in the Malware Forum and have been referred to the Software side after getting a notification that GfxUI was not working. Biscuithd has been helping on the malware issues and we've deleted redundant malware and antivirus programs, and run a myriad of checks and cleaners that fixed a few of my machine's symptoms. However, my computer is still slow to start and load pages, frequently hangs up in Internet Explorer, and will not run videos in any application. The posts from my malware topic are available at http://www.geekstogo...t-a-mess/page-2. I look forward to assistance from this community of experts. Thanks in advance.
JimBow
  • 0

Advertisements


#2
phillpower2

phillpower2

    Mechanised Mod

  • Global Moderator
  • 24,716 posts

Hello JimBow,

 

Download then run Speccy (free) and post the resultant url for us, details here,  this will provide us with information about your computer hardware + any software that you have installed that may explain the present issue/s. 


  • 0

#3
JimBow

JimBow

    Member

  • Topic Starter
  • Member
  • PipPip
  • 88 posts
Thank you for your willingness to help. Here is the url from Speccy: http://speccy.pirifo...5Ql6Dr7JMYSUkAl.
JimBow
  • 0

#4
phillpower2

phillpower2

    Mechanised Mod

  • Global Moderator
  • 24,716 posts

Thanks for the url JimBow  :thumbsup:

 

Looking at the Speccy results does not explain why you are experiencing poor performance, the opposite in fact as in your computer should be running well as everything looks in good order, this leaves a tired or fragmented HDD as possible causes, before we move on can I first ask which particular model of Sony Vaio is it and did you upgrade the OS from Vista, I ask this as I noted that the Ram is the older DDR2 type.

 

You are welcome btw  :)


  • 0

#5
JimBow

JimBow

    Member

  • Topic Starter
  • Member
  • PipPip
  • 88 posts
My Vaio is a Model PCG-7184L. It came with the Windows 7 Home Premium OS installed. That is the only OS I have run on it. A fragmented hard drive is unlikely since I periodically defrag it, but I wouldn't bet against it being "tired." Although I'm not sure I could explain what a tired hard drive is. I was surprised at the temperatures of the motherboard and CPU. Would they cause, or contribute to, the problems I'm having?
Thanks for weighing in.
  • 0

#6
Ztruker

Ztruker

    Member 5k

  • Technician
  • 7,091 posts

PCPitStop might help here:
 
Please Run the PCPitstop Full Tests, here: PCPitstop Full Tests

You must use Internet Explorer as it needs to install an ActiveX program.

Note: Vista/Windows 7 users with UAC must first Right-click IE - Select "Run as Administrator"

If you haven't already registered, Click - Sign up now! (left hand column in User Login)

Register and create a password
Accept the ActiveX component to allow your machine to run the Full Tests
Registering and accepting the ActiveX are both SAFE and FREE.

The Full Tests take less than 5 minutes for most machines.

To start, click on the Green Scan system now! button.

Once you have your Results, please post the URL (the http:// stuff) back here into this thread for review.

Note: Vista/Windows 7 users, please close your instance of IE "Running as Administrator" after you are finished reviewing your Results.

Caution: During the testing of Video Adapter, a variety of patterns, shapes, colors and text are “flashed” onto the users monitor screen. In the many thousands of daily uses of the PCPitstop Full Tests over several years, two individuals who suffer epilepsy experienced discomfort and temporary dizziness when viewing the flashing patterns.

If you know that you are susceptible to photo driven seizure, please look away from your screen during the Video Adapter testing sequence.

Note: The PCPitstop Full Tests Results is a free service, but is supported by various paid product advertisements for utilities that "could" remedy the OP's problem.

Since this site is a "free-help" forum, we do not recommend or endorse purchase of automated utilities, and will assist you in manually correcting any problems and settings necessary to optimize your machine's performance. Ask your questions here. We'll help you walk through any necessary steps.


  • 0

#7
phillpower2

phillpower2

    Mechanised Mod

  • Global Moderator
  • 24,716 posts

My Vaio is a Model PCG-7184L. It came with the Windows 7 Home Premium OS installed. That is the only OS I have run on it. A fragmented hard drive is unlikely since I periodically defrag it, but I wouldn't bet against it being "tired." Although I'm not sure I could explain what a tired hard drive is. I was surprised at the temperatures of the motherboard and CPU. Would they cause, or contribute to, the problems I'm having?
Thanks for weighing in.

 

OS and defrag details acknowledged, the reason that I asked btw was in case of outdated or incorrect drivers were installed, the test suggested by Ztruker will identify if there is, regarding defragging the HDD, it is dependant on how much usage/file swapping etc that the HDD performs how often that the drive should be defragged with the average user only needing to do it every couple of months, overdoing it does not only have the chance of actually fragmenting the drive but also putting additional wear and stress on it.

 

I will leave you to do the Pitstop test for now  :thumbsup:


  • 0

#8
JimBow

JimBow

    Member

  • Topic Starter
  • Member
  • PipPip
  • 88 posts

I've tried everything I can find to do, but I haven't been able to get PC Pitstop to run on my machine in either the Full Tests or Overdrive version.  I have updated my Windows files and simultaneously run Internet Explorer as Administrator, reduced the security level to Medium, enabled unsigned ActiveX controls to download and run, enabled PC Pitstop add-ons, and temporarily turned off my Avast anti-virus firewall.  Every attempt to run PC Pitstop just directs me to the troubleshooting page that tells me I do not have ActiveX installed.   None of my efforts in following the blog advice have been successful.

I look forward to your help.


  • 0

#9
Ztruker

Ztruker

    Member 5k

  • Technician
  • 7,091 posts

Try this then give PCPitStop a try again: Adjust Internet Explorer ActiveX settings


  • 0

#10
JimBow

JimBow

    Member

  • Topic Starter
  • Member
  • PipPip
  • 88 posts

I tried the ActiveX settings, using both Prompt and Enable on subsequent tries, but didn't have success with either.  In both cases, the results were exactly like what I experienced before.  I did not receive any prompts in either case.  Regardless of whether I click on the key from the "Full Tests" page or the Green "Scan this system now" button from the Overdrive page, I immediately wind up at the Stop page: http://www.pcpitstop...pit/loadctl.asp.   Clicking into the troubleshooting section always tells me, "ActiveX is not supported."  Just in case you are wondering, I did run IE as administrator, disable Avast, reduce security to Medium, and enabled add-ons from PC Pitstop. 

 

Is there an alternate test that would provide you useful info? 

 

I really appreciate your help.


Edited by JimBow, 05 November 2014 - 10:15 AM.

  • 0

Advertisements


#11
Ztruker

Ztruker

    Member 5k

  • Technician
  • 7,091 posts

Try running System File Checker, see if it fixes anything. If yes, try PCPitStop again.

 

Click Start, type command. Right click on Command Prompt at the top and select Run as Administrator.
In the Command Prompt window, type sfc /scannow and press Enter
Let it run to completion.

Reboot and see if the problem is fixed.


  • 0

#12
JimBow

JimBow

    Member

  • Topic Starter
  • Member
  • PipPip
  • 88 posts

Unfortunately, sfc/scannow resulted in "No integrity violations" and my attempts to run PC Pitstop still produced the same result as before:  "ActiveX is not supported."


  • 0

#13
JimBow

JimBow

    Member

  • Topic Starter
  • Member
  • PipPip
  • 88 posts

A case of PFM.  I tried one more time and it worked.  Here is the url.

 

http://www.pcpitstop...?conid=25707065

 

Thank you for your help and your patience.

 

JimBow


  • 0

#14
Ztruker

Ztruker

    Member 5k

  • Technician
  • 7,091 posts

The only thing I see there is the CPU load. As they state, it indicates something is (probably) running in the background that is loading down the system and causing it to run slow.

 

Let's see what starts when you boot your computer.

Download and run Startup List (does not need to be installed, just run it).
When done, click File then Save as and save Startuplist.txt to your Desktop or somewhere you can find it.
Start a reply here and paste the contents of Startuplist.txt into it.


  • 0

#15
JimBow

JimBow

    Member

  • Topic Starter
  • Member
  • PipPip
  • 88 posts
As I looked over the suggested fixes after running PC Pitstop, I was surprised to see that it suggested a defrag. I started to use the Windows defrag capability and the Windows analysis function told me I had more than 720Mb of Windows update clutter stored in cache that I should delete. Once I deleted that, Windows no longer recommended a defrag, my computer started running at an acceptable speed, videos began to run, and Internet Explorer hasn't hung up on me all day. I'm not yet convinced that my problem was only the amount of clutter, but I am wondering if whatever was causing my problem was living within that mess. Nonetheless, I am eager to conclude the process with you and ascertain that we have found and eradicated the culprit.

Here is the StartupList report. Reading this is way beyond my capabilities. Thank you for sticking with me.

StartupList report, 11/7/2014, 7:13:00 PM
StartupList version 2.02.0
Started from: C:\Users\Administrator\AppData\Local\Temp\Temp1_startuplist.zip\StartupList.EXE
Detected: Windows Vista SP1 (WinNT 6.01.7601)
Logged on as 'Administrator' to 'JIM-VAIO'
* Using default options (see end of log for possible options)
==================================================

Running processes (20):

[C:\Program Files (x86)\AOL Desktop 9.6\shellmon.exe (22)]
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\VERSION.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll

[C:\Program Files (x86)\AOL Desktop 9.6\waol.exe (151)]
C:\Program Files (x86)\AOL Desktop 9.6\ABOOK.dll
C:\Program Files (x86)\AOL Desktop 9.6\acfBase.DLL
C:\Program Files (x86)\AOL Desktop 9.6\APPDATA.dll
C:\Program Files (x86)\AOL Desktop 9.6\comm.dll
C:\Program Files (x86)\AOL Desktop 9.6\COOLAPI.dll
C:\Program Files (x86)\AOL Desktop 9.6\coolcore60.dll
C:\Program Files (x86)\AOL Desktop 9.6\DUNZIP32.dll
C:\Program Files (x86)\AOL Desktop 9.6\idleproc.dll
C:\Program Files (x86)\AOL Desktop 9.6\manager.dll
C:\Program Files (x86)\AOL Desktop 9.6\ProxyMgr.dll
C:\Program Files (x86)\AOL Desktop 9.6\resource.dll
C:\Program Files (x86)\AOL Desktop 9.6\supersub.dll
C:\Program Files (x86)\AOL Desktop 9.6\SYNCCORE.dll
C:\Program Files (x86)\AOL Desktop 9.6\tai2.dll
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\actvx.rct
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\chat.tol
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\coretool.rct
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\htmlview.tol
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\imfdecode.rct
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\lvi.tol
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\mip.tol
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\rich.rct
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\sec.cct
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\session.tol
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\talk.tol
C:\Program Files (x86)\AOL Desktop 9.6\TOOL\www.tol
C:\Program Files (x86)\AOL Desktop 9.6\waol.dll
C:\Program Files (x86)\AOL Desktop 9.6\xprt6.dll
C:\Program Files (x86)\AOL Desktop 9.6\zlib.dll
C:\Program Files (x86)\Common Files\AOL\1317750540\ee\AOLSvcMgr.dll
C:\Program Files (x86)\Common Files\AOL\ACS\AcsCmn.dll
C:\Program Files (x86)\Common Files\AOL\AOLDiag\tbdiag.dll
C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\AxMetaStream.dll
C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\ComponentMgr.dll
C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\Components\AOLUserShell.dll
C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\Components\SceneComponent.dll
C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\Components\SreeDMMX.dll
C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\Components\SWFView.dll
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\AUDIOSES.DLL
C:\Windows\system32\AVRT.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\d2d1.dll
C:\Windows\system32\D3D10Warp.dll
C:\Windows\system32\d3d11.dll
C:\Windows\system32\DCIMAN32.DLL
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\DWrite.dll
C:\Windows\system32\dxgi.dll
C:\Windows\system32\IEFRAME.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\jgdw400.dll
C:\Windows\system32\jgpl400.dll
C:\Windows\system32\ksuser.dll
C:\Windows\system32\midimap.dll
C:\Windows\system32\mlang.dll
C:\Windows\system32\MMDevAPI.DLL
C:\Windows\system32\MSACM32.dll
C:\Windows\system32\msacm32.drv
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\msimtf.dll
C:\Windows\system32\msls31.dll
C:\Windows\system32\MSVCIRT.dll
C:\Windows\system32\MSVCRT20.dll
C:\Windows\system32\MSVFW32.dll
C:\Windows\system32\mswsock.dll
C:\Windows\System32\msxml3.dll
C:\Windows\system32\netapi32.dll
C:\Windows\system32\netutils.dll
C:\Windows\system32\PROPSYS.dll
C:\Windows\system32\RASAPI32.dll
C:\Windows\system32\rasman.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\SAMCLI.DLL
C:\Windows\system32\Secur32.dll
C:\Windows\system32\shfolder.dll
C:\Windows\system32\srvcli.dll
C:\Windows\system32\SXS.DLL
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\VERSION.dll
C:\Windows\system32\wdmaud.drv
C:\Windows\system32\windowscodecs.dll
C:\Windows\system32\WINMM.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\WINSPOOL.DRV
C:\Windows\system32\WINSTA.dll
C:\Windows\system32\wkscli.dll
C:\Windows\System32\wship6.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\system32\wtsapi32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\SysWOW64\ATL.DLL
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\COMDLG32.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\SysWOW64\DDRAW.dll
C:\Windows\SysWOW64\ddrawex.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\SysWOW64\Dxtmsft.dll
C:\Windows\SysWOW64\Dxtrans.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\SysWOW64\jscript9.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\SysWOW64\mshtml.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\SysWOW64\OLEACC.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\SysWOW64\uiautomationcore.dll
C:\Windows\syswow64\urlmon.dll
C:\Windows\syswow64\user32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\SysWOW64\vbscript.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.DLL

[C:\Program Files (x86)\Common Files\AOL\1317750540\ee\aolsoftware.exe (89)]
C:\Program Files (x86)\Bonjour\mdnsNSP.dll
C:\Program Files (x86)\Common Files\AOL\1317750540\ee\AOLSvcMgr.dll
C:\Program Files (x86)\Common Files\AOL\1317750540\ee\coolcore54.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\aolsystrayservice\ver4_1_2_1\AOLSysTrayService.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\connection\ver7_1_2_1\connection.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\localStorage\ver8_1_1_1\clsSvc.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\metrics\ver4_1_11_1\cmls.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\notification\ver7_1_1_1\Notify.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\os\ver5_2_1_1\AOLIdleMon.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\os\ver5_2_1_1\OS.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\osInfo\ver2_1_1_1\OSInfo.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\preferences\ver6_1_1_1\preferences.dll
c:\program files (x86)\common files\aol\1317750540\ee\services\suiteFramework\ver5_1_4_1\suiteFramework.dll
C:\Program Files (x86)\Common Files\AOL\1317750540\ee\xprt5.dll
C:\Program Files (x86)\Common Files\AOL\1317750540\ee\xprt6.dll
C:\Program Files (x86)\Common Files\AOL\AOLDiag\tbdiag.dll
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DNSAPI.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\System32\fwpuclnt.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\iphlpapi.dll
C:\Windows\system32\mswsock.dll
C:\Windows\system32\napinsp.dll
C:\Windows\system32\NLAapi.dll
C:\Windows\system32\ntmarta.dll
C:\Windows\system32\pnrpnsp.dll
C:\Windows\system32\propsys.dll
C:\Windows\system32\rasadhlp.dll
C:\Windows\system32\RASAPI32.DLL
C:\Windows\system32\rasman.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\rtutils.dll
C:\Windows\system32\Secur32.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\VERSION.dll
C:\Windows\system32\WINMM.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\System32\winrnr.dll
C:\Windows\system32\wshbth.dll
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WLDAP32.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll

[C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (43)]
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IntelVisualDesign.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\7af891d4ed18c12e0b10b5d0faa86cd9\IAStorUtil.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\237d509a79aeef6e4635b09450d98f2a\System.Configuration.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b3011370dcbf33751d3b9dce8091c6c6\System.Runtime.Remoting.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\SYSTEM32\MSCOREE.DLL
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\shfolder.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\version.dll
C:\Windows\system32\WindowsCodecs.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\shell32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCR80.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE (140)]
C:\PROGRA~1\AVASTS~1\Avast\Aavm4h.dll
C:\PROGRA~1\AVASTS~1\Avast\AavmRpch.dll
C:\PROGRA~1\AVASTS~1\Avast\ashBase.dll
C:\PROGRA~1\AVASTS~1\Avast\ashTask.dll
C:\PROGRA~1\AVASTS~1\Avast\aswAux.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnBS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnIS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnOS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCommChannel.dll
C:\PROGRA~1\AVASTS~1\Avast\aswEngLdr.dll
C:\PROGRA~1\AVASTS~1\Avast\aswProperty.dll
C:\PROGRA~1\AVASTS~1\Avast\avastIP.dll
C:\Program Files (x86)\Bonjour\mdnsNSP.dll
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
C:\Program Files (x86)\Internet Explorer\ieproxy.dll
C:\Program Files (x86)\Internet Explorer\IEShims.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\msvcr100.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
C:\Program Files\AVAST Software\Avast\aswJsFlt.dll
C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
C:\Program Files\AVAST Software\Avast\aswWrcIEBroker32.dll
C:\Program Files\AVAST Software\Avast\dbghelp.dll
C:\Program Files\AVAST Software\Avast\snxhk.dll
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\AUDIOSES.DLL
C:\Windows\system32\bcrypt.dll
C:\Windows\system32\credssp.dll
C:\Windows\system32\cryptnet.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\d2d1.dll
C:\Windows\system32\d3d11.dll
C:\Windows\system32\d3d8thk.dll
C:\Windows\system32\d3d9.dll
C:\Windows\system32\DINPUT8.dll
C:\Windows\system32\DNSAPI.dll
C:\Windows\system32\DSOUND.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\DWrite.dll
C:\Windows\system32\dxgi.dll
C:\Windows\system32\dxva2.dll
C:\Windows\System32\fwpuclnt.dll
C:\Windows\system32\GPAPI.dll
C:\Windows\system32\icm32.dll
C:\Windows\system32\IEFRAME.dll
C:\Windows\system32\IEUI.dll
C:\Windows\system32\igd10umd32.dll
C:\Windows\system32\igdumd32.dll
C:\Windows\system32\igdumdx32.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\MLANG.dll
C:\Windows\System32\MMDevApi.dll
C:\Windows\system32\mscms.dll
C:\Windows\system32\MSHTML.dll
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\msimtf.dll
C:\Windows\system32\mswsock.dll
C:\Windows\System32\msxml6.dll
C:\Windows\system32\ncrypt.dll
C:\Windows\system32\ntmarta.dll
C:\Windows\system32\OLEACC.dll
C:\Windows\system32\POWRPROF.dll
C:\Windows\system32\PROPSYS.dll
C:\Windows\system32\rasadhlp.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\Secur32.dll
C:\Windows\system32\SensApi.dll
C:\Windows\system32\SXS.DLL
C:\Windows\System32\UIAnimation.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\version.DLL
C:\Windows\system32\webio.dll
C:\Windows\system32\windowscodecs.dll
C:\Windows\system32\windowscodecsext.dll
C:\Windows\system32\WINHTTP.dll
C:\Windows\system32\WINMM.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\system32\XmlLite.dll
C:\Windows\syswow64\advapi32.DLL
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\SysWOW64\bcryptprimitives.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\comdlg32.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\SysWow64\docobj.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\SysWOW64\ieapfltr.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\SysWOW64\jscript9.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\SysWOW64\Macromed\Flash\Flash32_15_0_0_189.ocx
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\schannel.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\shell32.DLL
C:\Windows\syswow64\shlwapi.DLL
C:\Windows\syswow64\SspiCli.dll
C:\Windows\SysWOW64\uiautomationcore.dll
C:\Windows\syswow64\urlmon.dll
C:\Windows\syswow64\user32.DLL
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WLDAP32.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCP110.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE (161)]
C:\PROGRA~1\AVASTS~1\Avast\Aavm4h.dll
C:\PROGRA~1\AVASTS~1\Avast\AavmRpch.dll
C:\PROGRA~1\AVASTS~1\Avast\ashBase.dll
C:\PROGRA~1\AVASTS~1\Avast\ashTask.dll
C:\PROGRA~1\AVASTS~1\Avast\aswAux.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnBS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnIS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnOS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCommChannel.dll
C:\PROGRA~1\AVASTS~1\Avast\aswEngLdr.dll
C:\PROGRA~1\AVASTS~1\Avast\aswProperty.dll
C:\PROGRA~1\AVASTS~1\Avast\avastIP.dll
C:\Program Files (x86)\Bonjour\mdnsNSP.dll
C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
C:\Program Files (x86)\Internet Explorer\ieproxy.dll
C:\Program Files (x86)\Internet Explorer\IEShims.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\msvcr100.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\wsdetect.dll
C:\Program Files\AVAST Software\Avast\aswJsFlt.dll
C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
C:\Program Files\AVAST Software\Avast\aswWrcIEBroker32.dll
C:\Program Files\AVAST Software\Avast\dbghelp.dll
C:\Program Files\AVAST Software\Avast\snxhk.dll
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\ATL.DLL
C:\Windows\system32\AUDIOSES.DLL
C:\Windows\system32\AVRT.dll
C:\Windows\system32\bcrypt.dll
C:\Windows\system32\credssp.dll
C:\Windows\system32\cryptnet.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\d2d1.dll
C:\Windows\system32\D3D10Level9.dll
C:\Windows\system32\d3d11.dll
C:\Windows\system32\d3d8thk.dll
C:\Windows\system32\d3d9.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DINPUT8.dll
C:\Windows\system32\DNSAPI.dll
C:\Windows\system32\DSOUND.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\DWrite.dll
C:\Windows\system32\dxgi.dll
C:\Windows\system32\dxva2.dll
C:\Windows\System32\fwpuclnt.dll
C:\Windows\system32\GPAPI.dll
C:\Windows\system32\icm32.dll
C:\Windows\system32\IEFRAME.dll
C:\Windows\system32\IEUI.dll
C:\Windows\system32\igd10umd32.dll
C:\Windows\system32\igdumd32.dll
C:\Windows\system32\igdumdx32.dll
C:\Windows\system32\ImgUtil.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\jsIntl.dll
C:\Windows\system32\ksuser.dll
C:\Windows\system32\MF.dll
C:\Windows\system32\MFPlat.DLL
C:\Windows\system32\MLANG.dll
C:\Windows\System32\MMDevApi.dll
C:\Windows\system32\mscms.dll
C:\Windows\system32\MSHTML.dll
C:\Windows\system32\MSHTMLMedia.dll
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\msimtf.dll
C:\Windows\system32\mswsock.dll
C:\Windows\System32\msxml6.dll
C:\Windows\system32\ncrypt.dll
C:\Windows\system32\netutils.dll
C:\Windows\system32\ntmarta.dll
C:\Windows\system32\OLEACC.dll
C:\Windows\system32\POWRPROF.dll
C:\Windows\system32\PROPSYS.dll
C:\Windows\system32\rasadhlp.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\samcli.dll
C:\Windows\system32\SAMLIB.dll
C:\Windows\system32\Secur32.dll
C:\Windows\system32\SensApi.dll
C:\Windows\system32\SXS.DLL
C:\Windows\system32\T2EMBED.DLL
C:\Windows\System32\UIAnimation.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\version.DLL
C:\Windows\system32\webio.dll
C:\Windows\System32\wevtapi.dll
C:\Windows\system32\windowscodecs.dll
C:\Windows\system32\windowscodecsext.dll
C:\Windows\system32\WINHTTP.dll
C:\Windows\system32\WINMM.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\System32\Wpc.dll
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\system32\XmlLite.dll
C:\Windows\system32\zipfldr.dll
C:\Windows\syswow64\advapi32.DLL
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\SysWOW64\bcryptprimitives.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\comdlg32.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\SysWow64\docobj.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\SysWOW64\ieapfltr.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\SysWOW64\jscript9.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\SysWOW64\Macromed\Flash\Flash32_15_0_0_189.ocx
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\schannel.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\shell32.DLL
C:\Windows\syswow64\shlwapi.DLL
C:\Windows\syswow64\SspiCli.dll
C:\Windows\SysWOW64\uiautomationcore.dll
C:\Windows\syswow64\urlmon.dll
C:\Windows\syswow64\user32.DLL
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WLDAP32.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCP110.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE (164)]
C:\PROGRA~1\AVASTS~1\Avast\Aavm4h.dll
C:\PROGRA~1\AVASTS~1\Avast\AavmRpch.dll
C:\PROGRA~1\AVASTS~1\Avast\ashBase.dll
C:\PROGRA~1\AVASTS~1\Avast\ashTask.dll
C:\PROGRA~1\AVASTS~1\Avast\aswAux.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnBS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnIS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCmnOS.dll
C:\PROGRA~1\AVASTS~1\Avast\aswCommChannel.dll
C:\PROGRA~1\AVASTS~1\Avast\aswEngLdr.dll
C:\PROGRA~1\AVASTS~1\Avast\aswProperty.dll
C:\PROGRA~1\AVASTS~1\Avast\avastIP.dll
C:\Program Files (x86)\Bonjour\mdnsNSP.dll
C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
C:\Program Files (x86)\Internet Explorer\ieproxy.dll
C:\Program Files (x86)\Internet Explorer\IEShims.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\msvcr100.dll
C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
C:\Program Files\AVAST Software\Avast\aswJsFlt.dll
C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
C:\Program Files\AVAST Software\Avast\aswWrcIEBroker32.dll
C:\Program Files\AVAST Software\Avast\dbghelp.dll
C:\Program Files\AVAST Software\Avast\snxhk.dll
C:\Users\Administrator\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\ATL.DLL
C:\Windows\system32\AUDIOSES.DLL
C:\Windows\system32\AVRT.dll
C:\Windows\system32\bcrypt.dll
C:\Windows\system32\credssp.dll
C:\Windows\system32\cryptnet.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\cscapi.dll
C:\Windows\system32\d2d1.dll
C:\Windows\system32\D3D10Level9.dll
C:\Windows\system32\d3d11.dll
C:\Windows\system32\d3d8thk.dll
C:\Windows\system32\d3d9.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DINPUT8.dll
C:\Windows\system32\DNSAPI.dll
C:\Windows\system32\DSOUND.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\DWrite.dll
C:\Windows\system32\dxgi.dll
C:\Windows\system32\dxva2.dll
C:\Windows\system32\EhStorShell.dll
C:\Windows\System32\fwpuclnt.dll
C:\Windows\system32\GPAPI.dll
C:\Windows\system32\icm32.dll
C:\Windows\system32\IEFRAME.dll
C:\Windows\system32\IEUI.dll
C:\Windows\system32\igd10umd32.dll
C:\Windows\system32\igdumd32.dll
C:\Windows\system32\igdumdx32.dll
C:\Windows\system32\ImgUtil.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\ksuser.dll
C:\Windows\system32\MF.dll
C:\Windows\system32\MFPlat.DLL
C:\Windows\system32\MLANG.dll
C:\Windows\System32\MMDevApi.dll
C:\Windows\system32\mscms.dll
C:\Windows\system32\MSHTML.dll
C:\Windows\system32\MSHTMLMedia.dll
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\msimtf.dll
C:\Windows\system32\mswsock.dll
C:\Windows\System32\msxml6.dll
C:\Windows\system32\ncrypt.dll
C:\Windows\System32\netprofm.dll
C:\Windows\System32\nlaapi.dll
C:\Windows\System32\npmproxy.dll
C:\Windows\system32\ntmarta.dll
C:\Windows\system32\ntshrui.dll
C:\Windows\system32\OLEACC.dll
C:\Windows\system32\PowrProf.dll
C:\Windows\system32\PROPSYS.dll
C:\Windows\system32\rasadhlp.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\Secur32.dll
C:\Windows\system32\SensApi.dll
C:\Windows\system32\slc.dll
C:\Windows\system32\srvcli.dll
C:\Windows\system32\SXS.DLL
C:\Windows\system32\T2EMBED.DLL
C:\Windows\System32\UIAnimation.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\version.DLL
C:\Windows\system32\webio.dll
C:\Windows\system32\windowscodecs.dll
C:\Windows\system32\windowscodecsext.dll
C:\Windows\system32\WINHTTP.dll
C:\Windows\system32\WINMM.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\system32\XmlLite.dll
C:\Windows\SysWOW64\actxprxy.dll
C:\Windows\syswow64\advapi32.DLL
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\SysWOW64\bcryptprimitives.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\comdlg32.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\SysWow64\docobj.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\SysWOW64\ieapfltr.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\SysWOW64\jscript9.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\SysWOW64\Macromed\Flash\Flash32_15_0_0_189.ocx
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\schannel.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\shell32.DLL
C:\Windows\syswow64\shlwapi.DLL
C:\Windows\syswow64\SspiCli.dll
C:\Windows\SysWOW64\uiautomationcore.dll
C:\Windows\syswow64\urlmon.dll
C:\Windows\syswow64\user32.DLL
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WLDAP32.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCP110.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files (x86)\NETGEAR Genie\bin\genie2_tray.exe (42)]
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Resource.dll
C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qgif4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qico4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qjpeg4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\libgcc_s_dw2-1.dll
C:\Program Files (x86)\NETGEAR Genie\bin\mingwm10.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtCore4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtGui4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtNetwork4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtXml4.dll
C:\Windows\AppPatch\AcLayers.DLL
C:\Windows\system32\apphelp.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\MPR.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\WINMM.DLL
C:\Windows\system32\WINSPOOL.DRV
C:\Windows\syswow64\ADVAPI32.DLL
C:\Windows\syswow64\COMDLG32.DLL
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\IMM32.DLL
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\OLE32.dll
C:\Windows\syswow64\OLEAUT32.DLL
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WS2_32.DLL
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll

[C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe (96)]
C:\Program Files (x86)\Bonjour\mdnsNSP.dll
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
C:\Program Files (x86)\NETGEAR Genie\bin\airprintdll.dll
C:\Program Files (x86)\NETGEAR Genie\bin\DiagnoseDll.dll
C:\Program Files (x86)\NETGEAR Genie\bin\DiagnosePlugin.dll
C:\Program Files (x86)\NETGEAR Genie\bin\DragonNetTool.dll
C:\Program Files (x86)\NETGEAR Genie\bin\Genie.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Airprint.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Internet.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Map.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_NetworkProblem.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_ParentalControl.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Resource.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_RouterConfiguration.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Statistics.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Ui.dll
C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Wireless.dll
C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qgif4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qico4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qjpeg4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_Update.dll
C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_WirelessExport.dll
C:\Program Files (x86)\NETGEAR Genie\bin\LIBEAY32.dll
C:\Program Files (x86)\NETGEAR Genie\bin\libgcc_s_dw2-1.dll
C:\Program Files (x86)\NETGEAR Genie\bin\mingwm10.dll
C:\Program Files (x86)\NETGEAR Genie\bin\NetcardApi.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QRCode.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtCore4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtGui4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtNetwork4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\QtXml4.dll
C:\Program Files (x86)\NETGEAR Genie\bin\ssleay32.DLL
C:\Program Files (x86)\NETGEAR Genie\bin\SvtNetworkTool.dll
C:\Program Files (x86)\NETGEAR Genie\bin\SVTUtils.DLL
C:\Program Files (x86)\NETGEAR Genie\bin\WSetupApiPlugin.dll
C:\Program Files (x86)\NETGEAR Genie\bin\WSetupDll.dll
C:\Windows\AppPatch\AcLayers.DLL
C:\Windows\system32\apphelp.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DNSAPI.DLL
C:\Windows\system32\dnssd.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\System32\fwpuclnt.dll
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\MPR.dll
C:\Windows\system32\mscms.dll
C:\Windows\system32\mswsock.dll
C:\Windows\system32\napinsp.dll
C:\Windows\system32\NLAapi.dll
C:\Windows\system32\pnrpnsp.dll
C:\Windows\system32\rasadhlp.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\WINMM.DLL
C:\Windows\system32\WINNSI.DLL
C:\Windows\System32\winrnr.dll
C:\Windows\system32\WINSPOOL.DRV
C:\Windows\system32\Wlanapi.dll
C:\Windows\system32\wlanutil.dll
C:\Windows\system32\wshbth.dll
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\syswow64\ADVAPI32.DLL
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\COMDLG32.DLL
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\IMM32.DLL
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\OLE32.dll
C:\Windows\syswow64\OLEAUT32.DLL
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WS2_32.DLL
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll

[C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (39)]
C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\oledlg.dll
C:\Windows\system32\POWRPROF.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\WINSPOOL.DRV
C:\Windows\system32\WINSTA.dll
C:\Windows\system32\wtsapi32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\COMDLG32.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCP80.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCR80.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll

[C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe (96)]
C:\Program Files (x86)\Sony\Reader\Data\bin\FskDocumentViewer.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\FskDocumentViewerAdobe.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\Fskin.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\FskinLocalize.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\FskMediaPlayers.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\FskMobileMediaDevice.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\FskPower.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\FskSecurity.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\connectionDetector.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\ebookDeviceNotifier.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\ebookUsb.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\fsk.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\FskNetInterface.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\FskTimeHardware.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\LIBEAY32.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\PRSCTR.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\SSLEAY32.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\ticket.dll
C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\USBDetector.dll
C:\Users\Administrator\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
C:\Windows\AppPatch\AcLayers.DLL
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\cscapi.dll
C:\Windows\system32\dbghelp.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DSOUND.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\EhStorShell.dll
C:\Windows\system32\iphlpapi.dll
C:\Windows\system32\MPR.dll
C:\Windows\system32\MSVCR71.dll
C:\Windows\system32\mswsock.dll
C:\Windows\system32\ntshrui.dll
C:\Windows\system32\POWRPROF.dll
C:\Windows\system32\PROPSYS.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\Secur32.dll
C:\Windows\system32\slc.dll
C:\Windows\system32\srvcli.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\version.DLL
C:\Windows\system32\WindowsCodecs.dll
C:\Windows\system32\WINMM.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\WINSPOOL.DRV
C:\Windows\System32\wship6.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\comdlg32.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\syswow64\IMM32.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\shlwapi.DLL
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll

[C:\Program Files (x86)\Sony\SmartWi Connection Utility\CCP.exe (82)]
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DebugMsg.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DictionaryLookup.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\MessageXML.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Resources.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SharedInterfaces.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SnyUtilsWrapper.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SonyCommonLib.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b3011370dcbf33751d3b9dce8091c6c6\System.Runtime.Remoting.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\b4001d722e320fa42cd87b04b5249b2d\System.Web.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\SYSTEM32\MSCOREE.DLL
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\ntmarta.dll
C:\Windows\system32\PROPSYS.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\Secur32.dll
C:\Windows\system32\shfolder.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\version.DLL
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\Wlanapi.dll
C:\Windows\system32\wlanutil.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\shell32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\SysWOW64\urlmon.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WLDAP32.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCR80.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files (x86)\Sony\SmartWi Connection Utility\PowerManager.exe (108)]
C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DebugMsg.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DictionaryLookup.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.BtPower.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.Generic.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.GobiThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.NativeWifiThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.TosBtThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.WlanPower.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.Generic.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.Power.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.ThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\MessageXML.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\NativeWifiWrap.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Resources.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SendMessage.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SharedInterfaces.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SnyUtilsWrapper.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SonyCommonLib.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\TosBtWrap.dll
C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
C:\Windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b3011370dcbf33751d3b9dce8091c6c6\System.Runtime.Remoting.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\b4001d722e320fa42cd87b04b5249b2d\System.Web.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\wminet_utils.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\irprops.cpl
C:\Windows\SYSTEM32\MSCOREE.DLL
C:\Windows\system32\MSIMG32.dll
C:\Windows\System32\msxml6.dll
C:\Windows\system32\NTDSAPI.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\shfolder.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\VERSION.dll
C:\Windows\system32\wbem\fastprox.dll
C:\Windows\system32\wbem\wbemprox.dll
C:\Windows\system32\wbem\wbemsvc.dll
C:\Windows\system32\wbem\wmiutils.dll
C:\Windows\system32\wbemcomn.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\Wlanapi.dll
C:\Windows\system32\wlanutil.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\shell32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCP80.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCR80.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWi.exe (91)]
C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DebugMsg.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DevicePanel.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DictionaryLookup.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\MessageXML.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\NotifyIconEx.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Resources.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SendMessage.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SharedInterfaces.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SnyUtilsWrapper.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SonyCommonLib.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\237d509a79aeef6e4635b09450d98f2a\System.Configuration.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b3011370dcbf33751d3b9dce8091c6c6\System.Runtime.Remoting.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\b4001d722e320fa42cd87b04b5249b2d\System.Web.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d97a5aa0eb7697aca7c6e90ae471af2b\WindowsBase.ni.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\system32\bcrypt.dll
C:\Windows\system32\cryptnet.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DNSAPI.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\GPAPI.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\SYSTEM32\MSCOREE.DLL
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\mswsock.dll
C:\Windows\System32\msxml6.dll
C:\Windows\system32\ncrypt.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\SensApi.dll
C:\Windows\system32\shfolder.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\WindowsCodecs.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\Wlanapi.dll
C:\Windows\system32\wlanutil.dll
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\SysWOW64\bcryptprimitives.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\imagehlp.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\oleaut32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\shell32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WLDAP32.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCP80.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCR80.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files (x86)\Sony\SmartWi Connection Utility\ThirdPartyAppMgr.exe (106)]
C:\Program Files (x86)\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DebugMsg.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\DictionaryLookup.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.BtPower.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.Generic.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.GobiThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.NativeWifiThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.TosBtThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.Plugin.WlanPower.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.Generic.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.Power.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Kinoubi.Plugins.PluginManager.ThirdPartyApp.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\MessageXML.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\NativeWifiWrap.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\Resources.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SendMessage.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SharedInterfaces.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\SonyCommonLib.dll
C:\Program Files (x86)\Sony\SmartWi Connection Utility\TosBtWrap.dll
C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
C:\Windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b3011370dcbf33751d3b9dce8091c6c6\System.Runtime.Remoting.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\b4001d722e320fa42cd87b04b5249b2d\System.Web.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
C:\Windows\Microsoft.NET\Framework\v2.0.50727\wminet_utils.dll
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\irprops.cpl
C:\Windows\SYSTEM32\MSCOREE.DLL
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\NTDSAPI.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\shfolder.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\VERSION.dll
C:\Windows\system32\wbem\fastprox.dll
C:\Windows\system32\wbem\wbemprox.dll
C:\Windows\system32\wbem\wbemsvc.dll
C:\Windows\system32\wbem\wmiutils.dll
C:\Windows\system32\wbemcomn.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\Wlanapi.dll
C:\Windows\system32\wlanutil.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\syswow64\KERNEL32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\shell32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCP80.dll
C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\MSVCR80.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCP90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\MSVCR90.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853\gdiplus.dll

[C:\Program Files\AVAST Software\Avast\AvastUI.exe (119)]
C:\Program Files (x86)\Bonjour\mdnsNSP.dll
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
C:\Program Files\AVAST Software\Avast\1033\Base.dll
C:\Program Files\AVAST Software\Avast\1033\UILangRes.dll
C:\Program Files\AVAST Software\Avast\Aavm4h.dll
C:\Program Files\AVAST Software\Avast\AavmRpch.dll
C:\Program Files\AVAST Software\Avast\ashBase.dll
C:\Program Files\AVAST Software\Avast\ashTask.dll
C:\Program Files\AVAST Software\Avast\ashTaskEx.dll
C:\Program Files\AVAST Software\Avast\aswAra.dll
C:\Program Files\AVAST Software\Avast\aswAux.dll
C:\Program Files\AVAST Software\Avast\aswCmnBS.dll
C:\Program Files\AVAST Software\Avast\aswCmnIS.dll
C:\Program Files\AVAST Software\Avast\aswCmnOS.dll
C:\Program Files\AVAST Software\Avast\aswCommChannel.dll
C:\Program Files\AVAST Software\Avast\aswData.dll
C:\Program Files\AVAST Software\Avast\aswEngLdr.dll
C:\Program Files\AVAST Software\Avast\aswJSScan.dll
C:\Program Files\AVAST Software\Avast\aswLog.dll
C:\Program Files\AVAST Software\Avast\aswProperty.dll
C:\Program Files\AVAST Software\Avast\aswRemoteCache.dll
C:\Program Files\AVAST Software\Avast\aswResourceLib.dll
C:\Program Files\AVAST Software\Avast\aswSqLt.dll
C:\Program Files\AVAST Software\Avast\aswUtil.dll
C:\Program Files\AVAST Software\Avast\avastIP.dll
C:\Program Files\AVAST Software\Avast\CommonRes.dll
C:\Program Files\AVAST Software\Avast\dbghelp.dll
C:\Program Files\AVAST Software\Avast\defs\14110700\aswCmnBS.dll
C:\Program Files\AVAST Software\Avast\defs\14110700\aswCmnOS.dll
C:\Program Files\AVAST Software\Avast\defs\14110700\uiExt.dll
C:\Program Files\AVAST Software\Avast\HTMLayout.dll
C:\Program Files\AVAST Software\Avast\icudt.dll
C:\Program Files\AVAST Software\Avast\libcef.dll
C:\Program Files\AVAST Software\Avast\LIBEAY32.dll
C:\Program Files\AVAST Software\Avast\ssleay32.dll
C:\Windows\system32\apphelp.dll
C:\Windows\system32\bcrypt.dll
C:\Windows\system32\credssp.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\CRYPTUI.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DNSAPI.dll
C:\Windows\system32\DSOUND.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\System32\fwpuclnt.dll
C:\Windows\system32\GPAPI.dll
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\mswsock.dll
C:\Windows\system32\ncrypt.dll
C:\Windows\system32\netutils.dll
C:\Windows\system32\NLAapi.dll
C:\Windows\system32\OLEACC.dll
C:\Windows\system32\POWRPROF.dll
C:\Windows\system32\rasadhlp.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\Secur32.dll
C:\Windows\system32\SXS.DLL
C:\Windows\system32\UxTheme.dll
C:\Windows\system32\version.DLL
C:\Windows\system32\webio.dll
C:\Windows\system32\WINHTTP.dll
C:\Windows\system32\WINMM.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\WINSPOOL.DRV
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\system32\WSOCK32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-ole32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\SysWOW64\bcryptprimitives.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\COMDLG32.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\DEVOBJ.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\syswow64\IMM32.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.DLL
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\schannel.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SETUPAPI.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\shlwapi.DLL
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\urlmon.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WLDAP32.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\mfc110u.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCP110.dll
C:\Windows\WinSxS\x86_avast.vc110.crt_2036b14a11e83e4a_11.0.60610.1_none_1d37a43bbfe1dc9c\MSVCR110.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll

[C:\Program Files\Sony\VAIO Care\listener.exe (22)]
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\MSVCP100.dll
C:\Windows\system32\MSVCR100.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\WTSAPI32.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USP10.dll

[C:\Users\Administrator\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe (54)]
C:\Program Files (x86)\Bonjour\mdnsNSP.dll
C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
C:\Windows\system32\credssp.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dhcpcsvc.DLL
C:\Windows\system32\dhcpcsvc6.DLL
C:\Windows\system32\DNSAPI.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\System32\fwpuclnt.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\Iphlpapi.DLL
C:\Windows\System32\mswsock.dll
C:\Windows\system32\napinsp.dll
C:\Windows\system32\NLAapi.dll
C:\Windows\system32\pnrpnsp.dll
C:\Windows\system32\rasadhlp.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\shell32.dll
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\webio.dll
C:\Windows\system32\winhttp.dll
C:\Windows\system32\winmm.dll
C:\Windows\system32\WINNSI.DLL
C:\Windows\System32\winrnr.dll
C:\Windows\system32\wshbth.dll
C:\Windows\System32\wship6.dll
C:\Windows\System32\wshtcpip.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\CFGMGR32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll

[C:\Users\Administrator\AppData\Local\Google\Update\GoogleUpdate.exe (46)]
C:\Users\Administrator\AppData\Local\Google\Update\1.3.25.5\goopdate.dll
C:\Windows\system32\cscapi.dll
C:\Windows\system32\dbghelp.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\IPHLPAPI.DLL
C:\Windows\system32\msi.dll
C:\Windows\system32\MSIMG32.dll
C:\Windows\system32\NETAPI32.dll
C:\Windows\system32\netutils.dll
C:\Windows\system32\srvcli.dll
C:\Windows\system32\UxTheme.dll
C:\Windows\system32\version.DLL
C:\Windows\system32\WINNSI.DLL
C:\Windows\system32\wkscli.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-user32-l1-1-0.dll
C:\Windows\syswow64\api-ms-win-downlevel-version-l1-1-0.dll
C:\Windows\syswow64\CRYPT32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\iertutil.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\syswow64\MSASN1.dll
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\normaliz.DLL
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\profapi.dll
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USERENV.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WININET.dll
C:\Windows\syswow64\WINTRUST.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\COMCTL32.dll

[C:\Users\Administrator\AppData\Local\Temp\Temp1_startuplist.zip\StartupList.exe (43)]
C:\Windows\system32\asycfilt.dll
C:\Windows\system32\CRYPTSP.dll
C:\Windows\system32\dwmapi.dll
C:\Windows\system32\IMM32.DLL
C:\Windows\system32\MSVBVM60.DLL
C:\Windows\system32\NTDSAPI.dll
C:\Windows\system32\RpcRtRemote.dll
C:\Windows\system32\rsaenh.dll
C:\Windows\system32\SXS.DLL
C:\Windows\system32\uxtheme.dll
C:\Windows\system32\VERSION.DLL
C:\Windows\system32\wbem\fastprox.dll
C:\Windows\system32\wbem\wbemdisp.dll
C:\Windows\system32\wbem\wbemprox.dll
C:\Windows\system32\wbem\wbemsvc.dll
C:\Windows\system32\wbem\wmiutils.dll
C:\Windows\system32\wbemcomn.dll
C:\Windows\syswow64\ADVAPI32.dll
C:\Windows\syswow64\CLBCatQ.DLL
C:\Windows\syswow64\comdlg32.dll
C:\Windows\syswow64\CRYPTBASE.dll
C:\Windows\syswow64\GDI32.dll
C:\Windows\syswow64\kernel32.dll
C:\Windows\syswow64\KERNELBASE.dll
C:\Windows\syswow64\LPK.dll
C:\Windows\SysWOW64\MSCOMCTL.OCX
C:\Windows\syswow64\MSCTF.dll
C:\Windows\syswow64\msvcrt.dll
C:\Windows\syswow64\NSI.dll
C:\Windows\SysWOW64\ntdll.dll
C:\Windows\syswow64\ole32.dll
C:\Windows\syswow64\OLEAUT32.dll
C:\Windows\syswow64\PSAPI.DLL
C:\Windows\syswow64\RPCRT4.dll
C:\Windows\SysWOW64\sechost.dll
C:\Windows\syswow64\SHELL32.dll
C:\Windows\syswow64\SHLWAPI.dll
C:\Windows\syswow64\SspiCli.dll
C:\Windows\syswow64\USER32.dll
C:\Windows\syswow64\USP10.dll
C:\Windows\syswow64\WS2_32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\COMCTL32.dll
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.DLL

--------------------

Autostart folders:

[Startup (2)]
desktop.ini
ERUNT AutoBackup.lnk

[User Startup (2)]
desktop.ini
ERUNT AutoBackup.lnk

[Common Startup (1)]
desktop.ini

[User Common Startup (1)]
desktop.ini

--------------------

Task Scheduler jobs (5):

Adobe Flash Player Updater.job
GoogleUpdateTaskMachineCore.job
GoogleUpdateTaskMachineUA.job
GoogleUpdateTaskUserS-1-5-21-4050869311-2079343713-3989652933-500Core.job
GoogleUpdateTaskUserS-1-5-21-4050869311-2079343713-3989652933-500UA.job

--------------------

IniMapping values:

System NT shell = Explorer.exe

--------------------

On-reboot actions:

BootExecute = autocheck autochk *

--------------------

Shell commands:

.bat - Windows Batch File - "%1" %*
.cmd - Windows Command Script - "%1" %*
.com - MS-DOS Application - "%1" %*
.exe - Application - "%1" %*
.hta - HTML Application - C:\Windows\SysWOW64\mshta.exe "%1" %*
.js - JavaScript File - C:\Windows\System32\WScript.exe "%1" %*
.jse - JScript Encoded File - C:\Windows\System32\WScript.exe "%1" %*
.pif - Shortcut to MS-DOS Program - "%1" %*
.scr - Screen saver - "%1" /S
.txt - Text Document - C:\Windows\System32\NOTEPAD.EXE %1
.vbe - VBScript Encoded File - C:\Windows\System32\WScript.exe "%1" %*
.vbs - VBScript Script File - C:\Windows\System32\WScript.exe "%1" %*
.wsf - Windows Script File - "C:\Windows\System32\WScript.exe" "%1" %*
.wsh - Windows Script Host Settings File - "C:\Windows\System32\WScript.exe" "%1" %*

--------------------

Services:

[NT Services (69)]
@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 = "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe"
@%SystemRoot%\system32\audiosrv.dll,-200 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\system32\audiosrv.dll,-204 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\bfe.dll,-1001 = C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
@%SystemRoot%\system32\cryptsvc.dll,-1001 = C:\Windows\system32\svchost.exe -k NetworkService
@%SystemRoot%\system32\dhcpcore.dll,-100 = C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\System32\dnsapi.dll,-101 = C:\Windows\system32\svchost.exe -k NetworkService
@%systemroot%\system32\dps.dll,-500 = C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
@%SystemRoot%\system32\dwm.exe,-2000 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%systemroot%\system32\fdPHost.dll,-100 = C:\Windows\system32\svchost.exe -k LocalService
@%systemroot%\system32\fdrespub.dll,-100 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\system32\FirewallAPI.dll,-23090 = C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
@%SystemRoot%\system32\ikeext.dll,-501 = C:\Windows\system32\svchost.exe -k netsvcs
@%systemroot%\system32\IPBusEnum.dll,-102 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\iphlpsvc.dll,-500 = C:\Windows\System32\svchost.exe -k NetSvcs
@%SystemRoot%\system32\ipnathlp.dll,-106 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\system32\lmhsvc.dll,-101 = C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
@%systemroot%\system32\mmcss.dll,-100 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\netprofm.dll,-202 = C:\Windows\System32\svchost.exe -k LocalService
@%SystemRoot%\System32\nlasvc.dll,-1 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\system32\nsisvc.dll,-200 = C:\Windows\system32\svchost.exe -k LocalService
@%SystemRoot%\system32\pcasvc.dll,-1 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%systemroot%\system32\profsvc.dll,-300 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\System32\provsvc.dll,-100 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\system32\samsrv.dll,-1 = C:\Windows\system32\lsass.exe
@%SystemRoot%\system32\schedsvc.dll,-100 = C:\Windows\System32\svchost.exe -k netsvcs
@%systemroot%\system32\SearchIndexer.exe,-103 = C:\Windows\system32\SearchIndexer.exe /Embedding
@%SystemRoot%\system32\seclogon.dll,-7001 = %windir%\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\Sens.dll,-200 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\System32\shsvcs.dll,-12288 = C:\Windows\System32\svchost.exe -k netsvcs
@%systemroot%\system32\spoolsv.exe,-1 = C:\Windows\System32\spoolsv.exe
@%SystemRoot%\system32\sppsvc.exe,-101 = C:\Windows\system32\sppsvc.exe
@%systemroot%\system32\srvsvc.dll,-100 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\sysmain.dll,-1000 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\System32\termsrv.dll,-268 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\System32\themeservice.dll,-8192 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\system32\umpnpmgr.dll,-100 = C:\Windows\system32\svchost.exe -k DcomLaunch
@%SystemRoot%\system32\umpo.dll,-100 = C:\Windows\system32\svchost.exe -k DcomLaunch
@%Systemroot%\system32\wbem\wmisvc.dll,-205 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\wevtsvc.dll,-200 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\system32\wiaservc.dll,-9 = C:\Windows\system32\svchost.exe -k imgsvc
@%systemroot%\system32\wkssvc.dll,-100 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\System32\wlansvc.dll,-257 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\System32\wscsvc.dll,-200 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%systemroot%\system32\wuaueng.dll,-105 = C:\Windows\system32\svchost.exe -k netsvcs
@%windir%\system32\RpcEpMap.dll,-1001 = C:\Windows\system32\svchost.exe -k RPCSS
@comres.dll,-2450 = C:\Windows\system32\svchost.exe -k LocalService
@gpapi.dll,-112 = %windir%\system32\svchost.exe -k GPSvcGroup
@oleres.dll,-5010 = C:\Windows\system32\svchost.exe -k rpcss
@oleres.dll,-5012 = C:\Windows\system32\svchost.exe -k DcomLaunch
Adobe Acrobat Update Service = "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
Apple Mobile Device = "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
avast! Antivirus = "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
Bonjour Service = "C:\Program Files\Bonjour\mDNSResponder.exe"
Energy Server Service = "C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49265" "--depend_on_service" "SampleCollector" "--depend_on_service_start_state_not" "disabled" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Sony\VAIO Care\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Sony Corporation\VAIO Care\inteldata' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Sony\VAIO Care\ESRV\sony_acpi_battery_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\sony_sema_thermal_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\sony_wifi_input.dll' "
EPSON V3 Service4(04) = C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
EPSON V5 Service4(04) = C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
Google Update Service (gupdate) = "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
HsfXAudioService = C:\Windows\system32\svchost.exe -k HsfXAudioService
Intel® Rapid Storage Technology = "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe"
Intel® System Behavior Tracker Collector Service = "C:\Program Files\Sony\VAIO Care\VCPerfService.exe" "/service" "/sstates" "/sampleinterval=10000" "/procinterval=5" "/dllinterval=120" "/counter=\Processor(_Total)\% Processor Time:1" "/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1" "/counter=\Network Interface(*)\Bytes Total/sec:1" "/expandcounter=\Processor Information(*)\Processor Frequency:1" "" "/expandcounter=\Processor(*)\% Idle Time:1" "/expandcounter=\Processor(*)\% C1 Time:1" "/expandcounter=\Processor(*)\% C2 Time:1" "/expandcounter=\Processor(*)\%C3 Time:1" "/expandcounter=\Processor(*)\% Processor Time:1" "/directory=C:\ProgramData\Sony Corporation\VAIO Care\inteldata"
IviRegMgr = "C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe"
Microsoft .NET Framework NGEN v4.0.30319_X64 = C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
Microsoft .NET Framework NGEN v4.0.30319_X86 = C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
NETGEARGenieDaemon = C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe
Protexis Licensing V2 = "C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
Roxio Upnp Server 10 = "C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe"
VAIO Event Service = "C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe"
VAIO Power Management = "C:\Program Files\Sony\VAIO Power Management\SPMService.exe"

