Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

For Checking. Slow startup


  • This topic is locked This topic is locked
41 replies to this topic

#1 TheSadness

TheSadness

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 07 February 2009 - 10:48 AM

Hello All. Here's my log. hope someone can help.
btw i can wait :thumbup2:
Many thanks for you guys.


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:47:54 PM, on 2/6/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
D:\Sygate Personal Firewall\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
C:\WINDOWS\System32\TuneUpDefragService.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
D:\Mozilla Firefox\firefox.exe
D:\FLV Player\FLVPlayer.exe
D:\Trend Micro\HijackThis\HijackThis.exe

O2 - BHO: GigagetIEHelper - {111CAA23-6F4F-42AC-8555-B48C1D87BBAB} - C:\WINDOWS\system32\gigagetbho_v10.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SmcService] D:\SYGATE~1\smc.exe -startgui
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O8 - Extra context menu item: &Download All by Gigaget - D:\Giganology\Gigaget\getallurl.htm
O8 - Extra context menu item: &Download by Gigaget - D:\Giganology\Gigaget\geturl.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{25FB9E62-0F08-4BDC-9A4A-0E37017C5969}: NameServer = 202.78.97.41 210.4.2.61
O17 - HKLM\System\CS1\Services\Tcpip\..\{25FB9E62-0F08-4BDC-9A4A-0E37017C5969}: NameServer = 202.78.97.41 210.4.2.61
O20 - Winlogon Notify: !SASWinLogon - D:\Super ANTI-SPYWARE\SASWINLO.DLL
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - D:\Sygate Personal Firewall\smc.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe

--
End of file - 4068 bytes

BC AdBot (Login to Remove)

 


#2 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 08 February 2009 - 11:58 AM

Can't edit so i will post another.

Hidden Folders can't be seen. i tried selecting it through folder options. but still won't.
need help immediately.
many thanks

#3 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 18 February 2009 - 07:24 AM

BUMP Please. 1 week without replies. gonna post on the topic about this.

#4 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Members
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the "Logic Free Zone", in Md, USA
  • Local time:09:10 PM

Posted 19 February 2009 - 10:01 AM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a description of your problem, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.

If you have already posted a DDS log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)

#5 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 21 February 2009 - 05:51 AM

erm is DDS program clean. because it has different types of icons. anyway here's the log.


DDS (Ver_09-02-01.01) - NTFSx86
Run by Computer at 18:52:13.64 on Fri 02/20/2009
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_07
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.895.539 [GMT 9:00]

FW: Sygate Personal Firewall *enabled*

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
D:\Sygate Personal Firewall\smc.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\TuneUpDefragService.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
D:\Downloads\dds.com

============== Pseudo HJT Report ===============

BHO: GigagetIEHelper Class: {111caa23-6f4f-42ac-8555-b48c1d87bbab} - c:\windows\system32\gigagetbho_v10.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
uRun: [cdloader] "c:\documents and settings\computer\application data\mjusbsp\cdloader2.exe" MAGICJACK
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [SmcService] d:\sygate~1\smc.exe -startgui
dRunOnce: [RunNarrator] Narrator.exe
IE: &Download All by Gigaget - d:\giganology\gigaget\getallurl.htm
IE: &Download by Gigaget - d:\giganology\gigaget\geturl.htm
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
LSP: %SYSTEMROOT%\system32\nvLsp.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
TCP: {25FB9E62-0F08-4BDC-9A4A-0E37017C5969} = 202.78.97.41 210.4.2.61
Notify: !SASWinLogon - d:\super anti-spyware\SASWINLO.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - d:\super anti-spyware\SASSEH.DLL
LSA: Authentication Packages = msv1_0 relog_ap

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\computer\applic~1\mozilla\firefox\profiles\8vtkeg2a.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com
FF - prefs.js: network.proxy.http - proxy.skyinet.net
FF - prefs.js: network.proxy.http_port - 3128
FF - prefs.js: network.proxy.type - 1
FF - component: d:\mozilla firefox\components\GigagetComponent.dll
FF - plugin: d:\adobe\reader 9.0\reader\browser\nppdf32.dll

============= SERVICES / DRIVERS ===============

R1 SASDIFSV;SASDIFSV;d:\super anti-spyware\SASDIFSV.SYS [2008-10-2 8944]
S1 SASKUTIL;SASKUTIL;\??\d:\main\super anti-spyware\saskutil.sys --> d:\main\super anti-spyware\SASKUTIL.sys [?]
S2 GF0012;GASIA Filter Driver;c:\windows\system32\drivers\GF0012.sys [2008-12-20 10240]
S2 ymkquo;Installer Task;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
S3 SASENUM;SASENUM;\??\d:\main\super anti-spyware\sasenum.sys --> d:\main\super anti-spyware\SASENUM.SYS [?]
S4 vsdatant;vsdatant; [x]

=============== Created Last 30 ================

2009-02-20 18:51 <DIR> --d-h--- c:\windows\PIF
2009-02-14 21:12 <DIR> --d----- c:\program files\NCH Swift Sound
2009-02-11 16:56 <DIR> --d----- c:\documents and settings\computer\Phone Browser
2009-02-07 13:08 <DIR> --d----- c:\program files\NCH Software
2009-02-07 12:54 <DIR> --d----- c:\docume~1\computer\applic~1\Any Video Converter
2009-02-07 01:45 <DIR> --d----- c:\program files\common files\DirectX

==================== Find3M ====================

2008-12-16 20:01 682,280 a------- c:\windows\system32\pbsvc.exe
2008-12-16 20:01 22,328 a------- c:\docume~1\computer\applic~1\PnkBstrK.sys
2008-12-16 20:00 66,872 a------- c:\windows\system32\PnkBstrA.exe
2008-04-14 09:11 162,941 a--shr-- c:\windows\system32\aiiev.dll

============= FINISH: 18:52:23.06 ===============

Edited by TheSadness, 21 February 2009 - 05:56 AM.


#6 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 21 February 2009 - 05:56 AM

and here's the attachment.

Attached Files



#7 Hoov

Hoov

  • Malware Response Team
  • 3,519 posts
  • OFFLINE
  •  
  • Location:Mikado Michigan
  • Local time:09:10 PM

Posted 21 February 2009 - 11:44 AM

Howdy, my name is Hoov, and I will be helping you with your dilemma.

Please make sure you watch this thread for responses. If you click the options tab at the top of your first post, you can select to track this thread.

Here is what I am asking you to do during the repair of your computer

*Tell me everything that you have done, if anything, to try and fix this problem.

*Please only use 1 forum to help clear up your problem. Posting on more than 1 and following instructions from more than 1 forum will cause those helping you to pull out thier hair.

*Follow my instructions - If you can't for some reason, or if you don't understand something, please tell me. If you deviate from my instructions, tell me, it may make a difference on where we go. Don't install anything, even other programs that have nothing to do with security or malware, it could cause things to change, and I would never know it.

*Have faith. I will do all I can to get your computer working, and if I can't - someone else here will know something else to try.

*Stick with me to the end. My aim is to fix your problems, and give you the tools and knowledge to keep this from happening again.

Now onto trying to fix your computer.

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

The reason for the three different file types for DDS is to bypass malware. If it won't run as one kind of file, it usually will as the other.

On to your problem. In looking over your log, I really don't find anything of note, with one possible exception. Are you getting your internet connection thru skyinternet in the Philippines, or are you using a proxy server from them? The reason I ask is because your computer is setup using a proxy server thru them.

Next, have you gone thru this thread, Slow Computer/browser? Check Here First; It May Not Be Malware ?


If you have gone thru that then (especially run Ccleaner or similar tool) then please download Malwarebytes Anti-Malware and save it to your desktop. (I know you have Superantispyware but if you run it regularly then it may be missing something).
alternate download link 1
alternate download link 2
  • Make sure you are connected to the Internet.
  • Double-click on mbam-setup.exe to install the application.
  • When the installation begins, follow the prompts and do not make any changes to default settings.
  • When installation has finished, make sure you leave both of these checked:
    • Update Malwarebytes' Anti-Malware
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
MBAM will automatically start and you will be asked to update the program before performing a scan.
  • If an update is found, the program will automatically update itself.
  • Press the OK button to close that box and continue.
  • If you encounter any problems while downloading the updates, manually download them from here and just double-click on mbam-rules.exe to install. Alternatively, you can update through MBAM's interface from a clean computer, copy the definitions (rules.ref) located in C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware from that system to a usb stick or CD and then copy it to the infected machine.
On the Scanner tab:
  • Make sure the "Perform Quick Scan" option is selected.
  • Then click on the Scan button.
  • If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
  • The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.
  • When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box and continue with the removal process.
Back at the main Scanner screen:
  • Click on the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked, and click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply and exit MBAM.
Note: If MBAM encounters a file that is difficult to remove, you may be asked to reboot your computer so it can proceed with the disinfection process. Regardless if prompted to restart the computer or not, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware. MBAM may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you after scanning with MBAM. Please temporarily disable such programs or permit them to allow the changes.
Visiting From SpywareHammer.com and DonHoover.net

Tilting at windmills hurts you more than the windmills.
-From the Notebooks of Lazarus Long
Senior of the Howard Families

Posted Image

#8 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 23 February 2009 - 01:14 AM

yes. my current browser is on proxy to make it faster surfing the net, as told by my ISP.
erm i can't update the malwarebytes' it says "please make sure you are connected through the internet and make sure the firewall...."
i'm connected through the internet and my firewall is allowing it. what's the problem?

#9 Hoov

Hoov

  • Malware Response Team
  • 3,519 posts
  • OFFLINE
  •  
  • Location:Mikado Michigan
  • Local time:09:10 PM

Posted 23 February 2009 - 10:30 AM

Its possible that Malwarebytes' Anti-Malware doesn't like your proxy settings. Try downloading this That is the rules update for Malwarebytes' Anti-Malware. Once it downloads, just run it like any program. It will do the update. Then just go ahead and run the scan.
Visiting From SpywareHammer.com and DonHoover.net

Tilting at windmills hurts you more than the windmills.
-From the Notebooks of Lazarus Long
Senior of the Howard Families

Posted Image

#10 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 24 February 2009 - 04:07 AM

still the same. :|

Edited by TheSadness, 24 February 2009 - 06:30 AM.


#11 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 24 February 2009 - 06:32 AM

anyway. i looked up for older files and i found the lower version of it. tried it and updated it's malware definitions and database. made a FULL SYSTEM SCAN. so. here's the log. think something's up

Malwarebytes' Anti-Malware 1.33
Database version: 1654
Windows 5.1.2600 Service Pack 3

2/24/2009 7:27:07 PM
mbam-log-2009-02-24 (19-26-50).txt

Scan type: Full Scan (C:\|D:\|F:\|G:\|)
Objects scanned: 104474
Time elapsed: 28 minute(s), 54 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> No action taken.

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


#12 Hoov

Hoov

  • Malware Response Team
  • 3,519 posts
  • OFFLINE
  •  
  • Location:Mikado Michigan
  • Local time:09:10 PM

Posted 24 February 2009 - 12:45 PM

Well that really didn't update, so we will try something else.

Download and scan with Spybot S&D 1.6.0
http://www.safer-networking.org/en/download/index.html

1. Install Spybot. Be sure to UNCHECK TeaTimer when presented with the option to install.
2. Run Spybot, go to the Menu Bar at the top choose Mode and make certain that "Default mode" has a check mark beside it.
3. Click the button "Search for Updates".
4. If any updates are found, install them by placing a checkmark next to each one and clicking "Download Updates".If you encounter any error messages while downloading the updates, manually download them from here.
5. Click on "Immunize". When it detects what has or has not been blocked, block all remaining items by clicking the green plus sign next to immunize at the top.
6. Click the button "Check for Problems".
7. When Spybot is complete, it will be showing RED entries, bold BLACK entries and GREEN entries in the window.
8. Make certain there is a check mark beside all of the RED entries ONLY.
9. Choose "Fix Selected Problems" and allow Spybot to fix the RED entries.
10. Right click on the results area and select save results to a file. Post the contents of this file with your next response.
11. REBOOT to complete the scan and clear memory.

Note: After Windows loads, Spybot may run again to clean some files that it could not clean during the prior session. Follow the same procedure.

Edited by Hoov, 24 February 2009 - 12:46 PM.

Visiting From SpywareHammer.com and DonHoover.net

Tilting at windmills hurts you more than the windmills.
-From the Notebooks of Lazarus Long
Senior of the Howard Families

Posted Image

#13 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 26 February 2009 - 06:30 AM

ok, now downloading Spybot S&D 1.6.2
it's the one in the site that you gave me.

