Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Re Direct Virus and Windows Security Centre Turned off


  • Please log in to reply
18 replies to this topic

#1 NotWiseOne

NotWiseOne

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 06 November 2012 - 08:20 AM

Hi,

A couple of weeks ago, I clicked on a link for a subject that i was searching and i ended up downloading something i that i do not have a clue where it went. Since then my google serches have been redirected when i click on a link it redirects to a totally different site each time. On Windows Explorer 9, in the box that we type the website in it comes up with "www.com.au" and on the tabs it comes up with livesearchnow.com or searchnowqc.com and there is also some numbers but i can get them at this point in time. Also my Window Security Centre has turned off and I have tried turning it back on I have come up with a "Action Centre" box that says - The Windows Security Centre services can't be started. I have manually turned this on with help from microsoft but it turns itself off all by itself

I have read a couple of other website forums and have loaded Hitman Pro 3.6, and run it but it has deleted one item but it didnt fix it. Babylon was also on the list - so i deleted that too. I dont know where the logs went.

Please help and thank you for you time.

What i know about my system is it is a Window 7 and it is the 64 bit thing :o) (i learnt that from when i downloaded hitman pro)

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:15 AM

Posted 06 November 2012 - 08:21 AM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here.If you get crashes in normal mode,run it in safemode with networking

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 06 November 2012 - 08:31 AM

