Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

cannot access web pages after zero access virus


  • Please log in to reply
25 replies to this topic

#1 majik624

majik624

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 10 September 2012 - 10:56 AM

Hi,
I was told to post these logs from combofix, MiniToolBox and Farbar Service Scanner in the networking forum after getting a clean bill of health from a zero access rootkit virus. I still can't access the internet using web addresses that have words. I can ping google at 74.125.227.102 but I can't reach google.com. I'm pretty sure its a DNS issue but I don't know how to fix it. Any help would be appreciated. Thanks,
Manfred


MiniToolBox by Farbar Version: 23-07-2012
Ran by majik (administrator) on 09-09-2012 at 18:58:07
Microsoft Windows 7 Home Premium (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

127.0.0.1 localhost

========================= IP Configuration: ================================

NVIDIA nForce Networking Controller = Local Area Connection (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : majik-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : westell.com

Ethernet adapter Local Area Connection:

Connection-specific DNS Suffix . : westell.com
Description . . . . . . . . . . . : NVIDIA nForce 10/100 Mbps Ethernet
Physical Address. . . . . . . . . : 44-87-FC-7A-E3-01
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::4422:aa89:1c87:43a8%17(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.30(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Sunday, September 09, 2012 6:40:56 PM
Lease Expires . . . . . . . . . . : Monday, September 10, 2012 6:44:46 PM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 189040636
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-13-56-86-5F-44-87-FC-7A-E3-01
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.westell.com:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : westell.com
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:953c:2065:ca6:3f57:fee1(Preferred)
Link-local IPv6 Address . . . . . : fe80::2065:ca6:3f57:fee1%11(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled
Server: dslrouter.westell.com
Address: 192.168.1.1

Name: google.com
Addresses: 2607:f8b0:4004:801::1005
74.125.228.39
74.125.228.34
74.125.228.41
74.125.228.37
74.125.228.36
74.125.228.38
74.125.228.35
74.125.228.40
74.125.228.46
74.125.228.32
74.125.228.33

Ping request could not find host google.com. Please check the name and try again.
Server: dslrouter.westell.com
Address: 192.168.1.1

Name: yahoo.com
Addresses: 98.138.253.109
72.30.38.140
98.139.183.24

Ping request could not find host yahoo.com. Please check the name and try again.
Server: dslrouter.westell.com
Address: 192.168.1.1

Name: bleepingcomputer.com
Address: 208.43.87.2

Ping request could not find host bleepingcomputer.com. Please check the name and try again.

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
17...44 87 fc 7a e3 01 ......NVIDIA nForce 10/100 Mbps Ethernet
1...........................Software Loopback Interface 1
19...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
11...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.30 21
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.30 276
192.168.1.30 255.255.255.255 On-link 192.168.1.30 276
192.168.1.255 255.255.255.255 On-link 192.168.1.30 276
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.30 276
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.30 276
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
11 58 ::/0 On-link
1 306 ::1/128 On-link
11 58 2001::/32 On-link
11 306 2001:0:9d38:953c:2065:ca6:3f57:fee1/128
On-link
17 276 fe80::/64 On-link
11 306 fe80::/64 On-link
11 306 fe80::2065:ca6:3f57:fee1/128
On-link
17 276 fe80::4422:aa89:1c87:43a8/128
On-link
1 306 ff00::/8 On-link
11 306 ff00::/8 On-link
17 276 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"

x64-Catalog5 02 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

x64-Catalog5 03 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (09/09/2012 06:54:12 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:40:57 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 10:37:05 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:53:53 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:40:00 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 01:17:35 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 01:07:33 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 00:55:38 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 00:53:43 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/05/2012 04:24:25 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out


System errors:
=============
Error: (09/09/2012 06:41:04 PM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222

Error: (09/09/2012 06:41:04 PM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/09/2012 06:41:01 PM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222

Error: (09/09/2012 06:40:58 PM) (Source: Service Control Manager) (User: )
Description: The Windows Defender service terminated with the following error:
%%126

Error: (09/09/2012 06:40:53 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 6:39:54 PM on ?9/?9/?2012 was unexpected.

Error: (09/09/2012 06:36:26 PM) (Source: Service Control Manager) (User: )
Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.

Error: (09/09/2012 04:44:13 PM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/09/2012 04:37:09 PM) (Source: cdrom) (User: )
Description: The device, \Device\CdRom0, has a bad block.

Error: (09/09/2012 02:43:05 PM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/09/2012 01:29:21 PM) (Source: BROWSER) (User: )
Description: The browser was unable to promote itself to master browser. The browser will continue
to attempt to promote itself to the master browser, but will no longer log any events in the event log in Event Viewer.


Microsoft Office Sessions:
=========================
Error: (09/09/2012 06:54:12 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:40:57 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 10:37:05 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:53:53 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:40:00 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 01:17:35 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 01:07:33 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 00:55:38 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/07/2012 00:53:43 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/05/2012 04:24:25 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out


**** End of log ****


Farbar Service Scanner Version: 06-08-2012
Ran by majik (administrator) on 09-09-2012 at 19:04:36
Running from "C:\Users\majik\Desktop"
Microsoft Windows 7 Home Premium (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Attempt to access Local Host IP returned error: Localhost is blocked: Other errors
LAN connected.
Attempt to access Google IP returned error: Other errors
Attempt to access Google.com returned error: Other errors
Attempt to access Yahoo IP returned error: Other errors
Attempt to access Yahoo.com returned error: Other errors


Windows Firewall:
=============

Firewall Disabled Policy:
==================
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall"=DWORD:0


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is OK.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys
[2009-07-13 19:25] - [2009-07-13 21:45] - 1898576 ____A (Microsoft Corporation) 912107716BAB424C7870E8E6AF5E07E1

C:\Windows\System32\dnsrslvr.dll
[2009-07-13 19:21] - [2009-07-13 21:40] - 0182272 ____A (Microsoft Corporation) 676108C4E3AA6F6B34633748BD0BEBD9

C:\Windows\System32\mpssvc.dll
[2009-07-13 20:09] - [2009-07-13 21:41] - 0824832 ____A (Microsoft Corporation) AECAB449567D1846DAD63ECE49E893E3

C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll
[2009-07-13 19:36] - [2009-07-13 21:41] - 0170496 ____A (Microsoft Corporation) 765A27C3279CE11D14CB9E4F5869FCA5

C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll
[2009-07-13 20:36] - [2009-07-13 21:41] - 2418176 ____A (Microsoft Corporation) 38340204A2D0228F1E87740FC5E554A7

C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****

Moderator Edit: Removed Combofix Log, The combofix log was not part of what was asked for .
Original Topic: http://www.bleepingcomputer.com/forums/topic467609.html
Roger

Edited by rotor123, 10 September 2012 - 04:47 PM.


BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:51 PM

Posted 10 September 2012 - 10:22 PM

You have SUNBELT products(Vipre antivirus,lavasoft adaware).Uninstall them ,restart the PC and see if you're able to connect

Download

Autoruns

Extract and launch autoruns.exe

Allow the scan to get finished

Now click on FILE-SAVE

Filename:Autoruns.txt
Save as :Text

Paste the text contents here

Download

mini toolbox

Checkmark following boxes:

List Winsock Entries
List last 10 Event Viewer log
List Installed Programs

Click Go and post the result.

#3 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 11 September 2012 - 12:54 PM

I uninstalled adaware and vipre. Still no internet. I had a hell of a time getting rid of vipre antivirus as it didn't come with an uninstall program and didn't show up in the installed programs list for windows. I didn't install it and I have no idea where it came from. I finally found a program made by the vipre people themselves to uninstall it. It can be found at: http://sunbelt-software.com/support/vc/VClean.exe. The logs you requested are:

MiniToolBox by Farbar Version: 23-07-2012
Ran by majik (administrator) on 11-09-2012 at 13:38:31
Microsoft Windows 7 Home Premium (X64)
Boot Mode: Normal
***************************************************************************
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"

x64-Catalog5 02 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

x64-Catalog5 03 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (09/11/2012 01:25:42 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:39:16 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:36:46 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:09:12 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/10/2012 04:00:34 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:54:12 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:40:57 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 10:37:05 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:53:53 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:40:00 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out


System errors:
=============
Error: (09/11/2012 01:25:54 PM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222

Error: (09/11/2012 01:25:54 PM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/11/2012 01:25:37 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 1:24:06 PM on ?9/?11/?2012 was unexpected.

Error: (09/11/2012 00:41:25 PM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/11/2012 10:41:25 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/11/2012 08:41:25 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/11/2012 06:41:25 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/11/2012 04:41:24 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/11/2012 02:39:26 AM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222

Error: (09/11/2012 02:39:23 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.


Microsoft Office Sessions:
=========================
Error: (09/11/2012 01:25:42 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:39:16 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:36:46 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:09:12 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/10/2012 04:00:34 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:54:12 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:40:57 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 10:37:05 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:53:53 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 09:40:00 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out


=========================== Installed Programs ============================

Adobe Flash Player 11 ActiveX 64-bit (Version: 11.0.1.152)
Altdo Video to AVI WMV DVD Converter&Burner 5.7
Amazing Adventures - The Lost Tomb (Version: 1.0.0)
Amazon Unbox Video (Version: 2.2.0.153)
Angry Birds Space (Version: 1.0.0)
Audials (Version: 8.0.46302.200)
Audials TV (Version: 1.3.10803.300)
AVS DVD Authoring
AVS Update Manager 1.0
AVS Video Recorder 2.4
AVS4YOU Software Navigator 1.3
Azkend (Version: 1.0)
Azkend 2 - The World Beneath (Version: 1.0)
Bejeweled Twist 1.0 (Version: 1.0)
Bookworm Adventures Vol. 2 (Version: 1.0.4)
Bulk Rename Utility 2.7.1.2
calibre (Version: 0.8.64)
CCleaner (Version: 3.22)
CDA to MP3 Converter v3.3 build 1228
CDBurnerXP (Version: 4.3.7.2423)
CDBurnerXP (Version: 4.4.1.3341)
CleanMem (Version: v2.3.1)
CloneCD
Corel DVD MovieFactory 7 (Version: 7.0.0)
Corel DVD MovieFactory 7 TBYB (Version: 7.0.0)
dBpoweramp m4a Codec (Version: Release 14 r2)
dBpoweramp Musepack Codec
DHTML Editing Component (Version: 6.02.0001)
doPDF 7.3 printer
DVDStyler v2.1
Evolver (Version: 1.0)
ffdshow v1.1.4399 [2012-03-22] (Version: 1.1.4399.0)
Foxit Creator (Version: 3,1,0,1210)
Gardenscapes 2012 Full
Glary Utilities Pro 2.47.0.1539 (Version: 2.47.0.1539)
Google Chrome (Version: 21.0.1180.89)
Google Earth (Version: 5.1.3533.1731)
Google Earth Plus 6.0.0.1735 (Version: 6.0.0.1735)
Google Earth Plus 6.0.3.2197 Final (Version: 6.0.3.2197)
Google Update Helper (Version: 1.3.21.115)
gpedt.msc 1.0
GreedyTorrent v1.01 beta build 170
Hamster Free EbookConverter (Version: 1.0.0.13)
HitmanPro 3.6 (Version: 3.6.1.164)
IrfanView (remove only) (Version: 4.32)
iSkysoft DRM Removal(Build 1.1.0.0)
Java Auto Updater (Version: 2.0.5.1)
Jewel Quest - The Sapphire Dragon Standard Edition (Version: 1.0)
Jewel Quest - The Sleepless Star (Version: 1.067)
Jewel Quest 5 The Sleepless Star CE
Kyodai Mahjongg 2006 v1.42
Magic ISO Maker v5.5 (build 0272)
Malwarebytes Anti-Malware version 1.62.0.1300 (Version: 1.62.0.1300)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4734.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.4734.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.4734.1000)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (Version: 10.0.30319)
Mobipocket Reader 6.2 (Version: 6.2.608)
Mozilla Firefox (3.6.18) (Version: 3.6.18 (en-US))
Mozilla Thunderbird (3.1.14) (Version: 3.1.14 (en-US))
Mystery Case Files - 13th Skull Collectors Edition (Version: 1.0.3.616)
NVIDIA Display Control Panel (Version: 6.14.11.9713)
NVIDIA Drivers (Version: 1.3)
NVIDIA ForceWare Network Access Manager (Version: 1.00.7305)
PeerBlock 1.1 (r518) (Version: 1.1.0.518)
Peggle Deluxe (Version: 1.0)
Peggle Deluxe 1.01
PFConfig 1.0.163 (Version: 1.0.163)
PFPortChecker 1.0.39 (Version: 1.0.39)
Pickers Adventures in Rust version 1.0 (Version: 1.0)
Portforward Static IP Address 1.0.47 (Version: 1.0.47)
Process Lasso (Version: 5.1.0.30)
RAR Password Recovery v1.1 RC17 (remove only)
Replay Media Catcher 4 (Version: 4.1.1)
Revo Uninstaller Pro 2.5.0 (Version: 2.5.0)
Ricochet Xtreme
Saving Private Sheep (Version: v1.0)
Snood 4
Snood for Windows version 3.52-W
Speccy (Version: 1.17)
SUPERAntiSpyware (Version: 5.5.1012)
TCA-1.31C Driver Version 1.0
TCA-131 Version 1.0
The Clumsys (Version: 1.0.8)
TiffPdfCleaner
TSView 6.2.4.5
Tumble Bees To Go (Version: 1.0)
Turbo Lister 2 (Version: 2.00.0000)
VirtualCloneDrive
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (Version: 9.0.30729.01)
VLC media player 2.0.1 (Version: 2.0.1)
Water Bugs 1.15
Windows Installer Clean Up (Version: 3.00.00.0000)
Windows Media Encoder 9 Series
Windows Media Encoder 9 Series (Version: 9.00.2980)
WinHTTrack Website Copier 3.43-9C (x64) (Version: 3.43.9)
WinPatrol (Version: 20.5.2011.0)
Wondershare Media Converter(Build 1.2.1.0)
Yawcam 0.3.7

**** End of log ****


I await your response. Thanks,
Manfred

#4 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 11 September 2012 - 01:00 PM

The post was too long so I split it up:"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms" "" "" ""
+ "rdpclip" "" "" "File not found: rdpclip"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit" "" "" ""
+ "C:\Windows\system32\userinit.exe" "Userinit Logon Application" "Microsoft Corporation" "c:\windows\system32\userinit.exe"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\VmApplet" "" "" ""
+ "SystemPropertiesPerformance.exe" "Change Computer Performance Settings" "Microsoft Corporation" "c:\windows\system32\systempropertiesperformance.exe"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell" "" "" ""
+ "Explorer.exe" "Windows Explorer" "Microsoft Corporation" "c:\windows\explorer.exe"
"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\AlternateShell" "" "" ""
+ "cmd.exe" "Windows Command Processor" "Microsoft Corporation" "c:\windows\system32\cmd.exe"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "RegProt" "" "" "c:\regprot\regprot.exe"
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "" "" ""
+ "eBook USB Driver.lnk" "eBook USB Driver" "" "c:\program files (x86)\ebook technologies\ebook usb driver\trayebu.exe"
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Browser Customizations" "IEAK branding" "Microsoft Corporation" "c:\windows\system32\iedkcs32.dll"
+ "Internet Explorer" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\system32\ie4uinit.exe"
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\system32\unregmp2.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\system32\unregmp2.exe"
+ "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "Microsoft Corporation" "c:\windows\system32\mscories.dll"
+ "Themes Setup" "Windows Theme API" "Microsoft Corporation" "c:\windows\system32\themeui.dll"
+ "Web Platform Customizations" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\system32\ie4uinit.exe"
+ "Windows Desktop Update" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\IconServiceLib" "" "" ""
+ "IconCodecService.dll" "Converts a PNG part of the icon to a legacy bmp icon" "Microsoft Corporation" "c:\windows\system32\iconcodecservice.dll"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Browser Customizations" "IEAK branding" "Microsoft Corporation" "c:\windows\syswow64\iedkcs32.dll"
+ "Internet Explorer" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\syswow64\ie4uinit.exe"
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files (x86)\windows mail\winmail.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\syswow64\unregmp2.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\syswow64\unregmp2.exe"
+ "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "Microsoft Corporation" "c:\windows\syswow64\mscories.dll"
+ "Themes Setup" "Windows Theme API" "Microsoft Corporation" "c:\windows\syswow64\themeui.dll"
+ "Web Platform Customizations" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\syswow64\ie4uinit.exe"
+ "Windows Desktop Update" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "PeerBlock" "PeerBlock" "PeerBlock, LLC" "c:\program files\peerblock\peerblock.exe"
"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" ""
+ "application/octet-stream" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll"
+ "application/x-complus" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll"
+ "application/x-msdownload" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll"
+ "deflate" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "gzip" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office14\msoxmlmf.dll"
"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" ""
+ "about" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "cdl" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "dvd" "ActiveX control for streaming video" "Microsoft Corporation" "c:\windows\system32\msvidctl.dll"
+ "file" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "ftp" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "http" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "https" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "its" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\windows\system32\itss.dll"
+ "javascript" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "local" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "mailto" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "mhtml" "Microsoft Internet Messaging API Resources" "Microsoft Corporation" "c:\windows\system32\inetcomm.dll"
+ "mk" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "ms-its" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\windows\system32\itss.dll"
+ "res" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "tv" "ActiveX control for streaming video" "Microsoft Corporation" "c:\windows\system32\msvidctl.dll"
+ "vbscript" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad" "" "" ""
+ "WebCheck" "Web Site Monitor" "Microsoft Corporation" "c:\windows\system32\webcheck.dll"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad" "" "" ""
+ "WebCheck" "Web Site Monitor" "Microsoft Corporation" "c:\windows\syswow64\webcheck.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" ""
+ "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" ""
+ "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Extensions" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell64.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
+ "BRUMenuHandler" "Context Menu Dynamic Link Library" "Bulk Rename Utility" "c:\program files\bulk rename utility\bruhere64.dll"
+ "LavasoftShellExt" "Shell Extension " "Lavasoft Limited" "c:\program files (x86)\lavasoft\ad-aware\shellext_64.dll"
+ "MagicISO" "MagicISO Shell Extension Module" "MagicISO, Inc." "c:\program files (x86)\magiciso\misosh64.dll"
+ "Notepad++64" "ShellHandler for Notepad++ (64 bit)" "" "c:\program files (x86)\notepad++\nppshell_01.dll"
+ "Open With" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "Open With EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "SASContextMenu Class" "SUPERAntiSpyware Context Menu Extension" "SUPERAntiSpyware.com" "c:\program files\superantispyware\sasctxmn64.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
+ "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "Taskband Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "VirtualCloneDrive" "CloseTray" "Elaborate Bytes AG" "c:\program files (x86)\elaborate bytes\virtualclonedrive\elbyvcdshell.dll"
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Context Menu Extension" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
+ "FFSJ" "" "" "c:\windows\syswow64\ffsj\ffsjshl.dll"
+ "Glary Utilities" "Context Menu Handler" "Glarysoft Ltd" "c:\program files (x86)\glary utilities\contexthandler.dll"
+ "Open With" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Open With EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
+ "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Taskband Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\*\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
+ "CryptoSignMenu" "Crypto Shell Extensions" "Microsoft Corporation" "c:\windows\system32\cryptext.dll"
+ "OLE Docfile Property Page" "OLE DocFile Property Page" "Microsoft Corporation" "c:\windows\system32\docprop.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\system32\rshx32.dll"
+ "Summary Properties Page" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
+ "CryptoSignMenu" "Crypto Shell Extensions" "Microsoft Corporation" "c:\windows\syswow64\cryptext.dll"
+ "OLE Docfile Property Page" "OLE DocFile Property Page" "Microsoft Corporation" "c:\windows\syswow64\docprop.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\syswow64\rshx32.dll"
+ "Summary Properties Page" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "CopyAsPathMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
+ "SendTo" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "CopyAsPathMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
+ "SendTo" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" ""
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" ""
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "BRUMenuHandler" "Context Menu Dynamic Link Library" "Bulk Rename Utility" "c:\program files\bulk rename utility\bruhere64.dll"
+ "EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MagicISO" "MagicISO Shell Extension Module" "MagicISO, Inc." "c:\program files (x86)\magiciso\misosh64.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
+ "SASContextMenu Class" "SUPERAntiSpyware Context Menu Extension" "SUPERAntiSpyware.com" "c:\program files\superantispyware\sasctxmn64.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers" "" "" ""
+ "DfsShell Class" "Distributed File System shell extension" "Microsoft Corporation" "c:\windows\system32\dfsshlex.dll"
+ "Folder Customization Tab" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MyFolder menu and properties" "My Documents Folder UI" "Microsoft Corporation" "c:\windows\system32\mydocs.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\system32\rshx32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\PropertySheetHandlers" "" "" ""
+ "DfsShell Class" "Distributed File System shell extension" "Microsoft Corporation" "c:\windows\syswow64\dfsshlex.dll"
+ "Folder Customization Tab" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "MyFolder menu and properties" "My Documents Folder UI" "Microsoft Corporation" "c:\windows\syswow64\mydocs.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\syswow64\rshx32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" ""
+ "FileSystem" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\CopyHookHandlers" "" "" ""
+ "FileSystem" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "New" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "NvCplDesktopContext" "" "NVIDIA Corporation" "c:\windows\system32\nvshext.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "New" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "dBpShell Class" "Provides dBpoweramp Shell Interaction" "Illustrate" "c:\program files (x86)\illustrate\dbpoweramp\dbshell.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files (x86)\common files\adobe\acrobat\activex\pdfshell.dll"
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Extensions" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell64.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
+ "LavasoftShellExt" "Shell Extension " "Lavasoft Limited" "c:\program files (x86)\lavasoft\ad-aware\shellext_64.dll"
+ "Library Location" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MagicISO" "MagicISO Shell Extension Module" "MagicISO, Inc." "c:\program files (x86)\magiciso\misosh64.dll"
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
+ "RUShellExt" "Revo Uninstaller Pro Extension" "VS Revo Group" "c:\program files\vs revo group\revo uninstaller pro\ruext.dll"
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Context Menu Extension" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
+ "Glary Utilities" "Context Menu Handler" "Glarysoft Ltd" "c:\program files (x86)\glary utilities\contexthandler.dll"
+ "Library Location" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "Microsoft Corporation" "c:\windows\system32\ehstorshell.dll"
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "SharingPrivate" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "Microsoft Corporation" "c:\windows\syswow64\ehstorshell.dll"
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "SharingPrivate" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiehelpershim.dll"
+ "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\urlredir.dll"
+ "Spybot-S&D IE Protection" "SBSD IE Protection" "Safer Networking Limited" "c:\program files (x86)\spybot - search & destroy\sdhelper.dll"
+ "Windows Live Sign-in Helper" "WindowsLiveLogin.dll" "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks" "" "" ""
+ "Microsoft Url Search Hook" "Internet Browser" "Microsoft Corporation" "c:\windows\system32\ieframe.dll"
X "Microsoft Url Search Hook" "Internet Browser" "Microsoft Corporation" "c:\windows\system32\ieframe.dll"
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnielinkednotes.dll"
+ "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnie.dll"
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "Spybot - Search & Destroy Configuration" "SBSD IE Protection" "Safer Networking Limited" "c:\program files (x86)\spybot - search & destroy\sdhelper.dll"
"HKLM\System\CurrentControlSet\Services" "" "" ""
X "!SASCORE" "SUPERAntiSpyware Core Service" "SUPERAntiSpyware.com" "c:\program files\superantispyware\sascore64.exe"
X "ADVService" "Manages downloads for the Amazon Unbox Video application." "Amazon.com" "c:\program files (x86)\amazon\amazon unbox video\advwindowsclientservice.exe"
+ "ALG" "Provides support for 3rd party protocol plug-ins for Internet Connection Sharing" "Microsoft Corporation" "c:\windows\system32\alg.exe"
+ "AppIDSvc" "Determines and verifies the identity of an application. Disabling this service will prevent AppLocker from being enforced." "Microsoft Corporation" "c:\windows\system32\appidsvc.dll"
+ "Appinfo" "Facilitates the running of interactive applications with additional administrative privileges. If this service is stopped, users will be unable to launch applications with the additional administrative privileges they may require to perform desired user tasks." "Microsoft Corporation" "c:\windows\system32\appinfo.dll"
+ "aspnet_state" "Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v4.0.30319\aspnet_state.exe"
+ "AudioEndpointBuilder" "Manages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "Microsoft Corporation" "c:\windows\system32\audiosrv.dll"
+ "AudioSrv" "Manages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "Microsoft Corporation" "c:\windows\system32\audiosrv.dll"
+ "AxInstSV" "Provides User Account Control validation for the installation of ActiveX controls from the Internet and enables management of ActiveX control installation based on Group Policy settings. This service is started on demand and if disabled the installation of ActiveX controls will behave according to default browser settings." "Microsoft Corporation" "c:\windows\system32\axinstsv.dll"
+ "BDESVC" "BDESVC hosts the BitLocker Drive Encryption service. BitLocker Drive Encryption provides secure startup for the operating system, as well as full volume encryption for OS, fixed or removable volumes. This service allows BitLocker to prompt users for various actions related to their volumes when mounted, and unlocks volumes automatically without user interaction. Additionally, it stores recovery information to Active Directory, if available, and, if necessary, ensures the most recent recovery certificates are used. Stopping or disabling the service would prevent users from leveraging this functionality." "Microsoft Corporation" "c:\windows\system32\bdesvc.dll"
+ "BFE" "The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications." "Microsoft Corporation" "c:\windows\system32\bfe.dll"
+ "BITS" "Transfers files in the background using idle network bandwidth. If the service is disabled, then any applications that depend on BITS, such as Windows Update or MSN Explorer, will be unable to automatically download programs and other information." "Microsoft Corporation" "c:\windows\system32\qmgr.dll"
+ "Browser" "Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\browser.dll"
+ "bthserv" "The Bluetooth service supports discovery and association of remote Bluetooth devices. Stopping or disabling this service may cause already installed Bluetooth devices to fail to operate properly and prevent new devices from being discovered or associated." "Microsoft Corporation" "c:\windows\system32\bthserv.dll"
+ "CertPropSvc" "Copies user certificates and root certificates from smart cards into the current user's certificate store, detects when a smart card is inserted into a smart card reader, and, if needed, installs the smart card Plug and Play minidriver." "Microsoft Corporation" "c:\windows\system32\certprop.dll"
+ "clr_optimization_v4.0.30319_32" "Microsoft .NET Framework NGEN" "Microsoft Corporation" "c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe"
+ "clr_optimization_v4.0.30319_64" "Microsoft .NET Framework NGEN" "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v4.0.30319\mscorsvw.exe"
+ "COMSysApp" "Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dllhost.exe"
+ "CryptSvc" "Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\cryptsvc.dll"
+ "DcomLaunch" "The DCOMLAUNCH service launches COM and DCOM servers in response to object activation requests. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the DCOMLAUNCH service running." "Microsoft Corporation" "c:\windows\system32\rpcss.dll"
+ "defragsvc" "Provides Disk Defragmentation Capabilities." "Microsoft Corporation" "c:\windows\system32\defragsvc.dll"
+ "Dhcp" "Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dhcpcore.dll"
+ "Dnscache" "The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dnsrslvr.dll"
+ "dot3svc" "The Wired AutoConfig (DOT3SVC) service is responsible for performing IEEE 802.1X authentication on Ethernet interfaces. If your current wired network deployment enforces 802.1X authentication, the DOT3SVC service should be configured to run for establishing Layer 2 connectivity and/or providing access to network resources. Wired networks that do not enforce 802.1X authentication are unaffected by the DOT3SVC service." "Microsoft Corporation" "c:\windows\system32\dot3svc.dll"
+ "DPS" "The Diagnostic Policy Service enables problem detection, troubleshooting and resolution for Windows components. If this service is stopped, diagnostics will no longer function." "Microsoft Corporation" "c:\windows\system32\dps.dll"
+ "EapHost" "The Extensible Authentication Protocol (EAP) service provides network authentication in such scenarios as 802.1x wired and wireless, VPN, and Network Access Protection (NAP). EAP also provides application programming interfaces (APIs) that are used by network access clients, including wireless and VPN clients, during the authentication process. If you disable this service, this computer is prevented from accessing networks that require EAP authentication." "Microsoft Corporation" "c:\windows\system32\eapsvc.dll"
+ "EFS" "Provides the core file encryption technology used to store encrypted files on NTFS file system volumes. If this service is stopped or disabled, applications will be unable to access encrypted files." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "ehRecvr" "Windows Media Center Service for TV and FM broadcast reception" "Microsoft Corporation" "c:\windows\ehome\ehrecvr.exe"
+ "ehSched" "Starts and stops recording of TV programs within Windows Media Center" "Microsoft Corporation" "c:\windows\ehome\ehsched.exe"
+ "eventlog" "This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system." "Microsoft Corporation" "c:\windows\system32\wevtsvc.dll"
+ "EventSystem" "Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\es.dll"
+ "Fax" "Enables you to send and receive faxes, utilizing fax resources available on this computer or on the network." "Microsoft Corporation" "c:\windows\system32\fxssvc.exe"
+ "fdPHost" "The FDPHOST service hosts the Function Discovery (FD) network discovery providers. These FD providers supply network discovery services for the Simple Services Discovery Protocol (SSDP) and Web Services – Discovery (WS-D) protocol. Stopping or disabling the FDPHOST service will disable network discovery for these protocols when using FD. When this service is unavailable, network services using FD and relying on these discovery protocols will be unable to find network devices or resources." "Microsoft Corporation" "c:\windows\system32\fdphost.dll"
+ "FDResPub" "Publishes this computer and resources attached to this computer so they can be discovered over the network. If this service is stopped, network resources will no longer be published and they will not be discovered by other computers on the network." "Microsoft Corporation" "c:\windows\system32\fdrespub.dll"
+ "FontCache" "Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance." "Microsoft Corporation" "c:\windows\system32\fntcache.dll"
+ "FontCache3.0.0.0" "Optimizes performance of Windows Presentation Foundation (WPF) applications by caching commonly used font data. WPF applications will start this service if it is not already running. It can be disabled, though doing so will degrade the performance of WPF applications." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe"
+ "gpsvc" "The service is responsible for applying settings configured by administrators for the computer and users through the Group Policy component. If the service is stopped or disabled, the settings will not be applied and applications and components will not be manageable through Group Policy. Any components or applications that depend on the Group Policy component might not be functional if the service is stopped or disabled." "Microsoft Corporation" "c:\windows\system32\gpsvc.dll"
X "gupdate" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe"
X "gupdatem" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe"
+ "hidserv" "Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\hidserv.dll"
+ "hkmsvc" "Provides X.509 certificate and key management services for the Network Access Protection Agent (NAPAgent). Enforcement technologies that use X.509 certificates may not function properly without this service" "Microsoft Corporation" "c:\windows\system32\kmsvc.dll"
+ "HomeGroupListener" "Makes local computer changes associated with configuration and maintenance of the homegroup-joined computer. If this service is stopped or disabled, your computer will not work properly in a homegroup and your homegroup might not work properly. It is recommended that you keep this service running." "Microsoft Corporation" "c:\windows\system32\listsvc.dll"
+ "HomeGroupProvider" "Performs networking tasks associated with configuration and maintenance of homegroups. If this service is stopped or disabled, your computer will be unable to detect other homegroups and your homegroup might not work properly. It is recommended that you keep this service running." "Microsoft Corporation" "c:\windows\system32\provsvc.dll"
+ "idsvc" "Securely enables the creation, management, and disclosure of digital identities." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v3.0\windows communication foundation\infocard.exe"
+ "IKEEXT" "The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running." "Microsoft Corporation" "c:\windows\system32\ikeext.dll"
+ "IPBusEnum" "The PnP-X bus enumerator service manages the virtual network bus. It discovers network connected devices using the SSDP/WS discovery protocols and gives them presence in PnP. If this service is stopped or disabled, presence of NCD devices will not be maintained in PnP. All pnpx based scenarios will stop functioning." "Microsoft Corporation" "c:\windows\system32\ipbusenum.dll"
+ "iphlpsvc" "Provides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer." "Microsoft Corporation" "c:\windows\system32\iphlpsvc.dll"
+ "KeyIso" "The CNG key isolation service is hosted in the LSA process. The service provides key process isolation to private keys and associated cryptographic operations as required by the Common Criteria. The service stores and uses long-lived keys in a secure process complying with Common Criteria requirements." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "KtmRm" "Coordinates transactions between the Distributed Transaction Coordinator (MSDTC) and the Kernel Transaction Manager (KTM). If it is not needed, it is recommended that this service remain stopped. If it is needed, both MSDTC and KTM will start this service automatically. If this service is disabled, any MSDTC transaction interacting with a Kernel Resource Manager will fail and any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msdtckrm.dll"
+ "LanmanServer" "Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\srvsvc.dll"
+ "LanmanWorkstation" "Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\wkssvc.dll"
+ "lltdsvc" "Creates a Network Map, consisting of PC and device topology (connectivity) information, and metadata describing each PC and device. If this service is disabled, the Network Map will not function properly." "Microsoft Corporation" "c:\windows\system32\lltdsvc.dll"
+ "lmhosts" "Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\lmhsvc.dll"
+ "Microsoft SharePoint Workspace Audit Service" "Microsoft SharePoint Workspace" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\groove.exe"
+ "MMCSS" "Enables relative prioritization of work based on system-wide task priorities. This is intended mainly for multimedia applications. If this service is stopped, individual tasks resort to their default priority." "Microsoft Corporation" "c:\windows\system32\mmcss.dll"
+ "MpsSvc" "Windows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network." "Microsoft Corporation" "c:\windows\system32\mpssvc.dll"
+ "MSDTC" "Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will fail. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msdtc.exe"
+ "MSiSCSI" "Manages Internet SCSI (iSCSI) sessions from this computer to remote iSCSI target devices. If this service is stopped, this computer will not be able to login or access iSCSI targets. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\iscsiexe.dll"
+ "msiserver" "Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msiexec.exe"
+ "napagent" "The Network Access Protection (NAP) agent service collects and manages health information for client computers on a network. Information collected by NAP agent is used to make sure that the client computer has the required software and settings. If a client computer is not compliant with health policy, it can be provided with restricted network access until its configuration is updated. Depending on the configuration of health policy, client computers might be automatically updated so that users quickly regain full network access without having to manually update their computer." "Microsoft Corporation" "c:\windows\system32\qagentrt.dll"
X "Nero BackItUp Scheduler 4.0" "Nero BackItUp Scheduler 4.0 is responsible to control all jobs created using Nero BackItUp. These jobs can create backups of selected files/folders/partitions or complete hard disk to hard disk, network drive, disc or FTP." "Nero AG" "c:\program files (x86)\common files\nero\nero backitup 4\nbservice.exe"
+ "Netlogon" "Maintains a secure channel between this computer and the domain controller for authenticating users and services. If this service is stopped, the computer may not authenticate users and services and the domain controller cannot register DNS records. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "Netman" "Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections." "Microsoft Corporation" "c:\windows\system32\netman.dll"
+ "netprofm" "Identifies the networks to which the computer has connected, collects and stores properties for these networks, and notifies applications when these properties change." "Microsoft Corporation" "c:\windows\system32\netprofm.dll"
+ "NlaSvc" "Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\nlasvc.dll"
+ "nsi" "This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start." "Microsoft Corporation" "c:\windows\system32\nsisvc.dll"
+ "nSvcIp" "NVIDIA Corporation" "" "c:\program files\nvidia corporation\networkaccessmanager\bin32\nsvcip.exe"
+ "nvsvc" "Provides system and desktop level support to the NVIDIA display driver" "NVIDIA Corporation" "c:\windows\system32\nvvsvc.exe"
X "ose" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\source engine\ose.exe"
+ "osppsvc" "Office Software Protection Platform Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe"
+ "p2pimsvc" "Provides identity services for the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services. If disabled, the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services may not function, and some applications, such as HomeGroup and Remote Assistance, may not function correctly." "Microsoft Corporation" "c:\windows\system32\pnrpsvc.dll"
+ "p2psvc" "Enables multi-party communication using Peer-to-Peer Grouping. If disabled, some applications, such as HomeGroup, may not function." "Microsoft Corporation" "c:\windows\system32\p2psvc.dll"
+ "PcaSvc" "This service provides support for the Program Compatibility Assistant (PCA). PCA monitors programs installed and run by the user and detects known compatibility problems. If this service is stopped, PCA will not function properly." "Microsoft Corporation" "c:\windows\system32\pcasvc.dll"
+ "PerfHost" "Enables remote users and 64-bit processes to query performance counters provided by 32-bit DLLs. If this service is stopped, only local users and 32-bit processes will be able to query performance counters provided by 32-bit DLLs." "Microsoft Corporation" "c:\windows\syswow64\perfhost.exe"
+ "pla" "Performance Logs and Alerts Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\pla.dll"
+ "PlugPlay" "Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability." "Microsoft Corporation" "c:\windows\system32\umpnpmgr.dll"
+ "PNRPAutoReg" "This service publishes a machine name using the Peer Name Resolution Protocol. Configuration is managed via the netsh context 'p2p pnrp peer' " "Microsoft Corporation" "c:\windows\system32\pnrpauto.dll"
+ "PNRPsvc" "Enables serverless peer name resolution over the Internet using the Peer Name Resolution Protocol (PNRP). If disabled, some peer-to-peer and collaborative applications, such as Remote Assistance, may not function." "Microsoft Corporation" "c:\windows\system32\pnrpsvc.dll"
+ "PolicyAgent" "Internet Protocol security (IPsec) supports network-level peer authentication, data origin authentication, data integrity, data confidentiality (encryption), and replay protection. This service enforces IPsec policies created through the IP Security Policies snap-in or the command-line tool "netsh ipsec". If you stop this service, you may experience network connectivity issues if your policy requires that connections use IPsec. Also,remote management of Windows Firewall is not available when this service is stopped." "Microsoft Corporation" "c:\windows\system32\ipsecsvc.dll"
+ "Power" "Manages power policy and power policy notification delivery." "Microsoft Corporation" "c:\windows\system32\umpo.dll"
+ "ProfSvc" "This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them." "Microsoft Corporation" "c:\windows\system32\profsvc.dll"
+ "ProtectedStorage" "Provides protected storage for sensitive data, such as passwords, to prevent access by unauthorized services, processes, or users." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "QWAVE" "Quality Windows Audio Video Experience (qWave) is a networking platform for Audio Video (AV) streaming applications on IP home networks. qWave enhances AV streaming performance and reliability by ensuring network quality-of-service (QoS) for AV applications. It provides mechanisms for admission control, run time monitoring and enforcement, application feedback, and traffic prioritization." "Microsoft Corporation" "c:\windows\system32\qwave.dll"
+ "RasAuto" "Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address." "Microsoft Corporation" "c:\windows\system32\rasauto.dll"
+ "RasMan" "Manages dial-up and virtual private network (VPN) connections from this computer to the Internet or other remote networks. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\rasmans.dll"
+ "RemoteRegistry" "Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\regsvc.dll"