#14 TheSadness

TheSadness
  • Topic Starter

  • Members
  • 97 posts
  • OFFLINE
  •  
  • Local time:08:10 PM

Posted 26 February 2009 - 06:59 AM

here it is.
--- Search result list ---
Microsoft.WindowsSecurityCenter.AntiVirusOverride: [SBI $3604910C] Settings (Registry change, fixed)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusOverride

Microsoft.WindowsSecurityCenter.FirewallOverride: [SBI $0C94D702] Settings (Registry change, fixed)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallOverride

Microsoft.WindowsSecurityCenter_disabled: [SBI $2E20C9A9] Settings (Registry change, fixed)
  HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start

DoubleClick: Tracking cookie (Internet Explorer: Computer) (Cookie, fixed)
  

Right Media: Tracking cookie (Internet Explorer: Computer) (Cookie, fixed)
  


--- Spybot - Search & Destroy version: 1.6.2  (build: 20090126) ---

2009-01-26 blindman.exe (1.0.0.8)
2009-01-26 SDFiles.exe (1.6.1.7)
2009-01-26 SDMain.exe (1.0.0.6)
2009-01-26 SDShred.exe (1.0.2.5)
2009-01-26 SDUpdate.exe (1.6.0.12)
2009-01-26 SpybotSD.exe (1.6.2.46)
2009-01-26 TeaTimer.exe (1.6.4.26)
2009-02-26 unins000.exe (51.49.0.0)
2009-01-26 Update.exe (1.6.0.7)
2009-01-26 advcheck.dll (1.6.2.15)
2007-04-02 aports.dll (2.1.0.0)
2008-06-14 DelZip179.dll (1.79.11.1)
2009-01-26 SDHelper.dll (1.6.2.14)
2008-06-19 sqlite3.dll
2009-01-26 Tools.dll (2.1.6.10)
2009-01-16 UninsSrv.dll (1.0.0.0)
2009-01-22 Includes\Adware.sbi (*)
2009-01-22 Includes\AdwareC.sbi (*)
2009-01-22 Includes\Cookies.sbi (*)
2009-01-06 Includes\Dialer.sbi (*)
2009-01-23 Includes\DialerC.sbi (*)
2009-01-22 Includes\HeavyDuty.sbi (*)
2009-02-11 Includes\Hijackers.sbi (*)
2009-02-11 Includes\HijackersC.sbi (*)
2008-12-09 Includes\Keyloggers.sbi (*)
2009-02-17 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2009-02-25 Includes\Malware.sbi (*)
2009-02-25 Includes\MalwareC.sbi (*)
2008-12-16 Includes\PUPS.sbi (*)
2009-02-24 Includes\PUPSC.sbi (*)
2009-01-22 Includes\Revision.sbi (*)
2009-01-13 Includes\Security.sbi (*)
2009-02-10 Includes\SecurityC.sbi (*)
2008-06-03 Includes\Spybots.sbi (*)
2008-06-03 Includes\SpybotsC.sbi (*)
2009-01-28 Includes\Spyware.sbi (*)
2009-01-28 Includes\SpywareC.sbi (*)
2008-06-03 Includes\Tracks.uti
2009-02-25 Includes\Trojans.sbi (*)
2009-02-25 Includes\TrojansC.sbi (*)
2008-03-04 Plugins\Chai.dll
2008-03-05 Plugins\Fennel.dll
2008-02-26 Plugins\Mate.dll
2007-12-24 Plugins\TCPIPAddress.dll



--- System information ---
Windows XP (Build: 2600) Service Pack 3 (5.1.2600)
 / MSXML 2 / SP6: Hotfix for MSXML 2 (KB887606)
 / MSXML 4 / SP2: Security Update for MSXML 4 (KB927978)
 / MSXML 6 / SP0: Security Update for MSXML 6 (KB927977)
 / MSXML4SP2: Security update for MSXML4 SP2 (KB936181)
 / MSXML4SP2: Security update for MSXML4 SP2 (KB954430)
 / Windows Media Connect / SP0: Windows Media Connect 2
 / Windows Media Player: Security Update for Windows Media Player (KB952069)
 / Windows Media Player / SP0: Update for Windows Media Player 10 (KB902344)
 / Windows Media Player / SP0: Security Update for Windows Media Player (KB911564)
 / Windows Media Player / SP0: Update for Windows Media Player 10 (KB923198)
 / Windows Media Player / SP0: Update for Windows Media Player 10 (KB925470)
 / Windows Media Player / SP0: Update for Windows Media Player 10 (KB926251)
 / Windows Media Player 10: Security Update for Windows Media Player 10 (KB936782)
 / Windows Media Player 10 / SP0: Update for Windows Media Player 10 (KB895181)
 / Windows Media Player 10 / SP0: Update for Windows Media Player 10 (KB895316)
 / Windows Media Player 10 / SP0: Update for Windows Media Player 10 (KB912455)
 / Windows Media Player 10 / SP0: Update for Windows Media Player 10 (KB913800)
 / Windows Media Player 10 / SP0: Security Update for Windows Media Player (KB923689)
 / Windows Media Player 6.4 / SP0: Security Update for Windows Media Player 6.4 (KB925398)
 / Windows XP: Security Update for Windows XP (KB941569)
 / Windows XP / SP10: Microsoft Compression Client Pack 1.0 for Windows XP
 / Windows XP / SP3: Windows XP Service Pack 3
 / Windows XP / SP4: Security Update for Windows XP (KB938464)
 / Windows XP / SP4: Security Update for Windows XP (KB946648)
 / Windows XP / SP4: Security Update for Windows XP (KB950762)
 / Windows XP / SP4: Security Update for Windows XP (KB950974)
 / Windows XP / SP4: Security Update for Windows XP (KB951066)
 / Windows XP / SP4: Update for Windows XP (KB951072-v2)
 / Windows XP / SP4: Security Update for Windows XP (KB951376-v2)
 / Windows XP / SP4: Security Update for Windows XP (KB951698)
 / Windows XP / SP4: Security Update for Windows XP (KB951748)
 / Windows XP / SP4: Update for Windows XP (KB951978)
 / Windows XP / SP4: Hotfix for Windows XP (KB952287)
 / Windows XP / SP4: Security Update for Windows XP (KB952954)
 / Windows XP / SP4: Security Update for Windows XP (KB953838)
 / Windows XP / SP4: Security Update for Windows XP (KB953839)
 / Windows XP / SP4: Security Update for Windows XP (KB954211)
 / Windows XP / SP4: Security Update for Windows XP (KB954459)
 / Windows XP / SP4: Security Update for Windows XP (KB954600)
 / Windows XP / SP4: Security Update for Windows XP (KB955069)
 / Windows XP / SP4: Update for Windows XP (KB955839)
 / Windows XP / SP4: Security Update for Windows XP (KB956390)
 / Windows XP / SP4: Security Update for Windows XP (KB956391)
 / Windows XP / SP4: Security Update for Windows XP (KB956802)
 / Windows XP / SP4: Security Update for Windows XP (KB956803)
 / Windows XP / SP4: Security Update for Windows XP (KB956841)
 / Windows XP / SP4: Security Update for Windows XP (KB957095)
 / Windows XP / SP4: Security Update for Windows XP (KB957097)
 / Windows XP / SP4: Security Update for Windows XP (KB958215)
 / Windows XP / SP4: Security Update for Windows XP (KB958644)
 / Windows XP / SP4: Security Update for Windows XP (KB958687)


--- Startup entries list ---
Located: HK_LM:Run, Malwarebytes' Anti-Malware
command: "D:\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
   file: D:\Malwarebytes' Anti-Malware\mbamgui.exe
   size: 399504
	MD5: 3B6EC3E70AAF5FB05002EB828E0DACF3

Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
   file: C:\WINDOWS\system32\NvCpl.dll
   size: 13529088
	MD5: F9BD443EED551788190D53B7B75AF53F

Located: HK_LM:Run, SmcService
command: D:\SYGATE~1\smc.exe -startgui
   file: D:\SYGATE~1\smc.exe
   size: 2577632
	MD5: 8ECA9578BFC7DA42D6D24C862224C5DB

Located: HK_CU:RunOnce, RunNarrator
  where: .DEFAULT...
command: Narrator.exe
   file: C:\WINDOWS\system32\Narrator.exe
   size: 53760
	MD5: 21F839F2281473642AC2060F30E19DC7

Located: HK_CU:Run, cdloader
  where: S-1-5-21-1292428093-1409082233-839522115-1003...
command: "C:\Documents and Settings\Computer\Application Data\mjusbsp\cdloader2.exe" MAGICJACK
   file: C:\Documents and Settings\Computer\Application Data\mjusbsp\cdloader2.exe
   size: 50520
	MD5: 7B1CAB26FF0EE8A66BC32B44CAF4EE34

Located: HK_CU:Run, cdloader (DISABLED)
  where: S-1-5-21-1292428093-1409082233-839522115-1003...
command: "C:\Documents and Settings\Computer\Application Data\mjusbsp\cdloader2.exe" MAGICJACK
   file: C:\Documents and Settings\Computer\Application Data\mjusbsp\cdloader2.exe
   size: 50520
	MD5: 7B1CAB26FF0EE8A66BC32B44CAF4EE34

Located: HK_CU:RunOnce, RunNarrator
  where: S-1-5-18...
command: Narrator.exe
   file: C:\WINDOWS\system32\Narrator.exe
   size: 53760
	MD5: 21F839F2281473642AC2060F30E19DC7

Located: Startup (disabled), Bayantel DSL (DISABLED)
command:  
   file:  
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, !SASWinLogon
command: D:\Super ANTI-SPYWARE\SASWINLO.DLL
   file: D:\Super ANTI-SPYWARE\SASWINLO.DLL
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, crypt32chain
command: crypt32.dll
   file: crypt32.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, cryptnet
command: cryptnet.dll
   file: cryptnet.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, cscdll
command: cscdll.dll
   file: cscdll.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, dimsntfy
command: %SystemRoot%\System32\dimsntfy.dll
   file: %SystemRoot%\System32\dimsntfy.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, ScCertProp
command: wlnotify.dll
   file: wlnotify.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, Schedule
command: wlnotify.dll
   file: wlnotify.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, sclgntfy
command: sclgntfy.dll
   file: sclgntfy.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, SensLogn
command: WlNotify.dll
   file: WlNotify.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, termsrv
command: wlnotify.dll
   file: wlnotify.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!

Located: WinLogon, wlballoon
command: wlnotify.dll
   file: wlnotify.dll
   size: 0
	MD5: D41D8CD98F00B204E9800998ECF8427E
		 Warning: if the file is actually larger than 0 bytes,
		 the checksum could not be properly calculated!



--- Browser helper object list ---
{111CAA23-6F4F-42AC-8555-B48C1D87BBAB} (GigagetIEHelper)
		  location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
		  BHO name: GigagetIEHelper
		CLSID name: GigagetIEHelper Class
			  Path: C:\WINDOWS\system32\
		 Long name: gigagetbho_v10.dll
		Short name:	   GIGAGE~1.DLL
	Date (created): 1/22/2008 5:25:46 PM
Date (last access): 2/26/2009 8:31:14 PM
 Date (last write): 1/10/2006 5:01:08 AM
		  Filesize:			  86016
		Attributes:		   archive 
			   MD5: 46FCF147AB841A760DDE5E119E1CD193
			 CRC32:		   62B73053
		   Version:		   4.6.0.48

{18DF081C-E8AD-4283-A596-FA578C2EBDC3} (AcroIEHelperStub)
		  location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
		  BHO name: AcroIEHelperStub
		CLSID name: Adobe PDF Link Helper
			  Path: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\
		 Long name: AcroIEHelperShim.dll
		Short name:	   ACROIE~2.DLL
	Date (created): 6/11/2008 11:33:16 PM
Date (last access): 2/26/2009 8:43:16 PM
 Date (last write): 6/11/2008 11:33:16 PM
		  Filesize:			  75128
		Attributes:		   archive 
			   MD5: E96C752BBA0E22330A43258FC800200E
			 CRC32:		   E5D72083
		   Version:		  9.0.0.332

{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
		  location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
		  BHO name: 
		CLSID name: SSVHelper Class
			  Path: C:\Program Files\Java\jre1.6.0_07\bin\
		 Long name:			ssv.dll
		Short name:				   
	Date (created): 10/2/2008 1:26:38 AM
Date (last access): 2/26/2009 8:51:00 PM
 Date (last write): 6/10/2008 5:27:02 PM
		  Filesize:			 509328
		Attributes:		   archive 
			   MD5: F921D875A1CBD69A6A462BA2514BC831
			 CRC32:		   38AC9EE2
		   Version:		   6.0.70.6



--- ActiveX list ---
{8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0)
		  DPF name: Java Runtime Environment 1.6.0
		CLSID name: Java Plug-in 1.6.0_07
		 Installer: 
		  Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
	   description: Sun Java
	classification: Legitimate
	known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
		 info link: 
	   info source: Patrick M. Kolla
			  Path: C:\Program Files\Java\jre1.6.0_07\bin\
		 Long name:	npjpi160_07.dll
		Short name:	   NPJPI1~1.DLL
	Date (created): 6/10/2008 3:32:34 PM
Date (last access): 2/24/2009 7:02:22 PM
 Date (last write): 6/10/2008 5:27:02 PM
		  Filesize:			 132496
		Attributes:		   archive 
			   MD5: 7C83A2809E13950359189767AC9D5DB8
			 CRC32:		   925C2A88
		   Version:		   6.0.70.6

{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} (Java Runtime Environment 1.6.0)
		  DPF name: Java Runtime Environment 1.6.0
		CLSID name: Java Plug-in 1.6.0_03
		 Installer: 
		  Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
			  Path: C:\Program Files\Java\jre1.6.0_03\bin\
		 Long name:	npjpi160_03.dll
		Short name:	   NPJPI1~1.DLL
	Date (created): 9/25/2007 1:31:44 PM
Date (last access): 2/24/2009 7:02:16 PM
 Date (last write): 9/25/2007 3:11:34 PM
		  Filesize:			 132496
		Attributes:		   archive 
			   MD5: D6A4682A6FF41832A3F1A7AB9AE08199
			 CRC32:		   9080B537
		   Version:		   6.0.30.5

{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} (Java Runtime Environment 1.6.0)
		  DPF name: Java Runtime Environment 1.6.0
		CLSID name: Java Plug-in 1.6.0_07
		 Installer: 
		  Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
			  Path: C:\Program Files\Java\jre1.6.0_07\bin\
		 Long name:	npjpi160_07.dll
		Short name:	   NPJPI1~1.DLL
	Date (created): 6/10/2008 3:32:34 PM
Date (last access): 2/26/2009 8:55:24 PM
 Date (last write): 6/10/2008 5:27:02 PM
		  Filesize:			 132496
		Attributes:		   archive 
			   MD5: 7C83A2809E13950359189767AC9D5DB8
			 CRC32:		   925C2A88
		   Version:		   6.0.70.6

{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Runtime Environment 1.6.0)
		  DPF name: Java Runtime Environment 1.6.0
		CLSID name: Java Plug-in 1.6.0_07
		 Installer: 
		  Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
			  Path: C:\Program Files\Java\jre1.6.0_07\bin\
		 Long name:	npjpi160_07.dll
		Short name:	   NPJPI1~1.DLL
	Date (created): 6/10/2008 3:32:34 PM
Date (last access): 2/26/2009 8:55:24 PM
 Date (last write): 6/10/2008 5:27:02 PM
		  Filesize:			 132496
		Attributes:		   archive 
			   MD5: 7C83A2809E13950359189767AC9D5DB8
			 CRC32:		   925C2A88
		   Version:		   6.0.70.6