TDSSKiller log

21:26:47.0221 6536 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
21:26:48.0765 6536 ============================================================
21:26:48.0765 6536 Current date / time: 2012/11/06 21:26:48.0765
21:26:48.0765 6536 SystemInfo:
21:26:48.0765 6536
21:26:48.0765 6536 OS Version: 6.1.7601 ServicePack: 1.0
21:26:48.0765 6536 Product type: Workstation
21:26:48.0765 6536 ComputerName: BOBBI-JO-PC
21:26:48.0765 6536 UserName: Bobbi-Jo
21:26:48.0765 6536 Windows directory: C:\windows
21:26:48.0765 6536 System windows directory: C:\windows
21:26:48.0765 6536 Running under WOW64
21:26:48.0765 6536 Processor architecture: Intel x64
21:26:48.0765 6536 Number of processors: 4
21:26:48.0765 6536 Page size: 0x1000
21:26:48.0765 6536 Boot type: Normal boot
21:26:48.0765 6536 ============================================================
21:26:49.0194 6536 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:26:49.0194 6536 ============================================================
21:26:49.0194 6536 \Device\Harddisk0\DR0:
21:26:49.0194 6536 MBR partitions:
21:26:49.0194 6536 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x38ACA800
21:26:49.0194 6536 ============================================================
21:26:49.0244 6536 C: <-> \Device\Harddisk0\DR0\Partition1
21:26:49.0244 6536 ============================================================
21:26:49.0244 6536 Initialize success
21:26:49.0244 6536 ============================================================
21:28:32.0134 4056 ============================================================
21:28:32.0134 4056 Scan started
21:28:32.0134 4056 Mode: Manual; TDLFS;
21:28:32.0134 4056 ============================================================
21:28:32.0774 4056 ================ Scan system memory ========================
21:28:32.0774 4056 System memory - ok
21:28:32.0774 4056 ================ Scan services =============================
21:28:33.0084 4056 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\windows\system32\drivers\1394ohci.sys
21:28:33.0084 4056 1394ohci - ok
21:28:33.0124 4056 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\windows\system32\drivers\ACPI.sys
21:28:33.0124 4056 ACPI - ok
21:28:33.0164 4056 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys
21:28:33.0164 4056 AcpiPmi - ok
21:28:33.0314 4056 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
21:28:33.0314 4056 AdobeARMservice - ok
21:28:33.0484 4056 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
21:28:33.0484 4056 AdobeFlashPlayerUpdateSvc - ok
21:28:33.0564 4056 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\windows\system32\DRIVERS\adp94xx.sys
21:28:33.0594 4056 adp94xx - ok
21:28:33.0644 4056 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\windows\system32\DRIVERS\adpahci.sys
21:28:33.0654 4056 adpahci - ok
21:28:33.0714 4056 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\windows\system32\DRIVERS\adpu320.sys
21:28:33.0734 4056 adpu320 - ok
21:28:33.0784 4056 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\windows\System32\aelupsvc.dll
21:28:33.0784 4056 AeLookupSvc - ok
21:28:33.0854 4056 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\windows\system32\drivers\afd.sys
21:28:33.0864 4056 AFD - ok
21:28:34.0024 4056 [ 7E077309910CE334C3B2B7B8665A55C4 ] AffinegyService C:\Program Files (x86)\Belkin\Router Setup and Monitor\BelkinService.exe
21:28:34.0024 4056 AffinegyService - ok
21:28:34.0124 4056 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\windows\system32\DRIVERS\agrsm64.sys
21:28:34.0144 4056 AgereSoftModem - ok
21:28:34.0194 4056 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\windows\system32\drivers\agp440.sys
21:28:34.0194 4056 agp440 - ok
21:28:34.0234 4056 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\windows\System32\alg.exe
21:28:34.0234 4056 ALG - ok
21:28:34.0284 4056 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\windows\system32\drivers\aliide.sys
21:28:34.0284 4056 aliide - ok
21:28:34.0364 4056 [ 16D2883EA6296333435DF0C8B7D164B8 ] AMD External Events Utility C:\windows\system32\atiesrxx.exe
21:28:34.0364 4056 AMD External Events Utility - ok
21:28:34.0424 4056 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\windows\system32\drivers\amdide.sys
21:28:34.0424 4056 amdide - ok
21:28:34.0464 4056 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\windows\system32\DRIVERS\amdk8.sys
21:28:34.0464 4056 AmdK8 - ok
21:28:34.0475 4056 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\windows\system32\DRIVERS\amdppm.sys
21:28:34.0475 4056 AmdPPM - ok
21:28:34.0535 4056 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\windows\system32\drivers\amdsata.sys
21:28:34.0535 4056 amdsata - ok
21:28:34.0545 4056 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\windows\system32\DRIVERS\amdsbs.sys
21:28:34.0555 4056 amdsbs - ok
21:28:34.0575 4056 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\windows\system32\drivers\amdxata.sys
21:28:34.0575 4056 amdxata - ok
21:28:34.0665 4056 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\windows\system32\drivers\appid.sys
21:28:34.0665 4056 AppID - ok
21:28:34.0685 4056 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\windows\System32\appidsvc.dll
21:28:34.0685 4056 AppIDSvc - ok
21:28:34.0745 4056 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\windows\System32\appinfo.dll
21:28:34.0745 4056 Appinfo - ok
21:28:34.0935 4056 [ A5299D04ED225D64CF07A568A3E1BF8C ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
21:28:34.0935 4056 Apple Mobile Device - ok
21:28:34.0965 4056 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\windows\system32\DRIVERS\arc.sys
21:28:34.0965 4056 arc - ok
21:28:34.0975 4056 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\windows\system32\DRIVERS\arcsas.sys
21:28:34.0975 4056 arcsas - ok
21:28:35.0045 4056 aspnet_state - ok
21:28:35.0075 4056 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys
21:28:35.0075 4056 AsyncMac - ok
21:28:35.0125 4056 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\windows\system32\drivers\atapi.sys
21:28:35.0125 4056 atapi - ok
21:28:35.0295 4056 [ C9F90FEE4FDC829382B9130A92FB744C ] atikmdag C:\windows\system32\DRIVERS\atikmdag.sys
21:28:35.0445 4056 atikmdag - ok
21:28:35.0495 4056 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll
21:28:35.0505 4056 AudioEndpointBuilder - ok
21:28:35.0525 4056 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\windows\System32\Audiosrv.dll
21:28:35.0525 4056 AudioSrv - ok
21:28:35.0585 4056 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\windows\System32\AxInstSV.dll
21:28:35.0585 4056 AxInstSV - ok
21:28:35.0635 4056 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\windows\system32\DRIVERS\bxvbda.sys
21:28:35.0645 4056 b06bdrv - ok
21:28:35.0685 4056 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys
21:28:35.0685 4056 b57nd60a - ok
21:28:35.0775 4056 [ 6163664C7E9CD110AF70180C126C3FDC ] BcmSqlStartupSvc C:\Program Files (x86)\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
21:28:35.0785 4056 BcmSqlStartupSvc - ok
21:28:35.0805 4056 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\windows\System32\bdesvc.dll
21:28:35.0805 4056 BDESVC - ok
21:28:35.0855 4056 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\windows\system32\drivers\Beep.sys
21:28:35.0855 4056 Beep - ok
21:28:35.0925 4056 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\windows\System32\bfe.dll
21:28:35.0935 4056 BFE - ok
21:28:36.0155 4056 [ 652F4D186325B69FFE80EE18AE9ACC77 ] BHDrvx64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.1.2\Definitions\BASHDefs\20121030.002\BHDrvx64.sys
21:28:36.0175 4056 BHDrvx64 - ok
21:28:36.0245 4056 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\windows\System32\qmgr.dll
21:28:36.0255 4056 BITS - ok
21:28:36.0295 4056 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys
21:28:36.0295 4056 blbdrive - ok
21:28:36.0385 4056 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
21:28:36.0385 4056 Bonjour Service - ok
21:28:36.0425 4056 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\windows\system32\DRIVERS\bowser.sys
21:28:36.0435 4056 bowser - ok
21:28:36.0465 4056 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\windows\system32\DRIVERS\BrFiltLo.sys
21:28:36.0465 4056 BrFiltLo - ok
21:28:36.0485 4056 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\windows\system32\DRIVERS\BrFiltUp.sys
21:28:36.0486 4056 BrFiltUp - ok
21:28:36.0526 4056 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\windows\System32\browser.dll
21:28:36.0526 4056 Browser - ok
21:28:36.0556 4056 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\windows\System32\Drivers\Brserid.sys
21:28:36.0566 4056 Brserid - ok
21:28:36.0566 4056 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys
21:28:36.0566 4056 BrSerWdm - ok
21:28:36.0596 4056 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys
21:28:36.0596 4056 BrUsbMdm - ok
21:28:36.0596 4056 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys
21:28:36.0596 4056 BrUsbSer - ok
21:28:36.0606 4056 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\windows\system32\DRIVERS\bthmodem.sys
21:28:36.0606 4056 BTHMODEM - ok
21:28:36.0636 4056 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\windows\system32\bthserv.dll
21:28:36.0636 4056 bthserv - ok
21:28:36.0696 4056 [ 9887CA12F407D7FBC7F48F3678F5F0B6 ] BVRPMPR5a64 C:\windows\system32\drivers\BVRPMPR5a64.SYS
21:28:36.0696 4056 BVRPMPR5a64 - ok
21:28:36.0736 4056 [ D1787E11C6A0078DDEAF8CF3EE2AB293 ] CAXHWAZL C:\windows\system32\DRIVERS\CAXHWAZL.sys
21:28:36.0746 4056 CAXHWAZL - ok
21:28:36.0806 4056 [ A5C13600F63EB92F8D15123D64BA9895 ] ccSet_MCLIENT C:\windows\system32\drivers\MCLIENTx64\0301000.018\ccSetx64.sys
21:28:36.0816 4056 ccSet_MCLIENT - ok
21:28:36.0936 4056 [ 248C952C82DF1E23775432774CBB20F1 ] ccSet_NIS C:\windows\system32\drivers\NISx64\1402000.013\ccSetx64.sys
21:28:36.0946 4056 ccSet_NIS - ok
21:28:36.0996 4056 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\windows\system32\DRIVERS\cdfs.sys
21:28:36.0996 4056 cdfs - ok
21:28:37.0046 4056 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\windows\system32\drivers\cdrom.sys
21:28:37.0046 4056 cdrom - ok
21:28:37.0096 4056 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\windows\System32\certprop.dll
21:28:37.0096 4056 CertPropSvc - ok
21:28:37.0196 4056 [ ADBDC69A0C25361870A1AC009D29F960 ] cfWiMAXService C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
21:28:37.0196 4056 cfWiMAXService - ok
21:28:37.0236 4056 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\windows\system32\DRIVERS\circlass.sys
21:28:37.0246 4056 circlass - ok
21:28:37.0276 4056 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\windows\system32\CLFS.sys
21:28:37.0286 4056 CLFS - ok
21:28:37.0326 4056 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:28:37.0336 4056 clr_optimization_v2.0.50727_32 - ok
21:28:37.0386 4056 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:28:37.0386 4056 clr_optimization_v2.0.50727_64 - ok
21:28:37.0446 4056 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:28:37.0446 4056 clr_optimization_v4.0.30319_32 - ok
21:28:37.0476 4056 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
21:28:37.0476 4056 clr_optimization_v4.0.30319_64 - ok
21:28:37.0516 4056 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys
21:28:37.0516 4056 CmBatt - ok
21:28:37.0536 4056 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\windows\system32\drivers\cmdide.sys
21:28:37.0536 4056 cmdide - ok
21:28:37.0576 4056 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\windows\system32\Drivers\cng.sys
21:28:37.0586 4056 CNG - ok
21:28:37.0626 4056 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys
21:28:37.0626 4056 Compbatt - ok
21:28:37.0676 4056 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\windows\system32\drivers\CompositeBus.sys
21:28:37.0686 4056 CompositeBus - ok
21:28:37.0696 4056 COMSysApp - ok
21:28:37.0736 4056 [ CAB0EEAF5295FC96DDD3E19DCE27E131 ] ConfigFree Service C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
21:28:37.0736 4056 ConfigFree Service - ok
21:28:37.0756 4056 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\windows\system32\DRIVERS\crcdisk.sys
21:28:37.0756 4056 crcdisk - ok
21:28:37.0826 4056 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\windows\system32\cryptsvc.dll
21:28:37.0826 4056 CryptSvc - ok
21:28:37.0966 4056 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
21:28:37.0966 4056 cvhsvc - ok
21:28:38.0026 4056 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\windows\system32\rpcss.dll
21:28:38.0036 4056 DcomLaunch - ok
21:28:38.0076 4056 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\windows\System32\defragsvc.dll
21:28:38.0076 4056 defragsvc - ok
21:28:38.0126 4056 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\windows\system32\Drivers\dfsc.sys
21:28:38.0126 4056 DfsC - ok
21:28:38.0196 4056 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\windows\system32\dhcpcore.dll
21:28:38.0196 4056 Dhcp - ok
21:28:38.0226 4056 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\windows\system32\drivers\discache.sys
21:28:38.0226 4056 discache - ok
21:28:38.0266 4056 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\windows\system32\DRIVERS\disk.sys
21:28:38.0266 4056 Disk - ok
21:28:38.0296 4056 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\windows\System32\dnsrslvr.dll
21:28:38.0306 4056 Dnscache - ok
21:28:38.0346 4056 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\windows\System32\dot3svc.dll
21:28:38.0356 4056 dot3svc - ok
21:28:38.0386 4056 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\windows\system32\dps.dll
21:28:38.0396 4056 DPS - ok
21:28:38.0426 4056 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\windows\system32\drivers\drmkaud.sys
21:28:38.0426 4056 drmkaud - ok
21:28:38.0486 4056 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys
21:28:38.0506 4056 DXGKrnl - ok
21:28:38.0546 4056 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\windows\System32\eapsvc.dll
21:28:38.0546 4056 EapHost - ok
21:28:38.0656 4056 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\windows\system32\DRIVERS\evbda.sys
21:28:38.0736 4056 ebdrv - ok
21:28:38.0816 4056 [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
21:28:38.0826 4056 eeCtrl - ok
21:28:38.0876 4056 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\windows\System32\lsass.exe
21:28:38.0876 4056 EFS - ok
21:28:38.0946 4056 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\windows\ehome\ehRecvr.exe
21:28:38.0956 4056 ehRecvr - ok
21:28:38.0986 4056 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\windows\ehome\ehsched.exe
21:28:38.0986 4056 ehSched - ok
21:28:39.0036 4056 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\windows\system32\DRIVERS\elxstor.sys
21:28:39.0036 4056 elxstor - ok
21:28:39.0126 4056 [ C5BCCB378D0A896304A3E71BE7215983 ] EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
21:28:39.0126 4056 EraserUtilRebootDrv - ok
21:28:39.0166 4056 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\windows\system32\drivers\errdev.sys
21:28:39.0166 4056 ErrDev - ok
21:28:39.0216 4056 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\windows\system32\es.dll
21:28:39.0226 4056 EventSystem - ok
21:28:39.0246 4056 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\windows\system32\drivers\exfat.sys
21:28:39.0246 4056 exfat - ok
21:28:39.0276 4056 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\windows\system32\drivers\fastfat.sys
21:28:39.0286 4056 fastfat - ok
21:28:39.0346 4056 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\windows\system32\fxssvc.exe
21:28:39.0356 4056 Fax - ok
21:28:39.0376 4056 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\windows\system32\DRIVERS\fdc.sys
21:28:39.0376 4056 fdc - ok
21:28:39.0416 4056 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\windows\system32\fdPHost.dll
21:28:39.0416 4056 fdPHost - ok
21:28:39.0436 4056 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\windows\system32\fdrespub.dll
21:28:39.0446 4056 FDResPub - ok
21:28:39.0476 4056 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\windows\system32\drivers\fileinfo.sys
21:28:39.0476 4056 FileInfo - ok
21:28:39.0486 4056 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\windows\system32\drivers\filetrace.sys
21:28:39.0486 4056 Filetrace - ok
21:28:39.0506 4056 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\windows\system32\DRIVERS\flpydisk.sys
21:28:39.0506 4056 flpydisk - ok
21:28:39.0566 4056 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\windows\system32\drivers\fltmgr.sys
21:28:39.0576 4056 FltMgr - ok
21:28:39.0666 4056 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\windows\system32\FntCache.dll
21:28:39.0676 4056 FontCache - ok
21:28:39.0746 4056 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:28:39.0746 4056 FontCache3.0.0.0 - ok
21:28:39.0776 4056 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\windows\system32\drivers\FsDepends.sys
21:28:39.0776 4056 FsDepends - ok
21:28:39.0816 4056 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys
21:28:39.0816 4056 Fs_Rec - ok
21:28:39.0856 4056 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\windows\system32\DRIVERS\fvevol.sys
21:28:39.0866 4056 fvevol - ok
21:28:39.0906 4056 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\windows\system32\DRIVERS\gagp30kx.sys
21:28:39.0906 4056 gagp30kx - ok
21:28:40.0016 4056 [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
21:28:40.0016 4056 GamesAppService - ok
21:28:40.0056 4056 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\windows\system32\DRIVERS\GEARAspiWDM.sys
21:28:40.0066 4056 GEARAspiWDM - ok
21:28:40.0116 4056 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\windows\System32\gpsvc.dll
21:28:40.0126 4056 gpsvc - ok
21:28:40.0216 4056 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:28:40.0216 4056 gupdate - ok
21:28:40.0246 4056 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:28:40.0246 4056 gupdatem - ok
21:28:40.0286 4056 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
21:28:40.0286 4056 gusvc - ok
21:28:40.0316 4056 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys
21:28:40.0326 4056 hcw85cir - ok
21:28:40.0366 4056 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys
21:28:40.0376 4056 HdAudAddService - ok
21:28:40.0406 4056 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\windows\system32\drivers\HDAudBus.sys
21:28:40.0406 4056 HDAudBus - ok
21:28:40.0446 4056 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\windows\system32\DRIVERS\HECIx64.sys
21:28:40.0446 4056 HECIx64 - ok
21:28:40.0476 4056 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\windows\system32\DRIVERS\HidBatt.sys
21:28:40.0476 4056 HidBatt - ok
21:28:40.0486 4056 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\windows\system32\DRIVERS\hidbth.sys
21:28:40.0486 4056 HidBth - ok
21:28:40.0506 4056 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\windows\system32\DRIVERS\hidir.sys
21:28:40.0506 4056 HidIr - ok
21:28:40.0536 4056 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\windows\system32\hidserv.dll
21:28:40.0546 4056 hidserv - ok
21:28:40.0596 4056 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\windows\system32\drivers\hidusb.sys
21:28:40.0606 4056 HidUsb - ok
21:28:40.0676 4056 [ C94251B493ECC0A88DF7A864CE8DD4D4 ] HitmanProScheduler C:\Program Files\HitmanPro\hmpsched.exe
21:28:40.0676 4056 HitmanProScheduler - ok
21:28:40.0736 4056 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\windows\system32\kmsvc.dll
21:28:40.0736 4056 hkmsvc - ok
21:28:40.0786 4056 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\windows\system32\ListSvc.dll
21:28:40.0786 4056 HomeGroupListener - ok
21:28:40.0826 4056 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\windows\system32\provsvc.dll
21:28:40.0836 4056 HomeGroupProvider - ok
21:28:40.0876 4056 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys
21:28:40.0876 4056 HpSAMD - ok
21:28:40.0986 4056 [ 447256D1C026654C5CD3CC17E7B20631 ] HsfXAudioService C:\windows\SysWOW64\XAudio64.dll
21:28:40.0996 4056 HsfXAudioService - ok
21:28:41.0036 4056 [ 26C5D00321937E49B6BC91029947D094 ] HSF_DPV C:\windows\system32\DRIVERS\CAX_DPV.sys
21:28:41.0056 4056 HSF_DPV - ok
21:28:41.0106 4056 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\windows\system32\drivers\HTTP.sys
21:28:41.0116 4056 HTTP - ok
21:28:41.0166 4056 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys
21:28:41.0166 4056 hwpolicy - ok
21:28:41.0216 4056 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\windows\system32\drivers\i8042prt.sys
21:28:41.0226 4056 i8042prt - ok
21:28:41.0256 4056 [ 631FA8935163B01FC0C02966CB3ADB92 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys
21:28:41.0256 4056 iaStor - ok
21:28:41.0326 4056 [ 7493EA4DE41348F7D3EDBF9DB298F56A ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
21:28:41.0326 4056 IAStorDataMgrSvc - ok
21:28:41.0376 4056 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\windows\system32\drivers\iaStorV.sys
21:28:41.0386 4056 iaStorV - ok
21:28:41.0468 4056 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:28:41.0484 4056 idsvc - ok
21:28:41.0694 4056 [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.1.2\Definitions\IPSDefs\20121103.001\IDSvia64.sys
21:28:41.0704 4056 IDSVia64 - ok
21:28:41.0744 4056 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\windows\system32\DRIVERS\iirsp.sys
21:28:41.0744 4056 iirsp - ok
21:28:41.0804 4056 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\windows\System32\ikeext.dll
21:28:41.0824 4056 IKEEXT - ok
21:28:41.0854 4056 [ 36FDF367A1DABFF903E2214023D71368 ] Impcd C:\windows\system32\DRIVERS\Impcd.sys
21:28:41.0854 4056 Impcd - ok
21:28:41.0944 4056 [ 59B0BBA422F04467E8C89B7CE6AE95E1 ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHD64.sys
21:28:41.0974 4056 IntcAzAudAddService - ok
21:28:42.0014 4056 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\windows\system32\drivers\intelide.sys
21:28:42.0014 4056 intelide - ok
21:28:42.0054 4056 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys
21:28:42.0054 4056 intelppm - ok
21:28:42.0094 4056 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\windows\system32\ipbusenum.dll
21:28:42.0094 4056 IPBusEnum - ok
21:28:42.0134 4056 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys
21:28:42.0134 4056 IpFilterDriver - ok
21:28:42.0174 4056 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\windows\System32\iphlpsvc.dll
21:28:42.0184 4056 iphlpsvc - ok
21:28:42.0224 4056 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys
21:28:42.0224 4056 IPMIDRV - ok
21:28:42.0254 4056 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\windows\system32\drivers\ipnat.sys
21:28:42.0254 4056 IPNAT - ok
21:28:42.0334 4056 [ 6E50CFA46527B39015B750AAD161C5CC ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
21:28:42.0344 4056 iPod Service - ok
21:28:42.0384 4056 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\windows\system32\drivers\irenum.sys
21:28:42.0384 4056 IRENUM - ok
21:28:42.0424 4056 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\windows\system32\drivers\isapnp.sys
21:28:42.0424 4056 isapnp - ok
21:28:42.0444 4056 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys
21:28:42.0454 4056 iScsiPrt - ok
21:28:42.0494 4056 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\windows\system32\drivers\kbdclass.sys
21:28:42.0494 4056 kbdclass - ok
21:28:42.0504 4056 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\windows\system32\drivers\kbdhid.sys
21:28:42.0504 4056 kbdhid - ok
21:28:42.0534 4056 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\windows\system32\lsass.exe
21:28:42.0534 4056 KeyIso - ok
21:28:42.0574 4056 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys
21:28:42.0574 4056 KSecDD - ok
21:28:42.0594 4056 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys
21:28:42.0594 4056 KSecPkg - ok
21:28:42.0624 4056 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\windows\system32\drivers\ksthunk.sys
21:28:42.0624 4056 ksthunk - ok
21:28:42.0664 4056 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\windows\system32\msdtckrm.dll
21:28:42.0674 4056 KtmRm - ok
21:28:42.0714 4056 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\windows\system32\srvsvc.dll
21:28:42.0724 4056 LanmanServer - ok
21:28:42.0764 4056 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\windows\System32\wkssvc.dll
21:28:42.0764 4056 LanmanWorkstation - ok
21:28:42.0814 4056 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\windows\system32\DRIVERS\lltdio.sys
21:28:42.0824 4056 lltdio - ok
21:28:42.0854 4056 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\windows\System32\lltdsvc.dll
21:28:42.0864 4056 lltdsvc - ok
21:28:42.0884 4056 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\windows\System32\lmhsvc.dll
21:28:42.0884 4056 lmhosts - ok
21:28:42.0934 4056 [ A1C148801B4AF64847AEB9F3AD9594EF ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
21:28:42.0944 4056 LMS - ok
21:28:42.0984 4056 [ 41E122F6D1448C94CC05196BC41D6BFB ] LPCFilter C:\windows\system32\DRIVERS\LPCFilter.sys
21:28:42.0984 4056 LPCFilter - ok
21:28:43.0014 4056 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\windows\system32\DRIVERS\lsi_fc.sys
21:28:43.0014 4056 LSI_FC - ok
21:28:43.0044 4056 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\windows\system32\DRIVERS\lsi_sas.sys
21:28:43.0044 4056 LSI_SAS - ok
21:28:43.0054 4056 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\windows\system32\DRIVERS\lsi_sas2.sys
21:28:43.0054 4056 LSI_SAS2 - ok
21:28:43.0064 4056 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\windows\system32\DRIVERS\lsi_scsi.sys
21:28:43.0064 4056 LSI_SCSI - ok
21:28:43.0074 4056 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\windows\system32\drivers\luafv.sys
21:28:43.0084 4056 luafv - ok
21:28:43.0164 4056 [ 8D11DA92F83D8C8281689739BEF05FD5 ] MCLIENT C:\Program Files (x86)\Norton Management\Engine\3.1.0.24\ccSvcHst.exe
21:28:43.0174 4056 MCLIENT - ok
21:28:43.0204 4056 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll
21:28:43.0214 4056 Mcx2Svc - ok
21:28:43.0244 4056 [ E4F44EC214B3E381E1FC844A02926666 ] mdmxsdk C:\windows\system32\DRIVERS\mdmxsdk.sys
21:28:43.0244 4056 mdmxsdk - ok
21:28:43.0274 4056 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\windows\system32\DRIVERS\megasas.sys
21:28:43.0274 4056 megasas - ok
21:28:43.0294 4056 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\windows\system32\DRIVERS\MegaSR.sys
21:28:43.0294 4056 MegaSR - ok
21:28:43.0344 4056 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\windows\system32\mmcss.dll
21:28:43.0344 4056 MMCSS - ok
21:28:43.0374 4056 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\windows\system32\drivers\modem.sys
21:28:43.0374 4056 Modem - ok
21:28:43.0414 4056 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\windows\system32\DRIVERS\monitor.sys
21:28:43.0414 4056 monitor - ok
21:28:43.0444 4056 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\windows\system32\drivers\mouclass.sys
21:28:43.0444 4056 mouclass - ok
21:28:43.0484 4056 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys
21:28:43.0484 4056 mouhid - ok
21:28:43.0529 4056 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\windows\system32\drivers\mountmgr.sys
21:28:43.0529 4056 mountmgr - ok
21:28:43.0561 4056 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\windows\system32\drivers\mpio.sys
21:28:43.0561 4056 mpio - ok
21:28:43.0592 4056 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys
21:28:43.0607 4056 mpsdrv - ok
21:28:43.0670 4056 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\windows\system32\mpssvc.dll
21:28:43.0670 4056 MpsSvc - ok
21:28:43.0717 4056 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\windows\system32\drivers\mrxdav.sys
21:28:43.0717 4056 MRxDAV - ok
21:28:43.0748 4056 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys
21:28:43.0763 4056 mrxsmb - ok
21:28:43.0779 4056 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys
21:28:43.0779 4056 mrxsmb10 - ok
21:28:43.0795 4056 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys
21:28:43.0795 4056 mrxsmb20 - ok
21:28:43.0826 4056 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\windows\system32\drivers\msahci.sys
21:28:43.0826 4056 msahci - ok
21:28:43.0857 4056 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\windows\system32\drivers\msdsm.sys
21:28:43.0857 4056 msdsm - ok
21:28:43.0873 4056 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\windows\System32\msdtc.exe
21:28:43.0888 4056 MSDTC - ok
21:28:43.0924 4056 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\windows\system32\drivers\Msfs.sys
21:28:43.0924 4056 Msfs - ok
21:28:43.0954 4056 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys
21:28:43.0954 4056 mshidkmdf - ok
21:28:43.0994 4056 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\windows\system32\drivers\msisadrv.sys
21:28:43.0994 4056 msisadrv - ok
21:28:44.0024 4056 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\windows\system32\iscsiexe.dll
21:28:44.0034 4056 MSiSCSI - ok
21:28:44.0034 4056 msiserver - ok
21:28:44.0084 4056 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys
21:28:44.0084 4056 MSKSSRV - ok
21:28:44.0094 4056 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys
21:28:44.0094 4056 MSPCLOCK - ok
21:28:44.0114 4056 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\windows\system32\drivers\MSPQM.sys
21:28:44.0114 4056 MSPQM - ok
21:28:44.0154 4056 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\windows\system32\drivers\MsRPC.sys
21:28:44.0164 4056 MsRPC - ok
21:28:44.0194 4056 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\windows\system32\drivers\mssmbios.sys
21:28:44.0204 4056 mssmbios - ok
21:28:44.0254 4056 MSSQL$MSSMLBIZ - ok
21:28:44.0304 4056 MSSQL$SQLEXPRESS - ok
21:28:44.0354 4056 [ 1D89EB4E2A99CABD4E81225F4F4C4B25 ] MSSQLServerADHelper c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe
21:28:44.0354 4056 MSSQLServerADHelper - ok
21:28:44.0404 4056 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\windows\system32\drivers\MSTEE.sys
21:28:44.0404 4056 MSTEE - ok
21:28:44.0404 4056 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\windows\system32\DRIVERS\MTConfig.sys
21:28:44.0404 4056 MTConfig - ok
21:28:44.0434 4056 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\windows\system32\Drivers\mup.sys
21:28:44.0444 4056 Mup - ok
21:28:44.0494 4056 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\windows\system32\qagentRT.dll
21:28:44.0494 4056 napagent - ok
21:28:44.0554 4056 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys
21:28:44.0564 4056 NativeWifiP - ok
21:28:44.0654 4056 [ C58D8A669D6551F616D90244BD2C2D4F ] NAVENG C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.1.2\Definitions\VirusDefs\20121105.023\ENG64.SYS
21:28:44.0654 4056 NAVENG - ok
21:28:44.0744 4056 [ A3DBDB412ADFA5882DD6843B11FE0828 ] NAVEX15 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.1.2\Definitions\VirusDefs\20121105.023\EX64.SYS
21:28:44.0764 4056 NAVEX15 - ok
21:28:44.0834 4056 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\windows\system32\drivers\ndis.sys
21:28:44.0854 4056 NDIS - ok
21:28:44.0884 4056 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys
21:28:44.0884 4056 NdisCap - ok
21:28:44.0904 4056 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys
21:28:44.0914 4056 NdisTapi - ok
21:28:44.0944 4056 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys
21:28:44.0944 4056 Ndisuio - ok
21:28:44.0994 4056 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys
21:28:44.0994 4056 NdisWan - ok
21:28:45.0034 4056 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\windows\system32\drivers\NDProxy.sys
21:28:45.0034 4056 NDProxy - ok
21:28:45.0074 4056 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys
21:28:45.0074 4056 NetBIOS - ok
21:28:45.0114 4056 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\windows\system32\DRIVERS\netbt.sys
21:28:45.0124 4056 NetBT - ok
21:28:45.0134 4056 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\windows\system32\lsass.exe
21:28:45.0134 4056 Netlogon - ok
21:28:45.0174 4056 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\windows\System32\netman.dll
21:28:45.0184 4056 Netman - ok
21:28:45.0194 4056 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\windows\System32\netprofm.dll
21:28:45.0204 4056 netprofm - ok
21:28:45.0244 4056 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:28:45.0244 4056 NetTcpPortSharing - ok
21:28:45.0294 4056 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\windows\system32\DRIVERS\nfrd960.sys
21:28:45.0294 4056 nfrd960 - ok
21:28:45.0524 4056 [ 4A9258B9597A31DB68EC9740F3A8A70B ] NIS C:\Program Files (x86)\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe
21:28:45.0524 4056 NIS - ok
21:28:45.0584 4056 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\windows\System32\nlasvc.dll
21:28:45.0594 4056 NlaSvc - ok
21:28:45.0614 4056 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\windows\system32\drivers\Npfs.sys
21:28:45.0614 4056 Npfs - ok
21:28:45.0644 4056 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\windows\system32\nsisvc.dll
21:28:45.0654 4056 nsi - ok
21:28:45.0664 4056 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys
21:28:45.0664 4056 nsiproxy - ok
21:28:45.0764 4056 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\windows\system32\drivers\Ntfs.sys
21:28:45.0794 4056 Ntfs - ok
21:28:45.0834 4056 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\windows\system32\drivers\Null.sys
21:28:45.0834 4056 Null - ok
21:28:45.0884 4056 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\windows\system32\drivers\nvraid.sys
21:28:45.0884 4056 nvraid - ok
21:28:45.0924 4056 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\windows\system32\drivers\nvstor.sys
21:28:45.0934 4056 nvstor - ok
21:28:45.0964 4056 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\windows\system32\drivers\nv_agp.sys
21:28:45.0974 4056 nv_agp - ok
21:28:45.0994 4056 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys
21:28:45.0994 4056 ohci1394 - ok
21:28:46.0094 4056 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:28:46.0094 4056 ose - ok
21:28:46.0294 4056 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
21:28:46.0394 4056 osppsvc - ok
21:28:46.0434 4056 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\windows\system32\pnrpsvc.dll
21:28:46.0434 4056 p2pimsvc - ok
21:28:46.0454 4056 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\windows\system32\p2psvc.dll
21:28:46.0464 4056 p2psvc - ok
21:28:46.0494 4056 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\windows\system32\DRIVERS\parport.sys
21:28:46.0494 4056 Parport - ok
21:28:46.0534 4056 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\windows\system32\drivers\partmgr.sys
21:28:46.0534 4056 partmgr - ok
21:28:46.0574 4056 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\windows\System32\pcasvc.dll
21:28:46.0574 4056 PcaSvc - ok
21:28:46.0604 4056 pccsmcfd - ok
21:28:46.0624 4056 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\windows\system32\drivers\pci.sys
21:28:46.0624 4056 pci - ok
21:28:46.0664 4056 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\windows\system32\drivers\pciide.sys
21:28:46.0664 4056 pciide - ok
21:28:46.0704 4056 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\windows\system32\DRIVERS\pcmcia.sys
21:28:46.0704 4056 pcmcia - ok
21:28:46.0724 4056 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\windows\system32\drivers\pcw.sys
21:28:46.0734 4056 pcw - ok
21:28:46.0764 4056 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\windows\system32\drivers\peauth.sys
21:28:46.0774 4056 PEAUTH - ok
21:28:46.0864 4056 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\windows\SysWow64\perfhost.exe
21:28:46.0864 4056 PerfHost - ok
21:28:46.0914 4056 [ 663962900E7FEA522126BA287715BB4A ] PGEffect C:\windows\system32\DRIVERS\pgeffect.sys
21:28:46.0924 4056 PGEffect - ok
21:28:46.0984 4056 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\windows\system32\pla.dll
21:28:47.0004 4056 pla - ok
21:28:47.0054 4056 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\windows\system32\umpnpmgr.dll
21:28:47.0064 4056 PlugPlay - ok
21:28:47.0074 4056 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll
21:28:47.0074 4056 PNRPAutoReg - ok
21:28:47.0104 4056 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\windows\system32\pnrpsvc.dll
21:28:47.0104 4056 PNRPsvc - ok
21:28:47.0144 4056 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\windows\System32\ipsecsvc.dll
21:28:47.0154 4056 PolicyAgent - ok
21:28:47.0194 4056 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\windows\system32\umpo.dll
21:28:47.0194 4056 Power - ok
21:28:47.0244 4056 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys
21:28:47.0254 4056 PptpMiniport - ok
21:28:47.0274 4056 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\windows\system32\DRIVERS\processr.sys
21:28:47.0274 4056 Processor - ok
21:28:47.0334 4056 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\windows\system32\profsvc.dll
21:28:47.0344 4056 ProfSvc - ok
21:28:47.0354 4056 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\windows\system32\lsass.exe
21:28:47.0354 4056 ProtectedStorage - ok
21:28:47.0404 4056 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\windows\system32\DRIVERS\pacer.sys
21:28:47.0404 4056 Psched - ok
21:28:47.0454 4056 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\windows\system32\DRIVERS\ql2300.sys
21:28:47.0474 4056 ql2300 - ok
21:28:47.0505 4056 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\windows\system32\DRIVERS\ql40xx.sys
21:28:47.0515 4056 ql40xx - ok
21:28:47.0545 4056 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\windows\system32\qwave.dll
21:28:47.0545 4056 QWAVE - ok
21:28:47.0565 4056 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys
21:28:47.0565 4056 QWAVEdrv - ok
21:28:47.0655 4056 [ A55E7D0D873B2C97585B3B5926AC6ADE ] RapiMgr C:\windows\WindowsMobile\rapimgr.dll
21:28:47.0655 4056 RapiMgr - ok
21:28:47.0695 4056 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys
21:28:47.0695 4056 RasAcd - ok
21:28:47.0745 4056 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys
21:28:47.0745 4056 RasAgileVpn - ok
21:28:47.0775 4056 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\windows\System32\rasauto.dll
21:28:47.0775 4056 RasAuto - ok
21:28:47.0815 4056 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys
21:28:47.0815 4056 Rasl2tp - ok
21:28:47.0865 4056 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\windows\System32\rasmans.dll
21:28:47.0875 4056 RasMan - ok
21:28:47.0905 4056 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys
21:28:47.0915 4056 RasPppoe - ok
21:28:47.0935 4056 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys
21:28:47.0935 4056 RasSstp - ok
21:28:47.0965 4056 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\windows\system32\DRIVERS\rdbss.sys
21:28:47.0965 4056 rdbss - ok
21:28:47.0995 4056 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\windows\system32\DRIVERS\rdpbus.sys
21:28:47.0995 4056 rdpbus - ok
21:28:48.0015 4056 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys
21:28:48.0015 4056 RDPCDD - ok
21:28:48.0035 4056 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys
21:28:48.0035 4056 RDPENCDD - ok
21:28:48.0045 4056 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys
21:28:48.0045 4056 RDPREFMP - ok
21:28:48.0085 4056 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\windows\system32\drivers\RDPWD.sys
21:28:48.0095 4056 RDPWD - ok
21:28:48.0135 4056 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\windows\system32\drivers\rdyboost.sys
21:28:48.0145 4056 rdyboost - ok
21:28:48.0165 4056 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\windows\System32\mprdim.dll
21:28:48.0175 4056 RemoteAccess - ok
21:28:48.0215 4056 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\windows\system32\regsvc.dll
21:28:48.0215 4056 RemoteRegistry - ok
21:28:48.0245 4056 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\windows\System32\RpcEpMap.dll
21:28:48.0245 4056 RpcEptMapper - ok
21:28:48.0275 4056 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\windows\system32\locator.exe
21:28:48.0285 4056 RpcLocator - ok
21:28:48.0325 4056 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\windows\system32\rpcss.dll
21:28:48.0325 4056 RpcSs - ok
21:28:48.0385 4056 RSELSVC - ok
21:28:48.0415 4056 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\windows\system32\DRIVERS\rspndr.sys
21:28:48.0425 4056 rspndr - ok
21:28:48.0455 4056 RSUSBSTOR - ok
21:28:48.0495 4056 [ 483C537E69FA97C77F7FE0E2E1C1F102 ] RTHDMIAzAudService C:\windows\system32\drivers\RtHDMIVX.sys
21:28:48.0495 4056 RTHDMIAzAudService - ok
21:28:48.0545 4056 [ 365ED58B47B46DE8B1C5FA759B6FCD6E ] RTL8167 C:\windows\system32\DRIVERS\Rt64win7.sys
21:28:48.0545 4056 RTL8167 - ok
21:28:48.0605 4056 [ 7475548B0BA58EBA4D12414FC9E9DFE6 ] rtl8192se C:\windows\system32\DRIVERS\rtl8192se.sys
21:28:48.0625 4056 rtl8192se - ok
21:28:48.0635 4056 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\windows\system32\lsass.exe
21:28:48.0635 4056 SamSs - ok
21:28:48.0675 4056 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\windows\system32\drivers\sbp2port.sys
21:28:48.0675 4056 sbp2port - ok
21:28:48.0715 4056 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\windows\System32\SCardSvr.dll
21:28:48.0715 4056 SCardSvr - ok
21:28:48.0755 4056 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\windows\system32\DRIVERS\scfilter.sys
21:28:48.0755 4056 scfilter - ok
21:28:48.0815 4056 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\windows\system32\schedsvc.dll
21:28:48.0835 4056 Schedule - ok
21:28:48.0865 4056 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\windows\System32\certprop.dll
21:28:48.0865 4056 SCPolicySvc - ok
21:28:48.0905 4056 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\windows\System32\SDRSVC.dll
21:28:48.0905 4056 SDRSVC - ok
21:28:48.0955 4056 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\windows\system32\drivers\secdrv.sys
21:28:48.0955 4056 secdrv - ok
21:28:48.0995 4056 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\windows\system32\seclogon.dll
21:28:48.0995 4056 seclogon - ok
21:28:49.0025 4056 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\windows\System32\sens.dll
21:28:49.0035 4056 SENS - ok
21:28:49.0055 4056 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\windows\system32\sensrsvc.dll
21:28:49.0065 4056 SensrSvc - ok
21:28:49.0085 4056 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\windows\system32\DRIVERS\serenum.sys
21:28:49.0095 4056 Serenum - ok
21:28:49.0115 4056 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\windows\system32\DRIVERS\serial.sys
21:28:49.0125 4056 Serial - ok
21:28:49.0155 4056 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\windows\system32\DRIVERS\sermouse.sys
21:28:49.0155 4056 sermouse - ok
21:28:49.0215 4056 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\windows\system32\sessenv.dll
21:28:49.0225 4056 SessionEnv - ok
21:28:49.0255 4056 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\windows\system32\drivers\sffdisk.sys
21:28:49.0255 4056 sffdisk - ok
21:28:49.0295 4056 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys
21:28:49.0295 4056 sffp_mmc - ok
21:28:49.0325 4056 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys
21:28:49.0325 4056 sffp_sd - ok
21:28:49.0365 4056 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\windows\system32\DRIVERS\sfloppy.sys
21:28:49.0365 4056 sfloppy - ok
21:28:49.0425 4056 [ C6CC9297BD53E5229653303E556AA539 ] Sftfs C:\windows\system32\DRIVERS\Sftfslh.sys
21:28:49.0435 4056 Sftfs - ok
21:28:49.0505 4056 [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
21:28:49.0515 4056 sftlist - ok
21:28:49.0535 4056 [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay C:\windows\system32\DRIVERS\Sftplaylh.sys
21:28:49.0545 4056 Sftplay - ok
21:28:49.0575 4056 [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir C:\windows\system32\DRIVERS\Sftredirlh.sys
21:28:49.0575 4056 Sftredir - ok
21:28:49.0605 4056 [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol C:\windows\system32\DRIVERS\Sftvollh.sys
21:28:49.0605 4056 Sftvol - ok
21:28:49.0625 4056 [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
21:28:49.0625 4056 sftvsa - ok
21:28:49.0665 4056 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\windows\System32\ipnathlp.dll
21:28:49.0675 4056 SharedAccess - ok
21:28:49.0725 4056 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\windows\System32\shsvcs.dll
21:28:49.0735 4056 ShellHWDetection - ok
21:28:49.0775 4056 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\windows\system32\DRIVERS\SiSRaid2.sys
21:28:49.0775 4056 SiSRaid2 - ok
21:28:49.0785 4056 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\windows\system32\DRIVERS\sisraid4.sys
21:28:49.0785 4056 SiSRaid4 - ok
21:28:49.0855 4056 [ EA396139541706B4B433641D62EA53CE ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
21:28:49.0865 4056 SkypeUpdate - ok
21:28:49.0905 4056 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\windows\system32\DRIVERS\smb.sys
21:28:49.0905 4056 Smb - ok
21:28:49.0955 4056 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\windows\System32\snmptrap.exe
21:28:49.0955 4056 SNMPTRAP - ok
21:28:49.0975 4056 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\windows\system32\drivers\spldr.sys
21:28:49.0975 4056 spldr - ok
21:28:50.0015 4056 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\windows\System32\spoolsv.exe
21:28:50.0025 4056 Spooler - ok
21:28:50.0145 4056 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\windows\system32\sppsvc.exe
21:28:50.0195 4056 sppsvc - ok
21:28:50.0225 4056 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\windows\system32\sppuinotify.dll
21:28:50.0225 4056 sppuinotify - ok
21:28:50.0255 4056 [ 86EBD8B1F23E743AAD21F4D5B4D40985 ] SQLBrowser c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
21:28:50.0255 4056 SQLBrowser - ok
21:28:50.0325 4056 [ 3C432A96363097870995E2A3C8B66ABD ] SQLWriter c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
21:28:50.0335 4056 SQLWriter - ok
21:28:50.0465 4056 [ 3510E7021D2637A67FBCB5105EAE945D ] SRTSP C:\windows\System32\Drivers\NISx64\1402000.013\SRTSP64.SYS
21:28:50.0475 4056 SRTSP - ok
21:28:50.0515 4056 [ 1B884D876E87EABF5A3356BBD7321412 ] SRTSPX C:\windows\system32\drivers\NISx64\1402000.013\SRTSPX64.SYS
21:28:50.0515 4056 SRTSPX - ok
21:28:50.0575 4056 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\windows\system32\DRIVERS\srv.sys
21:28:50.0585 4056 srv - ok
21:28:50.0615 4056 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\windows\system32\DRIVERS\srv2.sys
21:28:50.0625 4056 srv2 - ok
21:28:50.0675 4056 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\windows\system32\DRIVERS\VSTAZL6.SYS
21:28:50.0675 4056 SrvHsfHDA - ok
21:28:50.0725 4056 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\windows\system32\DRIVERS\VSTDPV6.SYS
21:28:50.0745 4056 SrvHsfV92 - ok
21:28:50.0775 4056 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\windows\system32\DRIVERS\VSTCNXT6.SYS
21:28:50.0785 4056 SrvHsfWinac - ok
21:28:50.0825 4056 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys
21:28:50.0825 4056 srvnet - ok
21:28:50.0875 4056 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\windows\System32\ssdpsrv.dll
21:28:50.0875 4056 SSDPSRV - ok
21:28:50.0895 4056 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\windows\system32\sstpsvc.dll
21:28:50.0905 4056 SstpSvc - ok
21:28:50.0925 4056 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\windows\system32\DRIVERS\stexstor.sys
21:28:50.0935 4056 stexstor - ok
21:28:50.0985 4056 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\windows\System32\wiaservc.dll
21:28:50.0995 4056 stisvc - ok
21:28:51.0035 4056 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\windows\system32\drivers\swenum.sys
21:28:51.0045 4056 swenum - ok
21:28:51.0075 4056 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\windows\System32\swprv.dll
21:28:51.0085 4056 swprv - ok
21:28:51.0135 4056 [ 777217682DA76337E8E6EC8AC4412B9B ] SymDS C:\windows\system32\drivers\NISx64\1402000.013\SYMDS64.SYS
21:28:51.0135 4056 SymDS - ok
21:28:51.0185 4056 [ 64D1AF3D04E70A681154FFF1893848F6 ] SymEFA C:\windows\system32\drivers\NISx64\1402000.013\SYMEFA64.SYS
21:28:51.0195 4056 SymEFA - ok
21:28:51.0255 4056 [ F5D6D3B7468C46EA2DDC1D19D2A6DA0F ] SymEvent C:\windows\system32\Drivers\SYMEVENT64x86.SYS
21:28:51.0255 4056 SymEvent - ok
21:28:51.0295 4056 [ BFD99DC6C7FEB2F8B20D488FDF3A9A55 ] SymIM C:\windows\system32\DRIVERS\SymIMv.sys
21:28:51.0295 4056 SymIM - ok
21:28:51.0325 4056 [ ADF37F1A715D6C56C8E065FD8569A9A4 ] SymIRON C:\windows\system32\drivers\NISx64\1402000.013\Ironx64.SYS
21:28:51.0335 4056 SymIRON - ok
21:28:51.0375 4056 [ 1605EBD8CB86AFC4430116065995279A ] SymNetS C:\windows\System32\Drivers\NISx64\1402000.013\SYMNETS.SYS
21:28:51.0375 4056 SymNetS - ok
21:28:51.0425 4056 [ E28CA52ECF8CB6EB04B34DE440BA260E ] SynTP C:\windows\system32\DRIVERS\SynTP.sys
21:28:51.0425 4056 SynTP - ok
21:28:51.0505 4056 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\windows\system32\sysmain.dll
21:28:51.0525 4056 SysMain - ok
21:28:51.0565 4056 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\windows\System32\TabSvc.dll
21:28:51.0565 4056 TabletInputService - ok
21:28:51.0595 4056 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\windows\System32\tapisrv.dll
21:28:51.0605 4056 TapiSrv - ok
21:28:51.0635 4056 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\windows\System32\tbssvc.dll
21:28:51.0635 4056 TBS - ok
21:28:51.0715 4056 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] Tcpip C:\windows\system32\drivers\tcpip.sys
21:28:51.0735 4056 Tcpip - ok
21:28:51.0795 4056 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys
21:28:51.0815 4056 TCPIP6 - ok
21:28:51.0855 4056 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys
21:28:51.0855 4056 tcpipreg - ok
21:28:51.0885 4056 [ FD542B661BD22FA69CA789AD0AC58C29 ] tdcmdpst C:\windows\system32\DRIVERS\tdcmdpst.sys
21:28:51.0885 4056 tdcmdpst - ok
21:28:51.0915 4056 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\windows\system32\drivers\tdpipe.sys
21:28:51.0925 4056 TDPIPE - ok
21:28:51.0955 4056 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\windows\system32\drivers\tdtcp.sys
21:28:51.0955 4056 TDTCP - ok
21:28:52.0005 4056 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\windows\system32\DRIVERS\tdx.sys
21:28:52.0015 4056 tdx - ok
21:28:52.0045 4056 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\windows\system32\drivers\termdd.sys
21:28:52.0045 4056 TermDD - ok
21:28:52.0105 4056 [ 2E648163254233755035B46DD7B89123 ] TermService C:\windows\System32\termsrv.dll
21:28:52.0115 4056 TermService - ok
21:28:52.0145 4056 [ F0344071948D1A1FA732231785A0664C ] Themes C:\windows\system32\themeservice.dll
21:28:52.0145 4056 Themes - ok
21:28:52.0175 4056 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\windows\system32\mmcss.dll
21:28:52.0175 4056 THREADORDER - ok
21:28:52.0245 4056 [ 28644B0523D64EFF2FC7312A2EE74B0A ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
21:28:52.0245 4056 TMachInfo - ok
21:28:52.0285 4056 [ ED32035BDFECED1AD66D459FD9CC1140 ] TODDSrv C:\windows\system32\TODDSrv.exe
21:28:52.0285 4056 TODDSrv - ok
21:28:52.0335 4056 [ F82188FC76CFE174DC35A46E0BFC4DA7 ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
21:28:52.0335 4056 TosCoSrv - ok
21:28:52.0395 4056 [ 6938CBD31B47092B042420A5FD2E9AAE ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\TECO\TecoService.exe
21:28:52.0405 4056 TOSHIBA eco Utility Service - ok
21:28:52.0445 4056 [ 4218356616E08518E6C2CB102AC3798A ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
21:28:52.0445 4056 TOSHIBA HDD SSD Alert Service - ok
21:28:52.0485 4056 [ 09FF7B0B1B5C3D225495CB6F5A9B39F8 ] tos_sps64 C:\windows\system32\DRIVERS\tos_sps64.sys
21:28:52.0485 4056 tos_sps64 - ok
21:28:52.0545 4056 [ 35093C49DB3F24AAB5F0EBB18D6935E4 ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
21:28:52.0555 4056 TPCHSrv - ok
21:28:52.0585 4056 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\windows\System32\trkwks.dll
21:28:52.0595 4056 TrkWks - ok
21:28:52.0655 4056 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe
21:28:52.0655 4056 TrustedInstaller - ok
21:28:52.0695 4056 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys
21:28:52.0695 4056 tssecsrv - ok
21:28:52.0745 4056 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys
21:28:52.0745 4056 TsUsbFlt - ok
21:28:52.0815 4056 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys
21:28:52.0815 4056 tunnel - ok
21:28:52.0865 4056 [ 550B567F9364D8F7684C3FB3EA665A72 ] TVALZ C:\windows\system32\DRIVERS\TVALZ_O.SYS
21:28:52.0865 4056 TVALZ - ok
21:28:52.0885 4056 [ 9C7191F4B2E49BFF47A6C1144B5923FA ] TVALZFL C:\windows\system32\DRIVERS\TVALZFL.sys
21:28:52.0885 4056 TVALZFL - ok
21:28:52.0925 4056 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\windows\system32\DRIVERS\uagp35.sys
21:28:52.0925 4056 uagp35 - ok
21:28:52.0965 4056 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\windows\system32\DRIVERS\udfs.sys
21:28:52.0975 4056 udfs - ok
21:28:53.0015 4056 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\windows\system32\UI0Detect.exe
21:28:53.0015 4056 UI0Detect - ok
21:28:53.0045 4056 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys
21:28:53.0045 4056 uliagpkx - ok
21:28:53.0095 4056 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\windows\system32\DRIVERS\umbus.sys
21:28:53.0095 4056 umbus - ok
21:28:53.0125 4056 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\windows\system32\DRIVERS\umpass.sys
21:28:53.0125 4056 UmPass - ok
21:28:53.0245 4056 [ 41118D920B2B268C0ADC36421248CDCF ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
21:28:53.0275 4056 UNS - ok
21:28:53.0315 4056 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\windows\System32\upnphost.dll
21:28:53.0315 4056 upnphost - ok
21:28:53.0355 4056 [ AF1B9474D67897D0C2CFF58E0ACEACCC ] USBAAPL64 C:\windows\system32\Drivers\usbaapl64.sys
21:28:53.0355 4056 USBAAPL64 - ok
21:28:53.0395 4056 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys
21:28:53.0395 4056 usbccgp - ok
21:28:53.0435 4056 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\windows\system32\drivers\usbcir.sys
21:28:53.0445 4056 usbcir - ok
21:28:53.0475 4056 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\windows\system32\drivers\usbehci.sys
21:28:53.0475 4056 usbehci - ok
21:28:53.0525 4056 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys
21:28:53.0535 4056 usbhub - ok
21:28:53.0565 4056 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\windows\system32\drivers\usbohci.sys
21:28:53.0565 4056 usbohci - ok
21:28:53.0595 4056 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\windows\system32\DRIVERS\usbprint.sys
21:28:53.0595 4056 usbprint - ok
21:28:53.0635 4056 [ AAA2513C8AED8B54B189FD0C6B1634C0 ] usbscan C:\windows\system32\DRIVERS\usbscan.sys
21:28:53.0645 4056 usbscan - ok
21:28:53.0685 4056 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS
21:28:53.0685 4056 USBSTOR - ok
21:28:53.0735 4056 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\windows\system32\drivers\usbuhci.sys
21:28:53.0735 4056 usbuhci - ok
21:28:53.0795 4056 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys
21:28:53.0795 4056 usbvideo - ok
21:28:53.0825 4056 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\windows\System32\uxsms.dll
21:28:53.0825 4056 UxSms - ok
21:28:53.0855 4056 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\windows\system32\lsass.exe
21:28:53.0855 4056 VaultSvc - ok
21:28:53.0885 4056 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys
21:28:53.0885 4056 vdrvroot - ok
21:28:53.0926 4056 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\windows\System32\vds.exe
21:28:53.0942 4056 vds - ok
21:28:53.0973 4056 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\windows\system32\DRIVERS\vgapnp.sys
21:28:53.0988 4056 vga - ok
21:28:54.0004 4056 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\windows\System32\drivers\vga.sys
21:28:54.0004 4056 VgaSave - ok
21:28:54.0051 4056 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\windows\system32\drivers\vhdmp.sys
21:28:54.0051 4056 vhdmp - ok
21:28:54.0066 4056 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\windows\system32\drivers\viaide.sys
21:28:54.0066 4056 viaide - ok
21:28:54.0098 4056 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\windows\system32\drivers\volmgr.sys
21:28:54.0098 4056 volmgr - ok
21:28:54.0129 4056 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\windows\system32\drivers\volmgrx.sys
21:28:54.0144 4056 volmgrx - ok
21:28:54.0176 4056 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\windows\system32\drivers\volsnap.sys
21:28:54.0191 4056 volsnap - ok
21:28:54.0238 4056 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\windows\system32\DRIVERS\vsmraid.sys
21:28:54.0238 4056 vsmraid - ok
21:28:54.0316 4056 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\windows\system32\vssvc.exe
21:28:54.0332 4056 VSS - ok
21:28:54.0347 4056 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys
21:28:54.0347 4056 vwifibus - ok
21:28:54.0363 4056 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys
21:28:54.0363 4056 vwififlt - ok
21:28:54.0425 4056 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys
21:28:54.0425 4056 vwifimp - ok
21:28:54.0456 4056 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\windows\system32\w32time.dll
21:28:54.0456 4056 W32Time - ok
21:28:54.0488 4056 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\windows\system32\DRIVERS\wacompen.sys
21:28:54.0488 4056 WacomPen - ok
21:28:54.0550 4056 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\windows\system32\DRIVERS\wanarp.sys
21:28:54.0550 4056 WANARP - ok
21:28:54.0550 4056 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys
21:28:54.0550 4056 Wanarpv6 - ok
21:28:54.0628 4056 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\windows\system32\Wat\WatAdminSvc.exe
21:28:54.0648 4056 WatAdminSvc - ok
21:28:54.0708 4056 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\windows\system32\wbengine.exe
21:28:54.0738 4056 wbengine - ok
21:28:54.0758 4056 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\windows\System32\wbiosrvc.dll
21:28:54.0768 4056 WbioSrvc - ok
21:28:54.0818 4056 [ 8BDA6DB43AA54E8BB5E0794541DDC209 ] WcesComm C:\windows\WindowsMobile\wcescomm.dll
21:28:54.0828 4056 WcesComm - ok
21:28:54.0878 4056 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\windows\System32\wcncsvc.dll
21:28:54.0878 4056 wcncsvc - ok
21:28:54.0908 4056 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll
21:28:54.0908 4056 WcsPlugInService - ok
21:28:54.0948 4056 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\windows\system32\DRIVERS\wd.sys
21:28:54.0948 4056 Wd - ok
21:28:54.0978 4056 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys
21:28:54.0988 4056 Wdf01000 - ok
21:28:55.0008 4056 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\windows\system32\wdi.dll
21:28:55.0008 4056 WdiServiceHost - ok
21:28:55.0008 4056 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\windows\system32\wdi.dll
21:28:55.0018 4056 WdiSystemHost - ok
21:28:55.0058 4056 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\windows\System32\webclnt.dll
21:28:55.0058 4056 WebClient - ok
21:28:55.0098 4056 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\windows\system32\wecsvc.dll
21:28:55.0108 4056 Wecsvc - ok
21:28:55.0128 4056 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\windows\System32\wercplsupport.dll
21:28:55.0128 4056 wercplsupport - ok
21:28:55.0168 4056 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\windows\System32\WerSvc.dll
21:28:55.0168 4056 WerSvc - ok
21:28:55.0188 4056 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys
21:28:55.0198 4056 WfpLwf - ok
21:28:55.0228 4056 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\windows\system32\drivers\wimmount.sys
21:28:55.0228 4056 WIMMount - ok
21:28:55.0278 4056 [ A6EA7A3FC4B00F48535B506DB1E86EFD ] winachsf C:\windows\system32\DRIVERS\CAX_CNXT.sys
21:28:55.0288 4056 winachsf - ok
21:28:55.0308 4056 WinDefend - ok
21:28:55.0318 4056 WinHttpAutoProxySvc - ok
21:28:55.0368 4056 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll
21:28:55.0378 4056 Winmgmt - ok
21:28:55.0478 4056 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\windows\system32\WsmSvc.dll
21:28:55.0508 4056 WinRM - ok
21:28:55.0568 4056 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\windows\system32\DRIVERS\WinUsb.sys
21:28:55.0568 4056 WinUsb - ok
21:28:55.0618 4056 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\windows\System32\wlansvc.dll
21:28:55.0638 4056 Wlansvc - ok
21:28:55.0758 4056 [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:28:55.0778 4056 wlidsvc - ok
21:28:55.0828 4056 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys
21:28:55.0828 4056 WmiAcpi - ok
21:28:55.0858 4056 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe
21:28:55.0868 4056 wmiApSrv - ok
21:28:55.0908 4056 WMPNetworkSvc - ok
21:28:55.0948 4056 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\windows\System32\wpcsvc.dll
21:28:55.0948 4056 WPCSvc - ok
21:28:55.0988 4056 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\windows\system32\wpdbusenum.dll
21:28:55.0988 4056 WPDBusEnum - ok
21:28:56.0018 4056 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys
21:28:56.0018 4056 ws2ifsl - ok
21:28:56.0038 4056 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\windows\System32\wscsvc.dll
21:28:56.0038 4056 wscsvc - ok
21:28:56.0048 4056 WSearch - ok
21:28:56.0138 4056 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\windows\system32\wuaueng.dll
21:28:56.0158 4056 wuauserv - ok
21:28:56.0198 4056 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\windows\system32\drivers\WudfPf.sys
21:28:56.0208 4056 WudfPf - ok
21:28:56.0238 4056 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys
21:28:56.0238 4056 WUDFRd - ok
21:28:56.0278 4056 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\windows\System32\WUDFSvc.dll
21:28:56.0278 4056 wudfsvc - ok
21:28:56.0318 4056 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\windows\System32\wwansvc.dll
21:28:56.0318 4056 WwanSvc - ok
21:28:56.0348 4056 [ E8F3FA126A06F8E7088F63757112A186 ] XAudio C:\windows\system32\DRIVERS\XAudio64.sys
21:28:56.0348 4056 XAudio - ok
21:28:56.0368 4056 ================ Scan global ===============================
21:28:56.0408 4056 [ BA0CD8C393E8C9F83354106093832C7B ] C:\windows\system32\basesrv.dll
21:28:56.0458 4056 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\windows\system32\winsrv.dll
21:28:56.0468 4056 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\windows\system32\winsrv.dll
21:28:56.0508 4056 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\windows\system32\sxssrv.dll
21:28:56.0548 4056 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\windows\system32\services.exe
21:28:56.0558 4056 [Global] - ok
21:28:56.0558 4056 ================ Scan MBR ==================================
21:28:56.0578 4056 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0
21:28:57.0008 4056 \Device\Harddisk0\DR0 - ok
21:28:57.0008 4056 ================ Scan VBR ==================================
21:28:57.0038 4056 [ A4E0AA8E02AF815B23A55CB9B2AC72EF ] \Device\Harddisk0\DR0\Partition1
21:28:57.0048 4056 \Device\Harddisk0\DR0\Partition1 - ok
21:28:57.0048 4056 ============================================================
21:28:57.0048 4056 Scan finished
21:28:57.0048 4056 ============================================================
21:28:57.0058 6400 Detected object count: 0
21:28:57.0058 6400 Actual detected object count: 0

#4 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 06 November 2012 - 09:10 AM

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-11-06 21:32:53
-----------------------------
21:32:53.423 OS Version: Windows x64 6.1.7601 Service Pack 1
21:32:53.423 Number of processors: 4 586 0x2502
21:32:53.423 ComputerName: BOBBI-JO-PC UserName: Bobbi-Jo
21:32:54.967 Initialize success
21:40:36.357 AVAST engine defs: 12110601
21:41:24.155 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
21:41:24.165 Disk 0 Vendor: TOSHIBA_ GC00 Size: 476940MB BusType: 3
21:41:24.175 Disk 0 MBR read successfully
21:41:24.185 Disk 0 MBR scan
21:41:24.185 Disk 0 Windows VISTA default MBR code
21:41:24.205 Disk 0 Partition 1 80 (A) 27 Hidden NTFS WinRE NTFS 1500 MB offset 2048
21:41:24.225 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 464277 MB offset 3074048
21:41:24.265 Disk 0 Partition 3 00 17 Hidd HPFS/NTFS NTFS 11162 MB offset 953913344
21:41:24.305 Disk 0 scanning C:\windows\system32\drivers
21:41:37.149 Service scanning
21:42:39.809 Modules scanning
21:42:39.819 Disk 0 trace - called modules:
21:42:39.889 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys hal.dll
21:42:40.219 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800699b060]
21:42:40.229 3 CLASSPNP.SYS[fffff88001d7b43f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004955050]
21:42:41.449 AVAST engine scan C:\windows
21:42:44.220 AVAST engine scan C:\windows\system32
21:46:31.493 AVAST engine scan C:\windows\system32\drivers
21:46:58.715 AVAST engine scan C:\Users\Bobbi-Jo
22:06:13.409 AVAST engine scan C:\ProgramData
22:08:53.250 Scan finished successfully
22:09:08.148 Disk 0 MBR has been saved successfully to "C:\Users\Bobbi-Jo\Desktop\MBR.dat"
22:09:08.148 The log file has been saved successfully to "C:\Users\Bobbi-Jo\Desktop\aswMBR.txt"

#5 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 07 November 2012 - 04:11 AM

ESET

C:\Program Files (x86)\Coupon Companion\Coupon Companion.dll a variant of Win32/Toolbar.CrossRider.A application cleaned by deleting - quarantined
C:\Users\Bobbi-Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L0IUDQKP\cbsidlm-tr1_7-HitmanPro_3_32bit-SEO2-10895604.exe Win32/DownloadAdmin.D application cleaned by deleting - quarantined

#6 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:15 AM

Posted 07 November 2012 - 06:08 AM

Download

Malwarebytes

Install,update and run a full scan

Click on Show results.Right click on the list ,select all and remove them.