#5 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 11 September 2012 - 01:01 PM

+ "RpcEptMapper" "Resolves RPC interfaces identifiers to transport endpoints. If this service is stopped or disabled, programs using Remote Procedure Call (RPC) services will not function properly." "Microsoft Corporation" "c:\windows\system32\rpcepmap.dll"
+ "RpcLocator" "In Windows 2003 and earlier versions of Windows, the Remote Procedure Call (RPC) Locator service manages the RPC name service database. In Windows Vista and later versions of Windows, this service does not provide any functionality and is present for application compatibility." "Microsoft Corporation" "c:\windows\system32\locator.exe"
+ "RpcSs" "The RPCSS service is the Service Control Manager for COM and DCOM servers. It performs object activations requests, object exporter resolutions and distributed garbage collection for COM and DCOM servers. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the RPCSS service running" "Microsoft Corporation" "c:\windows\system32\rpcss.dll"
+ "SamSs" "The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "SCardSvr" "Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\scardsvr.dll"
+ "Schedule" "Enables a user to configure and schedule automated tasks on this computer. The service also hosts multiple Windows system-critical tasks. If this service is stopped or disabled, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\schedsvc.dll"
+ "SCPolicySvc" "Allows the system to be configured to lock the user desktop upon smart card removal." "Microsoft Corporation" "c:\windows\system32\certprop.dll"
+ "SDRSVC" "Provides Windows Backup and Restore capabilities." "Microsoft Corporation" "c:\windows\system32\sdrsvc.dll"
+ "seclogon" "Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\seclogon.dll"
+ "SENS" "Monitors system events and notifies subscribers to COM+ Event System of these events." "Microsoft Corporation" "c:\windows\system32\sens.dll"
+ "SensrSvc" "Monitors ambient light sensors to detect changes in ambient light and adjust the display brightness. If this service is stopped or disabled, the display brightness will not adapt to lighting conditions." "Microsoft Corporation" "c:\windows\system32\sensrsvc.dll"
+ "SessionEnv" "Remote Desktop Configuration service (RDCS) is responsible for all Remote Desktop Services and Remote Desktop related configuration and session maintenance activities that require SYSTEM context. These include per-session temporary folders, RD themes, and RD certificates." "Microsoft Corporation" "c:\windows\system32\sessenv.dll"
+ "SharedAccess" "Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network." "Microsoft Corporation" "c:\windows\system32\ipnathlp.dll"
+ "ShellHWDetection" "Provides notifications for AutoPlay hardware events." "Microsoft Corporation" "c:\windows\system32\shsvcs.dll"
+ "SNMPTRAP" "Receives trap messages generated by local or remote Simple Network Management Protocol (SNMP) agents and forwards the messages to SNMP management programs running on this computer. If this service is stopped, SNMP-based programs on this computer will not receive SNMP trap messages. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\snmptrap.exe"
+ "Spooler" "Loads files to memory for later printing" "Microsoft Corporation" "c:\windows\system32\spoolsv.exe"
+ "sppsvc" "Enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is disabled, the operating system and licensed applications may run in a notification mode. It is strongly recommended that you not disable the Software Protection service." "Microsoft Corporation" "c:\windows\system32\sppsvc.exe"
+ "sppuinotify" "Provides Software Licensing activation and notification" "Microsoft Corporation" "c:\windows\system32\sppuinotify.dll"
+ "SSDPSRV" "Discovers networked devices and services that use the SSDP discovery protocol, such as UPnP devices. Also announces SSDP devices and services running on the local computer. If this service is stopped, SSDP-based devices will not be discovered. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\ssdpsrv.dll"
+ "SstpSvc" "Provides support for the Secure Socket Tunneling Protocol (SSTP) to connect to remote computers using VPN. If this service is disabled, users will not be able to use SSTP to access remote servers." "Microsoft Corporation" "c:\windows\system32\sstpsvc.dll"
+ "stisvc" "Provides image acquisition services for scanners and cameras" "Microsoft Corporation" "c:\windows\system32\wiaservc.dll"
+ "swprv" "Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\swprv.dll"
+ "SysMain" "Maintains and improves system performance over time." "Microsoft Corporation" "c:\windows\system32\sysmain.dll"
+ "TabletInputService" "Enables Tablet PC pen and ink functionality" "Microsoft Corporation" "c:\windows\system32\tabsvc.dll"
+ "TapiSrv" "Provides Telephony API (TAPI) support for programs that control telephony devices on the local computer and, through the LAN, on servers that are also running the service." "Microsoft Corporation" "c:\windows\system32\tapisrv.dll"
+ "TBS" "Enables access to the Trusted Platform Module (TPM), which provides hardware-based cryptographic services to system components and applications. If this service is stopped or disabled, applications will be unable to use keys protected by the TPM." "Microsoft Corporation" "c:\windows\system32\tbssvc.dll"
+ "TermService" "Allows users to connect interactively to a remote computer. Remote Desktop and Remote Desktop Session Host Server depend on this service. To prevent remote use of this computer, clear the checkboxes on the Remote tab of the System properties control panel item." "Microsoft Corporation" "c:\windows\system32\termsrv.dll"
+ "Themes" "Provides user experience theme management." "Microsoft Corporation" "c:\windows\system32\themeservice.dll"
+ "THREADORDER" "Provides ordered execution for a group of threads within a specific period of time." "Microsoft Corporation" "c:\windows\system32\mmcss.dll"
+ "TrkWks" "Maintains links between NTFS files within a computer or across computers in a network." "Microsoft Corporation" "c:\windows\system32\trkwks.dll"
+ "TrustedInstaller" "Enables installation, modification, and removal of Windows updates and optional components. If this service is disabled, install or uninstall of Windows updates might fail for this computer." "Microsoft Corporation" "c:\windows\servicing\trustedinstaller.exe"
+ "UI0Detect" "Enables user notification of user input for interactive services, which enables access to dialogs created by interactive services when they appear. If this service is stopped, notifications of new interactive service dialogs will no longer function and there might not be access to interactive service dialogs. If this service is disabled, both notifications of and access to new interactive service dialogs will no longer function." "Microsoft Corporation" "c:\windows\system32\ui0detect.exe"
+ "upnphost" "Allows UPnP devices to be hosted on this computer. If this service is stopped, any hosted UPnP devices will stop functioning and no additional hosted devices can be added. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\upnphost.dll"
+ "UxSms" "Provides Desktop Window Manager startup and maintenance services" "Microsoft Corporation" "c:\windows\system32\uxsms.dll"
+ "VaultSvc" "Provides secure storage and retrieval of credentials to users, applications and security service packages." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "vds" "Provides management services for disks, volumes, file systems, and storage arrays." "Microsoft Corporation" "c:\windows\system32\vds.exe"
+ "VSS" "Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\vssvc.exe"
+ "W32Time" "Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\w32time.dll"
+ "wbengine" "The WBENGINE service is used by Windows Backup to perform backup and recovery operations. If this service is stopped by a user, it may cause the currently running backup or recovery operation to fail. Disabling this service may disable backup and recovery operations using Windows Backup on this computer." "Microsoft Corporation" "c:\windows\system32\wbengine.exe"
+ "WbioSrvc" "The Windows biometric service gives client applications the ability to capture, compare, manipulate, and store biometric data without gaining direct access to any biometric hardware or samples. The service is hosted in a privileged SVCHOST process." "Microsoft Corporation" "c:\windows\system32\wbiosrvc.dll"
+ "wcncsvc" "WCNCSVC hosts the Windows Connect Now Configuration which is Microsoft's Implementation of Wi-Fi Protected Setup (WPS) protocol. This is used to configure Wireless LAN settings for an Access Point (AP) or a Wi-Fi Device. The service is started programmatically as needed." "Microsoft Corporation" "c:\windows\system32\wcncsvc.dll"
+ "WcsPlugInService" "The WcsPlugInService service hosts third-party Windows Color System color device model and gamut map model plug-in modules. These plug-in modules are vendor-specific extensions to the Windows Color System baseline color device and gamut map models. Stopping or disabling the WcsPlugInService service will disable this extensibility feature, and the Windows Color System will use its baseline model processing rather than the vendor's desired processing. This might result in inaccurate color rendering." "Microsoft Corporation" "c:\windows\system32\wcspluginservice.dll"
+ "WdiServiceHost" "The Diagnostic Service Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local Service context. If this service is stopped, any diagnostics that depend on it will no longer function." "Microsoft Corporation" "c:\windows\system32\wdi.dll"
+ "WdiSystemHost" "The Diagnostic System Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local System context. If this service is stopped, any diagnostics that depend on it will no longer function." "Microsoft Corporation" "c:\windows\system32\wdi.dll"
+ "WebClient" "Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\webclnt.dll"
+ "Wecsvc" "This service manages persistent subscriptions to events from remote sources that support WS-Management protocol. This includes Windows Vista event logs, hardware and IPMI-enabled event sources. The service stores forwarded events in a local Event Log. If this service is stopped or disabled event subscriptions cannot be created and forwarded events cannot be accepted." "Microsoft Corporation" "c:\windows\system32\wecsvc.dll"
+ "wercplsupport" "This service provides support for viewing, sending and deletion of system-level problem reports for the Problem Reports and Solutions control panel." "Microsoft Corporation" "c:\windows\system32\wercplsupport.dll"
+ "WerSvc" "Allows errors to be reported when programs stop working or responding and allows existing solutions to be delivered. Also allows logs to be generated for diagnostic and repair services. If this service is stopped, error reporting might not work correctly and results of diagnostic services and repairs might not be displayed." "Microsoft Corporation" "c:\windows\system32\wersvc.dll"
+ "WinDefend" "Protection against spyware and potentially unwanted software" "Microsoft Corporation" "c:\program files\windows defender\mpsvc.dll"
+ "WinHttpAutoProxySvc" "WinHTTP implements the client HTTP stack and provides developers with a Win32 API and COM Automation component for sending HTTP requests and receiving responses. In addition, WinHTTP provides support for auto-discovering a proxy configuration via its implementation of the Web Proxy Auto-Discovery (WPAD) protocol." "Microsoft Corporation" "c:\windows\system32\winhttp.dll"
+ "Winmgmt" "Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\wbem\wmisvc.dll"
+ "WinRM" "Windows Remote Management (WinRM) service implements the WS-Management protocol for remote management. WS-Management is a standard web services protocol used for remote software and hardware management. The WinRM service listens on the network for WS-Management requests and processes them. The WinRM Service needs to be configured with a listener using winrm.cmd command line tool or through Group Policy in order for it to listen over the network. The WinRM service provides access to WMI data and enables event collection. Event collection and subscription to events require that the service is running. WinRM messages use HTTP and HTTPS as transports. The WinRM service does not depend on IIS but is preconfigured to share a port with IIS on the same machine. The WinRM service reserves the /wsman URL prefix. To prevent conflicts with IIS, administrators should ensure that any websites hosted on IIS do not use the /wsman URL prefix." "Microsoft Corporation" "c:\windows\system32\wsmsvc.dll"
+ "Wlansvc" "The WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter." "Microsoft Corporation" "c:\windows\system32\wlansvc.dll"
+ "wmiApSrv" "Provides performance library information from Windows Management Instrumentation (WMI) providers to clients on the network. This service only runs when Performance Data Helper is activated." "Microsoft Corporation" "c:\windows\system32\wbem\wmiapsrv.exe"
X "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe"
+ "WPCSvc" "This service is a stub for Windows Parental Control functionality that existed in Vista. It is provided for backward compatibility only." "Microsoft Corporation" "c:\windows\system32\wpcsvc.dll"
+ "WPDBusEnum" "Enforces group policy for removable mass-storage devices. Enables applications such as Windows Media Player and Image Import Wizard to transfer and synchronize content using removable mass-storage devices." "Microsoft Corporation" "c:\windows\system32\wpdbusenum.dll"
+ "wscsvc" "The WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet settings (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Action Center (AC) UI uses the service to provide systray alerts and a graphical view of the security health states in the AC control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system." "Microsoft Corporation" "c:\windows\system32\wscsvc.dll"
+ "WSearch" "Provides content indexing, property caching, and search results for files, e-mail, and other content." "Microsoft Corporation" "c:\windows\system32\searchindexer.exe"
+ "wuauserv" "Enables the detection, download, and installation of updates for Windows and other programs. If this service is disabled, users of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API." "Microsoft Corporation" "c:\windows\system32\wuaueng.dll"
+ "wudfsvc" "Manages user-mode driver host processes." "Microsoft Corporation" "c:\windows\system32\wudfsvc.dll"
+ "WwanSvc" "This service manages mobile broadband (GSM & CDMA) data card/embedded module adapters and connections by auto-configuring the networks. It is strongly recommended that this service be kept running for best user experience of mobile broadband devices." "Microsoft Corporation" "c:\windows\system32\wwansvc.dll"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "1394ohci" "1394 OpenHCI Driver" "Microsoft Corporation" "c:\windows\system32\drivers\1394ohci.sys"
+ "ACPI" "ACPI Driver for NT" "Microsoft Corporation" "c:\windows\system32\drivers\acpi.sys"
+ "AcpiPmi" "ACPI Power Metering Driver" "Microsoft Corporation" "c:\windows\system32\drivers\acpipmi.sys"
+ "adp94xx" "Adaptec Windows SAS/SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adp94xx.sys"
+ "adpahci" "Adaptec Windows SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adpahci.sys"
+ "adpu320" "Adaptec StorPort Ultra320 SCSI Driver (X64)" "Adaptec, Inc." "c:\windows\system32\drivers\adpu320.sys"
+ "afcdp" "Acronis File Level CDP Helper" "Acronis" "c:\windows\system32\drivers\afcdp.sys"
+ "AFD" "Ancillary Function Driver for Winsock" "Microsoft Corporation" "c:\windows\system32\drivers\afd.sys"
+ "agp440" "440 NT AGP Filter" "Microsoft Corporation" "c:\windows\system32\drivers\agp440.sys"
+ "aliide" "ALi mini IDE Driver" "Acer Laboratories Inc." "c:\windows\system32\drivers\aliide.sys"
+ "amdide" "AMD IDE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdide.sys"
+ "AmdK8" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdk8.sys"
+ "AmdPPM" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdppm.sys"
+ "amdsata" "AHCI 1.2 Device Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdsata.sys"
+ "amdsbs" "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "AMD Technologies Inc." "c:\windows\system32\drivers\amdsbs.sys"
+ "amdxata" "Storage Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdxata.sys"
+ "AppID" "Identifies an application and enforces software restriction policies." "Microsoft Corporation" "c:\windows\system32\drivers\appid.sys"
+ "appliand" "APPLIAND helper driver" "Applian Technologies Inc." "c:\windows\system32\drivers\appliand.sys"
+ "appliandMP" "APPLIAND helper driver" "Applian Technologies Inc." "c:\windows\system32\drivers\appliand.sys"
+ "arc" "Adaptec RAID Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arc.sys"
+ "arcsas" "Adaptec SAS RAID WS03 Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arcsas.sys"
+ "AsyncMac" "RAS Asynchronous Media Driver" "Microsoft Corporation" "c:\windows\system32\drivers\asyncmac.sys"
+ "atapi" "ATAPI IDE Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\atapi.sys"
+ "athrusb" "Atheros Extensible Wireless LAN device driver" "Atheros Communications, Inc." "c:\windows\system32\drivers\athrxusb.sys"
+ "b06bdrv" "Broadcom NetXtreme II GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\bxvbda.sys"
+ "b57nd60a" "Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver." "Broadcom Corporation" "c:\windows\system32\drivers\b57nd60a.sys"
+ "Beep" "BEEP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\beep.sys"
+ "BlackBox" "" "" "File not found: C:\Windows\System32\Drivers\BlackBox.sys"
+ "blbdrive" "BLB Drive Driver" "Microsoft Corporation" "c:\windows\system32\drivers\blbdrive.sys"
+ "bowser" "Implements the kernel datagram receiver for the computer browser browser service." "Microsoft Corporation" "c:\windows\system32\drivers\bowser.sys"
+ "BrFiltLo" "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltlo.sys"
+ "BrFiltUp" "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltup.sys"
+ "BridgeMP" "MAC Bridge Driver" "Microsoft Corporation" "c:\windows\system32\drivers\bridge.sys"
+ "Brserid" "Brotehr Serial I/F Driver (WDM)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserid.sys"
+ "BrSerWdm" "Brother Serial driver (WDM version)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserwdm.sys"
+ "BrUsbMdm" "Brother USB MDM Driver " "Brother Industries Ltd." "c:\windows\system32\drivers\brusbmdm.sys"
+ "BrUsbSer" "Brother USB Serial Driver" "Brother Industries Ltd." "c:\windows\system32\drivers\brusbser.sys"
+ "BTHMODEM" "Bluetooth Communications Driver" "Microsoft Corporation" "c:\windows\system32\drivers\bthmodem.sys"
+ "catchme" "" "" "File not found: C:\ComboFix\catchme.sys"
+ "cdrom" "SCSI CD-ROM Driver" "Microsoft Corporation" "c:\windows\system32\drivers\cdrom.sys"
+ "circlass" "Consumer IR Class Driver for eHome" "Microsoft Corporation" "c:\windows\system32\drivers\circlass.sys"
+ "CLFS" "General-purpose logging service" "Microsoft Corporation" "c:\windows\system32\clfs.sys"
+ "CmBatt" "Control Method Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\cmbatt.sys"
+ "cmdide" "CMD PCI IDE Bus Driver" "CMD Technology, Inc." "c:\windows\system32\drivers\cmdide.sys"
+ "CNG" "Kernel Cryptography, Next Generation" "Microsoft Corporation" "c:\windows\system32\drivers\cng.sys"
+ "Compbatt" "Composite Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\compbatt.sys"
+ "CompositeBus" "Multi-Transport Composite Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\compositebus.sys"
+ "dc3d" "Filter Driver for Identification of Microsoft Hardware Wireless Mouse and Keyboard Device Models" "Microsoft Corporation" "c:\windows\system32\drivers\dc3d.sys"
+ "DfsC" "Client driver for access to DFS Namespaces" "Microsoft Corporation" "c:\windows\system32\drivers\dfsc.sys"
+ "discache" "Attribute Cache Indexer" "Microsoft Corporation" "c:\windows\system32\drivers\discache.sys"
+ "Disk" "PnP Disk Driver" "Microsoft Corporation" "c:\windows\system32\drivers\disk.sys"
+ "drmkaud" "Microsoft Trusted Audio Drivers" "Microsoft Corporation" "c:\windows\system32\drivers\drmkaud.sys"
+ "DXGKrnl" "Controls the underlying video driver stacks to provide fully-featured display capabilities." "Microsoft Corporation" "c:\windows\system32\drivers\dxgkrnl.sys"
+ "ebdrv" "Broadcom NetXtreme II 10 GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\evbda.sys"
+ "eBook" "eBook Network Driver" "eBook Technologies, Inc." "c:\windows\system32\drivers\ebook.sys"
+ "ElbyCDFL" "ElbyCDIO Filter Driver" "SlySoft, Inc." "c:\windows\system32\drivers\elbycdfl.sys"
+ "ElbyCDIO" "ElbyCD Windows x64 I/O driver" "Elaborate Bytes AG" "c:\windows\system32\drivers\elbycdio.sys"
+ "elxstor" "Storport Miniport Driver for LightPulse HBAs" "Emulex" "c:\windows\system32\drivers\elxstor.sys"
+ "ErrDev" "Error Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\errdev.sys"
+ "esihdrv" "" "" "File not found: C:\Users\majik\AppData\Local\Temp\esihdrv.sys"
+ "exfat" "exFAT File System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\exfat.sys"
+ "fastfat" "Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)" "Microsoft Corporation" "c:\windows\system32\drivers\fastfat.sys"
+ "fdc" "Floppy Disk Controller Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fdc.sys"
+ "FileInfo" "Collects information about files in memory to be consumed by other system services." "Microsoft Corporation" "c:\windows\system32\drivers\fileinfo.sys"
+ "Filetrace" "ETW File Trace Filter" "Microsoft Corporation" "c:\windows\system32\drivers\filetrace.sys"
+ "flpydisk" "Floppy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\flpydisk.sys"
+ "FltMgr" "File System Filter Manager Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fltmgr.sys"
+ "FsDepends" "This minifilter tracks the dependencies associated with the various nested volumes/filesystems" "Microsoft Corporation" "c:\windows\system32\drivers\fsdepends.sys"
+ "fvevol" "Bitlocker Drive Encryption Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fvevol.sys"
+ "gagp30kx" "MS Generic AGPv3.0 Filter for K8/9 Processor Platforms" "Microsoft Corporation" "c:\windows\system32\drivers\gagp30kx.sys"
+ "hcw85cir" "Hauppauge WinTV 885 Consumer IR Driver for eHome" "Hauppauge Computer Works, Inc." "c:\windows\system32\drivers\hcw85cir.sys"
+ "HdAudAddService" "High Definition Audio Function Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hdaudio.sys"
+ "HDAudBus" "High Definition Audio Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hdaudbus.sys"
+ "HidBatt" "Hid Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hidbatt.sys"
+ "HidBth" "Bluetooth Miniport Driver for HID Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidbth.sys"
+ "HidIr" "Infrared Miniport Driver for Input Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidir.sys"
+ "HidUsb" "USB Miniport Driver for Input Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidusb.sys"
+ "hitmanpro36" "HitmanPro 3.6 Support Driver" "" "c:\windows\system32\drivers\hitmanpro36.sys"
+ "HpSAMD" "Smart Array SAS/SATA Controller Media Driver" "Hewlett-Packard Company" "c:\windows\system32\drivers\hpsamd.sys"
+ "HTTP" "@%SystemRoot%\system32\drivers\http.sys,-2" "Microsoft Corporation" "c:\windows\system32\drivers\http.sys"
+ "hwpolicy" "Contains Processor and other policies" "Microsoft Corporation" "c:\windows\system32\drivers\hwpolicy.sys"
+ "i8042prt" "i8042 Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\i8042prt.sys"
+ "iaStorV" "Intel Matrix Storage Manager driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastorv.sys"
+ "iirsp" "Intel/ICP Raid Storport Driver" "Intel Corp./ICP vortex GmbH" "c:\windows\system32\drivers\iirsp.sys"
+ "IntcAzAudAddService" "Realtek® High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhd64.sys"
+ "intelide" "Intel PCI IDE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\intelide.sys"
+ "intelppm" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\intelppm.sys"
+ "IpFilterDriver" "IP Traffic Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ipfltdrv.sys"
+ "IPMIDRV" "WMI IPMI DRIVER" "Microsoft Corporation" "c:\windows\system32\drivers\ipmidrv.sys"
+ "IPNAT" "IP Network Address Translator" "Microsoft Corporation" "c:\windows\system32\drivers\ipnat.sys"
+ "IRENUM" "IR Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\irenum.sys"
+ "isapnp" "PNP ISA Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\isapnp.sys"
+ "iScsiPrt" "Microsoft iSCSI Initiator Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msiscsi.sys"
+ "kbdclass" "Keyboard Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\kbdclass.sys"
+ "kbdhid" "HID Keyboard Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\kbdhid.sys"
+ "KSecDD" "Kernel Security Support Provider Interface" "Microsoft Corporation" "c:\windows\system32\drivers\ksecdd.sys"
+ "KSecPkg" "Kernel Security Support Provider Interface Packages" "Microsoft Corporation" "c:\windows\system32\drivers\ksecpkg.sys"
+ "ksthunk" "Kernel Streaming WOW Thunk Service" "Microsoft Corporation" "c:\windows\system32\drivers\ksthunk.sys"
+ "Lavasoft Kernexplorer" "" "" "c:\program files (x86)\lavasoft\ad-aware\kernexplorer64.sys"
+ "lltdio" "Link-Layer Topology Mapper I/O Driver" "Microsoft Corporation" "c:\windows\system32\drivers\lltdio.sys"
+ "LSI_FC" "LSI Fusion-MPT FC Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_fc.sys"
+ "LSI_SAS" "LSI Fusion-MPT SAS Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas.sys"
+ "LSI_SAS2" "LSI SAS Gen2 Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas2.sys"
+ "LSI_SCSI" "LSI Fusion-MPT SCSI Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_scsi.sys"
+ "luafv" "Virtualizes file write failures to per-user locations." "Microsoft Corporation" "c:\windows\system32\drivers\luafv.sys"
+ "mcdbus" "MagicISO SCSI Host Controller" "MagicISO, Inc." "c:\windows\system32\drivers\mcdbus.sys"
+ "megasas" "MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64" "LSI Corporation" "c:\windows\system32\drivers\megasas.sys"
+ "MegaSR" "LSI MegaRAID Software RAID Driver" "LSI Corporation, Inc." "c:\windows\system32\drivers\megasr.sys"
+ "Modem" "Modem Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\modem.sys"
+ "monitor" "Monitor Driver" "Microsoft Corporation" "c:\windows\system32\drivers\monitor.sys"
+ "mouclass" "Mouse Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mouclass.sys"
+ "mouhid" "HID Mouse Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mouhid.sys"
+ "mountmgr" "Driver responsible with maintaining persistent drive letters and names for volumes" "Microsoft Corporation" "c:\windows\system32\drivers\mountmgr.sys"
+ "mpio" "MultiPath Support Bus-Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mpio.sys"
+ "mpsdrv" "@%SystemRoot%\system32\FirewallAPI.dll,-23093" "Microsoft Corporation" "c:\windows\system32\drivers\mpsdrv.sys"
+ "MRxDAV" "Network Redirector that provides WebDAV file access for the WebClient service" "Microsoft Corporation" "c:\windows\system32\drivers\mrxdav.sys"
+ "mrxsmb" "Implements the framework for the SMB filesystem redirector" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb.sys"
+ "mrxsmb10" "Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb10.sys"
+ "mrxsmb20" "Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb20.sys"
+ "msahci" "MS AHCI 1.0 Standard Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msahci.sys"
+ "msdsm" "Microsoft Device Specific Module" "Microsoft Corporation" "c:\windows\system32\drivers\msdsm.sys"
+ "Msfs" "Mailslot driver" "Microsoft Corporation" "c:\windows\system32\drivers\msfs.sys"
+ "mshidkmdf" "Device Filter to provide pass-through interface between HIDCLASS and KMDF" "Microsoft Corporation" "c:\windows\system32\drivers\mshidkmdf.sys"
+ "msisadrv" "ISA Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msisadrv.sys"
+ "MSKSSRV" "MS KS Server" "Microsoft Corporation" "c:\windows\system32\drivers\mskssrv.sys"
+ "MSPCLOCK" "MS Proxy Clock" "Microsoft Corporation" "c:\windows\system32\drivers\mspclock.sys"
+ "MSPQM" "MS Proxy Quality Manager" "Microsoft Corporation" "c:\windows\system32\drivers\mspqm.sys"
+ "MsRPC" "Kernel Remote Procedure Call Provider" "Microsoft Corporation" "c:\windows\system32\drivers\msrpc.sys"
+ "mssmbios" "System Management BIOS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mssmbios.sys"
+ "MSTEE" "WDM Tee/Communication Transform Filter " "Microsoft Corporation" "c:\windows\system32\drivers\mstee.sys"
+ "MTConfig" "Microsoft Multi-Touch HID Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mtconfig.sys"
+ "Mup" "Multiple UNC Provider Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mup.sys"
+ "NativeWifiP" "NativeWiFi Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\nwifi.sys"
+ "NDIS" "NDIS System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndis.sys"
+ "NdisCap" "NDIS Capture LightWeight Filter" "Microsoft Corporation" "c:\windows\system32\drivers\ndiscap.sys"
+ "NdisTapi" "Remote Access NDIS TAPI Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndistapi.sys"
+ "Ndisuio" "NDIS User mode I/O driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndisuio.sys"
+ "NdisWan" "Remote Access NDIS WAN Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndiswan.sys"
+ "NDProxy" "NDIS Proxy" "Microsoft Corporation" "c:\windows\system32\drivers\ndproxy.sys"
+ "NetBIOS" "NetBIOS Interface" "Microsoft Corporation" "c:\windows\system32\drivers\netbios.sys"
+ "NetBT" "This service implements NetBios over TCP/IP." "Microsoft Corporation" "c:\windows\system32\drivers\netbt.sys"
+ "nfrd960" "IBM ServeRAID Controller Driver" "IBM Corporation" "c:\windows\system32\drivers\nfrd960.sys"
+ "Npfs" "NPFS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\npfs.sys"
+ "nsiproxy" "NSI proxy service." "Microsoft Corporation" "c:\windows\system32\drivers\nsiproxy.sys"
+ "Ntfs" "NT File System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ntfs.sys"
+ "Null" "NULL Driver" "Microsoft Corporation" "c:\windows\system32\drivers\null.sys"
+ "nv_agp" "NForce NT AGP Filter" "Microsoft Corporation" "c:\windows\system32\drivers\nv_agp.sys"
+ "NVENETFD" "NVIDIA MCP Networking Function Driver." "NVIDIA Corporation" "c:\windows\system32\drivers\nvm62x64.sys"
+ "nvlddmkm" "NVIDIA Windows Kernel Mode Driver, Version 197.13 " "NVIDIA Corporation" "c:\windows\system32\drivers\nvlddmkm.sys"
+ "NVNET" "NVIDIA MCP Networking Function Driver." "NVIDIA Corporation" "c:\windows\system32\drivers\nvmf6264.sys"
+ "nvraid" "NVIDIA® nForce™ RAID Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvraid.sys"
+ "nvstor" "NVIDIA® nForce™ Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor.sys"
+ "nvstor64" "NVIDIA® nForce™ Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor64.sys"
+ "ohci1394" "1394 OpenHCI Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ohci1394.sys"
+ "Parport" "Parallel Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\parport.sys"
+ "partmgr" "Disk class filter driver that auctions out partitions to volume managers" "Microsoft Corporation" "c:\windows\system32\drivers\partmgr.sys"
+ "pbfilter" "" "" "c:\program files\peerblock\pbfilter.sys"
+ "pci" "NT Plug and Play PCI Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\pci.sys"
+ "pciide" "Generic PCI IDE Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pciide.sys"
+ "pcmcia" "PCMCIA Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pcmcia.sys"
+ "pcw" "Performance Counters for Windows Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pcw.sys"
+ "PEAUTH" "Protected Environment Authentication and Authorization Export Driver" "Microsoft Corporation" "c:\windows\system32\drivers\peauth.sys"
+ "PptpMiniport" "WAN Miniport (PPTP)" "Microsoft Corporation" "c:\windows\system32\drivers\raspptp.sys"
+ "Processor" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\processr.sys"
+ "Psched" "QoS Packet Scheduler" "Microsoft Corporation" "c:\windows\system32\drivers\pacer.sys"
+ "ql2300" "QLogic Fibre Channel Stor Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql2300.sys"
+ "ql40xx" "QLogic iSCSI Storport Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql40xx.sys"
+ "QWAVEdrv" "Quality Windows Audio/Video Experience component driver" "Microsoft Corporation" "c:\windows\system32\drivers\qwavedrv.sys"
+ "RasAcd" "Remote Access Auto Connection Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rasacd.sys"
+ "RasAgileVpn" "WAN Miniport (IKEv2)" "Microsoft Corporation" "c:\windows\system32\drivers\agilevpn.sys"
+ "Rasl2tp" "WAN Miniport (L2TP)" "Microsoft Corporation" "c:\windows\system32\drivers\rasl2tp.sys"
+ "RasPppoe" "Remote Access PPPOE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\raspppoe.sys"
+ "RasSstp" "WAN Miniport (SSTP)" "Microsoft Corporation" "c:\windows\system32\drivers\rassstp.sys"
+ "rdbss" "Provides the framework for network mini-redirectors" "Microsoft Corporation" "c:\windows\system32\drivers\rdbss.sys"
+ "rdpbus" "Microsoft RDP Bus Device driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpbus.sys"
+ "RDPCDD" "RDPDD Chained DD" "Microsoft Corporation" "c:\windows\system32\drivers\rdpcdd.sys"
+ "RDPENCDD" "RDP Encoder Mirror Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpencdd.sys"
+ "RDPREFMP" "RDP Reflector Driver Miniport" "Microsoft Corporation" "c:\windows\system32\drivers\rdprefmp.sys"
+ "RDPWD" "RDP Terminal Stack Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpwd.sys"
+ "rdyboost" "ReadyBoost" "Microsoft Corporation" "c:\windows\system32\drivers\rdyboost.sys"
+ "Revoflt" "Revo Uninstaller Filter driver" "VS Revo Group" "c:\windows\system32\drivers\revoflt.sys"
+ "RMCAST" "RMCAST (Pgm) Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rmcast.sys"
+ "rspndr" "Link-Layer Topology Responder Driver for NDIS 6" "Microsoft Corporation" "c:\windows\system32\drivers\rspndr.sys"
+ "SASDIFSV" "SASDIFSV64.SYS" "SUPERAdBlocker.com and SUPERAntiSpyware.com" "c:\program files\superantispyware\sasdifsv64.sys"
+ "SASKUTIL" "SASKUTIL64.SYS" "SUPERAdBlocker.com and SUPERAntiSpyware.com" "c:\program files\superantispyware\saskutil64.sys"
+ "sbp2port" "SBP-2 Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sbp2port.sys"
+ "scfilter" "Smart card reader filter driver enabling smart card PnP." "Microsoft Corporation" "c:\windows\system32\drivers\scfilter.sys"
+ "secdrv" "Macrovision SECURITY Driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "Serenum" "Serial Port Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\serenum.sys"
+ "Serial" "Serial Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\serial.sys"
+ "sermouse" "Serial Mouse Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sermouse.sys"
+ "sffdisk" "Small Form Factor Disk Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sffdisk.sys"
+ "sffp_mmc" "Small Form Factor MMC Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sffp_mmc.sys"
+ "sffp_sd" "Small Form Factor SD Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sffp_sd.sys"
+ "sfloppy" "SCSI Floppy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sfloppy.sys"
+ "SiSRaid2" "SiS RAID Stor Miniport Driver" "Silicon Integrated Systems Corp." "c:\windows\system32\drivers\sisraid2.sys"
+ "SiSRaid4" "SiS AHCI Stor-Miniport Driver" "Silicon Integrated Systems" "c:\windows\system32\drivers\sisraid4.sys"
+ "Smb" "Microsoft NetbiosSmb Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\smb.sys"
+ "snapman" "Acronis Snapshot API" "Acronis" "c:\windows\system32\drivers\snapman.sys"
+ "spldr" "loader for security processor" "Microsoft Corporation" "c:\windows\system32\drivers\spldr.sys"
+ "srv" "Enables connectivity from Windows XP and earlier clients" "Microsoft Corporation" "c:\windows\system32\drivers\srv.sys"
+ "srv2" "Enables connectivity from Windows Vista and later clients" "Microsoft Corporation" "c:\windows\system32\drivers\srv2.sys"
+ "srvnet" "Server Network driver" "Microsoft Corporation" "c:\windows\system32\drivers\srvnet.sys"
+ "stexstor" "Promise SuperTrak EX Series Driver for Windows " "Promise Technology" "c:\windows\system32\drivers\stexstor.sys"
+ "swenum" "Plug and Play Software Device Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\swenum.sys"
+ "tbhsd" "Tunebite High-Speed Dubbing" "RapidSolution Software AG" "c:\windows\system32\drivers\tbhsd.sys"
+ "TC131" "" "" "File not found: System32\Drivers\TC131.sys"
+ "Tcpip" "TCP/IP Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tcpip.sys"
+ "TCPIP6" "Microsoft IPv6 Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tcpip.sys"
+ "tcpipreg" "Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality." "Microsoft Corporation" "c:\windows\system32\drivers\tcpipreg.sys"
+ "TDPIPE" "Named Pipe Transport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tdpipe.sys"
+ "tdrpman258" "Acronis Try&Decide Volume Filter Driver" "Acronis" "c:\windows\system32\drivers\tdrpm258.sys"
+ "TDTCP" "TCP Transport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tdtcp.sys"
+ "tdx" "NetIO Legacy TDI Support Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tdx.sys"
+ "TermDD" "Remote Desktop Server Driver" "Microsoft Corporation" "c:\windows\system32\drivers\termdd.sys"
+ "timounter" "Acronis Backup Archive Explorer" "Acronis" "c:\windows\system32\drivers\timntr.sys"
+ "tssecsrv" "Remote Desktop Services Security Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tssecsrv.sys"
+ "tunnel" "Microsoft Tunnel Interface Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tunnel.sys"
+ "uagp35" "MS AGPv3.5 Filter" "Microsoft Corporation" "c:\windows\system32\drivers\uagp35.sys"
+ "uliagpkx" "ULi AGPv3.0 Filter for K8/9 Processor Platforms" "Microsoft Corporation" "c:\windows\system32\drivers\uliagpkx.sys"
+ "umbus" "User-Mode Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\umbus.sys"
+ "UmPass" "Generic pass-through driver" "Microsoft Corporation" "c:\windows\system32\drivers\umpass.sys"
+ "usbccgp" "USB Common Class Generic Parent Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbccgp.sys"
+ "usbcir" "USB Consumer IR Driver for eHome" "Microsoft Corporation" "c:\windows\system32\drivers\usbcir.sys"
+ "usbehci" "EHCI eUSB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbehci.sys"
+ "usbhub" "Default Hub Driver for USB" "Microsoft Corporation" "c:\windows\system32\drivers\usbhub.sys"
+ "usbohci" "OHCI USB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbohci.sys"
+ "usbprint" "USB Printer driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbprint.sys"
+ "usbscan" "USB Scanner Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbscan.sys"
+ "USBSTOR" "USB Mass Storage Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbstor.sys"
+ "usbuhci" "UHCI USB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbuhci.sys"