--- Process list ---
PID:	0 (   0) [System]
PID:  776 (   4) \SystemRoot\System32\smss.exe
 size: 50688
PID:  860 ( 776) \??\C:\WINDOWS\system32\csrss.exe
 size: 6144
PID:  884 ( 776) \??\C:\WINDOWS\system32\winlogon.exe
 size: 507904
PID:  928 ( 884) C:\WINDOWS\system32\services.exe
 size: 108544
  MD5: 0E776ED5F7CC9F94299E70461B7B8185
PID:  940 ( 884) C:\WINDOWS\system32\lsass.exe
 size: 13312
  MD5: BF2466B3E18E970D8A976FB95FC1CA85
PID: 1112 ( 928) C:\WINDOWS\system32\svchost.exe
 size: 14336
  MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
PID: 1160 ( 928) C:\WINDOWS\system32\svchost.exe
 size: 14336
  MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
PID: 1256 ( 928) C:\WINDOWS\System32\svchost.exe
 size: 14336
  MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
PID: 1396 ( 928) D:\Sygate Personal Firewall\smc.exe
 size: 2577632
  MD5: 8ECA9578BFC7DA42D6D24C862224C5DB
PID: 1504 ( 928) C:\WINDOWS\system32\svchost.exe
 size: 14336
  MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
PID: 1576 ( 928) C:\WINDOWS\system32\svchost.exe
 size: 14336
  MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
PID: 1708 ( 928) C:\WINDOWS\system32\spoolsv.exe
 size: 57856
  MD5: D8E14A61ACC1D4A6CD0D38AEBAC7FA3B
PID: 1888 ( 928) C:\Program Files\Bonjour\mDNSResponder.exe
 size: 229376
  MD5: 73686FE0B2E0469F89FD2075BE724704
PID:  232 ( 928) D:\Malwarebytes' Anti-Malware\mbamservice.exe
 size: 170640
  MD5: 1FEABF2D4A365B239094E9F53CFFF165
PID:  260 ( 928) C:\WINDOWS\system32\nvsvc32.exe
 size: 159812
  MD5: 4A290F88C42DD1037A46CD1867308D82
PID:  380 ( 928) C:\WINDOWS\system32\svchost.exe
 size: 14336
  MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
PID:  576 ( 928) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
 size: 450560
  MD5: 606ACB555E9E3599537B2F33E73082B1
PID:  608 ( 928) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
 size: 184320
  MD5: FB988984573BE3CB17EA73F346645144
PID: 1324 (1112) C:\WINDOWS\system32\wbem\wmiprvse.exe
 size: 218112
  MD5: 0FFAE66E6D5B1C87CBD22D1F3B6079FD
PID: 1292 ( 928) C:\WINDOWS\System32\alg.exe
 size: 44544
  MD5: 8C515081584A38AA007909CD02020B3D
PID: 2964 (2936) C:\WINDOWS\Explorer.EXE
 size: 1033728
  MD5: 12896823FB95BFB3DC9B46BCAEDC9923
PID: 1104 (2964) C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
 size: 4347120
  MD5: 165A310CA2D2B167354A61514409ADC9
PID: 2956 (1112) C:\WINDOWS\system32\wbem\wmiprvse.exe
 size: 218112
  MD5: 0FFAE66E6D5B1C87CBD22D1F3B6079FD
PID: 1528 (2964) D:\Mozilla Firefox\firefox.exe
 size: 307704
  MD5: A4458CA176309C9358E8DF3FE88B33D5
PID: 3676 (2964) C:\Program Files\Windows Media Player\wmplayer.exe
 size: 64000
  MD5: D478331FEE85E840F7D89EDD06190DFC
PID: 3712 (2288) D:\Spybot - Search & Destroy\SpybotSD.exe
 size: 5365592
  MD5: 0477C2F9171599CA5BC3307FDFBA8D89
PID:	4 (   0) System


--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 2/26/2009 8:55:24 PM

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
  C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
  http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
  http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
  %SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
  http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
  http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
  http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
  http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
  http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
  http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


--- Winsock Layered Service Provider list ---
Protocol  0: NVIDIA App Filter over [MSAFD Tcpip [TCP/IP]]
		GUID: {AF2CB4E0-7EAA-4F39-B14E-62FA13FE1E97}
	Filename: %SYSTEMROOT%\system32\nvLsp.dll

Protocol  1: NVIDIA App Filter over [MSAFD Tcpip [UDP/IP]]
		GUID: {AF2CB4E0-7EAA-4F39-B14E-62FA13FE1E97}
	Filename: %SYSTEMROOT%\system32\nvLsp.dll

Protocol  2: NVIDIA App Filter over [MSAFD Tcpip [RAW/IP]]
		GUID: {AF2CB4E0-7EAA-4F39-B14E-62FA13FE1E97}
	Filename: %SYSTEMROOT%\system32\nvLsp.dll

Protocol  8: NVIDIA App Filter
		GUID: {561A1E9F-D78B-40E3-866D-4CE5CF6BB83F}
	Filename: %SYSTEMROOT%\system32\nvLsp.dll



--- Uninstall list ---
 10.0.12.36 (Adobe Flash Player Plugin)
   uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
	   publisher: Adobe Systems Incorporated

Adobe Shockwave Player 11 11 (Adobe Shockwave Player)
 version (major): 11
install location: C:\WINDOWS\system32\Adobe\
   uninstall cmd: C:\WINDOWS\system32\adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
	   publisher: Adobe Systems, Inc.
	   help link: http://www.adobe.com/support/shockwave

Adobe Photoshop CS3 10.0 (Adobe_2ac78060bc5856b0c1cf873bb919b58)
  estimated size: 1153950
   uninstall cmd: C:\Program Files\Common Files\Adobe\Installers\2ac78060bc5856b0c1cf873bb919b58\Setup.exe
	   publisher: Adobe Systems Incorporated
	   help link: http://www.adobe.com/support
  help telephone: http://www.adobe.com/support

Adobe Premiere Pro CS3 3 (Adobe_32fdd767b4383606e8168e834af5d90)
  estimated size: 2257466
   uninstall cmd: C:\Program Files\Common Files\Adobe\Installers\32fdd767b4383606e8168e834af5d90\Setup.exe
	   publisher: Adobe Systems Incorporated

  (Branding)

  (Connection Manager)

EPSON Printer Software  (EPSON Printer and Utilities)
   uninstall cmd: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R

EPSON Scan  (EPSON Scanner)
   uninstall cmd: C:\Program Files\epson\escndv\setup\setup.exe /r

Feeding Frenzy 2  (Feeding Frenzy 2)
   uninstall cmd: D:\FEEDIN~1\UNWISE.EXE /U D:\FEEDIN~1\INSTALL.LOG
	   publisher: GameHouse, Inc.
		comments: Copyright © 2006 GameHouse, Inc.
		 contact: support@gamehouse.com
	   help link: http://www.gamehouse.com/

FileASSASSIN 1.06 (FileASSASSIN)
   uninstall cmd: D:\FileASSASSIN\uninst.exe
	   publisher: Malwarebytes

FLV Player 2.0 (build 25) 2.0 (build 25) (FLV Player)
   uninstall cmd: D:\FLV Player\uninst.exe
	   publisher: Martijn de Visser

Gigaget  (gigaget_is1)
install location: D:\Giganology\Gigaget\
   uninstall cmd: "D:\Giganology\Gigaget\unins000.exe"
	   publisher: Giganology,Inc.
		comments: Gigaget: More Than Fast!
	   help link: http://www.gigaget.com

HijackThis 2.0.2 2.0.2 (HijackThis)
   uninstall cmd: "D:\Trend Micro\HijackThis\HijackThis.exe" /uninstall
	   publisher: TrendMicro

  (InstallShield Uninstall Information)

NVIDIA ForceWare Network Access Manager 1.00.6793 (InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD})
		 version: 16784009
 version (major): 1
  estimated size: 40938
	install date: 20080122
install location: C:\Program Files\NVIDIA Corporation\NetworkAccessManager\
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\{DF30C87C-1604-41B2-A3EA-CB7003CD2D76}\
   uninstall cmd: "C:\Program Files\InstallShield Installation Information\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}\setup.exe" -runfromtemp -l0x0409 -removeonly
	   publisher: NVIDIA Corporation

  (KB884267)

  (KB885353)

  (KB886612)

  (KB887078)

  (KB887626)

  (KB888656)

  (KB889858)

  (KB891122)

  (KB892313)

  (KB893240)

  (KB893241)

  (KB895181)

  (KB895316)

  (KB895572)

  (KB897586)

  (KB898549)

  (KB900399)

  (KB902344)

  (KB907658)

  (KB911565)

  (KB911854)

Update for Windows XP (KB951978) 1 (KB951978)
	install date: 20081006
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=951978

Security Update for Windows Media Player (KB952069)  (KB952069_WM9)
	install date: 20081210
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com/?kbid=952069

Security Update for Windows XP (KB954211) 1 (KB954211)
	install date: 20081015
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=954211

Security Update for Windows XP (KB954459) 1 (KB954459)
	install date: 20081112
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=954459

Security Update for Windows XP (KB954600) 1 (KB954600)
	install date: 20081210
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=954600

Security Update for Windows XP (KB955069) 1 (KB955069)
	install date: 20081112
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=955069

Update for Windows XP (KB955839) 1 (KB955839)
	install date: 20081210
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=955839

Security Update for Windows XP (KB956390) 1 (KB956390)
	install date: 20081015
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB956390$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=956390

Security Update for Windows XP (KB956391) 1 (KB956391)
	install date: 20081015
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=956391

Security Update for Windows XP (KB956802) 1 (KB956802)
	install date: 20081210
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=956802

Security Update for Windows XP (KB956803) 1 (KB956803)
	install date: 20081015
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=956803

Security Update for Windows XP (KB956841) 1 (KB956841)
	install date: 20081015
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=956841

Security Update for Windows XP (KB957095) 1 (KB957095)
	install date: 20081015
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=957095

Security Update for Windows XP (KB957097) 1 (KB957097)
	install date: 20081112
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=957097

Security Update for Windows XP (KB958215) 1 (KB958215)
	install date: 20081210
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB958215$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=958215

Security Update for Windows XP (KB958644) 1 (KB958644)
	install date: 20081024
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=958644

Security Update for Windows XP (KB958687) 1 (KB958687)
	install date: 20090114
   uninstall cmd: "C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=958687

LimeWire PRO 5.0.11 5.0.11 (LimeWire)
   uninstall cmd: "D:\LimeWire\uninstall.exe"
	   publisher: Lime Wire, LLC
	   help link: http://www.limewire.com/support

Malwarebytes' Anti-Malware  (Malwarebytes' Anti-Malware_is1)
	install date: 20090224
install location: D:\Malwarebytes' Anti-Malware\
   uninstall cmd: "D:\Malwarebytes' Anti-Malware\unins000.exe"
	   publisher: Malwarebytes Corporation
	   help link: http://www.malwarebytes.org

Mozilla Firefox (3.0.6) 3.0.6 (en-US) (Mozilla Firefox (3.0.6))
install location: D:\Mozilla Firefox
   uninstall cmd: D:\Mozilla Firefox\uninstall\helper.exe
	   publisher: Mozilla
		comments: Mozilla Firefox

Microsoft Compression Client Pack 1.0 for Windows XP 1 (MSCompPackV1)
	install date: 20090206
   uninstall cmd: "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://go.microsoft.com/fwlink/?LinkId=74087

NVIDIA Drivers  (NVIDIA Drivers)
   uninstall cmd: C:\WINDOWS\system32\nvuninst.exe UninstallGUI

  (PCHealth)
   uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

Windows Media Format 11 runtime  (Windows Media Format Runtime)
   uninstall cmd: "C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
	   help link: http://go.microsoft.com/fwlink/?LinkId=62768

Windows Media Player 11  (Windows Media Player)
   uninstall cmd: "C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall

Windows XP Service Pack 3 20080414.031525 (Windows XP Service Pack)
	install date: 20081004
   uninstall cmd: "C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com?kbid=936929

WinRAR archiver  (WinRAR archiver)
   uninstall cmd: D:\WinRAR\uninstall.exe

  (WMCSetup)

Windows Media Format 11 runtime  (WMFDist11)
	install date: 20090206
   uninstall cmd: "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http:

Windows Media Player 11  (wmp11)
	install date: 20090206
   uninstall cmd: "C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
	   help link: http:

Microsoft User-Mode Driver Framework Feature Pack 1.0  (Wudf01000)
	install date: 20090206
   uninstall cmd: "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
	   publisher: Microsoft Corporation
		comments: Build Number 5716

Yahoo! Messenger  (Yahoo! Messenger)
   uninstall cmd: C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
	   publisher: Yahoo! Inc.