[SafeBoot services (Minimal boot)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}

* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}

* Driver *
sermouse.sys
vga.sys
vgasave.sys
volmgr.sys
volmgrx.sys
WudfPf
WudfRd

* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
PCI Configuration
PNP Filter
Primary disk
SCSI Class
System Bus Extender

* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}

* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}

* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}

* IEEE 1394 Bus host controllers *
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}

* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}

* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}

* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}

* SBP2 IEEE 1394 Devices *
{D48179BE-EC20-11D1-B6B8-00C04FA372A7}

* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}

* SecurityDevices *
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}

* Service *
AppInfo
AppMgmt
CryptSvc
DcomLaunch
EFS
EventLog
HelpSvc
KeyIso
Netlogon
NTDS
PlugPlay
Power
ProfSvc
RpcEptMapper
RpcSs
sacsvr
SWPRV
TabletInputService
TBS
TrustedInstaller
VDS
vmms
WinDefend
WinMgmt
WudfSvc

* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}

* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}

* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}

* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}

* Volume shadow copy *
{533C5B84-EC70-11D2-9505-00C04F79DEAF}


[SafeBoot services (Minimal boot + network support)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}

* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}

* Driver *
bowser
dfsc
ipnat.sys
MPSDrv
mrxsmb
mrxsmb10
mrxsmb20
ndiscap
nsiproxy.sys
rdbss
rdpencdd.sys
sermouse.sys
vga.sys
vgasave.sys
volmgr.sys
volmgrx.sys
WudfPf
WudfRd
WudfUsbccidDriver

* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
NDIS
NDIS Wrapper
NetBIOSGroup
NetDDEGroup
Network
NetworkProvider
PCI Configuration
PNP Filter
PNP_TDI
Primary disk
SCSI Class
Streams Drivers
System Bus Extender
TDI

* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}

* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}

* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}

* IEEE 1394 Bus host controllers *
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}

* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}

* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}

* Net *
{4D36E972-E325-11CE-BFC1-08002BE10318}

* NetClient *
{4D36E973-E325-11CE-BFC1-08002BE10318}

* NetService *
{4D36E974-E325-11CE-BFC1-08002BE10318}

* NetTrans *
{4D36E975-E325-11CE-BFC1-08002BE10318}

* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}

* SBP2 IEEE 1394 Devices *
{D48179BE-EC20-11D1-B6B8-00C04FA372A7}

* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}

* SecurityDevices *
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}

* Service *
AFD
AppInfo
AppMgmt
BFE
Browser
CryptSvc
DcomLaunch
Dhcp
DnsCache
Dot3Svc
Eaphost
EFS
EventLog
HelpSvc
IKEEXT
KeyIso
LanmanServer
LanmanWorkstation
LmHosts
Messenger
MPSSvc
NativeWifiP
Ndisuio
NetBIOS
NetBT
Netlogon
NetMan
netprofm
NlaSvc
Nsi
NTDS
PlugPlay
PolicyAgent
Power
ProfSvc
rdsessmgr
RpcEptMapper
RpcSs
sacsvr
SCardSvr
SharedAccess
SWPRV
TabletInputService
TBS
Tcpip
TrustedInstaller
VaultSvc
VDS
vmms
WinDefend
WinMgmt
Wlansvc
WudfSvc

* Smart card readers *
{50DD5230-BA8A-11D1-BF5D-0000F805F530}

* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}

* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}

* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}

* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}

* Volume shadow copy *
{533C5B84-EC70-11D2-9505-00C04F79DEAF}


[SafeBoot: Alternate shell]
cmd.exe (not enabled)

--------------------

Driver filters:

[Class filters]
* Disk drives *
- Upper filters
PartMgr.sys

* DVD/CD-ROM drives *
- Upper filters
GEARAspiWDM.sys

- Lower filters
PxHlpa64.sys

* Imaging devices *
- Upper filters
ksthunk.sys
ArcSoftKsUFilter.sys

* Infrared devices *
- Upper filters
IRENUM.sys

* Keyboards *
- Upper filters
kbdclass.sys

* Medium Changer devices *
- Upper filters
GEARAspiWDM.sys

* Mice and other pointing devices *
- Upper filters
mouclass.sys

* Smart card readers *
- Upper filters
scfilter.sys

* Sound, video and game controllers *
- Upper filters
ksthunk.sys

* Storage Volumes *
- Lower filters
fvevol.sys
rdyboost.sys

* Tape drives *
- Upper filters
GEARAspiWDM.sys



[Device filters]
* @machine.inf,%rdp_kbd.devicedesc%;Terminal Server Keyboard Driver *
- Upper filters
kbdclass.sys

* @machine.inf,%rdp_mou.devicedesc%;Terminal Server Mouse Driver *
- Upper filters
mouclass.sys

* @netrasa.inf,%mp-bh-dispname%;WAN Miniport (Network Monitor) *
- Lower filters
NdisTapi.sys

* @netrasa.inf,%mp-ip-dispname%;WAN Miniport (IP) *
- Lower filters
NdisTapi.sys

* @netrasa.inf,%mp-ipv6-dispname%;WAN Miniport (IPv6) *
- Lower filters
NdisTapi.sys

* @oem37.inf,%athr.devicedesc.30a1%;Qualcomm Atheros AR9285 Wireless Network Adapter *
- Upper filters
vwifibus.sys

* @oem9.inf,%*sny9001.devdesc%;Alps Pointing-device for VAIO *
- Upper filters
ApfiltrService.sys

* 9530 *
- Lower filters
WinUsb.sys

* 9530 *
- Lower filters
WinUsb.sys

* Canon PowerShot SX200 IS *
- Lower filters
WinUsb.sys

* D3200 *
- Lower filters
WinUsb.sys

* D7100 *
- Lower filters
WinUsb.sys

* DROID RAZR *
- Lower filters
WinUsb.sys

* S6300 *
- Lower filters
WinUsb.sys

* S640 *
- Lower filters
WinUsb.sys

* Sansa View *
- Lower filters
WinUsb.sys

* SM-P600 *
- Lower filters
WinUsb.sys

* XT1080 *
- Lower filters
WinUsb.sys



--------------------

Print monitors (9):

Epson Inbox Language Monitor01 - EP0SLM01.DLL
EPSON NX430 Series 64MonitorBA - E_ILMHBA.DLL
EPSON Stylus CX3800 Series 64MonitorBA - E_ILMACA.DLL
Local Port - localspl.dll
Microsoft Shared Fax Monitor - FXSMON.DLL
PDF995 Monitor - pdf995mon64.dll
Standard TCP/IP Port - tcpmon.dll
USB Monitor - usbmon.dll
WSD Port - WSDMon.dll

--------------------

WinLogon autoruns:

UserInit = C:\Windows\system32\userinit.exe,
VmApplet = SystemPropertiesPerformance.exe /pagefile

[Notify (1)]
VESWinlogon = VESWinlogon.dll

[Group policy extensions (15)]
Wireless Group Policy = wlgpclnt.dll
Folder Redirection = fdeploy.dll
Microsoft Disk Quota = %SystemRoot%\System32\dskquota.dll
QoS Packet Scheduler = gptext.dll
Internet Explorer Zonemapping = C:\Windows\SysWOW64\iedkcs32.dll
Windows Search Group Policy Extension = %SystemRoot%\System32\srchadmin.dll
Internet Explorer User Accelerators = C:\Windows\SysWOW64\iedkcs32.dll
Security = scecli.dll
Deployed Printer Connections = %systemroot%\system32\gpprnext.dll
802.3 Group Policy = dot3gpclnt.dll
TCPIP = gptext.dll
Internet Explorer Machine Accelerators = C:\Windows\SysWOW64\iedkcs32.dll
IP Security = %SystemRoot%\System32\polstore.dll
Enterprise QoS = gptext.dll
CP = gptext.dll

--------------------

Policies:

[This user]
* Primary policies *
- (2)
OS Shutdown = dword: 0
@ = Empty

* Alternate policies *
Allow Programmatic Cut_Copy_Paste = dword: 0
- Software\Microsoft\Windows\CurrentVersion\policies\Explorer (3)
NoDriveTypeAutoRun = dword: 145
ClearRecentDocsOnExit = dword: 1
NoDrives = dword: 0

- (2)
OS Shutdown = dword: 0
@ = Empty



[All users]
* Primary policies *
- Software\Policies\Adobe\Acrobat Reader\11.0\FeatureLockDown\cDefaultExecMenuItems (78)
tWhiteList = Close
GeneralInfo
Quit
FirstPage
PrevPage
NextPage
LastPage
ActualSize
FitPage
FitWidth
FitHeight
SinglePage
OneColumn
TwoPages
TwoColumns
ZoomViewIn
ZoomViewOut
ShowHideBookmarks
ShowHideThumbnails
Print
GoToPage
ZoomTo
GeneralPrefs
SaveAs
FullScreenMode
OpenOrganizer
Scan
Web2PDF:OpnURL
AcroSendMail:SendMail
Spelling:Check Spelling
PageSetup
Find
FindSearch
GoBack
GoForward
FitVisible
ShowHideArticles
ShowHideFileAttachment
ShowHideAnnotManager
ShowHideFields
ShowHideOptCont
ShowHideModelTree
ShowHideSignatures
InsertPages
ExtractPages
ReplacePages
DeletePages
CropPages
RotatePages
AddFileAttachment
FindCurrentBookmark
BookmarkShowLocation
GoBackDoc
GoForwardDoc
DocHelpUserGuide
HelpReader
rolReadPage
HandMenuItem
ZoomDragMenuItem
CollectionPreview
CollectionHome
CollectionDetails
CollectionShowRoot
&Pages
Co&ntent
&Forms
Action &Wizard
Recognize &Text
P&rotection
&Sign && Certify
Doc&ument Processing
Print Pro&duction
Ja&vaScript
&Accessibility
Analy&ze
&Annotations
D&rawing Markups
Revie&w

- Software\Policies\Adobe\Acrobat Reader\11.0\FeatureLockDown\cDefaultFindAttachmentPerms (73)
tSearchAttachmentsWhiteList = 3g2
3gp
3gpp
3gpp2
aac
ac3
aif
aiff
ani
asf
avi
bmp
cdr
cur
divx
djvu
doc
docx
dv
emf
eps
flv
f4v
gif
ico
iff
jbig2
jp2
jpeg
jpg
m2v
m4a
m4b
m4p
m4v
mid
mkv
mov
mpa
mp2
mp3
mp4
mts
nsv
ogg
ogm
ogv
pbm
pgm
png
ppm
ppt
pptx
ps
psd
qt
rtf
riff
svg
tif
ts
txt
ram
rm
rmvb
vob
wav
wma
wmf
wmv
xmb
xls
xlsx

- Software\Policies\Adobe\Acrobat Reader\11.0\FeatureLockDown\cDefaultLaunchAttachmentPerms (174)
tBuiltInPermList = version:1
.ade:3
.adp:3
.app:3
.arc:3
.arj:3
.asp:3
.bas:3
.bat:3
.bz:3
.bz2:3
.cab:3
.chm:3
.class:3
.cmd:3
.com:3
.command:3
.cpl:3
.crt:3
.csh:3
.desktop:3
.dll:3
.exe:3
.fxp:3
.gz:3
.hex:3
.hlp:3
.hqx:3
.hta:3
.inf:3
.ini:3
.ins:3
.isp:3
.its:3
.job:3
.js:3
.jse:3
.ksh:3
.lnk:3
.lzh:3
.mad:3
.maf:3
.mag:3
.mam:3
.maq:3
.mar:3
.mas:3
.mat:3
.mau:3
.mav:3
.maw:3
.mda:3
.mdb:3
.mde:3
.mdt:3
.mdw:3
.mdz:3
.msc:3
.msi:3
.msp:3
.mst:3
.ocx:3
.ops:3
.pcd:3
.pi:3
.pif:3
.prf:3
.prg:3
.pst:3
.rar:3
.reg:3
.scf:3
.scr:3
.sct:3
.sea:3
.shb:3
.shs:3
.sit:3
.tar:3
.taz:3
.tgz:3
.tmp:3
.url:3
.vb:3
.vbe:3
.vbs:3
.vsmacros:3
.vss:3
.vst:3
.vsw:3
.webloc:3
.ws:3
.wsc:3
.wsf:3
.wsh:3
.z:3
.zip:3
.zlo:3
.zoo:3
.pdf:2
.fdf:2
.jar:3
.pkg:3
.tool:3
.term:3
.acm:3
.asa:3
.aspx:3
.ax:3
.ad:3
.application:3
.asx:3
.cer:3
.cfg:3
.chi:3
.class:3
.clb:3
.cnt:3
.cnv:3
.cpx:3
.crx:3
.der:3
.drv:3
.fon:3
.gadget:3
.grp:3
.htt:3
.ime:3
.jnlp:3
.local:3
.manifest:3
.mmc:3
.mof:3
.msh:3
.msh1:3
.msh2:3
.mshxml:3
.msh1xml:3
.msh2xml:3
.mui:3
.nls:3
.pl:3
.perl:3
.plg:3
.ps1:3
.ps2:3
.ps1xml:3
.ps2xml:3
.psc1:3
.psc2:3
.py:3
.pyc:3
.pyo:3
.pyd:3
.rb:3
.sys:3
.tlb:3
.tsp:3
.xbap:3
.xnk:3
.xpi:3
.air:3
.appref-ms:3
.desklink:3
.glk:3
.library-ms:3
.mapimail:3
.mydocs:3
.sct:3
.search-ms:3
.searchConnector-ms:3
.vxd:3
.website:3
.zfsendtotarget:3

- Software\Policies\Adobe\Acrobat Reader\11.0\FeatureLockDown\cDefaultLaunchURLPerms (34)
tFlashContentSchemeWhiteList = http
https
ftp
rtmp
rtmpe
rtmpt
rtmpte
rtmps
mailto
tSponsoredContentSchemeWhiteList = http
https
tSchemePerms = version:2
shell:3
hcp:3
ms-help:3
ms-its:3
ms-itss:3
its:3
mk:3
mhtml:3
help:3
disk:3
afp:3
disks:3
telnet:3
ssh:3
acrobat:2
mailto:2
file:1
rlogin:3
javascript:4
data:3
jar:3
vbscript:3

- Software\Policies\Microsoft\Peernet (1)
Disabled = dword: 0

- Software\Policies\Microsoft\Windows\CurrentVersion\Identities (2)
@ =
Locked Down = dword: 0

- Software\Policies\Microsoft\Windows\Network Connections (1)
NC_PersonalFirewallConfig = dword: 0

- Software\Policies\Microsoft\Windows\NetworkConnectivityStatusIndicator (1)
@ =

- Software\Policies\Microsoft\Windows\safer\codeidentifiers (1)
authenticodeenabled = dword: 0

- Software\Policies\Microsoft\Windows NT\Terminal Services\Client (3)
fEnableUsbNoAckIsochWriteToDevice = dword: 80
fEnableUsbBlockDeviceBySetupClass = dword: 1
fEnableUsbSelectDeviceByInterface = dword: 1

- Software\Policies\Microsoft\Windows NT\Terminal Services\Client\UsbBlockDeviceBySetupClasses (1)
1000 = {3376f4ce-ff8d-40a2-a80f-bb4359d1415c}

- Software\Policies\Microsoft\Windows NT\Terminal Services\Client\UsbSelectDeviceByInterfaces (1)
1000 = {6bdd1fc6-810f-11d0-bec7-08002be2092f}

- Software\Policies\Microsoft\Windows NT\Windows File Protection (2)
KnownDllList = nlhtml.dll
SFCDisable = dword: 0

* Alternate policies *
- Software\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop (2)
NoAddingComponents = dword: 1
NoComponents = dword: 1

- Software\Microsoft\Windows\CurrentVersion\policies\Attachments (1)
ScanWithAntiVirus = dword: 3

- Software\Microsoft\Windows\CurrentVersion\policies\Explorer (2)
NoDriveTypeAutoRun = dword: 60
NoDrives = dword: 0