+ "usbvideo" "USB Video Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbvideo.sys"
+ "VClone" "VirtualCloneCD Driver" "Elaborate Bytes AG" "c:\windows\system32\drivers\vclone.sys"
+ "vdrvroot" "Virtual Drive Root Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\vdrvroot.sys"
+ "vga" "VGA/Super VGA Video Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vgapnp.sys"
+ "VgaSave" "VGA/Super VGA Video Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vga.sys"
+ "vhdmp" "VHD Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vhdmp.sys"
+ "viaide" "VIA Generic PCI IDE Bus Driver" "VIA Technologies, Inc." "c:\windows\system32\drivers\viaide.sys"
+ "volmgr" "Volume Manager Driver" "Microsoft Corporation" "c:\windows\system32\drivers\volmgr.sys"
+ "volmgrx" "Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks" "Microsoft Corporation" "c:\windows\system32\drivers\volmgrx.sys"
+ "volsnap" "Volume Shadow Copy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\volsnap.sys"
+ "vsmraid" "VIA RAID DRIVER FOR AMD-X86-64" "VIA Technologies Inc.,Ltd" "c:\windows\system32\drivers\vsmraid.sys"
+ "vwifibus" "Implements bus functionality for Virtual WiFi" "Microsoft Corporation" "c:\windows\system32\drivers\vwifibus.sys"
+ "WacomPen" "Wacom Serial Pen Tablet HID Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wacompen.sys"
+ "WANARP" "Remote Access IP ARP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wanarp.sys"
+ "Wanarpv6" "Remote Access IPv6 ARP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wanarp.sys"
+ "Wd" "Microsoft Watchdog Timer Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wd.sys"
+ "Wdf01000" "Kernel Mode Driver Framework Runtime" "Microsoft Corporation" "c:\windows\system32\drivers\wdf01000.sys"
+ "WfpLwf" "WFP Lightweight Filter" "Microsoft Corporation" "c:\windows\system32\drivers\wfplwf.sys"
+ "WIMMount" "WIM Image mount service driver" "Microsoft Corporation" "c:\windows\system32\drivers\wimmount.sys"
+ "WmiAcpi" "Windows Management Interface for ACPI" "Microsoft Corporation" "c:\windows\system32\drivers\wmiacpi.sys"
+ "ws2ifsl" "Winsock IFS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ws2ifsl.sys"
+ "WsAudio_DeviceS(1)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(1).sys"
+ "WsAudio_DeviceS(2)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(2).sys"
+ "WsAudio_DeviceS(3)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(3).sys"
+ "WsAudio_DeviceS(4)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(4).sys"
+ "WsAudio_DeviceS(5)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(5).sys"
+ "WudfPf" "Windows Driver Foundation - User-mode Driver Framework Platform Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wudfpf.sys"
+ "WUDFRd" "Windows Driver Foundation - User-mode Driver Framework Reflector" "Microsoft Corporation" "c:\windows\system32\drivers\wudfrd.sys"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "aux" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "midi" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "midimapper" "Microsoft MIDI Mapper" "Microsoft Corporation" "c:\windows\system32\midimap.dll"
+ "mixer" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "msacm.ac3filter" "" "" "c:\windows\system32\ac3filter64.acm"
+ "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\imaadp32.acm"
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"
+ "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msadp32.acm"
+ "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msg711.acm"
+ "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msgsm32.acm"
+ "MSVideo8" "VfW MM Driver for WDM Video Capture Devices" "Microsoft Corporation" "c:\windows\system32\vfwwdm32.dll"
+ "vidc.i420" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\system32\iyuv_32.dll"
+ "VIDC.IYUV" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\system32\iyuv_32.dll"
+ "vidc.mrle" "Microsoft RLE Compressor" "Microsoft Corporation" "c:\windows\system32\msrle32.dll"
+ "vidc.msvc" "Microsoft Video 1 Compressor" "Microsoft Corporation" "c:\windows\system32\msvidc32.dll"
+ "VIDC.UYVY" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll"
+ "VIDC.YUY2" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll"
+ "VIDC.YVU9" "Toshiba Video Codec" "Microsoft Corporation" "c:\windows\system32\tsbyuv.dll"
+ "VIDC.YVYU" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll"
+ "wave" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wavemapper" "Microsoft Sound Mapper" "Microsoft Corporation" "c:\windows\system32\msacm32.drv"
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "aux" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "midi" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "midimapper" "Microsoft MIDI Mapper" "Microsoft Corporation" "c:\windows\syswow64\midimap.dll"
+ "mixer" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "msacm.ac3filter" "" "" "c:\windows\syswow64\ac3filter.acm"
+ "msacm.dvacm" "Ulead DV Audio ACM Driver" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\vio\dvacm.acm"
+ "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\imaadp32.acm"
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\syswow64\l3codeca.acm"
+ "msacm.mpegacm" "Ulead MPEG1 Layer2 Audio ACM Driver" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\mpegacm.acm"
+ "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msadp32.acm"
+ "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msg711.acm"
+ "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msgsm32.acm"
+ "msacm.siren" "Messenger Audio Codec" "Microsoft Corporation" "c:\windows\syswow64\sirenacm.dll"
+ "msacm.ulmp3acm" "Ulead MP3 codec engine" "Ulead systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulmp3acm.acm"
+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\syswow64\iccvid.dll"
+ "VIDC.FFDS" "ffdshow VFW" "" "c:\windows\syswow64\ff_vfw.dll"
+ "vidc.i420" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\syswow64\iyuv_32.dll"
+ "vidc.iyuv" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\syswow64\iyuv_32.dll"
+ "vidc.mrle" "Microsoft RLE Compressor" "Microsoft Corporation" "c:\windows\syswow64\msrle32.dll"
+ "vidc.msvc" "Microsoft Video 1 Compressor" "Microsoft Corporation" "c:\windows\syswow64\msvidc32.dll"
+ "vidc.uyvy" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll"
+ "vidc.yuy2" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll"
+ "vidc.yvu9" "Toshiba Video Codec" "Microsoft Corporation" "c:\windows\syswow64\tsbyuv.dll"
+ "vidc.yvyu" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll"
+ "wave" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wavemapper" "Microsoft Sound Mapper" "Microsoft Corporation" "c:\windows\syswow64\msacm32.drv"
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax"
+ "AC3Filter" "ac3filter" "" "c:\program files (x86)\ac3filter\x64\ac3filter64.ax"
+ "ACM Wrapper" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "AVI Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "AVI mux" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "AVI Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "AVI/WAV File Source" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "Microsoft Corporation" "c:\windows\system32\psisrndr.ax"
+ "CBVA DMO wrapper filter" "Windows Media Center Content Analysis Filter Module" "Microsoft Corporation" "c:\windows\ehome\cbva.dll"
+ "Closed Captions Analysis Filter" "CCA DirectShow Filter." "Microsoft Corporation" "c:\windows\system32\cca.dll"
+ "Color Space Converter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Default Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "DV Muxer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll"
+ "DV Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll"
+ "DV Video Decoder" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll"
+ "DVD Navigator" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\system32\qdvd.dll"
+ "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "Microsoft Corporation" "c:\windows\system32\evr.dll"
+ "File Source (Async.)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "File Source (URL)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "File stream renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "File Writer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "Infinite Pin Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "Internal Text Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "iTV Data Capture filter" "iTV Data Filters." "Microsoft Corporation" "c:\windows\system32\itvdata.dll"
+ "iTV Data Sink" "iTV Data Filters." "Microsoft Corporation" "c:\windows\system32\itvdata.dll"
+ "Line 21 Decoder 2" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Media Center Extender Encryption Filter" "Media Center Extender Filter" "Microsoft Corporation" "c:\windows\ehome\mcx2filter.dll"
+ "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "Microsoft Corporation" "c:\windows\system32\msac3enc.dll"
+ "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2adec.dll"
+ "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2vdec.dll"
+ "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll"
+ "Microsoft TV Captions Decoder" "Media Center Captioning Module" "Microsoft Corporation" "c:\windows\ehome\mstvcapn.dll"
+ "Microsoft TV Subtitles Decoder" "Media Center Captioning Module" "Microsoft Corporation" "c:\windows\ehome\mstvcapn.dll"
+ "MIDI Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MJPEG Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MPEG Audio Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MPEG Video Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax"
+ "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "Microsoft Corporation" "c:\windows\system32\mpeg2data.ax"
+ "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax"
+ "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "MPEG-I Stream Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Multi-file Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "NetBridge" "Media Center NetBridge" "Microsoft Corporation" "c:\windows\ehome\netbridge.dll"
+ "Null Renderer" "DirectShow Editing." "Microsoft Corporation" "c:\windows\system32\qedit.dll"
+ "RDP DShow Video Renderer" "RDP Renderer Filter (redirector)" "Microsoft" "c:\windows\system32\dshowrdpfilter.dll"
+ "SAMI (CC) Reader" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Sample Grabber" "DirectShow Editing." "Microsoft Corporation" "c:\windows\system32\qedit.dll"
+ "SBE2 Sink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "SBE2FileScan" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "Smart Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "SoundRecorder Null Renderer" "Windows Sound Recorder" "Microsoft Corporation" "c:\windows\system32\wavdest.dll"
+ "SoundRecorder Volume Watch" "Windows Sound Recorder" "Microsoft Corporation" "c:\windows\system32\wavdest.dll"
+ "SoundRecorder WAV Dest" "Windows Sound Recorder" "Microsoft Corporation" "c:\windows\system32\wavdest.dll"
+ "StreamBufferSink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "StreamBufferSource" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "VBI Codec" "Microsoft VBI Codec" "Microsoft Corporation" "c:\windows\system32\vbicodec.ax"
+ "VBI Surface Allocator" "VBI Surface Allocator Filter" "Microsoft Corporation" "c:\windows\system32\vbisurf.ax"
+ "VGA 16 color ditherer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Video Mixing Renderer 9" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Video Port Manager" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "VPS Decoder" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\system32\wstpager.ax"
+ "Wave Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "WM ASF Reader" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\system32\qasf.dll"
+ "WM ASF Writer" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\system32\qasf.dll"
+ "WMEnc Screen Capture Filter" "WMPSrcWp Module" "Microsoft Corporation" "c:\windows\system32\wmpsrcwp.dll"
+ "WST Pager" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\system32\wstpager.ax"
"HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "_ VSO Preview Filter" "Video preview filter" "VSO Software SARL" "c:\program files (x86)\vso\common\vsovprev.ax"
+ "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax"
+ "AC3Filter" "ac3filter" "" "c:\program files (x86)\rapidsolution\audials 8\ac3filter.ax"
+ "ACM Wrapper" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Audio Destination" "WAVDest Filter (Sample)" "Microsoft Corporation" "c:\program files (x86)\google\google earth\client\wavdest.ax"
+ "Audio Source" "Windows Media Preview Object" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmprevu.dll"
+ "AVI Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVI Draw Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVI mux" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "AVI Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVI/WAV File Source" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVS Video Out" "AVSVideoOutFilter DirectShow Filter" "Online Media Technologies Ltd" "c:\program files (x86)\common files\avsmedia\activex\avsvideooutfilter3.ax"
+ "AVSMediaGrabber" "AVSMediaGrabber4 DirectShow Filter" "Online Media Technologies Ltd." "c:\program files (x86)\common files\avsmedia\activex\avsmediagrabber4.ax"
+ "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "Microsoft Corporation" "c:\windows\syswow64\psisrndr.ax"
+ "Capture File Writer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "Closed Captions Analysis Filter" "CCA DirectShow Filter." "Microsoft Corporation" "c:\windows\syswow64\cca.dll"
+ "Color Converter" "Microsoft Color Converter" "Microsoft Corporation" "c:\windows\syswow64\declrds.ax"
+ "Color Space Converter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "CustomFrameGrabber Filter" "Viscom Frame" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomframe.dll"
+ "DC-Bass Source" "DirectShow™ Audio Decoder" "http://www.dsp-worx.de" "c:\program files (x86)\ape to mp3 converter\dcbasssource.ax"
+ "Default Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Dib Output" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\diboutput.ax"
+ "Dib Receive" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dibreceive.ax"
+ "DivX Decoder Filter" "DivX® Decoder Filter" "DivXNetworks, Inc." "c:\windows\syswow64\divxdec.ax"
+ "Dump" "File Dump Filter (Sample)" "Microsoft Corporation" "c:\program files (x86)\ape to mp3 converter\write.ax"
+ "Dump" "Audio Encoder" "Viscom Software" "c:\windows\syswow64\viscomaudioencoder.dll"
+ "DV ACM V/A Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DV Muxer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll"
+ "DV Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll"
+ "DV V/A Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DV Video Decoder" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll"
+ "DV Video Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DVD Navigator" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "Microsoft Corporation" "c:\windows\syswow64\evr.dll"
+ "ffdshow Audio Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow Audio Processor" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow raw video filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow subtitles filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow Video Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "File Source (Async.)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "File Source (URL)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "File stream renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "File Writer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "GPL MPEG-1/2 Decoder" "GPL MPEG-1/2 Decoder Filter for DirectShow" "Peter Wimmer, Gabest" "c:\windows\syswow64\gplmpgdec.ax"
+ "Image Effects" "Audio Data" "Viscom Software" "c:\windows\syswow64\viscomaudiodata.dll"
+ "Infinite Pin Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "Internal Text Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "iTV Data Capture filter" "iTV Data Filters." "Microsoft Corporation" "c:\windows\syswow64\itvdata.dll"
+ "iTV Data Sink" "iTV Data Filters." "Microsoft Corporation" "c:\windows\syswow64\itvdata.dll"
+ "LAME Audio Encoder" "LAME Audio Encoder" "" "c:\program files (x86)\ape to mp3 converter\lame.ax"
+ "Line 21 Decoder" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "Line 21 Decoder 2" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msac3enc.dll"
+ "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2adec.dll"
+ "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2vdec.dll"
+ "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll"
+ "MIDI Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MJPEG Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MPEG Audio Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MPEG Video Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax"
+ "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "Microsoft Corporation" "c:\windows\syswow64\mpeg2data.ax"
+ "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax"
+ "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "MPEG-I Stream Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Multi-file Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Nero Audio CD Filter" "Nero Audio CD Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio CD Navigator" "Nero Audio CD Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio Processor" "Nero Audio Processor" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudioconv.ax"
+ "Nero Audio Source" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Nero Digital Audio Decoder" "Nero Audio Decoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudio.ax"
+ "Nero Digital AVC Audio Encoder" "AAC LC/HE Audio Encoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendaud.ax"
+ "Nero Digital AVC File Writer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Muxer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Null Renderer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Subpicture Enc" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital Parser" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\ndparser.ax"
+ "Nero DV Splitter" "DV Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nedvsplitter.ax"
+ "Nero DVD Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideo.ax"
+ "Nero DVD Navigator" "DVD Navigator Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nedvd.ax"
+ "Nero ES Video Reader" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\ndparser.ax"
+ "Nero File Source" "Nero SVCD source filter" "Nero AG " "c:\program files (x86)\common files\ahead\dsfilter\nefilesrc.ax"
+ "Nero File Source (Async.)" "NeFileSourceAsync" "Ahead Software AG" "c:\program files (x86)\common files\ahead\dsfilter\nefilesourceasync.ax"
+ "Nero File Source / Splitter" "Push Mode VOB Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nefsource.ax"
+ "Nero Format Converter" "Frame rate / Color space converter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neroformatconv.ax"
+ "Nero Frame Capture" "Direct Show frame grabber filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\necapture.ax"
+ "Nero Mpeg2 Encoder" "MPEG 1/2 Video Encoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevcr.ax"
+ "Nero Photo Source" "NePhotoSource" "Ahead Software AG" "c:\program files (x86)\common files\ahead\dsfilter\nephotosource.ax"
+ "Nero PS Muxer" "PS Muxer Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nepsmuxer.ax"
+ "Nero QuickTime™ Audio Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero QuickTime™ Video Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero Resize" "Nero Resizing Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neresize.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Splitter" "Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesplitter.ax"
+ "Nero Vcd Navigator" "Nero Vcd Navigator Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevcd.ax"
+ "Nero Video Analyzer" "Nero Video Analyzer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideoanalyzer.ax"
+ "Nero Video Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideo.ax"
+ "Nero Video Processor" "Resize / Deinterlace / Color Correction / Film Effect / Frame Capture Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerovideoproc.ax"
+ "Nero Video Source" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Null Renderer" "DirectShow Editing." "Microsoft Corporation" "c:\windows\syswow64\qedit.dll"
+ "Ogg Multiplexer" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "Ogg Splitter" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "Overlay Mixer" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "Overlay Mixer2" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "QTSrc" "CLQTSrc" "Cyberlink" "c:\windows\syswow64\qtalt.ax"
+ "QuickTime Source Filter" "QuickTime Decoder" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomqtde.dll"
+ "QuickTime Writer" "" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomqtenc.dll"
+ "RDP DShow Video Renderer" "RDP Renderer Filter (redirector)" "Microsoft" "c:\windows\syswow64\dshowrdpfilter.dll"
+ "RealAudio Decoder" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "RealMedia Source" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "RealMedia Splitter" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "RealMediaEncoder Filter" "RealMedia Encoder" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomrmencoder.dll"
+ "RealVideo Decoder" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "Record Queue" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "Record Queue" "WME Record Queue" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmedque.dll"
+ "SAMI (CC) Reader" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Sample Grabber" "DirectShow Editing." "Microsoft Corporation" "c:\windows\syswow64\qedit.dll"
+ "SBE2 Sink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "SBE2FileScan" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "Smart Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "StreamBufferSink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "StreamBufferSource" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "TC131 USBCAM" "" "" "c:\program files (x86)\tca-131\tc131.ax"
+ "Ulead AMR Audio Decoder" "MP4 AMR Audio Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uladamr.ax"
+ "Ulead DV Scene Detect" "ulDvScDt" "Ulead system Inc." "c:\program files (x86)\common files\ulead systems\capture\uldvscdt.ax"
+ "Ulead DV Writer" "ulDVWriter" "Ulead System Inc." "c:\program files (x86)\common files\ulead systems\capture\uldvrite.ax"
+ "Ulead DVB Parser" "Ulead DVB Parser Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvbparser.ax"
+ "Ulead DVD Audio Decoder 2" "Audio Decoder" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead DVD Navigator" "DVD Navigator filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\dvd\uleaddvdnavigator.ax"
+ "Ulead DVD Video decoder 2" "DVD Video Decoder with DxVA Support" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdvideo.ax"
+ "ULead File Source (Async.)" "Ulead Async Filter" "Ulead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulasync.ax"
+ "ULead File Writer" "File Dump Filter" "ULead Systems" "c:\program files (x86)\corel\corel dvd moviefactory 7\corel dvd moviefactory 7\uldump.ax"
+ "Ulead H264 Decoder" "uldsh264" "uleadivi" "c:\program files (x86)\common files\ulead systems\mpeg\uldsh264.ax"
+ "ULead Infinite Pin Tee" "Ulead Infinite Tee Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uinftee.ax"
+ "Ulead MPEG Audio Decoder" "Audio Decoder" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead MPEG Encoder" "MPEG Encoder and Muxer" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulesmpeg.ax"
+ "Ulead MPEG Muxer" "MPEG Muxer" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulmxmpeg.ax"
+ "Ulead MPEG Splitter" "ULead Mpeg I/II Splitter" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulspmpeg.ax"
+ "Ulead MPEG Transcoder" "ulMPGTrans" "Ulead com" "c:\program files (x86)\common files\ulead systems\mpeg\ulmpgtrans.ax"
+ "Ulead MPEG Video Decoder" "MPEG Video and Audio Decoder" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\uldsmpeg.ax"
+ "Ulead MPEG-4 ASP Video Decoder" "MP4 ASP Video Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulaspvdmp4.ax"
+ "Ulead MPEG-4 Audio Decoder" "MP4 AAC Audio Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uladmp4.ax"
+ "Ulead MPEG-4 Encoder" "MP4 Encoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulmp4enc.ax"
+ "Ulead MPEG-4 Splitter" "MP4 Splitter Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulspmp4.ax"
+ "Ulead MPEG-4 Video Decoder" "MP4 Video Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulvdmp4.ax"
+ "Ulead Ogg Parser" "ulOggParserFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggparserfilter.ax"
+ "Ulead OggVorbis Decoder" "ulOggVorbisDecoderFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggvorbisdecoderfilter.ax"
+ "Ulead OggVorbis Encoder" "ulOggVorbisEncoderFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggvorbisencoderfilter.ax"
+ "Ulead Push Source Filter" "Ulead Push Source Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulpushsource.ax"
+ "Ulead Sub-Picture Push Source Filter" "Ulead Sub-Picture Push Source Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulsubpicpushsource.ax"
+ "Ulead Video Deinterlace Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\deinterlace.ax"
+ "VBI Codec" "Microsoft VBI Codec" "Microsoft Corporation" "c:\windows\syswow64\vbicodec.ax"
+ "VBI Surface Allocator" "VBI Surface Allocator Filter" "Microsoft Corporation" "c:\windows\syswow64\vbisurf.ax"
+ "VGA 16 color ditherer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Mixing Renderer 9" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Port Manager" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Source" "Windows Media Preview Object" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmprevu.dll"
+ "VISCOM FLV F4V Decoder" "viscomflvdec.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomflvdec.dll"
+ "VISCOM Overlay Text Filter" "" "" "c:\windows\syswow64\viscomtran.dll"
+ "Viscomsoft Animated GIF Encoder" "" "" "c:\windows\syswow64\viscomgifenc.dll"
+ "Viscomsoft MPEG Audio Decoder" "viscommpgadec.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscommpgadec.dll"
+ "Viscomsoft Mpeg Encoder" "viscomdata3.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscommpgenc.dll"
+ "Viscomsoft Mpeg Source" "viscomsplitter" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomsplitter.dll"
+ "Viscomsoft Mpeg Splitter" "viscomsplitter" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomsplitter.dll"
+ "Viscomsoft MPEG Video Decoder" "viscommpgdec.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscommpgdec.dll"
+ "Vorbis Decoder" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "Vorbis Encoder" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "VPS Decoder" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\syswow64\wstpager.ax"
+ "WAV Dest" "" "Viscom Software" "c:\windows\syswow64\viscomwave.dll"
+ "Wave Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "WM ASF Reader" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\syswow64\qasf.dll"
+ "WM ASF Writer" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\syswow64\qasf.dll"
+ "WM VIH2 Fix" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMEnc Screen Capture Filter" "WMPSrcWp Module" "Microsoft Corporation" "c:\windows\syswow64\wmpsrcwp.dll"
+ "WMEnc Screen Capture Filter" "WMESrcWp Module" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmesrcwp.dll"
+ "WMT DV Extract Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Sample Info Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Switch Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Renderer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Source" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WS ScreenCapture" "ScreenCa Dynamic Link Library" "" "c:\program files (x86)\iskysoft\drm removal\screencapturefilter.ax"
+ "WST Pager" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\syswow64\wstpager.ax"
+ "XviD MPEG-4 Video Decoder" "" "" "c:\windows\syswow64\xvid.ax"
"HKLM\System\CurrentControlSet\Control\Session Manager\AutorunsDisabled\BootExecute" "" "" ""
X "autocheck autochk *" "Auto Check Utility" "Microsoft Corporation" "c:\windows\system32\autochk.exe"
X "bootdelete" "Hitman Pro 3.5 BootDelete" "SurfRight B.V." "c:\windows\system32\bootdelete.exe"
X "bootdelete" "Hitman Pro 3.5 BootDelete" "SurfRight B.V." "c:\windows\system32\bootdelete.exe"
X "lsdelete" "" "" "c:\windows\system32\lsdelete.exe"
"HKLM\System\CurrentControlSet\Control\ServiceControlManagerExtension" "" "" ""
X "%systemroot%\system32\scext.dll" "Service Control Manager Extension DLL for non-minwin" "Microsoft Corporation" "c:\windows\system32\scext.dll"
"HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls" "" "" ""
+ "advapi32" "Advanced Windows 32 Base API" "Microsoft Corporation" "c:\windows\syswow64\advapi32.dll"
+ "advapi32" "Advanced Windows 32 Base API" "Microsoft Corporation" "c:\windows\system32\advapi32.dll"
+ "clbcatq" "COM+ Configuration Catalog" "Microsoft Corporation" "c:\windows\syswow64\clbcatq.dll"
+ "clbcatq" "COM+ Configuration Catalog" "Microsoft Corporation" "c:\windows\system32\clbcatq.dll"
+ "COMDLG32" "Common Dialogs DLL" "Microsoft Corporation" "c:\windows\syswow64\comdlg32.dll"
+ "COMDLG32" "Common Dialogs DLL" "Microsoft Corporation" "c:\windows\system32\comdlg32.dll"
+ "DifxApi" "Driver Install Frameworks for API library module" "Microsoft Corporation" "c:\windows\syswow64\difxapi.dll"
+ "DifxApi" "Driver Install Frameworks for API library module" "Microsoft Corporation" "c:\windows\system32\difxapi.dll"
+ "gdi32" "GDI Client DLL" "Microsoft Corporation" "c:\windows\syswow64\gdi32.dll"
+ "gdi32" "GDI Client DLL" "Microsoft Corporation" "c:\windows\system32\gdi32.dll"
+ "IERTUTIL" "Run time utility for Internet Explorer" "Microsoft Corporation" "c:\windows\syswow64\iertutil.dll"
+ "IERTUTIL" "Run time utility for Internet Explorer" "Microsoft Corporation" "c:\windows\system32\iertutil.dll"
+ "IMAGEHLP" "Windows NT Image Helper" "Microsoft Corporation" "c:\windows\syswow64\imagehlp.dll"
+ "IMAGEHLP" "Windows NT Image Helper" "Microsoft Corporation" "c:\windows\system32\imagehlp.dll"
+ "IMM32" "Multi-User Windows IMM32 API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\imm32.dll"
+ "IMM32" "Multi-User Windows IMM32 API Client DLL" "Microsoft Corporation" "c:\windows\system32\imm32.dll"
+ "kernel32" "Windows NT BASE API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\kernel32.dll"
+ "kernel32" "Windows NT BASE API Client DLL" "Microsoft Corporation" "c:\windows\system32\kernel32.dll"
+ "LPK" "Language Pack" "Microsoft Corporation" "c:\windows\syswow64\lpk.dll"
+ "LPK" "Language Pack" "Microsoft Corporation" "c:\windows\system32\lpk.dll"
+ "MSCTF" "MSCTF Server DLL" "Microsoft Corporation" "c:\windows\syswow64\msctf.dll"
+ "MSCTF" "MSCTF Server DLL" "Microsoft Corporation" "c:\windows\system32\msctf.dll"
+ "MSVCRT" "Windows NT CRT DLL" "Microsoft Corporation" "c:\windows\syswow64\msvcrt.dll"
+ "MSVCRT" "Windows NT CRT DLL" "Microsoft Corporation" "c:\windows\system32\msvcrt.dll"
+ "NORMALIZ" "Unicode Normalization DLL" "Microsoft Corporation" "c:\windows\syswow64\normaliz.dll"
+ "NORMALIZ" "Unicode Normalization DLL" "Microsoft Corporation" "c:\windows\system32\normaliz.dll"
+ "NSI" "NSI User-mode interface DLL" "Microsoft Corporation" "c:\windows\syswow64\nsi.dll"
+ "NSI" "NSI User-mode interface DLL" "Microsoft Corporation" "c:\windows\system32\nsi.dll"
+ "ole32" "Microsoft OLE for Windows" "Microsoft Corporation" "c:\windows\syswow64\ole32.dll"
+ "ole32" "Microsoft OLE for Windows" "Microsoft Corporation" "c:\windows\system32\ole32.dll"
+ "OLEAUT32" "" "Microsoft Corporation" "c:\windows\syswow64\oleaut32.dll"
+ "OLEAUT32" "" "Microsoft Corporation" "c:\windows\system32\oleaut32.dll"
+ "PSAPI" "Process Status Helper" "Microsoft Corporation" "c:\windows\syswow64\psapi.dll"
+ "PSAPI" "Process Status Helper" "Microsoft Corporation" "c:\windows\system32\psapi.dll"
+ "rpcrt4" "Remote Procedure Call Runtime" "Microsoft Corporation" "c:\windows\syswow64\rpcrt4.dll"
+ "rpcrt4" "Remote Procedure Call Runtime" "Microsoft Corporation" "c:\windows\system32\rpcrt4.dll"
+ "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "Microsoft Corporation" "c:\windows\syswow64\sechost.dll"
+ "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "Microsoft Corporation" "c:\windows\system32\sechost.dll"
+ "Setupapi" "Windows Setup API" "Microsoft Corporation" "c:\windows\syswow64\setupapi.dll"
+ "Setupapi" "Windows Setup API" "Microsoft Corporation" "c:\windows\system32\setupapi.dll"
+ "SHELL32" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "SHELL32" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "SHLWAPI" "Shell Light-weight Utility Library" "Microsoft Corporation" "c:\windows\syswow64\shlwapi.dll"
+ "SHLWAPI" "Shell Light-weight Utility Library" "Microsoft Corporation" "c:\windows\system32\shlwapi.dll"
+ "URLMON" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\syswow64\urlmon.dll"
+ "URLMON" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "user32" "Multi-User Windows USER API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\user32.dll"
+ "user32" "Multi-User Windows USER API Client DLL" "Microsoft Corporation" "c:\windows\system32\user32.dll"
+ "USP10" "Uniscribe Unicode script processor" "Microsoft Corporation" "c:\windows\syswow64\usp10.dll"
+ "USP10" "Uniscribe Unicode script processor" "Microsoft Corporation" "c:\windows\system32\usp10.dll"
+ "WININET" "Internet Extensions for Win32" "Microsoft Corporation" "c:\windows\syswow64\wininet.dll"
+ "WININET" "Internet Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\wininet.dll"
+ "WLDAP32" "Win32 LDAP API DLL" "Microsoft Corporation" "c:\windows\syswow64\wldap32.dll"
+ "WLDAP32" "Win32 LDAP API DLL" "Microsoft Corporation" "c:\windows\system32\wldap32.dll"
+ "WS2_32" "Windows Socket 2.0 32-Bit DLL" "Microsoft Corporation" "c:\windows\syswow64\ws2_32.dll"
+ "WS2_32" "Windows Socket 2.0 32-Bit DLL" "Microsoft Corporation" "c:\windows\system32\ws2_32.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers" "" "" ""
+ "CCertProvider" "Cert Credential Provider" "Microsoft Corporation" "c:\windows\system32\certcredprovider.dll"
+ "GenericProvider" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
+ "NPProvider" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
+ "PasswordProvider" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
+ "Smartcard Credential Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll"
+ "Smartcard Pin Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll"
+ "VaultCredProvider" "Vault Credential Provider" "Microsoft Corporation" "c:\windows\system32\vaultcredprovider.dll"
+ "WinBio Credential Provider" "WinBio Credential Provider" "Microsoft Corporation" "c:\windows\system32\biocredprov.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Provider Filters" "" "" ""
+ "GenericFilter" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\PLAP Providers" "" "" ""
+ "CRasProvider" "RAS PLAP Credential Provider" "Microsoft Corporation" "c:\windows\system32\rasplap.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries" "" "" ""
+ "MSAFD Pgm (RDM)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Pgm (Stream)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries" "" "" ""
+ "NTDS" "LDAP RnR Provider DLL" "Microsoft Corporation" "c:\windows\system32\winrnr.dll"
+ "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
+ "PNRP Name Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64" "" "" ""
+ "MSAFD Pgm (RDM)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Pgm (Stream)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64" "" "" ""
+ "E-mail Naming Shim Provider" "E-mail Naming Shim Provider" "Microsoft Corporation" "c:\windows\system32\napinsp.dll"
+ "Network Location Awareness Legacy (NLAv1) Namespace" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "NTDS" "LDAP RnR Provider DLL" "Microsoft Corporation" "c:\windows\system32\winrnr.dll"
+ "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
+ "PNRP Name Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
+ "Tcpip" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" ""
+ "doPDF 7 Monitor" "doPDF Port Monitor" "Softland" "c:\windows\system32\dopdfmn7.dll"
+ "Local Port" "Local Spooler DLL" "Microsoft Corporation" "c:\windows\system32\localspl.dll"
+ "Microsoft Shared Fax Monitor" "Microsoft Fax Print Monitor" "Microsoft Corporation" "c:\windows\system32\fxsmon.dll"
+ "Standard TCP/IP Port" "Standard TCP/IP Port Monitor DLL" "Microsoft Corporation" "c:\windows\system32\tcpmon.dll"
+ "USB Monitor" "Standard Dynamic Printing Port Monitor DLL" "Microsoft Corporation" "c:\windows\system32\usbmon.dll"
+ "WSD Port" "WSD Printer Port Monitor" "Microsoft Corporation" "c:\windows\system32\wsdmon.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders" "" "" ""
+ "credssp.dll" "Credential Delegation Security Package" "Microsoft Corporation" "c:\windows\system32\credssp.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Authentication Packages" "" "" ""
+ "msv1_0" "Microsoft Authentication Package v1.0" "Microsoft Corporation" "c:\windows\system32\msv1_0.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Notification Packages" "" "" ""
+ "scecli" "Windows Security Configuration Editor Client Engine" "Microsoft Corporation" "c:\windows\system32\scecli.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Security Packages" "" "" ""
+ "kerberos" "Kerberos Security Package" "Microsoft Corporation" "c:\windows\system32\kerberos.dll"
+ "msv1_0" "Microsoft Authentication Package v1.0" "Microsoft Corporation" "c:\windows\system32\msv1_0.dll"
+ "pku2u" "Pku2u Security Package" "Microsoft Corporation" "c:\windows\system32\pku2u.dll"
+ "schannel" "TLS / SSL Security Provider" "Microsoft Corporation" "c:\windows\system32\schannel.dll"
+ "tspkg" "Web Service Security Package" "Microsoft Corporation" "c:\windows\system32\tspkg.dll"
+ "wdigest" "Microsoft Digest Access" "Microsoft Corporation" "c:\windows\system32\wdigest.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order" "" "" ""
+ "LanmanWorkstation" "Microsoft Windows Network" "Microsoft Corporation" "c:\windows\system32\ntlanman.dll"
+ "RDPNP" "Microsoft Terminal Services" "Microsoft Corporation" "c:\windows\system32\drprov.dll"
+ "webclient" "Web Client Network" "Microsoft Corporation" "c:\windows\system32\davclnt.dll"
"C:\Users\majik\AppData\Local\Microsoft\Windows Sidebar\Settings.ini" "" "" ""
+ "WinZip Gadget" "" "WinZip" "C:\Program Files\Windows Sidebar\Shared Gadgets\WinZip.Gadget\en-US\Gadget.xml"