Adobe Photoshop CS3 10 ({0046FA01-C5B9-4985-BACB-398DC480FC05})
		 version: 167772160
 version (major): 10
  estimated size: 349066
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobePhotoshop10en_US\
   uninstall cmd: MsiExec.exe /I{0046FA01-C5B9-4985-BACB-398DC480FC05}
	   publisher: Adobe Systems Incorporated

Adobe XMP DVA Panels CS3 1.0 ({0224CACC-994D-45F8-B973-D65056EA9C2F})
		 version: 16777216
 version (major): 1
  estimated size: 169
	install date: 20060130
  install source: D:\Adobe Premiere\payloads\AdobeXMPPanelsDVAAll\
   uninstall cmd: MsiExec.exe /I{0224CACC-994D-45F8-B973-D65056EA9C2F}
	   publisher: Adobe Systems Incorporated

Adobe Help Viewer CS3 1 ({04AF207D-9A77-465A-8B76-991F6AB66245})
		 version: 16777216
 version (major): 1
  estimated size: 4149
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeHelpViewerAll\
   uninstall cmd: MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
	   publisher: Adobe Systems Incorporated

Adobe Bridge Start Meeting 1.0 ({08B32819-6EEF-4057-AEDA-5AB681A36A23})
		 version: 16777216
 version (major): 1
  estimated size: 477
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\BridgeStartMeeting\
   uninstall cmd: MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
	   publisher: Adobe Systems Incorporated

MSXML 6.0 Parser (KB933579) 6.10.1200.0 ({0A869A65-8C94-4F7C-A5C7-972D3C8CED9E})
		 version: 101319856
 version (major): 6
 version (minor): 10
  estimated size: 1341
	install date: 20081004
  install source: d:\7f2a842702452ead5522db3cbee7b9b9\
   uninstall cmd: MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com/kb/933579

Adobe WinSoft Linguistics Plugin 1.0 ({184CE391-7E0E-4C63-9935-D7A10EDFD3C6})
		 version: 16777216
 version (major): 1
  estimated size: 8205
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeWinSoftLinguisticsPluginAll\
   uninstall cmd: MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
	   publisher: Adobe Systems Incorporated

Adobe Stock Photos CS3 1.5 ({29E5EA97-5F74-4A57-B8B2-D4F169117183})
		 version: 17104896
 version (major): 1
 version (minor): 5
  estimated size: 10484
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeStockPhotos1.5All\
   uninstall cmd: MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
	   publisher: Adobe Systems Incorporated

Java(TM) 6 Update 3 1.6.0.30 ({3248F0A8-6813-11D6-A77B-00B0D0160030})
		 version: 17170432
 version (major): 1
 version (minor): 6
  estimated size: 138186
	install date: 20080122
  install source: C:\Documents and Settings\Computer\Application Data\Sun\Java\jre1.6.0_03\
   uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
	   publisher: Sun Microsystems, Inc.
		 contact: http://java.com
	   help link: http://java.com
		  readme: C:\Program Files\Java\jre1.6.0_03\README.txt

Java(TM) 6 Update 7 1.6.0.70 ({3248F0A8-6813-11D6-A77B-00B0D0160070})
		 version: 17170432
 version (major): 1
 version (minor): 6
  estimated size: 117050
	install date: 20081001
  install source: C:\Documents and Settings\Computer\Application Data\Sun\Java\jre1.6.0_07\
   uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
	   publisher: Sun Microsystems, Inc.
		 contact: http://java.com
	   help link: http://java.com
		  readme: C:\Program Files\Java\jre1.6.0_07\README.txt

WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227})
		 version: 154279267
 version (major): 9
 version (minor): 50
  estimated size: 628
	install date: 20081004
  install source: C:\WINDOWS\system32\
	   publisher: Microsoft Corporation
	   help link: http://www.microsoft.com/windows

A4 Tech USB PC Camera 1.00.000 ({41E496B5-47F4-11D6-9BBB-00E0987BB2CD})
		 version: 16777216
install location: C:\Program Files\A4 Tech\A4 Tech USB PC Camera
   uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{41E496B5-47F4-11D6-9BBB-00E0987BB2CD}\setup.exe" -l0x9 

Adobe Premiere Pro CS3 Functional Content 8 ({50F102CA-4BE2-41A9-9810-5BB05EB91B9A})
		 version: 134217728
 version (major): 8
  estimated size: 257081
	install date: 20060130
  install source: D:\Adobe Premiere\payloads\AdobePremierePro3FCAll\
   uninstall cmd: MsiExec.exe /I{50F102CA-4BE2-41A9-9810-5BB05EB91B9A}
	   publisher: Adobe Systems Incorporated

Adobe Color EU Extra Settings 1.0 ({51846830-E7B2-4218-8968-B77F0FF475B8})
		 version: 16777216
 version (major): 1
  estimated size: 1661
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeColorEU_ExtraSettingsAll\
   uninstall cmd: MsiExec.exe /I{51846830-E7B2-4218-8968-B77F0FF475B8}
	   publisher: Adobe Systems Incorporated

Adobe Linguistics CS3 3.0.0 ({54793AA1-5001-42F4-ABB6-C364617C6078})
		 version: 50331648
 version (major): 3
  estimated size: 67177
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeLinguisticsAll\
   uninstall cmd: MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
	   publisher: Adobe Systems Incorporated

neroxml 1.0.0 ({56C049BE-79E9-4502-BEA7-9754A3E60F9B})
		 version: 16777216
 version (major): 1
  estimated size: 1268
	install date: 20081013
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\NERO1002529\unit_tpi_msxml-4\
   uninstall cmd: MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
	   publisher: Nero AG
		 contact: Nero AG

TuneUp Utilities 2008 7.0.7992 ({5888428E-699C-4E71-BF71-94EE06B497DA})
		 version: 117448504
 version (major): 7
  estimated size: 34478
	install date: 20081006
install location: D:\Tune-Up Utilities 2008\
  install source: C:\Program Files\Common Files\Wise Installation Wizard\
   uninstall cmd: MsiExec.exe /I{5888428E-699C-4E71-BF71-94EE06B497DA}
	   publisher: TuneUp Software
	   help link: www.tune-up.com

Adobe Premiere Pro CS3 3 ({58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA})
		 version: 50331648
 version (major): 3
  estimated size: 416994
	install date: 20060130
  install source: D:\Adobe Premiere\payloads\AdobePremierePro3All\
   uninstall cmd: MsiExec.exe /I{58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA}
	   publisher: Adobe Systems Incorporated

Acronis True Image Home 11.0.8053 ({633A06C3-B709-479A-AAB3-5EE94AD9EE4B})
		 version: 184557429
 version (major): 11
  estimated size: 240039
	install date: 20080122
install location: C:\Program Files\Acronis\TrueImageHome\
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\D79875D9-C5D0-481C-8C1F-C21F14846E93\
   uninstall cmd: MsiExec.exe /X{633A06C3-B709-479A-AAB3-5EE94AD9EE4B}
	   publisher: Acronis
		 contact: Acronis

Adobe Fonts All 1.0 ({6ABE0BEE-D572-4FE8-B434-9E72A289431B})
		 version: 16777216
 version (major): 1
  estimated size: 68409
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeFontsAll\
   uninstall cmd: MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
	   publisher: Adobe Systems Incorporated

Adobe Asset Services CS3 3 ({6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61})
		 version: 50331648
 version (major): 3
  estimated size: 48819
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeAssetServices3All\
   uninstall cmd: MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
	   publisher: Adobe Systems Incorporated

Microsoft Visual C++ 2005 Redistributable 8.0.56336 ({7299052b-02a4-4627-81f2-1818da5d550d})
		 version: 134274064
 version (major): 8
  estimated size: 5330
	install date: 20081001
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\IXP000.TMP\
   uninstall cmd: MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
	   publisher: Microsoft Corporation

Acrobat.com 0.0.0 ({77DCDCE3-2DED-62F3-8154-05E745472D07})
  estimated size: 1623
	install date: 20081015
  install source: C:\Documents and Settings\Computer\Local Settings\Temp\fla6C.tmp\
   uninstall cmd: MsiExec.exe /I{77DCDCE3-2DED-62F3-8154-05E745472D07}
	   publisher: Adobe Systems Incorporated

nfro full 1.00.0000 ({7896A575-BFE3-4E60-AE3A-3608E16E8336})
		 version: 16777216
	install date: 20090215
install location: D:\Gravity
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\byeB8.tmp\Disk1\
   uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7896A575-BFE3-4E60-AE3A-3608E16E8336}\setup.exe" -l0x9  -removeonly
	   publisher: Aoi-kaze

Software Update for Web Folders 9.60.6715.0 ({7CCEBC24-62DB-4280-A8EC-BFA49F167920})
		 version: 154933819
 version (major): 9
 version (minor): 60
  estimated size: 3477
	install date: 20080122
  install source: C:\WINDOWS\system32\
	   publisher: Microsoft Corporation
	   help link: http://www.microsoft.com/windows

NVIDIA ForceWare Network Access Manager 1.00.6793 ({7CFA46E3-CC2F-4355-82AE-6012DC3633FD})
		 version: 16784009
 version (major): 1
  estimated size: 40938
	install date: 20080122
install location: C:\Program Files\NVIDIA Corporation\NetworkAccessManager\
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\{DF30C87C-1604-41B2-A3EA-CB7003CD2D76}\
   uninstall cmd: MsiExec.exe /I{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}
	   publisher: NVIDIA Corporation

MSXML 4.0 SP2 (KB954430) 4.20.9870.0 ({86493ADD-824D-4B8E-BD72-8C5DCDC52A71})
		 version: 68429454
 version (major): 4
 version (minor): 20
  estimated size: 2729
	install date: 20081113
  install source: c:\b873741ef32034e675\
   uninstall cmd: MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com/kb/954430

Garena 2.3 ({89C89156-A70F-4C6D-9CAE-2EA71F1396FE})
		 version: 33751040
	install date: 20081027
install location: D:\Garena
  install source: D:\Downloads\Garena_setup.exe
   uninstall cmd: C:\Program Files\InstallShield Installation Information\{89C89156-A70F-4C6D-9CAE-2EA71F1396FE}\setup.exe -runfromtemp -l0x0009 -removeonly
	   publisher: Ocean Global Holding

Adobe Device Central CS3 1.0 ({8D2BA474-F406-4710-9AE4-D4F22D21F0DD})
		 version: 16777216
 version (major): 1
  estimated size: 137150
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeDeviceCentralAll\
   uninstall cmd: MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
	   publisher: Adobe Systems Incorporated

Adobe Type Support 1.0 ({8E6808E2-613D-4FCD-81A2-6C8FA8E03312})
		 version: 16777216
 version (major): 1
  estimated size: 5677
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeTypeSupportAll\
   uninstall cmd: MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
	   publisher: Adobe Systems Incorporated

Microsoft Office Professional Edition 2003 11.0.8173.0 ({90110409-6000-11D3-8CFE-0150048383C9})
		 version: 184557549
 version (major): 11
  estimated size: 546733
	install date: 20081211
  install source: F:\Application\OFFICE 2003\
   uninstall cmd: MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
	   publisher: Microsoft Corporation
	   help link: http://www.microsoft.com/support
		  readme: C:\Program Files\Microsoft Office\OFFICE11\1033\OFREADME.HTM

Compatibility Pack for the 2007 Office system 12.0.6215.1000 ({90120000-0020-0409-0000-0000000FF1CE})
		 version: 201332807
 version (major): 12
  estimated size: 199833
	install date: 20081211
  install source: C:\Program Files\MSECache\O2007Cnv\1033\
   uninstall cmd: MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
	   publisher: Microsoft Corporation
	   help link: http://www.microsoft.com/support

Adobe Anchor Service CS3 1.0 ({90176341-0A8B-4CCC-A78D-F862228A6B95})
		 version: 16777216
 version (major): 1
  estimated size: 1025
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeALMAnchorServiceAll\
   uninstall cmd: MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
	   publisher: Adobe Systems Incorporated

Adobe Color NA Recommended Settings 1.0 ({95655ED4-7CA5-46DF-907F-7144877A32E5})
		 version: 16777216
 version (major): 1
  estimated size: 1661
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeColorNA_RecommendedAll\
   uninstall cmd: MsiExec.exe /I{95655ED4-7CA5-46DF-907F-7144877A32E5}
	   publisher: Adobe Systems Incorporated

Adobe Bridge CS3 2 ({9C9824D9-9000-4373-A6A5-D0E5D4831394})
		 version: 33554432
 version (major): 2
  estimated size: 265322
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeBridge2All\
   uninstall cmd: MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
	   publisher: Adobe Systems Incorporated

Adobe CMaps 1.0 ({A2B242BD-FF8D-4840-9DAA-9170EABEC59C})
		 version: 16777216
 version (major): 1
  estimated size: 6493
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeCMapsAll\
   uninstall cmd: MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
	   publisher: Adobe Systems Incorporated

Adobe Color - Photoshop Specific 1.0 ({A2D81E70-2A98-4A08-A628-94388B063C5E})
		 version: 16777216
 version (major): 1
  estimated size: 3541
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeColorPhotoshopAll\
   uninstall cmd: MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
	   publisher: Adobe Systems Incorporated

ImagXpress 7.0.74.0 ({A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D})
		 version: 117440586
 version (major): 7
  estimated size: 3575
	install date: 20081013
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\NERO1002529\unit_tpi_imagxpress-7.0.74.0\
	   publisher: Nero AG

PDF Settings 1.0 ({AC5B0C19-D851-42F4-BDA0-410ECF7F70A5})
		 version: 16777216
 version (major): 1
  estimated size: 579
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobePDFSettingsNAEU\
   uninstall cmd: MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
	   publisher: Adobe Systems Incorporated

Adobe Reader 9 9.0.0 ({AC76BA86-7AD7-1033-7B44-A90000000001})
		 version: 150994944
 version (major): 9
  estimated size: 209258
	install date: 20081015
install location: D:\Adobe\Reader 9.0\Reader\
  install source: C:\Documents and Settings\Computer\Local Settings\Application Data\Adobe\Reader 9.0\Setup Files\READER9\
   uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001}
	   publisher: Adobe Systems Incorporated
		comments:	
		 contact: Customer Support
	   help link: http://www.adobe.com/support/main.html
		  readme: D:\Adobe\Reader 9.0\Readme.htm

Adobe Camera Raw 4.0 4.0 ({B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C})
		 version: 67108864
 version (major): 4
  estimated size: 9969
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeCameraRaw4.0All\
   uninstall cmd: MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
	   publisher: Adobe Systems Incorporated

Spybot - Search & Destroy 1.6.2 ({B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1)
	install date: 20090226
install location: D:\Spybot - Search & Destroy\
   uninstall cmd: "D:\Spybot - Search & Destroy\unins000.exe"
	   publisher: Safer Networking Limited
	   help link: http://www.safer-networking.org/index.php?page=support