Post the generated log here

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size
List restore points

Click Go and post the result.

Download

Farbar service scanner

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.

Download

adware cleaner

Launch it click on Delete

A log should be generated after scan ,post it here

Download

Junkware removal tool

For vista and windows 7 right click on the tool and select run as administrator

After scan gets completed,post the generated log here.

#7 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 07 November 2012 - 09:28 AM

Malwarebytes Anti-Malware (Trial) 1.65.1.1000
www.malwarebytes.org

Database version: v2012.11.07.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Bobbi-Jo :: BOBBI-JO-PC [administrator]

Protection: Enabled

7/11/2012 9:13:15 PM
mbam-log-2012-11-07 (21-13-15).txt

Scan type: Full scan (C:\|Q:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 398960
Time elapsed: 1 hour(s), 11 minute(s), 51 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

#8 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 07 November 2012 - 09:33 AM

MiniToolBox by Farbar Version: 07-11-2012
Ran by Bobbi-Jo (administrator) on 07-11-2012 at 22:30:51
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================



========================= IP Configuration: ================================

Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC = Wireless Network Connection (Connected)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 2 (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : Bobbi-Jo-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Broadcast
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : Belkin

Wireless LAN adapter Wireless Network Connection 2:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
Physical Address. . . . . . . . . : 00-26-4D-89-2E-25
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . : Belkin
Description . . . . . . . . . . . : Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
Physical Address. . . . . . . . . : 00-26-4D-89-2E-25
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::c83d:f9e0:f39f:b807%11(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.2.3(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Tuesday, 6 November 2012 8:41:37 PM
Lease Expires . . . . . . . . . . : Sunday, 15 December 2148 4:59:23 AM
Default Gateway . . . . . . . . . : 192.168.2.1
DHCP Server . . . . . . . . . . . : 192.168.2.1
DHCPv6 IAID . . . . . . . . . . . : 301999693
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-13-C1-7B-F7-70-5A-B6-C2-A4-1D
DNS Servers . . . . . . . . . . . : 192.168.2.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
Physical Address. . . . . . . . . : 70-5A-B6-C2-A4-1D
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.Belkin:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : Belkin
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 16:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:953c:284a:25c6:8cba:f3f8(Preferred)
Link-local IPv6 Address . . . . . : fe80::284a:25c6:8cba:f3f8%24(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter isatap.{1BEBA229-5FC5-41A4-B495-B114CDCE9E64}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter 6TO4 Adapter:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{221A5C82-491B-4910-AF5F-31A848AED171}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
DNS request timed out.
timeout was 2 seconds.
Server: UnKnown
Address: 192.168.2.1

Name: google.com
Addresses: 2404:6800:4006:804::1004
74.125.237.130
74.125.237.131
74.125.237.132
74.125.237.133
74.125.237.134
74.125.237.135
74.125.237.136
74.125.237.137
74.125.237.142
74.125.237.128
74.125.237.129


Pinging google.com [74.125.237.129] with 32 bytes of data:
Reply from 74.125.237.129: bytes=32 time=80ms TTL=58
Reply from 74.125.237.129: bytes=32 time=83ms TTL=58

Ping statistics for 74.125.237.129:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 80ms, Maximum = 83ms, Average = 81ms
Server:
Address: 192.168.2.1

Name: yahoo.com
Addresses: 72.30.38.140
98.138.253.109
98.139.183.24


Pinging yahoo.com [98.138.253.109] with 32 bytes of data:
Reply from 98.138.253.109: bytes=32 time=377ms TTL=50
Reply from 98.138.253.109: bytes=32 time=349ms TTL=50

Ping statistics for 98.138.253.109:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 349ms, Maximum = 377ms, Average = 363ms
Server:
Address: 192.168.2.1

Name: bleepingcomputer.com
Address: 208.43.87.2


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=10ms TTL=128
Reply from 127.0.0.1: bytes=32 time=6ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 6ms, Maximum = 10ms, Average = 8ms
===========================================================================
Interface List
13...00 26 4d 89 2e 25 ......Microsoft Virtual WiFi Miniport Adapter
11...00 26 4d 89 2e 25 ......Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
10...70 5a b6 c2 a4 1d ......Realtek PCIe FE Family Controller
1...........................Software Loopback Interface 1
25...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
24...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
41...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
23...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter #2
42...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.2.1 192.168.2.3 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.2.0 255.255.255.0 On-link 192.168.2.3 281
192.168.2.3 255.255.255.255 On-link 192.168.2.3 281
192.168.2.255 255.255.255.255 On-link 192.168.2.3 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.2.3 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.2.3 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
24 58 ::/0 On-link
1 306 ::1/128 On-link
24 58 2001::/32 On-link
24 306 2001:0:9d38:953c:284a:25c6:8cba:f3f8/128
On-link
11 281 fe80::/64 On-link
24 306 fe80::/64 On-link
24 306 fe80::284a:25c6:8cba:f3f8/128
On-link
11 281 fe80::c83d:f9e0:f39f:b807/128
On-link
1 306 ff00::/8 On-link
24 306 ff00::/8 On-link
11 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 08 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 08 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (11/07/2012 05:10:30 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (11/07/2012 05:10:30 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (11/07/2012 08:44:48 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4992

Error: (11/07/2012 08:44:48 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4992

Error: (11/07/2012 08:44:48 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/07/2012 08:23:33 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31057413

Error: (11/07/2012 08:23:33 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31057413

Error: (11/07/2012 08:23:33 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/06/2012 11:46:06 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10078

Error: (11/06/2012 11:46:06 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10078


System errors:
=============
Error: (11/07/2012 09:06:35 PM) (Source: ipnathlp) (User: )
Description: 192.168.2.3192.168.137.0255.255.255.0

Error: (11/07/2012 09:06:33 PM) (Source: ipnathlp) (User: )
Description: 0

Error: (11/07/2012 09:06:29 PM) (Source: ipnathlp) (User: )
Description: 0

Error: (11/07/2012 06:43:54 PM) (Source: ipnathlp) (User: )
Description: 0

Error: (11/07/2012 06:43:53 PM) (Source: ipnathlp) (User: )
Description: 192.168.2.3192.168.137.0255.255.255.0

Error: (11/07/2012 06:43:50 PM) (Source: ipnathlp) (User: )
Description: 0

Error: (11/07/2012 06:37:26 PM) (Source: ipnathlp) (User: )
Description: 0

Error: (11/07/2012 05:09:33 PM) (Source: DCOM) (User: )
Description: {4EB61BAC-A3B6-4760-9581-655041EF4D69}

Error: (11/07/2012 05:09:00 PM) (Source: ipnathlp) (User: )
Description: 192.168.2.3192.168.137.0255.255.255.0

Error: (11/07/2012 05:08:58 PM) (Source: ipnathlp) (User: )
Description: 0


Microsoft Office Sessions:
=========================
Error: (11/07/2012 05:10:30 PM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Bobbi-Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CIEFP9EU\esetsmartinstaller_enu.exe

Error: (11/07/2012 05:10:30 PM) (Source: SideBySide)(User: )
Description: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Bobbi-Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CIEFP9EU\esetsmartinstaller_enu.exe

Error: (11/07/2012 08:44:48 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4992

Error: (11/07/2012 08:44:48 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4992

Error: (11/07/2012 08:44:48 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/07/2012 08:23:33 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31057413

Error: (11/07/2012 08:23:33 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31057413

Error: (11/07/2012 08:23:33 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/06/2012 11:46:06 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10078

Error: (11/06/2012 11:46:06 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10078


=========================== Installed Programs ============================

Acrobat.com (Version: 1.6.65)
Adobe AIR (Version: 1.5.0.7220)
Adobe Flash Player 11 ActiveX (Version: 11.4.402.287)
Adobe Reader X (10.1.4) (Version: 10.1.4)
Apple Application Support (Version: 2.2.2)
Apple Mobile Device Support (Version: 6.0.0.59)
Apple Software Update (Version: 2.1.3.127)
ATI Catalyst Install Manager (Version: 3.0.741.0)
Babylon-English Toolbar (Version: 5.7.2.2)
Bejeweled 2 Deluxe (Version: 2.2.0.82)
Belkin Setup and Router Monitor
Bonjour (Version: 3.0.0.10)
Business Contact Manager for Outlook 2007 SP2 (Version: 3.0.8619.1)
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Core Implementation (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Full Existing (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Full New (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Light (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Previews Common (Version: 2009.0908.2225.38429)
Catalyst Control Center Graphics Previews Vista (Version: 2009.0908.2225.38429)
Catalyst Control Center InstallProxy (Version: 2009.0908.2225.38429)
Catalyst Control Center Localization All (Version: 2009.0908.2225.38429)
ccc-core-static (Version: 2009.0908.2225.38429)
ccc-utility64 (Version: 2009.0908.2225.38429)
CCC Help Chinese Standard (Version: 2009.0908.2224.38429)
CCC Help Chinese Traditional (Version: 2009.0908.2224.38429)
CCC Help Czech (Version: 2009.0908.2224.38429)
CCC Help Danish (Version: 2009.0908.2224.38429)
CCC Help Dutch (Version: 2009.0908.2224.38429)
CCC Help English (Version: 2009.0908.2224.38429)
CCC Help Finnish (Version: 2009.0908.2224.38429)
CCC Help French (Version: 2009.0908.2224.38429)
CCC Help German (Version: 2009.0908.2224.38429)
CCC Help Greek (Version: 2009.0908.2224.38429)
CCC Help Hungarian (Version: 2009.0908.2224.38429)
CCC Help Italian (Version: 2009.0908.2224.38429)
CCC Help Japanese (Version: 2009.0908.2224.38429)
CCC Help Korean (Version: 2009.0908.2224.38429)
CCC Help Norwegian (Version: 2009.0908.2224.38429)
CCC Help Polish (Version: 2009.0908.2224.38429)
CCC Help Portuguese (Version: 2009.0908.2224.38429)
CCC Help Russian (Version: 2009.0908.2224.38429)
CCC Help Spanish (Version: 2009.0908.2224.38429)
CCC Help Swedish (Version: 2009.0908.2224.38429)
CCC Help Thai (Version: 2009.0908.2224.38429)
CCC Help Turkish (Version: 2009.0908.2224.38429)
Chuzzle Deluxe (Version: 2.2.0.82)
Coupon Companion (Version: 1.23.151.151)
D3DX10 (Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Digsby
Direct DiscRecorder (Version: 1.00.0000)
DVD MovieFactory for TOSHIBA (Version: 7.0.0)
ESET Online Scanner v3
FATE (Version: 2.2.0.82)
GameXN GO
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.4.3230.2052)
Google Update Helper (Version: 1.3.21.123)
GoToMeeting 4.5.0.457
HDAUDIO Soft Data Fax Modem with SmartCP (Version: 7.80.4.50)
HitmanPro 3.6 (Version: 3.6.2.173)
iCloud (Version: 2.0.2.187)
ieSpell (Version: 2.6.4 (build 573))
IKEA Home Planner
Intel® Control Center (Version: 1.2.0.1006)
Intel® Management Engine Components (Version: 6.0.0.1179)
Intel® Rapid Storage Technology (Version: 9.5.0.1037)
Intel® Turbo Boost Technology Driver (Version: 01.00.01.1002)
iTunes (Version: 10.7.0.21)
Java Auto Updater (Version: 2.0.7.1)
Java™ 6 Update 35 (Version: 6.0.350)
Junk Mail filter update (Version: 15.4.3502.0922)
Magic Match - The Genie's Journey (Version: 2.2.0.82)
Malwarebytes Anti-Malware version 1.65.1.1000 (Version: 1.65.1.1000)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Home and Business 2010 - English (Version: 14.0.5123.5002)
Microsoft Office Home and Business 2010 (Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (Version: 14.0.6029.1000)
Microsoft Office Small Business Connectivity Components (Version: 2.0.7024.0)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ) (Version: 9.4.5000.00)
Microsoft SQL Server 2005 Express Edition (SQLEXPRESS) (Version: 9.4.5000.00)
Microsoft SQL Server 2005 Tools Express Edition (Version: 9.4.5000.00)
Microsoft SQL Server Native Client (Version: 9.00.5000.00)
Microsoft SQL Server Setup Support Files (English) (Version: 9.00.5000.00)
Microsoft SQL Server VSS Writer (Version: 9.00.5000.00)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (Version: 8.0.51011)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
MobileMe Control Panel (Version: 3.1.8.0)
Monopoly (Version: 2.2.0.82)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
Norton Internet Security (Version: 20.2.0.19)
Norton Management (Version: 3.1.0.24)
Peggle (Version: 2.2.0.82)
PlayReady PC Runtime amd64 (Version: 1.3.0)
Polar Bowler (Version: 2.2.0.82)
Polar Golfer (Version: 2.2.0.82)
QuickTime (Version: 7.72.80.56)
Realtek Ethernet Controller Driver For Windows Vista and Later (Version: 1.00.0011)
Realtek High Definition Audio Driver (Version: 6.0.1.5964)
Realtek USB 2.0 Card Reader (Version: 6.1.7600.30105)
Realtek WLAN Driver (Version: 2.00.0006)
Skype Click to Call (Version: 5.6.8442)
Skype™ 5.10 (Version: 5.10.116)
Synaptics Pointing Device Driver (Version: 14.0.11.0)
The Fifth Gate (Version: 2.2.0.95)
TOSHIBA Assist (Version: 3.00.10)
TOSHIBA Bulletin Board (Version: 1.5.05.64)
TOSHIBA ConfigFree (Version: 8.0.25)
TOSHIBA Disc Creator (Version: 2.1.0.2 for x64)
TOSHIBA DVD PLAYER (Version: 3.01.1.04-A)
TOSHIBA eco Utility (Version: 1.1.12.64)
TOSHIBA Extended Tiles for Windows Mobility Center (Version: )
TOSHIBA Extended Tiles for Windows Mobility Center (Version: 1.01.00)
TOSHIBA Face Recognition (Version: 3.1.3.64)
TOSHIBA Flash Cards Support Utility (Version: 1.63.0.4C)
TOSHIBA Hardware Setup (Version: 1.63.0.16C)
TOSHIBA HDD/SSD Alert (Version: 3.1.64.4)
TOSHIBA Internal Modem Region Select Utility (Version: 2.3.0.0)
TOSHIBA Internal Modem Region Select Utility (Version: 2.3.0.01)
TOSHIBA PC Health Monitor (Version: 1.5.0.64)
TOSHIBA Recovery Media Creator (Version: 2.1.0.4 for x64)
TOSHIBA ReelTime (Version: 1.5.07.64)
TOSHIBA Service Station (Version: 2.1.40)
TOSHIBA Speech System Applications (Version: 1.00.2518)
TOSHIBA Speech System SR Engine(U.S.) Version1.0
TOSHIBA Speech System TTS Engine(U.S.) Version1.0
TOSHIBA Supervisor Password (Version: 1.63.0.7C)
TOSHIBA Value Added Package (Version: 1.2.32.64)
TOSHIBA Web Camera Application (Version: 1.1.1.9)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553272) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2598289) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2589345) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
Update Installer for WildTangent Games App
Utility Common Driver (Version: 1.0.50.27C)
WildTangent Games (Version: 1.0.2.5)
WildTangent Games App (Toshiba Games) (Version: 4.0.5.31)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Messenger (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3502.0922)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live Sync (Version: 14.0.8089.726)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Zuma Deluxe (Version: 2.2.0.82)

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 68%
Total physical RAM: 3957.61 MB
Available physical RAM: 1261.07 MB
Total Pagefile: 7913.4 MB
Available Pagefile: 5066.05 MB
Total Virtual: 4095.88 MB
Available Virtual: 3972.85 MB

========================= Partitions: =====================================

1 Drive c: (S3A8424D005) (Fixed) (Total:453.4 GB) (Free:378.17 GB) NTFS

========================= Users: ========================================

User accounts for \\BOBBI-JO-PC

Administrator ASPNET Bobbi-Jo
Guest

========================= Restore Points ==================================

03-09-2012 12:00:25 Windows Update
12-09-2012 09:56:05 Windows Update
15-09-2012 00:59:09 Windows Update
20-09-2012 09:39:20 Windows Update
20-09-2012 16:06:23 Windows Update
23-09-2012 12:56:47 Installed Java™ 6 Update 35
24-09-2012 11:49:02 Windows Update
01-10-2012 12:51:42 Windows Update
13-10-2012 02:39:03 Windows Update

**** End of log ****

#9 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 07 November 2012 - 09:34 AM

Farbar Service Scanner Version: 07-11-2012
Ran by Bobbi-Jo (administrator) on 07-11-2012 at 22:34:01
Running from "C:\Users\Bobbi-Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D5PPUYV3"
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============
wscsvc Service is not running. Checking service configuration:
The start type of wscsvc service is set to Disabled. The default start type is Auto.
The ImagePath of wscsvc service is OK.
The ServiceDll of wscsvc service is OK.


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Disabled. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.


Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****

#10 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 07 November 2012 - 09:40 AM

# AdwCleaner v2.007 - Logfile created 11/07/2012 at 22:36:16
# Updated 06/11/2012 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Bobbi-Jo - BOBBI-JO-PC
# Boot Mode : Normal
# Running from : C:\Users\Bobbi-Jo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YY112J6D\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\windows\SysWOW64\conduitEngine.tmp
Folder Deleted : C:\Program Files (x86)\Babylon-English
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\ConduitEngine
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\Users\Bobbi-Jo\AppData\LocalLow\Babylon-English
Folder Deleted : C:\Users\Bobbi-Jo\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Bobbi-Jo\AppData\LocalLow\ConduitEngine

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\Software\Babylon-English
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\Cr_Installer
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CE18769B-C7FA-42D2-860D-17C4662C70AD}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CE18769B-C7FA-42D2-860D-17C4662C70AD}
Key Deleted : HKLM\Software\Babylon-English
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0004493.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0004493.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0004493.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0004493.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2438727
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2720081
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\conduitEngine
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B585330A-4E5F-4678-A015-33BE6CE01284}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B585330A-4E5F-4678-A015-33BE6CE01284}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CE18769B-C7FA-42D2-860D-17C4662C70AD}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC9DC116-07E5-4745-8639-91DF6656D9F3}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE18769B-C7FA-42D2-860D-17C4662C70AD}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Babylon-English Toolbar
Key Deleted : HKLM\SOFTWARE\Software
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CE18769B-C7FA-42D2-860D-17C4662C70AD}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CE18769B-C7FA-42D2-860D-17C4662C70AD}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{CE18769B-C7FA-42D2-860D-17C4662C70AD}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{CE18769B-C7FA-42D2-860D-17C4662C70AD}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Registry is clean.

*************************

AdwCleaner[S1].txt - [3783 octets] - [07/11/2012 22:36:16]

########## EOF - C:\AdwCleaner[S1].txt - [3843 octets] ##########

#11 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 07 November 2012 - 09:50 AM