#6 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:51 PM

Posted 11 September 2012 - 04:31 PM

After uninstalling sunbelt we need to reinstall network drivers to restore connection

Click on startmenu and type

cmd

Right click on it and select run as administrator and run this command

netsh winsock reset

Press windows+R key and type

devmgmt.msc and click ok

Expand network adapters

Right click on network driver-uninstall it

Restart the PC.It should reinstall on bootup.Now check your browser

#7 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 12 September 2012 - 03:10 AM

I did the winsock reset and restarted the computer and it reinstalled the network drivers. Still no internet. Same as before.

#8 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:51 PM

Posted 12 September 2012 - 03:37 AM

Download

mini toolbox

Checkmark following boxes:

List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs

Click Go and post the result.

Run Autoruns again and post the new log

#9 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 12 September 2012 - 09:56 AM

MiniToolBox by Farbar Version: 23-07-2012
Ran by majik (administrator) on 12-09-2012 at 10:46:32
Microsoft Windows 7 Home Premium (X64)
Boot Mode: Normal
***************************************************************************
========================= IP Configuration: ================================

NVIDIA nForce 10/100 Mbps Ethernet = Local Area Connection (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : majik-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : westell.com

Ethernet adapter Local Area Connection:

Connection-specific DNS Suffix . : westell.com
Description . . . . . . . . . . . : NVIDIA nForce 10/100 Mbps Ethernet
Physical Address. . . . . . . . . : 44-87-FC-7A-E3-01
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::b8dd:6ae7:ed85:c03%18(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.30(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Wednesday, September 12, 2012 10:25:42 AM
Lease Expires . . . . . . . . . . : Thursday, September 13, 2012 10:25:41 AM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 356812796
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-13-56-86-5F-44-87-FC-7A-E3-01
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.westell.com:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : westell.com
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e76:3cf7:2e0d:3f57:fee1(Preferred)
Link-local IPv6 Address . . . . . : fe80::3cf7:2e0d:3f57:fee1%11(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled
Server: dslrouter.westell.com
Address: 192.168.1.1

Name: google.com
Addresses: 2607:f8b0:4006:801::1006
74.125.226.227
74.125.226.226
74.125.226.231
74.125.226.230
74.125.226.228
74.125.226.225
74.125.226.229
74.125.226.224
74.125.226.232
74.125.226.233
74.125.226.238

Ping request could not find host google.com. Please check the name and try again.
Server: dslrouter.westell.com
Address: 192.168.1.1

Name: yahoo.com
Addresses: 98.139.183.24
98.138.253.109
72.30.38.140

Ping request could not find host yahoo.com. Please check the name and try again.
Server: dslrouter.westell.com
Address: 192.168.1.1

Name: bleepingcomputer.com
Address: 208.43.87.2

Ping request could not find host bleepingcomputer.com. Please check the name and try again.

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
18...44 87 fc 7a e3 01 ......NVIDIA nForce 10/100 Mbps Ethernet
1...........................Software Loopback Interface 1
17...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
11...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.30 20
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.30 276
192.168.1.30 255.255.255.255 On-link 192.168.1.30 276
192.168.1.255 255.255.255.255 On-link 192.168.1.30 276
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.30 276
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.30 276
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
11 58 ::/0 On-link
1 306 ::1/128 On-link
11 58 2001::/32 On-link
11 306 2001:0:4137:9e76:3cf7:2e0d:3f57:fee1/128
On-link
18 276 fe80::/64 On-link
11 306 fe80::/64 On-link
11 306 fe80::3cf7:2e0d:3f57:fee1/128
On-link
18 276 fe80::b8dd:6ae7:ed85:c03/128
On-link
1 306 ff00::/8 On-link
11 306 ff00::/8 On-link
18 276 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"

x64-Catalog5 02 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

x64-Catalog5 03 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (09/12/2012 10:25:44 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/12/2012 04:02:44 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 01:25:42 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:39:16 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:36:46 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:09:12 AM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/10/2012 04:00:34 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:54:12 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:40:57 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 10:37:05 PM) (Source: Schedule) (User: )
Description: Schedule error: 0Initialize call failed, bailing out


System errors:
=============
Error: (09/12/2012 10:25:54 AM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222

Error: (09/12/2012 10:25:52 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/12/2012 10:25:49 AM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222

Error: (09/12/2012 10:25:39 AM) (Source: EventLog) (User: )
Description: The previous system shutdown at 10:24:32 AM on ?9/?12/?2012 was unexpected.

Error: (09/12/2012 10:06:10 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/12/2012 08:06:10 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/12/2012 06:06:10 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/12/2012 04:03:10 AM) (Source: BROWSER) (User: )
Description: The browser was unable to update the service status bits. The data is the error.