Adobe Default Language CS3 1.0 ({B9B35331-B7E4-4E5C-BF4C-7BC87856124D})
		 version: 16777216
 version (major): 1
  estimated size: 1730
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeDefaultLanguageCS3All\
   uninstall cmd: MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
	   publisher: Adobe Systems Incorporated

Adobe Setup 1.0 ({BB81360F-041C-4CF7-B15E-71380D154244})
		 version: 16777216
 version (major): 1
  estimated size: 12984
	install date: 20060130
  install source: D:\Adobe Premiere\
   uninstall cmd: MsiExec.exe /I{BB81360F-041C-4CF7-B15E-71380D154244}
	   publisher: Adobe Systems Incorporated

MSXML 4.0 SP2 (KB936181) 4.20.9848.0 ({C04E32E0-0416-434D-AFB9-6969D703A9EF})
		 version: 68429432
 version (major): 4
 version (minor): 20
  estimated size: 2680
	install date: 20081004
  install source: d:\73b4809fba759063cebd3a08\
   uninstall cmd: MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
	   publisher: Microsoft Corporation
	   help link: http://support.microsoft.com/kb/936181

Adobe ExtendScript Toolkit 2 2.0 ({C2D69781-F392-4118-A5A7-C7E9C38DBFC2})
		 version: 33554432
 version (major): 2
  estimated size: 16114
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeExtendScriptToolKitAll\
   uninstall cmd: MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
	   publisher: Adobe Systems Incorporated

Adobe Version Cue CS3 Client 3 ({D0DFF92A-492E-4C40-B862-A74A173C25C5})
		 version: 50331648
 version (major): 3
  estimated size: 22411
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeVersionCueClient3All\
   uninstall cmd: MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
	   publisher: Adobe Systems Incorporated

Adobe Setup 1.0 ({D1BB4446-AE9C-4256-9A7F-4D46604D2462})
		 version: 16777216
 version (major): 1
  estimated size: 16064
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\
   uninstall cmd: MsiExec.exe /I{D1BB4446-AE9C-4256-9A7F-4D46604D2462}
	   publisher: Adobe Systems Incorporated

Adobe PDF Library Files 8.0 ({D2559B88-CC9D-4B48-81BB-F492BAA9C48C})
		 version: 134217728
 version (major): 8
  estimated size: 59001
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobePDFL8All\
   uninstall cmd: MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
	   publisher: Adobe Systems Incorporated

Adobe XMP Panels CS3 1.0 ({D5A31AB1-345D-47C7-A87B-036A669F6DF1})
		 version: 16777216
 version (major): 1
  estimated size: 189
	install date: 20060130
  install source: D:\Adobe Premiere\payloads\AdobeXMPPanelsAll\
   uninstall cmd: MsiExec.exe /I{D5A31AB1-345D-47C7-A87B-036A669F6DF1}
	   publisher: Adobe Systems Incorporated

Adobe Color Common Settings 1.0 ({DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9})
		 version: 16777216
 version (major): 1
  estimated size: 15315
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeColorCommonSetAll\
   uninstall cmd: MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
	   publisher: Adobe Systems Incorporated

Adobe Color JA Extra Settings 1.0 ({DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029})
		 version: 16777216
 version (major): 1
  estimated size: 2777
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeColorJA_ExtraSettingsAll\
   uninstall cmd: MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
	   publisher: Adobe Systems Incorporated

Adobe Update Manager CS3 5.1.0 ({E69AE897-9E0B-485C-8552-7841F48D42D8})
		 version: 83951616
 version (major): 5
 version (minor): 1
  estimated size: 6232
	install date: 20081001
  install source: D:\Installers\Adobe Photoshop  CS3  Extended + Crack\payloads\AdobeAUM5.1All\
   uninstall cmd: MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
	   publisher: Adobe Systems Incorporated

Adobe Flash Player 10 Plugin 10.0.12.36 ({ECA1A3B6-898F-4DCE-9F04-714CF3BA126B})
		 version: 167772172
 version (major): 10
  estimated size: 1789
	install date: 20090206
install location: C:\WINDOWS\system32\Macromed\Flash\
  install source: C:\DOCUME~1\Computer\LOCALS~1\Temp\
   uninstall cmd: MsiExec.exe /X{ECA1A3B6-898F-4DCE-9F04-714CF3BA126B}
	   publisher: Adobe Systems, Inc.
	   help link: http://www.adobe.com/go/flashplayer_support/

Realtek High Definition Audio Driver  ({F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC})
   uninstall cmd: RtlUpd.exe -r -m

Sygate Personal Firewall 5.6.2808 ({F34D9A5F-484A-4E31-A9D3-908CB265B289})
		 version: 84282104
 version (major): 5
 version (minor): 6
  estimated size: 11992
	install date: 20080122
  install source: C:\Program Files\Common Files\Wise Installation Wizard\
   uninstall cmd: MsiExec.exe /I{F34D9A5F-484A-4E31-A9D3-908CB265B289}
	   publisher: Sygate Technologies, Inc.
	   help link: http://www.sygate.com/support/support_switch.htm



--- System Services ---
Service (registry key): Abiosdsk
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 0

Service (registry key): abp480n5
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): ACPI
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft ACPI Driver
	Image path: system32\DRIVERS\ACPI.sys
	Image size: 187776
	 Image MD5: 8FD99680A539792A30E97944FDAECF17
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): ACPIEC
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): AcrSch2Svc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Acronis Scheduler2 Service
   Description: Provides task scheduling for Acronis applications.
   Object name: LocalSystem
	Image path: "C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe"
	Image size: 427288
	 Image MD5: 3FC5CC29583196A64185F50448C2F45A
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 16
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): adpu160m
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): aec
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Kernel Acoustic Echo Canceller
	Image path: system32\drivers\aec.sys
	Image size: 142592
	 Image MD5: 8BED39E3C35D6A489438B8141717A557
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): AFD
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: AFD
   Description: AFD Networking Support Environment
	Image path: \SystemRoot\System32\drivers\afd.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): Aha154x
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): aic78u2
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): aic78xx
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): Alerter
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Alerter
   Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\system32\svchost.exe -k LocalService
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation

Service (registry key): ALG
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Application Layer Gateway Service
   Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\System32\alg.exe
	Image size: 44544
	 Image MD5: 8C515081584A38AA007909CD02020B3D
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1

Service (registry key): AliIde
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): amsint
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): AppMgmt
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Application Management
   Description: Provides software installation services such as Assign, Publish, and Remove.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1

Service (registry key): asc
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): asc3350p
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): asc3550
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): AsyncMac
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: RAS Asynchronous Media Driver
   Description: RAS Asynchronous Media Driver
	Image path: system32\DRIVERS\asyncmac.sys
	Image size: 14336
	 Image MD5: B153AFFAC761E7F5FCFA822B9C4E97BC
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): atapi
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Standard IDE/ESDI Hard Disk Controller
	Image path: system32\DRIVERS\atapi.sys
	Image size: 96512
	 Image MD5: 9F3A2F5AA6875C72BF062C712CFA2674
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): Atdisk
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 0

Service (registry key): Atmarpc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: ATM ARP Client Protocol
   Description: ATM ARP Client Protocol
	Image path: system32\DRIVERS\atmarpc.sys
	Image size: 59904
	 Image MD5: 9916C1225104BA14794209CFA8012159
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): AudioSrv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Audio
   Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: PlugPlay,RpcSs

Service (registry key): audstub
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Audio Stub Driver
	Image path: system32\DRIVERS\audstub.sys
	Image size: 3072
	 Image MD5: D9F724AA26C010A217C97606B160ED68
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): BattC
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): Beep
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): BITS
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Background Intelligent Transfer Service
   Description: Transfers files in the background using idle network bandwidth. If the service is stopped, features such as Windows Update, and MSN Explorer will be unable to automatically download programs and other information. If this service is disabled, any services that explicitly depend on it may fail to transfer files if they do not have a fail safe mechanism to transfer files directly through IE in case BITS has been disabled.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1
 Depends On services: Rpcss

Service (registry key): Bonjour Service
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##
   Description: ##Id_String2.6844F930_1628_4223_B5CC_5BB94B879762##
   Object name: LocalSystem
	Image path: "C:\Program Files\Bonjour\mDNSResponder.exe"
	Image size: 229376
	 Image MD5: 73686FE0B2E0469F89FD2075BE724704
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 16
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): Browser
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Computer Browser
   Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation,LanmanServer

Service (registry key): cbidf2k
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): CCDECODE
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Closed Caption Decoder
	Image path: system32\DRIVERS\CCDECODE.sys
	Image size: 17024
	 Image MD5: 0BE5AEF125BE881C4F854C554F2B025C
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): cd20xrnt
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): Cdaudio
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): Cdfs
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 2
 Error Control: 1
 Depends On group: "SCSI CDROM Class"

Service (registry key): Cdrom
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: CD-ROM Driver
	Image path: system32\DRIVERS\cdrom.sys
	Image size: 62976
	 Image MD5: 1F4260CC5B42272D71F79E570A27A4FE
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1
 Depends On group: "SCSI miniport"

Service (registry key): Changer
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): CiSvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Indexing Service
   Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\cisvc.exe
	Image size: 5632
	 Image MD5: 1CFE720EB8D93A7158A4EBC3AB178BDE
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 288
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): ClipSrv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: ClipBook
   Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\clipsrv.exe
	Image size: 33280
	 Image MD5: 34CBE729F38138217F9C80212A2A0C82
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 16
 Error Control: 1
 Depends On services: NetDDE

Service (registry key): CmdIde
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): COMSysApp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: COM+ System Application
   Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
	Image size: 5120
	 Image MD5: 0A9BA6AF531AFE7FA5E4FB973852D863
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: rpcss

Service (registry key): ContentFilter
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): ContentIndex
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): Cpqarray
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): CryptSvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Cryptographic Services
   Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): dac2w2k
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 0

Service (registry key): dac960nt
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): DcomLaunch
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: DCOM Server Process Launcher
   Description: Provides launch functionality for DCOM services.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost -k DcomLaunch
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): Dhcp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: DHCP Client
   Description: Manages network configuration by registering and updating IP addresses and DNS names.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: Tcpip,Afd,NetBT

Service (registry key): Disk
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Disk Driver
	Image path: system32\DRIVERS\disk.sys
	Image size: 36352
	 Image MD5: 044452051F3E02E7963599FC8F4F3E25
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1
 Depends On group: "SCSI miniport"

Service (registry key): dmadmin
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Logical Disk Manager Administrative Service
   Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\dmadmin.exe /com
	Image size: 224768
	 Image MD5: E46050330BD42F33609117F861E32D3C
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs,PlugPlay,DmServer

Service (registry key): dmboot
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: System32\drivers\dmboot.sys
	Image size: 799744
	 Image MD5: D992FE1274BDE0F84AD826ACAE022A41
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): dmio
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Logical Disk Manager Driver
	Image path: System32\drivers\dmio.sys
	Image size: 153344
	 Image MD5: 7C824CF7BBDE77D95C08005717A95F6F
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): dmload
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: System32\drivers\dmload.sys
	Image size: 5888
	 Image MD5: E9317282A63CA4D188C0DF5E09C6AC5F
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): dmserver
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Logical Disk Manager
   Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs,PlugPlay

Service (registry key): DMusic
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Kernel DLS Syntheiszer
	Image path: system32\drivers\DMusic.sys
	Image size: 52864
	 Image MD5: 8A208DFCF89792A484E76C40E5F50B45
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Dnscache
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: DNS Client
   Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: NT AUTHORITY\NetworkService
	Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): Dot3svc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Wired AutoConfig
   Description: This service performs IEEE 802.1X authentication on Ethernet interfaces
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k dot3svc
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: Ndisuio,eaphost

Service (registry key): dpti2o
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): drmkaud
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Kernel DRM Audio Descrambler
	Image path: system32\drivers\drmkaud.sys
	Image size: 2944
	 Image MD5: 8F5FCFF8E8848AFAC920905FBD9D33C8
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): EapHost
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Extensible Authentication Protocol Service
   Description: Provides windows clients Extensible Authentication Protocol Service
   Object name: localSystem
	Image path: %SystemRoot%\System32\svchost.exe -k eapsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): ERSvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Error Reporting Service
   Description: Allows error reporting for services and applictions running in non-standard environments.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 0
 Depends On services: RpcSs

Service (registry key): Eventlog
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Event Log
   Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\services.exe
	Image size: 108544
	 Image MD5: 0E776ED5F7CC9F94299E70461B7B8185
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): EventSystem
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: COM+ Event System
   Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): Fastfat
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 2
 Error Control: 1

Service (registry key): FastUserSwitchingCompatibility
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Fast User Switching Compatibility
   Description: Provides management for applications that require assistance in a multiple user environment.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: TermService

Service (registry key): Fdc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Floppy Disk Controller Driver
	Image path: system32\DRIVERS\fdc.sys
	Image size: 27392
	 Image MD5: 92CDD60B6730B9F50F6A1A0C1F8CDC81
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Fips
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): FLEXnet Licensing Service
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: FLEXnet Licensing Service
   Description: This service performs licensing functions on behalf of FLEXnet enabled products.
   Object name: LocalSystem
	Image path: "C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe"
	Image size: 654848
	 Image MD5: 227846995AFEEFA70D328BF5334A86A5
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 16
 Error Control: 1

Service (registry key): Flpydisk
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Floppy Disk Driver
	Image path: system32\DRIVERS\flpydisk.sys
	Image size: 20480
	 Image MD5: 9D27E7B80BFCDF1CDD9B555862D5E7F0
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): FltMgr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: FltMgr
   Description: File System Filter Manager Driver
	Image path: system32\drivers\fltmgr.sys
	Image size: 129792
	 Image MD5: B2CF4B0786F8212CB92ED2B50C6DB6B0
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 2
 Error Control: 1

Service (registry key): ForceWare Intelligent Application Manager (IAM)
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: ForceWare Intelligent Application Manager (IAM)
   Object name: LocalSystem
	Image path: C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
	Image size: 450560
	 Image MD5: 606ACB555E9E3599537B2F33E73082B1
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 272
 Error Control: 1
 Depends On services: RPCSS,WINMGMT