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 2.8.4 (11.07.2012)
OS: Windows 7 Home Premium x64
Ran by Bobbi-Jo on Wed 07/11/2012 at 22:41:51.17
Blog: http://thisisudax.blogspot.com
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] hkey_classes_root\clsid\{11111111-1111-1111-1111-110011441193}
Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{11111111-1111-1111-1111-110011441193}



~~~ Files

Successfully deleted: [File] C:\windows\prefetch\BABYLON.EXE-9D5C5354.pf



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Bobbi-Jo\appdata\local\coupon companion"
Successfully deleted: [Folder] "C:\Program Files (x86)\coupon companion"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 07/11/2012 at 22:48:22.26
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

#12 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:09:15 AM

Posted 07 November 2012 - 12:45 PM

Click on startmenu and type

cmd

Right click on it and select run as administrator and run these commands

cd \windows\syswow64
attrib > c:\attrib.txt


Now go to C drive and post the contents of attrib.txt log here

Download

http://www.bleepingcomputer.com/download/rkill/

Run it and after scan finishes,post the contents of RKILL log located on the desktop here


Download

Autoruns

Extract and launch autoruns.exe

Allow the scan to get finished

Now click on FILE-SAVE

Filename:Autoruns.txt
Save as :Text

Paste the contents of text here

#13 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 08 November 2012 - 04:48 AM

A C:\Windows\SysWOW64\12520437.cpx
A C:\Windows\SysWOW64\12520850.cpx
A C:\Windows\SysWOW64\aaclient.dll
A C:\Windows\SysWOW64\accessibilitycpl.dll
A C:\Windows\SysWOW64\ACCTRES.dll
A C:\Windows\SysWOW64\acledit.dll
A C:\Windows\SysWOW64\aclui.dll
A C:\Windows\SysWOW64\acppage.dll
A C:\Windows\SysWOW64\ActionCenter.dll
A C:\Windows\SysWOW64\ActionCenterCPL.dll
A C:\Windows\SysWOW64\activeds.dll
A C:\Windows\SysWOW64\activeds.tlb
A C:\Windows\SysWOW64\actxprxy.dll
A C:\Windows\SysWOW64\AdapterTroubleshooter.exe
A C:\Windows\SysWOW64\admparse.dll
A C:\Windows\SysWOW64\adprovider.dll
A C:\Windows\SysWOW64\adsldp.dll
A C:\Windows\SysWOW64\adsldpc.dll
A C:\Windows\SysWOW64\adsmsext.dll
A C:\Windows\SysWOW64\adsnt.dll
A C:\Windows\SysWOW64\adtschema.dll
A C:\Windows\SysWOW64\advapi32.dll
A C:\Windows\SysWOW64\advpack.dll
A C:\Windows\SysWOW64\aecache.dll
A C:\Windows\SysWOW64\aeevts.dll
A C:\Windows\SysWOW64\AltTab.dll
A C:\Windows\SysWOW64\amcompat.tlb
A C:\Windows\SysWOW64\amdpcom32.dll
A C:\Windows\SysWOW64\amstream.dll
A C:\Windows\SysWOW64\amxread.dll
A C:\Windows\SysWOW64\apds.dll
A H C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-security-lsalookup-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-security-sddl-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-core-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-management-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-management-l2-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-winsvc-l1-1-0.dll
A C:\Windows\SysWOW64\apilogen.dll
A C:\Windows\SysWOW64\apircl.dll
A C:\Windows\SysWOW64\apisetschema.dll
A C:\Windows\SysWOW64\apphelp.dll
A C:\Windows\SysWOW64\Apphlpdm.dll
A C:\Windows\SysWOW64\appidapi.dll
A C:\Windows\SysWOW64\appwiz.cpl
A C:\Windows\SysWOW64\apss.dll
A C:\Windows\SysWOW64\ARP.EXE
A C:\Windows\SysWOW64\asferror.dll
A C:\Windows\SysWOW64\asycfilt.dll
A C:\Windows\SysWOW64\at.exe
A C:\Windows\SysWOW64\AtBroker.exe
A C:\Windows\SysWOW64\ati2edxx.dll
A C:\Windows\SysWOW64\atiadlxy.dll
A C:\Windows\SysWOW64\aticalcl.dll
A C:\Windows\SysWOW64\aticaldd.dll
A C:\Windows\SysWOW64\aticalrt.dll
A C:\Windows\SysWOW64\atidxx32.dll
A C:\Windows\SysWOW64\atimpc32.dll
A C:\Windows\SysWOW64\atioglxx.dll
A C:\Windows\SysWOW64\atipdlxx.dll
A C:\Windows\SysWOW64\atiumdag.dll
A C:\Windows\SysWOW64\atiumdva.cap
A C:\Windows\SysWOW64\atiumdva.dll
A C:\Windows\SysWOW64\atl.dll
A C:\Windows\SysWOW64\atmfd.dll
A C:\Windows\SysWOW64\atmlib.dll
A C:\Windows\SysWOW64\attrib.exe
A C:\Windows\SysWOW64\audiodev.dll
A C:\Windows\SysWOW64\AudioEng.dll
A C:\Windows\SysWOW64\AUDIOKSE.dll
A C:\Windows\SysWOW64\AudioSes.dll
A C:\Windows\SysWOW64\auditpol.exe
A C:\Windows\SysWOW64\authfwcfg.dll
A C:\Windows\SysWOW64\AuthFWGP.dll
A C:\Windows\SysWOW64\AuthFWSnapin.dll
A C:\Windows\SysWOW64\AuthFWWizFwk.dll
A C:\Windows\SysWOW64\authui.dll
A C:\Windows\SysWOW64\authz.dll
A C:\Windows\SysWOW64\autochk.exe
A C:\Windows\SysWOW64\autoconv.exe
A C:\Windows\SysWOW64\autofmt.exe
A C:\Windows\SysWOW64\autoplay.dll
A C:\Windows\SysWOW64\AuxiliaryDisplayApi.dll
A C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll
A C:\Windows\SysWOW64\avicap32.dll
A C:\Windows\SysWOW64\avifil32.dll
A C:\Windows\SysWOW64\avrt.dll
A C:\Windows\SysWOW64\azman.msc
A C:\Windows\SysWOW64\azroles.dll
A C:\Windows\SysWOW64\azroleui.dll
A C:\Windows\SysWOW64\AzSqlExt.dll
A I C:\Windows\SysWOW64\BarCod32.OCX
A C:\Windows\SysWOW64\basecsp.dll
A C:\Windows\SysWOW64\batmeter.dll
A C:\Windows\SysWOW64\BCMMS32.DLL
A C:\Windows\SysWOW64\bcrypt.dll
A C:\Windows\SysWOW64\bcryptprimitives.dll
A C:\Windows\SysWOW64\bdaplgin.ax
A C:\Windows\SysWOW64\bidispl.dll
A C:\Windows\SysWOW64\BioCredProv.dll
A C:\Windows\SysWOW64\bitsadmin.exe
A C:\Windows\SysWOW64\bitsperf.dll
A C:\Windows\SysWOW64\bitsprx2.dll
A C:\Windows\SysWOW64\bitsprx3.dll
A C:\Windows\SysWOW64\bitsprx4.dll
A C:\Windows\SysWOW64\bitsprx5.dll
A C:\Windows\SysWOW64\bitsprx6.dll
A C:\Windows\SysWOW64\blackbox.dll
A C:\Windows\SysWOW64\boot.sdi
A C:\Windows\SysWOW64\bootcfg.exe
A C:\Windows\SysWOW64\BOOTVID.DLL
A C:\Windows\SysWOW64\bopomofo.uce
A C:\Windows\SysWOW64\browcli.dll
A C:\Windows\SysWOW64\browseui.dll
A C:\Windows\SysWOW64\bthprops.cpl
A C:\Windows\SysWOW64\bthudtask.exe
A C:\Windows\SysWOW64\btpanui.dll
A C:\Windows\SysWOW64\Bubbles.scr
A C:\Windows\SysWOW64\BWContextHandler.dll
A C:\Windows\SysWOW64\BWUnpairElevated.dll
A C:\Windows\SysWOW64\cabinet.dll
A C:\Windows\SysWOW64\cabview.dll
A C:\Windows\SysWOW64\cacls.exe
A C:\Windows\SysWOW64\calc.exe
A C:\Windows\SysWOW64\capiprovider.dll
A C:\Windows\SysWOW64\capisp.dll
A C:\Windows\SysWOW64\catsrv.dll
A C:\Windows\SysWOW64\catsrvps.dll
A C:\Windows\SysWOW64\catsrvut.dll
A C:\Windows\SysWOW64\cca.dll
A C:\Windows\SysWOW64\cdosys.dll
A C:\Windows\SysWOW64\cero.rs
A C:\Windows\SysWOW64\certcli.dll
A C:\Windows\SysWOW64\certCredProvider.dll
A C:\Windows\SysWOW64\certenc.dll
A C:\Windows\SysWOW64\CertEnroll.dll
A C:\Windows\SysWOW64\CertEnrollCtrl.exe
A C:\Windows\SysWOW64\CertEnrollUI.dll
A C:\Windows\SysWOW64\certmgr.dll
A C:\Windows\SysWOW64\certmgr.msc
A C:\Windows\SysWOW64\CertPolEng.dll
A C:\Windows\SysWOW64\certreq.exe
A C:\Windows\SysWOW64\certutil.exe
A C:\Windows\SysWOW64\ceutil.dll
A C:\Windows\SysWOW64\cewmdm.dll
A C:\Windows\SysWOW64\cfgbkend.dll
A C:\Windows\SysWOW64\cfgmgr32.dll
A C:\Windows\SysWOW64\chajei.ime
A C:\Windows\SysWOW64\charmap.exe
A C:\Windows\SysWOW64\chcp.com
A C:\Windows\SysWOW64\chkdsk.exe
A C:\Windows\SysWOW64\chkntfs.exe
A C:\Windows\SysWOW64\choice.exe
A C:\Windows\SysWOW64\chsbrkr.dll
A C:\Windows\SysWOW64\chtbrkr.dll
A C:\Windows\SysWOW64\CHxReadingStringIME.dll
A I C:\Windows\SysWOW64\cic.dll
A C:\Windows\SysWOW64\cintlgnt.ime
A C:\Windows\SysWOW64\cipher.exe
A C:\Windows\SysWOW64\clb.dll
A C:\Windows\SysWOW64\clbcatq.dll
A C:\Windows\SysWOW64\cleanmgr.exe
A C:\Windows\SysWOW64\clfsw32.dll
A C:\Windows\SysWOW64\cliconfg.dll
A C:\Windows\SysWOW64\cliconfg.exe
A C:\Windows\SysWOW64\cliconfg.rll
A C:\Windows\SysWOW64\clip.exe
A C:\Windows\SysWOW64\clusapi.dll
A C:\Windows\SysWOW64\cmcfg32.dll
A C:\Windows\SysWOW64\cmd.exe
A C:\Windows\SysWOW64\cmdial32.dll
A C:\Windows\SysWOW64\cmdkey.exe
A C:\Windows\SysWOW64\cmdl32.exe
A C:\Windows\SysWOW64\cmicryptinstall.dll
A C:\Windows\SysWOW64\cmifw.dll
A C:\Windows\SysWOW64\cmipnpinstall.dll
A C:\Windows\SysWOW64\cmlua.dll
A C:\Windows\SysWOW64\cmmon32.exe
A C:\Windows\SysWOW64\cmpbk32.dll
A C:\Windows\SysWOW64\cmstp.exe
A C:\Windows\SysWOW64\cmstplua.dll
A C:\Windows\SysWOW64\cmutil.dll
A C:\Windows\SysWOW64\cngaudit.dll
A C:\Windows\SysWOW64\cngprovider.dll
A C:\Windows\SysWOW64\cnvfat.dll
A C:\Windows\SysWOW64\colbact.dll
A C:\Windows\SysWOW64\COLORCNV.DLL
A C:\Windows\SysWOW64\colorcpl.exe
A C:\Windows\SysWOW64\colorui.dll
A C:\Windows\SysWOW64\comcat.dll
A I C:\Windows\SysWOW64\COMCT332.OCX
A C:\Windows\SysWOW64\comctl32.dll
A I C:\Windows\SysWOW64\comctl32.ocx
A C:\Windows\SysWOW64\comdlg32.dll
A I C:\Windows\SysWOW64\comdlg32.ocx
A C:\Windows\SysWOW64\comexp.msc
A C:\Windows\SysWOW64\comp.exe
A C:\Windows\SysWOW64\compact.exe
A C:\Windows\SysWOW64\compmgmt.msc
A C:\Windows\SysWOW64\compobj.dll
A C:\Windows\SysWOW64\compstui.dll
A C:\Windows\SysWOW64\ComputerDefaults.exe
A C:\Windows\SysWOW64\comrepl.dll
A C:\Windows\SysWOW64\comres.dll
A C:\Windows\SysWOW64\comsnap.dll
A C:\Windows\SysWOW64\comsvcs.dll
A C:\Windows\SysWOW64\comuid.dll
A C:\Windows\SysWOW64\connect.dll
A C:\Windows\SysWOW64\console.dll
A C:\Windows\SysWOW64\control.exe
A C:\Windows\SysWOW64\convert.exe
A C:\Windows\SysWOW64\CPFilters.dll
A I C:\Windows\SysWOW64\craxdrt.dll
A C:\Windows\SysWOW64\credssp.dll
A C:\Windows\SysWOW64\credui.dll
A C:\Windows\SysWOW64\credwiz.exe
A I C:\Windows\SysWOW64\crpaig32.dll
A I C:\Windows\SysWOW64\Crpaig80.dll
A I C:\Windows\SysWOW64\crpe32.dll
A C:\Windows\SysWOW64\crtdll.dll
A I C:\Windows\SysWOW64\crviewer.dll
A I C:\Windows\SysWOW64\Crxlat32.dll
A C:\Windows\SysWOW64\crypt32.dll
A C:\Windows\SysWOW64\cryptbase.dll
A C:\Windows\SysWOW64\cryptdlg.dll
A C:\Windows\SysWOW64\cryptdll.dll
A C:\Windows\SysWOW64\cryptext.dll
A C:\Windows\SysWOW64\cryptnet.dll
A C:\Windows\SysWOW64\cryptsp.dll
A C:\Windows\SysWOW64\cryptsvc.dll
A C:\Windows\SysWOW64\cryptui.dll
A C:\Windows\SysWOW64\cryptxml.dll
A C:\Windows\SysWOW64\cscapi.dll
A C:\Windows\SysWOW64\cscdll.dll
A C:\Windows\SysWOW64\cscript.exe
A C:\Windows\SysWOW64\csrr.rs
A C:\Windows\SysWOW64\CSVer.dll
A C:\Windows\SysWOW64\ctfmon.exe
A C:\Windows\SysWOW64\ctl3d32.dll
A C:\Windows\SysWOW64\cttune.exe
A C:\Windows\SysWOW64\cttunesvr.exe
A C:\Windows\SysWOW64\C_037.NLS
A C:\Windows\SysWOW64\C_10000.NLS
A C:\Windows\SysWOW64\C_10001.NLS
A C:\Windows\SysWOW64\C_10002.NLS
A C:\Windows\SysWOW64\C_10003.NLS
A C:\Windows\SysWOW64\C_10004.NLS
A C:\Windows\SysWOW64\C_10005.NLS
A C:\Windows\SysWOW64\C_10006.NLS
A C:\Windows\SysWOW64\C_10007.NLS
A C:\Windows\SysWOW64\C_10008.NLS
A C:\Windows\SysWOW64\C_10010.NLS
A C:\Windows\SysWOW64\C_10017.NLS
A C:\Windows\SysWOW64\C_10021.NLS
A C:\Windows\SysWOW64\C_10029.NLS
A C:\Windows\SysWOW64\C_10079.NLS
A C:\Windows\SysWOW64\C_10081.NLS
A C:\Windows\SysWOW64\C_10082.NLS
A C:\Windows\SysWOW64\C_1026.NLS
A C:\Windows\SysWOW64\C_1047.NLS
A C:\Windows\SysWOW64\C_1140.NLS
A C:\Windows\SysWOW64\C_1141.NLS
A C:\Windows\SysWOW64\C_1142.NLS
A C:\Windows\SysWOW64\C_1143.NLS
A C:\Windows\SysWOW64\C_1144.NLS
A C:\Windows\SysWOW64\C_1145.NLS
A C:\Windows\SysWOW64\C_1146.NLS
A C:\Windows\SysWOW64\C_1147.NLS
A C:\Windows\SysWOW64\C_1148.NLS
A C:\Windows\SysWOW64\C_1149.NLS
A C:\Windows\SysWOW64\C_1250.NLS
A C:\Windows\SysWOW64\C_1251.NLS
A C:\Windows\SysWOW64\C_1252.NLS
A C:\Windows\SysWOW64\C_1253.NLS
A C:\Windows\SysWOW64\C_1254.NLS
A C:\Windows\SysWOW64\C_1255.NLS
A C:\Windows\SysWOW64\C_1256.NLS
A C:\Windows\SysWOW64\C_1257.NLS
A C:\Windows\SysWOW64\C_1258.NLS
A C:\Windows\SysWOW64\C_1361.NLS
A C:\Windows\SysWOW64\C_20000.NLS
A C:\Windows\SysWOW64\C_20001.NLS
A C:\Windows\SysWOW64\C_20002.NLS
A C:\Windows\SysWOW64\C_20003.NLS
A C:\Windows\SysWOW64\C_20004.NLS
A C:\Windows\SysWOW64\C_20005.NLS
A C:\Windows\SysWOW64\C_20105.NLS
A C:\Windows\SysWOW64\C_20106.NLS
A C:\Windows\SysWOW64\C_20107.NLS
A C:\Windows\SysWOW64\C_20108.NLS
A C:\Windows\SysWOW64\C_20127.NLS
A C:\Windows\SysWOW64\C_20261.NLS
A C:\Windows\SysWOW64\C_20269.NLS
A C:\Windows\SysWOW64\C_20273.NLS
A C:\Windows\SysWOW64\C_20277.NLS
A C:\Windows\SysWOW64\C_20278.NLS
A C:\Windows\SysWOW64\C_20280.NLS
A C:\Windows\SysWOW64\C_20284.NLS
A C:\Windows\SysWOW64\C_20285.NLS
A C:\Windows\SysWOW64\C_20290.NLS
A C:\Windows\SysWOW64\C_20297.NLS
A C:\Windows\SysWOW64\C_20420.NLS
A C:\Windows\SysWOW64\C_20423.NLS
A C:\Windows\SysWOW64\C_20424.NLS
A C:\Windows\SysWOW64\C_20833.NLS
A C:\Windows\SysWOW64\C_20838.NLS
A C:\Windows\SysWOW64\C_20866.NLS
A C:\Windows\SysWOW64\C_20871.NLS
A C:\Windows\SysWOW64\C_20880.NLS
A C:\Windows\SysWOW64\C_20905.NLS
A C:\Windows\SysWOW64\C_20924.NLS
A C:\Windows\SysWOW64\C_20932.NLS
A C:\Windows\SysWOW64\C_20936.NLS
A C:\Windows\SysWOW64\C_20949.NLS
A C:\Windows\SysWOW64\C_21025.NLS
A C:\Windows\SysWOW64\C_21027.NLS
A C:\Windows\SysWOW64\C_21866.NLS
A C:\Windows\SysWOW64\C_28591.NLS
A C:\Windows\SysWOW64\C_28592.NLS
A C:\Windows\SysWOW64\C_28593.NLS
A C:\Windows\SysWOW64\C_28594.NLS
A C:\Windows\SysWOW64\C_28595.NLS
A C:\Windows\SysWOW64\C_28596.NLS
A C:\Windows\SysWOW64\C_28597.NLS
A C:\Windows\SysWOW64\C_28598.NLS
A C:\Windows\SysWOW64\C_28599.NLS
A C:\Windows\SysWOW64\c_28603.nls
A C:\Windows\SysWOW64\C_28605.NLS
A C:\Windows\SysWOW64\C_437.NLS
A C:\Windows\SysWOW64\C_500.NLS
A C:\Windows\SysWOW64\C_708.NLS
A C:\Windows\SysWOW64\C_720.NLS
A C:\Windows\SysWOW64\C_737.NLS
A C:\Windows\SysWOW64\C_775.NLS
A C:\Windows\SysWOW64\C_850.NLS
A C:\Windows\SysWOW64\C_852.NLS
A C:\Windows\SysWOW64\C_855.NLS
A C:\Windows\SysWOW64\C_857.NLS
A C:\Windows\SysWOW64\C_858.NLS
A C:\Windows\SysWOW64\C_860.NLS
A C:\Windows\SysWOW64\C_861.NLS
A C:\Windows\SysWOW64\C_862.NLS
A C:\Windows\SysWOW64\C_863.NLS
A C:\Windows\SysWOW64\C_864.NLS
A C:\Windows\SysWOW64\C_865.NLS
A C:\Windows\SysWOW64\C_866.NLS
A C:\Windows\SysWOW64\C_869.NLS
A C:\Windows\SysWOW64\C_870.NLS
A C:\Windows\SysWOW64\C_874.NLS
A C:\Windows\SysWOW64\C_875.NLS
A C:\Windows\SysWOW64\C_932.NLS
A C:\Windows\SysWOW64\C_936.NLS
A C:\Windows\SysWOW64\C_949.NLS
A C:\Windows\SysWOW64\C_950.NLS
A C:\Windows\SysWOW64\C_G18030.DLL
A C:\Windows\SysWOW64\C_IS2022.DLL
A C:\Windows\SysWOW64\C_ISCII.DLL
A C:\Windows\SysWOW64\d2d1.dll
A C:\Windows\SysWOW64\d3d10.dll
A C:\Windows\SysWOW64\d3d10core.dll
A C:\Windows\SysWOW64\d3d10level9.dll
A C:\Windows\SysWOW64\d3d10warp.dll
A C:\Windows\SysWOW64\d3d10_1.dll
A C:\Windows\SysWOW64\d3d10_1core.dll
A C:\Windows\SysWOW64\d3d11.dll
A C:\Windows\SysWOW64\d3d8.dll
A C:\Windows\SysWOW64\d3d8thk.dll
A C:\Windows\SysWOW64\d3d9.dll
A C:\Windows\SysWOW64\D3DCompiler_33.dll
A C:\Windows\SysWOW64\D3DCompiler_34.dll
A C:\Windows\SysWOW64\D3DCompiler_35.dll
A C:\Windows\SysWOW64\D3DCompiler_36.dll
A C:\Windows\SysWOW64\D3DCompiler_41.dll
A C:\Windows\SysWOW64\d3dim.dll
A C:\Windows\SysWOW64\d3dim700.dll
A C:\Windows\SysWOW64\d3dramp.dll
A C:\Windows\SysWOW64\d3dx10.dll
A C:\Windows\SysWOW64\d3dx10_33.dll
A C:\Windows\SysWOW64\d3dx10_34.dll
A C:\Windows\SysWOW64\d3dx10_35.dll
A C:\Windows\SysWOW64\d3dx10_36.dll
A C:\Windows\SysWOW64\d3dx10_41.dll
A C:\Windows\SysWOW64\d3dx10_42.dll
A C:\Windows\SysWOW64\d3dx9_24.dll
A C:\Windows\SysWOW64\d3dx9_25.dll
A C:\Windows\SysWOW64\d3dx9_26.dll
A C:\Windows\SysWOW64\d3dx9_27.dll
A C:\Windows\SysWOW64\d3dx9_28.dll
A C:\Windows\SysWOW64\d3dx9_29.dll
A C:\Windows\SysWOW64\d3dx9_30.dll
A C:\Windows\SysWOW64\d3dx9_31.dll
A C:\Windows\SysWOW64\d3dx9_32.dll
A C:\Windows\SysWOW64\d3dx9_33.dll
A C:\Windows\SysWOW64\d3dx9_34.dll
A C:\Windows\SysWOW64\d3dx9_35.dll
A C:\Windows\SysWOW64\d3dx9_36.dll
A C:\Windows\SysWOW64\D3DX9_41.dll
A C:\Windows\SysWOW64\d3dxof.dll
A C:\Windows\SysWOW64\dataclen.dll
A C:\Windows\SysWOW64\davclnt.dll
A C:\Windows\SysWOW64\davhlpr.dll
A C:\Windows\SysWOW64\dbgeng.dll
A C:\Windows\SysWOW64\dbghelp.dll
A C:\Windows\SysWOW64\dbnetlib.dll
A C:\Windows\SysWOW64\dbnmpntw.dll
A C:\Windows\SysWOW64\dccw.exe
A C:\Windows\SysWOW64\dciman32.dll
A C:\Windows\SysWOW64\dcomcnfg.exe
A C:\Windows\SysWOW64\DDACLSys.dll
A C:\Windows\SysWOW64\ddodiag.exe
A C:\Windows\SysWOW64\DDOIProxy.dll
A C:\Windows\SysWOW64\DDORes.dll
A C:\Windows\SysWOW64\ddraw.dll
A C:\Windows\SysWOW64\ddrawex.dll
A C:\Windows\SysWOW64\defaultlocationcpl.dll
A C:\Windows\SysWOW64\deployJava1.dll
A C:\Windows\SysWOW64\desk.cpl
A C:\Windows\SysWOW64\deskadp.dll
A C:\Windows\SysWOW64\deskmon.dll
A C:\Windows\SysWOW64\deskperf.dll
A C:\Windows\SysWOW64\devenum.dll
A C:\Windows\SysWOW64\DeviceCenter.dll
A C:\Windows\SysWOW64\DeviceDisplayStatusManager.dll
A C:\Windows\SysWOW64\DeviceMetadataParsers.dll
A C:\Windows\SysWOW64\DevicePairing.dll
A C:\Windows\SysWOW64\DevicePairingFolder.dll
A C:\Windows\SysWOW64\DevicePairingHandler.dll
A C:\Windows\SysWOW64\DevicePairingProxy.dll
A C:\Windows\SysWOW64\DevicePairingWizard.exe
A C:\Windows\SysWOW64\DeviceProperties.exe
A C:\Windows\SysWOW64\DeviceUxRes.dll
A C:\Windows\SysWOW64\devmgmt.msc
A C:\Windows\SysWOW64\devmgr.dll
A C:\Windows\SysWOW64\devobj.dll
A C:\Windows\SysWOW64\devrtl.dll
A C:\Windows\SysWOW64\dfrgui.exe
A C:\Windows\SysWOW64\dfscli.dll
A C:\Windows\SysWOW64\dfshim.dll
A C:\Windows\SysWOW64\DfsShlEx.dll
A C:\Windows\SysWOW64\dhcpcmonitor.dll
A C:\Windows\SysWOW64\dhcpcore.dll
A C:\Windows\SysWOW64\dhcpcore6.dll
A C:\Windows\SysWOW64\dhcpcsvc.dll
A C:\Windows\SysWOW64\dhcpcsvc6.dll
A C:\Windows\SysWOW64\DHCPQEC.DLL
A C:\Windows\SysWOW64\dhcpsapi.dll
A C:\Windows\SysWOW64\dialer.exe
A C:\Windows\SysWOW64\diantz.exe
A C:\Windows\SysWOW64\difxapi.dll
A C:\Windows\SysWOW64\dimsjob.dll
A C:\Windows\SysWOW64\dimsroam.dll
A C:\Windows\SysWOW64\dinput.dll
A C:\Windows\SysWOW64\dinput8.dll
A C:\Windows\SysWOW64\diskcomp.com
A C:\Windows\SysWOW64\diskcopy.com
A C:\Windows\SysWOW64\diskcopy.dll
A C:\Windows\SysWOW64\diskmgmt.msc
A C:\Windows\SysWOW64\diskpart.exe
A C:\Windows\SysWOW64\diskperf.exe
A C:\Windows\SysWOW64\diskraid.exe
A C:\Windows\SysWOW64\Dism.exe
A C:\Windows\SysWOW64\dispex.dll
A C:\Windows\SysWOW64\Display.dll
A C:\Windows\SysWOW64\DisplaySwitch.exe
A C:\Windows\SysWOW64\dllhost.exe
A C:\Windows\SysWOW64\dllhst3g.exe
A C:\Windows\SysWOW64\dmband.dll
A C:\Windows\SysWOW64\dmcompos.dll
A C:\Windows\SysWOW64\dmdlgs.dll
A C:\Windows\SysWOW64\dmdskmgr.dll
A C:\Windows\SysWOW64\dmdskres.dll
A C:\Windows\SysWOW64\dmdskres2.dll
A C:\Windows\SysWOW64\dmime.dll
A C:\Windows\SysWOW64\dmintf.dll
A C:\Windows\SysWOW64\dmloader.dll
A C:\Windows\SysWOW64\dmocx.dll
A C:\Windows\SysWOW64\dmrc.dll
A C:\Windows\SysWOW64\dmscript.dll
A C:\Windows\SysWOW64\dmstyle.dll
A C:\Windows\SysWOW64\dmsynth.dll
A C:\Windows\SysWOW64\dmusic.dll
A C:\Windows\SysWOW64\dmutil.dll
A C:\Windows\SysWOW64\dmvdsitf.dll
A C:\Windows\SysWOW64\dmview.ocx
A C:\Windows\SysWOW64\dns-sd.exe
A C:\Windows\SysWOW64\dnsapi.dll
A C:\Windows\SysWOW64\dnscacheugc.exe
A C:\Windows\SysWOW64\dnscmmc.dll
A C:\Windows\SysWOW64\dnssd.dll
A C:\Windows\SysWOW64\dnssdX.dll
A C:\Windows\SysWOW64\docprop.dll
A C:\Windows\SysWOW64\doskey.exe
A C:\Windows\SysWOW64\dot3api.dll
A C:\Windows\SysWOW64\dot3cfg.dll
A C:\Windows\SysWOW64\dot3dlg.dll
A C:\Windows\SysWOW64\dot3gpclnt.dll
A C:\Windows\SysWOW64\dot3gpui.dll
A C:\Windows\SysWOW64\dot3hc.dll
A C:\Windows\SysWOW64\dot3msm.dll
A C:\Windows\SysWOW64\dot3ui.dll
A C:\Windows\SysWOW64\dpapimig.exe
A C:\Windows\SysWOW64\dpapiprovider.dll
A C:\Windows\SysWOW64\DpiScaling.exe
A C:\Windows\SysWOW64\dplaysvr.exe
A C:\Windows\SysWOW64\dplayx.dll
A C:\Windows\SysWOW64\dpmodemx.dll
A C:\Windows\SysWOW64\dpnaddr.dll
A C:\Windows\SysWOW64\dpnathlp.dll
A C:\Windows\SysWOW64\dpnet.dll
A C:\Windows\SysWOW64\dpnhpast.dll
A C:\Windows\SysWOW64\dpnhupnp.dll
A C:\Windows\SysWOW64\dpnlobby.dll
A C:\Windows\SysWOW64\dpnsvr.exe
A C:\Windows\SysWOW64\dpwsockx.dll
A C:\Windows\SysWOW64\dpx.dll
A C:\Windows\SysWOW64\driverquery.exe
A C:\Windows\SysWOW64\drmmgrtn.dll
A C:\Windows\SysWOW64\drmv2clt.dll
A C:\Windows\SysWOW64\drprov.dll
A C:\Windows\SysWOW64\drt.dll
A C:\Windows\SysWOW64\drtprov.dll
A C:\Windows\SysWOW64\drttransport.dll
A C:\Windows\SysWOW64\drvinst.exe
A C:\Windows\SysWOW64\drvstore.dll
A C:\Windows\SysWOW64\ds32gt.dll
A C:\Windows\SysWOW64\dsauth.dll
A C:\Windows\SysWOW64\dsdmo.dll
A C:\Windows\SysWOW64\DShowRdpFilter.dll
A C:\Windows\SysWOW64\dskquota.dll
A C:\Windows\SysWOW64\dskquoui.dll
A C:\Windows\SysWOW64\dsound.dll
A C:\Windows\SysWOW64\dsprop.dll
A C:\Windows\SysWOW64\dsquery.dll
A C:\Windows\SysWOW64\dsrole.dll
A C:\Windows\SysWOW64\dssec.dat
A C:\Windows\SysWOW64\dssec.dll
A C:\Windows\SysWOW64\dssenh.dll
A C:\Windows\SysWOW64\dsuiext.dll
A C:\Windows\SysWOW64\dswave.dll
A C:\Windows\SysWOW64\dtsh.dll
A C:\Windows\SysWOW64\dui70.dll
A C:\Windows\SysWOW64\duser.dll
A C:\Windows\SysWOW64\dvdplay.exe
A C:\Windows\SysWOW64\dvdupgrd.exe
A C:\Windows\SysWOW64\dwmapi.dll
A C:\Windows\SysWOW64\dwmcore.dll
A C:\Windows\SysWOW64\DWrite.dll
A C:\Windows\SysWOW64\DWWIN.EXE
A C:\Windows\SysWOW64\dxdiag.exe
A C:\Windows\SysWOW64\dxdiagn.dll
A C:\Windows\SysWOW64\dxgi.dll
A C:\Windows\SysWOW64\dxmasf.dll
A C:\Windows\SysWOW64\DXPTaskRingtone.dll
A C:\Windows\SysWOW64\DxpTaskSync.dll
A C:\Windows\SysWOW64\dxtmsft.dll
A C:\Windows\SysWOW64\dxtrans.dll
A C:\Windows\SysWOW64\dxva2.dll
A C:\Windows\SysWOW64\eapp3hst.dll
A C:\Windows\SysWOW64\eappcfg.dll
A C:\Windows\SysWOW64\eappgnui.dll
A C:\Windows\SysWOW64\eapphost.dll
A C:\Windows\SysWOW64\eappprxy.dll
A C:\Windows\SysWOW64\EAPQEC.DLL
A I C:\Windows\SysWOW64\EBLib.DLL
A C:\Windows\SysWOW64\efsadu.dll
A C:\Windows\SysWOW64\efscore.dll
A C:\Windows\SysWOW64\efsui.exe
A C:\Windows\SysWOW64\efsutil.dll
A C:\Windows\SysWOW64\EhStorAPI.dll
A C:\Windows\SysWOW64\EhStorAuthn.exe
A C:\Windows\SysWOW64\EhStorPwdMgr.dll
A C:\Windows\SysWOW64\EhStorShell.dll
A C:\Windows\SysWOW64\els.dll
A C:\Windows\SysWOW64\ELSCore.dll
A C:\Windows\SysWOW64\elslad.dll
A C:\Windows\SysWOW64\elsTrans.dll
A C:\Windows\SysWOW64\encapi.dll
A C:\Windows\SysWOW64\EncDec.dll
A C:\Windows\SysWOW64\eqossnap.dll
A C:\Windows\SysWOW64\es.dll
A C:\Windows\SysWOW64\esent.dll
A C:\Windows\SysWOW64\esentprf.dll
A C:\Windows\SysWOW64\esentutl.exe
A C:\Windows\SysWOW64\esrb.rs
A C:\Windows\SysWOW64\eudcedit.exe
A C:\Windows\SysWOW64\eventcls.dll
A C:\Windows\SysWOW64\eventcreate.exe
A C:\Windows\SysWOW64\EventViewer_EventDetails.xsl
A C:\Windows\SysWOW64\eventvwr.exe
A C:\Windows\SysWOW64\eventvwr.msc
A C:\Windows\SysWOW64\evr.dll
A C:\Windows\SysWOW64\expand.exe
A C:\Windows\SysWOW64\explorer.exe
A C:\Windows\SysWOW64\ExplorerFrame.dll
A C:\Windows\SysWOW64\expsrv.dll
A C:\Windows\SysWOW64\extrac32.exe
A C:\Windows\SysWOW64\f3ahvoas.dll
A C:\Windows\SysWOW64\Faultrep.dll
A C:\Windows\SysWOW64\fc.exe
A C:\Windows\SysWOW64\fdBth.dll
A C:\Windows\SysWOW64\fdBthProxy.dll
A C:\Windows\SysWOW64\fde.dll
A C:\Windows\SysWOW64\fdeploy.dll
A C:\Windows\SysWOW64\fdPnp.dll
A C:\Windows\SysWOW64\fdProxy.dll
A C:\Windows\SysWOW64\fdSSDP.dll
A C:\Windows\SysWOW64\fdWCN.dll
A C:\Windows\SysWOW64\fdWNet.dll
A C:\Windows\SysWOW64\fdWSD.dll
A C:\Windows\SysWOW64\feclient.dll
A C:\Windows\SysWOW64\filemgmt.dll
A C:\Windows\SysWOW64\find.exe
A C:\Windows\SysWOW64\findnetprinters.dll
A C:\Windows\SysWOW64\findstr.exe
A C:\Windows\SysWOW64\finger.exe
A C:\Windows\SysWOW64\Firewall.cpl
A C:\Windows\SysWOW64\FirewallAPI.dll
A C:\Windows\SysWOW64\FirewallControlPanel.dll
A C:\Windows\SysWOW64\fixmapi.exe
A C:\Windows\SysWOW64\FlashPlayerApp.exe
A C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
A C:\Windows\SysWOW64\fltLib.dll
A C:\Windows\SysWOW64\fltMC.exe
A C:\Windows\SysWOW64\FM20.DLL