- Software\Microsoft\Windows\CurrentVersion\policies\NonEnum (3)
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} = dword: 1
{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} = dword: 1073741857
{0DF44EAA-FF21-4412-828E-260A8728E7F1} = dword: 32

- Software\Microsoft\Windows\CurrentVersion\policies\System (17)
ConsentPromptBehaviorAdmin = dword: 5
ConsentPromptBehaviorUser = dword: 3
EnableInstallerDetection = dword: 1
EnableLUA = dword: 1
EnableSecureUIAPaths = dword: 1
EnableUIADesktopToggle = dword: 0
EnableVirtualization = dword: 1
PromptOnSecureDesktop = dword: 1
ValidateAdminCodeSignatures = dword: 0
dontdisplaylastusername = dword: 0
legalnoticecaption =
legalnoticetext =
scforceoption = dword: 0
shutdownwithoutlogon = dword: 1
undockwithoutlogon = dword: 1
FilterAdministratorToken = dword: 0
DisableRegistryTools = dword: 0

- Software\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats (7)
CF_TEXT = dword: 1
CF_BITMAP = dword: 2
CF_OEMTEXT = dword: 7
CF_DIB = dword: 8
CF_PALETTE = dword: 9
CF_UNICODETEXT = dword: 13
CF_DIBV5 = dword: 17



--------------------

Browser Helper Objects (6):

avast! Online Security = {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} = C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
Google Toolbar Helper = {AA58ED58-01DD-4d91-8333-CF10577473F7} = C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
Java™ Plug-In 2 SSV Helper = {DBC80044-A445-435b-BC74-9C25C1C588A9} = C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
Java™ Plug-In SSV Helper = {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} = C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
URLRedirectionBHO = {B4F3A835-0E21-4959-BA22-42B3008E02FF} = C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
Windows Live ID Sign-in Helper = {9030D464-4C02-4ABF-8ECC-5164760863C6} = C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

--------------------

ActiveX objects (8):

(no name) - {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
ClearIconCache - {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
DOTNETFRAMEWORKS - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
IE4_SHELLID - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
MailNews - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
Theme Component - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\Windows\system32\regsvr32.exe /s /n /i:/UserInstall C:\Windows\system32\themeui.dll
WMPACCESS - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP

--------------------

Internet Explorer toolbars:

[This user]
* ShellBrowser (1) *
(no name) - ITBar7Layout - (no file)

* WebBrowser (1) *
Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll


--------------------

Internet Explorer buttons/tools (3):

Send to OneNote - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
OneNote Lin&ked Notes - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
Research - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\MSOffice\OFFICE11\REFIEBAR.DLL

--------------------

Internet Explorer menu extensions:

[This user (2)]
E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
Se&nd to OneNote - res://C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105

--------------------

Internet Explorer Bands (3):

&Discuss - {BDEADE7F-C265-11D0-BCED-00A0C90AB50F} - shdocvw.dll
- {EFA24E64-B078-11D0-89E4-00C04FC9E26E} -
&Research - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\MSOffice\OFFICE11\REFIEBAR.DLL

--------------------

Downloaded Program Files (4):

PCPitstop Utility - {0E5F0222-96B9-11D3-8997-00104BD12D94} - C:\Windows\Downloaded Program Files\PCPitStop.dll - http://utilities.pcp...ols/pcmatic.cab
Shockwave ActiveX Control - {166B1BCA-3F9C-11CF-8075-444553540000} - C:\Windows\SysWow64\Adobe\Director\SwDir.dll - http://download.macr...director/sw.cab
Java Plug-in 11.25.2 - {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2iexp.dll -
Photodex Presenter AX control - {CB50428B-657F-47DF-9B32-671F82AA73F7} - C:\PROGRA~2\PHOTOD~1\pxplay.ocx - http://www.photodex.com/pxplay.cab

--------------------

URL search hooks:

[This user (1)]
Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll

--------------------

Explorer clones:

C:\Windows\explorer.exe
C:\Windows\system32\explorer.exe

--------------------

ContextMenuHandlers:[* (8)]
avast = {472083B0-C522-11CF-8763-00608CC02F24} = C:\Program Files\AVAST Software\Avast\ashShell.dll
BriefcaseMenu = {85BBD920-42A0-1069-A2E4-08002B30309D} = C:\Windows\system32\syncui.dll
DropboxExt = {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} = C:\Users\Administrator\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
Open With = {09799AFB-AD67-11d1-ABCD-00C04FC30936} = C:\Windows\system32\shell32.dll
Open With EncryptionMenu = {A470F8CF-A1E8-4f65-8335-227475AA5C46} = C:\Windows\system32\shell32.dll
Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = C:\Windows\system32\ntshrui.dll
Start Menu Pin = {a2a9545d-a0c2-42b4-9708-a0b2badd77c8} = C:\Windows\system32\shell32.dll
Taskband Pin = {90AA3A4E-1CBA-4233-B8BB-535773D48449} = C:\Windows\system32\shell32.dll

[Drive (6)]
Disk Copy Extension = {59099400-57FF-11CE-BD94-0020AF85B590} = C:\Windows\system32\diskcopy.dll
EnhancedStorageShell = {2854F705-3548-414C-A113-93E27C808C85} = C:\Windows\system32\EhStorShell.dll
Portable Devices Menu = {D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} = C:\Windows\system32\wpdshext.dll
Previous Versions Property Page = {596AB062-B4D2-4215-9F74-E9109B0A8153} = C:\Windows\system32\twext.dll
Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = C:\Windows\system32\ntshrui.dll
ShellFolder for CD Burning = {fbeb8a05-beee-4442-804e-409d6c4515e9} = C:\Windows\system32\shell32.dll

[Folder (3)]
avast = {472083B0-C522-11CF-8763-00608CC02F24} = C:\Program Files\AVAST Software\Avast\ashShell.dll
BriefcaseMenu = {85BBD920-42A0-1069-A2E4-08002B30309D} = C:\Windows\system32\syncui.dll
Library Location = {3dad6c5d-2167-4cae-9914-f99e41c12cfa} = C:\Windows\system32\shell32.dll

[CompressedFolder (1)]
Compressed (zipped) Folder Context Menu = {b8cdcb65-b1bf-4b42-9428-1dfdb7ee92af} = C:\Windows\system32\zipfldr.dll

[Directory (4)]
DropboxExt = {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} = C:\Users\Administrator\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
EncryptionMenu = {A470F8CF-A1E8-4f65-8335-227475AA5C46} = C:\Windows\system32\shell32.dll
Previous Versions Property Page = {596AB062-B4D2-4215-9F74-E9109B0A8153} = C:\Windows\system32\twext.dll
Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = C:\Windows\system32\ntshrui.dll

[Directory\Background (4)]
DropboxExt = {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} = C:\Users\Administrator\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
Gadgets = {6B9228DA-9C15-419e-856C-19E768A13BDC} = %ProgramFiles%\Windows Sidebar\sbdrop.dll
New = {D969A300-E7FF-11d0-A93B-00A0C90F2719} = C:\Windows\system32\shell32.dll
Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = C:\Windows\system32\ntshrui.dll

[InternetShortcut (1)]
Internet Shortcut = {FBF23B40-E3F0-101B-8488-00AA003E56F8} = C:\Windows\SysWOW64\ieframe.dll

[AllFileSystemObjects (4)]
00avast = {472083B0-C522-11CF-8763-00608CC02F24} = C:\Program Files\AVAST Software\Avast\ashShell.dll
CopyAsPathMenu = {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} = C:\Windows\system32\shell32.dll
Previous Versions Property Page = {596AB062-B4D2-4215-9F74-E9109B0A8153} = C:\Windows\system32\twext.dll
SendTo = {7BA4C740-9E81-11CF-99D3-00AA004AE837} = C:\Windows\system32\shell32.dll

--------------------

ColumnHandlers (1):

PDF Shell Extension - {F9DB5320-233E-11D1-9F84-707F02C10627} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll

--------------------

Registry 'Run' keys:

[User Run]
AOL Fast Start = "C:\Program Files (x86)\AOL Desktop 9.6\AOL.EXE" -b
NETGEARGenie = "C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe" -mini -redirect

[System Run]
Adobe ARM = "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
AvastUI.exe = "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
HostManager = C:\Program Files (x86)\Common Files\AOL\1317750540\ee\AOLSoftware.exe
IAStorIcon = C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
ISBMgr.exe = "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"
QuickTime Task = "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
Reader Library Launcher = C:\Program Files (x86)\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe
SmartWiHelper = "C:\Program Files (x86)\Sony\SmartWi Connection Utility\SmartWiHelper.exe" /WindowsStartup

--------------------

Protocols:

[Pluggable MIME filters (4)]
application/octet-stream = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = mscoree.dll
application/x-complus = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = mscoree.dll
application/x-msdownload = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = mscoree.dll
text/xml = {807573E5-5146-11D5-A672-00B0D022E945} = C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL

[Protocol handlers (17)]
about = {3050F406-98B5-11CF-BB82-00AA00BDCE0B} = C:\Windows\SysWOW64\mshtml.dll
cdl = {3dd53d40-7b8b-11D0-b013-00aa0059ce02} = C:\Windows\SysWOW64\urlmon.dll
dvd = {12D51199-0DB5-46FE-A120-47A3D7D937CC} = C:\Windows\SysWOW64\msvidctl.dll
file = {79eac9e7-baf9-11ce-8c82-00aa004ba90b} = C:\Windows\SysWOW64\urlmon.dll
ftp = {79eac9e3-baf9-11ce-8c82-00aa004ba90b} = C:\Windows\SysWOW64\urlmon.dll
http = {79eac9e2-baf9-11ce-8c82-00aa004ba90b} = C:\Windows\SysWOW64\urlmon.dll
https = {79eac9e5-baf9-11ce-8c82-00aa004ba90b} = C:\Windows\SysWOW64\urlmon.dll
its = {9D148291-B9C8-11D0-A4CC-0000F80149F6} = C:\Windows\System32\itss.dll
javascript = {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} = C:\Windows\SysWOW64\mshtml.dll
local = {79eac9e7-baf9-11ce-8c82-00aa004ba90b} = C:\Windows\SysWOW64\urlmon.dll
mailto = {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} = C:\Windows\SysWOW64\mshtml.dll
mhtml = {05300401-BCBC-11d0-85E3-00C04FD85AB4} = C:\Windows\system32\inetcomm.dll
mk = {79eac9e6-baf9-11ce-8c82-00aa004ba90b} = C:\Windows\SysWOW64\urlmon.dll
ms-its = {9D148291-B9C8-11D0-A4CC-0000F80149F6} = C:\Windows\System32\itss.dll
res = {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} = C:\Windows\SysWOW64\mshtml.dll
tv = {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} = C:\Windows\SysWOW64\msvidctl.dll
vbscript = {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} = C:\Windows\SysWOW64\mshtml.dll

--------------------

WOW compatibility:

cmdline = C:\Windows\system32\ntvdm.exe

[KnownDlls (32-bit) (28)]
advapi32.dll
clbcatq.dll
COMDLG32.dll
difxapi.dll
gdi32.dll
IERTUTIL.dll
IMAGEHLP.dll
IMM32.dll
kernel32.dll
LPK.dll
MSCTF.dll
MSVCRT.dll
NORMALIZ.dll
NSI.dll
ole32.dll
OLEAUT32.dll
PSAPI.DLL
rpcrt4.dll
sechost.dll
Setupapi.dll
SHELL32.dll
SHLWAPI.dll
URLMON.dll
user32.dll
USP10.dll
WININET.dll
WLDAP32.dll
WS2_32.dll

--------------------

ShellServiceObjectDelayLoad:

[All users (1)]
WebCheck = {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = C:\Windows\SysWow64\webcheck.dll

--------------------

Winsock LSP:

[Protocols (9)]
MSAFD Tcpip [TCP/IP] - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} - C:\Windows\system32\mswsock.dll
MSAFD Tcpip [UDP/IP] - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} - C:\Windows\system32\mswsock.dll
MSAFD Tcpip [TCP/IPv6] - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4} - C:\Windows\system32\mswsock.dll
MSAFD Tcpip [UDP/IPv6] - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4} - C:\Windows\system32\mswsock.dll
RSVP TCPv6 Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\Windows\system32\mswsock.dll
RSVP TCP Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\Windows\system32\mswsock.dll
RSVP UDPv6 Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\Windows\system32\mswsock.dll
RSVP UDP Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\Windows\system32\mswsock.dll
MSAFD RfComm [Bluetooth] - {9FC48064-7298-43E4-B7BD-181F2089792A} - C:\Windows\system32\mswsock.dll

[Namespace Providers (10)]
Network Location Awareness Legacy (NLAv1) Namespace - {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83} -
E-mail Naming Shim Provider - {964ACBA2-B2BC-40EB-8C6A-A6DB40161CAE} -
PNRP Cloud Namespace Provider - {03FE89CE-766D-4976-B9C1-BB9BC42C7B4D} -
PNRP Name Namespace Provider - {03FE89CD-766D-4976-B9C1-BB9BC42C7B4D} -
Bluetooth Namespace - {06AA63E0-7D60-41FF-AFB2-3EE6D2D9392D} - C:\Windows\system32\wshbth.dll
WindowsLive NSP - {4177DDE9-6028-479E-B7B7-03591A63FF3A} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
WindowsLive Local NSP - {229F2A2C-5F18-4A06-8F89-3A372170624D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
Tcpip - {22059D40-7E9E-11CF-AE5A-00AA00A7112B} -
NTDS - {3B2637EE-E580-11CF-A555-00C04FD8D4AC} - C:\Windows\System32\winrnr.dll
mdnsNSP - {B600E6E9-553B-4A19-8696-335E5C896153} - C:\Program Files (x86)\Bonjour\mdnsNSP.dll

--------------------

Hijack points:

[Reset web settings URLs]
SearchAssistant =
CustomizeSearch =
START_PAGE_URL =
SEARCH_PAGE_URL =
MS_START_PAGE_URL =

[Internet Explorer URLs]
* This user *
- Internet Explorer\Main (3)
Local Page = C:\Windows\system32\blank.htm
Search Page = http://www.microsoft...=ie&ar=iesearch
Start Page = http://yahoo.com/

- Internet Explorer\Search (2)
Default_Search_Url = http://www.google.com
SearchAssistant = http://www.google.com

- Internet Explorer\SearchURL (1)
(Default) = http://home.microsof...search.asp?p=%s

* All users *
- Internet Explorer\Main (6)
Default_Page_Url = http://go.microsoft..../?LinkId=255141
Default_Search_Url = http://go.microsoft....k/?LinkId=54896
Local Page = C:\WINDOWS\system32\blank.htm
Search Bar = http://home.microsof...obby/search.asp
Search Page = http://go.microsoft....k/?LinkId=54896
Start Page = http://go.microsoft..../?LinkId=255141

- Internet Explorer\Search (2)
CustomizeSearch = http://ie.search.msn...st/srchcust.htm
SearchAssistant = http://ie.search.msn...st/srchasst.htm

- Internet Explorer\SearchURL (1)
(Default) = http://home.microsof...search.asp?p=%s

- Internet Explorer\AboutURLs (5)
blank = res://mshtml.dll/blank.htm
DesktopItemNavigationFailure = res://shdoclc.dll/navcancl.htm
NavigationCanceled = res://shdoclc.dll/navcancl.htm
NavigationFailure = res://shdoclc.dll/navcancl.htm
PostNotCached = res://mshtml.dll/repost.htm



[Default URL prefixes]
default = http://
ftp = ftp://
gopher = gopher://
home = http://
mosaic = http://
www = http://

[Hosts file location]
DatabasePath = C:\Windows\System32\drivers\etc\hosts

--------------------

Protection & disabled items:

[Hosts file (1)]
* 127.0.0.1 *
localhost


[ActiveX killbits (202)]
&Address - {01E04581-4EEE-11d0-BFE9-00AA005B4383} - C:\Windows\system32\explorerframe.dll
(no name) - {323C0F99-820A-4e0b-B714-57942C6D9678} - C:\Program Files (x86)\Windows Live\Messenger\msgsc.dll
(no name) - {35cec8a3-2be6-11d2-8773-92e220524153} - C:\Windows\system32\stobject.dll
(no name) - {53C74826-AB99-4D33-ACA4-3117F51D3788} - C:\Windows\system32\shell32.dll
(no name) - {6FBF8DD5-9E03-4af5-B779-FEBEF6754712} - C:\Program Files (x86)\Windows Live\Messenger\msgsc.dll
(no name) - {98cb4060-d3e7-42a1-8d65-949d34ebfe14} - C:\MSOffice\OFFICE11\SOA.DLL
(no name) - {b4b3aecb-dfd6-11d1-9daa-00805f85cfe3} - C:\Windows\system32\clbcatq.dll
(no name) - {e846f0a0-d367-11d1-8286-00a0c9231c29} - C:\Windows\system32\catsrvut.dll
(no name) - {F5F545A6-39C4-40b5-814D-B45040A89FB5} - C:\Program Files (x86)\Windows Live\Messenger\msgsc.dll
(no name) - {F81CD990-910B-4bbf-9CB3-6A77F3D697B3} - C:\Program Files (x86)\Windows Live\Messenger\msgsc.dll
(no name) - {FEF10FA2-355E-4E06-9381-9B24D7F7CC88} - C:\Windows\system32\shell32.dll
ACM Class Manager - {33d9a761-90c8-11d0-bd43-00a0c911ce86} - C:\Windows\SysWOW64\devenum.dll
ActiveMovie Filter Class Manager - {083863F1-70DE-11d0-BD40-00A0C911CE86} - C:\Windows\SysWOW64\devenum.dll
ADODB.Stream - {00000566-0000-0010-8000-00AA006D2EA4} - %CommonProgramFiles(x86)%\System\ado\msado15.dll
Analog Audio Component Type - {28AB0005-E845-4FFA-AA9B-F4665236141C} - C:\Windows\SysWOW64\msvidctl.dll
ATSC Tune Request Location Information - {8872FF1B-98FA-4D7A-8D93-C9F1055F85BB} - C:\Windows\SysWOW64\msvidctl.dll
Audio Renderers Collection Class - {C5702CCF-9B79-11D3-B654-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Data Services Feature Segment - {334125C0-77E5-11d3-B653-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuner Device Segment - {A2E3074E-6C3D-11D3-B653-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Analog Locator - {49638B91-48AB-48B7-A47A-7D0E75A08EDE} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Analog Radio Tuning Space - {8A674B4C-1F63-11D3-B64C-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Analog TV Tuning Space - {8A674B4D-1F63-11D3-B64C-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model ATSC Channel Tune Request - {0369B4E6-45B6-11D3-B650-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model ATSC Component Type Class (Broadcast Substream Type) - {A8DCF3D5-0780-4EF4-8A83-2CFFAACB8ACE} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model ATSC Tuning Space - {A2E30750-6C3D-11D3-B653-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Auxiliary Inputs Tuning Space - {F9769A06-7ACA-4E39-9CFB-97BB35F0E77E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Channel ID Tune Request - {3A9428A7-31A4-45E9-9EFB-E055BF7BB3DB} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Channel ID Tuning Space - {CC829A2F-3365-463F-AF13-81DBB6F3A555} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Channel Tune Request - {0369B4E5-45B6-11D3-B650-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Component Class(Broadcast Substream) - {59DC47A8-116C-11D3-9D8E-00C04F72D980} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Component Type Class (Broadcast Substream Type) - {823535A0-0318-11D3-9D8E-00C04F72D980} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Digital Cable Locator - {03C06416-D127-407A-AB4C-FDD279ABBE5D} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Digital Cable Tune Request - {26EC0B63-AA90-458A-8DF4-5659F2C8A18A} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Digital Cable Tuning Space - {D9BB4CEE-B87A-47F1-AC92-B08D9C7813FC} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model DVB Cable Locator - {C531D9FD-9685-4028-8B68-6E1232079F1E} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model DVB Satellite Locator - {1DF7D126-4050-47F0-A7CF-4C4CA9241333} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model DVB Terrestrial Locator - {9CD64701-BDF3-4D14-8E03-F12983D86664} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model DVB Tune Request - {15D6504A-5494-499C-886C-973C9E53B9F1} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model DVB Tuning Space - {C6B14B32-76AA-4A86-A7AC-5C79AAF58DA7} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model DVB-Satellite Tuning Space - {B64016F3-C9A2-4066-96F0-BD9563314726} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model Language Component Type Class (Broadcast Substream Type) - {1BE49F30-0E1B-11D3-9D8E-00C04F72D980} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model MPEG2 Component Class (Broadcast Substream) - {055CB2D7-2969-45CD-914B-76890722F112} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model MPEG2 Component Type Class (Broadcast Substream Type) - {418008F3-CF67-4668-9628-10DC52BE1D08} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model MPEG2 Tune Request - {0955AC62-BF2E-4CBA-A2B9-A63F772D46CF} - C:\Windows\SysWOW64\msvidctl.dll
BDA Tuning Model MPEG2 Tune Request Factory - {2C63E4EB-4CEA-41B8-919C-E947EA19A77C} - C:\Windows\SysWOW64\msvidctl.dll
Briefcase - {85bbd920-42a0-1069-a2e4-08002b30309d} - C:\Windows\system32\syncui.dll
cfw Class - {ECABAFC0-7F19-11D2-978E-0000F8757E2A} - C:\Windows\system32\comsvcs.dll
Closed Captions Analysis Feature Segment - {86151827-E47B-45EE-8421-D10E6E690979} - C:\Windows\SysWOW64\msvidctl.dll
ColleagueImportAddIn Class - {EFEF7FDB-0CED-4FB6-B3BB-3C50D39F4120} - C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\ColleagueImport.dll
Collection of all the available BDA Tuning Model Tuning Space objects on this system - {D02AAC50-027E-11D3-9D8E-00C04F72D980} - C:\Windows\SysWOW64\msvidctl.dll
Collection of BDA Tuning Model Component Types(Broadcast Substream Types) - {A1A2B1C4-0E3A-11D3-9D8E-00C04F72D980} - C:\Windows\SysWOW64\msvidctl.dll
Collection of BDA Tuning Model Components(Broadcast Substreams) - {809B6661-94C4-49E6-B6EC-3F0F862215AA} - C:\Windows\SysWOW64\msvidctl.dll
Custom Composition Segment from Data Services to Time Shift Sink - {38F03426-E83B-4E68-B65B-DCAE73304838} - C:\Windows\SysWOW64\msvidctl.dll
Custom Composition Segment from Encoder to Time Shift Sink - {A0B9B497-AFBC-45AD-A8A6-9B077C40D4F2} - C:\Windows\SysWOW64\msvidctl.dll
Custom Composition Segment from iTV to Stream Buffer Source - {92B94828-1AF7-4E6E-9EBF-770657F77AF5} - C:\Windows\SysWOW64\msvidctl.dll
Custom Composition Segment from Legacy Analog Tv Tuner Device Segment to Data Services Feature Segment - {C5702CD6-9B79-11D3-B654-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
Custom Composition Segment from Legacy Analog Tv Tuner Device Segment to Standard Video Renderer Device Segment - {E18AF75A-08AF-11D3-B64A-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
Custom Composition Segment from WebDVD Device Segment to Standard Video Renderer Device Segment - {267DB0B3-55E3-4902-949B-DF8F5CEC0191} - C:\Windows\SysWOW64\msvidctl.dll
Developer Tools - {1A6FE369-F28C-4AD9-A3E6-2BCB50807CF1} - C:\Program Files (x86)\Internet Explorer\iedvtool.dll
Developer Tools - {8FE85D00-4647-40B9-87E4-5EB8A52F4759} - C:\Program Files (x86)\Internet Explorer\iedvtool.dll
DigitalCable Class - {ABBA001B-3075-11D6-88A4-00B0D0200F88} - C:\Windows\SysWOW64\psisdecd.dll
DirectX Transform Wrapper Property Page - {1B544C24-FD0B-11CE-8C63-00AA0044B520} - C:\Windows\SysWOW64\qedit.dll
Encoder Feature Segment - {BB530C63-D9DF-4B49-9439-63453962E598} - C:\Windows\SysWOW64\msvidctl.dll
Features Collection Class - {C5702CD0-9B79-11D3-B654-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
FieldListCtrl.1 Object - {53230327-172B-11D0-AD40-00A0C90DC8D9} - C:\MSOffice\OFFICE11\ACCWIZ.DLL
File Playback Device Segment - {37B0353C-A4C8-11D2-B634-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
Generic Graph Composition Segment - {2764BCE5-CC39-11D2-B639-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
Generic Sink Segment - {4A5869CF-929D-4040-AE03-FCAFC5B9CD42} - C:\Windows\SysWOW64\msvidctl.dll
Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
HHCtrl Object - {41B23C28-488E-4E5C-ACE2-BB0BBABE99E8} - C:\Windows\System32\hhctrl.ocx
HHCtrl Object - {ADB880A6-D8FF-11CF-9377-00AA003B7A11} - C:\Windows\System32\hhctrl.ocx
IAVIStream & IAVIFile Proxy - {0002000D-0000-0000-C000-000000000046} - C:\Windows\System32\avifil32.dll
ICM Class Manager - {33d9a760-90c8-11d0-bd43-00a0c911ce86} - C:\Windows\SysWOW64\devenum.dll
ImexGridCtrl.1 Object - {53230322-172B-11D0-AD40-00A0C90DC8D9} - C:\MSOffice\OFFICE11\ACCWIZ.DLL
IndexServer Simple Command Creator - {c7b6c04a-cbb5-11d0-bb4c-00c04fc2f410} - C:\Windows\system32\query.dll
Input Devices Collection Class - {C5702CCC-9B79-11D3-B654-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
iTV Capture Feature Segment - {5740A302-EF0B-45CE-BF3B-4470A14A8980} - C:\Windows\SysWOW64\msvidctl.dll
iTV Playback Feature Segment - {9E797ED0-5253-4243-A9B7-BD06C58F8EF3} - C:\Windows\SysWOW64\msvidctl.dll
Legacy Analog TV Tuner Device Segment - {1C15D484-911D-11D2-B632-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
LexRefBilingualTextContext Class - {75C11604-5C51-48B2-B786-DF5E51D10EC9} - C:\Program Files (x86)\Common Files\Microsoft Shared\TRANSLAT\ESEN\MSB1ESEN.DLL
LexRefStEsObject Class - {4CFB5280-800B-4367-848F-5A13EBF27F1D} - C:\Program Files (x86)\Common Files\Microsoft Shared\TRANSLAT\ESEN\MSB1ESEN.DLL
LexRefStFrObject Class - {B3E0E785-BD78-4366-9560-B7DABE2723BE} - C:\Program Files (x86)\Common Files\Microsoft Shared\TRANSLAT\FREN\MSB1FREN.DLL
LW Identities - {A9AE6C91-1D1B-11D2-B21A-00C04FA357FA} - C:\Windows\system32\msident.dll
Media Streaming Dynamic Terminal - {AED6483F-3304-11D2-86F1-006008B0E5D2} - C:\Windows\SysWOW64\termmgr.dll
MessageMover Class - {ecabb0bf-7f19-11d2-978e-0000f8757e2a} - C:\Windows\system32\comsvcs.dll
Microsoft Animation Control 6.0 (SP4) - {B09DE715-87C1-11D1-8BE3-0000F8754DA1} - C:\Windows\SysWOW64\mscomct2.ocx
Microsoft Animation Control, version 5.0 (SP2) - {1E216240-1B7D-11CF-9D53-00AA003C9CB6} - C:\Windows\SysWOW64\comct232.ocx
Microsoft Common Browser Architecture - {AF604EFE-8897-11D1-B944-00A0C90312E1} - C:\Windows\system32\explorerframe.dll
Microsoft DDS Generic Class - {4faab301-cef6-477c-9f58-f601039e9b78} - C:\Program Files (x86)\Common Files\Microsoft Shared\MSDesigners7\MSDDS.DLL
Microsoft DDS Library Shape Control - {ec444cb6-3e7e-4865-b1c3-0de72ef39b3f} - C:\Program Files (x86)\Common Files\Microsoft Shared\MSDesigners7\MSDDS.DLL
Microsoft DDS Picture Shape Control - {6cbe0382-a879-4d2a-8ec3-1f2a43611ba8} - C:\Program Files (x86)\Common Files\Microsoft Shared\MSDesigners7\MSDDS.DLL
Microsoft DocHost User Interface Handler - {7057e952-bd1b-11d1-8919-00c04fc2c836} - C:\Windows\SysWOW64\ieframe.dll
Microsoft HTA Document 6.0 - {3050F5C8-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Microsoft Html Document for Popup Window - {3050F67D-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Microsoft Html Popup Window - {3050f667-98b5-11cf-bb82-00aa00bdce0b} - C:\Windows\SysWOW64\mshtml.dll
Microsoft HTML Window Security Proxy - {3050F391-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
Microsoft ImageComboBox Control, version 6.0 - {DD9DA666-8594-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft ImageList Control, version 6.0 - {2C247F23-8591-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft ImageList Control, version 6.0 - {F91CAF91-225B-43A7-BB9E-472F991FC402} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft ListView Control 6.0 (SP6) - {979127D3-7D01-4FDE-AF65-A698091468AF} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft ListView Control, version 6.0 - {996BF5E0-8044-4650-ADEB-0B013914E99C} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft ListView Control, version 6.0 - {BDD1F04B-858B-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft Office Chart 10.0 - {0002E556-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
Microsoft Office Data Source Control 10.0 - {0002E543-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
Microsoft Office Data Source Control 10.0 - {0002E553-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
Microsoft Office Data Source Control 11.0 - {0002E55B-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL
Microsoft Office PivotTable 10.0 - {0002E552-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
Microsoft Office Record Navigation Control 10.0 - {0002E554-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
Microsoft Office Record Navigation Control 11.0 - {0002E55C-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL
Microsoft Office Spreadsheet 10.0 - {0002E541-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
Microsoft Office Spreadsheet 10.0 - {0002E551-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
Microsoft Office Spreadsheet 11.0 - {0002E559-0000-0000-C000-000000000046} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL
Microsoft ProgressBar Control, version 6.0 - {35053A22-8589-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft RDP Client Control (redistributable) - version 3 - {9059f30f-4eb1-4bd2-9fdc-36f43a218f4a} - C:\Windows\system32\mstscax.dll
Microsoft RDP Client Control (redistributable) - version 4 - {7584c670-2274-4efb-b00b-d6aaba6d3850} - C:\Windows\system32\mstscax.dll
Microsoft RDP Client Control (redistributable) - version 5 - {4EDCB26C-D24C-4e72-AF07-B576699AC0DE} - C:\Windows\system32\mstscax.dll
Microsoft Slider Control, version 6.0 - {F08DF954-8592-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft StatusBar Control, version 6.0 - {627C8B79-918A-4C5C-9E19-20F66BF30B86} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft StatusBar Control, version 6.0 - {8E3867A3-8586-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft TabStrip Control, version 6.0 - {1EFB6596-857C-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft TabStrip Control, version 6.0 - {24B224E0-9545-4A2F-ABD5-86AA8A849385} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft Toolbar Control, version 6.0 - {66833FE6-8583-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft Toolbar Control, version 6.0 - {7DC6F291-BF55-4E50-B619-EF672D9DCC58} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft TreeView Control, version 6.0 - {9181DC5F-E07D-418A-ACA6-8EEA1ECB8E9E} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft TreeView Control, version 6.0 - {C74190B6-8589-11D1-B16A-00C0F0283628} - C:\Windows\SysWOW64\MSCOMCTL.OCX
Microsoft Visual Database Tools Database Designer V7.0 - {03cb9467-fd9d-42a8-82f9-8615b4223e6e} - C:\Program Files (x86)\Common Files\Microsoft Shared\Visual Database Tools\VDT70.DLL
Microsoft Visual Database Tools Query Designer V7.0 - {2c10a98f-d64f-43b4-bed6-dd0e1bf2074c} - C:\Program Files (x86)\Common Files\Microsoft Shared\Visual Database Tools\VDT70.DLL
MidiOut Class Manager - {4efe2452-168a-11d1-bc76-00c04fb9453b} - C:\Windows\SysWOW64\devenum.dll
MMStream Class - {49C47CE5-9BA4-11D0-8212-00C04FC32C45} - C:\Windows\SysWOW64\amstream.dll
MS TV Video Control - {B0EDF163-910A-11D2-B632-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
MS Video Control Closed Captioning Feature Segment - {7F9CB14D-48E4-43B6-9346-1AEBC39C64D3} - C:\Windows\SysWOW64\msvidctl.dll
MS Video Control Closed Captioning SI Feature Segment - {92ED88BF-879E-448F-B6B6-A385BCEB846D} - C:\Windows\SysWOW64\msvidctl.dll
MSP Class - {4DDB6D36-3BC1-11D2-86F2-006008B0E5D2} - C:\Windows\SysWOW64\wavemsp.dll
MSVDTDDGridCtrl7 Object - {6f9f3481-84dd-4b14-b09c-6b4288eccde8} - C:\Program Files (x86)\Common Files\Microsoft Shared\Visual Database Tools\VDT70.DLL
MSVidCtl Analog Capture to Encoder Composition Segment - {28953661-0231-41DB-8986-21FF4388EE9B} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl Analog Capture to XDS Composition Segment - {3540D440-5B1D-49CB-821A-E84B8CF065A7} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl Analog TV to StreamBufferSource Composition Segment - {9F50E8B1-9530-4DDC-825E-1AF81D47AED6} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl CC to Audio Renderer Composition Segment - {D76334CA-D89E-4BAF-86AB-DDB59372AFC2} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl CC to Video Renderer Composition Segment - {C4BF2784-AE00-41BA-9828-9C953BD3C54A} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl Digital TV to CCA Composition Segment - {73D14237-B9DB-4EFA-A6DD-84350421FB2F} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl Digital TV to iTV Composition Segment - {5D8E73F7-4989-4AC8-8A98-39BA0D325302} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl Digital TV to StreamBufferSource Composition Segment - {ABE40035-27C3-4A2F-8153-6624471608AF} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl DVD to Audio Renderer Composition Segment - {8D04238E-9FD1-41C6-8DE3-9E1EE309E935} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl Enhanced Video Renderer(DX10) Segment - {C45268A2-FA81-4E19-B1E3-72EDBD60AEDA} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl FilePlayback to Audio Renderer Composition Segment - {CC23F537-18D4-4ECE-93BD-207A84726979} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl FilePlayback to Video Renderer Composition Segment - {B401C5EB-8457-427F-84EA-A4D2363364B0} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl MPEG2 Decoder to Closed Captioning Composition Segment - {6AD28EE1-5002-4E71-AAF7-BD077907B1A4} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl SBE Source to Closed Caption Composition Segment - {9193A8F9-0CBA-400E-AA97-EB4709164576} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl SBE Source to iTV Composition Segment - {2291478C-5EE3-4BEF-AB5D-B5FF2CF58352} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl SBE Source to Video Mixing Renderer Composition Segment - {3C4708DC-B181-46A8-8DA8-4AB0371758CD} - C:\Windows\SysWOW64\msvidctl.dll
MSVidCtl Stream Buffer Source To Generic Sink Composition segment - {991DA7E5-953F-435B-BE5E-B92A05EDFC42} - C:\Windows\SysWOW64\msvidctl.dll
MTSEvents Class - {ECABB0AB-7F19-11D2-978E-0000F8757E2A} - C:\Windows\system32\comsvcs.dll
Network Connections - {7007acc7-3202-11d1-aad2-00805fc1270e} - C:\Windows\System32\netshell.dll
Network Connections - {992cffa0-f557-101a-88ec-00dd010ccc48} - C:\Windows\System32\netshell.dll
Network Connections Tray - {7007ACCF-3202-11D1-AAD2-00805FC1270E} - C:\Windows\System32\netshell.dll
Outlook Progress Ctl - {0006F071-0000-0000-C000-000000000046} - C:\PROGRA~2\MICROS~2\Office14\OUTLOOK.EXE
Output Devices Collection Class - {C5702CCD-9B79-11D3-B654-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
PostBootReminder object - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\Windows\system32\shell32.dll
PSDispatch - {00020420-0000-0000-c000-000000000046} - C:\Windows\SysWOW64\oleaut32.dll
PSEnumVariant - {00020421-0000-0000-C000-000000000046} - C:\Windows\SysWOW64\oleaut32.dll
PSOAInterface - {00020424-0000-0000-c000-000000000046} - C:\Windows\SysWOW64\oleaut32.dll
PSSupportErrorInfo - {DF0B3D60-548F-101B-8E65-08002B2BD119} - C:\Windows\SysWOW64\oleaut32.dll
PSTypeComp - {00020425-0000-0000-C000-000000000046} - C:\Windows\SysWOW64\oleaut32.dll
PSTypeInfo - {00020422-0000-0000-C000-000000000046} - C:\Windows\SysWOW64\oleaut32.dll
PSTypeLib - {00020423-0000-0000-C000-000000000046} - C:\Windows\SysWOW64\oleaut32.dll
Queued Components Recorder - {ecabafc2-7f19-11d2-978e-0000f8757e2a} - C:\Windows\system32\comsvcs.dll
RefEdit.Ctrl - {00024512-0000-0000-C000-000000000046} - C:\MSOffice\OFFICE11\REFEDIT.DLL
Script Encoder Object - {32DA2B15-CFED-11D1-B747-00C04FC2B085} - C:\Windows\SysWOW64\scrrun.dll
ShellFolder for CD Burning - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\Windows\system32\shell32.dll
Shockwave ActiveX Control - {166B1BCA-3F9C-11CF-8075-444553540000} - C:\Windows\SysWow64\Adobe\Director\SwDir.dll
Shortcut - {00021401-0000-0000-C000-000000000046} - C:\Windows\SysWOW64\shell32.dll
SpSharedRecoContext Class - {47206204-5ECA-11D2-960F-00C04F8EE628} - C:\Windows\System32\Speech\Common\sapi.dll
SpSharedRecognizer Class - {3BEE4890-4FE9-4A37-8C1E-5E7E12791C1F} - C:\Windows\System32\Speech\Common\sapi.dll
Standard Audio Renderer Device Segment - {37B03544-A4C8-11D2-B634-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
Standard Video Renderer Device Segment - {37B03543-A4C8-11D2-B634-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
Stream Buffer Recording Control Object - {CAAFDD83-CEFC-4E3D-BA03-175F17A24F91} - C:\Windows\SysWOW64\msvidctl.dll
Stream Buffer Sink Segment - {9E77AAC4-35E5-42A1-BDC2-8F3FF399847C} - C:\Windows\SysWOW64\msvidctl.dll
Stream Buffer Source - {AD8E510D-217F-409B-8076-29C5E73B98E8} - C:\Windows\SysWOW64\msvidctl.dll
Stream Buffer V2 Source - {FD351EA1-4173-4AF4-821D-80D4AE979048} - C:\Windows\SysWOW64\MSVidCtl.dll
System Monitor Source Properties - {0CF32AA1-7571-11D0-93C4-00AA00A3DDEA} - C:\Windows\System32\sysmon.ocx
SysTrayInvoker - {730f6cdc-2c86-11d2-8773-92e220524153} - C:\Windows\system32\stobject.dll
Tablet Tip Soft Keyboard Skin Class - {E94137E0-92ED-4579-9251-18AF2A08CCD1} - %CommonProgramFiles%\microsoft shared\ink\tipskins.dll
Trident HTMLEditor - {3050F4F5-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtmled.dll
Utility Object for Binding Events SubObjects in Script Variables - {577FAA18-4518-445E-8F70-1473F8CF4BA4} - C:\Windows\SysWOW64\msvidctl.dll
VFW Capture Class Manager - {860bb310-5d01-11d0-bd3b-00a0c911ce86} - C:\Windows\SysWOW64\devenum.dll
Video Effect (1 input) Class Manager - {cc7bfb42-f175-11d1-a392-00e0291f3959} - C:\Windows\SysWOW64\qedit.dll
Video Effect (2 input) Class Manager - {cc7bfb43-f175-11d1-a392-00e0291f3959} - C:\Windows\SysWOW64\qedit.dll
Video Mixing Renderer 9 - {51B4ABF3-748F-4E3B-A276-C828330E926A} - C:\Windows\SysWOW64\quartz.dll
Video Mixing Renderer 9 Device Segment - {24DC3975-09BF-4231-8655-3EE71F43837D} - C:\Windows\SysWOW64\msvidctl.dll
Video Render Dynamic Terminal - {AED6483E-3304-11D2-86F1-006008B0E5D2} - C:\Windows\SysWOW64\termmgr.dll
Video Renderers Collection Class - {C5702CCE-9B79-11D3-B654-00C04F79498E} - C:\Windows\SysWOW64\msvidctl.dll
VideoPort Object - {CE292861-FC88-11D0-9E69-00C04FD7C15B} - C:\Windows\SysWOW64\qdvd.dll
VMR Allocator Presenter 9 - {2D2E24CB-0CD5-458F-86EA-3E6FA22C8E64} - C:\Windows\SysWOW64\quartz.dll
VMR ImageSync 9 - {E4979309-7A32-495E-8A92-7B014AAD4961} - C:\Windows\SysWOW64\quartz.dll
WaveIn Class Manager - {33D9A762-90C8-11d0-BD43-00A0C911CE86} - C:\Windows\SysWOW64\devenum.dll
WaveOut and DSound Class Manager - {e0f158e1-cb04-11d0-bd4e-00a0c911ce86} - C:\Windows\SysWOW64\devenum.dll
WebDVD Adminitration class - {FA7C375B-66A7-4280-879D-FD459C84BB02} - C:\Windows\SysWOW64\msvidctl.dll
WebDVD Device Segment - {011B3619-FE63-4814-8A84-15A194CE9CE3} - C:\Windows\SysWOW64\msvidctl.dll
Windows Mail Address Book - {233A9694-667E-11d1-9DFB-006097D50408} - %ProgramFiles%\Windows Mail\msoe.dll
Windows Script Host Shell Object - {72C24DD5-D70A-438B-8A42-98424B88AFB8} - C:\Windows\SysWOW64\wshom.ocx
Windows Script Host Shell Object - {F935DC22-1CF0-11D0-ADB9-00C04FD58A0B} - C:\Windows\SysWOW64\wshom.ocx
XDS Feature Segment - {0149EEDF-D08F-4142-8D73-D23903D21E90} - C:\Windows\SysWOW64\msvidctl.dll