Service (registry key): Fs_Rec
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 8
 Error Control: 0

Service (registry key): Ftdisk
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Volume Manager Driver
	Image path: system32\DRIVERS\ftdisk.sys
	Image size: 125056
	 Image MD5: 6AC26732762483366C3969C9E4D2259D
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): GF0012
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: GASIA Filter Driver
	Image path: system32\DRIVERS\GF0012.sys
	Image size: 10240
	 Image MD5: 3CBD1B11A750D02AF2D614FEED6E9B96
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 1

Service (registry key): Gpc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Generic Packet Classifier
   Description: Generic Packet Classifier
	Image path: system32\DRIVERS\msgpc.sys
	Image size: 35072
	 Image MD5: 0A02C63C8B144BD8C86B103DEE7C86A2
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): HDAudBus
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft UAA Bus Driver for High Definition Audio
	Image path: system32\DRIVERS\HDAudBus.sys
	Image size: 138752
	 Image MD5: 3FCC124B6E08EE0E9351F717DD136939
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): helpsvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Help and Support
   Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): HidServ
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Human Interface Device Access
   Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): HidUsb
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft HID Class Driver
	Image path: system32\DRIVERS\hidusb.sys
	Image size: 10368
	 Image MD5: CCF82C5EC8A7326C3066DE870C06DAF1
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 0

Service (registry key): hkmsvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Health Key and Certificate Management Service
   Description: Manages health certificates and keys (used by NAP)
   Object name: localSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): hpn
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): HTTP
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: HTTP
   Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
	Image path: System32\Drivers\HTTP.sys
	Image size: 264832
	 Image MD5: F6AACF5BCE2893E0C1754AFEB672E5C9
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): HTTPFilter
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: HTTP SSL
   Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service,  using the Secure Socket Layer (SSL).  If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: HTTP

Service (registry key): i2omgmt
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): i2omp
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): i8042prt
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: i8042 Keyboard and PS/2 Mouse Port Driver
	Image path: system32\DRIVERS\i8042prt.sys
	Image size: 52480
	 Image MD5: 4A0B06AA8943C1E332520F7440C0AA30
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): Imapi
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: CD-Burning Filter Driver
	Image path: system32\DRIVERS\imapi.sys
	Image size: 42112
	 Image MD5: 083A052659F5310DD8B6A6CB05EDCF8E
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): ImapiService
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IMAPI CD-Burning COM Service
   Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\imapi.exe
	Image size: 150528
	 Image MD5: 30DEAF54A9755BB8546168CFE8A6B5E1
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1

Service (registry key): inetaccs
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): ini910u
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): Inport
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): IntcAzAudAddService
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Service for Realtek HD Audio (WDM)
	Image path: system32\drivers\RtkHDAud.sys
	Image size: 4356608
	 Image MD5: A7D3A1B2CABDAB81EAD07C204ADB7CE1
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): IntelIde
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): Ip6Fw
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IPv6 Windows Firewall Driver
   Description: Provides intrusion prevention service for a home or small office network.
	Image path: system32\drivers\ip6fw.sys
	Image size: 36608
	 Image MD5: 3BB22519A194418D5FEC05D800A19AD0
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): IpFilterDriver
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IP Traffic Filter Driver
   Description: IP Traffic Filter Driver
	Image path: system32\DRIVERS\ipfltdrv.sys
	Image size: 32896
	 Image MD5: 731F22BA402EE4B62748ADAF6363C182
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): IpInIp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IP in IP Tunnel Driver
   Description: IP in IP Tunnel Driver
	Image path: system32\DRIVERS\ipinip.sys
	Image size: 20864
	 Image MD5: B87AB476DCF76E72010632B5550955F5
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): IpNat
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IP Network Address Translator
   Description: IP Network Address Translator
	Image path: system32\DRIVERS\ipnat.sys
	Image size: 152832
	 Image MD5: CC748EA12C6EFFDE940EE98098BF96BB
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): IPSec
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IPSEC driver
   Description: IPSEC driver
	Image path: system32\DRIVERS\ipsec.sys
	Image size: 75264
	 Image MD5: 23C74D75E36E7158768DD63D92789A91
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): IRENUM
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IR Enumerator Service
	Image path: system32\DRIVERS\irenum.sys
	Image size: 11264
	 Image MD5: C93C9FF7B04D772627A3646D89F7BF89
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): ISAPISearch
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): isapnp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: PnP ISA/EISA Bus Driver
	Image path: system32\DRIVERS\isapnp.sys
	Image size: 37248
	 Image MD5: 05A299EC56E52649B1CF2FC52D20F2D7
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 3

Service (registry key): Kbdclass
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Keyboard Class Driver
	Image path: system32\DRIVERS\kbdclass.sys
	Image size: 24576
	 Image MD5: 463C1EC80CD17420A542B7F36A36F128
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): kbdhid
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Keyboard HID Driver
	Image path: system32\DRIVERS\kbdhid.sys
	Image size: 14592
	 Image MD5: 9EF487A186DEA361AA06913A75B3FA99
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): kmixer
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Kernel Wave Audio Mixer
	Image path: system32\drivers\kmixer.sys
	Image size: 172416
	 Image MD5: 692BCF44383D056AED41B045A323D378
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): KSecDD
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): lanmanserver
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Server
   Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): lanmanworkstation
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Workstation
   Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): lbrtfdc
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): ldap
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): LicenseService
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): LmHosts
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: TCP/IP NetBIOS Helper
   Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\system32\svchost.exe -k LocalService
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: NetBT,Afd

Service (registry key): MBAMProtector
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: \??\C:\WINDOWS\system32\drivers\mbam.sys
	Image size: 15504
	 Image MD5: F5D83758509D375A7F3A96D9C28F0BD9
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): MBAMService
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Object name: LocalSystem
	Image path: "D:\Malwarebytes' Anti-Malware\mbamservice.exe"
	Image size: 170640
	 Image MD5: 1FEABF2D4A365B239094E9F53CFFF165
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 16
 Error Control: 1
 Depends On services: MBAMProtector

Service (registry key): Messenger
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Messenger
   Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS

Service (registry key): mnmdd
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): mnmsrvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NetMeeting Remote Desktop Sharing
   Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\mnmsrvc.exe
	Image size: 32768
	 Image MD5: D18F1F0C101D06A1C1ADF26EED16FCDD
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 272
 Error Control: 1

Service (registry key): Modem
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): Mouclass
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Mouse Class Driver
	Image path: system32\DRIVERS\mouclass.sys
	Image size: 23040
	 Image MD5: 35C9E97194C8CFB8430125F8DBC34D04
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): mouhid
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Mouse HID Driver
	Image path: system32\DRIVERS\mouhid.sys
	Image size: 12160
	 Image MD5: B1C303E17FB9D46E87A98E4BA6769685
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): MountMgr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Mount Point Manager
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): mraid35x
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): MRxDAV
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: WebDav Client Redirector
   Description: WebDav Client Redirector
	Image path: system32\DRIVERS\mrxdav.sys
	Image size: 180608
	 Image MD5: 11D42BB6206F33FBB3BA0288D3EF81BD
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 2
 Error Control: 1

Service (registry key): MRxSmb
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: MRXSMB
   Description: MRXSMB
	Image path: system32\DRIVERS\mrxsmb.sys
	Image size: 455296
	 Image MD5: 60AE98742484E7AB80C3C1450E708148
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 2
 Error Control: 1

Service (registry key): MSDTC
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Distributed Transaction Coordinator
   Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start. 
   Object name: NT AUTHORITY\NetworkService
	Image path: C:\WINDOWS\system32\msdtc.exe
	Image size: 6144
	 Image MD5: A137F1470499A205ABBB9AAFB3B6F2B1
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: RPCSS,SamSS

Service (registry key): Msfs
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 2
 Error Control: 1

Service (registry key): MSIServer
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Installer
   Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\msiexec.exe /V
	Image size: 78848
	 Image MD5: 5879D691E842574A20FE63817CB76DF9
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): MSKSSRV
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Streaming Service Proxy
	Image path: system32\drivers\MSKSSRV.sys
	Image size: 7552
	 Image MD5: D1575E71568F4D9E14CA56B7B0453BF1
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): MSPCLOCK
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Streaming Clock Proxy
	Image path: system32\drivers\MSPCLOCK.sys
	Image size: 5376
	 Image MD5: 325BB26842FC7CCC1FCCE2C457317F3E
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): MSPQM
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Streaming Quality Manager Proxy
	Image path: system32\drivers\MSPQM.sys
	Image size: 4992
	 Image MD5: BAD59648BA099DA4A17680B39730CB3D
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): mssmbios
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft System Management BIOS Driver
	Image path: system32\DRIVERS\mssmbios.sys
	Image size: 15488
	 Image MD5: AF5F4F3F14A8EA2C26DE30F7A1E17136
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): MSTEE
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Streaming Tee/Sink-to-Sink Converter
	Image path: system32\drivers\MSTEE.sys
	Image size: 5504
	 Image MD5: E53736A9E30C45FA9E7B5EAC55056D1D
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Mup
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Mup
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 2
 Error Control: 1

Service (registry key): NABTSFEC
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NABTS/FEC VBI Codec
	Image path: system32\DRIVERS\NABTSFEC.sys
	Image size: 85248
	 Image MD5: 5B50F1B2A2ED47D560577B221DA734DB
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): napagent
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Network Access Protection Agent
   Description: Allows windows clients to participate in Network Access Protection
   Object name: localSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): NDIS
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NDIS System Driver
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): NdisIP
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft TV/Video Connection
	Image path: system32\DRIVERS\NdisIP.sys
	Image size: 10880
	 Image MD5: 7FF1F1FD8609C149AA432F95A8163D97
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): NdisTapi
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Access NDIS TAPI Driver
   Description: Remote Access NDIS TAPI Driver
	Image path: system32\DRIVERS\ndistapi.sys
	Image size: 10112
	 Image MD5: 1AB3D00C991AB086E69DB84B6C0ED78F
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Ndisuio
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NDIS Usermode I/O Protocol
   Description: NDIS Usermode I/O Protocol
	Image path: system32\DRIVERS\ndisuio.sys
	Image size: 14592
	 Image MD5: F927A4434C5028758A842943EF1A3849
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): NdisWan
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Access NDIS WAN Driver
   Description: Remote Access NDIS WAN Driver
	Image path: system32\DRIVERS\ndiswan.sys
	Image size: 91520
	 Image MD5: EDC1531A49C80614B2CFDA43CA8659AB
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): NDProxy
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): NetBIOS
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NetBIOS Interface
   Description: NetBIOS Interface
	Image path: system32\DRIVERS\netbios.sys
	Image size: 34688
	 Image MD5: 5D81CF9A2F1A3A756B66CF684911CDF0
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 2
 Error Control: 1

Service (registry key): NetBT
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NetBios over Tcpip
   Description: NetBios over Tcpip
	Image path: system32\DRIVERS\netbt.sys
	Image size: 162816
	 Image MD5: 74B2B2F5BEA5E9A3DC021D685551BD3D
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): NetDDE
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Network DDE
   Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\netdde.exe
	Image size: 111104
	 Image MD5: B857BA82860D7FF85AE29B095645563B
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1
 Depends On services: NetDDEDSDM

Service (registry key): NetDDEdsdm
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Network DDE DSDM
   Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. 
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\netdde.exe
	Image size: 111104
	 Image MD5: B857BA82860D7FF85AE29B095645563B
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1

Service (registry key): Netlogon
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Net Logon
   Description: Supports pass-through authentication of account logon events for computers in a domain.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\lsass.exe
	Image size: 13312
	 Image MD5: BF2466B3E18E970D8A976FB95FC1CA85
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation

Service (registry key): Netman
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Network Connections
   Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 288
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): Nla
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Network Location Awareness (NLA)
   Description: Collects and stores network configuration and location information, and notifies applications when this information changes.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: Tcpip,Afd

Service (registry key): nm
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Network Monitor Driver
	Image path: system32\DRIVERS\NMnt.sys
	Image size: 40320
	 Image MD5: 1E421A6BCF2203CC61B821ADA9DE878B
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Npfs
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 2
 Error Control: 1

Service (registry key): npkcrypt
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: npkcrypt
	Image path: \??\D:\Gravity\ro\npkcrypt.sys
	Image size: 21442
	 Image MD5: AAF9B4DF67938753CB21808EA3574242
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): nSvcIp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: ForceWare IP service
   Object name: LocalSystem
	Image path: C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
	Image size: 184320
	 Image MD5: FB988984573BE3CB17EA73F346645144
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 272
 Error Control: 1
 Depends On services: WINMGMT

Service (registry key): Ntfs
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 2
 Error Control: 1

Service (registry key): NtLmSsp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NT LM Security Support Provider
   Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\lsass.exe
	Image size: 13312
	 Image MD5: BF2466B3E18E970D8A976FB95FC1CA85
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1

Service (registry key): NtmsSvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Removable Storage
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): Null
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): nv
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: system32\DRIVERS\nv4_mini.sys
	Image size: 6555104
	 Image MD5: 597A5167C509547FC691416887171079
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): NVENETFD
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NVIDIA nForce 10/100 Mbps Ethernet 
	Image path: system32\DRIVERS\NVENETFD.sys
	Image size: 54784
	 Image MD5: 7D275ECDA4628318912F6C945D5CF963
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): nvnetbus
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NVIDIA Network Bus Enumerator
	Image path: system32\DRIVERS\nvnetbus.sys
	Image size: 22016
	 Image MD5: B64AACEFAD2BE5BFF5353FE681253C67
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): nvsmu
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: system32\DRIVERS\nvsmu.sys
	Image size: 14208
	 Image MD5: 2A085AEC3AB2B1211611D2A7B9E22456
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): NVSvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: NVIDIA Display Driver Service
   Description: Provides system and desktop level support to the NVIDIA display driver
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\nvsvc32.exe
	Image size: 159812
	 Image MD5: 4A290F88C42DD1037A46CD1867308D82
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 16
 Error Control: 1