A C:\Windows\SysWOW64\FM20ENU.DLL
A C:\Windows\SysWOW64\fmifs.dll
A C:\Windows\SysWOW64\fms.dll
A C:\Windows\SysWOW64\fontext.dll
A C:\Windows\SysWOW64\fontsub.dll
A C:\Windows\SysWOW64\fontview.exe
A C:\Windows\SysWOW64\forfiles.exe
A C:\Windows\SysWOW64\format.com
A C:\Windows\SysWOW64\fphc.dll
A C:\Windows\SysWOW64\framedyn.dll
A C:\Windows\SysWOW64\framedynos.dll
A C:\Windows\SysWOW64\fsmgmt.msc
A C:\Windows\SysWOW64\fsutil.exe
A C:\Windows\SysWOW64\fthsvc.dll
A C:\Windows\SysWOW64\ftp.exe
A C:\Windows\SysWOW64\fundisc.dll
A C:\Windows\SysWOW64\fwcfg.dll
A C:\Windows\SysWOW64\FWPUCLNT.DLL
A C:\Windows\SysWOW64\FwRemoteSvr.dll
A C:\Windows\SysWOW64\FXSAPI.dll
A C:\Windows\SysWOW64\FXSCOM.dll
A C:\Windows\SysWOW64\FXSCOMEX.dll
A C:\Windows\SysWOW64\FXSEXT32.dll
A C:\Windows\SysWOW64\FXSRESM.dll
A C:\Windows\SysWOW64\FXSXP32.dll
A C:\Windows\SysWOW64\g711codc.ax
A C:\Windows\SysWOW64\gameux.dll
A C:\Windows\SysWOW64\GameUXLegacyGDFs.dll
A C:\Windows\SysWOW64\gb2312.uce
A C:\Windows\SysWOW64\gcdef.dll
A C:\Windows\SysWOW64\gdi32.dll
A C:\Windows\SysWOW64\GEARAspi.dll
A C:\Windows\SysWOW64\getmac.exe
A C:\Windows\SysWOW64\getuname.dll
A C:\Windows\SysWOW64\glmf32.dll
A C:\Windows\SysWOW64\glu32.dll
A C:\Windows\SysWOW64\gpapi.dll
A C:\Windows\SysWOW64\gpedit.dll
A C:\Windows\SysWOW64\gpprnext.dll
A C:\Windows\SysWOW64\gpresult.exe
A C:\Windows\SysWOW64\gptext.dll
A C:\Windows\SysWOW64\gpupdate.exe
A C:\Windows\SysWOW64\grb.rs
A C:\Windows\SysWOW64\grpconv.exe
A C:\Windows\SysWOW64\hbaapi.dll
A C:\Windows\SysWOW64\hcproviders.dll
A C:\Windows\SysWOW64\hdwwiz.cpl
A C:\Windows\SysWOW64\hdwwiz.exe
A C:\Windows\SysWOW64\help.exe
A C:\Windows\SysWOW64\HelpPaneProxy.dll
A C:\Windows\SysWOW64\hgcpl.dll
A C:\Windows\SysWOW64\hh.exe
A C:\Windows\SysWOW64\hhctrl.ocx
A C:\Windows\SysWOW64\hhsetup.dll
A C:\Windows\SysWOW64\hid.dll
A C:\Windows\SysWOW64\hidphone.tsp
A C:\Windows\SysWOW64\hidserv.dll
A C:\Windows\SysWOW64\hlink.dll
A C:\Windows\SysWOW64\hnetcfg.dll
A C:\Windows\SysWOW64\hnetmon.dll
A C:\Windows\SysWOW64\HOSTNAME.EXE
A C:\Windows\SysWOW64\html.iec
A C:\Windows\SysWOW64\httpapi.dll
A C:\Windows\SysWOW64\htui.dll
A C:\Windows\SysWOW64\iac25_32.ax
A C:\Windows\SysWOW64\ias.dll
A C:\Windows\SysWOW64\iasacct.dll
A C:\Windows\SysWOW64\iasads.dll
A C:\Windows\SysWOW64\iasdatastore.dll
A C:\Windows\SysWOW64\iashlpr.dll
A C:\Windows\SysWOW64\IasMigPlugin.dll
A C:\Windows\SysWOW64\iasnap.dll
A C:\Windows\SysWOW64\iaspolcy.dll
A C:\Windows\SysWOW64\iasrad.dll
A C:\Windows\SysWOW64\iasrecst.dll
A C:\Windows\SysWOW64\iassam.dll
A C:\Windows\SysWOW64\iassdo.dll
A C:\Windows\SysWOW64\iassvcs.dll
A C:\Windows\SysWOW64\icacls.exe
A C:\Windows\SysWOW64\icardagt.exe
A C:\Windows\SysWOW64\icardie.dll
A C:\Windows\SysWOW64\icardres.dll
A C:\Windows\SysWOW64\iccvid.dll
A C:\Windows\SysWOW64\icm32.dll
A C:\Windows\SysWOW64\icmp.dll
A C:\Windows\SysWOW64\icmui.dll
A C:\Windows\SysWOW64\IconCodecService.dll
A C:\Windows\SysWOW64\icrav03.rat
A C:\Windows\SysWOW64\icsigd.dll
A C:\Windows\SysWOW64\icsunattend.exe
A C:\Windows\SysWOW64\ideograf.uce
A C:\Windows\SysWOW64\idndl.dll
A C:\Windows\SysWOW64\IDStore.dll
A C:\Windows\SysWOW64\ie4uinit.exe
A C:\Windows\SysWOW64\IEAdvpack.dll
A C:\Windows\SysWOW64\ieakeng.dll
A C:\Windows\SysWOW64\ieaksie.dll
A C:\Windows\SysWOW64\ieakui.dll
A C:\Windows\SysWOW64\ieapfltr.dat
A C:\Windows\SysWOW64\ieapfltr.dll
A C:\Windows\SysWOW64\iedkcs32.dll
A C:\Windows\SysWOW64\ieframe.dll
A C:\Windows\SysWOW64\iepeers.dll
A C:\Windows\SysWOW64\iernonce.dll
A C:\Windows\SysWOW64\iertutil.dll
A C:\Windows\SysWOW64\iesetup.dll
A C:\Windows\SysWOW64\iesysprep.dll
A C:\Windows\SysWOW64\ieui.dll
A C:\Windows\SysWOW64\ieuinit.inf
A C:\Windows\SysWOW64\ieUnatt.exe
A C:\Windows\SysWOW64\iexpress.exe
A C:\Windows\SysWOW64\ifmon.dll
A C:\Windows\SysWOW64\ifsutil.dll
A C:\Windows\SysWOW64\ifsutilx.dll
A C:\Windows\SysWOW64\imaadp32.acm
A C:\Windows\SysWOW64\imagehlp.dll
A C:\Windows\SysWOW64\imageres.dll
A C:\Windows\SysWOW64\imagesp1.dll
A C:\Windows\SysWOW64\imapi.dll
A C:\Windows\SysWOW64\imapi2.dll
A C:\Windows\SysWOW64\imapi2fs.dll
A C:\Windows\SysWOW64\imgutil.dll
A C:\Windows\SysWOW64\IMJP10.IME
A C:\Windows\SysWOW64\IMJP10K.DLL
A C:\Windows\SysWOW64\imkr80.ime
A C:\Windows\SysWOW64\imm32.dll
A I C:\Windows\SysWOW64\Implode.dll
A C:\Windows\SysWOW64\inetcomm.dll
A C:\Windows\SysWOW64\inetcpl.cpl
A C:\Windows\SysWOW64\inetmib1.dll
A C:\Windows\SysWOW64\INETRES.dll
A I C:\Windows\SysWOW64\Inetwh32.dll
A C:\Windows\SysWOW64\InfDefaultInstall.exe
A C:\Windows\SysWOW64\infocardapi.dll
A C:\Windows\SysWOW64\infocardcpl.cpl
A C:\Windows\SysWOW64\InkEd.dll
A C:\Windows\SysWOW64\input.dll
A C:\Windows\SysWOW64\inseng.dll
A C:\Windows\SysWOW64\instnm.exe
A C:\Windows\SysWOW64\intl.cpl
A C:\Windows\SysWOW64\iologmsg.dll
A C:\Windows\SysWOW64\IPBusEnumProxy.dll
A C:\Windows\SysWOW64\ipconfig.exe
A C:\Windows\SysWOW64\IPHLPAPI.DLL
A C:\Windows\SysWOW64\iprop.dll
A C:\Windows\SysWOW64\iprtprio.dll
A C:\Windows\SysWOW64\iprtrmgr.dll
A C:\Windows\SysWOW64\ipsecsnp.dll
A C:\Windows\SysWOW64\ipsmsnap.dll
A C:\Windows\SysWOW64\ir32_32.dll
A C:\Windows\SysWOW64\ir41_32.ax
A C:\Windows\SysWOW64\ir41_qc.dll
A C:\Windows\SysWOW64\ir41_qcx.dll
A C:\Windows\SysWOW64\ir50_32.dll
A C:\Windows\SysWOW64\ir50_qc.dll
A C:\Windows\SysWOW64\ir50_qcx.dll
A C:\Windows\SysWOW64\irclass.dll
A C:\Windows\SysWOW64\irprops.cpl
A C:\Windows\SysWOW64\iscsicli.exe
A C:\Windows\SysWOW64\iscsicpl.dll
A C:\Windows\SysWOW64\iscsicpl.exe
A C:\Windows\SysWOW64\iscsidsc.dll
A C:\Windows\SysWOW64\iscsied.dll
A C:\Windows\SysWOW64\iscsium.dll
A C:\Windows\SysWOW64\iscsiwmi.dll
A C:\Windows\SysWOW64\isoburn.exe
A C:\Windows\SysWOW64\itircl.dll
A C:\Windows\SysWOW64\itss.dll
A C:\Windows\SysWOW64\iTVData.dll
A C:\Windows\SysWOW64\ivfsrc.ax
A C:\Windows\SysWOW64\iyuv_32.dll
A C:\Windows\SysWOW64\java.exe
A C:\Windows\SysWOW64\javaw.exe
A C:\Windows\SysWOW64\javaws.exe
A C:\Windows\SysWOW64\jdns_sd.dll
A I C:\Windows\SysWOW64\JETCOMP.exe
A C:\Windows\SysWOW64\joy.cpl
A C:\Windows\SysWOW64\jscript.dll
A C:\Windows\SysWOW64\jscript9.dll
A C:\Windows\SysWOW64\jsproxy.dll
A C:\Windows\SysWOW64\kanji_1.uce
A C:\Windows\SysWOW64\kanji_2.uce
A C:\Windows\SysWOW64\kbd101.DLL
A C:\Windows\SysWOW64\kbd101a.DLL
A C:\Windows\SysWOW64\kbd101b.DLL
A C:\Windows\SysWOW64\kbd101c.DLL
A C:\Windows\SysWOW64\kbd103.DLL
A C:\Windows\SysWOW64\kbd106.dll
A C:\Windows\SysWOW64\kbd106n.dll
A C:\Windows\SysWOW64\KBDA1.DLL
A C:\Windows\SysWOW64\KBDA2.DLL
A C:\Windows\SysWOW64\KBDA3.DLL
A C:\Windows\SysWOW64\KBDAL.DLL
A C:\Windows\SysWOW64\KBDARME.DLL
A C:\Windows\SysWOW64\KBDARMW.DLL
A C:\Windows\SysWOW64\kbdax2.dll
A C:\Windows\SysWOW64\KBDAZE.DLL
A C:\Windows\SysWOW64\KBDAZEL.DLL
A C:\Windows\SysWOW64\KBDBASH.DLL
A C:\Windows\SysWOW64\KBDBE.DLL
A C:\Windows\SysWOW64\KBDBENE.DLL
A C:\Windows\SysWOW64\KBDBGPH.DLL
A C:\Windows\SysWOW64\KBDBGPH1.DLL
A C:\Windows\SysWOW64\KBDBHC.DLL
A C:\Windows\SysWOW64\KBDBLR.DLL
A C:\Windows\SysWOW64\KBDBR.DLL
A C:\Windows\SysWOW64\KBDBU.DLL
A C:\Windows\SysWOW64\KBDBULG.DLL
A C:\Windows\SysWOW64\KBDCA.DLL
A C:\Windows\SysWOW64\KBDCAN.DLL
A C:\Windows\SysWOW64\KBDCR.DLL
A C:\Windows\SysWOW64\KBDCZ.DLL
A C:\Windows\SysWOW64\KBDCZ1.DLL
A C:\Windows\SysWOW64\KBDCZ2.DLL
A C:\Windows\SysWOW64\KBDDA.DLL
A C:\Windows\SysWOW64\KBDDIV1.DLL
A C:\Windows\SysWOW64\KBDDIV2.DLL
A C:\Windows\SysWOW64\KBDDV.DLL
A C:\Windows\SysWOW64\KBDES.DLL
A C:\Windows\SysWOW64\KBDEST.DLL
A C:\Windows\SysWOW64\KBDFA.DLL
A C:\Windows\SysWOW64\KBDFC.DLL
A C:\Windows\SysWOW64\KBDFI.DLL
A C:\Windows\SysWOW64\KBDFI1.DLL
A C:\Windows\SysWOW64\KBDFO.DLL
A C:\Windows\SysWOW64\KBDFR.DLL
A C:\Windows\SysWOW64\KBDGAE.DLL
A C:\Windows\SysWOW64\KBDGEO.DLL
A C:\Windows\SysWOW64\kbdgeoer.dll
A C:\Windows\SysWOW64\kbdgeoqw.dll
A C:\Windows\SysWOW64\KBDGKL.DLL
A C:\Windows\SysWOW64\KBDGR.DLL
A C:\Windows\SysWOW64\KBDGR1.DLL
A C:\Windows\SysWOW64\KBDGRLND.DLL
A C:\Windows\SysWOW64\KBDHAU.DLL
A C:\Windows\SysWOW64\KBDHE.DLL
A C:\Windows\SysWOW64\KBDHE220.DLL
A C:\Windows\SysWOW64\KBDHE319.DLL
A C:\Windows\SysWOW64\KBDHEB.DLL
A C:\Windows\SysWOW64\KBDHELA2.DLL
A C:\Windows\SysWOW64\KBDHELA3.DLL
A C:\Windows\SysWOW64\KBDHEPT.DLL
A C:\Windows\SysWOW64\KBDHU.DLL
A C:\Windows\SysWOW64\KBDHU1.DLL
A C:\Windows\SysWOW64\kbdibm02.DLL
A C:\Windows\SysWOW64\KBDIBO.DLL
A C:\Windows\SysWOW64\KBDIC.DLL
A C:\Windows\SysWOW64\KBDINASA.DLL
A C:\Windows\SysWOW64\KBDINBE1.DLL
A C:\Windows\SysWOW64\KBDINBE2.DLL
A C:\Windows\SysWOW64\KBDINBEN.DLL
A C:\Windows\SysWOW64\KBDINDEV.DLL
A C:\Windows\SysWOW64\KBDINGUJ.DLL
A C:\Windows\SysWOW64\KBDINHIN.DLL
A C:\Windows\SysWOW64\KBDINKAN.DLL
A C:\Windows\SysWOW64\KBDINMAL.DLL
A C:\Windows\SysWOW64\KBDINMAR.DLL
A C:\Windows\SysWOW64\KBDINORI.DLL
A C:\Windows\SysWOW64\KBDINPUN.DLL
A C:\Windows\SysWOW64\KBDINTAM.DLL
A C:\Windows\SysWOW64\KBDINTEL.DLL
A C:\Windows\SysWOW64\KBDINUK2.DLL
A C:\Windows\SysWOW64\KBDIR.DLL
A C:\Windows\SysWOW64\KBDIT.DLL
A C:\Windows\SysWOW64\KBDIT142.DLL
A C:\Windows\SysWOW64\KBDIULAT.DLL
A C:\Windows\SysWOW64\KBDJPN.DLL
A C:\Windows\SysWOW64\KBDKAZ.DLL
A C:\Windows\SysWOW64\KBDKHMR.DLL
A C:\Windows\SysWOW64\KBDKOR.DLL
A C:\Windows\SysWOW64\KBDKYR.DLL
A C:\Windows\SysWOW64\KBDLA.DLL
A C:\Windows\SysWOW64\KBDLAO.DLL
A C:\Windows\SysWOW64\kbdlk41a.dll
A C:\Windows\SysWOW64\KBDLT.DLL
A C:\Windows\SysWOW64\KBDLT1.DLL
A C:\Windows\SysWOW64\KBDLT2.DLL
A C:\Windows\SysWOW64\KBDLV.DLL
A C:\Windows\SysWOW64\KBDLV1.DLL
A C:\Windows\SysWOW64\KBDMAC.DLL
A C:\Windows\SysWOW64\KBDMACST.DLL
A C:\Windows\SysWOW64\KBDMAORI.DLL
A C:\Windows\SysWOW64\KBDMLT47.DLL
A C:\Windows\SysWOW64\KBDMLT48.DLL
A C:\Windows\SysWOW64\KBDMON.DLL
A C:\Windows\SysWOW64\KBDMONMO.DLL
A C:\Windows\SysWOW64\KBDNE.DLL
A C:\Windows\SysWOW64\kbdnec.DLL
A C:\Windows\SysWOW64\kbdnec95.DLL
A C:\Windows\SysWOW64\kbdnecat.DLL
A C:\Windows\SysWOW64\kbdnecnt.DLL
A C:\Windows\SysWOW64\KBDNEPR.DLL
A C:\Windows\SysWOW64\KBDNO.DLL
A C:\Windows\SysWOW64\KBDNO1.DLL
A C:\Windows\SysWOW64\KBDNSO.DLL
A C:\Windows\SysWOW64\KBDPASH.DLL
A C:\Windows\SysWOW64\KBDPL.DLL
A C:\Windows\SysWOW64\KBDPL1.DLL
A C:\Windows\SysWOW64\KBDPO.DLL
A C:\Windows\SysWOW64\KBDRO.DLL
A C:\Windows\SysWOW64\KBDROPR.DLL
A C:\Windows\SysWOW64\KBDROST.DLL
A C:\Windows\SysWOW64\KBDRU.DLL
A C:\Windows\SysWOW64\KBDRU1.DLL
A C:\Windows\SysWOW64\KBDSF.DLL
A C:\Windows\SysWOW64\KBDSG.DLL
A C:\Windows\SysWOW64\KBDSL.DLL
A C:\Windows\SysWOW64\KBDSL1.DLL
A C:\Windows\SysWOW64\KBDSMSFI.DLL
A C:\Windows\SysWOW64\KBDSMSNO.DLL
A C:\Windows\SysWOW64\KBDSN1.DLL
A C:\Windows\SysWOW64\KBDSOREX.DLL
A C:\Windows\SysWOW64\KBDSORS1.DLL
A C:\Windows\SysWOW64\KBDSORST.DLL
A C:\Windows\SysWOW64\KBDSP.DLL
A C:\Windows\SysWOW64\KBDSW.DLL
A C:\Windows\SysWOW64\KBDSW09.DLL
A C:\Windows\SysWOW64\KBDSYR1.DLL
A C:\Windows\SysWOW64\KBDSYR2.DLL
A C:\Windows\SysWOW64\KBDTAJIK.DLL
A C:\Windows\SysWOW64\KBDTAT.DLL
A C:\Windows\SysWOW64\KBDTH0.DLL
A C:\Windows\SysWOW64\KBDTH1.DLL
A C:\Windows\SysWOW64\KBDTH2.DLL
A C:\Windows\SysWOW64\KBDTH3.DLL
A C:\Windows\SysWOW64\KBDTIPRC.DLL
A C:\Windows\SysWOW64\KBDTUF.DLL
A C:\Windows\SysWOW64\KBDTUQ.DLL
A C:\Windows\SysWOW64\KBDTURME.DLL
A C:\Windows\SysWOW64\KBDUGHR.DLL
A C:\Windows\SysWOW64\KBDUGHR1.DLL
A C:\Windows\SysWOW64\KBDUK.DLL
A C:\Windows\SysWOW64\KBDUKX.DLL
A C:\Windows\SysWOW64\KBDUR.DLL
A C:\Windows\SysWOW64\KBDUR1.DLL
A C:\Windows\SysWOW64\KBDURDU.DLL
A C:\Windows\SysWOW64\KBDUS.DLL
A C:\Windows\SysWOW64\KBDUSA.DLL
A C:\Windows\SysWOW64\KBDUSL.DLL
A C:\Windows\SysWOW64\KBDUSR.DLL
A C:\Windows\SysWOW64\KBDUSX.DLL
A C:\Windows\SysWOW64\KBDUZB.DLL
A C:\Windows\SysWOW64\KBDVNTC.DLL
A C:\Windows\SysWOW64\KBDWOL.DLL
A C:\Windows\SysWOW64\KBDYAK.DLL
A C:\Windows\SysWOW64\KBDYBA.DLL
A C:\Windows\SysWOW64\KBDYCC.DLL
A C:\Windows\SysWOW64\KBDYCL.DLL
A C:\Windows\SysWOW64\kerberos.dll
A C:\Windows\SysWOW64\kernel32.dll
A C:\Windows\SysWOW64\KernelBase.dll
A C:\Windows\SysWOW64\keyiso.dll
A C:\Windows\SysWOW64\keymgr.dll
A C:\Windows\SysWOW64\kmddsp.tsp
A C:\Windows\SysWOW64\korean.uce
A C:\Windows\SysWOW64\korwbrkr.dll
A C:\Windows\SysWOW64\korwbrkr.lex
A C:\Windows\SysWOW64\ksproxy.ax
A C:\Windows\SysWOW64\kstvtune.ax
A C:\Windows\SysWOW64\ksuser.dll
A C:\Windows\SysWOW64\Kswdmcap.ax
A C:\Windows\SysWOW64\ksxbar.ax
A C:\Windows\SysWOW64\ktmutil.exe
A C:\Windows\SysWOW64\ktmw32.dll
A C:\Windows\SysWOW64\l2gpstore.dll
A C:\Windows\SysWOW64\l2nacp.dll
A C:\Windows\SysWOW64\L2SecHC.dll
A C:\Windows\SysWOW64\l3codeca.acm
A C:\Windows\SysWOW64\l3codecp.acm
A C:\Windows\SysWOW64\label.exe
A C:\Windows\SysWOW64\LAPRXY.DLL
A C:\Windows\SysWOW64\lcphrase.tbl
A C:\Windows\SysWOW64\lcptr.tbl
A C:\Windows\SysWOW64\license.rtf
A C:\Windows\SysWOW64\licmgr10.dll
A C:\Windows\SysWOW64\linkinfo.dll
A C:\Windows\SysWOW64\LIVESSP.DLL
A C:\Windows\SysWOW64\loadperf.dll
A C:\Windows\SysWOW64\locale.nls
A C:\Windows\SysWOW64\localsec.dll
A C:\Windows\SysWOW64\LocationApi.dll
A C:\Windows\SysWOW64\LocationNotifications.exe
A C:\Windows\SysWOW64\locationnotificationsview.xml
A C:\Windows\SysWOW64\lodctr.exe
A C:\Windows\SysWOW64\log.txt
A C:\Windows\SysWOW64\logagent.exe
A C:\Windows\SysWOW64\loghours.dll
A C:\Windows\SysWOW64\logman.exe
A C:\Windows\SysWOW64\logoncli.dll
A C:\Windows\SysWOW64\lpk.dll
A C:\Windows\SysWOW64\lsmproxy.dll
A C:\Windows\SysWOW64\luainstall.dll
A C:\Windows\SysWOW64\lusrmgr.msc
A C:\Windows\SysWOW64\lz32.dll
A C:\Windows\SysWOW64\l_intl.nls
A C:\Windows\SysWOW64\Magnification.dll
A C:\Windows\SysWOW64\Magnify.exe
A C:\Windows\SysWOW64\main.cpl
A C:\Windows\SysWOW64\makecab.exe
A C:\Windows\SysWOW64\mapi32.dll
A C:\Windows\SysWOW64\mapistub.dll
A C:\Windows\SysWOW64\mapisvc.inf
A C:\Windows\SysWOW64\mcbuilder.exe
A C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll
A C:\Windows\SysWOW64\mciavi32.dll
A C:\Windows\SysWOW64\mcicda.dll
A C:\Windows\SysWOW64\mciqtz32.dll
A C:\Windows\SysWOW64\mciseq.dll
A C:\Windows\SysWOW64\mciwave.dll
A C:\Windows\SysWOW64\mctres.dll
A C:\Windows\SysWOW64\mdminst.dll
A C:\Windows\SysWOW64\mdmxsdk.dll
A C:\Windows\SysWOW64\MediaMetadataHandler.dll
A C:\Windows\SysWOW64\mf.dll
A C:\Windows\SysWOW64\mf3216.dll
A C:\Windows\SysWOW64\mfAACEnc.dll
A C:\Windows\SysWOW64\mfc40.dll
A C:\Windows\SysWOW64\mfc40u.dll
A C:\Windows\SysWOW64\mfc42.dll
A C:\Windows\SysWOW64\mfc42u.dll
A C:\Windows\SysWOW64\mfc43c5a.rra
A C:\Windows\SysWOW64\mfcsubs.dll
A C:\Windows\SysWOW64\mfds.dll
A C:\Windows\SysWOW64\mfdvdec.dll
A C:\Windows\SysWOW64\mferror.dll
A C:\Windows\SysWOW64\mfh264enc.dll
A C:\Windows\SysWOW64\mfmjpegdec.dll
A C:\Windows\SysWOW64\mfplat.dll
A C:\Windows\SysWOW64\MFPlay.dll
A C:\Windows\SysWOW64\mfpmp.exe
A C:\Windows\SysWOW64\mfps.dll
A C:\Windows\SysWOW64\mfreadwrite.dll
A C:\Windows\SysWOW64\mfvdsp.dll
A SHR C:\Windows\SysWOW64\mfvdsp9.dll
A C:\Windows\SysWOW64\MFWMAAEC.DLL
A C:\Windows\SysWOW64\mgmtapi.dll
A C:\Windows\SysWOW64\midimap.dll
A C:\Windows\SysWOW64\MigAutoPlay.exe
A C:\Windows\SysWOW64\migisol.dll
A C:\Windows\SysWOW64\miguiresource.dll
A C:\Windows\SysWOW64\mimefilt.dll
A C:\Windows\SysWOW64\mlang.dat
A C:\Windows\SysWOW64\mlang.dll
A I C:\Windows\SysWOW64\mmc.exe
A I C:\Windows\SysWOW64\mmcbase.dll
A C:\Windows\SysWOW64\mmci.dll
A C:\Windows\SysWOW64\mmcico.dll
A C:\Windows\SysWOW64\mmcndmgr.dll
A I C:\Windows\SysWOW64\mmcshext.dll
A C:\Windows\SysWOW64\MMDevAPI.dll
A C:\Windows\SysWOW64\mmres.dll
A C:\Windows\SysWOW64\mmsys.cpl
A C:\Windows\SysWOW64\mobsync.exe
A C:\Windows\SysWOW64\mode.com
A C:\Windows\SysWOW64\modemui.dll
A C:\Windows\SysWOW64\more.com
A C:\Windows\SysWOW64\moricons.dll
A C:\Windows\SysWOW64\mountvol.exe
A C:\Windows\SysWOW64\MP3DMOD.DLL
A C:\Windows\SysWOW64\MP43DECD.DLL
A C:\Windows\SysWOW64\MP4SDECD.DLL
A C:\Windows\SysWOW64\Mpeg2Data.ax
A C:\Windows\SysWOW64\mpg2splt.ax
A C:\Windows\SysWOW64\MPG4DECD.DLL
A C:\Windows\SysWOW64\mpr.dll
A C:\Windows\SysWOW64\mprapi.dll
A C:\Windows\SysWOW64\mprddm.dll
A C:\Windows\SysWOW64\mprdim.dll
A C:\Windows\SysWOW64\mprmsg.dll
A C:\Windows\SysWOW64\MRINFO.EXE
A C:\Windows\SysWOW64\msaatext.dll
A C:\Windows\SysWOW64\MSAC3ENC.DLL
A C:\Windows\SysWOW64\msacm32.dll
A C:\Windows\SysWOW64\msacm32.drv
A C:\Windows\SysWOW64\msadp32.acm
A C:\Windows\SysWOW64\msafd.dll
A C:\Windows\SysWOW64\msasn1.dll
A C:\Windows\SysWOW64\msaudite.dll
A C:\Windows\SysWOW64\mscandui.dll
A C:\Windows\SysWOW64\mscat32.dll
A C:\Windows\SysWOW64\msclmd.dll
A C:\Windows\SysWOW64\mscms.dll
A I C:\Windows\SysWOW64\mscomct2.ocx
A C:\Windows\SysWOW64\MSCOMCTL.OCX
A I C:\Windows\SysWOW64\mscomm32.ocx
A C:\Windows\SysWOW64\mscoree.dll
A C:\Windows\SysWOW64\mscorier.dll
A C:\Windows\SysWOW64\mscories.dll
A C:\Windows\SysWOW64\mscpx32r.dLL
A C:\Windows\SysWOW64\mscpxl32.dLL
A C:\Windows\SysWOW64\msctf.dll
A C:\Windows\SysWOW64\msctfime.ime
A C:\Windows\SysWOW64\MsCtfMonitor.dll
A C:\Windows\SysWOW64\msctfp.dll
A C:\Windows\SysWOW64\msctfui.dll
A C:\Windows\SysWOW64\msdadiag.dll
A C:\Windows\SysWOW64\msdart.dll
A I C:\Windows\SysWOW64\MSDATREP.OCX
A C:\Windows\SysWOW64\msdatsrc.tlb
A C:\Windows\SysWOW64\msdelta.dll
A C:\Windows\SysWOW64\msdmo.dll
A C:\Windows\SysWOW64\msdrm.dll
A C:\Windows\SysWOW64\msdt.exe
A C:\Windows\SysWOW64\msdtcprx.dll
A C:\Windows\SysWOW64\msdtcuiu.dll
A C:\Windows\SysWOW64\msdtcVSp1res.dll
A C:\Windows\SysWOW64\MSDvbNP.ax
A C:\Windows\SysWOW64\msdxm.ocx
A C:\Windows\SysWOW64\msdxm.tlb
A I C:\Windows\SysWOW64\msexch35.dll
A C:\Windows\SysWOW64\msexch40.dll
A I C:\Windows\SysWOW64\msexcl35.dll
A C:\Windows\SysWOW64\msexcl40.dll
A C:\Windows\SysWOW64\msfeeds.dll
A C:\Windows\SysWOW64\msfeedsbs.dll
A C:\Windows\SysWOW64\msfeedssync.exe
A I C:\Windows\SysWOW64\msflxgrd.ocx
A C:\Windows\SysWOW64\msftedit.dll
A C:\Windows\SysWOW64\msg711.acm
A C:\Windows\SysWOW64\msgsm32.acm
A C:\Windows\SysWOW64\mshta.exe
A C:\Windows\SysWOW64\mshtml.dll
A C:\Windows\SysWOW64\mshtml.tlb
A C:\Windows\SysWOW64\mshtmled.dll
A C:\Windows\SysWOW64\mshtmler.dll
A C:\Windows\SysWOW64\msi.dll
A C:\Windows\SysWOW64\msidcrl30.dll
A C:\Windows\SysWOW64\msident.dll
A C:\Windows\SysWOW64\msidle.dll
A C:\Windows\SysWOW64\msidntld.dll
A C:\Windows\SysWOW64\msieftp.dll
A C:\Windows\SysWOW64\msiexec.exe
A C:\Windows\SysWOW64\msihnd.dll
A C:\Windows\SysWOW64\msiltcfg.dll
A C:\Windows\SysWOW64\msimg32.dll
A C:\Windows\SysWOW64\msimsg.dll
A C:\Windows\SysWOW64\msimtf.dll
A C:\Windows\SysWOW64\msinfo32.exe
A C:\Windows\SysWOW64\msisip.dll
A I C:\Windows\SysWOW64\msjet35.dll
A C:\Windows\SysWOW64\msjet40.dll
A C:\Windows\SysWOW64\msjetoledb40.dll
A I C:\Windows\SysWOW64\msjint35.dll
A C:\Windows\SysWOW64\msjint40.dll
A I C:\Windows\SysWOW64\msjt4jlt.dll
A I C:\Windows\SysWOW64\MSJTER35.DLL
A C:\Windows\SysWOW64\msjter40.dll
A C:\Windows\SysWOW64\msjtes40.dll
A C:\Windows\SysWOW64\msls31.dll
A I C:\Windows\SysWOW64\msltus35.dll
A C:\Windows\SysWOW64\msltus40.dll
A I C:\Windows\SysWOW64\MSMAPI32.OCX
A I C:\Windows\SysWOW64\msmask32.ocx
A C:\Windows\SysWOW64\msmpeg2adec.dll
A C:\Windows\SysWOW64\MSMPEG2ENC.DLL
A C:\Windows\SysWOW64\msmpeg2vdec.dll
A C:\Windows\SysWOW64\msnetobj.dll
A C:\Windows\SysWOW64\MSNP.ax
A C:\Windows\SysWOW64\msobjs.dll
A C:\Windows\SysWOW64\msoeacct.dll
A C:\Windows\SysWOW64\msoert2.dll
A C:\Windows\SysWOW64\msorc32r.dll
A C:\Windows\SysWOW64\msorcl32.dll
A C:\Windows\SysWOW64\mspaint.exe
A C:\Windows\SysWOW64\mspatcha.dll
A C:\Windows\SysWOW64\mspbde40.dll
A I C:\Windows\SysWOW64\mspdox35.dll
A C:\Windows\SysWOW64\msports.dll
A C:\Windows\SysWOW64\msra.exe
A C:\Windows\SysWOW64\MsraLegacy.tlb
A C:\Windows\SysWOW64\msrating.dll
A I C:\Windows\SysWOW64\msrd2x35.dll
A C:\Windows\SysWOW64\msrd2x40.dll
A C:\Windows\SysWOW64\msrd3x40.dll
A C:\Windows\SysWOW64\msrdc.dll
A C:\Windows\SysWOW64\MsRdpWebAccess.dll
A I C:\Windows\SysWOW64\msrepl35.dll
A C:\Windows\SysWOW64\msrepl40.dll
A C:\Windows\SysWOW64\msrle32.dll
A I C:\Windows\SysWOW64\msrpfs35.dll
A C:\Windows\SysWOW64\msscntrs.dll
A C:\Windows\SysWOW64\msscp.dll
A C:\Windows\SysWOW64\msscript.ocx
A C:\Windows\SysWOW64\mssha.dll
A C:\Windows\SysWOW64\msshavmsg.dll
A C:\Windows\SysWOW64\msshooks.dll
A C:\Windows\SysWOW64\mssign32.dll
A C:\Windows\SysWOW64\mssip32.dll
A C:\Windows\SysWOW64\mssitlb.dll
A C:\Windows\SysWOW64\mssph.dll
A C:\Windows\SysWOW64\mssphtb.dll
A C:\Windows\SysWOW64\mssprxy.dll
A C:\Windows\SysWOW64\mssrch.dll
A I C:\Windows\SysWOW64\msstkprp.dll
A C:\Windows\SysWOW64\mssvp.dll
A C:\Windows\SysWOW64\msswch.dll
A C:\Windows\SysWOW64\mstask.dll
A I C:\Windows\SysWOW64\mstext35.dll
A C:\Windows\SysWOW64\mstext40.dll
A C:\Windows\SysWOW64\mstsc.exe
A C:\Windows\SysWOW64\mstscax.dll
A C:\Windows\SysWOW64\msutb.dll
A C:\Windows\SysWOW64\msv1_0.dll
A C:\Windows\SysWOW64\msvbvm60.dll
A C:\Windows\SysWOW64\msvcirt.dll
A C:\Windows\SysWOW64\msvcp60.dll
A C:\Windows\SysWOW64\msvcr100_clr0400.dll
A C:\Windows\SysWOW64\msvcrt.dll
A C:\Windows\SysWOW64\msvcrt20.dll
A C:\Windows\SysWOW64\msvcrt40.dll
A C:\Windows\SysWOW64\msvfw32.dll
A C:\Windows\SysWOW64\msvidc32.dll
A C:\Windows\SysWOW64\MSVidCtl.dll
A C:\Windows\SysWOW64\mswdat10.dll
A I C:\Windows\SysWOW64\MSWINSCK.OCX
A C:\Windows\SysWOW64\mswmdm.dll
A C:\Windows\SysWOW64\mswsock.dll
A C:\Windows\SysWOW64\mswstr10.dll
A C:\Windows\SysWOW64\msxbde40.dll
A I C:\Windows\SysWOW64\msxbse35.dll
A C:\Windows\SysWOW64\msxml3.dll
A C:\Windows\SysWOW64\msxml3r.dll
A C:\Windows\SysWOW64\msxml6.dll
A C:\Windows\SysWOW64\msxml6r.dll
A C:\Windows\SysWOW64\msyuv.dll
A C:\Windows\SysWOW64\mtstocom.exe
A C:\Windows\SysWOW64\mtxclu.dll
A C:\Windows\SysWOW64\mtxdm.dll
A C:\Windows\SysWOW64\mtxex.dll
A C:\Windows\SysWOW64\mtxlegih.dll
A C:\Windows\SysWOW64\mtxoci.dll
A C:\Windows\SysWOW64\muifontsetup.dll
A C:\Windows\SysWOW64\MuiUnattend.exe
A C:\Windows\SysWOW64\mycomput.dll
A C:\Windows\SysWOW64\mydocs.dll
A C:\Windows\SysWOW64\Mystify.scr
A C:\Windows\SysWOW64\NAPCLCFG.MSC
A C:\Windows\SysWOW64\NAPCRYPT.DLL
A C:\Windows\SysWOW64\napdsnap.dll
A C:\Windows\SysWOW64\NAPHLPR.DLL
A C:\Windows\SysWOW64\NapiNSP.dll
A C:\Windows\SysWOW64\napipsec.dll
A C:\Windows\SysWOW64\NAPMONTR.DLL
A C:\Windows\SysWOW64\NAPSTAT.EXE
A C:\Windows\SysWOW64\NativeHooks.dll
A C:\Windows\SysWOW64\NaturalLanguage6.dll
A C:\Windows\SysWOW64\NcdProp.dll
A C:\Windows\SysWOW64\nci.dll
A C:\Windows\SysWOW64\ncobjapi.dll
A C:\Windows\SysWOW64\ncpa.cpl
A C:\Windows\SysWOW64\ncrypt.dll
A C:\Windows\SysWOW64\ncryptui.dll
A C:\Windows\SysWOW64\ncsi.dll
A C:\Windows\SysWOW64\ndadmin.exe
A C:\Windows\SysWOW64\nddeapi.dll
A C:\Windows\SysWOW64\ndfapi.dll
A C:\Windows\SysWOW64\ndfetw.dll
A C:\Windows\SysWOW64\NdfEventView.xml
A C:\Windows\SysWOW64\ndfhcdiscovery.dll
A C:\Windows\SysWOW64\ndiscapCfg.dll
A C:\Windows\SysWOW64\ndishc.dll
A C:\Windows\SysWOW64\ndproxystub.dll
A C:\Windows\SysWOW64\ndptsp.tsp
A C:\Windows\SysWOW64\negoexts.dll
A C:\Windows\SysWOW64\net.exe
A C:\Windows\SysWOW64\net1.exe
A C:\Windows\SysWOW64\netapi32.dll
A C:\Windows\SysWOW64\netbios.dll
A C:\Windows\SysWOW64\netbtugc.exe
A C:\Windows\SysWOW64\netcenter.dll
A C:\Windows\SysWOW64\netcfgx.dll
A C:\Windows\SysWOW64\netcorehc.dll
A C:\Windows\SysWOW64\netdiagfx.dll
A C:\Windows\SysWOW64\netevent.dll
A C:\Windows\SysWOW64\netfxperf.dll
A C:\Windows\SysWOW64\neth.dll
A C:\Windows\SysWOW64\netid.dll
A C:\Windows\SysWOW64\netiohlp.dll
A C:\Windows\SysWOW64\netiougc.exe
A C:\Windows\SysWOW64\netjoin.dll
A C:\Windows\SysWOW64\netlogon.dll
A C:\Windows\SysWOW64\netmsg.dll
A C:\Windows\SysWOW64\netplwiz.dll
A C:\Windows\SysWOW64\Netplwiz.exe
A C:\Windows\SysWOW64\netprof.dll
A C:\Windows\SysWOW64\netprofm.dll
A C:\Windows\SysWOW64\netsh.exe
A C:\Windows\SysWOW64\netshell.dll
A C:\Windows\SysWOW64\NETSTAT.EXE
A C:\Windows\SysWOW64\netutils.dll
A C:\Windows\SysWOW64\networkexplorer.dll
A C:\Windows\SysWOW64\networkitemfactory.dll
A C:\Windows\SysWOW64\networkmap.dll
A C:\Windows\SysWOW64\newdev.dll
A C:\Windows\SysWOW64\newdev.exe
A C:\Windows\SysWOW64\nlaapi.dll
A C:\Windows\SysWOW64\nlhtml.dll
A C:\Windows\SysWOW64\nlmgp.dll
A C:\Windows\SysWOW64\nlmsprep.dll
A C:\Windows\SysWOW64\nlsbres.dll
A C:\Windows\SysWOW64\NlsData0000.dll
A C:\Windows\SysWOW64\NlsData0001.dll
A C:\Windows\SysWOW64\NlsData0002.dll
A C:\Windows\SysWOW64\NlsData0003.dll
A C:\Windows\SysWOW64\NlsData0007.dll
A C:\Windows\SysWOW64\NlsData0009.dll
A C:\Windows\SysWOW64\NlsData000a.dll
A C:\Windows\SysWOW64\NlsData000c.dll
A C:\Windows\SysWOW64\NlsData000d.dll
A C:\Windows\SysWOW64\NlsData000f.dll
A C:\Windows\SysWOW64\NlsData0010.dll
A C:\Windows\SysWOW64\NlsData0011.dll
A C:\Windows\SysWOW64\NlsData0013.dll
A C:\Windows\SysWOW64\NlsData0018.dll
A C:\Windows\SysWOW64\NlsData0019.dll
A C:\Windows\SysWOW64\NlsData001a.dll
A C:\Windows\SysWOW64\NlsData001b.dll
A C:\Windows\SysWOW64\NlsData001d.dll
A C:\Windows\SysWOW64\NlsData0020.dll
A C:\Windows\SysWOW64\NlsData0021.dll
A C:\Windows\SysWOW64\NlsData0022.dll
A C:\Windows\SysWOW64\NlsData0024.dll
A C:\Windows\SysWOW64\NlsData0026.dll
A C:\Windows\SysWOW64\NlsData0027.dll
A C:\Windows\SysWOW64\NlsData002a.dll
A C:\Windows\SysWOW64\NlsData0039.dll
A C:\Windows\SysWOW64\NlsData003e.dll
A C:\Windows\SysWOW64\NlsData0045.dll
A C:\Windows\SysWOW64\NlsData0046.dll
A C:\Windows\SysWOW64\NlsData0047.dll
A C:\Windows\SysWOW64\NlsData0049.dll
A C:\Windows\SysWOW64\NlsData004a.dll
A C:\Windows\SysWOW64\NlsData004b.dll
A C:\Windows\SysWOW64\NlsData004c.dll
A C:\Windows\SysWOW64\NlsData004e.dll
A C:\Windows\SysWOW64\NlsData0414.dll
A C:\Windows\SysWOW64\NlsData0416.dll
A C:\Windows\SysWOW64\NlsData0816.dll
A C:\Windows\SysWOW64\NlsData081a.dll
A C:\Windows\SysWOW64\NlsData0c1a.dll
A C:\Windows\SysWOW64\Nlsdl.dll
A C:\Windows\SysWOW64\NlsLexicons0001.dll
A C:\Windows\SysWOW64\NlsLexicons0002.dll
A C:\Windows\SysWOW64\NlsLexicons0003.dll
A C:\Windows\SysWOW64\NlsLexicons0007.dll
A C:\Windows\SysWOW64\NlsLexicons0009.dll
A C:\Windows\SysWOW64\NlsLexicons000a.dll
A C:\Windows\SysWOW64\NlsLexicons000c.dll
A C:\Windows\SysWOW64\NlsLexicons000d.dll
A C:\Windows\SysWOW64\NlsLexicons000f.dll
A C:\Windows\SysWOW64\NlsLexicons0010.dll
A C:\Windows\SysWOW64\NlsLexicons0011.dll
A C:\Windows\SysWOW64\NlsLexicons0013.dll
A C:\Windows\SysWOW64\NlsLexicons0018.dll
A C:\Windows\SysWOW64\NlsLexicons0019.dll
A C:\Windows\SysWOW64\NlsLexicons001a.dll
A C:\Windows\SysWOW64\NlsLexicons001b.dll
A C:\Windows\SysWOW64\NlsLexicons001d.dll
A C:\Windows\SysWOW64\NlsLexicons0020.dll
A C:\Windows\SysWOW64\NlsLexicons0021.dll
A C:\Windows\SysWOW64\NlsLexicons0022.dll
A C:\Windows\SysWOW64\NlsLexicons0024.dll
A C:\Windows\SysWOW64\NlsLexicons0026.dll
A C:\Windows\SysWOW64\NlsLexicons0027.dll
A C:\Windows\SysWOW64\NlsLexicons002a.dll
A C:\Windows\SysWOW64\NlsLexicons0039.dll
A C:\Windows\SysWOW64\NlsLexicons003e.dll
A C:\Windows\SysWOW64\NlsLexicons0045.dll
A C:\Windows\SysWOW64\NlsLexicons0046.dll
A C:\Windows\SysWOW64\NlsLexicons0047.dll
A C:\Windows\SysWOW64\NlsLexicons0049.dll
A C:\Windows\SysWOW64\NlsLexicons004a.dll
A C:\Windows\SysWOW64\NlsLexicons004b.dll
A C:\Windows\SysWOW64\NlsLexicons004c.dll
A C:\Windows\SysWOW64\NlsLexicons004e.dll
A C:\Windows\SysWOW64\NlsLexicons0414.dll
A C:\Windows\SysWOW64\NlsLexicons0416.dll
A C:\Windows\SysWOW64\NlsLexicons0816.dll
A C:\Windows\SysWOW64\NlsLexicons081a.dll
A C:\Windows\SysWOW64\NlsLexicons0c1a.dll
A C:\Windows\SysWOW64\NlsModels0011.dll
A C:\Windows\SysWOW64\NOISE.CHS
A C:\Windows\SysWOW64\NOISE.CHT
A C:\Windows\SysWOW64\NOISE.DAT
A C:\Windows\SysWOW64\noise.jpn
A C:\Windows\SysWOW64\noise.kor
A C:\Windows\SysWOW64\NOISE.THA
A C:\Windows\SysWOW64\normaliz.dll
A C:\Windows\SysWOW64\notepad.exe
A C:\Windows\SysWOW64\npdeployJava1.dll
A C:\Windows\SysWOW64\npmproxy.dll
A C:\Windows\SysWOW64\nshhttp.dll
A C:\Windows\SysWOW64\nshipsec.dll
A C:\Windows\SysWOW64\nshwfp.dll
A C:\Windows\SysWOW64\nsi.dll
A C:\Windows\SysWOW64\nslookup.exe
A C:\Windows\SysWOW64\ntdll.dll
A C:\Windows\SysWOW64\ntdsapi.dll
A C:\Windows\SysWOW64\ntkrnlpa.exe
A C:\Windows\SysWOW64\ntlanman.dll
A C:\Windows\SysWOW64\ntlanui2.dll
A C:\Windows\SysWOW64\ntmarta.dll
A C:\Windows\SysWOW64\ntoskrnl.exe
A C:\Windows\SysWOW64\ntprint.dll
A C:\Windows\SysWOW64\ntprint.exe
A C:\Windows\SysWOW64\ntshrui.dll
A C:\Windows\SysWOW64\ntvdm64.dll
A C:\Windows\SysWOW64\objsel.dll
A C:\Windows\SysWOW64\occache.dll
A C:\Windows\SysWOW64\ocsetapi.dll
A C:\Windows\SysWOW64\ocsetup.exe
A C:\Windows\SysWOW64\odbc32.dll
A C:\Windows\SysWOW64\odbc32gt.dll
A C:\Windows\SysWOW64\odbcad32.exe
A C:\Windows\SysWOW64\odbcbcp.dll
A C:\Windows\SysWOW64\odbcconf.dll
A C:\Windows\SysWOW64\odbcconf.exe
A C:\Windows\SysWOW64\odbcconf.rsp
A C:\Windows\SysWOW64\odbccp32.dll
A C:\Windows\SysWOW64\odbccr32.dll
A C:\Windows\SysWOW64\odbccu32.dll
A C:\Windows\SysWOW64\odbcint.dll
A I C:\Windows\SysWOW64\Odbcjet.cnt
A I C:\Windows\SysWOW64\Odbcjet.hlp
A C:\Windows\SysWOW64\odbcji32.dll
A C:\Windows\SysWOW64\odbcjt32.dll
A C:\Windows\SysWOW64\odbctrac.dll
A C:\Windows\SysWOW64\oddbse32.dll
A C:\Windows\SysWOW64\odexl32.dll
A C:\Windows\SysWOW64\odfox32.dll
A C:\Windows\SysWOW64\odpdx32.dll
A C:\Windows\SysWOW64\odtext32.dll
A C:\Windows\SysWOW64\Oemdspif.dll
A C:\Windows\SysWOW64\offfilt.dll
A C:\Windows\SysWOW64\oflc.rs
A C:\Windows\SysWOW64\ogldrv.dll
A C:\Windows\SysWOW64\ole2.dll
A C:\Windows\SysWOW64\ole2disp.dll
A C:\Windows\SysWOW64\ole2nls.dll
A C:\Windows\SysWOW64\ole32.dll
A C:\Windows\SysWOW64\oleacc.dll
A C:\Windows\SysWOW64\oleacchooks.dll
A C:\Windows\SysWOW64\oleaccrc.dll
A C:\Windows\SysWOW64\oleaut32.dll
A C:\Windows\SysWOW64\olecli32.dll
A C:\Windows\SysWOW64\oledlg.dll
A C:\Windows\SysWOW64\oleprn.dll
A C:\Windows\SysWOW64\olepro32.dll
A C:\Windows\SysWOW64\oleres.dll
A C:\Windows\SysWOW64\olesvr32.dll
A C:\Windows\SysWOW64\olethk32.dll
A C:\Windows\SysWOW64\onex.dll
A C:\Windows\SysWOW64\onexui.dll
A C:\Windows\SysWOW64\OnLineIDCpl.dll
A C:\Windows\SysWOW64\OobeFldr.dll
A C:\Windows\SysWOW64\OpcServices.dll
A C:\Windows\SysWOW64\openfiles.exe
A C:\Windows\SysWOW64\opengl32.dll
A C:\Windows\SysWOW64\OptionalFeatures.exe
A C:\Windows\SysWOW64\osbaseln.dll
A C:\Windows\SysWOW64\osk.exe
A C:\Windows\SysWOW64\osuninst.dll
A I C:\Windows\SysWOW64\p2bdao.dll
A I C:\Windows\SysWOW64\p2ctdao.dll
A I C:\Windows\SysWOW64\p2irdao.dll
A C:\Windows\SysWOW64\P2P.dll
A C:\Windows\SysWOW64\p2pcollab.dll
A C:\Windows\SysWOW64\P2PGraph.dll
A C:\Windows\SysWOW64\p2pnetsh.dll
A I C:\Windows\SysWOW64\P2smon.dll
A I C:\Windows\SysWOW64\p2sodbc.dll
A C:\Windows\SysWOW64\packager.dll
A C:\Windows\SysWOW64\panmap.dll
A C:\Windows\SysWOW64\PATHPING.EXE
A C:\Windows\SysWOW64\pautoenr.dll
A C:\Windows\SysWOW64\pcaui.dll
A C:\Windows\SysWOW64\pcaui.exe
A C:\Windows\SysWOW64\pcl.sep
A C:\Windows\SysWOW64\pcwum.dll
A C:\Windows\SysWOW64\pdh.dll
A C:\Windows\SysWOW64\pdhui.dll
A C:\Windows\SysWOW64\pegi-fi.rs
A C:\Windows\SysWOW64\pegi-pt.rs
A C:\Windows\SysWOW64\pegi.rs
A C:\Windows\SysWOW64\pegibbfc.rs
A C:\Windows\SysWOW64\PerfCenterCPL.dll
A C:\Windows\SysWOW64\PerfCenterCpl.ico
A C:\Windows\SysWOW64\perfctrs.dll
A C:\Windows\SysWOW64\perfdisk.dll
A C:\Windows\SysWOW64\perfhost.exe
A C:\Windows\SysWOW64\perfmon.exe
A C:\Windows\SysWOW64\perfmon.msc
A C:\Windows\SysWOW64\perfnet.dll
A C:\Windows\SysWOW64\perfos.dll
A C:\Windows\SysWOW64\perfproc.dll
A C:\Windows\SysWOW64\PerfStringBackup.INI
A C:\Windows\SysWOW64\perfts.dll
A C:\Windows\SysWOW64\phon.ime
A C:\Windows\SysWOW64\PhotoMetadataHandler.dll
A C:\Windows\SysWOW64\PhotoScreensaver.scr
A C:\Windows\SysWOW64\photowiz.dll
A C:\Windows\SysWOW64\pid.dll
A C:\Windows\SysWOW64\pidgenx.dll
A C:\Windows\SysWOW64\pifmgr.dll
A C:\Windows\SysWOW64\PING.EXE
A C:\Windows\SysWOW64\pintlgnt.ime
A C:\Windows\SysWOW64\PkgMgr.exe
A C:\Windows\SysWOW64\pku2u.dll
A C:\Windows\SysWOW64\pla.dll
A C:\Windows\SysWOW64\PlaySndSrv.dll
A C:\Windows\SysWOW64\pngfilt.dll
A C:\Windows\SysWOW64\pnidui.dll
A C:\Windows\SysWOW64\pnpsetup.dll
A C:\Windows\SysWOW64\pnrpnsp.dll
A C:\Windows\SysWOW64\polstore.dll
A C:\Windows\SysWOW64\poqexec.exe
A C:\Windows\SysWOW64\PortableDeviceApi.dll
A C:\Windows\SysWOW64\PortableDeviceClassExtension.dll
A C:\Windows\SysWOW64\PortableDeviceConnectApi.dll
A C:\Windows\SysWOW64\PortableDeviceStatus.dll
A C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
A C:\Windows\SysWOW64\PortableDeviceTypes.dll
A C:\Windows\SysWOW64\PortableDeviceWiaCompat.dll
A C:\Windows\SysWOW64\PortableDeviceWMDRM.dll
A C:\Windows\SysWOW64\pots.dll
A C:\Windows\SysWOW64\powercfg.cpl
A C:\Windows\SysWOW64\powercfg.exe
A C:\Windows\SysWOW64\powercpl.dll
A C:\Windows\SysWOW64\powrprof.dll
A C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
A C:\Windows\SysWOW64\PresentationHost.exe
A C:\Windows\SysWOW64\PresentationHostProxy.dll
A C:\Windows\SysWOW64\PresentationNative_v0300.dll
A C:\Windows\SysWOW64\prevhost.exe
A C:\Windows\SysWOW64\prflbmsg.dll
A C:\Windows\SysWOW64\print.exe
A C:\Windows\SysWOW64\printui.dll
A C:\Windows\SysWOW64\printui.exe
A C:\Windows\SysWOW64\prncache.dll
A C:\Windows\SysWOW64\prnfldr.dll
A C:\Windows\SysWOW64\prnntfy.dll
A C:\Windows\SysWOW64\prntvpt.dll
A C:\Windows\SysWOW64\profapi.dll
A C:\Windows\SysWOW64\propsys.dll
A C:\Windows\SysWOW64\proquota.exe
A C:\Windows\SysWOW64\provsvc.dll
A C:\Windows\SysWOW64\provthrd.dll
A C:\Windows\SysWOW64\psapi.dll
A C:\Windows\SysWOW64\psbase.dll
A C:\Windows\SysWOW64\pscript.sep
A C:\Windows\SysWOW64\PSHED.DLL
A C:\Windows\SysWOW64\psisdecd.dll
A C:\Windows\SysWOW64\psisrndr.ax
A C:\Windows\SysWOW64\psr.exe
A C:\Windows\SysWOW64\pstorec.dll
A C:\Windows\SysWOW64\pstorsvc.dll
A C:\Windows\SysWOW64\puiapi.dll
A C:\Windows\SysWOW64\puiobj.dll
A C:\Windows\SysWOW64\pwrshplugin.dll
A C:\Windows\SysWOW64\QAGENT.DLL
A C:\Windows\SysWOW64\qasf.dll
A C:\Windows\SysWOW64\qcap.dll
A C:\Windows\SysWOW64\QCLIPROV.DLL
A C:\Windows\SysWOW64\qdv.dll
A C:\Windows\SysWOW64\qdvd.dll
A C:\Windows\SysWOW64\qedit.dll
A C:\Windows\SysWOW64\qedwipes.dll
A C:\Windows\SysWOW64\qintlgnt.ime
A C:\Windows\SysWOW64\qmgrprxy.dll
A C:\Windows\SysWOW64\QSHVHOST.DLL
A C:\Windows\SysWOW64\QSVRMGMT.DLL
A C:\Windows\SysWOW64\quartz.dll
A C:\Windows\SysWOW64\Query.dll
A C:\Windows\SysWOW64\quick.ime
A C:\Windows\SysWOW64\QuickTime.qts
A C:\Windows\SysWOW64\QuickTimeVR.qtx
A C:\Windows\SysWOW64\QUTIL.DLL
A C:\Windows\SysWOW64\qwave.dll
A C:\Windows\SysWOW64\RacEngn.dll
A C:\Windows\SysWOW64\racpldlg.dll
A C:\Windows\SysWOW64\RacRules.xml
A C:\Windows\SysWOW64\radardt.dll
A C:\Windows\SysWOW64\radarrs.dll
A C:\Windows\SysWOW64\rapi.dll
A C:\Windows\SysWOW64\rapiproxystub.dll
A C:\Windows\SysWOW64\rapistub.dll
A C:\Windows\SysWOW64\rasadhlp.dll
A C:\Windows\SysWOW64\rasapi32.dll
A C:\Windows\SysWOW64\rasautou.exe
A C:\Windows\SysWOW64\rascfg.dll
A C:\Windows\SysWOW64\raschap.dll
A C:\Windows\SysWOW64\rasctrnm.h
A C:\Windows\SysWOW64\rasctrs.dll
A C:\Windows\SysWOW64\rasdiag.dll
A C:\Windows\SysWOW64\rasdial.exe
A C:\Windows\SysWOW64\rasdlg.dll
A C:\Windows\SysWOW64\raserver.exe
A C:\Windows\SysWOW64\rasgcw.dll
A C:\Windows\SysWOW64\rasman.dll
A C:\Windows\SysWOW64\RASMM.dll
A C:\Windows\SysWOW64\rasmontr.dll
A C:\Windows\SysWOW64\rasmxs.dll
A C:\Windows\SysWOW64\rasphone.exe
A C:\Windows\SysWOW64\rasplap.dll
A C:\Windows\SysWOW64\rasppp.dll
A C:\Windows\SysWOW64\rasser.dll
A C:\Windows\SysWOW64\rastapi.dll
A C:\Windows\SysWOW64\rastls.dll
A C:\Windows\SysWOW64\rdpcore.dll
A C:\Windows\SysWOW64\rdpd3d.dll
A C:\Windows\SysWOW64\rdpencom.dll
A C:\Windows\SysWOW64\rdprefdrvapi.dll
A C:\Windows\SysWOW64\rdrleakdiag.exe
A C:\Windows\SysWOW64\ReAgent.dll
A C:\Windows\SysWOW64\ReAgentc.exe
A C:\Windows\SysWOW64\recover.exe
A C:\Windows\SysWOW64\reg.exe
A C:\Windows\SysWOW64\regapi.dll
A C:\Windows\SysWOW64\RegCtrl.dll
A C:\Windows\SysWOW64\regedit.exe
A C:\Windows\SysWOW64\regedt32.exe
A C:\Windows\SysWOW64\regini.exe
A C:\Windows\SysWOW64\RegisterIEPKEYs.exe
A C:\Windows\SysWOW64\regsvr32.exe
A C:\Windows\SysWOW64\rekeywiz.exe
A C:\Windows\SysWOW64\relog.exe
A C:\Windows\SysWOW64\remotepg.dll
A C:\Windows\SysWOW64\remotesp.tsp
A C:\Windows\SysWOW64\rendezvousSession.tlb
A C:\Windows\SysWOW64\replace.exe
A C:\Windows\SysWOW64\RESAMPLEDMO.DLL
A C:\Windows\SysWOW64\resmon.exe
A C:\Windows\SysWOW64\RestartManager.mof
A C:\Windows\SysWOW64\RestartManagerUninstall.mof
A C:\Windows\SysWOW64\resutils.dll
A C:\Windows\SysWOW64\rgb9rast.dll
A C:\Windows\SysWOW64\Ribbons.scr
A C:\Windows\SysWOW64\riched20.dll
A C:\Windows\SysWOW64\riched32.dll
A I C:\Windows\SysWOW64\RICHTX32.OCX
A C:\Windows\SysWOW64\RMActivate.exe
A C:\Windows\SysWOW64\RMActivate_isv.exe
A C:\Windows\SysWOW64\RMActivate_ssp.exe
A C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
A C:\Windows\SysWOW64\RmClient.exe
A C:\Windows\SysWOW64\rnr20.dll
A C:\Windows\SysWOW64\Robocopy.exe
A I C:\Windows\SysWOW64\ROBOEX32.DLL
A C:\Windows\SysWOW64\ROUTE.EXE
A C:\Windows\SysWOW64\RpcDiag.dll
A C:\Windows\SysWOW64\rpchttp.dll
A C:\Windows\SysWOW64\RPCNDFP.dll
A C:\Windows\SysWOW64\RpcNs4.dll
A C:\Windows\SysWOW64\rpcnsh.dll
A C:\Windows\SysWOW64\RpcPing.exe
A C:\Windows\SysWOW64\rpcrt4.dll
A C:\Windows\SysWOW64\RpcRtRemote.dll
A C:\Windows\SysWOW64\rrinstaller.exe
A C:\Windows\SysWOW64\rsaenh.dll
A C:\Windows\SysWOW64\rshx32.dll
A C:\Windows\SysWOW64\RstrtMgr.dll
A C:\Windows\SysWOW64\rtffilt.dll
A C:\Windows\SysWOW64\rtm.dll
A C:\Windows\SysWOW64\rtutils.dll
A C:\Windows\SysWOW64\runas.exe
A C:\Windows\SysWOW64\rundll32.exe
A C:\Windows\SysWOW64\RunLegacyCPLElevated.exe
A C:\Windows\SysWOW64\runonce.exe
A C:\Windows\SysWOW64\samcli.dll
A C:\Windows\SysWOW64\samlib.dll
A C:\Windows\SysWOW64\SampleRes.dll
A C:\Windows\SysWOW64\sas.dll
A C:\Windows\SysWOW64\sbe.dll
A C:\Windows\SysWOW64\sbeio.dll
A C:\Windows\SysWOW64\sberes.dll
A C:\Windows\SysWOW64\sbunattend.exe
A C:\Windows\SysWOW64\sc.exe
A C:\Windows\SysWOW64\scansetting.dll
A C:\Windows\SysWOW64\SCardDlg.dll
A C:\Windows\SysWOW64\scecli.dll
A C:\Windows\SysWOW64\scesrv.dll
A C:\Windows\SysWOW64\schannel.dll
A C:\Windows\SysWOW64\schedcli.dll
A C:\Windows\SysWOW64\schtasks.exe
A C:\Windows\SysWOW64\scksp.dll
A C:\Windows\SysWOW64\scripto.dll
A C:\Windows\SysWOW64\scrnsave.scr
A C:\Windows\SysWOW64\scrobj.dll
A C:\Windows\SysWOW64\scrrun.dll
A C:\Windows\SysWOW64\sdbinst.exe
A C:\Windows\SysWOW64\sdchange.exe
A C:\Windows\SysWOW64\sdiageng.dll
A C:\Windows\SysWOW64\sdiagnhost.exe
A C:\Windows\SysWOW64\sdiagprv.dll
A C:\Windows\SysWOW64\sdohlp.dll
A C:\Windows\SysWOW64\SearchFilterHost.exe
A C:\Windows\SysWOW64\SearchFolder.dll
A C:\Windows\SysWOW64\SearchIndexer.exe
A C:\Windows\SysWOW64\SearchProtocolHost.exe
A C:\Windows\SysWOW64\SecEdit.exe
A C:\Windows\SysWOW64\sechost.dll
A C:\Windows\SysWOW64\secinit.exe
A C:\Windows\SysWOW64\secproc.dll
A C:\Windows\SysWOW64\secproc_isv.dll
A C:\Windows\SysWOW64\secproc_ssp.dll
A C:\Windows\SysWOW64\secproc_ssp_isv.dll
A C:\Windows\SysWOW64\secur32.dll
A C:\Windows\SysWOW64\security.dll
A C:\Windows\SysWOW64\sendmail.dll
A C:\Windows\SysWOW64\Sens.dll
A C:\Windows\SysWOW64\SensApi.dll
A C:\Windows\SysWOW64\SensorsApi.dll
A C:\Windows\SysWOW64\SensorsCpl.dll
A C:\Windows\SysWOW64\serialui.dll
A C:\Windows\SysWOW64\services.msc
A C:\Windows\SysWOW64\serwvdrv.dll
A C:\Windows\SysWOW64\SessEnv.dll
A C:\Windows\SysWOW64\sethc.exe
A C:\Windows\SysWOW64\SetIEInstalledDate.exe
A C:\Windows\SysWOW64\setup16.exe
A C:\Windows\SysWOW64\setupapi.dll
A C:\Windows\SysWOW64\setupcln.dll
A C:\Windows\SysWOW64\setupSNK.exe
A C:\Windows\SysWOW64\setupugc.exe
A C:\Windows\SysWOW64\setx.exe
A C:\Windows\SysWOW64\sfc.dll
A C:\Windows\SysWOW64\sfc.exe
A C:\Windows\SysWOW64\sfc_os.dll
A C:\Windows\SysWOW64\sftldr_wow64.dll
A C:\Windows\SysWOW64\shacct.dll
A C:\Windows\SysWOW64\shdocvw.dll
A C:\Windows\SysWOW64\shell32.dll
A C:\Windows\SysWOW64\shellstyle.dll
A C:\Windows\SysWOW64\shfolder.dll
A C:\Windows\SysWOW64\shgina.dll
A C:\Windows\SysWOW64\ShiftJIS.uce
A C:\Windows\SysWOW64\shimeng.dll
A C:\Windows\SysWOW64\shimgvw.dll
A C:\Windows\SysWOW64\shlwapi.dll
A C:\Windows\SysWOW64\shpafact.dll
A C:\Windows\SysWOW64\shrpubw.exe
A C:\Windows\SysWOW64\shsetup.dll
A C:\Windows\SysWOW64\shsvcs.dll
A C:\Windows\SysWOW64\shunimpl.dll
A C:\Windows\SysWOW64\shutdown.exe
A C:\Windows\SysWOW64\shwebsvc.dll
A C:\Windows\SysWOW64\signdrv.dll
A C:\Windows\SysWOW64\simpdata.tlb
A C:\Windows\SysWOW64\sirenacm.dll
A C:\Windows\SysWOW64\sisbkup.dll
A C:\Windows\SysWOW64\slc.dll
A C:\Windows\SysWOW64\slcext.dll
A C:\Windows\SysWOW64\slmgr.vbs
A C:\Windows\SysWOW64\slwga.dll
A C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
A C:\Windows\SysWOW64\SMBHelperClass.dll
A C:\Windows\SysWOW64\SndVol.exe
A C:\Windows\SysWOW64\SndVolSSO.dll
A C:\Windows\SysWOW64\snmpapi.dll
A C:\Windows\SysWOW64\softkbd.dll
A C:\Windows\SysWOW64\softpub.dll
A C:\Windows\SysWOW64\sort.exe
A C:\Windows\SysWOW64\SortServer2003Compat.dll
A C:\Windows\SysWOW64\SortWindows6Compat.dll
A C:\Windows\SysWOW64\spbcd.dll
A C:\Windows\SysWOW64\SPCtl.dll
A C:\Windows\SysWOW64\spfileq.dll
A C:\Windows\SysWOW64\SPInf.dll
A C:\Windows\SysWOW64\spnet.dll
A C:\Windows\SysWOW64\spopk.dll
A C:\Windows\SysWOW64\spp.dll
A C:\Windows\SysWOW64\sppc.dll
A C:\Windows\SysWOW64\sppcc.dll
A C:\Windows\SysWOW64\sppcext.dll
A C:\Windows\SysWOW64\sppcomapi.dll
A C:\Windows\SysWOW64\sppcommdlg.dll
A C:\Windows\SysWOW64\sppinst.dll
A C:\Windows\SysWOW64\sppwmi.dll
A C:\Windows\SysWOW64\spwinsat.dll
A C:\Windows\SysWOW64\spwizeng.dll
A C:\Windows\SysWOW64\spwizimg.dll
A C:\Windows\SysWOW64\spwizres.dll
A C:\Windows\SysWOW64\spwmp.dll
A C:\Windows\SysWOW64\sqlceoledb30.dll
A C:\Windows\SysWOW64\sqlceqp30.dll
A C:\Windows\SysWOW64\sqlcese30.dll
A C:\Windows\SysWOW64\sqlctr90.dll
A C:\Windows\SysWOW64\sqlncli.chm
A C:\Windows\SysWOW64\sqlncli.dll
A C:\Windows\SysWOW64\sqlnclir.rll
A C:\Windows\SysWOW64\SQLServerManager.msc
A C:\Windows\SysWOW64\sqlsrv32.dll
A C:\Windows\SysWOW64\sqlsrv32.rll
A C:\Windows\SysWOW64\sqlunirl.dll
A C:\Windows\SysWOW64\sqlwid.dll
A C:\Windows\SysWOW64\sqlwoa.dll
A C:\Windows\SysWOW64\sqmapi.dll
A C:\Windows\SysWOW64\srchadmin.dll
A C:\Windows\SysWOW64\srclient.dll
A C:\Windows\SysWOW64\srdelayed.exe
A C:\Windows\SysWOW64\srhelper.dll
A C:\Windows\SysWOW64\srvcli.dll
A C:\Windows\SysWOW64\sscore.dll
A I C:\Windows\SysWOW64\sscsdk32.dll
A I C:\Windows\SysWOW64\sscsdk80.dll
A C:\Windows\SysWOW64\ssdpapi.dll
A C:\Windows\SysWOW64\sspicli.dll
A C:\Windows\SysWOW64\SSShim.dll
A C:\Windows\SysWOW64\ssText3d.scr
A C:\Windows\SysWOW64\stclient.dll
A C:\Windows\SysWOW64\stdole2.tlb
A C:\Windows\SysWOW64\stdole32.tlb
A C:\Windows\SysWOW64\sti.dll
A C:\Windows\SysWOW64\stobject.dll
A C:\Windows\SysWOW64\storage.dll
A C:\Windows\SysWOW64\StorageContextHandler.dll
A C:\Windows\SysWOW64\Storprop.dll
A C:\Windows\SysWOW64\StructuredQuery.dll
A C:\Windows\SysWOW64\SubRange.uce
A C:\Windows\SysWOW64\subst.exe
A C:\Windows\SysWOW64\sud.dll
A C:\Windows\SysWOW64\svchost.exe
A C:\Windows\SysWOW64\sxproxy.dll
A C:\Windows\SysWOW64\sxs.dll
A C:\Windows\SysWOW64\sxshared.dll
A C:\Windows\SysWOW64\sxsstore.dll
A C:\Windows\SysWOW64\sxstrace.exe
A C:\Windows\SysWOW64\SyncCenter.dll
A C:\Windows\SysWOW64\synceng.dll
A C:\Windows\SysWOW64\SyncHost.exe
A C:\Windows\SysWOW64\SyncHostps.dll
A C:\Windows\SysWOW64\SyncInfrastructure.dll
A C:\Windows\SysWOW64\SyncInfrastructureps.dll
A C:\Windows\SysWOW64\SynCOM.dll
A C:\Windows\SysWOW64\Syncreg.dll
A C:\Windows\SysWOW64\SynCtrl.dll
A C:\Windows\SysWOW64\syncui.dll
A C:\Windows\SysWOW64\SynTPCOM.dll
A C:\Windows\SysWOW64\sysdm.cpl
A I C:\Windows\SysWOW64\sysinfo.ocx
A C:\Windows\SysWOW64\syskey.exe
A C:\Windows\SysWOW64\sysmon.ocx
A C:\Windows\SysWOW64\sysprint.sep
A C:\Windows\SysWOW64\sysprtj.sep
A C:\Windows\SysWOW64\syssetup.dll
A C:\Windows\SysWOW64\systemcpl.dll
A C:\Windows\SysWOW64\systeminfo.exe
A C:\Windows\SysWOW64\SystemPropertiesAdvanced.exe
A C:\Windows\SysWOW64\SystemPropertiesComputerName.exe
A C:\Windows\SysWOW64\SystemPropertiesDataExecutionPrevention.exe
A C:\Windows\SysWOW64\SystemPropertiesHardware.exe
A C:\Windows\SysWOW64\SystemPropertiesPerformance.exe
A C:\Windows\SysWOW64\SystemPropertiesProtection.exe
A C:\Windows\SysWOW64\SystemPropertiesRemote.exe
A C:\Windows\SysWOW64\systray.exe
A C:\Windows\SysWOW64\t2embed.dll
A C:\Windows\SysWOW64\takeown.exe
A C:\Windows\SysWOW64\tapi3.dll
A C:\Windows\SysWOW64\tapi32.dll
A C:\Windows\SysWOW64\TapiMigPlugin.dll
A C:\Windows\SysWOW64\tapiperf.dll
A C:\Windows\SysWOW64\tapisrv.dll
A C:\Windows\SysWOW64\TapiSysprep.dll
A C:\Windows\SysWOW64\tapiui.dll
A C:\Windows\SysWOW64\TapiUnattend.exe
A C:\Windows\SysWOW64\taskcomp.dll
A C:\Windows\SysWOW64\taskeng.exe
A C:\Windows\SysWOW64\taskkill.exe
A C:\Windows\SysWOW64\tasklist.exe
A C:\Windows\SysWOW64\taskmgr.exe
A C:\Windows\SysWOW64\taskschd.dll
A C:\Windows\SysWOW64\taskschd.msc
A C:\Windows\SysWOW64\TaskSchdPS.dll
A C:\Windows\SysWOW64\tbs.dll
A C:\Windows\SysWOW64\tcmsetup.exe
A C:\Windows\SysWOW64\tcpbidi.xml
A C:\Windows\SysWOW64\tcpipcfg.dll
A C:\Windows\SysWOW64\tcpmonui.dll
A C:\Windows\SysWOW64\TCPSVCS.EXE
A C:\Windows\SysWOW64\tdc.ocx
A C:\Windows\SysWOW64\tdh.dll
A I C:\Windows\SysWOW64\TeeChart.ocx
A C:\Windows\SysWOW64\telephon.cpl
A C:\Windows\SysWOW64\termmgr.dll
A C:\Windows\SysWOW64\thawbrkr.dll
A C:\Windows\SysWOW64\THCI.dll
A C:\Windows\SysWOW64\themecpl.dll
A C:\Windows\SysWOW64\themeui.dll
A C:\Windows\SysWOW64\thumbcache.dll
A C:\Windows\SysWOW64\ticrf.rat
A C:\Windows\SysWOW64\timedate.cpl
A C:\Windows\SysWOW64\TimeDateMUICallback.dll
A C:\Windows\SysWOW64\timeout.exe
A C:\Windows\SysWOW64\tintlgnt.ime
A C:\Windows\SysWOW64\tlscsp.dll
A C:\Windows\SysWOW64\ToscmddN.dll
A C:\Windows\SysWOW64\TosOlkN.dll
A C:\Windows\SysWOW64\Tossps.scr
A C:\Windows\SysWOW64\TosusrpN.dll
A C:\Windows\SysWOW64\tpm.msc
A C:\Windows\SysWOW64\tpmcompc.dll
A C:\Windows\SysWOW64\TpmInit.exe
A C:\Windows\SysWOW64\tquery.dll
A C:\Windows\SysWOW64\tracerpt.exe
A C:\Windows\SysWOW64\TRACERT.EXE
A C:\Windows\SysWOW64\traffic.dll
A C:\Windows\SysWOW64\TRAPI.dll
A C:\Windows\SysWOW64\tree.com
A C:\Windows\SysWOW64\tsbyuv.dll
A C:\Windows\SysWOW64\TSChannel.dll
A C:\Windows\SysWOW64\TSCI.dll
A C:\Windows\SysWOW64\tsgqec.dll
A C:\Windows\SysWOW64\tsmf.dll
A C:\Windows\SysWOW64\TSpkg.dll
A C:\Windows\SysWOW64\TSTheme.exe
A C:\Windows\SysWOW64\TSWorkspace.dll
A C:\Windows\SysWOW64\TsWpfWrp.exe
A C:\Windows\SysWOW64\tvratings.dll
A C:\Windows\SysWOW64\twext.dll
A C:\Windows\SysWOW64\txflog.dll
A C:\Windows\SysWOW64\txfw32.dll
A C:\Windows\SysWOW64\typelib.dll
A C:\Windows\SysWOW64\typeperf.exe
A C:\Windows\SysWOW64\tzres.dll
A C:\Windows\SysWOW64\tzutil.exe
A C:\Windows\SysWOW64\ubpm.dll
A C:\Windows\SysWOW64\ucmhc.dll
A C:\Windows\SysWOW64\udhisapi.dll
A C:\Windows\SysWOW64\uexfat.dll
A C:\Windows\SysWOW64\ufat.dll
A C:\Windows\SysWOW64\UIAnimation.dll
A C:\Windows\SysWOW64\UIAutomationCore.dll
A C:\Windows\SysWOW64\uicom.dll
A C:\Windows\SysWOW64\UIRibbon.dll
A C:\Windows\SysWOW64\UIRibbonRes.dll
A C:\Windows\SysWOW64\ulib.dll
A C:\Windows\SysWOW64\umdmxfrm.dll
A C:\Windows\SysWOW64\unimdm.tsp
A C:\Windows\SysWOW64\unimdmat.dll
A C:\Windows\SysWOW64\uniplat.dll
A C:\Windows\SysWOW64\unlodctr.exe
A C:\Windows\SysWOW64\unregmp2.exe
A C:\Windows\SysWOW64\untfs.dll
A C:\Windows\SysWOW64\upnp.dll
A C:\Windows\SysWOW64\upnpcont.exe
A C:\Windows\SysWOW64\upnphost.dll
A C:\Windows\SysWOW64\ureg.dll
A C:\Windows\SysWOW64\url.dll
A C:\Windows\SysWOW64\urlmon.dll
A C:\Windows\SysWOW64\usbceip.dll
A C:\Windows\SysWOW64\usbperf.dll
A C:\Windows\SysWOW64\usbui.dll
A C:\Windows\SysWOW64\user.exe
A C:\Windows\SysWOW64\user32.dll
A C:\Windows\SysWOW64\UserAccountControlSettings.dll
A C:\Windows\SysWOW64\UserAccountControlSettings.exe
A C:\Windows\SysWOW64\usercpl.dll
A C:\Windows\SysWOW64\userenv.dll
A C:\Windows\SysWOW64\userinit.exe
A C:\Windows\SysWOW64\usk.rs
A C:\Windows\SysWOW64\usp10.dll
A C:\Windows\SysWOW64\utildll.dll
A C:\Windows\SysWOW64\Utilman.exe
A C:\Windows\SysWOW64\uudf.dll
A C:\Windows\SysWOW64\UXInit.dll
A C:\Windows\SysWOW64\uxlib.dll
A C:\Windows\SysWOW64\uxlibres.dll
A C:\Windows\SysWOW64\uxtheme.dll
A C:\Windows\SysWOW64\VAN.dll
A C:\Windows\SysWOW64\Vault.dll
A C:\Windows\SysWOW64\vaultcli.dll
A I C:\Windows\SysWOW64\vb5db.dll
A C:\Windows\SysWOW64\vbajet32.dll
A C:\Windows\SysWOW64\VBAME.DLL
A I C:\Windows\SysWOW64\VBAR332.DLL
A C:\Windows\SysWOW64\VBICodec.ax
A C:\Windows\SysWOW64\vbisurf.ax
A C:\Windows\SysWOW64\vbscript.dll
A C:\Windows\SysWOW64\vdmdbg.dll
A C:\Windows\SysWOW64\vdsbas.dll
A C:\Windows\SysWOW64\vdsdyn.dll
A C:\Windows\SysWOW64\vdsvd.dll
A C:\Windows\SysWOW64\vds_ps.dll
A C:\Windows\SysWOW64\VEN2232.OLB
A C:\Windows\SysWOW64\verclsid.exe
A C:\Windows\SysWOW64\verifier.dll
A C:\Windows\SysWOW64\verifier.exe
A C:\Windows\SysWOW64\version.dll
A C:\Windows\SysWOW64\vfpodbc.dll
A C:\Windows\SysWOW64\vfwwdm32.dll
A C:\Windows\SysWOW64\vidcap.ax
A C:\Windows\SysWOW64\VIDRESZR.DLL
A C:\Windows\SysWOW64\virtdisk.dll
A C:\Windows\SysWOW64\vpnikeapi.dll
A I C:\Windows\SysWOW64\vsflex7.ocx
A I C:\Windows\SysWOW64\vsflex7d.ocx
A I C:\Windows\SysWOW64\vsflex7l.ocx
A C:\Windows\SysWOW64\vssadmin.exe
A C:\Windows\SysWOW64\vssapi.dll
A C:\Windows\SysWOW64\vsstrace.dll
A C:\Windows\SysWOW64\vss_ps.dll
A C:\Windows\SysWOW64\w32tm.exe
A C:\Windows\SysWOW64\w32topl.dll
A C:\Windows\SysWOW64\WABSyncProvider.dll
A C:\Windows\SysWOW64\waitfor.exe
A C:\Windows\SysWOW64\wavemsp.dll
A C:\Windows\SysWOW64\wbemcomn.dll
A C:\Windows\SysWOW64\wcescommproxy.dll
A C:\Windows\SysWOW64\WcnApi.dll
A C:\Windows\SysWOW64\wcncsvc.dll
A C:\Windows\SysWOW64\WcnEapAuthProxy.dll
A C:\Windows\SysWOW64\WcnEapPeerProxy.dll
A C:\Windows\SysWOW64\wcnwiz.dll
A C:\Windows\SysWOW64\WcsPlugInService.dll
A C:\Windows\SysWOW64\wdc.dll
A C:\Windows\SysWOW64\wdi.dll
A C:\Windows\SysWOW64\wdigest.dll
A C:\Windows\SysWOW64\wdmaud.drv
A C:\Windows\SysWOW64\wdscore.dll
A C:\Windows\SysWOW64\WEB.rs
A C:\Windows\SysWOW64\webcheck.dll
A C:\Windows\SysWOW64\WebClnt.dll
A C:\Windows\SysWOW64\webio.dll
A C:\Windows\SysWOW64\webservices.dll
A C:\Windows\SysWOW64\wecapi.dll
A C:\Windows\SysWOW64\wecutil.exe
A C:\Windows\SysWOW64\wer.dll
A C:\Windows\SysWOW64\werdiagcontroller.dll
A C:\Windows\SysWOW64\WerFault.exe
A C:\Windows\SysWOW64\WerFaultSecure.exe
A C:\Windows\SysWOW64\wermgr.exe
A C:\Windows\SysWOW64\werui.dll
A C:\Windows\SysWOW64\wevtapi.dll
A C:\Windows\SysWOW64\wevtfwd.dll
A C:\Windows\SysWOW64\wevtutil.exe
A C:\Windows\SysWOW64\wextract.exe
A C:\Windows\SysWOW64\WF.msc
A C:\Windows\SysWOW64\wfapigp.dll
A C:\Windows\SysWOW64\WfHC.dll
A I C:\Windows\SysWOW64\Wh2Robo.dll
A C:\Windows\SysWOW64\whealogr.dll
A C:\Windows\SysWOW64\where.exe
A C:\Windows\SysWOW64\whhelper.dll
A C:\Windows\SysWOW64\whoami.exe
A C:\Windows\SysWOW64\wiaacmgr.exe
A C:\Windows\SysWOW64\wiaaut.dll
A C:\Windows\SysWOW64\wiadefui.dll
A C:\Windows\SysWOW64\wiadss.dll
A C:\Windows\SysWOW64\WiaExtensionHost64.dll
A C:\Windows\SysWOW64\wiascanprofiles.dll
A C:\Windows\SysWOW64\wiashext.dll
A C:\Windows\SysWOW64\wiatrace.dll
A C:\Windows\SysWOW64\wiavideo.dll
A C:\Windows\SysWOW64\wimgapi.dll
A C:\Windows\SysWOW64\wimserv.exe
A C:\Windows\SysWOW64\win32spl.dll
A C:\Windows\SysWOW64\winbio.dll
A C:\Windows\SysWOW64\winbrand.dll
A C:\Windows\SysWOW64\wincredprovider.dll
A C:\Windows\SysWOW64\WindowsCodecs.dll
A C:\Windows\SysWOW64\WindowsCodecsExt.dll
A C:\Windows\SysWOW64\WinFax.dll
A C:\Windows\SysWOW64\winhttp.dll
A C:\Windows\SysWOW64\wininet.dll
A C:\Windows\SysWOW64\wininit.exe
A C:\Windows\SysWOW64\winipsec.dll
A C:\Windows\SysWOW64\winmm.dll
A C:\Windows\SysWOW64\winnsi.dll
A C:\Windows\SysWOW64\winrm.cmd
A C:\Windows\SysWOW64\winrm.vbs
A C:\Windows\SysWOW64\winrnr.dll
A C:\Windows\SysWOW64\winrs.exe
A C:\Windows\SysWOW64\winrscmd.dll
A C:\Windows\SysWOW64\winrshost.exe
A C:\Windows\SysWOW64\winrsmgr.dll
A C:\Windows\SysWOW64\winrssrv.dll
A C:\Windows\SysWOW64\WinSATAPI.dll
A C:\Windows\SysWOW64\WinSCard.dll
A C:\Windows\SysWOW64\winshfhc.dll
A C:\Windows\SysWOW64\winsockhc.dll
A C:\Windows\SysWOW64\winspool.drv
A C:\Windows\SysWOW64\WINSRPC.DLL
A C:\Windows\SysWOW64\winsta.dll
A C:\Windows\SysWOW64\WinSync.dll
A C:\Windows\SysWOW64\WinSyncMetastore.dll
A C:\Windows\SysWOW64\WinSyncProviders.dll
A C:\Windows\SysWOW64\wintrust.dll
A C:\Windows\SysWOW64\winusb.dll
A C:\Windows\SysWOW64\winver.exe
A C:\Windows\SysWOW64\wkscli.dll
A C:\Windows\SysWOW64\wksprtPS.dll
A C:\Windows\SysWOW64\wlanapi.dll
A C:\Windows\SysWOW64\wlancfg.dll
A C:\Windows\SysWOW64\WLanConn.dll
A C:\Windows\SysWOW64\wlandlg.dll
A C:\Windows\SysWOW64\wlanext.exe
A C:\Windows\SysWOW64\wlangpui.dll
A C:\Windows\SysWOW64\wlanhlp.dll
A C:\Windows\SysWOW64\wlaninst.dll
A C:\Windows\SysWOW64\WlanMM.dll
A C:\Windows\SysWOW64\wlanmsm.dll
A C:\Windows\SysWOW64\wlanpref.dll
A C:\Windows\SysWOW64\wlansec.dll
A C:\Windows\SysWOW64\wlanui.dll
A C:\Windows\SysWOW64\wlanutil.dll
A C:\Windows\SysWOW64\Wldap32.dll
A C:\Windows\SysWOW64\wlgpclnt.dll
A C:\Windows\SysWOW64\WlS0WndH.dll
A C:\Windows\SysWOW64\WMADMOD.DLL
A C:\Windows\SysWOW64\WMADMOE.DLL
A C:\Windows\SysWOW64\WMASF.DLL
A C:\Windows\SysWOW64\wmcodecdspps.dll
A C:\Windows\SysWOW64\wmdmlog.dll
A C:\Windows\SysWOW64\wmdmps.dll
A C:\Windows\SysWOW64\wmdrmdev.dll
A C:\Windows\SysWOW64\wmdrmnet.dll
A C:\Windows\SysWOW64\wmdrmsdk.dll
A C:\Windows\SysWOW64\wmerror.dll
A C:\Windows\SysWOW64\wmi.dll
A C:\Windows\SysWOW64\wmidx.dll
A C:\Windows\SysWOW64\wmiprop.dll
A C:\Windows\SysWOW64\WMNetMgr.dll
A C:\Windows\SysWOW64\wmp.dll
A C:\Windows\SysWOW64\wmpcm.dll
A C:\Windows\SysWOW64\WmpDui.dll
A C:\Windows\SysWOW64\wmpdxm.dll
A C:\Windows\SysWOW64\wmpeffects.dll
A C:\Windows\SysWOW64\WMPEncEn.dll
A C:\Windows\SysWOW64\WMPhoto.dll
A C:\Windows\SysWOW64\wmploc.DLL
A C:\Windows\SysWOW64\wmpmde.dll
A C:\Windows\SysWOW64\wmpps.dll
A C:\Windows\SysWOW64\wmpshell.dll
A C:\Windows\SysWOW64\wmpsrcwp.dll
A C:\Windows\SysWOW64\wmsgapi.dll
A C:\Windows\SysWOW64\WMSPDMOD.DLL
A C:\Windows\SysWOW64\WMSPDMOE.DLL
A C:\Windows\SysWOW64\WMVCORE.DLL
A C:\Windows\SysWOW64\WMVDECOD.DLL
A C:\Windows\SysWOW64\wmvdspa.dll
A C:\Windows\SysWOW64\WMVENCOD.DLL
A C:\Windows\SysWOW64\WMVSDECD.DLL
A C:\Windows\SysWOW64\WMVSENCD.DLL
A C:\Windows\SysWOW64\WMVXENCD.DLL
A C:\Windows\SysWOW64\wow32.dll
A C:\Windows\SysWOW64\wowreg32.exe
A C:\Windows\SysWOW64\Wpc.dll
A C:\Windows\SysWOW64\wpcao.dll
A C:\Windows\SysWOW64\wpcsvc.dll
A C:\Windows\SysWOW64\wpdshext.dll
A C:\Windows\SysWOW64\WPDShextAutoplay.exe
A C:\Windows\SysWOW64\WPDShServiceObj.dll
A C:\Windows\SysWOW64\WPDSp.dll
A C:\Windows\SysWOW64\wpdwcn.dll
A C:\Windows\SysWOW64\write.exe
A C:\Windows\SysWOW64\ws2help.dll
A C:\Windows\SysWOW64\ws2_32.dll
A C:\Windows\SysWOW64\wscapi.dll
A C:\Windows\SysWOW64\wscinterop.dll
A C:\Windows\SysWOW64\wscisvif.dll
A C:\Windows\SysWOW64\wscmisetup.dll
A C:\Windows\SysWOW64\wscproxystub.dll
A C:\Windows\SysWOW64\wscript.exe
A C:\Windows\SysWOW64\wscui.cpl
A C:\Windows\SysWOW64\WSDApi.dll
A C:\Windows\SysWOW64\wsdchngr.dll
A C:\Windows\SysWOW64\wsecedit.dll
A C:\Windows\SysWOW64\wshbth.dll
A C:\Windows\SysWOW64\wshcon.dll
A C:\Windows\SysWOW64\wshelper.dll
A C:\Windows\SysWOW64\wshext.dll
A C:\Windows\SysWOW64\wship6.dll
A C:\Windows\SysWOW64\wshirda.dll
A C:\Windows\SysWOW64\wshom.ocx
A C:\Windows\SysWOW64\wshqos.dll
A C:\Windows\SysWOW64\wshrm.dll
A C:\Windows\SysWOW64\WSHTCPIP.DLL
A C:\Windows\SysWOW64\wsmanconfig_schema.xml
A C:\Windows\SysWOW64\WSManHTTPConfig.exe
A C:\Windows\SysWOW64\WSManMigrationPlugin.dll
A C:\Windows\SysWOW64\WsmAuto.dll
A C:\Windows\SysWOW64\wsmplpxy.dll
A C:\Windows\SysWOW64\wsmprovhost.exe
A C:\Windows\SysWOW64\WsmPty.xsl
A C:\Windows\SysWOW64\WsmRes.dll
A C:\Windows\SysWOW64\WsmSvc.dll
A C:\Windows\SysWOW64\WsmTxt.xsl
A C:\Windows\SysWOW64\WsmWmiPl.dll
A C:\Windows\SysWOW64\wsnmp32.dll
A C:\Windows\SysWOW64\wsock32.dll
A C:\Windows\SysWOW64\WSTPager.ax
A C:\Windows\SysWOW64\wtsapi32.dll
A C:\Windows\SysWOW64\wuapi.dll
A C:\Windows\SysWOW64\wuapp.exe
A C:\Windows\SysWOW64\wudriver.dll
A C:\Windows\SysWOW64\wups.dll
A C:\Windows\SysWOW64\wusa.exe
A C:\Windows\SysWOW64\wuwebv.dll
A C:\Windows\SysWOW64\wvc.dll
A C:\Windows\SysWOW64\WWanAPI.dll
A C:\Windows\SysWOW64\wwapi.dll
A C:\Windows\SysWOW64\wzcdlg.dll
A C:\Windows\SysWOW64\x3daudio1_0.dll
A C:\Windows\SysWOW64\x3daudio1_1.dll
A C:\Windows\SysWOW64\X3DAudio1_2.dll
A C:\Windows\SysWOW64\xactengine2_0.dll
A C:\Windows\SysWOW64\xactengine2_1.dll
A C:\Windows\SysWOW64\xactengine2_10.dll
A C:\Windows\SysWOW64\xactengine2_2.dll
A C:\Windows\SysWOW64\xactengine2_3.dll
A C:\Windows\SysWOW64\xactengine2_4.dll
A C:\Windows\SysWOW64\xactengine2_5.dll
A C:\Windows\SysWOW64\xactengine2_6.dll
A C:\Windows\SysWOW64\xactengine2_7.dll
A C:\Windows\SysWOW64\xactengine2_8.dll
A C:\Windows\SysWOW64\xactengine2_9.dll
A C:\Windows\SysWOW64\XAPOFX1_3.dll
A C:\Windows\SysWOW64\XAudio2_5.dll
A C:\Windows\SysWOW64\XAudio64.dll
A C:\Windows\SysWOW64\xcopy.exe
A C:\Windows\SysWOW64\xinput1_1.dll
A C:\Windows\SysWOW64\xinput1_2.dll
A C:\Windows\SysWOW64\xinput1_3.dll
A C:\Windows\SysWOW64\XInput9_1_0.dll
A C:\Windows\SysWOW64\xmlfilter.dll
A C:\Windows\SysWOW64\xmllite.dll
A C:\Windows\SysWOW64\xmlprovi.dll
A C:\Windows\SysWOW64\xolehlp.dll
A C:\Windows\SysWOW64\XpsFilt.dll
A C:\Windows\SysWOW64\XpsGdiConverter.dll
A C:\Windows\SysWOW64\XpsPrint.dll
A C:\Windows\SysWOW64\XpsRasterService.dll
A C:\Windows\SysWOW64\xpsrchvw.exe
A C:\Windows\SysWOW64\xpsrchvw.xml
A C:\Windows\SysWOW64\xpsservices.dll
A C:\Windows\SysWOW64\XPSSHHDR.dll
A C:\Windows\SysWOW64\xpssvcs.dll
A C:\Windows\SysWOW64\xwizard.dtd
A C:\Windows\SysWOW64\xwizard.exe
A C:\Windows\SysWOW64\xwizards.dll
A C:\Windows\SysWOW64\xwreg.dll
A C:\Windows\SysWOW64\xwtpdui.dll
A C:\Windows\SysWOW64\xwtpw32.dll
A C:\Windows\SysWOW64\zipfldr.dll

#14 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 08 November 2012 - 04:52 AM

Rkill 2.4.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 11/08/2012 05:50:27 PM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* Explorer Policy Removed: NoActiveDesktopChanges [HKLM]

Backup Registry file created at:
C:\Users\Bobbi-Jo\Desktop\rkill\rkill-11-08-2012-05-50-36.reg

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Defender Disabled

[HKLM\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001

Checking Windows Service Integrity:

* Windows Defender (WinDefend) is not Running.
Startup Type set to: Disabled

* Security Center (wscsvc) is not Running.
Startup Type set to: Disabled

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* No issues found.

Program finished at: 11/08/2012 05:50:48 PM
Execution time: 0 hours(s), 0 minute(s), and 20 seconds(s)

#15 NotWiseOne

NotWiseOne
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:10:15 PM

Posted 08 November 2012 - 04:56 AM

"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms" "" "" ""
+ "rdpclip" "" "" "File not found: rdpclip"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "00TCrdMain" "TOSHIBA Flash Cards" "TOSHIBA Corporation" "c:\program files\toshiba\flashcards\tcrdmain.exe"
+ "HSON" "HotStartOn" "TOSHIBA Corporation" "c:\program files\toshiba\tbs\hson.exe"
+ "RtHDVCpl" "Realtek HD Audio Manager" "Realtek Semiconductor" "c:\program files\realtek\audio\hda\ravcpl64.exe"
+ "SmartFaceVWatcher" "SmartFaceVWatcher" "TOSHIBA Corporation" "c:\program files\toshiba\smartfacev\smartfacevwatcher.exe"
+ "SmoothView" "SmoothView" "TOSHIBA Corporation" "c:\program files\toshiba\smoothview\smoothview.exe"
+ "SynTPEnh" "Synaptics TouchPad Enhancements" "Synaptics Incorporated" "c:\program files\synaptics\syntp\syntpenh.exe"
+ "Teco" "TOSHIBA eco Utility" "TOSHIBA Corporation" "c:\program files\toshiba\teco\teco.exe"
+ "TosNC" "Message Center" "TOSHIBA Corporation" "c:\program files\toshiba\bulletinboard\tosnccore.exe"
+ "TosReelTimeMonitor" "Monitor of TOSHIBA ReelTime" "TOSHIBA Corporation" "c:\program files\toshiba\reeltime\tosreeltimemonitor.exe"
+ "TosSENotify" "" "TOSHIBA Corporation" "c:\program files\toshiba\toshiba hdd ssd alert\toswaitsrv.exe"
+ "TosWaitSrv" "" "TOSHIBA Corporation" "c:\program files\toshiba\tphm\toswaitsrv.exe"
+ "TPwrMain" "TOSHIBA Power Saver" "TOSHIBA Corporation" "c:\program files\toshiba\power saver\tpwrmain.exe"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "Adobe ARM" "Adobe Reader and Acrobat Manager" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe"
+ "AppleSyncNotifier" "AppleSyncNotifier" "Apple Inc." "c:\program files (x86)\common files\apple\mobile device support\applesyncnotifier.exe"
+ "APSDaemon" "Apple Push" "Apple Inc." "c:\program files (x86)\common files\apple\apple application support\apsdaemon.exe"
+ "HWSetup" "HWSetup" "TOSHIBA Electronics, Inc." "c:\program files\toshiba\utilities\hwsetup.exe"
+ "IAStorIcon" "IAStorIcon" "Intel Corporation" "c:\program files (x86)\intel\intel® rapid storage technology\iastoricon.exe"
+ "InstaLAN" "" "Affinegy, Inc." "c:\program files (x86)\belkin\router setup and monitor\belkinroutermonitor.exe"
+ "iTunesHelper" "iTunesHelper" "Apple Inc." "c:\program files (x86)\itunes\ituneshelper.exe"
+ "KeNotify" "KeNotify MFC Application" "TOSHIBA CORPORATION" "c:\program files (x86)\toshiba\utilities\kenotify.exe"
+ "QuickTime Task" "QuickTime Task" "Apple Inc." "c:\program files (x86)\quicktime\qttask.exe"
+ "StartCCC" "Catalyst® Control Center Launcher" "Advanced Micro Devices, Inc." "c:\program files (x86)\ati technologies\ati.ace\core-static\clistart.exe"
+ "SunJavaUpdateSched" "Java™ Update Scheduler" "Sun Microsystems, Inc." "c:\program files (x86)\common files\java\java update\jusched.exe"
+ "SVPWUTIL" "SVPWUTIL Application" "TOSHIBA CORPORATION" "c:\program files (x86)\toshiba\utilities\svpwutil.exe"
+ "ToshibaServiceStation" "TOSHIBA Service Station" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba service station\toshibaservicestation.exe"
+ "TWebCamera" "" "TOSHIBA CORPORATION." "c:\program files (x86)\toshiba\toshiba web camera application\twebcamera.exe"
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files (x86)\windows mail\winmail.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "GameXN GO" "Game Organizer" "EasyBits Software AS" "c:\programdata\gamexn\gamexngo.exe"
+ "MobileDocuments" "" "" "File not found: C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe"
+ "Sidebar" "Windows Desktop Gadgets" "Microsoft Corporation" "c:\program files\windows sidebar\sidebar.exe"
+ "swg" "GoogleToolbarNotifier" "Google Inc." "c:\program files (x86)\google\googletoolbarnotifier\googletoolbarnotifier.exe"
"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" ""
+ "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office14\msoxmlmf.dll"
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "HitmanPro" "HitmanPro Shell Extension" "SurfRight B.V." "c:\program files\hitmanpro\hmpshext.dll"
+ "PhotoStreamsExt" "" "" "c:\program files\common files\apple\internet services\shellstreams64.dll"
+ "Symantec.Norton.Antivirus.IEContextMenu" "Symantec Shared Component Shell Extension Module" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\20.2.0.19\navshext.dll"
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "PhotoStreamsExt" "ShellStreams.dll" "Apple Inc." "c:\program files (x86)\common files\apple\internet services\shellstreams.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "HitmanPro" "HitmanPro Shell Extension" "SurfRight B.V." "c:\program files\hitmanpro\hmpshext.dll"
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "ACE" "AMD Desktop Control Panel" "Advanced Micro Devices, Inc." "c:\program files (x86)\ati technologies\ati.ace\core-static\atiacm64.dll"
+ "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files\windows sidebar\sbdrop.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files (x86)\windows sidebar\sbdrop.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files (x86)\common files\adobe\acrobat\activex\pdfshell.dll"
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
+ "Symantec.Norton.Antivirus.IEContextMenu" "Symantec Shared Component Shell Extension Module" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine64\20.2.0.19\navshext.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Google Toolbar Helper" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_64.dll"
+ "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files\microsoft office\office14\urlredir.dll"
+ "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiehelpershim.dll"
+ "Google Toolbar Helper" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_32.dll"
+ "Java™ Plug-In 2 SSV Helper" "Java™ Platform SE binary" "Sun Microsystems, Inc." "c:\program files (x86)\java\jre6\bin\jp2ssv.dll"
+ "Java™ Plug-In SSV Helper" "Java™ Platform SE binary" "Sun Microsystems, Inc." "c:\program files (x86)\java\jre6\bin\ssv.dll"
+ "Norton Identity Protection" "coIEPlugIn" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\20.2.0.19\coieplg.dll"
+ "Norton Vulnerability Protection" "IPS Browser Helper DLL" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\20.2.0.19\ips\ipsbho.dll"
+ "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\urlredir.dll"
+ "Skype Browser Helper" "Skype Click to Call for Internet Explorer" "Skype Technologies S.A." "c:\program files (x86)\skype\toolbars\internet explorer\skypeieplugin.dll"
+ "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll"
"HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" ""
+ "Google Toolbar" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_64.dll"
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar" "" "" ""
+ "Google Toolbar" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_32.dll"
+ "Norton Toolbar" "coIEPlugIn" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\20.2.0.19\coieplg.dll"
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnielinkednotes.dll"
+ "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnie.dll"
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "&Blog This in Windows Live Writer" "Windows Live Writer Blog This Extension" "Microsoft Corporation" "c:\program files (x86)\windows live\writer\writerbrowserextension.dll"
+ "ieSpell" "" "" "File not found: C:\Program Files (x86)\ieSpell\iespell.dll/SPELLCHECK.HTM"
+ "ieSpell Options" "" "" "File not found: C:\Program Files (x86)\ieSpell\iespell.dll/SPELLOPTION.HTM"
+ "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnielinkednotes.dll"
+ "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnie.dll"
+ "Skype Click to Call" "Skype Click to Call for Internet Explorer" "Skype Technologies S.A." "c:\program files (x86)\skype\toolbars\internet explorer\skypeieplugin.dll"
"Task Scheduler" "" "" ""
+ "\Apple\AppleSoftwareUpdate" "Apple Software Update" "Apple Inc." "c:\program files (x86)\apple software update\softwareupdate.exe"
+ "\ConfigFree Startup Programs" "ConfigFree Task Tray Menu" "TOSHIBA CORPORATION" "c:\program files (x86)\toshiba\configfree\ndstray.exe"
+ "\Microsoft\Windows Defender\MP Scheduled Scan" "Microsoft Malware Protection Command Line Utility" "Microsoft Corporation" "c:\program files\windows defender\mpcmdrun.exe"
+ "\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task" "Windows Live Social Object Extractor Engine" "Microsoft Corporation" "c:\program files (x86)\windows live\soxe\wlsoxe.dll"
+ "\Microsoft\Windows\NetTrace\GatherNetworkInfo" "" "" "c:\windows\system32\gathernetworkinfo.vbs"
+ "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" "Windows Media Player Network Sharing Service Configuration Application" "Microsoft Corporation" "c:\program files\windows media player\wmpnscfg.exe"
+ "\Norton Internet Security\Norton Error Analyzer" "Symantec Error Reporting" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\20.2.0.19\symerr.exe"
+ "\Norton Management\Norton Error Analyzer" "Symantec Error Reporting" "Symantec Corporation" "c:\program files (x86)\norton management\engine\3.2.0.19\symerr.exe"
+ "\{907ACFDE-16C2-4C98-8D3D-311F4375812E}" "Skype " "Skype Technologies S.A." "c:\program files (x86)\skype\phone\skype.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "AdobeARMservice" "Adobe Acrobat Updater keeps your Adobe software up to date." "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe"
+ "AdobeFlashPlayerUpdateSvc" "This service keeps your Adobe Flash Player installation up to date with the latest enhancements and security fixes." "Adobe Systems Incorporated" "c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe"
+ "AffinegyService" "Affinegy Mobility Management support" "Affinegy, Inc." "c:\program files (x86)\belkin\router setup and monitor\belkinservice.exe"
+ "AMD External Events Utility" "AMD External Events Service Module" "AMD" "c:\windows\system32\atiesrxx.exe"
+ "Apple Mobile Device" "Provides the interface to Apple mobile devices." "Apple Inc." "c:\program files (x86)\common files\apple\mobile device support\applemobiledeviceservice.exe"
+ "aspnet_state" "Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start." "" "File not found: C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe"
+ "BcmSqlStartupSvc" "Controls the start of the Business Contact Manager SQL Server instance (MSSMLBIZ)." "Microsoft Corporation" "c:\program files (x86)\microsoft small business\business contact manager\bcmsqlstartupsvc.exe"
+ "Bonjour Service" "Enables hardware devices and software services to automatically configure themselves on the network and advertise their presence." "Apple Inc." "c:\program files\bonjour\mdnsresponder.exe"
+ "cfWiMAXService" "This is WiMAX Control Service of ConfigFree. Please do not stop this servce when you are using ConfigFree with Intel WiMAX device." "TOSHIBA CORPORATION" "c:\program files (x86)\toshiba\configfree\cfiwmxsvcs64.exe"
+ "ConfigFree Service" "You can't stop this service, if you want to keep ConfigFree functionality fine." "TOSHIBA CORPORATION" "c:\program files (x86)\toshiba\configfree\cfsvcs.exe"
+ "cvhsvc" "Client Virtualization Handler Service (unlocalized description)" "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\virtualization handler\cvhsvc.exe"
+ "GamesAppService" "WT Games App Services" "WildTangent, Inc." "c:\program files (x86)\wildtangent games\app\gamesappservice.exe"
+ "gupdate" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe"
+ "gupdatem" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe"
+ "gusvc" "Google Updater keeps your Google software up to date. If Google Updater Service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work." "Google" "c:\program files (x86)\google\common\google updater\googleupdaterservice.exe"
+ "HitmanProScheduler" "HitmanPro Scheduler controls scheduled scans" "SurfRight B.V." "c:\program files\hitmanpro\hmpsched.exe"
+ "HsfXAudioService" "User-mode gate for HSF Modem" "Conexant Systems, Inc." "c:\windows\syswow64\xaudio64.dll"
+ "IAStorDataMgrSvc" "Provides storage event notification and manages communication between the storage driver and user space applications." "Intel Corporation" "c:\program files (x86)\intel\intel® rapid storage technology\iastordatamgrsvc.exe"
+ "iPod Service" "iPod hardware management services" "Apple Inc." "c:\program files\ipod\bin\ipodservice.exe"
+ "LMS" "Allows applications to access the local Intel® Management and Security Application using its locally-available selected network interfaces." "Intel Corporation" "c:\program files (x86)\intel\intel® management engine components\lms\lms.exe"
+ "MBAMScheduler" "Malwarebytes Anti-Malware scheduler" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamscheduler.exe"
+ "MBAMService" "Malwarebytes Anti-Malware service" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamservice.exe"
+ "MCLIENT" "Norton Management" "Symantec Corporation" "c:\program files (x86)\norton management\engine\3.2.0.19\ccsvchst.exe"
+ "MSSQL$MSSMLBIZ" "Provides storage, processing and controlled access of data and rapid transaction processing." "Microsoft Corporation" "c:\program files (x86)\microsoft sql server\mssql.2\mssql\binn\sqlservr.exe"
+ "MSSQL$SQLEXPRESS" "Provides storage, processing and controlled access of data and rapid transaction processing." "Microsoft Corporation" "c:\program files (x86)\microsoft sql server\mssql.1\mssql\binn\sqlservr.exe"
+ "NIS" "Norton Internet Security" "Symantec Corporation" "c:\program files (x86)\norton internet security\engine\20.2.0.19\ccsvchst.exe"
+ "ose" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\source engine\ose.exe"
+ "osppsvc" "Office Software Protection Platform Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe"
+ "RSELSVC" "This service is the purpose of changing modem region" "TOSHIBA Corporation" "c:\program files\toshiba\rselect\rselsvc.exe"
+ "sftlist" "Streams and manages applications." "Microsoft Corporation" "c:\program files (x86)\microsoft application virtualization client\sftlist.exe"
+ "sftvsa" "Monitors global service events and launches virtual services." "Microsoft Corporation" "c:\program files (x86)\microsoft application virtualization client\sftvsa.exe"
+ "SkypeUpdate" "Enables the detection, download and installation of updates for Skype." "Skype Technologies" "c:\program files (x86)\skype\updater\updater.exe"
+ "SQLBrowser" "Provides SQL Server connection information to client computers." "Microsoft Corporation" "c:\program files (x86)\microsoft sql server\90\shared\sqlbrowser.exe"
+ "SQLWriter" "Provides the interface to backup/restore Microsoft SQL server through the Windows VSS infrastructure." "Microsoft Corporation" "c:\program files\microsoft sql server\90\shared\sqlwriter.exe"
+ "TMachInfo" "TOSHIBA Machine Information Service" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba service station\tmachinfo.exe"
+ "TODDSrv" "TDCSrv Application" "TOSHIBA Corporation" "c:\windows\system32\toddsrv.exe"
+ "TosCoSrv" "TOSHIBA Power Saver manages power saving settings supported by TOSHIBA. These settings will not work if the service has stopped." "TOSHIBA Corporation" "c:\program files\toshiba\power saver\toscosrv.exe"
+ "TOSHIBA eco Utility Service" "TOSHIBA eco Utility Service" "TOSHIBA Corporation" "c:\program files\toshiba\teco\tecoservice.exe"
+ "TOSHIBA HDD SSD Alert Service" "TOSHIBA HDD SSD Alert" "TOSHIBA Corporation" "c:\program files\toshiba\toshiba hdd ssd alert\tossmartsrv.exe"
+ "TPCHSrv" "TOSHIBA PC Health Monitor" "TOSHIBA Corporation" "c:\program files\toshiba\tphm\tpchsrv.exe"
+ "UNS" "Intel® Management and Security Application User Notification Service - Updates the Windows Event Log with notifications of pre defined events received from the local Intel® Management and Security Application Device." "Intel Corporation" "c:\program files (x86)\intel\intel® management engine components\uns\uns.exe"
+ "wlidsvc" "Enables Windows Live ID authentication." "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidsvc.exe"
+ "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "adp94xx" "Adaptec Windows SAS/SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adp94xx.sys"
+ "adpahci" "Adaptec Windows SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adpahci.sys"
+ "adpu320" "Adaptec StorPort Ultra320 SCSI Driver (X64)" "Adaptec, Inc." "c:\windows\system32\drivers\adpu320.sys"
+ "AgereSoftModem" "SoftModem Device Driver" "LSI Corp" "c:\windows\system32\drivers\agrsm64.sys"
+ "aliide" "ALi mini IDE Driver" "Acer Laboratories Inc." "c:\windows\system32\drivers\aliide.sys"
+ "amdsata" "AHCI 1.2 Device Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdsata.sys"
+ "amdsbs" "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "AMD Technologies Inc." "c:\windows\system32\drivers\amdsbs.sys"
+ "amdxata" "Storage Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdxata.sys"
+ "arc" "Adaptec RAID Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arc.sys"
+ "arcsas" "Adaptec SAS RAID WS03 Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arcsas.sys"
+ "atikmdag" "ATI Radeon Kernel Mode Driver" "ATI Technologies Inc." "c:\windows\system32\drivers\atikmdag.sys"
+ "b06bdrv" "Broadcom NetXtreme II GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\bxvbda.sys"
+ "b57nd60a" "Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver." "Broadcom Corporation" "c:\windows\system32\drivers\b57nd60a.sys"
+ "BHDrvx64" "SONAR Engine Driver" "Symantec Corporation" "c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\nis_20.1.1.2\definitions\bashdefs\20121030.002\bhdrvx64.sys"
+ "BrFiltLo" "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltlo.sys"
+ "BrFiltUp" "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltup.sys"
+ "Brserid" "Brotehr Serial I/F Driver (WDM)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserid.sys"
+ "BrSerWdm" "Brother Serial driver (WDM version)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserwdm.sys"
+ "BrUsbMdm" "Brother USB MDM Driver " "Brother Industries Ltd." "c:\windows\system32\drivers\brusbmdm.sys"
+ "BrUsbSer" "Brother USB Serial Driver" "Brother Industries Ltd." "c:\windows\system32\drivers\brusbser.sys"
+ "BVRPMPR5a64" "BVRP NDIS 5.0 MPR Protocol Driver" "Avanquest Software" "c:\windows\system32\drivers\bvrpmpr5a64.sys"
+ "CAXHWAZL" "HSF_HWAZL WDM driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\caxhwazl.sys"
+ "ccSet_MCLIENT" "Common Client Settings Driver" "Symantec Corporation" "c:\windows\system32\drivers\mclientx64\0302000.013\ccsetx64.sys"
+ "ccSet_NIS" "Common Client Settings Driver" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1402000.013\ccsetx64.sys"
+ "cmdide" "CMD PCI IDE Bus Driver" "CMD Technology, Inc." "c:\windows\system32\drivers\cmdide.sys"
+ "ebdrv" "Broadcom NetXtreme II 10 GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\evbda.sys"
+ "eeCtrl" "Symantec Eraser Control Driver" "Symantec Corporation" "c:\program files (x86)\common files\symantec shared\eengine\eectrl64.sys"
+ "elxstor" "Storport Miniport Driver for LightPulse HBAs" "Emulex" "c:\windows\system32\drivers\elxstor.sys"
+ "EraserUtilRebootDrv" "Symantec Eraser Utility Driver" "Symantec Corporation" "c:\program files (x86)\common files\symantec shared\eengine\eraserutilrebootdrv.sys"
+ "GEARAspiWDM" "CD DVD Filter" "GEAR Software Inc." "c:\windows\system32\drivers\gearaspiwdm.sys"
+ "hcw85cir" "Hauppauge WinTV 885 Consumer IR Driver for eHome" "Hauppauge Computer Works, Inc." "c:\windows\system32\drivers\hcw85cir.sys"
+ "HECIx64" "Intel® Management Engine Interface" "Intel Corporation" "c:\windows\system32\drivers\hecix64.sys"
+ "HpSAMD" "Smart Array SAS/SATA Controller Media Driver" "Hewlett-Packard Company" "c:\windows\system32\drivers\hpsamd.sys"
+ "HSF_DPV" "HSF_DP driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\cax_dpv.sys"
+ "iaStor" "Intel Matrix Storage Manager driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastor.sys"
+ "iaStorV" "Intel Matrix Storage Manager driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastorv.sys"
+ "IDSVia64" "Symantec Intrusion Prevention Driver" "Symantec Corporation" "c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\nis_20.1.1.2\definitions\ipsdefs\20121106.002\idsvia64.sys"
+ "iirsp" "Intel/ICP Raid Storport Driver" "Intel Corp./ICP vortex GmbH" "c:\windows\system32\drivers\iirsp.sys"
+ "Impcd" "Intel® Turbo Boost Technology Driver" "Intel Corporation" "c:\windows\system32\drivers\impcd.sys"
+ "IntcAzAudAddService" "Realtek® High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhd64.sys"
+ "LPCFilter" "LPCFilter" "COMPAL ELECTRONIC INC." "c:\windows\system32\drivers\lpcfilter.sys"
+ "LSI_FC" "LSI Fusion-MPT FC Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_fc.sys"
+ "LSI_SAS" "LSI Fusion-MPT SAS Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas.sys"
+ "LSI_SAS2" "LSI SAS Gen2 Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas2.sys"
+ "LSI_SCSI" "LSI Fusion-MPT SCSI Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_scsi.sys"
+ "MBAMProtector" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\windows\system32\drivers\mbam.sys"
+ "mdmxsdk" "Diagnostic Interface x64 Driver" "Conexant" "c:\windows\system32\drivers\mdmxsdk.sys"
+ "megasas" "MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64" "LSI Corporation" "c:\windows\system32\drivers\megasas.sys"
+ "MegaSR" "LSI MegaRAID Software RAID Driver" "LSI Corporation, Inc." "c:\windows\system32\drivers\megasr.sys"
+ "NAVENG" "AV Engine" "Symantec Corporation" "c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\nis_20.1.1.2\definitions\virusdefs\20121106.032\eng64.sys"
+ "NAVEX15" "AV Engine" "Symantec Corporation" "c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\nis_20.1.1.2\definitions\virusdefs\20121106.032\ex64.sys"
+ "nfrd960" "IBM ServeRAID Controller Driver" "IBM Corporation" "c:\windows\system32\drivers\nfrd960.sys"
+ "nvraid" "NVIDIA® nForce™ RAID Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvraid.sys"
+ "nvstor" "NVIDIA® nForce™ Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor.sys"
+ "pccsmcfd" "" "" "File not found: system32\DRIVERS\pccsmcfdx64.sys"
+ "PGEffect" "TOSHIBA Universal Camera Filter Driver" "TOSHIBA Corporation" "c:\windows\system32\drivers\pgeffect.sys"
+ "ql2300" "QLogic Fibre Channel Stor Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql2300.sys"
+ "ql40xx" "QLogic iSCSI Storport Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql40xx.sys"
+ "RSUSBSTOR" "" "" "File not found: System32\Drivers\RtsUStor.sys"
+ "RTHDMIAzAudService" "Realtek® High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rthdmivx.sys"
+ "RTL8167" "Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver " "Realtek " "c:\windows\system32\drivers\rt64win7.sys"
+ "rtl8192se" "Realtek RTL81892SE NDIS Driverr" "Realtek Semiconductor Corporation " "c:\windows\system32\drivers\rtl8192se.sys"
+ "secdrv" "Macrovision SECURITY Driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "SiSRaid2" "SiS RAID Stor Miniport Driver" "Silicon Integrated Systems Corp." "c:\windows\system32\drivers\sisraid2.sys"
+ "SiSRaid4" "SiS AHCI Stor-Miniport Driver" "Silicon Integrated Systems" "c:\windows\system32\drivers\sisraid4.sys"
+ "SRTSP" "Symantec AutoProtect" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1402000.013\srtsp64.sys"
+ "SRTSPX" "Symantec AutoProtect" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1402000.013\srtspx64.sys"
+ "SrvHsfHDA" "HSF_HWAZL WDM driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\vstazl6.sys"
+ "SrvHsfV92" "HSF_DP driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\vstdpv6.sys"
+ "SrvHsfWinac" "HSF_CNXT driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\vstcnxt6.sys"
+ "stexstor" "Promise SuperTrak EX Series Driver for Windows " "Promise Technology" "c:\windows\system32\drivers\stexstor.sys"
+ "SymDS" "Symantec Data Store" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1402000.013\symds64.sys"
+ "SymEFA" "Symantec Extended File Attributes" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1402000.013\symefa64.sys"
+ "SymEvent" "Symantec Event Library" "Symantec Corporation" "c:\windows\system32\drivers\symevent64x86.sys"
+ "SymIM" "Symantec Network Security Intermediate Filter Driver" "Symantec Corporation" "c:\windows\system32\drivers\symimv.sys"
+ "SymIRON" "Iron Driver" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1402000.013\ironx64.sys"
+ "SymNetS" "Network Security Driver" "Symantec Corporation" "c:\windows\system32\drivers\nisx64\1402000.013\symnets.sys"
+ "SynTP" "Synaptics Touchpad Driver" "Synaptics Incorporated" "c:\windows\system32\drivers\syntp.sys"
+ "tdcmdpst" "TOSHIBA ODD Writing Driver for x64." "TOSHIBA Corporation." "c:\windows\system32\drivers\tdcmdpst.sys"
+ "tos_sps64" "tos_sps64" "TOSHIBA Corporation" "c:\windows\system32\drivers\tos_sps64.sys"
+ "TVALZ" "TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver" "TOSHIBA Corporation" "c:\windows\system32\drivers\tvalz_o.sys"
+ "TVALZFL" "TOSHIBA TVALZ Filter Driver for x64" "TOSHIBA Corporation" "c:\windows\system32\drivers\tvalzfl.sys"
+ "USBAAPL64" "Apple Mobile Device USB Driver" "Apple, Inc." "c:\windows\system32\drivers\usbaapl64.sys"
+ "viaide" "VIA Generic PCI IDE Bus Driver" "VIA Technologies, Inc." "c:\windows\system32\drivers\viaide.sys"
+ "vsmraid" "VIA RAID DRIVER FOR AMD-X86-64" "VIA Technologies Inc.,Ltd" "c:\windows\system32\drivers\vsmraid.sys"
+ "winachsf" "HSF_CNXT driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\cax_cnxt.sys"
+ "XAudio" "Modem Audio Device Driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\xaudio64.sys"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "msacm.dvacm" "Ulead DV Audio ACM Driver" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\vio\dvacm.acm"
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\syswow64\l3codeca.acm"
+ "msacm.mpegacm" "Ulead MPEG1 Layer2 Audio ACM Driver" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\mpegacm.acm"
+ "msacm.ulmp3acm" "Ulead MP3 codec engine" "Ulead systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulmp3acm.acm"
+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\syswow64\iccvid.dll"
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "MS PR Source Filter" "PlayReady DirectShow Source Filter DLL" "Microsoft Corporation" "c:\program files\playready\prsource.dll"
+ "PlayReady DMO Wrapper" "PlayReady DirectShow DMO Wrapper Filter DLL" "Microsoft Corporation" "c:\program files\playready\prdmowrapper.dll"
+ "SFVCaptureFilter" "SmartFaceVCapt" "TOSHIBA Corporation" "c:\program files\toshiba\smartfacev\smartfacevcapt.dll"
"HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "ATI Ticker" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\ticker.ax"
+ "Capture File Writer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "Corel GetStartTime" "File GetStartTime Filter (Sample)" "Microsoft Corporation" "c:\program files (x86)\common files\ulead systems\mpeg\getstarttime.ax"
+ "Dib Output" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\diboutput.ax"
+ "Dib Receive" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dibreceive.ax"
+ "DV ACM V/A Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DV V/A Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "DV Video Source Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\dvsf.ax"
+ "Image Effects" "TimeStam Dynamic Link Library" "" "c:\program files (x86)\toshiba\toshiba web camera application\pgtimefilter.dll"
+ "MMACE Deinterlace" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\mmacefilters.dll"
+ "MMACE ProcAmp" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\mmacefilters.dll"
+ "MMACE SoftEmu" "" "" "c:\program files (x86)\ati technologies\ati.ace\graphics-previews-common\mmacefilters.dll"
+ "Record Queue" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "TOSHIBA Audio Back Switcher" "" "" "c:\program files (x86)\toshiba\toshiba dvd player\tosaudiobackswitcher.ax"
+ "TOSHIBA Audio Decoder DVD" "TOSHIBA Audio Decoder DVD" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba dvd player\tosauddecl.ax"
+ "TOSHIBA Audio Front Switcher" "" "" "c:\program files (x86)\toshiba\toshiba dvd player\tosaudiofrontswitcher.ax"
+ "TOSHIBA Audio Rate Converter" "TOSHIBA Audio Rate Converter" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba dvd player\tosarc.ax"
+ "TOSHIBA DualMono" "TOSHIBA DualMono" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba dvd player\tosdualmono.ax"
+ "TOSHIBA DVD Navigator" "TOSHIBA DVD Navigator" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba dvd player\tdvdnavi.ax"
+ "TOSHIBA DVD VR Navigator" "TOSHIBA DVD Player" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba dvd player\tvrnavi.ax"
+ "TOSHIBA Progress Monitor" "TOSHIBA Progress Monitor" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba disc creator\tprogmon.ax"
+ "TOSHIBA WAV Converter" "TOSHIBA Wav Converter" "TOSHIBA Corporation" "c:\program files (x86)\toshiba\toshiba disc creator\twavconv.ax"
+ "Ulead AMR Audio Decoder" "MP4 AMR Audio Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uladamr.ax"
+ "Ulead Audio Dual Channel Filter" "Ulead Audio Dual Channel Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uaudiodcfilter.ax"
+ "Ulead DV Scene Detect" "" "" "C:\Program Files (x86)\Common Files\Ulead Systems\DVD\"
+ "Ulead DV SubTitle Filter" "DV SubTitle Filter" "Microsoft Corporation" "c:\program files (x86)\common files\ulead systems\mpeg\dvtranssubtitle.ax"
+ "Ulead DV Writer" "ulDVWriter" "Corel" "c:\program files (x86)\common files\ulead systems\capture\uldvrite.ax"
+ "Ulead DVB Parser" "Ulead DVB Parser Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvbparser.ax"
+ "Ulead DVD Audio Decoder 2" "Audio Decoder" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead DVD Navigator" "DVD Navigator filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\dvd\uleaddvdnavigator.ax"
+ "Ulead DVD Parser" "ulDVDParser" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdparser.ax"
+ "Ulead DVD Video decoder 2" "DVD Video Decoder with DxVA Support" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdvideo.ax"
+ "ULead File Source (Async.)" "Ulead Async Filter" "Ulead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulasync.ax"
+ "ULead File Writer" "File Dump Filter" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\uldump.ax"
+ "Ulead H264 Decoder" "" "" "File not found: C:\Program Files (x86)\Common Files\Ulead Systems\Mpeg\uldsh264.ax"
+ "ULead Infinite Pin Tee" "Ulead Infinite Tee Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uinftee.ax"
+ "Ulead MPEG Audio Decoder" "Audio Decoder" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uldvdaudio.ax"
+ "Ulead MPEG Encoder" "MPEG Encoder and Muxer" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulesmpeg.ax"
+ "Ulead MPEG Muxer" "MPEG Muxer" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulmxmpeg.ax"
+ "Ulead MPEG Splitter" "ULead Mpeg I/II Splitter" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\ulspmpeg.ax"
+ "Ulead MPEG Transcoder" "ulMPGTrans" "Ulead com" "c:\program files (x86)\common files\ulead systems\mpeg\ulmpgtrans.ax"
+ "Ulead MPEG Video Decoder" "MPEG Video and Audio Decoder" "ULead Systems" "c:\program files (x86)\common files\ulead systems\mpeg\uldsmpeg.ax"
+ "Ulead MPEG-4 ASP Video Decoder" "MP4 ASP Video Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulaspvdmp4.ax"
+ "Ulead MPEG-4 Encoder" "MP4 Encoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulmp4enc.ax"
+ "Ulead MPEG-4 Splitter" "MP4 Splitter Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulspmp4.ax"
+ "Ulead MPEG-4 Video Decoder" "MP4 Video Decoder Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulvdmp4.ax"
+ "Ulead Ogg Parser" "ulOggParserFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggparserfilter.ax"
+ "Ulead OggVorbis Decoder" "ulOggVorbisDecoderFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggvorbisdecoderfilter.ax"
+ "Ulead OggVorbis Encoder" "ulOggVorbisEncoderFilter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\uloggvorbisencoderfilter.ax"
+ "Ulead Push Source Filter" "Ulead Push Source Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulpushsource.ax"
+ "Ulead Sub-Picture Push Source Filter" "Ulead Sub-Picture Push Source Filter" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\mpeg\ulsubpicpushsource.ax"
+ "Ulead Video Deinterlace Filter" "" "Ulead Systems, Inc." "c:\program files (x86)\common files\ulead systems\filters\deinterlace.ax"
+ "WM VIH2 Fix" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT DV Extract Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Sample Info Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Switch Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Renderer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Source" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
"HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute" "" "" ""
+ "bootdelete" "" "" "File not found: bootdelete"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers" "" "" ""
+ "SmartFaceVCP" "SmartFaceVCP" "TOSHIBA Corporation" "c:\program files\toshiba\smartfacev\smartfacevcp.dll"
+ "WLIDCredentialProvider" "Microsoft® Windows Live ID Credential Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidcredprov.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries" "" "" ""
+ "mdnsNSP" "Bonjour Namespace Provider" "Apple Inc." "c:\program files (x86)\bonjour\mdnsnsp.dll"
+ "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll"
+ "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64" "" "" ""
+ "mdnsNSP" "Bonjour Namespace Provider" "Apple Inc." "c:\program files\bonjour\mdnsnsp.dll"
+ "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll"
+ "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" ""
+ "BJ Language Monitor4" "Canon Inkjet Printer Driver" "CANON INC." "c:\windows\system32\cnblm4.dll"
"C:\Users\Bobbi-Jo\AppData\Local\Microsoft\Windows Sidebar\Settings.ini" "" "" ""
+ "" "" "" "C:\Program Files\Windows Sidebar\Gadgets\Norton.Gadget"
+ "ConfigFree" "Search for wireless LAN devices currently used in the neighborhood, and display the information about these devices a the virtual map." "TOSHIBA Corporation" "C:\Program Files\Windows Sidebar\Shared Gadgets\ConfigFree.gadget\Gadget.xml"
+ "Power Consumption Meter" "This gadget shows you the current status of the power consumption of your PC." "TOSHIBA Corporation" "C:\Program Files\Windows Sidebar\Shared Gadgets\Power Consumption Meter Eco.Gadget\Gadget.xml"


Thanks heaps for this! I hope it is working/




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users