Error: (09/12/2012 04:02:52 AM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222

Error: (09/12/2012 04:02:46 AM) (Source: Service Control Manager) (User: )
Description: The Server service terminated with the following error:
%%1222


Microsoft Office Sessions:
=========================
Error: (09/12/2012 10:25:44 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/12/2012 04:02:44 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 01:25:42 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:39:16 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:36:46 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/11/2012 02:09:12 AM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/10/2012 04:00:34 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:54:12 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/09/2012 06:40:57 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out

Error: (09/08/2012 10:37:05 PM) (Source: Schedule)(User: )
Description: Schedule error: 0Initialize call failed, bailing out


=========================== Installed Programs ============================

Adobe Flash Player 11 ActiveX 64-bit (Version: 11.0.1.152)
Altdo Video to AVI WMV DVD Converter&Burner 5.7
Amazing Adventures - The Lost Tomb (Version: 1.0.0)
Amazon Unbox Video (Version: 2.2.0.153)
Angry Birds Space (Version: 1.0.0)
Audials (Version: 8.0.46302.200)
Audials TV (Version: 1.3.10803.300)
AVS DVD Authoring
AVS Update Manager 1.0
AVS Video Recorder 2.4
AVS4YOU Software Navigator 1.3
Azkend (Version: 1.0)
Azkend 2 - The World Beneath (Version: 1.0)
Bejeweled Twist 1.0 (Version: 1.0)
Bookworm Adventures Vol. 2 (Version: 1.0.4)
Bulk Rename Utility 2.7.1.2
calibre (Version: 0.8.64)
CCleaner (Version: 3.22)
CDA to MP3 Converter v3.3 build 1228
CDBurnerXP (Version: 4.3.7.2423)
CDBurnerXP (Version: 4.4.1.3341)
CleanMem (Version: v2.3.1)
CloneCD
Corel DVD MovieFactory 7 (Version: 7.0.0)
Corel DVD MovieFactory 7 TBYB (Version: 7.0.0)
dBpoweramp m4a Codec (Version: Release 14 r2)
dBpoweramp Musepack Codec
DHTML Editing Component (Version: 6.02.0001)
doPDF 7.3 printer
DVDStyler v2.1
Evolver (Version: 1.0)
ffdshow v1.1.4399 [2012-03-22] (Version: 1.1.4399.0)
Foxit Creator (Version: 3,1,0,1210)
Gardenscapes 2012 Full
Glary Utilities Pro 2.47.0.1539 (Version: 2.47.0.1539)
Google Chrome (Version: 21.0.1180.89)
Google Earth (Version: 5.1.3533.1731)
Google Earth Plus 6.0.0.1735 (Version: 6.0.0.1735)
Google Earth Plus 6.0.3.2197 Final (Version: 6.0.3.2197)
Google Update Helper (Version: 1.3.21.115)
gpedt.msc 1.0
GreedyTorrent v1.01 beta build 170
Hamster Free EbookConverter (Version: 1.0.0.13)
HitmanPro 3.6 (Version: 3.6.1.164)
IrfanView (remove only) (Version: 4.32)
iSkysoft DRM Removal(Build 1.1.0.0)
Java Auto Updater (Version: 2.0.5.1)
Jewel Quest - The Sapphire Dragon Standard Edition (Version: 1.0)
Jewel Quest - The Sleepless Star (Version: 1.067)
Jewel Quest 5 The Sleepless Star CE
Kyodai Mahjongg 2006 v1.42
Magic ISO Maker v5.5 (build 0272)
Malwarebytes Anti-Malware version 1.62.0.1300 (Version: 1.62.0.1300)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4734.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.4734.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.4734.1000)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (Version: 10.0.30319)
Mobipocket Reader 6.2 (Version: 6.2.608)
Mozilla Firefox (3.6.18) (Version: 3.6.18 (en-US))
Mozilla Thunderbird (3.1.14) (Version: 3.1.14 (en-US))
Mystery Case Files - 13th Skull Collectors Edition (Version: 1.0.3.616)
NVIDIA Display Control Panel (Version: 6.14.11.9713)
NVIDIA Drivers (Version: 1.10.57.35)
NVIDIA ForceWare Network Access Manager (Version: 1.00.7305)
PeerBlock 1.1 (r518) (Version: 1.1.0.518)
Peggle Deluxe (Version: 1.0)
Peggle Deluxe 1.01
PFConfig 1.0.163 (Version: 1.0.163)
PFPortChecker 1.0.39 (Version: 1.0.39)
Pickers Adventures in Rust version 1.0 (Version: 1.0)
Portforward Static IP Address 1.0.47 (Version: 1.0.47)
Process Lasso (Version: 5.1.0.30)
RAR Password Recovery v1.1 RC17 (remove only)
Replay Media Catcher 4 (Version: 4.1.1)
Revo Uninstaller Pro 2.5.0 (Version: 2.5.0)
Ricochet Xtreme
Saving Private Sheep (Version: v1.0)
Snood 4
Snood for Windows version 3.52-W
Speccy (Version: 1.17)
SUPERAntiSpyware (Version: 5.5.1012)
TCA-131 Version 1.0
The Clumsys (Version: 1.0.8)
TiffPdfCleaner
TSView 6.2.4.5
Tumble Bees To Go (Version: 1.0)
Turbo Lister 2 (Version: 2.00.0000)
VirtualCloneDrive
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (Version: 9.0.30729.01)
VLC media player 2.0.1 (Version: 2.0.1)
Water Bugs 1.15
Windows Installer Clean Up (Version: 3.00.00.0000)
Windows Media Encoder 9 Series
Windows Media Encoder 9 Series (Version: 9.00.2980)
WinHTTrack Website Copier 3.43-9C (x64) (Version: 3.43.9)
WinPatrol (Version: 20.5.2011.0)
Wondershare Media Converter(Build 1.2.1.0)
Yawcam 0.3.7

**** End of log ****

"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms" "" "" ""
+ "rdpclip" "" "" "File not found: rdpclip"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit" "" "" ""
+ "C:\Windows\system32\userinit.exe" "Userinit Logon Application" "Microsoft Corporation" "c:\windows\system32\userinit.exe"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\VmApplet" "" "" ""
+ "SystemPropertiesPerformance.exe" "Change Computer Performance Settings" "Microsoft Corporation" "c:\windows\system32\systempropertiesperformance.exe"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell" "" "" ""
+ "Explorer.exe" "Windows Explorer" "Microsoft Corporation" "c:\windows\explorer.exe"
"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\AlternateShell" "" "" ""
+ "cmd.exe" "Windows Command Processor" "Microsoft Corporation" "c:\windows\system32\cmd.exe"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "RegProt" "" "" "c:\regprot\regprot.exe"
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "" "" ""
+ "eBook USB Driver.lnk" "eBook USB Driver" "" "c:\program files (x86)\ebook technologies\ebook usb driver\trayebu.exe"
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Browser Customizations" "IEAK branding" "Microsoft Corporation" "c:\windows\system32\iedkcs32.dll"
+ "Internet Explorer" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\system32\ie4uinit.exe"
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\system32\unregmp2.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\system32\unregmp2.exe"
+ "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "Microsoft Corporation" "c:\windows\system32\mscories.dll"
+ "Themes Setup" "Windows Theme API" "Microsoft Corporation" "c:\windows\system32\themeui.dll"
+ "Web Platform Customizations" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\system32\ie4uinit.exe"
+ "Windows Desktop Update" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\IconServiceLib" "" "" ""
+ "IconCodecService.dll" "Converts a PNG part of the icon to a legacy bmp icon" "Microsoft Corporation" "c:\windows\system32\iconcodecservice.dll"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Browser Customizations" "IEAK branding" "Microsoft Corporation" "c:\windows\syswow64\iedkcs32.dll"
+ "Internet Explorer" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\syswow64\ie4uinit.exe"
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files (x86)\windows mail\winmail.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\syswow64\unregmp2.exe"
+ "Microsoft Windows Media Player" "Microsoft Windows Media Player Setup Utility" "Microsoft Corporation" "c:\windows\syswow64\unregmp2.exe"
+ "n/a" "Microsoft .NET IE SECURITY REGISTRATION" "Microsoft Corporation" "c:\windows\syswow64\mscories.dll"
+ "Themes Setup" "Windows Theme API" "Microsoft Corporation" "c:\windows\syswow64\themeui.dll"
+ "Web Platform Customizations" "IE Per-User Initialization Utility" "Microsoft Corporation" "c:\windows\syswow64\ie4uinit.exe"
+ "Windows Desktop Update" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "PeerBlock" "PeerBlock" "PeerBlock, LLC" "c:\program files\peerblock\peerblock.exe"
"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" ""
+ "application/octet-stream" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll"
+ "application/x-complus" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll"
+ "application/x-msdownload" "Microsoft .NET Runtime Execution Engine" "Microsoft Corporation" "c:\windows\system32\mscoree.dll"
+ "deflate" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "gzip" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office14\msoxmlmf.dll"
"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" ""
+ "about" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "cdl" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "dvd" "ActiveX control for streaming video" "Microsoft Corporation" "c:\windows\system32\msvidctl.dll"
+ "file" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "ftp" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "http" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "https" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "its" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\windows\system32\itss.dll"
+ "javascript" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "local" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "mailto" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "mhtml" "Microsoft Internet Messaging API Resources" "Microsoft Corporation" "c:\windows\system32\inetcomm.dll"
+ "mk" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "ms-its" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\windows\system32\itss.dll"
+ "res" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
+ "tv" "ActiveX control for streaming video" "Microsoft Corporation" "c:\windows\system32\msvidctl.dll"
+ "vbscript" "Microsoft ® HTML Viewer" "Microsoft Corporation" "c:\windows\system32\mshtml.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad" "" "" ""
+ "WebCheck" "Web Site Monitor" "Microsoft Corporation" "c:\windows\system32\webcheck.dll"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad" "" "" ""
+ "WebCheck" "Web Site Monitor" "Microsoft Corporation" "c:\windows\syswow64\webcheck.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" ""
+ "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" ""
+ "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Extensions" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell64.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
+ "BRUMenuHandler" "Context Menu Dynamic Link Library" "Bulk Rename Utility" "c:\program files\bulk rename utility\bruhere64.dll"
+ "LavasoftShellExt" "Shell Extension " "Lavasoft Limited" "c:\program files (x86)\lavasoft\ad-aware\shellext_64.dll"
+ "MagicISO" "MagicISO Shell Extension Module" "MagicISO, Inc." "c:\program files (x86)\magiciso\misosh64.dll"
+ "Notepad++64" "ShellHandler for Notepad++ (64 bit)" "" "c:\program files (x86)\notepad++\nppshell_01.dll"
+ "Open With" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "Open With EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "SASContextMenu Class" "SUPERAntiSpyware Context Menu Extension" "SUPERAntiSpyware.com" "c:\program files\superantispyware\sasctxmn64.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
+ "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "Taskband Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "VirtualCloneDrive" "CloseTray" "Elaborate Bytes AG" "c:\program files (x86)\elaborate bytes\virtualclonedrive\elbyvcdshell.dll"
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Context Menu Extension" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
+ "FFSJ" "" "" "c:\windows\syswow64\ffsj\ffsjshl.dll"
+ "Glary Utilities" "Context Menu Handler" "Glarysoft Ltd" "c:\program files (x86)\glary utilities\contexthandler.dll"
+ "Open With" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Open With EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
+ "Start Menu Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Taskband Pin" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\*\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
+ "CryptoSignMenu" "Crypto Shell Extensions" "Microsoft Corporation" "c:\windows\system32\cryptext.dll"
+ "OLE Docfile Property Page" "OLE DocFile Property Page" "Microsoft Corporation" "c:\windows\system32\docprop.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\system32\rshx32.dll"
+ "Summary Properties Page" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
+ "CryptoSignMenu" "Crypto Shell Extensions" "Microsoft Corporation" "c:\windows\syswow64\cryptext.dll"
+ "OLE Docfile Property Page" "OLE DocFile Property Page" "Microsoft Corporation" "c:\windows\syswow64\docprop.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\syswow64\rshx32.dll"
+ "Summary Properties Page" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "CopyAsPathMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
+ "SendTo" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "CopyAsPathMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
+ "SendTo" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" ""
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" ""
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "BRUMenuHandler" "Context Menu Dynamic Link Library" "Bulk Rename Utility" "c:\program files\bulk rename utility\bruhere64.dll"
+ "EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MagicISO" "MagicISO Shell Extension Module" "MagicISO, Inc." "c:\program files (x86)\magiciso\misosh64.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
+ "SASContextMenu Class" "SUPERAntiSpyware Context Menu Extension" "SUPERAntiSpyware.com" "c:\program files\superantispyware\sasctxmn64.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "EncryptionMenu" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Directory\Shellex\PropertySheetHandlers" "" "" ""
+ "DfsShell Class" "Distributed File System shell extension" "Microsoft Corporation" "c:\windows\system32\dfsshlex.dll"
+ "Folder Customization Tab" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MyFolder menu and properties" "My Documents Folder UI" "Microsoft Corporation" "c:\windows\system32\mydocs.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\system32\twext.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\system32\rshx32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\PropertySheetHandlers" "" "" ""
+ "DfsShell Class" "Distributed File System shell extension" "Microsoft Corporation" "c:\windows\syswow64\dfsshlex.dll"
+ "Folder Customization Tab" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "MyFolder menu and properties" "My Documents Folder UI" "Microsoft Corporation" "c:\windows\syswow64\mydocs.dll"
+ "Previous Versions Property Page" "Previous Versions property page" "Microsoft Corporation" "c:\windows\syswow64\twext.dll"
+ "Security Shell Extension" "Security Shell Extension" "Microsoft Corporation" "c:\windows\syswow64\rshx32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" ""
+ "FileSystem" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\CopyHookHandlers" "" "" ""
+ "FileSystem" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "New" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "NvCplDesktopContext" "" "NVIDIA Corporation" "c:\windows\system32\nvshext.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "New" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "Sharing" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "dBpShell Class" "Provides dBpoweramp Shell Interaction" "Illustrate" "c:\program files (x86)\illustrate\dbpoweramp\dbshell.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files (x86)\common files\adobe\acrobat\activex\pdfshell.dll"
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Extensions" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell64.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
+ "LavasoftShellExt" "Shell Extension " "Lavasoft Limited" "c:\program files (x86)\lavasoft\ad-aware\shellext_64.dll"
+ "Library Location" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "MagicISO" "MagicISO Shell Extension Module" "MagicISO, Inc." "c:\program files (x86)\magiciso\misosh64.dll"
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
+ "RUShellExt" "Revo Uninstaller Pro Extension" "VS Revo Group" "c:\program files\vs revo group\revo uninstaller pro\ruext.dll"
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "Acronis True Image Shell Context Menu Extension" "Acronis True Image Shell Extensions" "Acronis" "c:\program files (x86)\acronis\trueimagehome\tishell.dll"
+ "BriefcaseMenu" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
+ "Glary Utilities" "Context Menu Handler" "Glarysoft Ltd" "c:\program files (x86)\glary utilities\contexthandler.dll"
+ "Library Location" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshls64.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll"
+ "WinZip" "WinZip Shell Extension DLL" "WinZip Computing, S.L." "c:\program files (x86)\winzip\wzshlstb.dll"
"HKLM\Software\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\system32\syncui.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\PropertySheetHandlers" "" "" ""
+ "BriefcasePage" "Windows Briefcase" "Microsoft Corporation" "c:\windows\syswow64\syncui.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "Microsoft Corporation" "c:\windows\system32\ehstorshell.dll"
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "SharingPrivate" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\system32\ntshrui.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "EnhancedStorageShell" "Windows Enhanced Storage Shell Extension DLL" "Microsoft Corporation" "c:\windows\syswow64\ehstorshell.dll"
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "SharingPrivate" "Shell extensions for sharing" "Microsoft Corporation" "c:\windows\syswow64\ntshrui.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiehelpershim.dll"
+ "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\urlredir.dll"
+ "Spybot-S&D IE Protection" "SBSD IE Protection" "Safer Networking Limited" "c:\program files (x86)\spybot - search & destroy\sdhelper.dll"
+ "Windows Live Sign-in Helper" "WindowsLiveLogin.dll" "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll"
"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks" "" "" ""
+ "Microsoft Url Search Hook" "Internet Browser" "Microsoft Corporation" "c:\windows\system32\ieframe.dll"
X "Microsoft Url Search Hook" "Internet Browser" "Microsoft Corporation" "c:\windows\system32\ieframe.dll"
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnielinkednotes.dll"
+ "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnie.dll"
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "Spybot - Search & Destroy Configuration" "SBSD IE Protection" "Safer Networking Limited" "c:\program files (x86)\spybot - search & destroy\sdhelper.dll"
"HKLM\System\CurrentControlSet\Services" "" "" ""
X "!SASCORE" "SUPERAntiSpyware Core Service" "SUPERAntiSpyware.com" "c:\program files\superantispyware\sascore64.exe"
X "ADVService" "Manages downloads for the Amazon Unbox Video application." "Amazon.com" "c:\program files (x86)\amazon\amazon unbox video\advwindowsclientservice.exe"
+ "ALG" "Provides support for 3rd party protocol plug-ins for Internet Connection Sharing" "Microsoft Corporation" "c:\windows\system32\alg.exe"
+ "AppIDSvc" "Determines and verifies the identity of an application. Disabling this service will prevent AppLocker from being enforced." "Microsoft Corporation" "c:\windows\system32\appidsvc.dll"
+ "Appinfo" "Facilitates the running of interactive applications with additional administrative privileges. If this service is stopped, users will be unable to launch applications with the additional administrative privileges they may require to perform desired user tasks." "Microsoft Corporation" "c:\windows\system32\appinfo.dll"
+ "aspnet_state" "Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v4.0.30319\aspnet_state.exe"
+ "AudioEndpointBuilder" "Manages audio devices for the Windows Audio service. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "Microsoft Corporation" "c:\windows\system32\audiosrv.dll"
+ "AudioSrv" "Manages audio for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start" "Microsoft Corporation" "c:\windows\system32\audiosrv.dll"
+ "AxInstSV" "Provides User Account Control validation for the installation of ActiveX controls from the Internet and enables management of ActiveX control installation based on Group Policy settings. This service is started on demand and if disabled the installation of ActiveX controls will behave according to default browser settings." "Microsoft Corporation" "c:\windows\system32\axinstsv.dll"
+ "BDESVC" "BDESVC hosts the BitLocker Drive Encryption service. BitLocker Drive Encryption provides secure startup for the operating system, as well as full volume encryption for OS, fixed or removable volumes. This service allows BitLocker to prompt users for various actions related to their volumes when mounted, and unlocks volumes automatically without user interaction. Additionally, it stores recovery information to Active Directory, if available, and, if necessary, ensures the most recent recovery certificates are used. Stopping or disabling the service would prevent users from leveraging this functionality." "Microsoft Corporation" "c:\windows\system32\bdesvc.dll"
+ "BFE" "The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. Stopping or disabling the BFE service will significantly reduce the security of the system. It will also result in unpredictable behavior in IPsec management and firewall applications." "Microsoft Corporation" "c:\windows\system32\bfe.dll"
+ "BITS" "Transfers files in the background using idle network bandwidth. If the service is disabled, then any applications that depend on BITS, such as Windows Update or MSN Explorer, will be unable to automatically download programs and other information." "Microsoft Corporation" "c:\windows\system32\qmgr.dll"
+ "Browser" "Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\browser.dll"
+ "bthserv" "The Bluetooth service supports discovery and association of remote Bluetooth devices. Stopping or disabling this service may cause already installed Bluetooth devices to fail to operate properly and prevent new devices from being discovered or associated." "Microsoft Corporation" "c:\windows\system32\bthserv.dll"
+ "CertPropSvc" "Copies user certificates and root certificates from smart cards into the current user's certificate store, detects when a smart card is inserted into a smart card reader, and, if needed, installs the smart card Plug and Play minidriver." "Microsoft Corporation" "c:\windows\system32\certprop.dll"
+ "clr_optimization_v4.0.30319_32" "Microsoft .NET Framework NGEN" "Microsoft Corporation" "c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe"
+ "clr_optimization_v4.0.30319_64" "Microsoft .NET Framework NGEN" "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v4.0.30319\mscorsvw.exe"
+ "COMSysApp" "Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dllhost.exe"
+ "CryptSvc" "Provides four management services: Catalog Database Service, which confirms the signatures of Windows files and allows new programs to be installed; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; Automatic Root Certificate Update Service, which retrieves root certificates from Windows Update and enable scenarios such as SSL; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\cryptsvc.dll"
+ "DcomLaunch" "The DCOMLAUNCH service launches COM and DCOM servers in response to object activation requests. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the DCOMLAUNCH service running." "Microsoft Corporation" "c:\windows\system32\rpcss.dll"
+ "defragsvc" "Provides Disk Defragmentation Capabilities." "Microsoft Corporation" "c:\windows\system32\defragsvc.dll"
+ "Dhcp" "Registers and updates IP addresses and DNS records for this computer. If this service is stopped, this computer will not receive dynamic IP addresses and DNS updates. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dhcpcore.dll"
+ "Dnscache" "The DNS Client service (dnscache) caches Domain Name System (DNS) names and registers the full computer name for this computer. If the service is stopped, DNS names will continue to be resolved. However, the results of DNS name queries will not be cached and the computer's name will not be registered. If the service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\dnsrslvr.dll"
+ "dot3svc" "The Wired AutoConfig (DOT3SVC) service is responsible for performing IEEE 802.1X authentication on Ethernet interfaces. If your current wired network deployment enforces 802.1X authentication, the DOT3SVC service should be configured to run for establishing Layer 2 connectivity and/or providing access to network resources. Wired networks that do not enforce 802.1X authentication are unaffected by the DOT3SVC service." "Microsoft Corporation" "c:\windows\system32\dot3svc.dll"
+ "DPS" "The Diagnostic Policy Service enables problem detection, troubleshooting and resolution for Windows components. If this service is stopped, diagnostics will no longer function." "Microsoft Corporation" "c:\windows\system32\dps.dll"
+ "EapHost" "The Extensible Authentication Protocol (EAP) service provides network authentication in such scenarios as 802.1x wired and wireless, VPN, and Network Access Protection (NAP). EAP also provides application programming interfaces (APIs) that are used by network access clients, including wireless and VPN clients, during the authentication process. If you disable this service, this computer is prevented from accessing networks that require EAP authentication." "Microsoft Corporation" "c:\windows\system32\eapsvc.dll"
+ "EFS" "Provides the core file encryption technology used to store encrypted files on NTFS file system volumes. If this service is stopped or disabled, applications will be unable to access encrypted files." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "ehRecvr" "Windows Media Center Service for TV and FM broadcast reception" "Microsoft Corporation" "c:\windows\ehome\ehrecvr.exe"
+ "ehSched" "Starts and stops recording of TV programs within Windows Media Center" "Microsoft Corporation" "c:\windows\ehome\ehsched.exe"
+ "eventlog" "This service manages events and event logs. It supports logging events, querying events, subscribing to events, archiving event logs, and managing event metadata. It can display events in both XML and plain text format. Stopping this service may compromise security and reliability of the system." "Microsoft Corporation" "c:\windows\system32\wevtsvc.dll"

+ "EventSystem" "Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\es.dll"
+ "Fax" "Enables you to send and receive faxes, utilizing fax resources available on this computer or on the network." "Microsoft Corporation" "c:\windows\system32\fxssvc.exe"
+ "fdPHost" "The FDPHOST service hosts the Function Discovery (FD) network discovery providers. These FD providers supply network discovery services for the Simple Services Discovery Protocol (SSDP) and Web Services – Discovery (WS-D) protocol. Stopping or disabling the FDPHOST service will disable network discovery for these protocols when using FD. When this service is unavailable, network services using FD and relying on these discovery protocols will be unable to find network devices or resources." "Microsoft Corporation" "c:\windows\system32\fdphost.dll"
+ "FDResPub" "Publishes this computer and resources attached to this computer so they can be discovered over the network. If this service is stopped, network resources will no longer be published and they will not be discovered by other computers on the network." "Microsoft Corporation" "c:\windows\system32\fdrespub.dll"
+ "FontCache" "Optimizes performance of applications by caching commonly used font data. Applications will start this service if it is not already running. It can be disabled, though doing so will degrade application performance." "Microsoft Corporation" "c:\windows\system32\fntcache.dll"
+ "FontCache3.0.0.0" "Optimizes performance of Windows Presentation Foundation (WPF) applications by caching commonly used font data. WPF applications will start this service if it is not already running. It can be disabled, though doing so will degrade the performance of WPF applications." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe"
+ "gpsvc" "The service is responsible for applying settings configured by administrators for the computer and users through the Group Policy component. If the service is stopped or disabled, the settings will not be applied and applications and components will not be manageable through Group Policy. Any components or applications that depend on the Group Policy component might not be functional if the service is stopped or disabled." "Microsoft Corporation" "c:\windows\system32\gpsvc.dll"
X "gupdate" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe"
X "gupdatem" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe"
+ "hidserv" "Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\hidserv.dll"
+ "hkmsvc" "Provides X.509 certificate and key management services for the Network Access Protection Agent (NAPAgent). Enforcement technologies that use X.509 certificates may not function properly without this service" "Microsoft Corporation" "c:\windows\system32\kmsvc.dll"
+ "HomeGroupListener" "Makes local computer changes associated with configuration and maintenance of the homegroup-joined computer. If this service is stopped or disabled, your computer will not work properly in a homegroup and your homegroup might not work properly. It is recommended that you keep this service running." "Microsoft Corporation" "c:\windows\system32\listsvc.dll"
+ "HomeGroupProvider" "Performs networking tasks associated with configuration and maintenance of homegroups. If this service is stopped or disabled, your computer will be unable to detect other homegroups and your homegroup might not work properly. It is recommended that you keep this service running." "Microsoft Corporation" "c:\windows\system32\provsvc.dll"
+ "idsvc" "Securely enables the creation, management, and disclosure of digital identities." "Microsoft Corporation" "c:\windows\microsoft.net\framework64\v3.0\windows communication foundation\infocard.exe"
+ "IKEEXT" "The IKEEXT service hosts the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) keying modules. These keying modules are used for authentication and key exchange in Internet Protocol security (IPsec). Stopping or disabling the IKEEXT service will disable IKE and AuthIP key exchange with peer computers. IPsec is typically configured to use IKE or AuthIP; therefore, stopping or disabling the IKEEXT service might result in an IPsec failure and might compromise the security of the system. It is strongly recommended that you have the IKEEXT service running." "Microsoft Corporation" "c:\windows\system32\ikeext.dll"
+ "IPBusEnum" "The PnP-X bus enumerator service manages the virtual network bus. It discovers network connected devices using the SSDP/WS discovery protocols and gives them presence in PnP. If this service is stopped or disabled, presence of NCD devices will not be maintained in PnP. All pnpx based scenarios will stop functioning." "Microsoft Corporation" "c:\windows\system32\ipbusenum.dll"
+ "iphlpsvc" "Provides tunnel connectivity using IPv6 transition technologies (6to4, ISATAP, Port Proxy, and Teredo), and IP-HTTPS. If this service is stopped, the computer will not have the enhanced connectivity benefits that these technologies offer." "Microsoft Corporation" "c:\windows\system32\iphlpsvc.dll"
+ "KeyIso" "The CNG key isolation service is hosted in the LSA process. The service provides key process isolation to private keys and associated cryptographic operations as required by the Common Criteria. The service stores and uses long-lived keys in a secure process complying with Common Criteria requirements." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "KtmRm" "Coordinates transactions between the Distributed Transaction Coordinator (MSDTC) and the Kernel Transaction Manager (KTM). If it is not needed, it is recommended that this service remain stopped. If it is needed, both MSDTC and KTM will start this service automatically. If this service is disabled, any MSDTC transaction interacting with a Kernel Resource Manager will fail and any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msdtckrm.dll"
+ "LanmanServer" "Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\srvsvc.dll"
+ "LanmanWorkstation" "Creates and maintains client network connections to remote servers using the SMB protocol. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\wkssvc.dll"
+ "lltdsvc" "Creates a Network Map, consisting of PC and device topology (connectivity) information, and metadata describing each PC and device. If this service is disabled, the Network Map will not function properly." "Microsoft Corporation" "c:\windows\system32\lltdsvc.dll"
+ "lmhosts" "Provides support for the NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution for clients on the network, therefore enabling users to share files, print, and log on to the network. If this service is stopped, these functions might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\lmhsvc.dll"
+ "Microsoft SharePoint Workspace Audit Service" "Microsoft SharePoint Workspace" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\groove.exe"
+ "MMCSS" "Enables relative prioritization of work based on system-wide task priorities. This is intended mainly for multimedia applications. If this service is stopped, individual tasks resort to their default priority." "Microsoft Corporation" "c:\windows\system32\mmcss.dll"
+ "MpsSvc" "Windows Firewall helps protect your computer by preventing unauthorized users from gaining access to your computer through the Internet or a network." "Microsoft Corporation" "c:\windows\system32\mpssvc.dll"
+ "MSDTC" "Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will fail. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msdtc.exe"
+ "MSiSCSI" "Manages Internet SCSI (iSCSI) sessions from this computer to remote iSCSI target devices. If this service is stopped, this computer will not be able to login or access iSCSI targets. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\iscsiexe.dll"
+ "msiserver" "Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\msiexec.exe"
+ "napagent" "The Network Access Protection (NAP) agent service collects and manages health information for client computers on a network. Information collected by NAP agent is used to make sure that the client computer has the required software and settings. If a client computer is not compliant with health policy, it can be provided with restricted network access until its configuration is updated. Depending on the configuration of health policy, client computers might be automatically updated so that users quickly regain full network access without having to manually update their computer." "Microsoft Corporation" "c:\windows\system32\qagentrt.dll"
X "Nero BackItUp Scheduler 4.0" "Nero BackItUp Scheduler 4.0 is responsible to control all jobs created using Nero BackItUp. These jobs can create backups of selected files/folders/partitions or complete hard disk to hard disk, network drive, disc or FTP." "Nero AG" "c:\program files (x86)\common files\nero\nero backitup 4\nbservice.exe"
+ "Netlogon" "Maintains a secure channel between this computer and the domain controller for authenticating users and services. If this service is stopped, the computer may not authenticate users and services and the domain controller cannot register DNS records. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "Netman" "Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections." "Microsoft Corporation" "c:\windows\system32\netman.dll"
+ "netprofm" "Identifies the networks to which the computer has connected, collects and stores properties for these networks, and notifies applications when these properties change." "Microsoft Corporation" "c:\windows\system32\netprofm.dll"
+ "NlaSvc" "Collects and stores configuration information for the network and notifies programs when this information is modified. If this service is stopped, configuration information might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\nlasvc.dll"
+ "nsi" "This service delivers network notifications (e.g. interface addition/deleting etc) to user mode clients. Stopping this service will cause loss of network connectivity. If this service is disabled, any other services that explicitly depend on this service will fail to start." "Microsoft Corporation" "c:\windows\system32\nsisvc.dll"
+ "nSvcIp" "NVIDIA Corporation" "" "c:\program files\nvidia corporation\networkaccessmanager\bin32\nsvcip.exe"
+ "nvsvc" "Provides system and desktop level support to the NVIDIA display driver" "NVIDIA Corporation" "c:\windows\system32\nvvsvc.exe"
X "ose" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\source engine\ose.exe"
+ "osppsvc" "Office Software Protection Platform Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe"
+ "p2pimsvc" "Provides identity services for the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services. If disabled, the Peer Name Resolution Protocol (PNRP) and Peer-to-Peer Grouping services may not function, and some applications, such as HomeGroup and Remote Assistance, may not function correctly." "Microsoft Corporation" "c:\windows\system32\pnrpsvc.dll"
+ "p2psvc" "Enables multi-party communication using Peer-to-Peer Grouping. If disabled, some applications, such as HomeGroup, may not function." "Microsoft Corporation" "c:\windows\system32\p2psvc.dll"
+ "PcaSvc" "This service provides support for the Program Compatibility Assistant (PCA). PCA monitors programs installed and run by the user and detects known compatibility problems. If this service is stopped, PCA will not function properly." "Microsoft Corporation" "c:\windows\system32\pcasvc.dll"
+ "PerfHost" "Enables remote users and 64-bit processes to query performance counters provided by 32-bit DLLs. If this service is stopped, only local users and 32-bit processes will be able to query performance counters provided by 32-bit DLLs." "Microsoft Corporation" "c:\windows\syswow64\perfhost.exe"
+ "pla" "Performance Logs and Alerts Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\pla.dll"
+ "PlugPlay" "Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability." "Microsoft Corporation" "c:\windows\system32\umpnpmgr.dll"
+ "PNRPAutoReg" "This service publishes a machine name using the Peer Name Resolution Protocol. Configuration is managed via the netsh context 'p2p pnrp peer' " "Microsoft Corporation" "c:\windows\system32\pnrpauto.dll"
+ "PNRPsvc" "Enables serverless peer name resolution over the Internet using the Peer Name Resolution Protocol (PNRP). If disabled, some peer-to-peer and collaborative applications, such as Remote Assistance, may not function." "Microsoft Corporation" "c:\windows\system32\pnrpsvc.dll"
+ "PolicyAgent" "Internet Protocol security (IPsec) supports network-level peer authentication, data origin authentication, data integrity, data confidentiality (encryption), and replay protection. This service enforces IPsec policies created through the IP Security Policies snap-in or the command-line tool "netsh ipsec". If you stop this service, you may experience network connectivity issues if your policy requires that connections use IPsec. Also,remote management of Windows Firewall is not available when this service is stopped." "Microsoft Corporation" "c:\windows\system32\ipsecsvc.dll"
+ "Power" "Manages power policy and power policy notification delivery." "Microsoft Corporation" "c:\windows\system32\umpo.dll"
+ "ProfSvc" "This service is responsible for loading and unloading user profiles. If this service is stopped or disabled, users will no longer be able to successfully logon or logoff, applications may have problems getting to users' data, and components registered to receive profile event notifications will not receive them." "Microsoft Corporation" "c:\windows\system32\profsvc.dll"
+ "ProtectedStorage" "Provides protected storage for sensitive data, such as passwords, to prevent access by unauthorized services, processes, or users." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "QWAVE" "Quality Windows Audio Video Experience (qWave) is a networking platform for Audio Video (AV) streaming applications on IP home networks. qWave enhances AV streaming performance and reliability by ensuring network quality-of-service (QoS) for AV applications. It provides mechanisms for admission control, run time monitoring and enforcement, application feedback, and traffic prioritization." "Microsoft Corporation" "c:\windows\system32\qwave.dll"
+ "RasAuto" "Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address." "Microsoft Corporation" "c:\windows\system32\rasauto.dll"
+ "RasMan" "Manages dial-up and virtual private network (VPN) connections from this computer to the Internet or other remote networks. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\rasmans.dll"
+ "RemoteRegistry" "Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\regsvc.dll"
+ "RpcEptMapper" "Resolves RPC interfaces identifiers to transport endpoints. If this service is stopped or disabled, programs using Remote Procedure Call (RPC) services will not function properly." "Microsoft Corporation" "c:\windows\system32\rpcepmap.dll"
+ "RpcLocator" "In Windows 2003 and earlier versions of Windows, the Remote Procedure Call (RPC) Locator service manages the RPC name service database. In Windows Vista and later versions of Windows, this service does not provide any functionality and is present for application compatibility." "Microsoft Corporation" "c:\windows\system32\locator.exe"
+ "RpcSs" "The RPCSS service is the Service Control Manager for COM and DCOM servers. It performs object activations requests, object exporter resolutions and distributed garbage collection for COM and DCOM servers. If this service is stopped or disabled, programs using COM or DCOM will not function properly. It is strongly recommended that you have the RPCSS service running" "Microsoft Corporation" "c:\windows\system32\rpcss.dll"
+ "SamSs" "The startup of this service signals other services that the Security Accounts Manager (SAM) is ready to accept requests. Disabling this service will prevent other services in the system from being notified when the SAM is ready, which may in turn cause those services to fail to start correctly. This service should not be disabled." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "SCardSvr" "Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\scardsvr.dll"
+ "Schedule" "Enables a user to configure and schedule automated tasks on this computer. The service also hosts multiple Windows system-critical tasks. If this service is stopped or disabled, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\schedsvc.dll"
+ "SCPolicySvc" "Allows the system to be configured to lock the user desktop upon smart card removal." "Microsoft Corporation" "c:\windows\system32\certprop.dll"
+ "SDRSVC" "Provides Windows Backup and Restore capabilities." "Microsoft Corporation" "c:\windows\system32\sdrsvc.dll"
+ "seclogon" "Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\seclogon.dll"
+ "SENS" "Monitors system events and notifies subscribers to COM+ Event System of these events." "Microsoft Corporation" "c:\windows\system32\sens.dll"
+ "SensrSvc" "Monitors ambient light sensors to detect changes in ambient light and adjust the display brightness. If this service is stopped or disabled, the display brightness will not adapt to lighting conditions." "Microsoft Corporation" "c:\windows\system32\sensrsvc.dll"
+ "SessionEnv" "Remote Desktop Configuration service (RDCS) is responsible for all Remote Desktop Services and Remote Desktop related configuration and session maintenance activities that require SYSTEM context. These include per-session temporary folders, RD themes, and RD certificates." "Microsoft Corporation" "c:\windows\system32\sessenv.dll"
+ "SharedAccess" "Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network." "Microsoft Corporation" "c:\windows\system32\ipnathlp.dll"
+ "ShellHWDetection" "Provides notifications for AutoPlay hardware events." "Microsoft Corporation" "c:\windows\system32\shsvcs.dll"
+ "SNMPTRAP" "Receives trap messages generated by local or remote Simple Network Management Protocol (SNMP) agents and forwards the messages to SNMP management programs running on this computer. If this service is stopped, SNMP-based programs on this computer will not receive SNMP trap messages. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\snmptrap.exe"
+ "Spooler" "Loads files to memory for later printing" "Microsoft Corporation" "c:\windows\system32\spoolsv.exe"
+ "sppsvc" "Enables the download, installation and enforcement of digital licenses for Windows and Windows applications. If the service is disabled, the operating system and licensed applications may run in a notification mode. It is strongly recommended that you not disable the Software Protection service." "Microsoft Corporation" "c:\windows\system32\sppsvc.exe"
+ "sppuinotify" "Provides Software Licensing activation and notification" "Microsoft Corporation" "c:\windows\system32\sppuinotify.dll"
+ "SSDPSRV" "Discovers networked devices and services that use the SSDP discovery protocol, such as UPnP devices. Also announces SSDP devices and services running on the local computer. If this service is stopped, SSDP-based devices will not be discovered. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\ssdpsrv.dll"
+ "SstpSvc" "Provides support for the Secure Socket Tunneling Protocol (SSTP) to connect to remote computers using VPN. If this service is disabled, users will not be able to use SSTP to access remote servers." "Microsoft Corporation" "c:\windows\system32\sstpsvc.dll"
+ "stisvc" "Provides image acquisition services for scanners and cameras" "Microsoft Corporation" "c:\windows\system32\wiaservc.dll"
+ "swprv" "Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\swprv.dll"
+ "SysMain" "Maintains and improves system performance over time." "Microsoft Corporation" "c:\windows\system32\sysmain.dll"
+ "TabletInputService" "Enables Tablet PC pen and ink functionality" "Microsoft Corporation" "c:\windows\system32\tabsvc.dll"
+ "TapiSrv" "Provides Telephony API (TAPI) support for programs that control telephony devices on the local computer and, through the LAN, on servers that are also running the service." "Microsoft Corporation" "c:\windows\system32\tapisrv.dll"
+ "TBS" "Enables access to the Trusted Platform Module (TPM), which provides hardware-based cryptographic services to system components and applications. If this service is stopped or disabled, applications will be unable to use keys protected by the TPM." "Microsoft Corporation" "c:\windows\system32\tbssvc.dll"
+ "TermService" "Allows users to connect interactively to a remote computer. Remote Desktop and Remote Desktop Session Host Server depend on this service. To prevent remote use of this computer, clear the checkboxes on the Remote tab of the System properties control panel item." "Microsoft Corporation" "c:\windows\system32\termsrv.dll"
+ "Themes" "Provides user experience theme management." "Microsoft Corporation" "c:\windows\system32\themeservice.dll"
+ "THREADORDER" "Provides ordered execution for a group of threads within a specific period of time." "Microsoft Corporation" "c:\windows\system32\mmcss.dll"
+ "TrkWks" "Maintains links between NTFS files within a computer or across computers in a network." "Microsoft Corporation" "c:\windows\system32\trkwks.dll"
+ "TrustedInstaller" "Enables installation, modification, and removal of Windows updates and optional components. If this service is disabled, install or uninstall of Windows updates might fail for this computer." "Microsoft Corporation" "c:\windows\servicing\trustedinstaller.exe"
+ "UI0Detect" "Enables user notification of user input for interactive services, which enables access to dialogs created by interactive services when they appear. If this service is stopped, notifications of new interactive service dialogs will no longer function and there might not be access to interactive service dialogs. If this service is disabled, both notifications of and access to new interactive service dialogs will no longer function." "Microsoft Corporation" "c:\windows\system32\ui0detect.exe"
+ "upnphost" "Allows UPnP devices to be hosted on this computer. If this service is stopped, any hosted UPnP devices will stop functioning and no additional hosted devices can be added. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\upnphost.dll"
+ "UxSms" "Provides Desktop Window Manager startup and maintenance services" "Microsoft Corporation" "c:\windows\system32\uxsms.dll"
+ "VaultSvc" "Provides secure storage and retrieval of credentials to users, applications and security service packages." "Microsoft Corporation" "c:\windows\system32\lsass.exe"
+ "vds" "Provides management services for disks, volumes, file systems, and storage arrays." "Microsoft Corporation" "c:\windows\system32\vds.exe"
+ "VSS" "Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\vssvc.exe"
+ "W32Time" "Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\w32time.dll"
+ "wbengine" "The WBENGINE service is used by Windows Backup to perform backup and recovery operations. If this service is stopped by a user, it may cause the currently running backup or recovery operation to fail. Disabling this service may disable backup and recovery operations using Windows Backup on this computer." "Microsoft Corporation" "c:\windows\system32\wbengine.exe"
+ "WbioSrvc" "The Windows biometric service gives client applications the ability to capture, compare, manipulate, and store biometric data without gaining direct access to any biometric hardware or samples. The service is hosted in a privileged SVCHOST process." "Microsoft Corporation" "c:\windows\system32\wbiosrvc.dll"
+ "wcncsvc" "WCNCSVC hosts the Windows Connect Now Configuration which is Microsoft's Implementation of Wi-Fi Protected Setup (WPS) protocol. This is used to configure Wireless LAN settings for an Access Point (AP) or a Wi-Fi Device. The service is started programmatically as needed." "Microsoft Corporation" "c:\windows\system32\wcncsvc.dll"
+ "WcsPlugInService" "The WcsPlugInService service hosts third-party Windows Color System color device model and gamut map model plug-in modules. These plug-in modules are vendor-specific extensions to the Windows Color System baseline color device and gamut map models. Stopping or disabling the WcsPlugInService service will disable this extensibility feature, and the Windows Color System will use its baseline model processing rather than the vendor's desired processing. This might result in inaccurate color rendering." "Microsoft Corporation" "c:\windows\system32\wcspluginservice.dll"
+ "WdiServiceHost" "The Diagnostic Service Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local Service context. If this service is stopped, any diagnostics that depend on it will no longer function." "Microsoft Corporation" "c:\windows\system32\wdi.dll"
+ "WdiSystemHost" "The Diagnostic System Host is used by the Diagnostic Policy Service to host diagnostics that need to run in a Local System context. If this service is stopped, any diagnostics that depend on it will no longer function." "Microsoft Corporation" "c:\windows\system32\wdi.dll"
+ "WebClient" "Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\webclnt.dll"
+ "Wecsvc" "This service manages persistent subscriptions to events from remote sources that support WS-Management protocol. This includes Windows Vista event logs, hardware and IPMI-enabled event sources. The service stores forwarded events in a local Event Log. If this service is stopped or disabled event subscriptions cannot be created and forwarded events cannot be accepted." "Microsoft Corporation" "c:\windows\system32\wecsvc.dll"
+ "wercplsupport" "This service provides support for viewing, sending and deletion of system-level problem reports for the Problem Reports and Solutions control panel." "Microsoft Corporation" "c:\windows\system32\wercplsupport.dll"
+ "WerSvc" "Allows errors to be reported when programs stop working or responding and allows existing solutions to be delivered. Also allows logs to be generated for diagnostic and repair services. If this service is stopped, error reporting might not work correctly and results of diagnostic services and repairs might not be displayed." "Microsoft Corporation" "c:\windows\system32\wersvc.dll"
+ "WinDefend" "Protection against spyware and potentially unwanted software" "Microsoft Corporation" "c:\program files\windows defender\mpsvc.dll"
+ "WinHttpAutoProxySvc" "WinHTTP implements the client HTTP stack and provides developers with a Win32 API and COM Automation component for sending HTTP requests and receiving responses. In addition, WinHTTP provides support for auto-discovering a proxy configuration via its implementation of the Web Proxy Auto-Discovery (WPAD) protocol." "Microsoft Corporation" "c:\windows\system32\winhttp.dll"
+ "Winmgmt" "Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start." "Microsoft Corporation" "c:\windows\system32\wbem\wmisvc.dll"
+ "WinRM" "Windows Remote Management (WinRM) service implements the WS-Management protocol for remote management. WS-Management is a standard web services protocol used for remote software and hardware management. The WinRM service listens on the network for WS-Management requests and processes them. The WinRM Service needs to be configured with a listener using winrm.cmd command line tool or through Group Policy in order for it to listen over the network. The WinRM service provides access to WMI data and enables event collection. Event collection and subscription to events require that the service is running. WinRM messages use HTTP and HTTPS as transports. The WinRM service does not depend on IIS but is preconfigured to share a port with IIS on the same machine. The WinRM service reserves the /wsman URL prefix. To prevent conflicts with IIS, administrators should ensure that any websites hosted on IIS do not use the /wsman URL prefix." "Microsoft Corporation" "c:\windows\system32\wsmsvc.dll"
+ "Wlansvc" "The WLANSVC service provides the logic required to configure, discover, connect to, and disconnect from a wireless local area network (WLAN) as defined by IEEE 802.11 standards. It also contains the logic to turn your computer into a software access point so that other devices or computers can connect to your computer wirelessly using a WLAN adapter that can support this. Stopping or disabling the WLANSVC service will make all WLAN adapters on your computer inaccessible from the Windows networking UI. It is strongly recommended that you have the WLANSVC service running if your computer has a WLAN adapter." "Microsoft Corporation" "c:\windows\system32\wlansvc.dll"
+ "wmiApSrv" "Provides performance library information from Windows Management Instrumentation (WMI) providers to clients on the network. This service only runs when Performance Data Helper is activated." "Microsoft Corporation" "c:\windows\system32\wbem\wmiapsrv.exe"
X "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe"
+ "WPCSvc" "This service is a stub for Windows Parental Control functionality that existed in Vista. It is provided for backward compatibility only." "Microsoft Corporation" "c:\windows\system32\wpcsvc.dll"
+ "WPDBusEnum" "Enforces group policy for removable mass-storage devices. Enables applications such as Windows Media Player and Image Import Wizard to transfer and synchronize content using removable mass-storage devices." "Microsoft Corporation" "c:\windows\system32\wpdbusenum.dll"
+ "wscsvc" "The WSCSVC (Windows Security Center) service monitors and reports security health settings on the computer. The health settings include firewall (on/off), antivirus (on/off/out of date), antispyware (on/off/out of date), Windows Update (automatically/manually download and install updates), User Account Control (on/off), and Internet settings (recommended/not recommended). The service provides COM APIs for independent software vendors to register and record the state of their products to the Security Center service. The Action Center (AC) UI uses the service to provide systray alerts and a graphical view of the security health states in the AC control panel. Network Access Protection (NAP) uses the service to report the security health states of clients to the NAP Network Policy Server to make network quarantine decisions. The service also has a public API that allows external consumers to programmatically retrieve the aggregated security health state of the system." "Microsoft Corporation" "c:\windows\system32\wscsvc.dll"
+ "WSearch" "Provides content indexing, property caching, and search results for files, e-mail, and other content." "Microsoft Corporation" "c:\windows\system32\searchindexer.exe"
+ "wuauserv" "Enables the detection, download, and installation of updates for Windows and other programs. If this service is disabled, users of this computer will not be able to use Windows Update or its automatic updating feature, and programs will not be able to use the Windows Update Agent (WUA) API." "Microsoft Corporation" "c:\windows\system32\wuaueng.dll"
+ "wudfsvc" "Manages user-mode driver host processes." "Microsoft Corporation" "c:\windows\system32\wudfsvc.dll"
+ "WwanSvc" "This service manages mobile broadband (GSM & CDMA) data card/embedded module adapters and connections by auto-configuring the networks. It is strongly recommended that this service be kept running for best user experience of mobile broadband devices." "Microsoft Corporation" "c:\windows\system32\wwansvc.dll"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "1394ohci" "1394 OpenHCI Driver" "Microsoft Corporation" "c:\windows\system32\drivers\1394ohci.sys"
+ "ACPI" "ACPI Driver for NT" "Microsoft Corporation" "c:\windows\system32\drivers\acpi.sys"
+ "AcpiPmi" "ACPI Power Metering Driver" "Microsoft Corporation" "c:\windows\system32\drivers\acpipmi.sys"
+ "adp94xx" "Adaptec Windows SAS/SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adp94xx.sys"
+ "adpahci" "Adaptec Windows SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adpahci.sys"
+ "adpu320" "Adaptec StorPort Ultra320 SCSI Driver (X64)" "Adaptec, Inc." "c:\windows\system32\drivers\adpu320.sys"
+ "afcdp" "Acronis File Level CDP Helper" "Acronis" "c:\windows\system32\drivers\afcdp.sys"
+ "AFD" "Ancillary Function Driver for Winsock" "Microsoft Corporation" "c:\windows\system32\drivers\afd.sys"
+ "agp440" "440 NT AGP Filter" "Microsoft Corporation" "c:\windows\system32\drivers\agp440.sys"
+ "aliide" "ALi mini IDE Driver" "Acer Laboratories Inc." "c:\windows\system32\drivers\aliide.sys"
+ "amdide" "AMD IDE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdide.sys"
+ "AmdK8" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdk8.sys"
+ "AmdPPM" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\amdppm.sys"
+ "amdsata" "AHCI 1.2 Device Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdsata.sys"
+ "amdsbs" "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "AMD Technologies Inc." "c:\windows\system32\drivers\amdsbs.sys"
+ "amdxata" "Storage Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdxata.sys"
+ "AppID" "Identifies an application and enforces software restriction policies." "Microsoft Corporation" "c:\windows\system32\drivers\appid.sys"
+ "appliand" "APPLIAND helper driver" "Applian Technologies Inc." "c:\windows\system32\drivers\appliand.sys"
+ "appliandMP" "APPLIAND helper driver" "Applian Technologies Inc." "c:\windows\system32\drivers\appliand.sys"
+ "arc" "Adaptec RAID Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arc.sys"
+ "arcsas" "Adaptec SAS RAID WS03 Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arcsas.sys"
+ "AsyncMac" "RAS Asynchronous Media Driver" "Microsoft Corporation" "c:\windows\system32\drivers\asyncmac.sys"
+ "atapi" "ATAPI IDE Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\atapi.sys"
+ "athrusb" "Atheros Extensible Wireless LAN device driver" "Atheros Communications, Inc." "c:\windows\system32\drivers\athrxusb.sys"
+ "b06bdrv" "Broadcom NetXtreme II GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\bxvbda.sys"
+ "b57nd60a" "Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver." "Broadcom Corporation" "c:\windows\system32\drivers\b57nd60a.sys"
+ "Beep" "BEEP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\beep.sys"
X "BlackBox" "" "" "File not found: C:\Windows\System32\Drivers\BlackBox.sys"
+ "blbdrive" "BLB Drive Driver" "Microsoft Corporation" "c:\windows\system32\drivers\blbdrive.sys"
+ "bowser" "Implements the kernel datagram receiver for the computer browser browser service." "Microsoft Corporation" "c:\windows\system32\drivers\bowser.sys"
+ "BrFiltLo" "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltlo.sys"
+ "BrFiltUp" "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltup.sys"
+ "BridgeMP" "MAC Bridge Driver" "Microsoft Corporation" "c:\windows\system32\drivers\bridge.sys"
+ "Brserid" "Brotehr Serial I/F Driver (WDM)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserid.sys"
+ "BrSerWdm" "Brother Serial driver (WDM version)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserwdm.sys"
+ "BrUsbMdm" "Brother USB MDM Driver " "Brother Industries Ltd." "c:\windows\system32\drivers\brusbmdm.sys"
+ "BrUsbSer" "Brother USB Serial Driver" "Brother Industries Ltd." "c:\windows\system32\drivers\brusbser.sys"
+ "BTHMODEM" "Bluetooth Communications Driver" "Microsoft Corporation" "c:\windows\system32\drivers\bthmodem.sys"
X "catchme" "" "" "File not found: C:\ComboFix\catchme.sys"
+ "cdrom" "SCSI CD-ROM Driver" "Microsoft Corporation" "c:\windows\system32\drivers\cdrom.sys"
+ "circlass" "Consumer IR Class Driver for eHome" "Microsoft Corporation" "c:\windows\system32\drivers\circlass.sys"
+ "CLFS" "General-purpose logging service" "Microsoft Corporation" "c:\windows\system32\clfs.sys"
+ "CmBatt" "Control Method Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\cmbatt.sys"
+ "cmdide" "CMD PCI IDE Bus Driver" "CMD Technology, Inc." "c:\windows\system32\drivers\cmdide.sys"
+ "CNG" "Kernel Cryptography, Next Generation" "Microsoft Corporation" "c:\windows\system32\drivers\cng.sys"
+ "Compbatt" "Composite Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\compbatt.sys"
+ "CompositeBus" "Multi-Transport Composite Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\compositebus.sys"
+ "dc3d" "Filter Driver for Identification of Microsoft Hardware Wireless Mouse and Keyboard Device Models" "Microsoft Corporation" "c:\windows\system32\drivers\dc3d.sys"
+ "DfsC" "Client driver for access to DFS Namespaces" "Microsoft Corporation" "c:\windows\system32\drivers\dfsc.sys"
+ "discache" "Attribute Cache Indexer" "Microsoft Corporation" "c:\windows\system32\drivers\discache.sys"
+ "Disk" "PnP Disk Driver" "Microsoft Corporation" "c:\windows\system32\drivers\disk.sys"
+ "drmkaud" "Microsoft Trusted Audio Drivers" "Microsoft Corporation" "c:\windows\system32\drivers\drmkaud.sys"
+ "DXGKrnl" "Controls the underlying video driver stacks to provide fully-featured display capabilities." "Microsoft Corporation" "c:\windows\system32\drivers\dxgkrnl.sys"
+ "ebdrv" "Broadcom NetXtreme II 10 GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\evbda.sys"
+ "eBook" "eBook Network Driver" "eBook Technologies, Inc." "c:\windows\system32\drivers\ebook.sys"
+ "ElbyCDFL" "ElbyCDIO Filter Driver" "SlySoft, Inc." "c:\windows\system32\drivers\elbycdfl.sys"
+ "ElbyCDIO" "ElbyCD Windows x64 I/O driver" "Elaborate Bytes AG" "c:\windows\system32\drivers\elbycdio.sys"
+ "elxstor" "Storport Miniport Driver for LightPulse HBAs" "Emulex" "c:\windows\system32\drivers\elxstor.sys"
+ "ErrDev" "Error Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\errdev.sys"
X "esihdrv" "" "" "File not found: C:\Users\majik\AppData\Local\Temp\esihdrv.sys"
+ "exfat" "exFAT File System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\exfat.sys"
+ "fastfat" "Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)" "Microsoft Corporation" "c:\windows\system32\drivers\fastfat.sys"
+ "fdc" "Floppy Disk Controller Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fdc.sys"
+ "FileInfo" "Collects information about files in memory to be consumed by other system services." "Microsoft Corporation" "c:\windows\system32\drivers\fileinfo.sys"
+ "Filetrace" "ETW File Trace Filter" "Microsoft Corporation" "c:\windows\system32\drivers\filetrace.sys"
+ "flpydisk" "Floppy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\flpydisk.sys"
+ "FltMgr" "File System Filter Manager Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fltmgr.sys"
+ "FsDepends" "This minifilter tracks the dependencies associated with the various nested volumes/filesystems" "Microsoft Corporation" "c:\windows\system32\drivers\fsdepends.sys"
+ "fvevol" "Bitlocker Drive Encryption Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\fvevol.sys"
+ "gagp30kx" "MS Generic AGPv3.0 Filter for K8/9 Processor Platforms" "Microsoft Corporation" "c:\windows\system32\drivers\gagp30kx.sys"
+ "hcw85cir" "Hauppauge WinTV 885 Consumer IR Driver for eHome" "Hauppauge Computer Works, Inc." "c:\windows\system32\drivers\hcw85cir.sys"
+ "HdAudAddService" "High Definition Audio Function Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hdaudio.sys"
+ "HDAudBus" "High Definition Audio Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hdaudbus.sys"
+ "HidBatt" "Hid Battery Driver" "Microsoft Corporation" "c:\windows\system32\drivers\hidbatt.sys"
+ "HidBth" "Bluetooth Miniport Driver for HID Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidbth.sys"
+ "HidIr" "Infrared Miniport Driver for Input Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidir.sys"
+ "HidUsb" "USB Miniport Driver for Input Devices" "Microsoft Corporation" "c:\windows\system32\drivers\hidusb.sys"
+ "hitmanpro36" "HitmanPro 3.6 Support Driver" "" "c:\windows\system32\drivers\hitmanpro36.sys"
+ "HpSAMD" "Smart Array SAS/SATA Controller Media Driver" "Hewlett-Packard Company" "c:\windows\system32\drivers\hpsamd.sys"
+ "HTTP" "@%SystemRoot%\system32\drivers\http.sys,-2" "Microsoft Corporation" "c:\windows\system32\drivers\http.sys"
+ "hwpolicy" "Contains Processor and other policies" "Microsoft Corporation" "c:\windows\system32\drivers\hwpolicy.sys"
+ "i8042prt" "i8042 Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\i8042prt.sys"
+ "iaStorV" "Intel Matrix Storage Manager driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastorv.sys"
+ "iirsp" "Intel/ICP Raid Storport Driver" "Intel Corp./ICP vortex GmbH" "c:\windows\system32\drivers\iirsp.sys"
+ "IntcAzAudAddService" "Realtek® High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhd64.sys"
+ "intelide" "Intel PCI IDE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\intelide.sys"
+ "intelppm" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\intelppm.sys"
+ "IpFilterDriver" "IP Traffic Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ipfltdrv.sys"
+ "IPMIDRV" "WMI IPMI DRIVER" "Microsoft Corporation" "c:\windows\system32\drivers\ipmidrv.sys"
+ "IPNAT" "IP Network Address Translator" "Microsoft Corporation" "c:\windows\system32\drivers\ipnat.sys"
+ "IRENUM" "IR Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\irenum.sys"
+ "isapnp" "PNP ISA Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\isapnp.sys"
+ "iScsiPrt" "Microsoft iSCSI Initiator Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msiscsi.sys"
+ "kbdclass" "Keyboard Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\kbdclass.sys"
+ "kbdhid" "HID Keyboard Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\kbdhid.sys"
+ "KSecDD" "Kernel Security Support Provider Interface" "Microsoft Corporation" "c:\windows\system32\drivers\ksecdd.sys"
+ "KSecPkg" "Kernel Security Support Provider Interface Packages" "Microsoft Corporation" "c:\windows\system32\drivers\ksecpkg.sys"
+ "ksthunk" "Kernel Streaming WOW Thunk Service" "Microsoft Corporation" "c:\windows\system32\drivers\ksthunk.sys"
+ "Lavasoft Kernexplorer" "" "" "c:\program files (x86)\lavasoft\ad-aware\kernexplorer64.sys"
+ "lltdio" "Link-Layer Topology Mapper I/O Driver" "Microsoft Corporation" "c:\windows\system32\drivers\lltdio.sys"
+ "LSI_FC" "LSI Fusion-MPT FC Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_fc.sys"
+ "LSI_SAS" "LSI Fusion-MPT SAS Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas.sys"
+ "LSI_SAS2" "LSI SAS Gen2 Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas2.sys"
+ "LSI_SCSI" "LSI Fusion-MPT SCSI Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_scsi.sys"
+ "luafv" "Virtualizes file write failures to per-user locations." "Microsoft Corporation" "c:\windows\system32\drivers\luafv.sys"
+ "mcdbus" "MagicISO SCSI Host Controller" "MagicISO, Inc." "c:\windows\system32\drivers\mcdbus.sys"
+ "megasas" "MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64" "LSI Corporation" "c:\windows\system32\drivers\megasas.sys"
+ "MegaSR" "LSI MegaRAID Software RAID Driver" "LSI Corporation, Inc." "c:\windows\system32\drivers\megasr.sys"
+ "Modem" "Modem Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\modem.sys"
+ "monitor" "Monitor Driver" "Microsoft Corporation" "c:\windows\system32\drivers\monitor.sys"
+ "mouclass" "Mouse Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mouclass.sys"
+ "mouhid" "HID Mouse Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mouhid.sys"
+ "mountmgr" "Driver responsible with maintaining persistent drive letters and names for volumes" "Microsoft Corporation" "c:\windows\system32\drivers\mountmgr.sys"
+ "mpio" "MultiPath Support Bus-Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mpio.sys"
+ "mpsdrv" "@%SystemRoot%\system32\FirewallAPI.dll,-23093" "Microsoft Corporation" "c:\windows\system32\drivers\mpsdrv.sys"
+ "MRxDAV" "Network Redirector that provides WebDAV file access for the WebClient service" "Microsoft Corporation" "c:\windows\system32\drivers\mrxdav.sys"
+ "mrxsmb" "Implements the framework for the SMB filesystem redirector" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb.sys"
+ "mrxsmb10" "Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb10.sys"
+ "mrxsmb20" "Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers" "Microsoft Corporation" "c:\windows\system32\drivers\mrxsmb20.sys"
+ "msahci" "MS AHCI 1.0 Standard Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msahci.sys"
+ "msdsm" "Microsoft Device Specific Module" "Microsoft Corporation" "c:\windows\system32\drivers\msdsm.sys"
+ "Msfs" "Mailslot driver" "Microsoft Corporation" "c:\windows\system32\drivers\msfs.sys"
+ "mshidkmdf" "Device Filter to provide pass-through interface between HIDCLASS and KMDF" "Microsoft Corporation" "c:\windows\system32\drivers\mshidkmdf.sys"
+ "msisadrv" "ISA Driver" "Microsoft Corporation" "c:\windows\system32\drivers\msisadrv.sys"
+ "MSKSSRV" "MS KS Server" "Microsoft Corporation" "c:\windows\system32\drivers\mskssrv.sys"
+ "MSPCLOCK" "MS Proxy Clock" "Microsoft Corporation" "c:\windows\system32\drivers\mspclock.sys"
+ "MSPQM" "MS Proxy Quality Manager" "Microsoft Corporation" "c:\windows\system32\drivers\mspqm.sys"
+ "MsRPC" "Kernel Remote Procedure Call Provider" "Microsoft Corporation" "c:\windows\system32\drivers\msrpc.sys"
+ "mssmbios" "System Management BIOS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mssmbios.sys"
+ "MSTEE" "WDM Tee/Communication Transform Filter " "Microsoft Corporation" "c:\windows\system32\drivers\mstee.sys"
+ "MTConfig" "Microsoft Multi-Touch HID Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mtconfig.sys"
+ "Mup" "Multiple UNC Provider Driver" "Microsoft Corporation" "c:\windows\system32\drivers\mup.sys"
+ "NativeWifiP" "NativeWiFi Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\nwifi.sys"
+ "NDIS" "NDIS System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndis.sys"
+ "NdisCap" "NDIS Capture LightWeight Filter" "Microsoft Corporation" "c:\windows\system32\drivers\ndiscap.sys"
+ "NdisTapi" "Remote Access NDIS TAPI Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndistapi.sys"
+ "Ndisuio" "NDIS User mode I/O driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndisuio.sys"
+ "NdisWan" "Remote Access NDIS WAN Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ndiswan.sys"
+ "NDProxy" "NDIS Proxy" "Microsoft Corporation" "c:\windows\system32\drivers\ndproxy.sys"
+ "NetBIOS" "NetBIOS Interface" "Microsoft Corporation" "c:\windows\system32\drivers\netbios.sys"
+ "NetBT" "This service implements NetBios over TCP/IP." "Microsoft Corporation" "c:\windows\system32\drivers\netbt.sys"
+ "nfrd960" "IBM ServeRAID Controller Driver" "IBM Corporation" "c:\windows\system32\drivers\nfrd960.sys"
+ "Npfs" "NPFS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\npfs.sys"
+ "nsiproxy" "NSI proxy service." "Microsoft Corporation" "c:\windows\system32\drivers\nsiproxy.sys"
+ "Ntfs" "NT File System Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ntfs.sys"
+ "Null" "NULL Driver" "Microsoft Corporation" "c:\windows\system32\drivers\null.sys"
+ "nv_agp" "NForce NT AGP Filter" "Microsoft Corporation" "c:\windows\system32\drivers\nv_agp.sys"
+ "NVENETFD" "NVIDIA MCP Networking Function Driver." "NVIDIA Corporation" "c:\windows\system32\drivers\nvm62x64.sys"
+ "nvlddmkm" "NVIDIA Windows Kernel Mode Driver, Version 197.13 " "NVIDIA Corporation" "c:\windows\system32\drivers\nvlddmkm.sys"
+ "NVNET" "NVIDIA MCP Networking Function Driver." "NVIDIA Corporation" "c:\windows\system32\drivers\nvmf6264.sys"
+ "nvraid" "NVIDIA® nForce™ RAID Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvraid.sys"
+ "nvstor" "NVIDIA® nForce™ Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor.sys"
+ "nvstor64" "NVIDIA® nForce™ Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor64.sys"
+ "ohci1394" "1394 OpenHCI Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ohci1394.sys"
+ "Parport" "Parallel Port Driver" "Microsoft Corporation" "c:\windows\system32\drivers\parport.sys"
+ "partmgr" "Disk class filter driver that auctions out partitions to volume managers" "Microsoft Corporation" "c:\windows\system32\drivers\partmgr.sys"
+ "pbfilter" "" "" "c:\program files\peerblock\pbfilter.sys"
+ "pci" "NT Plug and Play PCI Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\pci.sys"
+ "pciide" "Generic PCI IDE Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pciide.sys"
+ "pcmcia" "PCMCIA Bus Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pcmcia.sys"
+ "pcw" "Performance Counters for Windows Driver" "Microsoft Corporation" "c:\windows\system32\drivers\pcw.sys"
+ "PEAUTH" "Protected Environment Authentication and Authorization Export Driver" "Microsoft Corporation" "c:\windows\system32\drivers\peauth.sys"
+ "PptpMiniport" "WAN Miniport (PPTP)" "Microsoft Corporation" "c:\windows\system32\drivers\raspptp.sys"
+ "Processor" "Processor Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\processr.sys"
+ "Psched" "QoS Packet Scheduler" "Microsoft Corporation" "c:\windows\system32\drivers\pacer.sys"
+ "ql2300" "QLogic Fibre Channel Stor Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql2300.sys"
+ "ql40xx" "QLogic iSCSI Storport Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql40xx.sys"
+ "QWAVEdrv" "Quality Windows Audio/Video Experience component driver" "Microsoft Corporation" "c:\windows\system32\drivers\qwavedrv.sys"
+ "RasAcd" "Remote Access Auto Connection Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rasacd.sys"
+ "RasAgileVpn" "WAN Miniport (IKEv2)" "Microsoft Corporation" "c:\windows\system32\drivers\agilevpn.sys"
+ "Rasl2tp" "WAN Miniport (L2TP)" "Microsoft Corporation" "c:\windows\system32\drivers\rasl2tp.sys"
+ "RasPppoe" "Remote Access PPPOE Driver" "Microsoft Corporation" "c:\windows\system32\drivers\raspppoe.sys"
+ "RasSstp" "WAN Miniport (SSTP)" "Microsoft Corporation" "c:\windows\system32\drivers\rassstp.sys"
+ "rdbss" "Provides the framework for network mini-redirectors" "Microsoft Corporation" "c:\windows\system32\drivers\rdbss.sys"
+ "rdpbus" "Microsoft RDP Bus Device driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpbus.sys"
+ "RDPCDD" "RDPDD Chained DD" "Microsoft Corporation" "c:\windows\system32\drivers\rdpcdd.sys"
+ "RDPENCDD" "RDP Encoder Mirror Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpencdd.sys"
+ "RDPREFMP" "RDP Reflector Driver Miniport" "Microsoft Corporation" "c:\windows\system32\drivers\rdprefmp.sys"
+ "RDPWD" "RDP Terminal Stack Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rdpwd.sys"
+ "rdyboost" "ReadyBoost" "Microsoft Corporation" "c:\windows\system32\drivers\rdyboost.sys"
+ "Revoflt" "Revo Uninstaller Filter driver" "VS Revo Group" "c:\windows\system32\drivers\revoflt.sys"
+ "RMCAST" "RMCAST (Pgm) Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\rmcast.sys"
+ "rspndr" "Link-Layer Topology Responder Driver for NDIS 6" "Microsoft Corporation" "c:\windows\system32\drivers\rspndr.sys"
+ "SASDIFSV" "SASDIFSV64.SYS" "SUPERAdBlocker.com and SUPERAntiSpyware.com" "c:\program files\superantispyware\sasdifsv64.sys"
+ "SASKUTIL" "SASKUTIL64.SYS" "SUPERAdBlocker.com and SUPERAntiSpyware.com" "c:\program files\superantispyware\saskutil64.sys"
+ "sbp2port" "SBP-2 Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sbp2port.sys"

#10 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 12 September 2012 - 09:57 AM

+ "scfilter" "Smart card reader filter driver enabling smart card PnP." "Microsoft Corporation" "c:\windows\system32\drivers\scfilter.sys"
+ "secdrv" "Macrovision SECURITY Driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "Serenum" "Serial Port Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\serenum.sys"
+ "Serial" "Serial Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\serial.sys"
+ "sermouse" "Serial Mouse Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sermouse.sys"
+ "sffdisk" "Small Form Factor Disk Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sffdisk.sys"
+ "sffp_mmc" "Small Form Factor MMC Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sffp_mmc.sys"
+ "sffp_sd" "Small Form Factor SD Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sffp_sd.sys"
+ "sfloppy" "SCSI Floppy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\sfloppy.sys"
+ "SiSRaid2" "SiS RAID Stor Miniport Driver" "Silicon Integrated Systems Corp." "c:\windows\system32\drivers\sisraid2.sys"
+ "SiSRaid4" "SiS AHCI Stor-Miniport Driver" "Silicon Integrated Systems" "c:\windows\system32\drivers\sisraid4.sys"
+ "Smb" "Microsoft NetbiosSmb Device Driver" "Microsoft Corporation" "c:\windows\system32\drivers\smb.sys"
+ "snapman" "Acronis Snapshot API" "Acronis" "c:\windows\system32\drivers\snapman.sys"
+ "spldr" "loader for security processor" "Microsoft Corporation" "c:\windows\system32\drivers\spldr.sys"
+ "srv" "Enables connectivity from Windows XP and earlier clients" "Microsoft Corporation" "c:\windows\system32\drivers\srv.sys"
+ "srv2" "Enables connectivity from Windows Vista and later clients" "Microsoft Corporation" "c:\windows\system32\drivers\srv2.sys"
+ "srvnet" "Server Network driver" "Microsoft Corporation" "c:\windows\system32\drivers\srvnet.sys"
+ "stexstor" "Promise SuperTrak EX Series Driver for Windows " "Promise Technology" "c:\windows\system32\drivers\stexstor.sys"
+ "swenum" "Plug and Play Software Device Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\swenum.sys"
+ "tbhsd" "Tunebite High-Speed Dubbing" "RapidSolution Software AG" "c:\windows\system32\drivers\tbhsd.sys"
X "TC131" "" "" "File not found: System32\Drivers\TC131.sys"
+ "Tcpip" "TCP/IP Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tcpip.sys"
+ "TCPIP6" "Microsoft IPv6 Protocol Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tcpip.sys"
+ "tcpipreg" "Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality." "Microsoft Corporation" "c:\windows\system32\drivers\tcpipreg.sys"
+ "TDPIPE" "Named Pipe Transport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tdpipe.sys"
+ "tdrpman258" "Acronis Try&Decide Volume Filter Driver" "Acronis" "c:\windows\system32\drivers\tdrpm258.sys"
+ "TDTCP" "TCP Transport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tdtcp.sys"
+ "tdx" "NetIO Legacy TDI Support Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tdx.sys"
+ "TermDD" "Remote Desktop Server Driver" "Microsoft Corporation" "c:\windows\system32\drivers\termdd.sys"
+ "timounter" "Acronis Backup Archive Explorer" "Acronis" "c:\windows\system32\drivers\timntr.sys"
+ "tssecsrv" "Remote Desktop Services Security Filter Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tssecsrv.sys"
+ "tunnel" "Microsoft Tunnel Interface Driver" "Microsoft Corporation" "c:\windows\system32\drivers\tunnel.sys"
+ "uagp35" "MS AGPv3.5 Filter" "Microsoft Corporation" "c:\windows\system32\drivers\uagp35.sys"
+ "uliagpkx" "ULi AGPv3.0 Filter for K8/9 Processor Platforms" "Microsoft Corporation" "c:\windows\system32\drivers\uliagpkx.sys"
+ "umbus" "User-Mode Bus Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\umbus.sys"
+ "UmPass" "Generic pass-through driver" "Microsoft Corporation" "c:\windows\system32\drivers\umpass.sys"
+ "usbccgp" "USB Common Class Generic Parent Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbccgp.sys"
+ "usbcir" "USB Consumer IR Driver for eHome" "Microsoft Corporation" "c:\windows\system32\drivers\usbcir.sys"
+ "usbehci" "EHCI eUSB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbehci.sys"
+ "usbhub" "Default Hub Driver for USB" "Microsoft Corporation" "c:\windows\system32\drivers\usbhub.sys"
+ "usbohci" "OHCI USB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbohci.sys"
+ "usbprint" "USB Printer driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbprint.sys"
+ "usbscan" "USB Scanner Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbscan.sys"
+ "USBSTOR" "USB Mass Storage Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbstor.sys"
+ "usbuhci" "UHCI USB Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbuhci.sys"
+ "usbvideo" "USB Video Class Driver" "Microsoft Corporation" "c:\windows\system32\drivers\usbvideo.sys"
+ "VClone" "VirtualCloneCD Driver" "Elaborate Bytes AG" "c:\windows\system32\drivers\vclone.sys"
+ "vdrvroot" "Virtual Drive Root Enumerator" "Microsoft Corporation" "c:\windows\system32\drivers\vdrvroot.sys"
+ "vga" "VGA/Super VGA Video Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vgapnp.sys"
+ "VgaSave" "VGA/Super VGA Video Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vga.sys"
+ "vhdmp" "VHD Miniport Driver" "Microsoft Corporation" "c:\windows\system32\drivers\vhdmp.sys"
+ "viaide" "VIA Generic PCI IDE Bus Driver" "VIA Technologies, Inc." "c:\windows\system32\drivers\viaide.sys"
+ "volmgr" "Volume Manager Driver" "Microsoft Corporation" "c:\windows\system32\drivers\volmgr.sys"
+ "volmgrx" "Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks" "Microsoft Corporation" "c:\windows\system32\drivers\volmgrx.sys"
+ "volsnap" "Volume Shadow Copy Driver" "Microsoft Corporation" "c:\windows\system32\drivers\volsnap.sys"
+ "vsmraid" "VIA RAID DRIVER FOR AMD-X86-64" "VIA Technologies Inc.,Ltd" "c:\windows\system32\drivers\vsmraid.sys"
+ "vwifibus" "Implements bus functionality for Virtual WiFi" "Microsoft Corporation" "c:\windows\system32\drivers\vwifibus.sys"
+ "WacomPen" "Wacom Serial Pen Tablet HID Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wacompen.sys"
+ "WANARP" "Remote Access IP ARP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wanarp.sys"
+ "Wanarpv6" "Remote Access IPv6 ARP Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wanarp.sys"
+ "Wd" "Microsoft Watchdog Timer Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wd.sys"
+ "Wdf01000" "Kernel Mode Driver Framework Runtime" "Microsoft Corporation" "c:\windows\system32\drivers\wdf01000.sys"
+ "WfpLwf" "WFP Lightweight Filter" "Microsoft Corporation" "c:\windows\system32\drivers\wfplwf.sys"
+ "WIMMount" "WIM Image mount service driver" "Microsoft Corporation" "c:\windows\system32\drivers\wimmount.sys"
+ "WmiAcpi" "Windows Management Interface for ACPI" "Microsoft Corporation" "c:\windows\system32\drivers\wmiacpi.sys"
+ "ws2ifsl" "Winsock IFS Driver" "Microsoft Corporation" "c:\windows\system32\drivers\ws2ifsl.sys"
+ "WsAudio_DeviceS(1)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(1).sys"
+ "WsAudio_DeviceS(2)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(2).sys"
+ "WsAudio_DeviceS(3)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(3).sys"
+ "WsAudio_DeviceS(4)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(4).sys"
+ "WsAudio_DeviceS(5)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(5).sys"
+ "WudfPf" "Windows Driver Foundation - User-mode Driver Framework Platform Driver" "Microsoft Corporation" "c:\windows\system32\drivers\wudfpf.sys"
+ "WUDFRd" "Windows Driver Foundation - User-mode Driver Framework Reflector" "Microsoft Corporation" "c:\windows\system32\drivers\wudfrd.sys"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "aux" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "midi" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "midimapper" "Microsoft MIDI Mapper" "Microsoft Corporation" "c:\windows\system32\midimap.dll"
+ "mixer" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "mixer6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "msacm.ac3filter" "" "" "c:\windows\system32\ac3filter64.acm"
+ "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\imaadp32.acm"
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"
+ "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msadp32.acm"
+ "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msg711.acm"
+ "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "Microsoft Corporation" "c:\windows\system32\msgsm32.acm"
+ "MSVideo8" "VfW MM Driver for WDM Video Capture Devices" "Microsoft Corporation" "c:\windows\system32\vfwwdm32.dll"
+ "vidc.i420" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\system32\iyuv_32.dll"
+ "VIDC.IYUV" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\system32\iyuv_32.dll"
+ "vidc.mrle" "Microsoft RLE Compressor" "Microsoft Corporation" "c:\windows\system32\msrle32.dll"
+ "vidc.msvc" "Microsoft Video 1 Compressor" "Microsoft Corporation" "c:\windows\system32\msvidc32.dll"
+ "VIDC.UYVY" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll"
+ "VIDC.YUY2" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll"
+ "VIDC.YVU9" "Toshiba Video Codec" "Microsoft Corporation" "c:\windows\system32\tsbyuv.dll"
+ "VIDC.YVYU" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\system32\msyuv.dll"
+ "wave" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wave6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\system32\wdmaud.drv"
+ "wavemapper" "Microsoft Sound Mapper" "Microsoft Corporation" "c:\windows\system32\msacm32.drv"
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "aux" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "midi" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "midimapper" "Microsoft MIDI Mapper" "Microsoft Corporation" "c:\windows\syswow64\midimap.dll"
+ "mixer" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "mixer6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "msacm.ac3filter" "" "" "c:\windows\syswow64\ac3filter.acm"
+ "msacm.dvacm" "Ulead DV Audio ACM Driver" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\vio\dvacm.acm"
+ "msacm.imaadpcm" "IMA ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\imaadp32.acm"
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\syswow64\l3codeca.acm"
+ "msacm.mpegacm" "Ulead MPEG1 Layer2 Audio ACM Driver" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\mpegacm.acm"
+ "msacm.msadpcm" "Microsoft ADPCM CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msadp32.acm"
+ "msacm.msg711" "Microsoft CCITT G.711 (A-Law and u-Law) CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msg711.acm"
+ "msacm.msgsm610" "Microsoft GSM 6.10 Audio CODEC for MSACM" "Microsoft Corporation" "c:\windows\syswow64\msgsm32.acm"
+ "msacm.siren" "Messenger Audio Codec" "Microsoft Corporation" "c:\windows\syswow64\sirenacm.dll"
+ "msacm.ulmp3acm" "Ulead MP3 codec engine" "Ulead systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulmp3acm.acm"
+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\syswow64\iccvid.dll"
+ "VIDC.FFDS" "ffdshow VFW" "" "c:\windows\syswow64\ff_vfw.dll"
+ "vidc.i420" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\syswow64\iyuv_32.dll"
+ "vidc.iyuv" "Intel Indeo® Video YUV Codec" "Microsoft Corporation" "c:\windows\syswow64\iyuv_32.dll"
+ "vidc.mrle" "Microsoft RLE Compressor" "Microsoft Corporation" "c:\windows\syswow64\msrle32.dll"
+ "vidc.msvc" "Microsoft Video 1 Compressor" "Microsoft Corporation" "c:\windows\syswow64\msvidc32.dll"
+ "vidc.uyvy" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll"
+ "vidc.yuy2" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll"
+ "vidc.yvu9" "Toshiba Video Codec" "Microsoft Corporation" "c:\windows\syswow64\tsbyuv.dll"
+ "vidc.yvyu" "Microsoft UYVY Video Decompressor" "Microsoft Corporation" "c:\windows\syswow64\msyuv.dll"
+ "wave" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave1" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave2" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave3" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave4" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave5" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wave6" "Winmm audio system driver" "Microsoft Corporation" "c:\windows\syswow64\wdmaud.drv"
+ "wavemapper" "Microsoft Sound Mapper" "Microsoft Corporation" "c:\windows\syswow64\msacm32.drv"
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax"
+ "AC3Filter" "ac3filter" "" "c:\program files (x86)\ac3filter\x64\ac3filter64.ax"
+ "ACM Wrapper" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "AVI Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "AVI mux" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "AVI Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "AVI/WAV File Source" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "Microsoft Corporation" "c:\windows\system32\psisrndr.ax"
+ "CBVA DMO wrapper filter" "Windows Media Center Content Analysis Filter Module" "Microsoft Corporation" "c:\windows\ehome\cbva.dll"
+ "Closed Captions Analysis Filter" "CCA DirectShow Filter." "Microsoft Corporation" "c:\windows\system32\cca.dll"
+ "Color Space Converter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Default Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "DV Muxer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll"
+ "DV Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll"
+ "DV Video Decoder" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qdv.dll"
+ "DVD Navigator" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\system32\qdvd.dll"
+ "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "Microsoft Corporation" "c:\windows\system32\evr.dll"
+ "File Source (Async.)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "File Source (URL)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "File stream renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "File Writer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "Infinite Pin Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "Internal Text Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "iTV Data Capture filter" "iTV Data Filters." "Microsoft Corporation" "c:\windows\system32\itvdata.dll"
+ "iTV Data Sink" "iTV Data Filters." "Microsoft Corporation" "c:\windows\system32\itvdata.dll"
+ "Line 21 Decoder 2" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Media Center Extender Encryption Filter" "Media Center Extender Filter" "Microsoft Corporation" "c:\windows\ehome\mcx2filter.dll"
+ "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "Microsoft Corporation" "c:\windows\system32\msac3enc.dll"
+ "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2adec.dll"
+ "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2vdec.dll"
+ "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\system32\msmpeg2enc.dll"
+ "Microsoft TV Captions Decoder" "Media Center Captioning Module" "Microsoft Corporation" "c:\windows\ehome\mstvcapn.dll"
+ "Microsoft TV Subtitles Decoder" "Media Center Captioning Module" "Microsoft Corporation" "c:\windows\ehome\mstvcapn.dll"
+ "MIDI Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MJPEG Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MPEG Audio Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MPEG Video Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax"
+ "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "Microsoft Corporation" "c:\windows\system32\mpeg2data.ax"
+ "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\system32\mpg2splt.ax"
+ "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "MPEG-I Stream Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Multi-file Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "NetBridge" "Media Center NetBridge" "Microsoft Corporation" "c:\windows\ehome\netbridge.dll"
+ "Null Renderer" "DirectShow Editing." "Microsoft Corporation" "c:\windows\system32\qedit.dll"
+ "RDP DShow Video Renderer" "RDP Renderer Filter (redirector)" "Microsoft" "c:\windows\system32\dshowrdpfilter.dll"
+ "SAMI (CC) Reader" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Sample Grabber" "DirectShow Editing." "Microsoft Corporation" "c:\windows\system32\qedit.dll"
+ "SBE2 Sink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "SBE2FileScan" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "Smart Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\qcap.dll"
+ "SoundRecorder Null Renderer" "Windows Sound Recorder" "Microsoft Corporation" "c:\windows\system32\wavdest.dll"
+ "SoundRecorder Volume Watch" "Windows Sound Recorder" "Microsoft Corporation" "c:\windows\system32\wavdest.dll"
+ "SoundRecorder WAV Dest" "Windows Sound Recorder" "Microsoft Corporation" "c:\windows\system32\wavdest.dll"
+ "StreamBufferSink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "StreamBufferSource" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\system32\sbe.dll"
+ "VBI Codec" "Microsoft VBI Codec" "Microsoft Corporation" "c:\windows\system32\vbicodec.ax"
+ "VBI Surface Allocator" "VBI Surface Allocator Filter" "Microsoft Corporation" "c:\windows\system32\vbisurf.ax"
+ "VGA 16 color ditherer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Video Mixing Renderer 9" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Video Port Manager" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "VPS Decoder" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\system32\wstpager.ax"
+ "Wave Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\system32\quartz.dll"
+ "WM ASF Reader" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\system32\qasf.dll"
+ "WM ASF Writer" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\system32\qasf.dll"
+ "WMEnc Screen Capture Filter" "WMPSrcWp Module" "Microsoft Corporation" "c:\windows\system32\wmpsrcwp.dll"
+ "WST Pager" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\system32\wstpager.ax"
"HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "_ VSO Preview Filter" "Video preview filter" "VSO Software SARL" "c:\program files (x86)\vso\common\vsovprev.ax"
+ "AC3 Parser Filter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax"
+ "AC3Filter" "ac3filter" "" "c:\program files (x86)\rapidsolution\audials 8\ac3filter.ax"
+ "ACM Wrapper" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Audio Destination" "WAVDest Filter (Sample)" "Microsoft Corporation" "c:\program files (x86)\google\google earth\client\wavdest.ax"
+ "Audio Source" "Windows Media Preview Object" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmprevu.dll"
+ "AVI Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVI Draw Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVI mux" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "AVI Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVI/WAV File Source" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "AVS Video Out" "AVSVideoOutFilter DirectShow Filter" "Online Media Technologies Ltd" "c:\program files (x86)\common files\avsmedia\activex\avsvideooutfilter3.ax"
+ "AVSMediaGrabber" "AVSMediaGrabber4 DirectShow Filter" "Online Media Technologies Ltd." "c:\program files (x86)\common files\avsmedia\activex\avsmediagrabber4.ax"
+ "BDA MPEG2 Transport Information Filter" "Microsoft Transport Information Filter for MPEG2 based networks." "Microsoft Corporation" "c:\windows\syswow64\psisrndr.ax"
+ "Capture File Writer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "Closed Captions Analysis Filter" "CCA DirectShow Filter." "Microsoft Corporation" "c:\windows\syswow64\cca.dll"
+ "Color Converter" "Microsoft Color Converter" "Microsoft Corporation" "c:\windows\syswow64\declrds.ax"
+ "Color Space Converter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "CustomFrameGrabber Filter" "Viscom Frame" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomframe.dll"
+ "DC-Bass Source" "DirectShow™ Audio Decoder" "http://www.dsp-worx.de" "c:\program files (x86)\ape to mp3 converter\dcbasssource.ax"
+ "Default Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Dib Output" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\diboutput.ax"
+ "Dib Receive" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dibreceive.ax"
+ "DivX Decoder Filter" "DivX® Decoder Filter" "DivXNetworks, Inc." "c:\windows\syswow64\divxdec.ax"
+ "Dump" "File Dump Filter (Sample)" "Microsoft Corporation" "c:\program files (x86)\ape to mp3 converter\write.ax"
+ "Dump" "Audio Encoder" "Viscom Software" "c:\windows\syswow64\viscomaudioencoder.dll"
+ "DV ACM V/A Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DV Muxer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll"
+ "DV Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll"
+ "DV V/A Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DV Video Decoder" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdv.dll"
+ "DV Video Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DVD Navigator" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "Enhanced Video Renderer" "Enhanced Video Renderer DLL" "Microsoft Corporation" "c:\windows\syswow64\evr.dll"
+ "ffdshow Audio Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow Audio Processor" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow raw video filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow subtitles filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "ffdshow Video Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\ffdshow\ffdshow.ax"
+ "File Source (Async.)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "File Source (URL)" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "File stream renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "File Writer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "GPL MPEG-1/2 Decoder" "GPL MPEG-1/2 Decoder Filter for DirectShow" "Peter Wimmer, Gabest" "c:\windows\syswow64\gplmpgdec.ax"
+ "Image Effects" "Audio Data" "Viscom Software" "c:\windows\syswow64\viscomaudiodata.dll"
+ "Infinite Pin Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "Internal Text Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "iTV Data Capture filter" "iTV Data Filters." "Microsoft Corporation" "c:\windows\syswow64\itvdata.dll"
+ "iTV Data Sink" "iTV Data Filters." "Microsoft Corporation" "c:\windows\syswow64\itvdata.dll"
+ "LAME Audio Encoder" "LAME Audio Encoder" "" "c:\program files (x86)\ape to mp3 converter\lame.ax"
+ "Line 21 Decoder" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "Line 21 Decoder 2" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Microsoft AC3 Encoder" "Microsoft AC-3 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msac3enc.dll"
+ "Microsoft DTV-DVD Audio Decoder" "Microsoft DTV-DVD Audio Decoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2adec.dll"
+ "Microsoft DTV-DVD Video Decoder" "Microsoft DTV-DVD Video Decoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2vdec.dll"
+ "Microsoft MPEG-2 Audio Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll"
+ "Microsoft MPEG-2 Video Encoder" "Microsoft MPEG-2 Encoder" "Microsoft Corporation" "c:\windows\syswow64\msmpeg2enc.dll"
+ "MIDI Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MJPEG Decompressor" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MPEG Audio Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MPEG Video Codec" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "MPEG-2 Demultiplexer" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax"
+ "MPEG-2 Sections and Tables" "Microsoft MPEG-2 Section and Table Acquisition Module" "Microsoft Corporation" "c:\windows\syswow64\mpeg2data.ax"
+ "MPEG-2 Splitter" "DirectShow MPEG-2 Splitter." "Microsoft Corporation" "c:\windows\syswow64\mpg2splt.ax"
+ "Mpeg-2 Video Stream Analysis" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "MPEG-I Stream Splitter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Multi-file Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Nero Audio CD Filter" "Nero Audio CD Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio CD Navigator" "Nero Audio CD Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio Processor" "Nero Audio Processor" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudioconv.ax"
+ "Nero Audio Source" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Nero Digital Audio Decoder" "Nero Audio Decoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudio.ax"
+ "Nero Digital AVC Audio Encoder" "AAC LC/HE Audio Encoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendaud.ax"
+ "Nero Digital AVC File Writer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Muxer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Null Renderer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Subpicture Enc" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital Parser" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\ndparser.ax"
+ "Nero DV Splitter" "DV Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nedvsplitter.ax"
+ "Nero DVD Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideo.ax"
+ "Nero DVD Navigator" "DVD Navigator Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nedvd.ax"
+ "Nero ES Video Reader" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\ndparser.ax"
+ "Nero File Source" "Nero SVCD source filter" "Nero AG " "c:\program files (x86)\common files\ahead\dsfilter\nefilesrc.ax"
+ "Nero File Source (Async.)" "NeFileSourceAsync" "Ahead Software AG" "c:\program files (x86)\common files\ahead\dsfilter\nefilesourceasync.ax"
+ "Nero File Source / Splitter" "Push Mode VOB Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nefsource.ax"
+ "Nero Format Converter" "Frame rate / Color space converter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neroformatconv.ax"
+ "Nero Frame Capture" "Direct Show frame grabber filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\necapture.ax"
+ "Nero Mpeg2 Encoder" "MPEG 1/2 Video Encoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevcr.ax"
+ "Nero Photo Source" "NePhotoSource" "Ahead Software AG" "c:\program files (x86)\common files\ahead\dsfilter\nephotosource.ax"
+ "Nero PS Muxer" "PS Muxer Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nepsmuxer.ax"
+ "Nero QuickTime™ Audio Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero QuickTime™ Video Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero Resize" "Nero Resizing Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neresize.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Splitter" "Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesplitter.ax"
+ "Nero Vcd Navigator" "Nero Vcd Navigator Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevcd.ax"
+ "Nero Video Analyzer" "Nero Video Analyzer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideoanalyzer.ax"
+ "Nero Video Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideo.ax"
+ "Nero Video Processor" "Resize / Deinterlace / Color Correction / Film Effect / Frame Capture Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerovideoproc.ax"
+ "Nero Video Source" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax"
+ "Null Renderer" "DirectShow Editing." "Microsoft Corporation" "c:\windows\syswow64\qedit.dll"
+ "Ogg Multiplexer" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "Ogg Splitter" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "Overlay Mixer" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "Overlay Mixer2" "DirectShow DVD PlayBack Runtime." "Microsoft Corporation" "c:\windows\syswow64\qdvd.dll"
+ "QTSrc" "CLQTSrc" "Cyberlink" "c:\windows\syswow64\qtalt.ax"
+ "QuickTime Source Filter" "QuickTime Decoder" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomqtde.dll"
+ "QuickTime Writer" "" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomqtenc.dll"
+ "RDP DShow Video Renderer" "RDP Renderer Filter (redirector)" "Microsoft" "c:\windows\syswow64\dshowrdpfilter.dll"
+ "RealAudio Decoder" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "RealMedia Source" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "RealMedia Splitter" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "RealMediaEncoder Filter" "RealMedia Encoder" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomrmencoder.dll"
+ "RealVideo Decoder" "RealMedia Splitter" "Gabest" "c:\windows\syswow64\rmalt.ax"
+ "Record Queue" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "Record Queue" "WME Record Queue" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmedque.dll"
+ "SAMI (CC) Reader" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Sample Grabber" "DirectShow Editing." "Microsoft Corporation" "c:\windows\syswow64\qedit.dll"
+ "SBE2 Sink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "SBE2FileScan" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "SBE2MediaTypeProfile" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "Smart Tee Filter" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\qcap.dll"
+ "StreamBufferSink" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "StreamBufferSource" "DirectShow Stream Buffer Filter." "Microsoft Corporation" "c:\windows\syswow64\sbe.dll"
+ "TC131 USBCAM" "" "" "c:\program files (x86)\tca-131\tc131.ax"
+ "Ulead AMR Audio Decoder" "MP4 AMR Audio Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uladamr.ax"
+ "Ulead DV Scene Detect" "ulDvScDt" "Ulead system Inc." "c:\program files (x86)\common files\ulead systems\capture\uldvscdt.ax"
+ "Ulead DV Writer" "ulDVWriter" "Ulead System Inc." "c:\program files (x86)\common files\ulead systems\capture\uldvrite.ax"
+ "Ulead DVB Parser" "Ulead DVB Parser Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvbparser.ax"
+ "Ulead DVD Audio Decoder 2" "Audio Decoder" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead DVD Navigator" "DVD Navigator filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\dvd\uleaddvdnavigator.ax"
+ "Ulead DVD Video decoder 2" "DVD Video Decoder with DxVA Support" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdvideo.ax"
+ "ULead File Source (Async.)" "Ulead Async Filter" "Ulead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulasync.ax"
+ "ULead File Writer" "File Dump Filter" "ULead Systems" "c:\program files (x86)\corel\corel dvd moviefactory 7\corel dvd moviefactory 7\uldump.ax"
+ "Ulead H264 Decoder" "uldsh264" "uleadivi" "c:\program files (x86)\common files\ulead systems\mpeg\uldsh264.ax"
+ "ULead Infinite Pin Tee" "Ulead Infinite Tee Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uinftee.ax"
+ "Ulead MPEG Audio Decoder" "Audio Decoder" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead MPEG Encoder" "MPEG Encoder and Muxer" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulesmpeg.ax"
+ "Ulead MPEG Muxer" "MPEG Muxer" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulmxmpeg.ax"
+ "Ulead MPEG Splitter" "ULead Mpeg I/II Splitter" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulspmpeg.ax"
+ "Ulead MPEG Transcoder" "ulMPGTrans" "Ulead com" "c:\program files (x86)\common files\ulead systems\mpeg\ulmpgtrans.ax"
+ "Ulead MPEG Video Decoder" "MPEG Video and Audio Decoder" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\uldsmpeg.ax"
+ "Ulead MPEG-4 ASP Video Decoder" "MP4 ASP Video Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulaspvdmp4.ax"
+ "Ulead MPEG-4 Audio Decoder" "MP4 AAC Audio Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uladmp4.ax"
+ "Ulead MPEG-4 Encoder" "MP4 Encoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulmp4enc.ax"
+ "Ulead MPEG-4 Splitter" "MP4 Splitter Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulspmp4.ax"
+ "Ulead MPEG-4 Video Decoder" "MP4 Video Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulvdmp4.ax"
+ "Ulead Ogg Parser" "ulOggParserFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggparserfilter.ax"
+ "Ulead OggVorbis Decoder" "ulOggVorbisDecoderFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggvorbisdecoderfilter.ax"
+ "Ulead OggVorbis Encoder" "ulOggVorbisEncoderFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggvorbisencoderfilter.ax"
+ "Ulead Push Source Filter" "Ulead Push Source Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulpushsource.ax"
+ "Ulead Sub-Picture Push Source Filter" "Ulead Sub-Picture Push Source Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulsubpicpushsource.ax"
+ "Ulead Video Deinterlace Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\deinterlace.ax"
+ "VBI Codec" "Microsoft VBI Codec" "Microsoft Corporation" "c:\windows\syswow64\vbicodec.ax"
+ "VBI Surface Allocator" "VBI Surface Allocator Filter" "Microsoft Corporation" "c:\windows\syswow64\vbisurf.ax"
+ "VGA 16 color ditherer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Mixing Renderer 9" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Port Manager" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Renderer" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "Video Source" "Windows Media Preview Object" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmprevu.dll"
+ "VISCOM FLV F4V Decoder" "viscomflvdec.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomflvdec.dll"
+ "VISCOM Overlay Text Filter" "" "" "c:\windows\syswow64\viscomtran.dll"
+ "Viscomsoft Animated GIF Encoder" "" "" "c:\windows\syswow64\viscomgifenc.dll"
+ "Viscomsoft MPEG Audio Decoder" "viscommpgadec.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscommpgadec.dll"
+ "Viscomsoft Mpeg Encoder" "viscomdata3.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscommpgenc.dll"
+ "Viscomsoft Mpeg Source" "viscomsplitter" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomsplitter.dll"
+ "Viscomsoft Mpeg Splitter" "viscomsplitter" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscomsplitter.dll"
+ "Viscomsoft MPEG Video Decoder" "viscommpgdec.dll" "Viscom Software www.viscomsoft.com" "c:\windows\syswow64\viscommpgdec.dll"
+ "Vorbis Decoder" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "Vorbis Encoder" "Ogg DirectShow™ Filter Collection" "" "c:\windows\syswow64\oggds.dll"
+ "VPS Decoder" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\syswow64\wstpager.ax"
+ "WAV Dest" "" "Viscom Software" "c:\windows\syswow64\viscomwave.dll"
+ "Wave Parser" "DirectShow Runtime." "Microsoft Corporation" "c:\windows\syswow64\quartz.dll"
+ "WM ASF Reader" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\syswow64\qasf.dll"
+ "WM ASF Writer" "DirectShow ASF Support" "Microsoft Corporation" "c:\windows\syswow64\qasf.dll"
+ "WM VIH2 Fix" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMEnc Screen Capture Filter" "WMPSrcWp Module" "Microsoft Corporation" "c:\windows\syswow64\wmpsrcwp.dll"
+ "WMEnc Screen Capture Filter" "WMESrcWp Module" "Microsoft Corporation" "c:\program files (x86)\windows media components\encoder\wmesrcwp.dll"
+ "WMT DV Extract Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Sample Info Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Switch Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Renderer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Source" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WS ScreenCapture" "ScreenCa Dynamic Link Library" "" "c:\program files (x86)\iskysoft\drm removal\screencapturefilter.ax"
+ "WST Pager" "Microsoft Teletext Server" "Microsoft Corporation" "c:\windows\syswow64\wstpager.ax"
+ "XviD MPEG-4 Video Decoder" "" "" "c:\windows\syswow64\xvid.ax"
"HKLM\System\CurrentControlSet\Control\Session Manager\AutorunsDisabled\BootExecute" "" "" ""
X "autocheck autochk *" "Auto Check Utility" "Microsoft Corporation" "c:\windows\system32\autochk.exe"
X "bootdelete" "Hitman Pro 3.5 BootDelete" "SurfRight B.V." "c:\windows\system32\bootdelete.exe"
X "bootdelete" "Hitman Pro 3.5 BootDelete" "SurfRight B.V." "c:\windows\system32\bootdelete.exe"
X "lsdelete" "" "" "c:\windows\system32\lsdelete.exe"
"HKLM\System\CurrentControlSet\Control\ServiceControlManagerExtension" "" "" ""
X "%systemroot%\system32\scext.dll" "Service Control Manager Extension DLL for non-minwin" "Microsoft Corporation" "c:\windows\system32\scext.dll"
"HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls" "" "" ""
+ "advapi32" "Advanced Windows 32 Base API" "Microsoft Corporation" "c:\windows\syswow64\advapi32.dll"
+ "advapi32" "Advanced Windows 32 Base API" "Microsoft Corporation" "c:\windows\system32\advapi32.dll"
+ "clbcatq" "COM+ Configuration Catalog" "Microsoft Corporation" "c:\windows\syswow64\clbcatq.dll"
+ "clbcatq" "COM+ Configuration Catalog" "Microsoft Corporation" "c:\windows\system32\clbcatq.dll"
+ "COMDLG32" "Common Dialogs DLL" "Microsoft Corporation" "c:\windows\syswow64\comdlg32.dll"
+ "COMDLG32" "Common Dialogs DLL" "Microsoft Corporation" "c:\windows\system32\comdlg32.dll"
+ "DifxApi" "Driver Install Frameworks for API library module" "Microsoft Corporation" "c:\windows\syswow64\difxapi.dll"
+ "DifxApi" "Driver Install Frameworks for API library module" "Microsoft Corporation" "c:\windows\system32\difxapi.dll"
+ "gdi32" "GDI Client DLL" "Microsoft Corporation" "c:\windows\syswow64\gdi32.dll"
+ "gdi32" "GDI Client DLL" "Microsoft Corporation" "c:\windows\system32\gdi32.dll"
+ "IERTUTIL" "Run time utility for Internet Explorer" "Microsoft Corporation" "c:\windows\syswow64\iertutil.dll"
+ "IERTUTIL" "Run time utility for Internet Explorer" "Microsoft Corporation" "c:\windows\system32\iertutil.dll"
+ "IMAGEHLP" "Windows NT Image Helper" "Microsoft Corporation" "c:\windows\syswow64\imagehlp.dll"
+ "IMAGEHLP" "Windows NT Image Helper" "Microsoft Corporation" "c:\windows\system32\imagehlp.dll"
+ "IMM32" "Multi-User Windows IMM32 API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\imm32.dll"
+ "IMM32" "Multi-User Windows IMM32 API Client DLL" "Microsoft Corporation" "c:\windows\system32\imm32.dll"
+ "kernel32" "Windows NT BASE API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\kernel32.dll"
+ "kernel32" "Windows NT BASE API Client DLL" "Microsoft Corporation" "c:\windows\system32\kernel32.dll"
+ "LPK" "Language Pack" "Microsoft Corporation" "c:\windows\syswow64\lpk.dll"
+ "LPK" "Language Pack" "Microsoft Corporation" "c:\windows\system32\lpk.dll"
+ "MSCTF" "MSCTF Server DLL" "Microsoft Corporation" "c:\windows\syswow64\msctf.dll"
+ "MSCTF" "MSCTF Server DLL" "Microsoft Corporation" "c:\windows\system32\msctf.dll"
+ "MSVCRT" "Windows NT CRT DLL" "Microsoft Corporation" "c:\windows\syswow64\msvcrt.dll"
+ "MSVCRT" "Windows NT CRT DLL" "Microsoft Corporation" "c:\windows\system32\msvcrt.dll"
+ "NORMALIZ" "Unicode Normalization DLL" "Microsoft Corporation" "c:\windows\syswow64\normaliz.dll"
+ "NORMALIZ" "Unicode Normalization DLL" "Microsoft Corporation" "c:\windows\system32\normaliz.dll"
+ "NSI" "NSI User-mode interface DLL" "Microsoft Corporation" "c:\windows\syswow64\nsi.dll"
+ "NSI" "NSI User-mode interface DLL" "Microsoft Corporation" "c:\windows\system32\nsi.dll"
+ "ole32" "Microsoft OLE for Windows" "Microsoft Corporation" "c:\windows\syswow64\ole32.dll"
+ "ole32" "Microsoft OLE for Windows" "Microsoft Corporation" "c:\windows\system32\ole32.dll"
+ "OLEAUT32" "" "Microsoft Corporation" "c:\windows\syswow64\oleaut32.dll"
+ "OLEAUT32" "" "Microsoft Corporation" "c:\windows\system32\oleaut32.dll"
+ "PSAPI" "Process Status Helper" "Microsoft Corporation" "c:\windows\syswow64\psapi.dll"
+ "PSAPI" "Process Status Helper" "Microsoft Corporation" "c:\windows\system32\psapi.dll"
+ "rpcrt4" "Remote Procedure Call Runtime" "Microsoft Corporation" "c:\windows\syswow64\rpcrt4.dll"
+ "rpcrt4" "Remote Procedure Call Runtime" "Microsoft Corporation" "c:\windows\system32\rpcrt4.dll"
+ "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "Microsoft Corporation" "c:\windows\syswow64\sechost.dll"
+ "sechost" "Host for SCM/SDDL/LSA Lookup APIs" "Microsoft Corporation" "c:\windows\system32\sechost.dll"
+ "Setupapi" "Windows Setup API" "Microsoft Corporation" "c:\windows\syswow64\setupapi.dll"
+ "Setupapi" "Windows Setup API" "Microsoft Corporation" "c:\windows\system32\setupapi.dll"
+ "SHELL32" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\syswow64\shell32.dll"
+ "SHELL32" "Windows Shell Common Dll" "Microsoft Corporation" "c:\windows\system32\shell32.dll"
+ "SHLWAPI" "Shell Light-weight Utility Library" "Microsoft Corporation" "c:\windows\syswow64\shlwapi.dll"
+ "SHLWAPI" "Shell Light-weight Utility Library" "Microsoft Corporation" "c:\windows\system32\shlwapi.dll"
+ "URLMON" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\syswow64\urlmon.dll"
+ "URLMON" "OLE32 Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\urlmon.dll"
+ "user32" "Multi-User Windows USER API Client DLL" "Microsoft Corporation" "c:\windows\syswow64\user32.dll"
+ "user32" "Multi-User Windows USER API Client DLL" "Microsoft Corporation" "c:\windows\system32\user32.dll"
+ "USP10" "Uniscribe Unicode script processor" "Microsoft Corporation" "c:\windows\syswow64\usp10.dll"
+ "USP10" "Uniscribe Unicode script processor" "Microsoft Corporation" "c:\windows\system32\usp10.dll"
+ "WININET" "Internet Extensions for Win32" "Microsoft Corporation" "c:\windows\syswow64\wininet.dll"
+ "WININET" "Internet Extensions for Win32" "Microsoft Corporation" "c:\windows\system32\wininet.dll"
+ "WLDAP32" "Win32 LDAP API DLL" "Microsoft Corporation" "c:\windows\syswow64\wldap32.dll"
+ "WLDAP32" "Win32 LDAP API DLL" "Microsoft Corporation" "c:\windows\system32\wldap32.dll"
+ "WS2_32" "Windows Socket 2.0 32-Bit DLL" "Microsoft Corporation" "c:\windows\syswow64\ws2_32.dll"
+ "WS2_32" "Windows Socket 2.0 32-Bit DLL" "Microsoft Corporation" "c:\windows\system32\ws2_32.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers" "" "" ""
+ "CCertProvider" "Cert Credential Provider" "Microsoft Corporation" "c:\windows\system32\certcredprovider.dll"
+ "GenericProvider" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
+ "NPProvider" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
+ "PasswordProvider" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
+ "Smartcard Credential Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll"
+ "Smartcard Pin Provider" "Windows Smartcard Credential Provider" "Microsoft Corporation" "c:\windows\system32\smartcardcredentialprovider.dll"
+ "VaultCredProvider" "Vault Credential Provider" "Microsoft Corporation" "c:\windows\system32\vaultcredprovider.dll"
+ "WinBio Credential Provider" "WinBio Credential Provider" "Microsoft Corporation" "c:\windows\system32\biocredprov.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Provider Filters" "" "" ""
+ "GenericFilter" "Windows Authentication UI" "Microsoft Corporation" "c:\windows\system32\authui.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\PLAP Providers" "" "" ""
+ "CRasProvider" "RAS PLAP Credential Provider" "Microsoft Corporation" "c:\windows\system32\rasplap.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries" "" "" ""
+ "MSAFD Pgm (RDM)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Pgm (Stream)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries" "" "" ""
+ "NTDS" "LDAP RnR Provider DLL" "Microsoft Corporation" "c:\windows\system32\winrnr.dll"
+ "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
+ "PNRP Name Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64" "" "" ""
+ "MSAFD Pgm (RDM)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Pgm (Stream)" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [RAW/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [TCP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IP]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "MSAFD Tcpip [UDP/IPv6]" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64" "" "" ""
+ "E-mail Naming Shim Provider" "E-mail Naming Shim Provider" "Microsoft Corporation" "c:\windows\system32\napinsp.dll"
+ "Network Location Awareness Legacy (NLAv1) Namespace" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
+ "NTDS" "LDAP RnR Provider DLL" "Microsoft Corporation" "c:\windows\system32\winrnr.dll"
+ "PNRP Cloud Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
+ "PNRP Name Namespace Provider" "PNRP Name Space Provider" "Microsoft Corporation" "c:\windows\system32\pnrpnsp.dll"
+ "Tcpip" "Microsoft Windows Sockets 2.0 Service Provider" "Microsoft Corporation" "c:\windows\system32\mswsock.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" ""
+ "doPDF 7 Monitor" "doPDF Port Monitor" "Softland" "c:\windows\system32\dopdfmn7.dll"
+ "Local Port" "Local Spooler DLL" "Microsoft Corporation" "c:\windows\system32\localspl.dll"
+ "Microsoft Shared Fax Monitor" "Microsoft Fax Print Monitor" "Microsoft Corporation" "c:\windows\system32\fxsmon.dll"
+ "Standard TCP/IP Port" "Standard TCP/IP Port Monitor DLL" "Microsoft Corporation" "c:\windows\system32\tcpmon.dll"
+ "USB Monitor" "Standard Dynamic Printing Port Monitor DLL" "Microsoft Corporation" "c:\windows\system32\usbmon.dll"
+ "WSD Port" "WSD Printer Port Monitor" "Microsoft Corporation" "c:\windows\system32\wsdmon.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders" "" "" ""
+ "credssp.dll" "Credential Delegation Security Package" "Microsoft Corporation" "c:\windows\system32\credssp.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Authentication Packages" "" "" ""
+ "msv1_0" "Microsoft Authentication Package v1.0" "Microsoft Corporation" "c:\windows\system32\msv1_0.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Notification Packages" "" "" ""
+ "scecli" "Windows Security Configuration Editor Client Engine" "Microsoft Corporation" "c:\windows\system32\scecli.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Security Packages" "" "" ""
+ "kerberos" "Kerberos Security Package" "Microsoft Corporation" "c:\windows\system32\kerberos.dll"
+ "msv1_0" "Microsoft Authentication Package v1.0" "Microsoft Corporation" "c:\windows\system32\msv1_0.dll"
+ "pku2u" "Pku2u Security Package" "Microsoft Corporation" "c:\windows\system32\pku2u.dll"
+ "schannel" "TLS / SSL Security Provider" "Microsoft Corporation" "c:\windows\system32\schannel.dll"
+ "tspkg" "Web Service Security Package" "Microsoft Corporation" "c:\windows\system32\tspkg.dll"
+ "wdigest" "Microsoft Digest Access" "Microsoft Corporation" "c:\windows\system32\wdigest.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order" "" "" ""
+ "LanmanWorkstation" "Microsoft Windows Network" "Microsoft Corporation" "c:\windows\system32\ntlanman.dll"
+ "RDPNP" "Microsoft Terminal Services" "Microsoft Corporation" "c:\windows\system32\drprov.dll"
+ "webclient" "Web Client Network" "Microsoft Corporation" "c:\windows\system32\davclnt.dll"
"C:\Users\majik\AppData\Local\Microsoft\Windows Sidebar\Settings.ini" "" "" ""
+ "WinZip Gadget" "" "WinZip" "C:\Program Files\Windows Sidebar\Shared Gadgets\WinZip.Gadget\en-US\Gadget.xml"



I want to thank you again for your patience and help with this.
Manfred

#11 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:51 PM

Posted 12 September 2012 - 11:26 AM

Do you have previous restore point before you were infected?

Go to

c:\program files (x86)\lavasoft\ad-aware

If you find uninstaller for this software ,uninstall it

Download

http://www.datum-forensics.com/down/comintrep.exe

Launch it and checkmark following options

Reset Internet Protocol (TCP/IP)
Repair Winsock (Reset Catalog)
Renew Internet Connections

Click on GO

After it finishes restart the PC

Launch minitoolbox and checkmark List winsock entries and click on GO

Post the generated log

Edited by narenxp, 12 September 2012 - 11:51 AM.


#12 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 12 September 2012 - 06:00 PM

I did use the adaware uninstall program but apparently it didn't get rid of all of it. I had to use moveonboot to get rid of the rest. Here is the log from minitoolbox. Still no internet.

MiniToolBox by Farbar Version: 23-07-2012
Ran by majik (administrator) on 12-09-2012 at 18:37:43
Microsoft Windows 7 Home Premium (X64)
Boot Mode: Normal
***************************************************************************
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"

x64-Catalog5 02 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

x64-Catalog5 03 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)

**** End of log ****

#13 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 12 September 2012 - 06:02 PM

I forgot to add that I didn't have any restore points to use. I did have some but they disappeared with the virus.

#14 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:51 PM

Posted 12 September 2012 - 11:20 PM

I did use the adaware uninstall program but apparently it didn't get rid of all of it. I had to use moveonboot to get rid of the rest. Here is the log from minitoolbox. Still no internet.


Uninstall super antispyware.Reinstall your network drivers.If you still not able connect to internet


Create a restore point

Download

fix

Launch it and click YES

Restart the PC

Launch minitoolbox and checkmark List winsock entries and click on GO

Post the generated log

#15 majik624

majik624
  • Topic Starter

  • Members
  • 18 posts
  • OFFLINE
  •  
  • Local time:09:51 PM

Posted 13 September 2012 - 12:26 AM

When I ran the reg entries you posted there was still a problem with the mswsock.dll. There was a missing \ before and after System32. I edited it and reran it and now the minitoolbox scan has no errors. I hope this was the right thing to do. Still no internet. Log follows:

MiniToolBox by Farbar Version: 23-07-2012
Ran by majik (administrator) on 13-09-2012 at 01:19:26
Microsoft Windows 7 Home Premium (X64)
Boot Mode: Normal
***************************************************************************
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70144] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)

**** End of log ****




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users