Service (registry key): NwlnkFlt
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IPX Traffic Filter Driver
   Description: IPX Traffic Filter Driver
	Image path: system32\DRIVERS\nwlnkflt.sys
	Image size: 12416
	 Image MD5: B305F3FAD35083837EF46A0BBCE2FC57
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1
 Depends On services: NwlnkFwd

Service (registry key): NwlnkFwd
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IPX Traffic Forwarder Driver
   Description: IPX Traffic Forwarder Driver
	Image path: system32\DRIVERS\nwlnkfwd.sys
	Image size: 32512
	 Image MD5: C99B3415198D1AAB7227F2C88FD664B9
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): OHCI1394
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): ose
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Office Source Engine
   Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports.
   Object name: LocalSystem
	Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
	Image size: 89136
	 Image MD5: 7A56CF3E3F12E8AF599963B16F50FB6A
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1

Service (registry key): Outlook
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): Parport
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Parallel port driver
	Image path: system32\DRIVERS\parport.sys
	Image size: 80128
	 Image MD5: 5575FAF8F97CE5E713D108C2A58D7C7C
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): PartMgr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Partition Manager
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): ParVdm
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 0
 Depends On services: Parport
 Depends On group: "Parallel arbitrator"

Service (registry key): PCI
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: PCI Bus Driver
	Image path: system32\DRIVERS\pci.sys
	Image size: 68224
	 Image MD5: A219903CCF74233761D92BEF471A07B1
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 3

Service (registry key): PCIDump
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): PCIIde
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: system32\DRIVERS\pciide.sys
	Image size: 3328
	 Image MD5: CCF5F451BB1A5A2A522A76E670000FF0
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): Pcmcia
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): PDCOMP
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): PDFRAME
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): PDRELI
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): PDRFRAME
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): perc2
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): perc2hib
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): PerfDisk
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): PerfNet
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): PerfOS
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): PerfProc
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): PlugPlay
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Plug and Play
   Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\services.exe
	Image size: 108544
	 Image MD5: 0E776ED5F7CC9F94299E70461B7B8185
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): PolicyAgent
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: IPSEC Services
   Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\lsass.exe
	Image size: 13312
	 Image MD5: BF2466B3E18E970D8A976FB95FC1CA85
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RPCSS,Tcpip,IPSec

Service (registry key): PptpMiniport
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: WAN Miniport (PPTP)
   Description: WAN Miniport (PPTP)
	Image path: system32\DRIVERS\raspptp.sys
	Image size: 48384
	 Image MD5: EFEEC01B1D3CF84F16DDD24D9D9D8F99
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Processor
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Processor Driver
	Image path: system32\DRIVERS\processr.sys
	Image size: 35840
	 Image MD5: A32BEBAF723557681BFC6BD93E98BD26
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): ProtectedStorage
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Protected Storage
   Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\lsass.exe
	Image size: 13312
	 Image MD5: BF2466B3E18E970D8A976FB95FC1CA85
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 288
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): PSched
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: QoS Packet Scheduler
   Description: QoS Packet Scheduler
	Image path: system32\DRIVERS\psched.sys
	Image size: 69120
	 Image MD5: 09298EC810B07E5D582CB3A3F9255424
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1
 Depends On services: Gpc

Service (registry key): Ptilink
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Direct Parallel Link Driver
   Description: Direct Parallel Link Driver
	Image path: system32\DRIVERS\ptilink.sys
	Image size: 17792
	 Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): ql1080
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): Ql10wnt
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): ql12160
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): ql1240
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): ql1280
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): RasAcd
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Access Auto Connection Driver
   Description: Remote Access Auto Connection Driver
	Image path: system32\DRIVERS\rasacd.sys
	Image size: 8832
	 Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): RasAuto
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Access Auto Connection Manager
   Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RasMan,Tapisrv

Service (registry key): Rasl2tp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: WAN Miniport (L2TP)
   Description: WAN Miniport (L2TP)
	Image path: system32\DRIVERS\rasl2tp.sys
	Image size: 51328
	 Image MD5: 11B4A627BC9614B885C4969BFA5FF8A6
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): RasMan
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Access Connection Manager
   Description: Creates a network connection.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: Tapisrv

Service (registry key): RasPppoe
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Access PPPOE Driver
   Description: Remote Access PPPOE Driver
	Image path: system32\DRIVERS\raspppoe.sys
	Image size: 41472
	 Image MD5: 5BC962F2654137C9909C3D4603587DEE
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Raspti
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Direct Parallel
   Description: Direct Parallel
	Image path: system32\DRIVERS\raspti.sys
	Image size: 16512
	 Image MD5: FDBB1D60066FCFBB7452FD8F9829B242
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Rdbss
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Rdbss
   Description: Rdbss
	Image path: system32\DRIVERS\rdbss.sys
	Image size: 175744
	 Image MD5: 7AD224AD1A1437FE28D89CF22B17780A
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 2
 Error Control: 1

Service (registry key): RDPCDD
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: System32\DRIVERS\RDPCDD.sys
	Image size: 4224
	 Image MD5: 4912D5B403614CE99C28420F75353332
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): RDPDD
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): rdpdr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Terminal Server Device Redirector Driver
	Image path: system32\DRIVERS\rdpdr.sys
	Image size: 196224
	 Image MD5: 15CABD0F7C00C47C70124907916AF3F1
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): RDPNP
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): RDPWD
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): RDSessMgr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Desktop Help Session Manager
   Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\sessmgr.exe
	Image size: 141312
	 Image MD5: 3C37BF86641BDA977C3BF8A840F3B7FA
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): redbook
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Digital CD Audio Playback Filter Driver
	Image path: system32\DRIVERS\redbook.sys
	Image size: 57600
	 Image MD5: F828DD7E1419B6653894A8F97A0094C5
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): RemoteAccess
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Routing and Remote Access
   Description: Offers routing services to businesses in local area and wide area network environments.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1
 Depends On services: RpcSS
 Depends On group: NetBIOSGroup

Service (registry key): RemoteRegistry
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Registry
   Description: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\system32\svchost.exe -k LocalService
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): RpcLocator
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Procedure Call (RPC) Locator
   Description: Manages the RPC name service database.
   Object name: NT AUTHORITY\NetworkService
	Image path: %SystemRoot%\system32\locator.exe
	Image size: 75264
	 Image MD5: AAED593F84AFA419BBAE8572AF87CF6A
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: LanmanWorkstation

Service (registry key): RpcSs
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Procedure Call (RPC)
   Description: Provides the endpoint mapper and other miscellaneous RPC services.
   Object name: NT Authority\NetworkService
	Image path: %SystemRoot%\system32\svchost -k rpcss
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): rspndr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Link-Layer Topology Discovery Responder
   Description: Allows this PC to be discovered and located on the network.
	Image path: system32\DRIVERS\rspndr.sys
	Image size: 62336
	 Image MD5: 0E11B35E972796042044BC27CE13B065
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 1

Service (registry key): RSVP
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: QoS RSVP
   Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\rsvp.exe
	Image size: 132608
	 Image MD5: 471B3F9741D762ABE75E9DEEA4787E47
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: TcpIp,Afd,RpcSs

Service (registry key): SamSs
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Security Accounts Manager
   Description: Stores security information for local user accounts.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\lsass.exe
	Image size: 13312
	 Image MD5: BF2466B3E18E970D8A976FB95FC1CA85
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): SASDIFSV
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SASDIFSV
	Image path: \??\D:\Super ANTI-SPYWARE\SASDIFSV.SYS
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): SASENUM
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SASENUM
	Image path: \??\D:\main\Super ANTI-SPYWARE\SASENUM.SYS
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): SASKUTIL
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SASKUTIL
	Image path: \??\D:\main\Super ANTI-SPYWARE\SASKUTIL.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): SCardSvr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Smart Card
   Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\System32\SCardSvr.exe
	Image size: 95744
	 Image MD5: 86D007E7A654B9A71D1D7D856B104353
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 0
 Depends On services: PlugPlay

Service (registry key): Schedule
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Task Scheduler
   Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): ScsiPort
 Registry path: \SYSTEM\CurrentControlSet\Services\
	Image path: %SystemRoot%\system32\drivers\scsiport.sys
	Image size: 96384
	 Image MD5: 76C465F570E90C28942D52CCB2580A10
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): Secdrv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Secdrv
   Description: SafeDisc driver
	Image path: system32\DRIVERS\secdrv.sys
	Image size: 20480
	 Image MD5: 90A3935D05B494A5A39D37E71F09A677
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 1

Service (registry key): seclogon
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Secondary Logon
   Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 288
 Error Control: 0

Service (registry key): SENS
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: System Event Notification
   Description: Tracks system events such as Windows logon, network, and power events.  Notifies COM+ Event System subscribers of these events.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: EventSystem

Service (registry key): serenum
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Serenum Filter Driver
	Image path: system32\DRIVERS\serenum.sys
	Image size: 15744
	 Image MD5: 0F29512CCD6BEAD730039FB4BD2C85CE
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Serial
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Serial port driver
	Image path: system32\DRIVERS\serial.sys
	Image size: 64512
	 Image MD5: CCA207A8896D4C6A0C9CE29A4AE411A7
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): Sfloppy
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0
 Depends On group: "SCSI miniport"

Service (registry key): SharedAccess
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Firewall/Internet Connection Sharing (ICS)
   Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: Netman,WinMgmt

Service (registry key): ShellHWDetection
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Shell Hardware Detection
   Description: Provides notifications for AutoPlay hardware events.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 0
 Depends On services: RpcSs

Service (registry key): Simbad
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): SLIP
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: BDA Slip De-Framer
	Image path: system32\DRIVERS\SLIP.sys
	Image size: 11136
	 Image MD5: 866D538EBE33709A5C9F5C62B73B7D14
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): SmcService
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Sygate Personal Firewall
   Object name: LocalSystem
	Image path: D:\Sygate Personal Firewall\smc.exe
	Image size: 2577632
	 Image MD5: 8ECA9578BFC7DA42D6D24C862224C5DB
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 272
 Error Control: 1

Service (registry key): snapman
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Acronis Snapshots Manager
	Image path: system32\DRIVERS\snapman.sys
	Image size: 129248
	 Image MD5: BCC773872041AA59BC9A6CF770FB32E2
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1
 Depends On services: tdrpman

Service (registry key): SONYPVU1
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Sony USB Filter Driver (SONYPVU1)
	Image path: system32\DRIVERS\SONYPVU1.SYS
	Image size: 7552
	 Image MD5: A1ECEEAA5C5E74B2499EB51D38185B84
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Sparrow
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): splitter
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Kernel Audio Splitter
	Image path: system32\drivers\splitter.sys
	Image size: 6272
	 Image MD5: AB8B92451ECB048A4D1DE7C3FFCB4A9F
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): Spooler
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Print Spooler
   Description: Loads files to memory for later printing.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\spoolsv.exe
	Image size: 57856
	 Image MD5: D8E14A61ACC1D4A6CD0D38AEBAC7FA3B
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 272
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): sr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: System Restore Filter Driver
	Image path: \SystemRoot\system32\DRIVERS\sr.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 2
 Error Control: 1

Service (registry key): srservice
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: System Restore Service
   Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): Srv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Srv
   Description: Srv
	Image path: system32\DRIVERS\srv.sys
	Image size: 333952
	 Image MD5: 3BB03F2BA89D2BE417206C373D2AF17C
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 2
 Error Control: 1

Service (registry key): SSDPSRV
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SSDP Discovery Service
   Description: Enables discovery of UPnP devices on your home network.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\system32\svchost.exe -k LocalService
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: HTTP

Service (registry key): stisvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Image Acquisition (WIA)
   Description: Provides image acquisition services for scanners and cameras.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): streamip
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: BDA IPSink
	Image path: system32\DRIVERS\StreamIP.sys
	Image size: 15232
	 Image MD5: 77813007BA6265C4B6098187E6ED79D2
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): swenum
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Software Bus Driver
	Image path: system32\DRIVERS\swenum.sys
	Image size: 4352
	 Image MD5: 3941D127AEF12E93ADDF6FE6EE027E0F
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): swmidi
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Kernel GS Wavetable Synthesizer
	Image path: system32\drivers\swmidi.sys
	Image size: 56576
	 Image MD5: 8CE882BCC6CF8A62F2B2323D95CB3D01
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): SwPrv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: MS Software Shadow Copy Provider
   Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{D2DC9943-9992-4442-A071-012693010477}
	Image size: 5120
	 Image MD5: 0A9BA6AF531AFE7FA5E4FB973852D863
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 0
 Depends On services: rpcss

Service (registry key): swwd
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): symc810
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): symc8xx
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): sym_hi
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): sym_u3
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): sysaudio
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Kernel System Audio Device
	Image path: system32\drivers\sysaudio.sys
	Image size: 60800
	 Image MD5: 8B83F3ED0F1688B4958F77CD6D2BF290
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): SysmonLog
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Performance Logs and Alerts
   Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: NT Authority\NetworkService
	Image path: %SystemRoot%\system32\smlogsvc.exe
	Image size: 89600
	 Image MD5: C7ABBC59B43274B1109DF6B24D617051
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1

Service (registry key): TapiSrv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Telephony
   Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: PlugPlay,RpcSs

Service (registry key): Tcpip
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: TCP/IP Protocol Driver
   Description: TCP/IP Protocol Driver
	Image path: system32\DRIVERS\tcpip.sys
	Image size: 361600
	 Image MD5: 9AEFA14BD6B182D61E3119FA5F436D3D
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1
 Depends On services: IPSec

Service (registry key): TDPIPE
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): tdrpman
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Acronis Try&Decide and Restore Points filter
	Image path: system32\DRIVERS\tdrpman.sys
	Image size: 368544
	 Image MD5: EB53EC341458256DEAE2AD58822C4A17
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): TDTCP
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): Teefer
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Teefer for NT
	Image path: SYSTEM32\Drivers\Teefer.sys
	Image size: 60496
	 Image MD5: 99336D4DA97B4EEAAFAB46A4F8E512E6
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1
 Depends On group: NDIS

Service (registry key): TermDD
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Terminal Device Driver
	Image path: system32\DRIVERS\termdd.sys
	Image size: 40840
	 Image MD5: 88155247177638048422893737429D9E
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): TermService
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Terminal Services
   Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost -k DComLaunch
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): Themes
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Themes
   Description: Provides user experience theme management.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): tifsfilter
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Acronis True Image FS Filter
	Image path: system32\DRIVERS\tifsfilt.sys
	Image size: 44384
	 Image MD5: B0B3122BFF3910E0BA97014045467778
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 2
 Error Control: 1

Service (registry key): timounter
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Acronis True Image Backup Archive Explorer
	Image path: system32\DRIVERS\timntr.sys
	Image size: 441760
	 Image MD5: 13BFE330880AC0CE8672D00AA5AFF738
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): TlntSvr
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Telnet
   Description: Enables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\tlntsvr.exe
	Image size: 73216
	 Image MD5: DB7205804759FF62C34E3EFD8A4CC76A
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 16
 Error Control: 1
 Depends On services: RPCSS,TCPIP,NTLMSSP

Service (registry key): TosIde
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): TrkWks
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Distributed Link Tracking Client
   Description: Maintains links between NTFS files within a computer or across computers in a network domain.
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): TryAndDecideService
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Acronis Try And Decide Service
   Description: Acronis Try And Decide Service
   Object name: LocalSystem
	Image path: "C:\Program Files\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe"
	Image size: 492720
	 Image MD5: 02C16294D7903FC0C7F2DE953126B28A
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 16
 Error Control: 1

Service (registry key): TSDDD
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): TuneUp.Defrag
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: TuneUp Drive Defrag Service
   Description: Allows TuneUp Drive Defrag to defragment your disks so that your computer runs faster and more efficiently.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\TuneUpDefragService.exe
	Image size: 306432
	 Image MD5: 233FCD3443CFBBAA27E7E463DCCBC528
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 0

Service (registry key): Udfs
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 2
 Error Control: 1

Service (registry key): ultra
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): Update
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microcode Update Driver
	Image path: system32\DRIVERS\update.sys
	Image size: 384768
	 Image MD5: 402DDC88356B1BAC0EE3DD1580C76A31
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): upnphost
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Universal Plug and Play Device Host
   Description: Provides support to host Universal Plug and Play devices.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\system32\svchost.exe -k LocalService
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: SSDPSRV,HTTP

Service (registry key): UPS
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Uninterruptible Power Supply
   Description: Manages an uninterruptible power supply (UPS) connected to the computer.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\System32\ups.exe
	Image size: 18432
	 Image MD5: 05365FB38FCA1E98F7A566AAAF5D1815
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1

Service (registry key): usb
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): usbaudio
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: USB Audio Driver (WDM)
	Image path: system32\drivers\usbaudio.sys
	Image size: 60032
	 Image MD5: E919708DB44ED8543A7C017953148330
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): usbccgp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft USB Generic Parent Driver
	Image path: system32\DRIVERS\usbccgp.sys
	Image size: 32128
	 Image MD5: 173F317CE0DB8E21322E71B7E60A27E8
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): usbehci
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft USB 2.0 Enhanced Host Controller Miniport Driver
	Image path: system32\DRIVERS\usbehci.sys
	Image size: 30208
	 Image MD5: 65DCF09D0E37D4C6B11B5B0B76D470A7
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): usbhub
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: USB2 Enabled Hub
	Image path: system32\DRIVERS\usbhub.sys
	Image size: 59520
	 Image MD5: 1AB3CDDE553B6E064D2E754EFE20285C
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): usbohci
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft USB Open Host Controller Miniport Driver
	Image path: system32\DRIVERS\usbohci.sys
	Image size: 17152
	 Image MD5: 0DAECCE65366EA32B162F85F07C6753B
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): usbprint
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft USB PRINTER Class
	Image path: system32\DRIVERS\usbprint.sys
	Image size: 25856
	 Image MD5: A717C8721046828520C9EDF31288FC00
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): usbscan
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: USB Scanner Driver
	Image path: system32\DRIVERS\usbscan.sys
	Image size: 15104
	 Image MD5: A0B8CF9DEB1184FBDD20784A58FA75D4
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): USBSTOR
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: USB Mass Storage Driver
	Image path: system32\DRIVERS\USBSTOR.SYS
	Image size: 26368
	 Image MD5: A32426D9B14A089EAA1D922E0C5801A9
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): usprserv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: User Privilege Service
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 272
 Error Control: 1

Service (registry key): UxTuneUp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: TuneUp Theme Extension
   Description: Allows to use visual styles without Microsoft signature.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: Themes

Service (registry key): VgaSave
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: VGA Display Controller.
   Description: Controls the VGA display adapter to provide basic display capabilities.
	Image path: \SystemRoot\System32\drivers\vga.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 0

Service (registry key): ViaIde
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): VolSnap
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 1
 Error Control: 1

Service (registry key): vsdatant
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: vsdatant
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 1
 Error Control: 1

Service (registry key): VSS
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Volume Shadow Copy
   Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\vssvc.exe
	Image size: 289792
	 Image MD5: 7A9DB3A67C333BF0BD42E42B8596854B
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): W32Time
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Time
   Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.

   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1

Service (registry key): W3SVC
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): Wanarp
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Remote Access IP ARP Driver
   Description: Remote Access IP ARP Driver
	Image path: system32\DRIVERS\wanarp.sys
	Image size: 34560
	 Image MD5: E20B95BAEDB550F32DD489265C1DA1F6
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): WDICA
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 0

Service (registry key): wdmaud
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft WINMM WDM Audio Compatibility Driver
	Image path: system32\drivers\wdmaud.sys
	Image size: 83072
	 Image MD5: 6768ACF64B18196494413695F0C3A00F
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): WebClient
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: WebClient
   Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: NT AUTHORITY\LocalService
	Image path: %SystemRoot%\system32\svchost.exe -k LocalService
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: MRxDAV

Service (registry key): wg3n
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SyGate for NT, wg3n
	Image path: \SystemRoot\SYSTEM32\Drivers\wg3n.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 1
 Depends On services: NDIS

Service (registry key): wg4n
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SyGate for NT, wg4n
	Image path: \SystemRoot\SYSTEM32\Drivers\wg4n.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 1
 Depends On services: NDIS

Service (registry key): wg5n
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SyGate for NT, wg5n
	Image path: \SystemRoot\SYSTEM32\Drivers\wg5n.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 1
 Depends On services: NDIS

Service (registry key): wg6n
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: SyGate for NT, wg6n
	Image path: \SystemRoot\SYSTEM32\Drivers\wg6n.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 1
 Error Control: 1
 Depends On services: NDIS

Service (registry key): winmgmt
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Management Instrumentation
   Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
	Image path: %systemroot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 0
 Depends On services: RPCSS

Service (registry key): Winsock
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 4
 Error Control: 1

Service (registry key): WinSock2
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): WinTrust
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): WmdmPmSN
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Portable Media Serial Number Service
   Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1

Service (registry key): Wmi
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Management Instrumentation Driver Extensions
   Description: Provides systems management information to and from drivers.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1

Service (registry key): WmiAcpi
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Microsoft Windows Management Interface for ACPI
	Image path: system32\DRIVERS\wmiacpi.sys
	Image size: 8832
	 Image MD5: C42584FD66CE9E17403AEBCA199F7BDB
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): WmiApRpl
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): WmiApSrv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: WMI Performance Adapter
   Description: Provides performance library information from WMI HiPerf providers.
   Object name: LocalSystem
	Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe
	Image size: 126464
	 Image MD5: E0673F1106E62A68D2257E376079F821
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): WMPNetworkSvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Media Player Network Sharing Service
   Description: Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play
   Object name: NT AUTHORITY\NetworkService
	Image path: "C:\Program Files\Windows Media Player\WMPNetwk.exe"
	Image size: 913408
	 Image MD5: F74E3D9A7FA9556C3BBB14D4E5E63D3B
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 16
 Error Control: 1
 Depends On services: upnphost,http,HTTPFilter

Service (registry key): wpsdrvnt
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: wpsdrvnt
	Image path: \??\C:\WINDOWS\system32\drivers\wpsdrvnt.sys
	Image size: 21075
	 Image MD5: 93C145DCEB13156322423EFD62D4549A
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): WS2IFSL
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Socket 2.0 Non-IFS Service Provider Support Environment
	Image path: \SystemRoot\System32\drivers\ws2ifsl.sys
	Image size: 0
	 Image MD5: D41D8CD98F00B204E9800998ECF8427E
   Control Set: CurrentControlSet
		 Start: 1
		  Type: 1
 Error Control: 1

Service (registry key): wscsvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Security Center
   Description: Monitors system security settings and configurations.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs,winmgmt

Service (registry key): WSTCODEC
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: World Standard Teletext Codec
	Image path: system32\DRIVERS\WSTCODEC.SYS
	Image size: 19200
	 Image MD5: C98B39829C2BBD34E454150633C62C78
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): wuauserv
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Automatic Updates
   Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site.
   Object name: LocalSystem
	Image path: %systemroot%\system32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 4
		  Type: 32
 Error Control: 1

Service (registry key): WudfPf
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Driver Foundation - User-mode Driver Framework Platform Driver
   Description: Provide communciation services for UMDF components.
	Image path: system32\DRIVERS\WudfPf.sys
	Image size: 77568
	 Image MD5: F15FEAFFFBB3644CCC80C5DA584E6311
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): WudfRd
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Driver Foundation - User-mode Driver Framework Reflector
   Description: Reflect device requests to user-mode driver drivers
	Image path: system32\DRIVERS\wudfrd.sys
	Image size: 82944
	 Image MD5: 28B524262BCE6DE1F7EF9F510BA3985B
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): WudfSvc
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Windows Driver Foundation - User-mode Driver Framework
   Description: Manages user-mode driver host processes
   Object name: LocalSystem
	Image path: %SystemRoot%\system32\svchost.exe -k WudfServiceGroup
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: PlugPlay

Service (registry key): WZCSVC
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Wireless Zero Configuration
   Description: Provides automatic configuration for the 802.11 adapters
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 2
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs,Ndisuio

Service (registry key): xmlprov
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: Network Provisioning Service
   Description: Manages XML configuration files on a domain basis for automatic network provisioning.
   Object name: LocalSystem
	Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
	Image size: 14336
	 Image MD5: 27C6D03BCDB8CFEB96B716F3D8BE3E18
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): ymkquo
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): ZSMC301b
 Registry path: \SYSTEM\CurrentControlSet\Services\
  Display name: A4 Tech USB PC Camera
	Image path: System32\Drivers\usbVM31b.sys
	Image size: 91263
	 Image MD5: 58C938BDD89281DC1A64B1DCE675FCE4
   Control Set: CurrentControlSet
		 Start: 3
		  Type: 1
 Error Control: 1

Service (registry key): {3C7E73A6-1083-4A54-9184-BC633B6E56BB}
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

Service (registry key): {D03C41AC-5DC1-4B52-95F3-FA66BEBCB37F}
 Registry path: \SYSTEM\CurrentControlSet\Services\
   Control Set: CurrentControlSet
		 Start: 0
		  Type: 0
 Error Control: 0

erm, one question, after all this can i uninstall the SpyBot S&D?
and now i can't see hidden folders -_-
tell me if somethings up.

Thanks,
TheSadness

#15 Hoov

Hoov

  • Malware Response Team
  • 3,519 posts
  • OFFLINE
  •  
  • Location:Mikado Michigan
  • Local time:09:10 PM

Posted 26 February 2009 - 12:12 PM

I just looked at all the posts you have here, and you seem to be having multiple problems. Yes you can uninstall Spybot, but it is a very good program.

The next thing I want you to do is go to the run command and type in sfc /scannow Let me know if it finds anything.

Next Please perform a scan with Panda ActiveScan - ActiveScan does not remove adware/spyware but will autoclean for viruses & worms.
http://www.pandasoftware.com/products/activescan.htm

1. Click "Scan Your PC".
2. A new window will open. Click "Check Now!".
3. Fill in your registration and click "Scan Now!".
4. You may receive an alert on the address bar that "This site might require the following ActiveX control...Click here to install...". Click on that alert and then Click Install ActiveX component.
5. A new window will appear asking "Do you want to install this software?" Name: asinst.cab.
6. Select "Install" to download the ActiveX controls that allows ActiveScan to run.
7. If running MSAS beta you may receive an alert that an IE ActiveX program requires your approval. Click "Allow".
8. Select a device to scan: Click on "Local Disks" [allow it to Auto Clean].
9. When the scan completes, if anything malicious is detected, click the "See Report button", then "Save Report" to your desktop.
10. Post back the results of your scan and any infected files that are found but not deleted.

And last Download WinSockFix from here or here.

Backing up the Registry

1. Double click on WinsockXPFix.exe to open.
2. On the Winsock and TCP Repair Utility screen, click "ReG-Backup"
3. On the ERDNT Welcome screen, click "OK".
4. On the Backup to: screen, click "OK".
5. On the Folder does not exist question screen click "Yes".
6. You will see a status screen as your registry is being backed up.
7. On the Registry backup is complete! screen, click "OK" and you will go back to the main window.

Resetting the Winsock Stack

1. On the Winsock and TCP Repair Utility screen, click "Fix".
2. On the Apply the VB_Winsock fix? screen click "Yes".
3. The screen will display a status message "repair completed please reboot."
4. On the Repair Completed screen click "OK" to reboot your computer.
5. If your computer was not using DHCP, you will need to reconfigure TCP/IP.
6. You should have connectivity restored.

Winsock Repair Tutorial| Tutorial with graphics


Let me know how the computer is running after the above tools are run. The speed of your internet connection, any popups that you get, anything that is not as it should be.
Visiting From SpywareHammer.com and DonHoover.net

Tilting at windmills hurts you more than the windmills.
-From the Notebooks of Lazarus Long
Senior of the Howard Families

Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users