[Zones]
* This user *
- Restricted sites (36)
193.125.201.50
205.209.152.121
206.161.124.98
206.161.207.102
207.226.162.34
207.226.164.171
207.226.164.195
208.64.26.150
209.66.122.203
213.131.225.2
213.21.215.186
216.152.240.10
216.152.240.13
216.152.240.14
216.195.44.106
216.255.179.234
216.65.3.68
221.130.176.199
222.208.183.14
59.36.96.132
61.129.75.124
64.124.222.176
64.28.184.5
65.19.154.90
65.75.151.192
66.117.14.138
66.230.138.44
66.230.175.129
66.250.74.150
69.31.131.82
69.50.171.122
81.95.146.147
82.98.235.61
85.249.22.240
85.255.117.157
85.255.117.243

* All users *
- Restricted sites (36)
193.125.201.50
205.209.152.121
206.161.124.98
206.161.207.102
207.226.162.34
207.226.164.171
207.226.164.195
208.64.26.150
209.66.122.203
213.131.225.2
213.21.215.186
216.152.240.10
216.152.240.13
216.152.240.14
216.195.44.106
216.255.179.234
216.65.3.68
221.130.176.199
222.208.183.14
59.36.96.132
61.129.75.124
64.124.222.176
64.28.184.5
65.19.154.90
65.75.151.192
66.117.14.138
66.230.138.44
66.230.175.129
66.250.74.150
69.31.131.82
69.50.171.122
81.95.146.147
82.98.235.61
85.249.22.240
85.255.117.157
85.255.117.243



[Stopped/disabled NT Services]
* Stopped (109) *
@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 = C:\Windows\System32\svchost.exe -k secsvcs
@%SystemRoot%\ehome\ehrecvr.exe,-101 = C:\Windows\ehome\ehRecvr.exe
@%SystemRoot%\ehome\ehres.dll,-15501 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\ehome\ehsched.exe,-101 = C:\Windows\ehome\ehsched.exe
@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193 = "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe"
@%SystemRoot%\servicing\TrustedInstaller.exe,-100 = C:\Windows\servicing\TrustedInstaller.exe
@%SystemRoot%\system32\aelupsvc.dll,-1 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\Alg.exe,-112 = C:\Windows\System32\alg.exe
@%systemroot%\system32\appidsvc.dll,-100 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%systemroot%\system32\appinfo.dll,-100 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\AxInstSV.dll,-103 = C:\Windows\system32\svchost.exe -k AxInstSVGroup
@%SystemRoot%\system32\bdesvc.dll,-100 = C:\Windows\System32\svchost.exe -k netsvcs
@%systemroot%\system32\browser.dll,-100 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\System32\bthserv.dll,-101 = C:\Windows\system32\svchost.exe -k bthsvcs
@%SystemRoot%\System32\certprop.dll,-13 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\defragsvc.dll,-101 = C:\Windows\system32\svchost.exe -k defragsvc
@%systemroot%\system32\dot3svc.dll,-1102 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%systemroot%\system32\eapsvc.dll,-1 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\system32\efssvc.dll,-100 = C:\Windows\System32\lsass.exe
@%systemroot%\system32\FntCache.dll,-100 = C:\Windows\system32\svchost.exe -k LocalService
@%systemroot%\system32\fxsresm.dll,-118 = C:\Windows\system32\fxssvc.exe
@%SystemRoot%\System32\hidserv.dll,-101 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\ieetwcollectorres.dll,-1000 = C:\Windows\system32\IEEtwCollector.exe /V
@%SystemRoot%\system32\kmsvc.dll,-6 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\System32\ListSvc.dll,-100 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\lltdres.dll,-1 = C:\Windows\System32\svchost.exe -k LocalService
@%systemroot%\system32\Locator.exe,-2 = C:\Windows\system32\locator.exe
@%systemroot%\system32\mmcss.dll,-102 = C:\Windows\system32\svchost.exe -k LocalService
@%SystemRoot%\system32\msimsg.dll,-27 = C:\Windows\system32\msiexec.exe /V
@%SystemRoot%\system32\netman.dll,-109 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\p2psvc.dll,-8006 = C:\Windows\System32\svchost.exe -k LocalServicePeerNet
@%systemroot%\system32\pla.dll,-500 = C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
@%SystemRoot%\system32\pnrpauto.dll,-8002 = C:\Windows\System32\svchost.exe -k LocalServicePeerNet
@%SystemRoot%\system32\pnrpsvc.dll,-8000 = C:\Windows\System32\svchost.exe -k LocalServicePeerNet
@%SystemRoot%\system32\pnrpsvc.dll,-8004 = C:\Windows\System32\svchost.exe -k LocalServicePeerNet
@%SystemRoot%\System32\polstore.dll,-5010 = C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
@%SystemRoot%\system32\PresentationHost.exe,-3309 = C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
@%systemroot%\system32\psbase.dll,-300 = C:\Windows\system32\lsass.exe
@%SystemRoot%\system32\qmgr.dll,-1000 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\system32\qwave.dll,-1 = %windir%\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%Systemroot%\system32\rasauto.dll,-200 = C:\Windows\System32\svchost.exe -k netsvcs
@%Systemroot%\system32\rasmans.dll,-200 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\System32\SCardSvr.dll,-1 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\system32\sdrsvc.dll,-107 = C:\Windows\system32\svchost.exe -k SDRSVC
@%SystemRoot%\System32\sensrsvc.dll,-1000 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\System32\SessEnv.dll,-1026 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\system32\sppuinotify.dll,-103 = C:\Windows\system32\svchost.exe -k LocalService
@%systemroot%\system32\ssdpsrv.dll,-100 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\system32\sstpsvc.dll,-200 = C:\Windows\system32\svchost.exe -k LocalService
@%SystemRoot%\System32\swprv.dll,-103 = C:\Windows\System32\svchost.exe -k swprv
@%SystemRoot%\system32\TabSvc.dll,-100 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\tapisrv.dll,-10100 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\system32\tbssvc.dll,-100 = C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\system32\ui0detect.exe,-101 = C:\Windows\system32\UI0Detect.exe
@%systemroot%\system32\upnphost.dll,-213 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\system32\vaultsvc.dll,-1003 = C:\Windows\system32\lsass.exe
@%SystemRoot%\system32\vds.exe,-100 = C:\Windows\System32\vds.exe
@%systemroot%\system32\vssvc.exe,-102 = C:\Windows\system32\vssvc.exe
@%SystemRoot%\system32\w32time.dll,-200 = C:\Windows\system32\svchost.exe -k LocalService
@%SystemRoot%\system32\Wat\WatUX.exe,-601 = C:\Windows\system32\Wat\WatAdminSvc.exe
@%Systemroot%\system32\wbem\wmiapsrv.exe,-110 = C:\Windows\system32\wbem\WmiApSrv.exe
@%systemroot%\system32\wbengine.exe,-104 = "C:\Windows\system32\wbengine.exe"
@%systemroot%\system32\wbiosrvc.dll,-100 = C:\Windows\system32\svchost.exe -k WbioSvcGroup
@%SystemRoot%\system32\wcncsvc.dll,-3 = C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\system32\WcsPlugInService.dll,-200 = C:\Windows\system32\svchost.exe -k wcssvc
@%systemroot%\system32\wdi.dll,-500 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%systemroot%\system32\wdi.dll,-502 = C:\Windows\System32\svchost.exe -k LocalService
@%systemroot%\system32\webclnt.dll,-100 = C:\Windows\system32\svchost.exe -k LocalService
@%SystemRoot%\system32\wecsvc.dll,-200 = C:\Windows\system32\svchost.exe -k NetworkService
@%SystemRoot%\System32\wercplsupport.dll,-101 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\System32\wersvc.dll,-100 = C:\Windows\System32\svchost.exe -k WerSvcGroup
@%SystemRoot%\system32\winhttp.dll,-100 = C:\Windows\system32\svchost.exe -k LocalService
@%SystemRoot%\system32\wpcsvc.dll,-100 = C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\system32\wpdbusenum.dll,-100 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%Systemroot%\system32\wsmsvc.dll,-101 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\system32\wudfsvc.dll,-1000 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\System32\wwansvc.dll,-257 = C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
@%systemroot%\sysWow64\perfhost.exe,-2 = C:\Windows\SysWow64\perfhost.exe
@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8201 = C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
@comres.dll,-2797 = C:\Windows\System32\msdtc.exe
@comres.dll,-2946 = C:\Windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation
@comres.dll,-947 = C:\Windows\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
@keyiso.dll,-100 = C:\Windows\system32\lsass.exe
Adobe Flash Player Update Service = C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
AOL Connectivity Service = "C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe"
ArcSoft Connect Daemon = C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
CamMonitor = C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
Google Software Updater = "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe"
Google Update Service (gupdatem) = "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc
iPod Service = "C:\Program Files\iPod\bin\iPodService.exe"
Office Source Engine = "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
Office Software Protection Platform = "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
Realtek Audio Service = C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
Roxio UPnP Renderer 10 = "C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe"
Sony SCSI Helper Service = "C:\Program Files (x86)\Common Files\Sony Shared\Fsk\SonySCSIHelperService.exe"
User Energy Server Service = "C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe" "--run_as_user_process"
VAIO Content Folder Watcher = "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe"
VAIO Content Metadata Intelligent Analyzing Manager = "C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe"
VAIO Content Metadata Intelligent Network Service Manager = "C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe"
VAIO Content Metadata XML Interface = "C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe"
VAIO Entertainment Common Service = "C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe"
VAIO Entertainment TV Device Arbitration Service = "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe"
VAIO Entertainment UPnP Client Adapter = C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe -RunBySCM
VAIO Media plus Content Importer = "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe"
VAIO Media plus Device Searcher = "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe"
VAIO Media plus Digital Media Server = "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe"
VCService = "C:\Program Files\Sony\VAIO Care\VCService.exe"
VUAgent = "C:\Program Files\Sony\VAIO Update\vuagent.exe"
Windows Live ID Sign-in Assistant = "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"

* Stopped & disabled (15) *
@%SystemRoot%\System32\certprop.dll,-11 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\iscsidsc.dll,-5000 = C:\Windows\system32\svchost.exe -k netsvcs
@%Systemroot%\system32\mprdim.dll,-200 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\System32\netlogon.dll,-102 = C:\Windows\system32\lsass.exe
@%SystemRoot%\system32\qagentrt.dll,-6 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\system32\snmptrap.exe,-3 = C:\Windows\System32\snmptrap.exe
@%SystemRoot%\system32\trkwks.dll,-1 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195 = "C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197 = C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199 = C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
@regsvc.dll,-1 = C:\Windows\system32\svchost.exe -k regsvc
ASP.NET State Service = C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
M4-Service = C:\Users\Administrator\AppData\Local\Mikogo4\Viewer\Service\M4-Service.exe
Microsoft .NET Framework NGEN v2.0.50727_X64 = C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
Microsoft .NET Framework NGEN v2.0.50727_X86 = C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe


[Windows XP Security]
* Security Center *
- This user
AntiVirusDisableNotify = dword: 0
UpdatesDisableNotify = dword: 0

- All users
FirewallDisableNotify = dword: 0
AntiVirusDisableNotify = dword: 0
UpdatesDisableNotify = dword: 0

* System Restore *
- All users
DisableSR = dword: 0
CreateFirstRunRp = dword: 1



==================================================
= Other users on this computer: Default user =
==================================================
--------------------

Autostart folders:

[User Startup]
desktop.ini
ERUNT AutoBackup.lnk

--------------------

Internet Explorer toolbars:

[WebBrowser (1)]
Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

--------------------

Internet Explorer menu extensions (1):

E&xport to Microsoft Excel - res://C:\MSOffice\OFFICE11\EXCEL.EXE/3000

--------------------

Hijack points:

[Internet Explorer URLs]
* Internet Explorer\Main (2) *
Search Page = http://www.microsoft...=ie&ar=iesearch
Start Page = http://www.microsoft...d=ie&ar=msnhome


--------------------

Protection & disabled items:

[Zones]
* Restricted sites (36) *
193.125.201.50
205.209.152.121
206.161.124.98
206.161.207.102
207.226.162.34
207.226.164.171
207.226.164.195
208.64.26.150
209.66.122.203
213.131.225.2
213.21.215.186
216.152.240.10
216.152.240.13
216.152.240.14
216.195.44.106
216.255.179.234
216.65.3.68
221.130.176.199
222.208.183.14
59.36.96.132
61.129.75.124
64.124.222.176
64.28.184.5
65.19.154.90
65.75.151.192
66.117.14.138
66.230.138.44
66.230.175.129
66.250.74.150
69.31.131.82
69.50.171.122
81.95.146.147
82.98.235.61
85.249.22.240
85.255.117.157
85.255.117.243



==================================================
= Other users on this computer: LOCAL SERVICE =
==================================================
--------------------

Autostart folders:

[User Startup]
desktop.ini
ERUNT AutoBackup.lnk

--------------------

URL search hooks (1):

Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll

==================================================
= Other users on this computer: NETWORK SERVICE =
==================================================
--------------------

Autostart folders:

[User Startup]
desktop.ini
ERUNT AutoBackup.lnk

--------------------

URL search hooks (1):

Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll

==================================================
= Other users on this computer: SYSTEM =
==================================================
--------------------

Autostart folders:

[User Startup]
desktop.ini
ERUNT AutoBackup.lnk

--------------------

Internet Explorer toolbars:

[WebBrowser (1)]
Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

--------------------

Internet Explorer menu extensions (1):

E&xport to Microsoft Excel - res://C:\MSOffice\OFFICE11\EXCEL.EXE/3000

--------------------

Hijack points:

[Internet Explorer URLs]
* Internet Explorer\Main (2) *
Search Page = http://www.microsoft...=ie&ar=iesearch
Start Page = http://www.microsoft...d=ie&ar=msnhome


--------------------

Protection & disabled items:

[Zones]
* Restricted sites (36) *
193.125.201.50
205.209.152.121
206.161.124.98
206.161.207.102
207.226.162.34
207.226.164.171
207.226.164.195
208.64.26.150
209.66.122.203
213.131.225.2
213.21.215.186
216.152.240.10
216.152.240.13
216.152.240.14
216.195.44.106
216.255.179.234
216.65.3.68
221.130.176.199
222.208.183.14
59.36.96.132
61.129.75.124
64.124.222.176
64.28.184.5
65.19.154.90
65.75.151.192
66.117.14.138
66.230.138.44
66.230.175.129
66.250.74.150
69.31.131.82
69.50.171.122
81.95.146.147
82.98.235.61
85.249.22.240
85.255.117.157
85.255.117.243



==================================================
= Other hardware configurations: Last known good =
==================================================
--------------------

On-reboot actions:

BootExecute = autocheck autochk *

--------------------

Services:

[NT Services (69)]
@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 = "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe"
@%SystemRoot%\system32\audiosrv.dll,-200 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\system32\audiosrv.dll,-204 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\bfe.dll,-1001 = C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
@%SystemRoot%\system32\cryptsvc.dll,-1001 = C:\Windows\system32\svchost.exe -k NetworkService
@%SystemRoot%\system32\dhcpcore.dll,-100 = C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\System32\dnsapi.dll,-101 = C:\Windows\system32\svchost.exe -k NetworkService
@%systemroot%\system32\dps.dll,-500 = C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
@%SystemRoot%\system32\dwm.exe,-2000 = C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
@%systemroot%\system32\fdPHost.dll,-100 = C:\Windows\system32\svchost.exe -k LocalService
@%systemroot%\system32\fdrespub.dll,-100 = C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
@%SystemRoot%\system32\FirewallAPI.dll,-23090 = C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
@%SystemRoot%\system32\ikeext.dll,-501 = C:\Windows\system32\svchost.exe -k netsvcs
@%systemroot%\system32\IPBusEnum.dll,-102 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\system32\iphlpsvc.dll,-500 = C:\Windows\System32\svchost.exe -k NetSvcs
@%SystemRoot%\system32\ipnathlp.dll,-106 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\system32\lmhsvc.dll,-101 = C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
@%systemroot%\system32\mmcss.dll,-100 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\netprofm.dll,-202 = C:\Windows\System32\svchost.exe -k LocalService
@%SystemRoot%\System32\nlasvc.dll,-1 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\system32\nsisvc.dll,-200 = C:\Windows\system32\svchost.exe -k LocalService
@%SystemRoot%\system32\pcasvc.dll,-1 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%systemroot%\system32\profsvc.dll,-300 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\System32\provsvc.dll,-100 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\system32\samsrv.dll,-1 = C:\Windows\system32\lsass.exe
@%SystemRoot%\system32\schedsvc.dll,-100 = C:\Windows\System32\svchost.exe -k netsvcs
@%systemroot%\system32\SearchIndexer.exe,-103 = C:\Windows\system32\SearchIndexer.exe /Embedding
@%SystemRoot%\system32\seclogon.dll,-7001 = %windir%\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\Sens.dll,-200 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\System32\shsvcs.dll,-12288 = C:\Windows\System32\svchost.exe -k netsvcs
@%systemroot%\system32\spoolsv.exe,-1 = C:\Windows\System32\spoolsv.exe
@%SystemRoot%\system32\sppsvc.exe,-101 = C:\Windows\system32\sppsvc.exe
@%systemroot%\system32\srvsvc.dll,-100 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\sysmain.dll,-1000 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\System32\termsrv.dll,-268 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\System32\themeservice.dll,-8192 = C:\Windows\System32\svchost.exe -k netsvcs
@%SystemRoot%\system32\umpnpmgr.dll,-100 = C:\Windows\system32\svchost.exe -k DcomLaunch
@%SystemRoot%\system32\umpo.dll,-100 = C:\Windows\system32\svchost.exe -k DcomLaunch
@%Systemroot%\system32\wbem\wmisvc.dll,-205 = C:\Windows\system32\svchost.exe -k netsvcs
@%SystemRoot%\system32\wevtsvc.dll,-200 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%SystemRoot%\system32\wiaservc.dll,-9 = C:\Windows\system32\svchost.exe -k imgsvc
@%systemroot%\system32\wkssvc.dll,-100 = C:\Windows\System32\svchost.exe -k NetworkService
@%SystemRoot%\System32\wlansvc.dll,-257 = C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
@%SystemRoot%\System32\wscsvc.dll,-200 = C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
@%systemroot%\system32\wuaueng.dll,-105 = C:\Windows\system32\svchost.exe -k netsvcs
@%windir%\system32\RpcEpMap.dll,-1001 = C:\Windows\system32\svchost.exe -k RPCSS
@comres.dll,-2450 = C:\Windows\system32\svchost.exe -k LocalService
@gpapi.dll,-112 = %windir%\system32\svchost.exe -k GPSvcGroup
@oleres.dll,-5010 = C:\Windows\system32\svchost.exe -k rpcss
@oleres.dll,-5012 = C:\Windows\system32\svchost.exe -k DcomLaunch
Adobe Acrobat Update Service = "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
Apple Mobile Device = "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
avast! Antivirus = "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
Bonjour Service = "C:\Program Files\Bonjour\mDNSResponder.exe"
Energy Server Service = "C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49265" "--depend_on_service" "SampleCollector" "--depend_on_service_start_state_not" "disabled" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Sony\VAIO Care\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Sony Corporation\VAIO Care\inteldata' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Sony\VAIO Care\ESRV\sony_acpi_battery_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\sony_sema_thermal_input.dll' il='C:\Program Files\Sony\VAIO Care\ESRV\sony_wifi_input.dll' "
EPSON V3 Service4(04) = C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
EPSON V5 Service4(04) = C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
Google Update Service (gupdate) = "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc
HsfXAudioService = C:\Windows\system32\svchost.exe -k HsfXAudioService
Intel® Rapid Storage Technology = "C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe"
Intel® System Behavior Tracker Collector Service = "C:\Program Files\Sony\VAIO Care\VCPerfService.exe" "/service" "/sstates" "/sampleinterval=10000" "/procinterval=5" "/dllinterval=120" "/counter=\Processor(_Total)\% Processor Time:1" "/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1" "/counter=\Network Interface(*)\Bytes Total/sec:1" "/expandcounter=\Processor Information(*)\Processor Frequency:1" "" "/expandcounter=\Processor(*)\% Idle Time:1" "/expandcounter=\Processor(*)\% C1 Time:1" "/expandcounter=\Processor(*)\% C2 Time:1" "/expandcounter=\Processor(*)\%C3 Time:1" "/expandcounter=\Processor(*)\% Processor Time:1" "/directory=C:\ProgramData\Sony Corporation\VAIO Care\inteldata"
IviRegMgr = "C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe"
Microsoft .NET Framework NGEN v4.0.30319_X64 = C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
Microsoft .NET Framework NGEN v4.0.30319_X86 = C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
NETGEARGenieDaemon = C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe
Protexis Licensing V2 = "C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
Roxio Upnp Server 10 = "C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe"
VAIO Event Service = "C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe"
VAIO Power Management = "C:\Program Files\Sony\VAIO Power Management\SPMService.exe"

[SafeBoot services (Minimal boot)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}

* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}

* Driver *
sermouse.sys
vga.sys
vgasave.sys
volmgr.sys
volmgrx.sys
WudfPf
WudfRd

* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
PCI Configuration
PNP Filter
Primary disk
SCSI Class
System Bus Extender

* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}

* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}

* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}

* IEEE 1394 Bus host controllers *
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}

* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}

* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}

* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}

* SBP2 IEEE 1394 Devices *
{D48179BE-EC20-11D1-B6B8-00C04FA372A7}

* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}

* SecurityDevices *
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}

* Service *
AppInfo
AppMgmt
CryptSvc
DcomLaunch
EFS
EventLog
HelpSvc
KeyIso
Netlogon
NTDS
PlugPlay
Power
ProfSvc
RpcEptMapper
RpcSs
sacsvr
SWPRV
TabletInputService
TBS
TrustedInstaller
VDS
vmms
WinDefend
WinMgmt
WudfSvc

* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}

* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}

* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}

* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}

* Volume shadow copy *
{533C5B84-EC70-11D2-9505-00C04F79DEAF}


[SafeBoot services (Minimal boot + network support)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}

* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}

* Driver *
bowser
dfsc
ipnat.sys
MPSDrv
mrxsmb
mrxsmb10
mrxsmb20
ndiscap
nsiproxy.sys
rdbss
rdpencdd.sys
sermouse.sys
vga.sys
vgasave.sys
volmgr.sys
volmgrx.sys
WudfPf
WudfRd
WudfUsbccidDriver

* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
NDIS
NDIS Wrapper
NetBIOSGroup
NetDDEGroup
Network
NetworkProvider
PCI Configuration
PNP Filter
PNP_TDI
Primary disk
SCSI Class
Streams Drivers
System Bus Extender
TDI

* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}

* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}

* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}

* IEEE 1394 Bus host controllers *
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}

* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}

* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}

* Net *
{4D36E972-E325-11CE-BFC1-08002BE10318}

* NetClient *
{4D36E973-E325-11CE-BFC1-08002BE10318}

* NetService *
{4D36E974-E325-11CE-BFC1-08002BE10318}

* NetTrans *
{4D36E975-E325-11CE-BFC1-08002BE10318}

* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}

* SBP2 IEEE 1394 Devices *
{D48179BE-EC20-11D1-B6B8-00C04FA372A7}

* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}

* SecurityDevices *
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}

* Service *
AFD
AppInfo
AppMgmt
BFE
Browser
CryptSvc
DcomLaunch
Dhcp
DnsCache
Dot3Svc
Eaphost
EFS
EventLog
HelpSvc
IKEEXT
KeyIso
LanmanServer
LanmanWorkstation
LmHosts
Messenger
MPSSvc
NativeWifiP
Ndisuio
NetBIOS
NetBT
Netlogon
NetMan
netprofm
NlaSvc
Nsi
NTDS
PlugPlay
PolicyAgent
Power
ProfSvc
rdsessmgr
RpcEptMapper
RpcSs
sacsvr
SCardSvr
SharedAccess
SWPRV
TabletInputService
TBS
Tcpip
TrustedInstaller
VaultSvc
VDS
vmms
WinDefend
WinMgmt
Wlansvc
WudfSvc

* Smart card readers *
{50DD5230-BA8A-11D1-BF5D-0000F805F530}

* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}

* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}

* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}

* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}

* Volume shadow copy *
{533C5B84-EC70-11D2-9505-00C04F79DEAF}


[SafeBoot: Alternate shell]
cmd.exe (not enabled)

--------------------

Driver filters:

[Class filters]
* Imaging devices *
- Upper filters
ksthunk.sys
ArcSoftKsUFilter.sys

* Infrared devices *
- Upper filters
IRENUM.sys

* Medium Changer devices *
- Upper filters
GEARAspiWDM.sys

* Mice and other pointing devices *
- Upper filters
mouclass.sys

* Smart card readers *
- Upper filters
scfilter.sys

* Storage Volumes *
- Lower filters
fvevol.sys
rdyboost.sys

* Tape drives *
- Upper filters
GEARAspiWDM.sys



[Device filters]
* @machine.inf,%rdp_kbd.devicedesc%;Terminal Server Keyboard Driver *
- Upper filters
kbdclass.sys

* @machine.inf,%rdp_mou.devicedesc%;Terminal Server Mouse Driver *
- Upper filters
mouclass.sys

* @netrasa.inf,%mp-bh-dispname%;WAN Miniport (Network Monitor) *
- Lower filters
NdisTapi.sys

* @netrasa.inf,%mp-ip-dispname%;WAN Miniport (IP) *
- Lower filters
NdisTapi.sys

* @netrasa.inf,%mp-ipv6-dispname%;WAN Miniport (IPv6) *
- Lower filters
NdisTapi.sys

* @oem37.inf,%athr.devicedesc.30a1%;Qualcomm Atheros AR9285 Wireless Network Adapter *
- Upper filters
vwifibus.sys

* @oem9.inf,%*sny9001.devdesc%;Alps Pointing-device for VAIO *
- Upper filters
ApfiltrService.sys

* 9530 *
- Lower filters
WinUsb.sys

* 9530 *
- Lower filters
WinUsb.sys

* Canon PowerShot SX200 IS *
- Lower filters
WinUsb.sys

* D3200 *
- Lower filters
WinUsb.sys

* D7100 *
- Lower filters
WinUsb.sys

* DROID RAZR *
- Lower filters
WinUsb.sys

* S6300 *
- Lower filters
WinUsb.sys

* S640 *
- Lower filters
WinUsb.sys

* Sansa View *
- Lower filters
WinUsb.sys

* SM-P600 *
- Lower filters
WinUsb.sys

* XT1080 *
- Lower filters
WinUsb.sys



--------------------

Print monitors (9):

Epson Inbox Language Monitor01 - EP0SLM01.DLL
EPSON NX430 Series 64MonitorBA - E_ILMHBA.DLL
EPSON Stylus CX3800 Series 64MonitorBA - E_ILMACA.DLL
Local Port - localspl.dll
Microsoft Shared Fax Monitor - FXSMON.DLL
PDF995 Monitor - pdf995mon64.dll
Standard TCP/IP Port - tcpmon.dll
USB Monitor - usbmon.dll
WSD Port - WSDMon.dll

--------------------

WOW compatibility:

cmdline = C:\Windows\system32\ntvdm.exe

[KnownDlls (32-bit) (28)]
advapi32.dll
clbcatq.dll
COMDLG32.dll
difxapi.dll
gdi32.dll
IERTUTIL.dll
IMAGEHLP.dll
IMM32.dll
kernel32.dll
LPK.dll
MSCTF.dll
MSVCRT.dll
NORMALIZ.dll
NSI.dll
ole32.dll
OLEAUT32.dll
PSAPI.DLL
rpcrt4.dll
sechost.dll
Setupapi.dll
SHELL32.dll
SHLWAPI.dll
URLMON.dll
user32.dll
USP10.dll
WININET.dll
WLDAP32.dll
WS2_32.dll


--------------------------------------------------
End of report, 175,042 bytes

Commandline options:
/showempty - Show empty sections
/showcmts - Show comments in .bat files
/noshowclsids - Hide class IDs
/noshowprivate - Hide usernames and computer name
/noshowusers - Hide entries from other users
/noshowhardware - Hide entries from other hardware configurations
/showlargehosts - Show hosts file even when more than 1000 lines are in it
/showlargezones - Show Zones even when more than 1000 domains are in them
/autosave - Run hidden, automatically save a report and quit
/autosavepath: - Specify where to save log, when using /autosave.
Use surrounding quotes for paths with spaces.
  • 0






Similar Topics


Also tagged with one or more of these keywords: Slow, Locks up in IE, Videos wont run in any app, Auto updates dont load

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP