Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Windows Security Center won't stay on


  • Please log in to reply
9 replies to this topic

#1 stradeva

stradeva

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:53 AM

Posted 09 December 2012 - 12:17 PM

Firstly, thank you for whoever is able to help me!!! I started having this problem last night, when I noticed clicking on links in Google sent me to random spam websites (I was working on a research project when I noticed). I have Microsoft Security Essentials installed on my computer, however I cannot open it to check the settings. I have clicked on the alert bubble telling me the Security Center is off to try to fix it, however it only tells me the service can't be started. I looked up how to fix that, and tried going into services, changing the startup from disabled to automatic (Delayed), and starting it. Sometimes it starts, but turns off shortly after. Sometimes it shows another error message "Windows could not start the Security Center service on Local Computer. Error 1079: The account specified for this service differs from the account specified for other services running in the same process." Currently it is starting, but turns off within a minute.

I have run Spybot, 2 registry errors were found, but spybot insists that I am not an admin and will not fix the problem. I checked my settings and I am an admin, as well as the only user on this computer. I have also run Malaware Bytes, it found two errors last night which I had removed. Today it is finding no errors. I tried going into the registry to fix the errors Spybot found (HKEY_Local_Machine\system\currentcontrolset\services\wscsvc\start (is not) w=2, and HKEY_Local_Machine\system\currentcontrolset\services\wscsvc\start (is not) w=2 (64 bit) ). The start value is set to 4, so I tried changing it to 2. I restarted the computer, and the registry reads at value 4 again. It's possible that what I did wasn't even the correct thing to try to fix it... That error is the only error anything I run is finding.

I am running Windows 7.

Thanks so much for helping me!!! I wish I knew what I did that caused this to happen!

BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:53 PM

Posted 09 December 2012 - 12:32 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here.If you get crashes in normal mode,run it in safemode with networking

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 stradeva

stradeva
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:53 AM

Posted 09 December 2012 - 05:46 PM

I ran the three programs...I'm confused because I don't think any said anything was detected, but I Know my computer is definitely acting weird!

TDSSkiller:

13:02:39.0261 4044 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
13:02:39.0682 4044 ============================================================
13:02:39.0682 4044 Current date / time: 2012/12/09 13:02:39.0682
13:02:39.0682 4044 SystemInfo:
13:02:39.0682 4044
13:02:39.0682 4044 OS Version: 6.1.7601 ServicePack: 1.0
13:02:39.0682 4044 Product type: Workstation
13:02:39.0682 4044 ComputerName: STRADEVAPC
13:02:39.0682 4044 UserName: Stradeva
13:02:39.0682 4044 Windows directory: C:\Windows
13:02:39.0682 4044 System windows directory: C:\Windows
13:02:39.0682 4044 Running under WOW64
13:02:39.0682 4044 Processor architecture: Intel x64
13:02:39.0682 4044 Number of processors: 4
13:02:39.0682 4044 Page size: 0x1000
13:02:39.0682 4044 Boot type: Normal boot
13:02:39.0683 4044 ============================================================
13:02:40.0781 4044 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:02:40.0849 4044 ============================================================
13:02:40.0849 4044 \Device\Harddisk0\DR0:
13:02:40.0849 4044 MBR partitions:
13:02:40.0849 4044 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
13:02:40.0850 4044 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3800
13:02:40.0850 4044 ============================================================
13:02:40.0907 4044 C: <-> \Device\Harddisk0\DR0\Partition2
13:02:40.0908 4044 ============================================================
13:02:40.0908 4044 Initialize success
13:02:40.0908 4044 ============================================================
13:02:49.0706 7136 ============================================================
13:02:49.0706 7136 Scan started
13:02:49.0706 7136 Mode: Manual;
13:02:49.0706 7136 ============================================================
13:02:49.0919 7136 ================ Scan system memory ========================
13:02:49.0919 7136 System memory - ok
13:02:49.0921 7136 ================ Scan services =============================
13:02:50.0056 7136 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
13:02:50.0060 7136 1394ohci - ok
13:02:50.0101 7136 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
13:02:50.0105 7136 ACPI - ok
13:02:50.0123 7136 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
13:02:50.0125 7136 AcpiPmi - ok
13:02:50.0239 7136 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:02:50.0241 7136 AdobeARMservice - ok
13:02:50.0362 7136 [ 0CB0AA071C7B86A64F361DCFDF357329 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
13:02:50.0365 7136 AdobeFlashPlayerUpdateSvc - ok
13:02:50.0399 7136 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
13:02:50.0407 7136 adp94xx - ok
13:02:50.0433 7136 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
13:02:50.0439 7136 adpahci - ok
13:02:50.0451 7136 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
13:02:50.0455 7136 adpu320 - ok
13:02:50.0476 7136 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
13:02:50.0477 7136 AeLookupSvc - ok
13:02:50.0521 7136 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys
13:02:50.0529 7136 AFD - ok
13:02:50.0561 7136 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
13:02:50.0563 7136 agp440 - ok
13:02:50.0578 7136 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
13:02:50.0580 7136 ALG - ok
13:02:50.0596 7136 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
13:02:50.0598 7136 aliide - ok
13:02:50.0652 7136 [ 5EBA5E837D6635AEA999BAE47E186C6F ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
13:02:50.0656 7136 AMD External Events Utility - ok
13:02:50.0668 7136 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
13:02:50.0669 7136 amdide - ok
13:02:50.0706 7136 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
13:02:50.0708 7136 AmdK8 - ok
13:02:50.0859 7136 [ DCC8177244FE79C61C4E73C65E63922A ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
13:02:50.0952 7136 amdkmdag - ok
13:02:50.0973 7136 [ 7FE67D107329DC2CF89136A8E19BCEB7 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
13:02:50.0976 7136 amdkmdap - ok
13:02:50.0991 7136 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
13:02:50.0993 7136 AmdPPM - ok
13:02:51.0027 7136 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
13:02:51.0029 7136 amdsata - ok
13:02:51.0053 7136 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
13:02:51.0057 7136 amdsbs - ok
13:02:51.0071 7136 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
13:02:51.0071 7136 amdxata - ok
13:02:51.0123 7136 [ F9DAC844B1D370DA4C984D4C22F5E696 ] AntiSpywareService C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe
13:02:51.0132 7136 AntiSpywareService - ok
13:02:51.0177 7136 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
13:02:51.0179 7136 AppID - ok
13:02:51.0198 7136 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
13:02:51.0200 7136 AppIDSvc - ok
13:02:51.0209 7136 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll
13:02:51.0211 7136 Appinfo - ok
13:02:51.0222 7136 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
13:02:51.0224 7136 arc - ok
13:02:51.0238 7136 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
13:02:51.0240 7136 arcsas - ok
13:02:51.0455 7136 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
13:02:51.0457 7136 aspnet_state - ok
13:02:51.0486 7136 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
13:02:51.0487 7136 AsyncMac - ok
13:02:51.0517 7136 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
13:02:51.0517 7136 atapi - ok
13:02:51.0557 7136 [ CBE5F8B3E54198F5DFE403A55A95DE08 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
13:02:51.0580 7136 AtiHDAudioService - ok
13:02:51.0632 7136 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:02:51.0641 7136 AudioEndpointBuilder - ok
13:02:51.0655 7136 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
13:02:51.0662 7136 AudioSrv - ok
13:02:51.0711 7136 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
13:02:51.0714 7136 AxInstSV - ok
13:02:51.0750 7136 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
13:02:51.0757 7136 b06bdrv - ok
13:02:51.0779 7136 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
13:02:51.0784 7136 b57nd60a - ok
13:02:51.0843 7136 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
13:02:51.0846 7136 BBSvc - ok
13:02:51.0868 7136 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
13:02:51.0871 7136 BDESVC - ok
13:02:51.0881 7136 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
13:02:51.0882 7136 Beep - ok
13:02:51.0931 7136 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
13:02:51.0941 7136 BFE - ok
13:02:51.0970 7136 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
13:02:51.0983 7136 BITS - ok
13:02:52.0007 7136 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
13:02:52.0009 7136 blbdrive - ok
13:02:52.0043 7136 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
13:02:52.0044 7136 bowser - ok
13:02:52.0060 7136 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
13:02:52.0061 7136 BrFiltLo - ok
13:02:52.0072 7136 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
13:02:52.0073 7136 BrFiltUp - ok
13:02:52.0108 7136 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
13:02:52.0111 7136 Browser - ok
13:02:52.0132 7136 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
13:02:52.0136 7136 Brserid - ok
13:02:52.0154 7136 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
13:02:52.0155 7136 BrSerWdm - ok
13:02:52.0170 7136 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
13:02:52.0172 7136 BrUsbMdm - ok
13:02:52.0181 7136 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
13:02:52.0182 7136 BrUsbSer - ok
13:02:52.0220 7136 [ FF7C57973EEAD140062238C5A0B7D455 ] BTCFilterService C:\Windows\system32\DRIVERS\motfilt.sys
13:02:52.0221 7136 BTCFilterService - ok
13:02:52.0234 7136 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
13:02:52.0236 7136 BTHMODEM - ok
13:02:52.0262 7136 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
13:02:52.0264 7136 bthserv - ok
13:02:52.0298 7136 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
13:02:52.0300 7136 cdfs - ok
13:02:52.0378 7136 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
13:02:52.0381 7136 cdrom - ok
13:02:52.0401 7136 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
13:02:52.0403 7136 CertPropSvc - ok
13:02:52.0418 7136 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
13:02:52.0420 7136 circlass - ok
13:02:52.0467 7136 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
13:02:52.0472 7136 CLFS - ok
13:02:52.0512 7136 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:02:52.0514 7136 clr_optimization_v2.0.50727_32 - ok
13:02:52.0543 7136 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:02:52.0545 7136 clr_optimization_v2.0.50727_64 - ok
13:02:52.0612 7136 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:02:52.0615 7136 clr_optimization_v4.0.30319_32 - ok
13:02:52.0652 7136 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:02:52.0655 7136 clr_optimization_v4.0.30319_64 - ok
13:02:52.0698 7136 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
13:02:52.0699 7136 CmBatt - ok
13:02:52.0729 7136 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
13:02:52.0731 7136 cmdide - ok
13:02:52.0776 7136 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
13:02:52.0781 7136 CNG - ok
13:02:52.0793 7136 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
13:02:52.0795 7136 Compbatt - ok
13:02:52.0842 7136 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
13:02:52.0844 7136 CompositeBus - ok
13:02:52.0849 7136 COMSysApp - ok
13:02:52.0861 7136 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
13:02:52.0863 7136 crcdisk - ok
13:02:55.0208 7136 [ C128E740CDB1048FB72F4F80FA384943 ] CrossLoopService C:\Users\Stradeva\AppData\Local\CrossLoop\CrossLoopService.exe
13:02:55.0216 7136 CrossLoopService - ok
13:02:55.0326 7136 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll
13:02:55.0330 7136 CryptSvc - ok
13:02:55.0429 7136 [ 914A7156B0C0F10BE645A02E13F576B2 ] DAUpdaterSvc C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
13:02:55.0431 7136 DAUpdaterSvc - ok
13:02:55.0485 7136 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
13:02:55.0494 7136 DcomLaunch - ok
13:02:55.0522 7136 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
13:02:55.0527 7136 defragsvc - ok
13:02:55.0599 7136 [ 74C1305F6F784A725B0A40D693FF4A09 ] DeviceMonitorService C:\Program Files (x86)\Motorola Media Link\Lite\NServiceEntry.exe
13:02:55.0601 7136 DeviceMonitorService - ok
13:02:55.0651 7136 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
13:02:55.0653 7136 DfsC - ok
13:02:55.0676 7136 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
13:02:55.0682 7136 Dhcp - ok
13:02:55.0701 7136 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
13:02:55.0703 7136 discache - ok
13:02:55.0734 7136 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
13:02:55.0736 7136 Disk - ok
13:02:55.0771 7136 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
13:02:55.0775 7136 Dnscache - ok
13:02:55.0816 7136 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
13:02:55.0820 7136 dot3svc - ok
13:02:55.0851 7136 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
13:02:55.0854 7136 DPS - ok
13:02:55.0870 7136 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
13:02:55.0872 7136 drmkaud - ok
13:02:55.0919 7136 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
13:02:55.0933 7136 DXGKrnl - ok
13:02:55.0958 7136 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
13:02:55.0960 7136 EapHost - ok
13:02:56.0027 7136 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
13:02:56.0056 7136 ebdrv - ok
13:02:56.0090 7136 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
13:02:56.0093 7136 EFS - ok
13:02:56.0170 7136 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
13:02:56.0187 7136 ehRecvr - ok
13:02:56.0209 7136 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
13:02:56.0212 7136 ehSched - ok
13:02:56.0251 7136 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
13:02:56.0259 7136 elxstor - ok
13:02:56.0285 7136 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
13:02:56.0286 7136 ErrDev - ok
13:02:56.0316 7136 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
13:02:56.0322 7136 EventSystem - ok
13:02:56.0345 7136 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
13:02:56.0348 7136 exfat - ok
13:02:56.0367 7136 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
13:02:56.0371 7136 fastfat - ok
13:02:56.0415 7136 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
13:02:56.0425 7136 Fax - ok
13:02:56.0434 7136 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
13:02:56.0436 7136 fdc - ok
13:02:56.0463 7136 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
13:02:56.0464 7136 fdPHost - ok
13:02:56.0470 7136 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
13:02:56.0471 7136 FDResPub - ok
13:02:56.0495 7136 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
13:02:56.0496 7136 FileInfo - ok
13:02:56.0505 7136 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
13:02:56.0506 7136 Filetrace - ok
13:02:56.0517 7136 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
13:02:56.0518 7136 flpydisk - ok
13:02:56.0531 7136 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
13:02:56.0535 7136 FltMgr - ok
13:02:56.0584 7136 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll
13:02:56.0598 7136 FontCache - ok
13:02:56.0681 7136 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:02:56.0682 7136 FontCache3.0.0.0 - ok
13:02:56.0704 7136 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
13:02:56.0706 7136 FsDepends - ok
13:02:56.0733 7136 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
13:02:56.0734 7136 Fs_Rec - ok
13:02:56.0777 7136 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
13:02:56.0781 7136 fvevol - ok
13:02:56.0803 7136 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
13:02:56.0805 7136 gagp30kx - ok
13:02:56.0846 7136 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
13:02:56.0858 7136 gpsvc - ok
13:02:56.0905 7136 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
13:02:56.0907 7136 hamachi - ok
13:02:56.0922 7136 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
13:02:56.0923 7136 hcw85cir - ok
13:02:56.0976 7136 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:02:56.0982 7136 HdAudAddService - ok
13:02:57.0007 7136 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
13:02:57.0009 7136 HDAudBus - ok
13:02:57.0030 7136 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
13:02:57.0032 7136 HECIx64 - ok
13:02:57.0051 7136 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
13:02:57.0052 7136 HidBatt - ok
13:02:57.0065 7136 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
13:02:57.0067 7136 HidBth - ok
13:02:57.0091 7136 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
13:02:57.0093 7136 HidIr - ok
13:02:57.0116 7136 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
13:02:57.0118 7136 hidserv - ok
13:02:57.0153 7136 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
13:02:57.0154 7136 HidUsb - ok
13:02:57.0185 7136 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
13:02:57.0188 7136 hkmsvc - ok
13:02:57.0219 7136 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:02:57.0224 7136 HomeGroupListener - ok
13:02:57.0242 7136 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:02:57.0247 7136 HomeGroupProvider - ok
13:02:57.0277 7136 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
13:02:57.0279 7136 HpSAMD - ok
13:02:57.0326 7136 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
13:02:57.0337 7136 HTTP - ok
13:02:57.0353 7136 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
13:02:57.0354 7136 hwpolicy - ok
13:02:57.0391 7136 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
13:02:57.0393 7136 i8042prt - ok
13:02:57.0432 7136 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
13:02:57.0439 7136 iaStorV - ok
13:02:57.0492 7136 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:02:57.0504 7136 idsvc - ok
13:02:57.0536 7136 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
13:02:57.0537 7136 iirsp - ok
13:02:57.0578 7136 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
13:02:57.0591 7136 IKEEXT - ok
13:02:57.0664 7136 [ 490947A9AFF7CA31EF2E08F5776105EB ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:02:57.0697 7136 IntcAzAudAddService - ok
13:02:57.0726 7136 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
13:02:57.0727 7136 intelide - ok
13:02:57.0752 7136 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
13:02:57.0752 7136 intelppm - ok
13:02:57.0799 7136 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
13:02:57.0803 7136 IPBusEnum - ok
13:02:57.0830 7136 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:02:57.0833 7136 IpFilterDriver - ok
13:02:57.0885 7136 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
13:02:57.0894 7136 iphlpsvc - ok
13:02:57.0910 7136 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
13:02:57.0912 7136 IPMIDRV - ok
13:02:57.0932 7136 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
13:02:57.0934 7136 IPNAT - ok
13:02:57.0950 7136 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
13:02:57.0951 7136 IRENUM - ok
13:02:58.0000 7136 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
13:02:58.0002 7136 isapnp - ok
13:02:58.0021 7136 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
13:02:58.0026 7136 iScsiPrt - ok
13:02:58.0080 7136 [ 54F694C6CD3A1149BA3A8BDACC83BADC ] ITMRTSVC C:\Program Files (x86)\CA\PPRT\bin\ITMRTSVC.exe
13:02:58.0083 7136 ITMRTSVC - ok
13:02:58.0103 7136 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
13:02:58.0105 7136 kbdclass - ok
13:02:58.0149 7136 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
13:02:58.0151 7136 kbdhid - ok
13:02:58.0174 7136 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
13:02:58.0175 7136 KeyIso - ok
13:02:58.0204 7136 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
13:02:58.0206 7136 KSecDD - ok
13:02:58.0221 7136 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
13:02:58.0223 7136 KSecPkg - ok
13:02:58.0243 7136 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
13:02:58.0245 7136 ksthunk - ok
13:02:58.0268 7136 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
13:02:58.0275 7136 KtmRm - ok
13:02:58.0305 7136 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
13:02:58.0311 7136 LanmanServer - ok
13:02:58.0346 7136 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:02:58.0351 7136 LanmanWorkstation - ok
13:02:58.0377 7136 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
13:02:58.0378 7136 lltdio - ok
13:02:58.0398 7136 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
13:02:58.0405 7136 lltdsvc - ok
13:02:58.0444 7136 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
13:02:58.0446 7136 lmhosts - ok
13:02:58.0499 7136 [ CE97B09D1BA41802A6FAE3BBED3CC37B ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
13:02:58.0503 7136 LMS - ok
13:02:58.0526 7136 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
13:02:58.0529 7136 LSI_FC - ok
13:02:58.0553 7136 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
13:02:58.0555 7136 LSI_SAS - ok
13:02:58.0567 7136 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
13:02:58.0569 7136 LSI_SAS2 - ok
13:02:58.0585 7136 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
13:02:58.0587 7136 LSI_SCSI - ok
13:02:58.0601 7136 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
13:02:58.0603 7136 luafv - ok
13:02:58.0638 7136 [ A8FE8F2783B2929B56F5370A89356CE9 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
13:02:58.0639 7136 MBAMProtector - ok
13:02:58.0719 7136 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
13:02:58.0725 7136 MBAMScheduler - ok
13:02:58.0756 7136 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
13:02:58.0766 7136 MBAMService - ok
13:02:58.0793 7136 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
13:02:58.0797 7136 Mcx2Svc - ok
13:02:58.0817 7136 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
13:02:58.0819 7136 megasas - ok
13:02:58.0845 7136 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
13:02:58.0850 7136 MegaSR - ok
13:02:58.0953 7136 Microsoft SharePoint Workspace Audit Service - ok
13:02:58.0982 7136 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
13:02:58.0985 7136 MMCSS - ok
13:02:58.0996 7136 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
13:02:58.0998 7136 Modem - ok
13:02:59.0017 7136 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
13:02:59.0017 7136 monitor - ok
13:02:59.0088 7136 [ C94A2EA3FDFA5D650884926B710B7DB1 ] motccgp C:\Windows\system32\DRIVERS\motccgp.sys
13:02:59.0090 7136 motccgp - ok
13:02:59.0122 7136 [ D51E009BAEDA07EBC107D49D224C2414 ] motccgpfl C:\Windows\system32\DRIVERS\motccgpfl.sys
13:02:59.0123 7136 motccgpfl - ok
13:02:59.0152 7136 [ 060F0EF84F430802DF3788F3DCFD009C ] motmodem C:\Windows\system32\DRIVERS\motmodem.sys
13:02:59.0153 7136 motmodem - ok
13:02:59.0229 7136 [ 9DFD34E6841C460B5D992A1C5327AE69 ] MotoHelper C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe
13:02:59.0232 7136 MotoHelper - ok
13:02:59.0245 7136 [ EBD05F60CAFC5BBA2602B8D7101082D3 ] MotoSwitchService C:\Windows\system32\DRIVERS\motswch.sys
13:02:59.0246 7136 MotoSwitchService - ok
13:02:59.0265 7136 [ 87701078C3F720AC7A028E937994CC49 ] Motousbnet C:\Windows\system32\DRIVERS\Motousbnet.sys
13:02:59.0266 7136 Motousbnet - ok
13:02:59.0307 7136 [ D075B1D964A314D240F5498773EE89DF ] motusbdevice C:\Windows\system32\DRIVERS\motusbdevice.sys
13:02:59.0309 7136 motusbdevice - ok
13:02:59.0360 7136 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
13:02:59.0362 7136 mouclass - ok
13:02:59.0389 7136 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
13:02:59.0391 7136 mouhid - ok
13:02:59.0416 7136 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
13:02:59.0417 7136 mountmgr - ok
13:02:59.0509 7136 [ 27428998CB810A7520A797D9D67D7E5A ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:02:59.0510 7136 MozillaMaintenance - ok
13:02:59.0565 7136 [ 05BF204EC0E82CC4A054DB189C8A3D84 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
13:02:59.0569 7136 MpFilter - ok
13:02:59.0599 7136 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
13:02:59.0602 7136 mpio - ok
13:02:59.0621 7136 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
13:02:59.0623 7136 mpsdrv - ok
13:02:59.0688 7136 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
13:02:59.0706 7136 MpsSvc - ok
13:02:59.0731 7136 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
13:02:59.0734 7136 MRxDAV - ok
13:02:59.0762 7136 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
13:02:59.0764 7136 mrxsmb - ok
13:02:59.0785 7136 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:02:59.0790 7136 mrxsmb10 - ok
13:02:59.0801 7136 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:02:59.0803 7136 mrxsmb20 - ok
13:02:59.0833 7136 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
13:02:59.0835 7136 msahci - ok
13:02:59.0869 7136 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
13:02:59.0872 7136 msdsm - ok
13:02:59.0886 7136 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
13:02:59.0891 7136 MSDTC - ok
13:02:59.0913 7136 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
13:02:59.0914 7136 Msfs - ok
13:02:59.0934 7136 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
13:02:59.0935 7136 mshidkmdf - ok
13:02:59.0951 7136 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
13:02:59.0952 7136 msisadrv - ok
13:02:59.0971 7136 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
13:02:59.0975 7136 MSiSCSI - ok
13:02:59.0980 7136 msiserver - ok
13:03:00.0002 7136 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
13:03:00.0004 7136 MSKSSRV - ok
13:03:00.0063 7136 [ CC8E4F72F21340A4D3A3D4DB50313EF5 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
13:03:00.0064 7136 MsMpSvc - ok
13:03:00.0074 7136 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
13:03:00.0075 7136 MSPCLOCK - ok
13:03:00.0089 7136 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
13:03:00.0090 7136 MSPQM - ok
13:03:00.0123 7136 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
13:03:00.0129 7136 MsRPC - ok
13:03:00.0159 7136 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
13:03:00.0160 7136 mssmbios - ok
13:03:00.0176 7136 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
13:03:00.0177 7136 MSTEE - ok
13:03:00.0187 7136 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
13:03:00.0189 7136 MTConfig - ok
13:03:00.0200 7136 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
13:03:00.0201 7136 Mup - ok
13:03:00.0241 7136 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
13:03:00.0250 7136 napagent - ok
13:03:00.0278 7136 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
13:03:00.0283 7136 NativeWifiP - ok
13:03:00.0332 7136 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
13:03:00.0346 7136 NDIS - ok
13:03:00.0359 7136 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
13:03:00.0361 7136 NdisCap - ok
13:03:00.0382 7136 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
13:03:00.0384 7136 NdisTapi - ok
13:03:00.0408 7136 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
13:03:00.0410 7136 Ndisuio - ok
13:03:00.0440 7136 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
13:03:00.0443 7136 NdisWan - ok
13:03:00.0472 7136 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
13:03:00.0481 7136 NDProxy - ok
13:03:00.0536 7136 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
13:03:00.0537 7136 NetBIOS - ok
13:03:00.0567 7136 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
13:03:00.0571 7136 NetBT - ok
13:03:00.0590 7136 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
13:03:00.0592 7136 Netlogon - ok
13:03:00.0620 7136 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
13:03:00.0627 7136 Netman - ok
13:03:00.0688 7136 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:03:00.0690 7136 NetMsmqActivator - ok
13:03:00.0706 7136 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:03:00.0708 7136 NetPipeActivator - ok
13:03:00.0725 7136 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
13:03:00.0733 7136 netprofm - ok
13:03:00.0739 7136 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:03:00.0741 7136 NetTcpActivator - ok
13:03:00.0747 7136 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing c:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:03:00.0748 7136 NetTcpPortSharing - ok
13:03:00.0772 7136 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
13:03:00.0774 7136 nfrd960 - ok
13:03:00.0823 7136 [ 5FF89F20317309D28AC1EDEB0CD1BA72 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
13:03:00.0826 7136 NisDrv - ok
13:03:00.0842 7136 [ 79E80B10FE8F6662E0C9162A68C43444 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
13:03:00.0847 7136 NisSrv - ok
13:03:00.0894 7136 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
13:03:00.0900 7136 NlaSvc - ok
13:03:00.0916 7136 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
13:03:00.0917 7136 Npfs - ok
13:03:00.0934 7136 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
13:03:00.0936 7136 nsi - ok
13:03:00.0948 7136 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
13:03:00.0949 7136 nsiproxy - ok
13:03:01.0003 7136 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
13:03:01.0020 7136 Ntfs - ok
13:03:01.0035 7136 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
13:03:01.0037 7136 Null - ok
13:03:01.0063 7136 [ A85B4F2EF3A7304A5399EF0526423040 ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x64.sys
13:03:01.0068 7136 NVENETFD - ok
13:03:01.0274 7136 [ 5104BAC2DA2A5BDD86AC6B0708B00F06 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:03:01.0398 7136 nvlddmkm - ok
13:03:01.0438 7136 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
13:03:01.0440 7136 nvraid - ok
13:03:01.0462 7136 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
13:03:01.0465 7136 nvstor - ok
13:03:01.0517 7136 [ DDFAFCE89A5C93D04712B86F94E9FCBA ] nvsvc C:\Windows\system32\nvvsvc.exe
13:03:01.0530 7136 nvsvc - ok
13:03:01.0588 7136 [ 84E035225474E48CD3A6A3CE52332095 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
13:03:01.0603 7136 nvUpdatusService - ok
13:03:01.0640 7136 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
13:03:01.0642 7136 nv_agp - ok
13:03:01.0679 7136 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
13:03:01.0681 7136 ohci1394 - ok
13:03:01.0749 7136 [ 4965B005492CBA7719E82B71E3245495 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:03:01.0752 7136 ose64 - ok
13:03:01.0911 7136 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:03:01.0931 7136 osppsvc - ok
13:03:01.0952 7136 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:03:01.0956 7136 p2pimsvc - ok
13:03:01.0967 7136 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
13:03:01.0971 7136 p2psvc - ok
13:03:01.0993 7136 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
13:03:01.0994 7136 Parport - ok
13:03:02.0023 7136 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:03:02.0024 7136 partmgr - ok
13:03:02.0036 7136 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:03:02.0040 7136 PcaSvc - ok
13:03:02.0078 7136 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
13:03:02.0081 7136 pci - ok
13:03:02.0092 7136 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
13:03:02.0093 7136 pciide - ok
13:03:02.0109 7136 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
13:03:02.0113 7136 pcmcia - ok
13:03:02.0128 7136 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
13:03:02.0130 7136 pcw - ok
13:03:02.0149 7136 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:03:02.0157 7136 PEAUTH - ok
13:03:02.0236 7136 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
13:03:02.0238 7136 PerfHost - ok
13:03:02.0291 7136 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
13:03:02.0310 7136 pla - ok
13:03:02.0352 7136 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:03:02.0359 7136 PlugPlay - ok
13:03:02.0380 7136 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:03:02.0382 7136 PNRPAutoReg - ok
13:03:02.0403 7136 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:03:02.0407 7136 PNRPsvc - ok
13:03:02.0425 7136 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:03:02.0433 7136 PolicyAgent - ok
13:03:02.0459 7136 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
13:03:02.0463 7136 Power - ok
13:03:02.0505 7136 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:03:02.0507 7136 PptpMiniport - ok
13:03:02.0531 7136 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
13:03:02.0533 7136 Processor - ok
13:03:02.0562 7136 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
13:03:02.0565 7136 ProfSvc - ok
13:03:02.0573 7136 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:03:02.0575 7136 ProtectedStorage - ok
13:03:02.0598 7136 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:03:02.0599 7136 Psched - ok
13:03:02.0640 7136 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
13:03:02.0655 7136 ql2300 - ok
13:03:02.0666 7136 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
13:03:02.0668 7136 ql40xx - ok
13:03:02.0697 7136 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
13:03:02.0701 7136 QWAVE - ok
13:03:02.0711 7136 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:03:02.0712 7136 QWAVEdrv - ok
13:03:02.0725 7136 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:03:02.0726 7136 RasAcd - ok
13:03:02.0754 7136 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:03:02.0755 7136 RasAgileVpn - ok
13:03:02.0770 7136 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
13:03:02.0773 7136 RasAuto - ok
13:03:02.0805 7136 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:03:02.0808 7136 Rasl2tp - ok
13:03:02.0838 7136 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
13:03:02.0844 7136 RasMan - ok
13:03:02.0864 7136 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:03:02.0866 7136 RasPppoe - ok
13:03:02.0880 7136 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:03:02.0882 7136 RasSstp - ok
13:03:02.0898 7136 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:03:02.0902 7136 rdbss - ok
13:03:02.0914 7136 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
13:03:02.0918 7136 rdpbus - ok
13:03:02.0949 7136 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
13:03:02.0950 7136 RDPCDD - ok
13:03:02.0968 7136 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
13:03:02.0969 7136 RDPENCDD - ok
13:03:02.0977 7136 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
13:03:02.0978 7136 RDPREFMP - ok
13:03:03.0013 7136 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:03:03.0017 7136 RDPWD - ok
13:03:03.0046 7136 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:03:03.0050 7136 rdyboost - ok
13:03:03.0071 7136 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
13:03:03.0075 7136 RemoteAccess - ok
13:03:03.0094 7136 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:03:03.0099 7136 RemoteRegistry - ok
13:03:03.0111 7136 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:03:03.0114 7136 RpcEptMapper - ok
13:03:03.0136 7136 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
13:03:03.0139 7136 RpcLocator - ok
13:03:03.0178 7136 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
13:03:03.0184 7136 RpcSs - ok
13:03:03.0211 7136 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:03:03.0213 7136 rspndr - ok
13:03:03.0240 7136 [ 4B42BC58294E83A6A92EC8B88C14C4A3 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
13:03:03.0245 7136 RTL8167 - ok
13:03:03.0280 7136 [ 4A06585C8673F4458E9FBBC9DDDB4D28 ] RTL8187B C:\Windows\system32\DRIVERS\wg111v3.sys
13:03:03.0287 7136 RTL8187B - ok
13:03:03.0299 7136 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
13:03:03.0301 7136 SamSs - ok
13:03:03.0331 7136 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:03:03.0334 7136 sbp2port - ok
13:03:03.0367 7136 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:03:03.0372 7136 SCardSvr - ok
13:03:03.0405 7136 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:03:03.0407 7136 scfilter - ok
13:03:03.0453 7136 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
13:03:03.0469 7136 Schedule - ok
13:03:03.0485 7136 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
13:03:03.0486 7136 SCPolicySvc - ok
13:03:03.0522 7136 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:03:03.0526 7136 SDRSVC - ok
13:03:03.0589 7136 [ CC781378E7EDA615D2CDCA3B17829FA4 ] SeaPort C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
13:03:03.0592 7136 SeaPort - ok
13:03:03.0609 7136 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:03:03.0611 7136 secdrv - ok
13:03:03.0642 7136 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
13:03:03.0645 7136 seclogon - ok
13:03:03.0686 7136 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
13:03:03.0689 7136 SENS - ok
13:03:03.0701 7136 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:03:03.0705 7136 SensrSvc - ok
13:03:03.0710 7136 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
13:03:03.0711 7136 Serenum - ok
13:03:03.0737 7136 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
13:03:03.0739 7136 Serial - ok
13:03:03.0755 7136 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
13:03:03.0757 7136 sermouse - ok
13:03:03.0800 7136 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
13:03:03.0804 7136 SessionEnv - ok
13:03:03.0819 7136 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
13:03:03.0820 7136 sffdisk - ok
13:03:03.0831 7136 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
13:03:03.0832 7136 sffp_mmc - ok
13:03:03.0845 7136 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
13:03:03.0846 7136 sffp_sd - ok
13:03:03.0860 7136 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
13:03:03.0861 7136 sfloppy - ok
13:03:03.0898 7136 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:03:03.0905 7136 SharedAccess - ok
13:03:03.0918 7136 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:03:03.0924 7136 ShellHWDetection - ok
13:03:03.0938 7136 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
13:03:03.0939 7136 SiSRaid2 - ok
13:03:03.0956 7136 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
13:03:03.0958 7136 SiSRaid4 - ok
13:03:03.0995 7136 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
13:03:03.0998 7136 SkypeUpdate - ok
13:03:04.0045 7136 [ 323DDCD15DB2A7FED09DF1F835CAFCFB ] SMARTMouseFilterx64 C:\Windows\system32\DRIVERS\SMARTMouseFilterx64.sys
13:03:04.0047 7136 SMARTMouseFilterx64 - ok
13:03:04.0094 7136 [ 6C691320C71CA8E8C38F52B2CE652C64 ] SMARTVHidMiniVistaAmd64 C:\Windows\system32\DRIVERS\SMARTVHidMiniVistaAmd64.sys
13:03:04.0095 7136 SMARTVHidMiniVistaAmd64 - ok
13:03:04.0109 7136 [ 20563F6830BADD675407AF0F5BCA76BA ] SMARTVTabletPCx64 C:\Windows\system32\DRIVERS\SMARTVTabletPCx64.sys
13:03:04.0111 7136 SMARTVTabletPCx64 - ok
13:03:04.0131 7136 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
13:03:04.0133 7136 Smb - ok
13:03:04.0171 7136 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:03:04.0174 7136 SNMPTRAP - ok
13:03:04.0194 7136 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
13:03:04.0194 7136 spldr - ok
13:03:04.0229 7136 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
13:03:04.0239 7136 Spooler - ok
13:03:04.0325 7136 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
13:03:04.0360 7136 sppsvc - ok
13:03:04.0370 7136 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
13:03:04.0372 7136 sppuinotify - ok
13:03:04.0400 7136 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
13:03:04.0405 7136 srv - ok
13:03:04.0422 7136 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:03:04.0426 7136 srv2 - ok
13:03:04.0433 7136 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:03:04.0435 7136 srvnet - ok
13:03:04.0464 7136 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:03:04.0467 7136 SSDPSRV - ok
13:03:04.0474 7136 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:03:04.0476 7136 SstpSvc - ok
13:03:04.0496 7136 Steam Client Service - ok
13:03:04.0600 7136 [ F0359F7CE712D69ACEF0886BDB4792ED ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
13:03:04.0606 7136 Stereo Service - ok
13:03:04.0629 7136 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
13:03:04.0631 7136 stexstor - ok
13:03:04.0679 7136 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
13:03:04.0687 7136 stisvc - ok
13:03:04.0716 7136 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
13:03:04.0717 7136 swenum - ok
13:03:04.0780 7136 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
13:03:04.0839 7136 swprv - ok
13:03:05.0012 7136 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
13:03:05.0033 7136 SysMain - ok
13:03:05.0061 7136 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:03:05.0063 7136 TabletInputService - ok
13:03:05.0079 7136 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
13:03:05.0084 7136 TapiSrv - ok
13:03:05.0097 7136 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
13:03:05.0099 7136 TBS - ok
13:03:05.0149 7136 [ 37608401DFDB388CAF66917F6B2D6FB0 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:03:05.0168 7136 Tcpip - ok
13:03:05.0197 7136 [ 37608401DFDB388CAF66917F6B2D6FB0 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:03:05.0207 7136 TCPIP6 - ok
13:03:05.0221 7136 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:03:05.0223 7136 tcpipreg - ok
13:03:05.0245 7136 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
13:03:05.0246 7136 TDPIPE - ok
13:03:05.0268 7136 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
13:03:05.0270 7136 TDTCP - ok
13:03:05.0302 7136 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:03:05.0305 7136 tdx - ok
13:03:05.0334 7136 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
13:03:05.0336 7136 TermDD - ok
13:03:05.0358 7136 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
13:03:05.0368 7136 TermService - ok
13:03:05.0384 7136 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
13:03:05.0386 7136 Themes - ok
13:03:05.0408 7136 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
13:03:05.0409 7136 THREADORDER - ok
13:03:05.0423 7136 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
13:03:05.0427 7136 TrkWks - ok
13:03:05.0475 7136 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:03:05.0478 7136 TrustedInstaller - ok
13:03:05.0495 7136 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
13:03:05.0496 7136 tssecsrv - ok
13:03:05.0523 7136 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:03:05.0525 7136 TsUsbFlt - ok
13:03:05.0572 7136 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:03:05.0575 7136 tunnel - ok
13:03:07.0901 7136 [ 7694DCA064D0B7E0D1A6972BB9C71B39 ] tvnserver C:\Users\Stradeva\AppData\Local\CrossLoop\tvnserver.exe
13:03:07.0914 7136 tvnserver - ok
13:03:08.0011 7136 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
13:03:08.0013 7136 uagp35 - ok
13:03:08.0050 7136 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:03:08.0055 7136 udfs - ok
13:03:08.0080 7136 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:03:08.0083 7136 UI0Detect - ok
13:03:08.0130 7136 [ B1D1FE35303E3AEE6D5AF69F09F12E87 ] uisp C:\Windows\system32\Drivers\usbicp.sys
13:03:08.0132 7136 uisp - ok
13:03:08.0176 7136 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:03:08.0178 7136 uliagpkx - ok
13:03:08.0218 7136 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
13:03:08.0220 7136 umbus - ok
13:03:08.0234 7136 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
13:03:08.0236 7136 UmPass - ok
13:03:08.0341 7136 [ C6C3B5AB7D807C1A97B1E95FED1AB90D ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
13:03:08.0368 7136 UNS - ok
13:03:08.0389 7136 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
13:03:08.0395 7136 upnphost - ok
13:03:08.0411 7136 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
13:03:08.0413 7136 usbccgp - ok
13:03:08.0454 7136 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys
13:03:08.0456 7136 usbcir - ok
13:03:08.0485 7136 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\drivers\usbehci.sys
13:03:08.0487 7136 usbehci - ok
13:03:08.0519 7136 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
13:03:08.0525 7136 usbhub - ok
13:03:08.0543 7136 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys
13:03:08.0562 7136 usbohci - ok
13:03:08.0595 7136 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
13:03:08.0597 7136 usbprint - ok
13:03:08.0605 7136 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:03:08.0608 7136 USBSTOR - ok
13:03:08.0623 7136 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
13:03:08.0625 7136 usbuhci - ok
13:03:08.0649 7136 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
13:03:08.0653 7136 usbvideo - ok
13:03:08.0669 7136 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
13:03:08.0672 7136 UxSms - ok
13:03:08.0705 7136 [ 18436F7006443FB76145B3D35162A810 ] VaneFltr C:\Windows\system32\drivers\Lachesis.sys
13:03:08.0728 7136 VaneFltr - ok
13:03:08.0766 7136 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
13:03:08.0767 7136 VaultSvc - ok
13:03:08.0807 7136 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:03:08.0808 7136 vdrvroot - ok
13:03:08.0841 7136 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
13:03:08.0851 7136 vds - ok
13:03:08.0889 7136 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
13:03:08.0891 7136 vga - ok
13:03:08.0905 7136 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
13:03:08.0907 7136 VgaSave - ok
13:03:08.0947 7136 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
13:03:08.0951 7136 vhdmp - ok
13:03:08.0965 7136 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
13:03:08.0966 7136 viaide - ok
13:03:08.0989 7136 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:03:08.0991 7136 volmgr - ok
13:03:09.0025 7136 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:03:09.0030 7136 volmgrx - ok
13:03:09.0048 7136 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:03:09.0052 7136 volsnap - ok
13:03:09.0074 7136 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
13:03:09.0078 7136 vsmraid - ok
13:03:09.0138 7136 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
13:03:09.0162 7136 VSS - ok
13:03:09.0182 7136 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:03:09.0183 7136 vwifibus - ok
13:03:09.0199 7136 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
13:03:09.0200 7136 vwififlt - ok
13:03:09.0216 7136 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
13:03:09.0218 7136 vwifimp - ok
13:03:09.0250 7136 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
13:03:09.0256 7136 W32Time - ok
13:03:09.0292 7136 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
13:03:09.0294 7136 WacomPen - ok
13:03:09.0342 7136 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
13:03:09.0344 7136 WANARP - ok
13:03:09.0348 7136 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:03:09.0349 7136 Wanarpv6 - ok
13:03:09.0394 7136 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
13:03:09.0411 7136 WatAdminSvc - ok
13:03:09.0463 7136 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
13:03:09.0485 7136 wbengine - ok
13:03:09.0504 7136 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:03:09.0509 7136 WbioSrvc - ok
13:03:09.0526 7136 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:03:09.0533 7136 wcncsvc - ok
13:03:09.0557 7136 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:03:09.0561 7136 WcsPlugInService - ok
13:03:09.0577 7136 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
13:03:09.0578 7136 Wd - ok
13:03:09.0618 7136 [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:03:09.0628 7136 Wdf01000 - ok
13:03:09.0639 7136 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:03:09.0643 7136 WdiServiceHost - ok
13:03:09.0647 7136 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:03:09.0650 7136 WdiSystemHost - ok
13:03:09.0691 7136 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll
13:03:09.0699 7136 WebClient - ok
13:03:09.0743 7136 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:03:09.0749 7136 Wecsvc - ok
13:03:09.0765 7136 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:03:09.0769 7136 wercplsupport - ok
13:03:09.0797 7136 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
13:03:09.0801 7136 WerSvc - ok
13:03:09.0830 7136 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
13:03:09.0831 7136 WfpLwf - ok
13:03:09.0840 7136 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:03:09.0841 7136 WIMMount - ok
13:03:09.0852 7136 WinDefend - ok
13:03:09.0860 7136 WinHttpAutoProxySvc - ok
13:03:09.0899 7136 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:03:09.0902 7136 Winmgmt - ok
13:03:09.0948 7136 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
13:03:09.0972 7136 WinRM - ok
13:03:10.0030 7136 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
13:03:10.0032 7136 WinUsb - ok
13:03:10.0148 7136 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
13:03:10.0199 7136 Wlansvc - ok
13:03:10.0330 7136 [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:03:10.0354 7136 wlidsvc - ok
13:03:10.0388 7136 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
13:03:10.0389 7136 WmiAcpi - ok
13:03:10.0416 7136 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:03:10.0419 7136 wmiApSrv - ok
13:03:10.0428 7136 WMPNetworkSvc - ok
13:03:10.0452 7136 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:03:10.0454 7136 WPCSvc - ok
13:03:10.0489 7136 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:03:10.0494 7136 WPDBusEnum - ok
13:03:10.0513 7136 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:03:10.0515 7136 ws2ifsl - ok
13:03:10.0532 7136 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
13:03:10.0536 7136 wscsvc - ok
13:03:10.0557 7136 [ 8D918B1DB190A4D9B1753A66FA8C96E8 ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
13:03:10.0559 7136 WSDPrintDevice - ok
13:03:10.0566 7136 [ 4A2A5C50DD1A63577D3ACA94269FBC7F ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys
13:03:10.0568 7136 WSDScan - ok
13:03:10.0572 7136 WSearch - ok
13:03:10.0646 7136 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
13:03:10.0676 7136 wuauserv - ok
13:03:10.0708 7136 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:03:10.0710 7136 WudfPf - ok
13:03:10.0733 7136 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
13:03:10.0736 7136 WUDFRd - ok
13:03:10.0751 7136 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:03:10.0755 7136 wudfsvc - ok
13:03:10.0778 7136 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
13:03:10.0784 7136 WwanSvc - ok
13:03:10.0829 7136 ================ Scan global ===============================
13:03:10.0848 7136 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
13:03:10.0883 7136 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
13:03:10.0894 7136 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
13:03:10.0912 7136 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
13:03:10.0931 7136 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
13:03:10.0937 7136 [Global] - ok
13:03:10.0938 7136 ================ Scan MBR ==================================
13:03:10.0948 7136 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:03:11.0208 7136 \Device\Harddisk0\DR0 - ok
13:03:11.0209 7136 ================ Scan VBR ==================================
13:03:11.0212 7136 [ 86180D68A1C135FEAD2EFEEA468F2565 ] \Device\Harddisk0\DR0\Partition1
13:03:11.0214 7136 \Device\Harddisk0\DR0\Partition1 - ok
13:03:11.0222 7136 [ A3DC5F7F10FB3A9E32A522BC7BC2D6BA ] \Device\Harddisk0\DR0\Partition2
13:03:11.0224 7136 \Device\Harddisk0\DR0\Partition2 - ok
13:03:11.0225 7136 ============================================================
13:03:11.0225 7136 Scan finished
13:03:11.0225 7136 ============================================================
13:03:11.0238 1768 Detected object count: 0
13:03:11.0238 1768 Actual detected object count: 0

aswMBR:

aswMBR version 0.9.9.1707 Copyright© 2011 AVAST
Software
Run date: 2012-12-09 13:05:18
-----------------------------
13:05:18.280 OS Version: Windows x64 6.1.7601
Service Pack 1
13:05:18.280 Number of processors: 4 586 0x1E05
13:05:18.280 ComputerName: STRADEVAPC UserName:
Stradeva
13:05:20.618 Initialize success
13:05:46.943 AVAST engine defs: 12120901
13:05:57.241 Disk 0 (boot) \Device\Harddisk0\DR0
-> \Device\Ide\IdeDeviceP1T1L0-6
13:05:57.246 Disk 0 Vendor:
Hitachi_HDS721010CLA332 JP4OA3EA Size: 953869MB
BusType: 3
13:05:57.263 Disk 0 MBR read successfully
13:05:57.269 Disk 0 MBR scan
13:05:57.278 Disk 0 Windows 7 default MBR code
13:05:57.284 Disk 0 Partition 1 80 (A) 07
HPFS/NTFS NTFS 100 MB offset 2048
13:05:57.328 Disk 0 Partition 2 00 07
HPFS/NTFS NTFS 953767 MB offset 206848
13:05:57.386 Disk 0 scanning C:\Windows
\system32\drivers
13:06:09.590 Service scanning
13:06:41.789 Modules scanning
13:06:41.804 Disk 0 trace - called modules:
13:06:41.821 ntoskrnl.exe CLASSPNP.SYS disk.sys
ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll
atapi.sys
13:06:41.828 1 nt!IofCallDriver -> \Device
\Harddisk0\DR0[0xfffffa8004a53060]
13:06:41.835 3 CLASSPNP.SYS[fffff88001b9043f] ->
nt!IofCallDriver -> [0xfffffa80047b3520]
13:06:41.840 5 ACPI.sys[fffff88000f1e7a1] -> nt!
IofCallDriver -> \Device\Ide\IdeDeviceP1T1L0-6
[0xfffffa80047b2060]
13:06:44.037 AVAST engine scan C:\Windows
13:06:48.192 AVAST engine scan C:\Windows
\system32
13:10:39.908 AVAST engine scan C:\Windows
\system32\drivers
13:10:56.591 AVAST engine scan C:\Users\Stradeva
13:14:46.227 Disk 0 MBR has been saved
successfully to "C:\Users\Stradeva\Downloads
\MBR.dat"
13:14:46.276 The log file has been saved
successfully to "C:\Users\Stradeva\Downloads
\aswMBR.txt"
aswMBR version 0.9.9.1707 Copyright© 2011 AVAST
Software
Run date: 2012-12-09 13:05:18
-----------------------------
13:05:18.280 OS Version: Windows x64 6.1.7601
Service Pack 1
13:05:18.280 Number of processors: 4 586 0x1E05
13:05:18.280 ComputerName: STRADEVAPC UserName:
Stradeva
13:05:20.618 Initialize success
13:05:46.943 AVAST engine defs: 12120901
13:05:57.241 Disk 0 (boot) \Device\Harddisk0\DR0
-> \Device\Ide\IdeDeviceP1T1L0-6
13:05:57.246 Disk 0 Vendor:
Hitachi_HDS721010CLA332 JP4OA3EA Size: 953869MB
BusType: 3
13:05:57.263 Disk 0 MBR read successfully
13:05:57.269 Disk 0 MBR scan
13:05:57.278 Disk 0 Windows 7 default MBR code
13:05:57.284 Disk 0 Partition 1 80 (A) 07
HPFS/NTFS NTFS 100 MB offset 2048
13:05:57.328 Disk 0 Partition 2 00 07
HPFS/NTFS NTFS 953767 MB offset 206848
13:05:57.386 Disk 0 scanning C:\Windows
\system32\drivers
13:06:09.590 Service scanning
13:06:41.789 Modules scanning
13:06:41.804 Disk 0 trace - called modules:
13:06:41.821 ntoskrnl.exe CLASSPNP.SYS disk.sys
ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll
atapi.sys
13:06:41.828 1 nt!IofCallDriver -> \Device
\Harddisk0\DR0[0xfffffa8004a53060]
13:06:41.835 3 CLASSPNP.SYS[fffff88001b9043f] ->
nt!IofCallDriver -> [0xfffffa80047b3520]
13:06:41.840 5 ACPI.sys[fffff88000f1e7a1] -> nt!
IofCallDriver -> \Device\Ide\IdeDeviceP1T1L0-6
[0xfffffa80047b2060]
13:06:44.037 AVAST engine scan C:\Windows
13:06:48.192 AVAST engine scan C:\Windows
\system32
13:10:39.908 AVAST engine scan C:\Windows
\system32\drivers
13:10:56.591 AVAST engine scan C:\Users\Stradeva
13:14:46.227 Disk 0 MBR has been saved
successfully to "C:\Users\Stradeva\Downloads
\MBR.dat"
13:14:46.276 The log file has been saved
successfully to "C:\Users\Stradeva\Downloads
\aswMBR.txt"
13:42:02.766 AVAST engine scan C:\ProgramData
13:50:16.594 Scan finished successfully
13:58:24.944 Disk 0 MBR has been saved
successfully to "C:\Users\Stradeva\Downloads
\MBR.dat"
13:58:24.994 The log file has been saved
successfully to "C:\Users\Stradeva\Downloads
\aswMBR.txt"


The ESET Scanner didn't have anything that said "List of found threats." This is what it showed when it was finished scanning: Posted Image

Thanks again for all your help!!!!!!!!!!!!!!!!!!

#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:53 PM

Posted 09 December 2012 - 09:16 PM

Download

Malwarebytes

Install,update and run a full scan

Click on Show results.Right click on the list ,select all and remove them.

Post the generated log here

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size
List restore points

Click Go and post the result.

Download

Farbar service scanner

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.

Download

adware cleaner

Launch it click on Delete

A log should be generated after scan ,post it here

Download

Junkware removal tool

For vista and windows 7 right click on the tool and select run as administrator

After scan gets completed,post the generated log here.

#5 stradeva

stradeva
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:53 AM

Posted 10 December 2012 - 06:22 AM

Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Database version: v2012.12.10.01

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
Stradeva :: STRADEVAPC [administrator]

Protection: Enabled

12/9/2012 10:07:25 PM
mbam-log-2012-12-09 (22-07-25).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 590743
Time elapsed: 1 hour(s), 28 minute(s), 39 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)


Minitoolbox:

MiniToolBox by Farbar Version: 25-11-2012
Ran by Stradeva (administrator) on 10-12-2012 at 04:53:24
Running from "C:\Users\Stradeva\Downloads"
Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 www.100888290cs.com
127.0.0.1 100888290cs.com
127.0.0.1 100sexlinks.com

There are 15217 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

Realtek PCIe GBE Family Controller = Local Area Connection (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : StradevaPC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Local Area Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe GBE Family Controller
Physical Address. . . . . . . . . : 6C-62-6D-87-A6-C7
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::351e:f2a9:4f9c:58c2%10(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.3(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Monday, December 10, 2012 4:46:51 AM
Lease Expires . . . . . . . . . . : Tuesday, December 11, 2012 4:46:51 AM
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 258761325
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-14-40-79-16-6C-62-6D-87-A6-C7
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{EE5ACCAF-EF1A-4F5C-B5AA-B2FF75FA9AA7}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:1c7a:2d46:3f57:fefc(Preferred)
Link-local IPv6 Address . . . . . : fe80::1c7a:2d46:3f57:fefc%16(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled
Server: UnKnown
Address: 192.168.1.1

Name: google.com
Addresses: 2607:f8b0:4009:802::1007
74.125.225.98
74.125.225.100
74.125.225.102
74.125.225.110
74.125.225.101
74.125.225.97
74.125.225.104
74.125.225.105
74.125.225.96
74.125.225.99
74.125.225.103


Pinging google.com [74.125.225.98] with 32 bytes of data:
Reply from 74.125.225.98: bytes=32 time=17ms TTL=55
Reply from 74.125.225.98: bytes=32 time=19ms TTL=55

Ping statistics for 74.125.225.98:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 17ms, Maximum = 19ms, Average = 18ms
Server: UnKnown
Address: 192.168.1.1

Name: yahoo.com
Addresses: 72.30.38.140
98.138.253.109
98.139.183.24


Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=101ms TTL=51
Reply from 98.139.183.24: bytes=32 time=73ms TTL=51

Ping statistics for 98.139.183.24:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 73ms, Maximum = 101ms, Average = 87ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=7ms TTL=128
Reply from 127.0.0.1: bytes=32 time=5ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 5ms, Maximum = 7ms, Average = 6ms
===========================================================================
Interface List
10...6c 62 6d 87 a6 c7 ......Realtek PCIe GBE Family Controller
1...........................Software Loopback Interface 1
18...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
16...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.3 20
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.3 276
192.168.1.3 255.255.255.255 On-link 192.168.1.3 276
192.168.1.255 255.255.255.255 On-link 192.168.1.3 276
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.3 276
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.3 276
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
16 58 ::/0 On-link
1 306 ::1/128 On-link
16 58 2001::/32 On-link
16 306 2001:0:9d38:6ab8:1c7a:2d46:3f57:fefc/128
On-link
10 276 fe80::/64 On-link
16 306 fe80::/64 On-link
16 306 fe80::1c7a:2d46:3f57:fefc/128
On-link
10 276 fe80::351e:f2a9:4f9c:58c2/128
On-link
1 306 ff00::/8 On-link
16 306 ff00::/8 On-link
10 276 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 08 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 08 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (12/09/2012 07:00:03 PM) (Source: Windows Backup) (User: )
Description: The backup did not complete because of an error writing to the backup location E:\. The error is: The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006).

Error: (12/09/2012 06:13:05 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (12/09/2012 06:10:58 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.

Error: (12/09/2012 01:59:04 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (12/02/2012 07:00:02 PM) (Source: Windows Backup) (User: )
Description: The backup did not complete because of an error writing to the backup location E:\. The error is: The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006).

Error: (11/29/2012 09:36:59 PM) (Source: MsiInstaller) (User: StradevaPC)
Description: Product: Motorola Mobile Drivers Installation 5.2.0 -- Unable to install because a newer version of this product is already installed.

Error: (11/25/2012 07:00:02 PM) (Source: Windows Backup) (User: )
Description: The backup did not complete because of an error writing to the backup location E:\. The error is: The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006).

Error: (11/18/2012 07:00:05 PM) (Source: Windows Backup) (User: )
Description: The backup did not complete because of an error writing to the backup location E:\. The error is: The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006).

Error: (11/18/2012 02:51:34 PM) (Source: Application Error) (User: )
Description: Faulting application name: plugin-container.exe, version: 17.0.0.4700, time stamp: 0x50a29139
Faulting module name: NPSWF32_11_4_402_287.dll, version: 11.4.402.287, time stamp: 0x5066df1c
Exception code: 0x80000003
Fault offset: 0x0032f0ad
Faulting process id: 0x15e8
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3

Error: (11/11/2012 07:00:02 PM) (Source: Windows Backup) (User: )
Description: The backup did not complete because of an error writing to the backup location E:\. The error is: The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006).


System errors:
=============
Error: (12/09/2012 10:24:57 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (12/09/2012 10:14:18 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 10:13:09 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 10:13:04 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 10:12:12 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 10:12:08 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 10:11:38 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 09:43:44 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 09:43:27 AM) (Source: Service Control Manager) (User: )
Description: The Security Center service failed to start due to the following error:
%%1079

Error: (12/09/2012 09:15:44 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)


Microsoft Office Sessions:
=========================
Error: (12/09/2012 07:00:03 PM) (Source: Windows Backup)(User: )
Description: E:\The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006)

Error: (12/09/2012 06:13:05 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\Users\Stradeva\downloads\esetsmartinstaller_enu.exe

Error: (12/09/2012 06:10:58 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (12/09/2012 01:59:04 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Stradeva\Downloads\esetsmartinstaller_enu.exe

Error: (12/02/2012 07:00:02 PM) (Source: Windows Backup)(User: )
Description: E:\The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006)

Error: (11/29/2012 09:36:59 PM) (Source: MsiInstaller)(User: StradevaPC)
Description: Product: Motorola Mobile Drivers Installation 5.2.0 -- Unable to install because a newer version of this product is already installed.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (11/25/2012 07:00:02 PM) (Source: Windows Backup)(User: )
Description: E:\The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006)

Error: (11/18/2012 07:00:05 PM) (Source: Windows Backup)(User: )
Description: E:\The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006)

Error: (11/18/2012 02:51:34 PM) (Source: Application Error)(User: )
Description: plugin-container.exe17.0.0.470050a29139NPSWF32_11_4_402_287.dll11.4.402.2875066df1c800000030032f0ad15e801cdc5ce7eccb4f7C:\Program Files (x86)\Mozilla Firefox 4.0 Beta 12\plugin-container.exeC:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dllbc8b2a13-31c1-11e2-9658-6c626d87a6c7

Error: (11/11/2012 07:00:02 PM) (Source: Windows Backup)(User: )
Description: E:\The backup location cannot be found or is not valid. Review your backup settings and check the backup location. (0x81000006)


=========================== Installed Programs ============================

µTorrent (Version: 3.1.3)
Acoustica Mixcraft 6 (Version: b191)
Adobe Flash Player 11 ActiveX (Version: 11.4.402.287)
Adobe Flash Player 11 Plugin (Version: 11.5.502.110)
Adobe Reader X (10.1.4) (Version: 10.1.4)
Adobe Shockwave Player 11.5 (Version: 11.5.9.620)
Amnesia: The Dark Descent
And Yet It Moves
Assassin's Creed
Assassin's Creed II
Atom Zombie Smasher
Audacity 1.3.12 (Unicode)
Audiosurf
Avi to Mpeg 3.2 (Version: 3.0)
AVSEQ
Baldur's Gate Enhanced Edition (Version: 0.2.6.2)
Bastion
Beat Hazard
Ben There, Dan That!
Bing Bar (Version: 7.0.609.0)
BioShock
BIT.TRIP BEAT
BIT.TRIP RUNNER
Blackwell Deception
Borderlands
Braid
CA Pest Patrol Realtime Protection (Version: 001.001.0034)
Castle Crashers
Cave Story+
Champions Online: Free For All
Cogs
Comcast Desktop Software (v1.2.0.9) (Version: 23)
Conduit Engine (Version: )
Coupon Printer for Windows (Version: 5.0.0.1)
Crayon Physics Deluxe
CrossLoop 2.74 (Version: 2.74)
D3DX10 (Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
Deus Ex Human Revolution Augmented Edition Bonus Content
Deus Ex: Human Revolution
Diablo III Beta (Version: 0.11.0.9359)
DivX Setup (Version: 2.6.1.9)
Dota 2
Dragon Age: Origins (Version: 1.04)
DragonNest
Dropbox (Version: 1.4.7)
Dungeon Defenders
Dungeons of Dredmor
ESET Online Scanner v3
F.lux
Faerie Solitaire
Fortune Summoners: Secret of the Elemental Stone
Foxit Reader (Version: 4.3.0.1110)
Garmin Communicator Plugin (Version: 3.0.1)
Garmin Lifetime Updater (Version: 2.1.6)
Garmin USB Drivers (Version: 2.3.0.0)
GIMP 2.6.11 (Version: 2.6.11)
Glary Utilities 2.35.0.1216 (Version: 2.35.0.1216)
Google Chrome (Version: 23.0.1271.95)
Google Talk Plugin (Version: 3.10.2.10212)
Gratuitous Space Battles
Hammerfight
ImgBurn (Version: 2.5.5.0)
Intel® Management Engine Components (Version: 6.0.0.1179)
Jamestown
Java 7 Update 9 (Version: 7.0.90)
Java Auto Updater (Version: 2.1.9.0)
Java™ 6 Update 31 (Version: 6.0.310)
Java™ 7 Update 1 (64-bit) (Version: 7.0.10)
JavaFX 2.1.1 (Version: 2.1.1)
Junk Mail filter update (Version: 15.4.3502.0922)
Katawa Shoujo
LAME v3.98.3 for Audacity
Last.fm 1.5.4.27091
League of Legends (Version: 1.3)
LIMBO
Lone Survivor
Machinarium
Magicka
Malwarebytes Anti-Malware version 1.65.1.1000 (Version: 1.65.1.1000)
Mass Effect
Mass Effect 2
Mass Effect™ 3 (Version: 1.03.0.0)
Mass Effect™ 3 Demo (Version: 1.0.0.0)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft IntelliType Pro 8.2 (Version: 8.20.469.0)
Microsoft Office 2010 (Version: 14.0.4763.1000)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Groove MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office InfoPath MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 32-bit MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Rise Of Nations
Microsoft Security Client (Version: 4.1.0522.0)
Microsoft Security Essentials (Version: 4.1.522.0)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft XNA Framework Redistributable 3.1 (Version: 3.1.10527.0)
Microsoft XNA Framework Redistributable 4.0 (Version: 4.0.20823.0)
MotoHelper 2.1.32 Driver 5.4.0 (Version: 2.1.32)
MotoHelper MergeModules (Version: 1.2.0)
MOTOROLA MEDIA LINK (Version: 1.5.4090.2)
Motorola Mobile Drivers Installation 5.4.0 (Version: 5.4.0)
Mozilla Firefox (3.6.15) (Version: 3.6.15 (en-US))
Mozilla Firefox 18.0 (x86 en-US) (Version: 18.0)
Mozilla Maintenance Service (Version: 18.0)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML4 Parser (Version: 1.0.0)
Mumble 1.2.3 (Version: 1.2.3)
Musition 4 Demo
NETGEAR WG111v3 wireless USB 2.0 adapter (Version: 1.01.10)
Nexon Game Manager
NightSky
NVIDIA 3D Vision Controller Driver 301.42 (Version: 301.42)
NVIDIA 3D Vision Driver 306.97 (Version: 306.97)
NVIDIA Control Panel 306.97 (Version: 306.97)
NVIDIA Graphics Driver 306.97 (Version: 306.97)
NVIDIA Install Application (Version: 2.1002.85.551)
NVIDIA PhysX (Version: 9.12.0213)
NVIDIA PhysX System Software 9.12.0213 (Version: 9.12.0213)
NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.0697)
NVIDIA Update 1.10.8 (Version: 1.10.8)
NVIDIA Update Components (Version: 1.10.8)
Oil Rush
OpenAL
Origin (Version: 8.5.0.4554)
Osmos
Pando Media Booster (Version: 2.3.6.0)
Pidgin (Version: 2.10.6)
Plain Sight
Plants vs. Zombies: Game of the Year
Portal 2
PrimoPDF -- brought to you by Nitro PDF Software (Version: 5)
Psychonauts
Puzzle Agent
Puzzle Agent 2
Razer Lachesis (Version: 1.10.0000)
Realtek Ethernet Controller Driver For Windows 7 (Version: 7.23.623.2010)
Realtek High Definition Audio Driver (Version: 6.0.1.6069)
Recettear: An Item Shop's Tale
Reprisal version 1.3.1 (Version: 1.3.1)
Revenge of the Titans
Sanctum
Secure Download Manager (Version: 3.0.2)
Sequence
Shank
Sibelius Scorch (Firefox, Opera, Netscape only) (Version: 6.2.0)
Sid Meier's Civilization V
Skype Click to Call (Version: 5.10.9560)
Skype™ 5.10 (Version: 5.10.116)
SMART Notebook (Version: 10.6.141.1)
SMART Product Drivers (Version: 10.6.175.2)
SoulSeek 157 NS 13e
SpaceChem
Spiral Knights
Spotify (Version: 0.5.2)
Spotify (Version: 0.8.3.222.g317ab79d)
Spybot - Search & Destroy (Version: 1.6.2)
Star Wars: Knights of the Old Republic
StarCraft II (Version: 1.4.3.21029)
Steam (Version: 1.0.0.0)
Stronghold Kingdoms
Super Meat Boy
Super Meat Boy Editor
Superbrothers: Sword & Sworcery EP
Supreme Commander 2
System Requirements Lab
Team Fortress 2
Terraria
The Binding of Isaac
The Misadventures of P.B. Winterbottom
Time Gentlemen, Please!
To the Moon
Trillian
Trine 2
Ubisoft Game Launcher (Version: 1.0.0.0)
Unity Web Player (Version: )
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553272) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2687509) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2687277) 64-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 64-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 64-Bit Edition
uTorrentBar Toolbar (Version: 6.2.7.3)
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0)
Vizzed Retro Game Room (Version: 1.0.10)
VLC media player 1.1.7 (Version: 1.1.7)
vShare Plugin
VVVVVV
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (Version: 06/03/2009 2.3.0.0)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Messenger (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3502.0922)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live Sync (Version: 14.0.8117.416)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
WinRAR 4.00 beta 5 (64-bit) (Version: 4.00.5)
World of Goo
XFINITY Toolbar (Version: 3.5.1.4)

========================= Memory info: ===================================

Percentage of memory in use: 62%
Total physical RAM: 4055.12 MB
Available physical RAM: 1527.78 MB
Total Pagefile: 8108.43 MB
Available Pagefile: 5034.97 MB
Total Virtual: 4095.88 MB
Available Virtual: 3964.1 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:931.41 GB) (Free:532.52 GB) NTFS
2 Drive d: (SI Violin Book 1) (CDROM) (Total:0.24 GB) (Free:0 GB) CDFS

========================= Users: ========================================

User accounts for \\STRADEVAPC

Administrator Guest Stradeva
UpdatusUser

========================= Restore Points ==================================


**** End of log ****

Farbar Service Scanner:
Farbar Service Scanner Version: 07-12-2012
Ran by Stradeva (administrator) on 10-12-2012 at 05:04:04
Running from "C:\Users\Stradeva\Downloads"
Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============
wscsvc Service is not running. Checking service configuration:
The start type of wscsvc service is set to Disabled. The default start type is Auto.
The ImagePath of wscsvc service is OK.
The ServiceDll of wscsvc service is OK.


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Disabled. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.


Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\iphlpsvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****

Adware Cleaner:

# AdwCleaner v2.100 - Logfile created 12/10/2012 at 05:06:39
# Updated 09/12/2012 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Stradeva - STRADEVAPC
# Boot Mode : Normal
# Running from : C:\Users\Stradeva\Downloads\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\ConduitEngine
Folder Deleted : C:\Program Files (x86)\uTorrentBar
Folder Deleted : C:\Program Files (x86)\vShare
Folder Deleted : C:\Users\Stradeva\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Stradeva\AppData\Local\Temp\vshare@toolbar
Folder Deleted : C:\Users\Stradeva\AppData\LocalLow\boost_interprocess
Folder Deleted : C:\Users\Stradeva\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Stradeva\AppData\LocalLow\ConduitEngine
Folder Deleted : C:\Users\Stradeva\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Stradeva\AppData\LocalLow\uTorrentBar
Folder Deleted : C:\Users\Stradeva\AppData\LocalLow\vShare

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\uTorrentBar
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{043C5167-00BB-4324-AF7E-62013FAEDACF}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{043C5167-00BB-4324-AF7E-62013FAEDACF}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{53BE37CE-5E29-4DA7-B9DD-B5ECB8F8F1D4}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKCU\Software\vShare
Key Deleted : HKCU\Software\Zugo
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{043C5167-00BB-4324-AF7E-62013FAEDACF}
Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\vsharechrome
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2786678
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3E315C81-442B-431C-AEC8-ED189699EC24}
Key Deleted : HKLM\SOFTWARE\Classes\vShare.IMedixProtocol
Key Deleted : HKLM\SOFTWARE\Classes\vShare.IMedixProtocol.1
Key Deleted : HKLM\SOFTWARE\Classes\vShare.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\vShare.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\vShare.ScriptHelpers
Key Deleted : HKLM\SOFTWARE\Classes\vShare.ScriptHelpers.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\conduitEngine
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3B7599DF-3D5D-4EF5-BF51-9C2EDA788E83}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{53BE37CE-5E29-4DA7-B9DD-B5ECB8F8F1D4}
Key Deleted : HKLM\Software\uTorrentBar
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{043C5167-00BB-4324-AF7E-62013FAEDACF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3B7599DF-3D5D-4EF5-BF51-9C2EDA788E83}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{53BE37CE-5E29-4DA7-B9DD-B5ECB8F8F1D4}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{20ED5AF7-D9C4-409E-9EB3-D2A44A77FB6D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{043C5167-00BB-4324-AF7E-62013FAEDACF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69F4423B-972F-467F-94C7-E0FDA6522683}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{844B2E5C-8A0D-414D-9217-0F428901594A}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{043C5167-00BB-4324-AF7E-62013FAEDACF}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentBar Toolbar
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\vShare
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{20ED5AF7-D9C4-409E-9EB3-D2A44A77FB6D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{043C5167-00BB-4324-AF7E-62013FAEDACF}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{043C5167-00BB-4324-AF7E-62013FAEDACF}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}]

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.7601.17514

[OK] Registry is clean.

-\\ Mozilla Firefox v18.0 (en-US)

Profile name : default
File : C:\Users\Stradeva\AppData\Roaming\Mozilla\Firefox\Profiles\vdg2o70t.default\prefs.js

Deleted : user_pref("extensions.illimitux.ilx_pref_pt_veoh", true);
Deleted : user_pref("extensions.vshare@toolbar.install-event-fired", true);
Deleted : user_pref("extensions.vshare@toolbar.update.enabled", false);
Deleted : user_pref("extensions.vshareus@toolbar.install-event-fired", true);
Deleted : user_pref("extensions.vshareus@toolbar.update.enabled", false);
Deleted : user_pref("vshare.install.date", "1295136000000");
Deleted : user_pref("vshare.install.dumpFileCount", 0);
Deleted : user_pref("vshare.install.dumpFileDisabled", false);
Deleted : user_pref("vshare.install.finished", "1.0.2");
Deleted : user_pref("vshare.install.guid", "{e16b7721-1989-4a17-9475-69374fbf290a}");
Deleted : user_pref("vshare.install.isDisabled", false);
Deleted : user_pref("vshare.install.isHidden", true);
Deleted : user_pref("vshare.install.laststatreq", "1295740800000");
Deleted : user_pref("vshare.install.newtab", true);
Deleted : user_pref("vshare.install.newtabDisabledByUser", true);
Deleted : user_pref("vshare.install.overlayVersion", 1);
Deleted : user_pref("vshare.install.userHPSettings", "google.com");
Deleted : user_pref("vshare.install.userSPSettings", "Google");
Deleted : user_pref("vshareus.install.date", "1295136000000");
Deleted : user_pref("vshareus.install.finished", "1.0.0");
Deleted : user_pref("vshareus.install.guid", "{f1b6fc76-62fa-46f4-b48e-90218cd6c128}");
Deleted : user_pref("vshareus.install.isDisabled", false);
Deleted : user_pref("vshareus.install.laststatreq", "1295136000000");
Deleted : user_pref("vshareus.install.overlayVersion", 1);

-\\ Google Chrome v23.0.1271.95

File : C:\Users\Stradeva\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [8380 octets] - [10/12/2012 05:06:39]

########## EOF - C:\AdwCleaner[S1].txt - [8440 octets] ##########

Junkware Removal Tool:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.0.4 (12.09.2012:4)
OS: Windows 7 Home Premium x64
Ran by Stradeva on Mon 12/10/2012 at 5:12:54.91
Blog: http://thisisudax.blogspot.com
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files

Successfully deleted: [File] C:\eula.1028.txt
Successfully deleted: [File] C:\eula.1031.txt
Successfully deleted: [File] C:\eula.1033.txt
Successfully deleted: [File] C:\eula.1036.txt
Successfully deleted: [File] C:\eula.1040.txt
Successfully deleted: [File] C:\eula.1041.txt
Successfully deleted: [File] C:\eula.1042.txt
Successfully deleted: [File] C:\eula.2052.txt
Successfully deleted: [File] C:\install.res.1028.dll
Successfully deleted: [File] C:\install.res.1031.dll
Successfully deleted: [File] C:\install.res.1033.dll
Successfully deleted: [File] C:\install.res.1036.dll
Successfully deleted: [File] C:\install.res.1040.dll
Successfully deleted: [File] C:\install.res.1041.dll
Successfully deleted: [File] C:\install.res.1042.dll
Successfully deleted: [File] C:\install.res.2052.dll
Successfully deleted: [File] C:\install.res.3082.dll



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Stradeva\appdata\locallow\comcasttb"
Failed to delete: [Folder] "C:\Program Files (x86)\comcasttb"
Successfully deleted: [Folder] "C:\Program Files (x86)\coupons"



~~~ FireFox

Successfully deleted: [File] "C:\Users\Stradeva\AppData\Roaming\mozilla\firefox\profiles\vdg2o70t.default\extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi"
Successfully deleted the following from C:\Users\Stradeva\AppData\Roaming\mozilla\firefox\profiles\vdg2o70t.default\prefs.js

user_pref("extensions.ghostery.uiLog", "{\"type\":\"sub_object_block\",\"ref\":\"www.youtube.com/watch?v=ueUUVHdUZ60&feature=bf_next&list=SPF31FF54CE3BCA21F\",\"to\":\"http://
user_pref("extensions.jid1-xUfzOsOFlzSOXg@jetpack.install-event-fired", true);



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 12/10/2012 at 5:17:25.06
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

#6 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:53 PM

Posted 10 December 2012 - 08:13 AM

Click on startmenu and type

cmd

Right click on it and select run as administrator and run these commands

cd \windows\syswow64
attrib > c:\attrib.txt


Now go to C drive and post the contents of attrib.txt log here

Download

http://www.bleepingcomputer.com/download/rkill/

Run it and after scan finishes,post the contents of RKILL log located on the desktop here


Download

Autoruns

Extract and launch autoruns.exe

Allow the scan to get finished

Now click on FILE-SAVE

Filename:Autoruns.txt
Save as :Text

Paste the contents of text here

#7 stradeva

stradeva
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:53 AM

Posted 10 December 2012 - 04:54 PM

A C:\Windows\SysWOW64\12520437.cpx
A C:\Windows\SysWOW64\12520850.cpx
A C:\Windows\SysWOW64\aaclient.dll
A C:\Windows\SysWOW64\accessibilitycpl.dll
A C:\Windows\SysWOW64\ACCTRES.dll
A C:\Windows\SysWOW64\acledit.dll
A C:\Windows\SysWOW64\aclui.dll
A C:\Windows\SysWOW64\acppage.dll
A C:\Windows\SysWOW64\ActionCenter.dll
A C:\Windows\SysWOW64\ActionCenterCPL.dll
A C:\Windows\SysWOW64\activeds.dll
A C:\Windows\SysWOW64\activeds.tlb
A C:\Windows\SysWOW64\actxprxy.dll
A C:\Windows\SysWOW64\AdapterTroubleshooter.exe
A C:\Windows\SysWOW64\admparse.dll
A C:\Windows\SysWOW64\adprovider.dll
A C:\Windows\SysWOW64\adsldp.dll
A C:\Windows\SysWOW64\adsldpc.dll
A C:\Windows\SysWOW64\adsmsext.dll
A C:\Windows\SysWOW64\adsnt.dll
A C:\Windows\SysWOW64\adtschema.dll
A C:\Windows\SysWOW64\advapi32.dll
A C:\Windows\SysWOW64\advpack.dll
A C:\Windows\SysWOW64\aecache.dll
A C:\Windows\SysWOW64\aeevts.dll
A C:\Windows\SysWOW64\AltTab.dll
A C:\Windows\SysWOW64\amcompat.tlb
A C:\Windows\SysWOW64\amdpcom32.dll
A C:\Windows\SysWOW64\amstream.dll
A C:\Windows\SysWOW64\amxread.dll
A C:\Windows\SysWOW64\apds.dll
A H C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-security-lsalookup-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-security-sddl-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-core-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-management-l1-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-management-l2-1-0.dll
A H C:\Windows\SysWOW64\api-ms-win-service-winsvc-l1-1-0.dll
A C:\Windows\SysWOW64\apilogen.dll
A C:\Windows\SysWOW64\apircl.dll
A C:\Windows\SysWOW64\apisetschema.dll
A C:\Windows\SysWOW64\apphelp.dll
A C:\Windows\SysWOW64\Apphlpdm.dll
A C:\Windows\SysWOW64\appidapi.dll
A C:\Windows\SysWOW64\appwiz.cpl
A C:\Windows\SysWOW64\apss.dll
A C:\Windows\SysWOW64\ARP.EXE
A C:\Windows\SysWOW64\asferror.dll
A C:\Windows\SysWOW64\aspnet_counters.dll
A C:\Windows\SysWOW64\asycfilt.dll
A C:\Windows\SysWOW64\at.exe
A C:\Windows\SysWOW64\AtBroker.exe
A C:\Windows\SysWOW64\ati2edxx.dll
A C:\Windows\SysWOW64\atiadlxy.dll
A C:\Windows\SysWOW64\aticalcl.dll
A C:\Windows\SysWOW64\aticaldd.dll
A C:\Windows\SysWOW64\aticalrt.dll
A C:\Windows\SysWOW64\aticfx32.dll
A C:\Windows\SysWOW64\atidxx32.dll
A C:\Windows\SysWOW64\atigktxx.dll
A C:\Windows\SysWOW64\atiglpxx.dll
A C:\Windows\SysWOW64\atimpc32.dll
A C:\Windows\SysWOW64\atioglxx.dll
A C:\Windows\SysWOW64\atipblag.dat
A C:\Windows\SysWOW64\atipdlxx.dll
A C:\Windows\SysWOW64\atiu9pag.dll
A C:\Windows\SysWOW64\atiumdag.dll
A C:\Windows\SysWOW64\atiumdmv.dll
A C:\Windows\SysWOW64\atiumdva.cap
A C:\Windows\SysWOW64\atiumdva.dll
A C:\Windows\SysWOW64\atiuxpag.dll
A C:\Windows\SysWOW64\atl.dll
A C:\Windows\SysWOW64\atl100.dll
A C:\Windows\SysWOW64\atmfd.dll
A C:\Windows\SysWOW64\atmlib.dll
A C:\Windows\SysWOW64\attrib.exe
A C:\Windows\SysWOW64\audiodev.dll
A C:\Windows\SysWOW64\AudioEng.dll
A C:\Windows\SysWOW64\AUDIOKSE.dll
A C:\Windows\SysWOW64\AudioSes.dll
A C:\Windows\SysWOW64\auditpol.exe
A C:\Windows\SysWOW64\authfwcfg.dll
A C:\Windows\SysWOW64\AuthFWGP.dll
A C:\Windows\SysWOW64\AuthFWSnapin.dll
A C:\Windows\SysWOW64\AuthFWWizFwk.dll
A C:\Windows\SysWOW64\authui.dll
A C:\Windows\SysWOW64\authz.dll
A C:\Windows\SysWOW64\autochk.exe
A C:\Windows\SysWOW64\autoconv.exe
A C:\Windows\SysWOW64\autofmt.exe
A C:\Windows\SysWOW64\autoplay.dll
A C:\Windows\SysWOW64\AuxiliaryDisplayApi.dll
A C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll
A C:\Windows\SysWOW64\avicap32.dll
A C:\Windows\SysWOW64\avifil32.dll
A C:\Windows\SysWOW64\avrt.dll
A C:\Windows\SysWOW64\azman.msc
A C:\Windows\SysWOW64\azroles.dll
A C:\Windows\SysWOW64\azroleui.dll
A C:\Windows\SysWOW64\AzSqlExt.dll
A C:\Windows\SysWOW64\basecsp.dll
A C:\Windows\SysWOW64\batmeter.dll
A C:\Windows\SysWOW64\bcrypt.dll
A C:\Windows\SysWOW64\bcryptprimitives.dll
A C:\Windows\SysWOW64\bdaplgin.ax
A C:\Windows\SysWOW64\bidispl.dll
A C:\Windows\SysWOW64\BioCredProv.dll
A C:\Windows\SysWOW64\bitsadmin.exe
A C:\Windows\SysWOW64\bitsperf.dll
A C:\Windows\SysWOW64\bitsprx2.dll
A C:\Windows\SysWOW64\bitsprx3.dll
A C:\Windows\SysWOW64\bitsprx4.dll
A C:\Windows\SysWOW64\bitsprx5.dll
A C:\Windows\SysWOW64\bitsprx6.dll
A C:\Windows\SysWOW64\blackbox.dll
A C:\Windows\SysWOW64\boot.sdi
A C:\Windows\SysWOW64\bootcfg.exe
A C:\Windows\SysWOW64\BOOTVID.DLL
A C:\Windows\SysWOW64\bopomofo.uce
A C:\Windows\SysWOW64\browcli.dll
A C:\Windows\SysWOW64\browseui.dll
A C:\Windows\SysWOW64\bthprops.cpl
A C:\Windows\SysWOW64\bthudtask.exe
A C:\Windows\SysWOW64\btpanui.dll
A C:\Windows\SysWOW64\Bubbles.scr
A C:\Windows\SysWOW64\BWContextHandler.dll
A C:\Windows\SysWOW64\BWUnpairElevated.dll
A C:\Windows\SysWOW64\cabinet.dll
A C:\Windows\SysWOW64\cabview.dll
A C:\Windows\SysWOW64\cacls.exe
A C:\Windows\SysWOW64\calc.exe
A C:\Windows\SysWOW64\capiprovider.dll
A C:\Windows\SysWOW64\capisp.dll
A C:\Windows\SysWOW64\catsrv.dll
A C:\Windows\SysWOW64\catsrvps.dll
A C:\Windows\SysWOW64\catsrvut.dll
A C:\Windows\SysWOW64\cca.dll
A C:\Windows\SysWOW64\cdosys.dll
A C:\Windows\SysWOW64\cero.rs
A C:\Windows\SysWOW64\certcli.dll
A C:\Windows\SysWOW64\certCredProvider.dll
A C:\Windows\SysWOW64\certenc.dll
A C:\Windows\SysWOW64\CertEnroll.dll
A C:\Windows\SysWOW64\CertEnrollCtrl.exe
A C:\Windows\SysWOW64\CertEnrollUI.dll
A C:\Windows\SysWOW64\certmgr.dll
A C:\Windows\SysWOW64\certmgr.msc
A C:\Windows\SysWOW64\CertPolEng.dll
A C:\Windows\SysWOW64\certreq.exe
A C:\Windows\SysWOW64\certutil.exe
A C:\Windows\SysWOW64\cewmdm.dll
A C:\Windows\SysWOW64\cfgbkend.dll
A C:\Windows\SysWOW64\cfgmgr32.dll
A C:\Windows\SysWOW64\chajei.ime
A C:\Windows\SysWOW64\charmap.exe
A C:\Windows\SysWOW64\chcp.com
A C:\Windows\SysWOW64\chkdsk.exe
A C:\Windows\SysWOW64\chkntfs.exe
A C:\Windows\SysWOW64\choice.exe
A C:\Windows\SysWOW64\chsbrkr.dll
A C:\Windows\SysWOW64\chtbrkr.dll
A C:\Windows\SysWOW64\CHxReadingStringIME.dll
A I C:\Windows\SysWOW64\cic.dll
A C:\Windows\SysWOW64\cintlgnt.ime
A C:\Windows\SysWOW64\cipher.exe
A C:\Windows\SysWOW64\clb.dll
A C:\Windows\SysWOW64\clbcatq.dll
A C:\Windows\SysWOW64\cleanmgr.exe
A C:\Windows\SysWOW64\clfsw32.dll
A C:\Windows\SysWOW64\cliconfg.dll
A C:\Windows\SysWOW64\cliconfg.exe
A C:\Windows\SysWOW64\cliconfg.rll
A C:\Windows\SysWOW64\clip.exe
A C:\Windows\SysWOW64\clusapi.dll
A C:\Windows\SysWOW64\cmcfg32.dll
A C:\Windows\SysWOW64\cmd.exe
A C:\Windows\SysWOW64\cmdial32.dll
A C:\Windows\SysWOW64\cmdkey.exe
A C:\Windows\SysWOW64\cmdl32.exe
A C:\Windows\SysWOW64\cmicryptinstall.dll
A C:\Windows\SysWOW64\cmifw.dll
A C:\Windows\SysWOW64\cmipnpinstall.dll
A C:\Windows\SysWOW64\cmlua.dll
A C:\Windows\SysWOW64\cmmon32.exe
A C:\Windows\SysWOW64\cmpbk32.dll
A C:\Windows\SysWOW64\cmstp.exe
A C:\Windows\SysWOW64\cmstplua.dll
A C:\Windows\SysWOW64\cmutil.dll
A C:\Windows\SysWOW64\cngaudit.dll
A C:\Windows\SysWOW64\cngprovider.dll
A C:\Windows\SysWOW64\cnvfat.dll
A C:\Windows\SysWOW64\colbact.dll
A C:\Windows\SysWOW64\COLORCNV.DLL
A C:\Windows\SysWOW64\colorcpl.exe
A C:\Windows\SysWOW64\colorui.dll
A C:\Windows\SysWOW64\comcat.dll
A C:\Windows\SysWOW64\comctl32.dll
A C:\Windows\SysWOW64\comdlg32.dll
A C:\Windows\SysWOW64\comexp.msc
A C:\Windows\SysWOW64\comp.exe
A C:\Windows\SysWOW64\compact.exe
A C:\Windows\SysWOW64\compmgmt.msc
A C:\Windows\SysWOW64\compobj.dll
A C:\Windows\SysWOW64\compstui.dll
A C:\Windows\SysWOW64\ComputerDefaults.exe
A C:\Windows\SysWOW64\comrepl.dll
A C:\Windows\SysWOW64\comres.dll
A C:\Windows\SysWOW64\comsnap.dll
A C:\Windows\SysWOW64\comsvcs.dll
A C:\Windows\SysWOW64\comuid.dll
A C:\Windows\SysWOW64\connect.dll
A C:\Windows\SysWOW64\console.dll
A C:\Windows\SysWOW64\control.exe
A C:\Windows\SysWOW64\convert.exe
A C:\Windows\SysWOW64\corpol.dll
A C:\Windows\SysWOW64\CPFilters.dll
A C:\Windows\SysWOW64\credssp.dll
A C:\Windows\SysWOW64\credui.dll
A C:\Windows\SysWOW64\credwiz.exe
A C:\Windows\SysWOW64\crtdll.dll
A C:\Windows\SysWOW64\crypt32.dll
A C:\Windows\SysWOW64\cryptbase.dll
A C:\Windows\SysWOW64\cryptdlg.dll
A C:\Windows\SysWOW64\cryptdll.dll
A C:\Windows\SysWOW64\cryptext.dll
A C:\Windows\SysWOW64\cryptnet.dll
A C:\Windows\SysWOW64\cryptsp.dll
A C:\Windows\SysWOW64\cryptsvc.dll
A C:\Windows\SysWOW64\cryptui.dll
A C:\Windows\SysWOW64\cryptxml.dll
A C:\Windows\SysWOW64\cscapi.dll
A C:\Windows\SysWOW64\cscdll.dll
A C:\Windows\SysWOW64\cscript.exe
A C:\Windows\SysWOW64\csrr.rs
A C:\Windows\SysWOW64\CSVer.dll
A C:\Windows\SysWOW64\ctfmon.exe
A C:\Windows\SysWOW64\ctl3d32.dll
A C:\Windows\SysWOW64\cttune.exe
A C:\Windows\SysWOW64\cttunesvr.exe
A C:\Windows\SysWOW64\C_037.NLS
A C:\Windows\SysWOW64\C_10000.NLS
A C:\Windows\SysWOW64\C_10001.NLS
A C:\Windows\SysWOW64\C_10002.NLS
A C:\Windows\SysWOW64\C_10003.NLS
A C:\Windows\SysWOW64\C_10004.NLS
A C:\Windows\SysWOW64\C_10005.NLS
A C:\Windows\SysWOW64\C_10006.NLS
A C:\Windows\SysWOW64\C_10007.NLS
A C:\Windows\SysWOW64\C_10008.NLS
A C:\Windows\SysWOW64\C_10010.NLS
A C:\Windows\SysWOW64\C_10017.NLS
A C:\Windows\SysWOW64\C_10021.NLS
A C:\Windows\SysWOW64\C_10029.NLS
A C:\Windows\SysWOW64\C_10079.NLS
A C:\Windows\SysWOW64\C_10081.NLS
A C:\Windows\SysWOW64\C_10082.NLS
A C:\Windows\SysWOW64\C_1026.NLS
A C:\Windows\SysWOW64\C_1047.NLS
A C:\Windows\SysWOW64\C_1140.NLS
A C:\Windows\SysWOW64\C_1141.NLS
A C:\Windows\SysWOW64\C_1142.NLS
A C:\Windows\SysWOW64\C_1143.NLS
A C:\Windows\SysWOW64\C_1144.NLS
A C:\Windows\SysWOW64\C_1145.NLS
A C:\Windows\SysWOW64\C_1146.NLS
A C:\Windows\SysWOW64\C_1147.NLS
A C:\Windows\SysWOW64\C_1148.NLS
A C:\Windows\SysWOW64\C_1149.NLS
A C:\Windows\SysWOW64\C_1250.NLS
A C:\Windows\SysWOW64\C_1251.NLS
A C:\Windows\SysWOW64\C_1252.NLS
A C:\Windows\SysWOW64\C_1253.NLS
A C:\Windows\SysWOW64\C_1254.NLS
A C:\Windows\SysWOW64\C_1255.NLS
A C:\Windows\SysWOW64\C_1256.NLS
A C:\Windows\SysWOW64\C_1257.NLS
A C:\Windows\SysWOW64\C_1258.NLS
A C:\Windows\SysWOW64\C_1361.NLS
A C:\Windows\SysWOW64\C_20000.NLS
A C:\Windows\SysWOW64\C_20001.NLS
A C:\Windows\SysWOW64\C_20002.NLS
A C:\Windows\SysWOW64\C_20003.NLS
A C:\Windows\SysWOW64\C_20004.NLS
A C:\Windows\SysWOW64\C_20005.NLS
A C:\Windows\SysWOW64\C_20105.NLS
A C:\Windows\SysWOW64\C_20106.NLS
A C:\Windows\SysWOW64\C_20107.NLS
A C:\Windows\SysWOW64\C_20108.NLS
A C:\Windows\SysWOW64\C_20127.NLS
A C:\Windows\SysWOW64\C_20261.NLS
A C:\Windows\SysWOW64\C_20269.NLS
A C:\Windows\SysWOW64\C_20273.NLS
A C:\Windows\SysWOW64\C_20277.NLS
A C:\Windows\SysWOW64\C_20278.NLS
A C:\Windows\SysWOW64\C_20280.NLS
A C:\Windows\SysWOW64\C_20284.NLS
A C:\Windows\SysWOW64\C_20285.NLS
A C:\Windows\SysWOW64\C_20290.NLS
A C:\Windows\SysWOW64\C_20297.NLS
A C:\Windows\SysWOW64\C_20420.NLS
A C:\Windows\SysWOW64\C_20423.NLS
A C:\Windows\SysWOW64\C_20424.NLS
A C:\Windows\SysWOW64\C_20833.NLS
A C:\Windows\SysWOW64\C_20838.NLS
A C:\Windows\SysWOW64\C_20866.NLS
A C:\Windows\SysWOW64\C_20871.NLS
A C:\Windows\SysWOW64\C_20880.NLS
A C:\Windows\SysWOW64\C_20905.NLS
A C:\Windows\SysWOW64\C_20924.NLS
A C:\Windows\SysWOW64\C_20932.NLS
A C:\Windows\SysWOW64\C_20936.NLS
A C:\Windows\SysWOW64\C_20949.NLS
A C:\Windows\SysWOW64\C_21025.NLS
A C:\Windows\SysWOW64\C_21027.NLS
A C:\Windows\SysWOW64\C_21866.NLS
A C:\Windows\SysWOW64\C_28591.NLS
A C:\Windows\SysWOW64\C_28592.NLS
A C:\Windows\SysWOW64\C_28593.NLS
A C:\Windows\SysWOW64\C_28594.NLS
A C:\Windows\SysWOW64\C_28595.NLS
A C:\Windows\SysWOW64\C_28596.NLS
A C:\Windows\SysWOW64\C_28597.NLS
A C:\Windows\SysWOW64\C_28598.NLS
A C:\Windows\SysWOW64\C_28599.NLS
A C:\Windows\SysWOW64\c_28603.nls
A C:\Windows\SysWOW64\C_28605.NLS
A C:\Windows\SysWOW64\C_437.NLS
A C:\Windows\SysWOW64\C_500.NLS
A C:\Windows\SysWOW64\C_708.NLS
A C:\Windows\SysWOW64\C_720.NLS
A C:\Windows\SysWOW64\C_737.NLS
A C:\Windows\SysWOW64\C_775.NLS
A C:\Windows\SysWOW64\C_850.NLS
A C:\Windows\SysWOW64\C_852.NLS
A C:\Windows\SysWOW64\C_855.NLS
A C:\Windows\SysWOW64\C_857.NLS
A C:\Windows\SysWOW64\C_858.NLS
A C:\Windows\SysWOW64\C_860.NLS
A C:\Windows\SysWOW64\C_861.NLS
A C:\Windows\SysWOW64\C_862.NLS
A C:\Windows\SysWOW64\C_863.NLS
A C:\Windows\SysWOW64\C_864.NLS
A C:\Windows\SysWOW64\C_865.NLS
A C:\Windows\SysWOW64\C_866.NLS
A C:\Windows\SysWOW64\C_869.NLS
A C:\Windows\SysWOW64\C_870.NLS
A C:\Windows\SysWOW64\C_874.NLS
A C:\Windows\SysWOW64\C_875.NLS
A C:\Windows\SysWOW64\C_932.NLS
A C:\Windows\SysWOW64\C_936.NLS
A C:\Windows\SysWOW64\C_949.NLS
A C:\Windows\SysWOW64\C_950.NLS
A C:\Windows\SysWOW64\C_G18030.DLL
A C:\Windows\SysWOW64\C_IS2022.DLL
A C:\Windows\SysWOW64\C_ISCII.DLL
A C:\Windows\SysWOW64\d2d1.dll
A C:\Windows\SysWOW64\d3d10.dll
A C:\Windows\SysWOW64\d3d10core.dll
A C:\Windows\SysWOW64\d3d10level9.dll
A C:\Windows\SysWOW64\d3d10warp.dll
A C:\Windows\SysWOW64\d3d10_1.dll
A C:\Windows\SysWOW64\d3d10_1core.dll
A C:\Windows\SysWOW64\d3d11.dll
A C:\Windows\SysWOW64\d3d8.dll
A C:\Windows\SysWOW64\d3d8thk.dll
A C:\Windows\SysWOW64\d3d9.dll
A C:\Windows\SysWOW64\D3DCompiler_33.dll
A C:\Windows\SysWOW64\D3DCompiler_34.dll
A C:\Windows\SysWOW64\D3DCompiler_35.dll
A C:\Windows\SysWOW64\D3DCompiler_36.dll
A C:\Windows\SysWOW64\D3DCompiler_37.dll
A C:\Windows\SysWOW64\D3DCompiler_38.dll
A C:\Windows\SysWOW64\D3DCompiler_39.dll
A C:\Windows\SysWOW64\D3DCompiler_40.dll
A C:\Windows\SysWOW64\D3DCompiler_41.dll
A C:\Windows\SysWOW64\D3DCompiler_42.dll
A C:\Windows\SysWOW64\D3DCompiler_43.dll
A C:\Windows\SysWOW64\d3dcsx_42.dll
A C:\Windows\SysWOW64\d3dcsx_43.dll
A C:\Windows\SysWOW64\d3dim.dll
A C:\Windows\SysWOW64\d3dim700.dll
A C:\Windows\SysWOW64\d3dramp.dll
A C:\Windows\SysWOW64\d3dx10.dll
A C:\Windows\SysWOW64\d3dx10_33.dll
A C:\Windows\SysWOW64\d3dx10_34.dll
A C:\Windows\SysWOW64\d3dx10_35.dll
A C:\Windows\SysWOW64\d3dx10_36.dll
A C:\Windows\SysWOW64\d3dx10_37.dll
A C:\Windows\SysWOW64\d3dx10_38.dll
A C:\Windows\SysWOW64\d3dx10_39.dll
A C:\Windows\SysWOW64\d3dx10_40.dll
A C:\Windows\SysWOW64\d3dx10_41.dll
A C:\Windows\SysWOW64\d3dx10_42.dll
A C:\Windows\SysWOW64\d3dx10_43.dll
A C:\Windows\SysWOW64\d3dx11_42.dll
A C:\Windows\SysWOW64\d3dx11_43.dll
A C:\Windows\SysWOW64\d3dx9_24.dll
A C:\Windows\SysWOW64\d3dx9_25.dll
A C:\Windows\SysWOW64\d3dx9_26.dll
A C:\Windows\SysWOW64\d3dx9_27.dll
A C:\Windows\SysWOW64\d3dx9_28.dll
A C:\Windows\SysWOW64\d3dx9_29.dll
A C:\Windows\SysWOW64\d3dx9_30.dll
A C:\Windows\SysWOW64\d3dx9_31.dll
A C:\Windows\SysWOW64\d3dx9_32.dll
A C:\Windows\SysWOW64\d3dx9_33.dll
A C:\Windows\SysWOW64\d3dx9_34.dll
A C:\Windows\SysWOW64\d3dx9_35.dll
A C:\Windows\SysWOW64\d3dx9_36.dll
A C:\Windows\SysWOW64\D3DX9_37.dll
A C:\Windows\SysWOW64\D3DX9_38.dll
A C:\Windows\SysWOW64\D3DX9_39.dll
A C:\Windows\SysWOW64\D3DX9_40.dll
A C:\Windows\SysWOW64\D3DX9_41.dll
A C:\Windows\SysWOW64\D3DX9_42.dll
A C:\Windows\SysWOW64\D3DX9_43.dll
A C:\Windows\SysWOW64\d3dxof.dll
A C:\Windows\SysWOW64\dataclen.dll
A C:\Windows\SysWOW64\davclnt.dll
A C:\Windows\SysWOW64\davhlpr.dll
A C:\Windows\SysWOW64\dbgeng.dll
A C:\Windows\SysWOW64\dbghelp.dll
A C:\Windows\SysWOW64\dbnetlib.dll
A C:\Windows\SysWOW64\dbnmpntw.dll
A C:\Windows\SysWOW64\dccw.exe
A C:\Windows\SysWOW64\dciman32.dll
A C:\Windows\SysWOW64\dcomcnfg.exe
A C:\Windows\SysWOW64\DDACLSys.dll
A C:\Windows\SysWOW64\ddodiag.exe
A C:\Windows\SysWOW64\DDOIProxy.dll
A C:\Windows\SysWOW64\DDORes.dll
A C:\Windows\SysWOW64\ddraw.dll
A C:\Windows\SysWOW64\ddrawex.dll
A C:\Windows\SysWOW64\defaultlocationcpl.dll
A C:\Windows\SysWOW64\deployJava1.dll
A C:\Windows\SysWOW64\desk.cpl
A C:\Windows\SysWOW64\deskadp.dll
A C:\Windows\SysWOW64\deskmon.dll
A C:\Windows\SysWOW64\deskperf.dll
A C:\Windows\SysWOW64\devenum.dll
A C:\Windows\SysWOW64\DeviceCenter.dll
A C:\Windows\SysWOW64\DeviceDisplayStatusManager.dll
A C:\Windows\SysWOW64\DeviceMetadataParsers.dll
A C:\Windows\SysWOW64\DevicePairing.dll
A C:\Windows\SysWOW64\DevicePairingFolder.dll
A C:\Windows\SysWOW64\DevicePairingHandler.dll
A C:\Windows\SysWOW64\DevicePairingProxy.dll
A C:\Windows\SysWOW64\DevicePairingWizard.exe
A C:\Windows\SysWOW64\DeviceProperties.exe
A C:\Windows\SysWOW64\DeviceUxRes.dll
A C:\Windows\SysWOW64\devmgmt.msc
A C:\Windows\SysWOW64\devmgr.dll
A C:\Windows\SysWOW64\devobj.dll
A C:\Windows\SysWOW64\devrtl.dll
A C:\Windows\SysWOW64\dfrgui.exe
A C:\Windows\SysWOW64\dfscli.dll
A C:\Windows\SysWOW64\dfshim.dll
A C:\Windows\SysWOW64\DfsShlEx.dll
A C:\Windows\SysWOW64\dhcpcmonitor.dll
A C:\Windows\SysWOW64\dhcpcore.dll
A C:\Windows\SysWOW64\dhcpcore6.dll
A C:\Windows\SysWOW64\dhcpcsvc.dll
A C:\Windows\SysWOW64\dhcpcsvc6.dll
A C:\Windows\SysWOW64\DHCPQEC.DLL
A C:\Windows\SysWOW64\dhcpsapi.dll
A C:\Windows\SysWOW64\dialer.exe
A C:\Windows\SysWOW64\diantz.exe
A C:\Windows\SysWOW64\difxapi.dll
A C:\Windows\SysWOW64\dimsjob.dll
A C:\Windows\SysWOW64\dimsroam.dll
A C:\Windows\SysWOW64\dinput.dll
A C:\Windows\SysWOW64\dinput8.dll
A C:\Windows\SysWOW64\diskcomp.com
A C:\Windows\SysWOW64\diskcopy.com
A C:\Windows\SysWOW64\diskcopy.dll
A C:\Windows\SysWOW64\diskmgmt.msc
A C:\Windows\SysWOW64\diskpart.exe
A C:\Windows\SysWOW64\diskperf.exe
A C:\Windows\SysWOW64\diskraid.exe
A C:\Windows\SysWOW64\Dism.exe
A C:\Windows\SysWOW64\dispex.dll
A C:\Windows\SysWOW64\Display.dll
A C:\Windows\SysWOW64\DisplaySwitch.exe
A C:\Windows\SysWOW64\DivX.dll
A C:\Windows\SysWOW64\DivXControlPanelApplet.cpl
A C:\Windows\SysWOW64\divx_xx07.dll
A C:\Windows\SysWOW64\divx_xx0a.dll
A C:\Windows\SysWOW64\divx_xx0c.dll
A C:\Windows\SysWOW64\divx_xx11.dll
A C:\Windows\SysWOW64\divx_xx16.dll
A C:\Windows\SysWOW64\dllhost.exe
A C:\Windows\SysWOW64\dllhst3g.exe
A C:\Windows\SysWOW64\dmband.dll
A C:\Windows\SysWOW64\dmcompos.dll
A C:\Windows\SysWOW64\dmdlgs.dll
A C:\Windows\SysWOW64\dmdskmgr.dll
A C:\Windows\SysWOW64\dmdskres.dll
A C:\Windows\SysWOW64\dmdskres2.dll
A C:\Windows\SysWOW64\dmime.dll
A C:\Windows\SysWOW64\dmintf.dll
A C:\Windows\SysWOW64\dmloader.dll
A C:\Windows\SysWOW64\dmocx.dll
A C:\Windows\SysWOW64\dmrc.dll
A C:\Windows\SysWOW64\dmscript.dll
A C:\Windows\SysWOW64\dmstyle.dll
A C:\Windows\SysWOW64\dmsynth.dll
A C:\Windows\SysWOW64\dmusic.dll
A C:\Windows\SysWOW64\dmutil.dll
A C:\Windows\SysWOW64\dmvdsitf.dll
A C:\Windows\SysWOW64\dmview.ocx
A C:\Windows\SysWOW64\dnsapi.dll
A C:\Windows\SysWOW64\dnscacheugc.exe
A C:\Windows\SysWOW64\dnscmmc.dll
A C:\Windows\SysWOW64\docprop.dll
A C:\Windows\SysWOW64\doskey.exe
A C:\Windows\SysWOW64\dot3api.dll
A C:\Windows\SysWOW64\dot3cfg.dll
A C:\Windows\SysWOW64\dot3dlg.dll
A C:\Windows\SysWOW64\dot3gpclnt.dll
A C:\Windows\SysWOW64\dot3gpui.dll
A C:\Windows\SysWOW64\dot3hc.dll
A C:\Windows\SysWOW64\dot3msm.dll
A C:\Windows\SysWOW64\dot3ui.dll
A C:\Windows\SysWOW64\dpapimig.exe
A C:\Windows\SysWOW64\dpapiprovider.dll
A C:\Windows\SysWOW64\DpiScaling.exe
A C:\Windows\SysWOW64\dpl100.dll
A C:\Windows\SysWOW64\dplaysvr.exe
A C:\Windows\SysWOW64\dplayx.dll
A C:\Windows\SysWOW64\dpmodemx.dll
A C:\Windows\SysWOW64\dpnaddr.dll
A C:\Windows\SysWOW64\dpnathlp.dll
A C:\Windows\SysWOW64\dpnet.dll
A C:\Windows\SysWOW64\dpnhpast.dll
A C:\Windows\SysWOW64\dpnhupnp.dll
A C:\Windows\SysWOW64\dpnlobby.dll
A C:\Windows\SysWOW64\dpnsvr.exe
A C:\Windows\SysWOW64\dpwsockx.dll
A C:\Windows\SysWOW64\dpx.dll
A C:\Windows\SysWOW64\driverquery.exe
A C:\Windows\SysWOW64\drmmgrtn.dll
A C:\Windows\SysWOW64\drmv2clt.dll
A C:\Windows\SysWOW64\drprov.dll
A C:\Windows\SysWOW64\drt.dll
A C:\Windows\SysWOW64\drtprov.dll
A C:\Windows\SysWOW64\drttransport.dll
A C:\Windows\SysWOW64\drvinst.exe
A C:\Windows\SysWOW64\drvstore.dll
A C:\Windows\SysWOW64\ds32gt.dll
A C:\Windows\SysWOW64\dsauth.dll
A C:\Windows\SysWOW64\dsdmo.dll
A C:\Windows\SysWOW64\DShowRdpFilter.dll
A C:\Windows\SysWOW64\dskquota.dll
A C:\Windows\SysWOW64\dskquoui.dll
A C:\Windows\SysWOW64\dsound.dll
A C:\Windows\SysWOW64\dsprop.dll
A C:\Windows\SysWOW64\dsquery.dll
A C:\Windows\SysWOW64\dsrole.dll
A C:\Windows\SysWOW64\dssec.dat
A C:\Windows\SysWOW64\dssec.dll
A C:\Windows\SysWOW64\dssenh.dll
A C:\Windows\SysWOW64\dsuiext.dll
A C:\Windows\SysWOW64\dswave.dll
A C:\Windows\SysWOW64\dtsh.dll
A C:\Windows\SysWOW64\dui70.dll
A C:\Windows\SysWOW64\duser.dll
A C:\Windows\SysWOW64\dvdplay.exe
A C:\Windows\SysWOW64\dvdupgrd.exe
A C:\Windows\SysWOW64\dwmapi.dll
A C:\Windows\SysWOW64\dwmcore.dll
A C:\Windows\SysWOW64\DWrite.dll
A C:\Windows\SysWOW64\DWWIN.EXE
A C:\Windows\SysWOW64\dxdiag.exe
A C:\Windows\SysWOW64\dxdiagn.dll
A C:\Windows\SysWOW64\dxgi.dll
A C:\Windows\SysWOW64\dxmasf.dll
A C:\Windows\SysWOW64\DXPTaskRingtone.dll
A C:\Windows\SysWOW64\DxpTaskSync.dll
A C:\Windows\SysWOW64\dxtmsft.dll
A C:\Windows\SysWOW64\dxtrans.dll
A C:\Windows\SysWOW64\dxva2.dll
A C:\Windows\SysWOW64\eapp3hst.dll
A C:\Windows\SysWOW64\eappcfg.dll
A C:\Windows\SysWOW64\eappgnui.dll
A C:\Windows\SysWOW64\eapphost.dll
A C:\Windows\SysWOW64\eappprxy.dll
A C:\Windows\SysWOW64\EAPQEC.DLL
A C:\Windows\SysWOW64\efsadu.dll
A C:\Windows\SysWOW64\efscore.dll
A C:\Windows\SysWOW64\efsui.exe
A C:\Windows\SysWOW64\efsutil.dll
A C:\Windows\SysWOW64\EhStorAPI.dll
A C:\Windows\SysWOW64\EhStorAuthn.exe
A C:\Windows\SysWOW64\EhStorPwdMgr.dll
A C:\Windows\SysWOW64\EhStorShell.dll
A C:\Windows\SysWOW64\els.dll
A C:\Windows\SysWOW64\ELSCore.dll
A C:\Windows\SysWOW64\elslad.dll
A C:\Windows\SysWOW64\elsTrans.dll
A C:\Windows\SysWOW64\encapi.dll
A C:\Windows\SysWOW64\EncDec.dll
A C:\Windows\SysWOW64\eqossnap.dll
A C:\Windows\SysWOW64\es.dll
A C:\Windows\SysWOW64\esent.dll
A C:\Windows\SysWOW64\esentprf.dll
A C:\Windows\SysWOW64\esentutl.exe
A C:\Windows\SysWOW64\esrb.rs
A C:\Windows\SysWOW64\eudcedit.exe
A C:\Windows\SysWOW64\eventcls.dll
A C:\Windows\SysWOW64\eventcreate.exe
A C:\Windows\SysWOW64\EventViewer_EventDetails.xsl
A C:\Windows\SysWOW64\eventvwr.exe
A C:\Windows\SysWOW64\eventvwr.msc
A C:\Windows\SysWOW64\evr.dll
A C:\Windows\SysWOW64\expand.exe
A C:\Windows\SysWOW64\explorer.exe
A C:\Windows\SysWOW64\ExplorerFrame.dll
A C:\Windows\SysWOW64\expsrv.dll
A C:\Windows\SysWOW64\extrac32.exe
A C:\Windows\SysWOW64\f3ahvoas.dll
A C:\Windows\SysWOW64\Faultrep.dll
A C:\Windows\SysWOW64\fc.exe
A C:\Windows\SysWOW64\fdBth.dll
A C:\Windows\SysWOW64\fdBthProxy.dll
A C:\Windows\SysWOW64\fde.dll
A C:\Windows\SysWOW64\fdeploy.dll
A C:\Windows\SysWOW64\fdPnp.dll
A C:\Windows\SysWOW64\fdProxy.dll
A C:\Windows\SysWOW64\fdSSDP.dll
A C:\Windows\SysWOW64\fdWCN.dll
A C:\Windows\SysWOW64\fdWNet.dll
A C:\Windows\SysWOW64\fdWSD.dll
A C:\Windows\SysWOW64\feclient.dll
A C:\Windows\SysWOW64\filemgmt.dll
A C:\Windows\SysWOW64\find.exe
A C:\Windows\SysWOW64\findnetprinters.dll
A C:\Windows\SysWOW64\findstr.exe
A C:\Windows\SysWOW64\finger.exe
A C:\Windows\SysWOW64\Firewall.cpl
A C:\Windows\SysWOW64\FirewallAPI.dll
A C:\Windows\SysWOW64\FirewallControlPanel.dll
A C:\Windows\SysWOW64\fixmapi.exe
A C:\Windows\SysWOW64\FlashPlayerApp.exe
A C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
A C:\Windows\SysWOW64\fltLib.dll
A C:\Windows\SysWOW64\fltMC.exe
A C:\Windows\SysWOW64\FM20.DLL
A C:\Windows\SysWOW64\FM20ENU.DLL
A C:\Windows\SysWOW64\fmifs.dll
A C:\Windows\SysWOW64\fms.dll
A C:\Windows\SysWOW64\fontext.dll
A C:\Windows\SysWOW64\fontsub.dll
A C:\Windows\SysWOW64\fontview.exe
A C:\Windows\SysWOW64\forfiles.exe
A C:\Windows\SysWOW64\format.com
A C:\Windows\SysWOW64\fphc.dll
A C:\Windows\SysWOW64\framedyn.dll
A C:\Windows\SysWOW64\framedynos.dll
A C:\Windows\SysWOW64\fsmgmt.msc
A C:\Windows\SysWOW64\fsutil.exe
A C:\Windows\SysWOW64\fthsvc.dll
A C:\Windows\SysWOW64\ftp.exe
A C:\Windows\SysWOW64\fundisc.dll
A C:\Windows\SysWOW64\fwcfg.dll
A C:\Windows\SysWOW64\FWPUCLNT.DLL
A C:\Windows\SysWOW64\FwRemoteSvr.dll
A C:\Windows\SysWOW64\FXSAPI.dll
A C:\Windows\SysWOW64\FXSCOM.dll
A C:\Windows\SysWOW64\FXSCOMEX.dll
A C:\Windows\SysWOW64\FXSEXT32.dll
A C:\Windows\SysWOW64\FXSRESM.dll
A C:\Windows\SysWOW64\FXSXP32.dll
A C:\Windows\SysWOW64\g711codc.ax
A C:\Windows\SysWOW64\gameux.dll
A C:\Windows\SysWOW64\GameUXLegacyGDFs.dll
A C:\Windows\SysWOW64\gb2312.uce
A C:\Windows\SysWOW64\gcdef.dll
A C:\Windows\SysWOW64\gdi32.dll
A C:\Windows\SysWOW64\getmac.exe
A C:\Windows\SysWOW64\getuname.dll
A C:\Windows\SysWOW64\glmf32.dll
A C:\Windows\SysWOW64\glu32.dll
A C:\Windows\SysWOW64\gpapi.dll
A C:\Windows\SysWOW64\gpedit.dll
A C:\Windows\SysWOW64\gpprnext.dll
A C:\Windows\SysWOW64\gpresult.exe
A C:\Windows\SysWOW64\gptext.dll
A C:\Windows\SysWOW64\gpupdate.exe
A C:\Windows\SysWOW64\grb.rs
A C:\Windows\SysWOW64\grpconv.exe
A C:\Windows\SysWOW64\hbaapi.dll
A C:\Windows\SysWOW64\hcproviders.dll
A C:\Windows\SysWOW64\hdwwiz.cpl
A C:\Windows\SysWOW64\hdwwiz.exe
A C:\Windows\SysWOW64\help.exe
A C:\Windows\SysWOW64\HelpPaneProxy.dll
A C:\Windows\SysWOW64\hgcpl.dll
A C:\Windows\SysWOW64\hh.exe
A C:\Windows\SysWOW64\hhctrl.ocx
A C:\Windows\SysWOW64\hhsetup.dll
A C:\Windows\SysWOW64\hid.dll
A C:\Windows\SysWOW64\hidphone.tsp
A C:\Windows\SysWOW64\hidserv.dll
A C:\Windows\SysWOW64\hlink.dll
A C:\Windows\SysWOW64\hnetcfg.dll
A C:\Windows\SysWOW64\hnetmon.dll
A C:\Windows\SysWOW64\HOSTNAME.EXE
A C:\Windows\SysWOW64\html.iec
A C:\Windows\SysWOW64\httpapi.dll
A C:\Windows\SysWOW64\htui.dll
A C:\Windows\SysWOW64\iac25_32.ax
A C:\Windows\SysWOW64\ias.dll
A C:\Windows\SysWOW64\iasacct.dll
A C:\Windows\SysWOW64\iasads.dll
A C:\Windows\SysWOW64\iasdatastore.dll
A C:\Windows\SysWOW64\iashlpr.dll
A C:\Windows\SysWOW64\IasMigPlugin.dll
A C:\Windows\SysWOW64\iasnap.dll
A C:\Windows\SysWOW64\iaspolcy.dll
A C:\Windows\SysWOW64\iasrad.dll
A C:\Windows\SysWOW64\iasrecst.dll
A C:\Windows\SysWOW64\iassam.dll
A C:\Windows\SysWOW64\iassdo.dll
A C:\Windows\SysWOW64\iassvcs.dll
A C:\Windows\SysWOW64\icacls.exe
A C:\Windows\SysWOW64\icardagt.exe
A C:\Windows\SysWOW64\icardie.dll
A C:\Windows\SysWOW64\icardres.dll
A C:\Windows\SysWOW64\iccvid.dll
A C:\Windows\SysWOW64\icm32.dll
A C:\Windows\SysWOW64\icmp.dll
A C:\Windows\SysWOW64\icmui.dll
A C:\Windows\SysWOW64\IconCodecService.dll
A C:\Windows\SysWOW64\icrav03.rat
A C:\Windows\SysWOW64\icsigd.dll
A C:\Windows\SysWOW64\icsunattend.exe
A C:\Windows\SysWOW64\ideograf.uce
A C:\Windows\SysWOW64\idndl.dll
A C:\Windows\SysWOW64\IDStore.dll
A C:\Windows\SysWOW64\ie4uinit.exe
A C:\Windows\SysWOW64\ieakeng.dll
A C:\Windows\SysWOW64\ieaksie.dll
A C:\Windows\SysWOW64\ieakui.dll
A C:\Windows\SysWOW64\ieapfltr.dat
A C:\Windows\SysWOW64\ieapfltr.dll
A C:\Windows\SysWOW64\iedkcs32.dll
A C:\Windows\SysWOW64\ieframe.dll
A C:\Windows\SysWOW64\iepeers.dll
A C:\Windows\SysWOW64\iernonce.dll
A C:\Windows\SysWOW64\iertutil.dll
A C:\Windows\SysWOW64\iesetup.dll
A C:\Windows\SysWOW64\iesysprep.dll
A C:\Windows\SysWOW64\ieui.dll
A C:\Windows\SysWOW64\ieuinit.inf
A C:\Windows\SysWOW64\ieUnatt.exe
A C:\Windows\SysWOW64\iexpress.exe
A C:\Windows\SysWOW64\ifmon.dll
A C:\Windows\SysWOW64\ifsutil.dll
A C:\Windows\SysWOW64\ifsutilx.dll
A C:\Windows\SysWOW64\imaadp32.acm
A C:\Windows\SysWOW64\imagehlp.dll
A C:\Windows\SysWOW64\imageres.dll
A C:\Windows\SysWOW64\imagesp1.dll
A C:\Windows\SysWOW64\imapi.dll
A C:\Windows\SysWOW64\imapi2.dll
A C:\Windows\SysWOW64\imapi2fs.dll
A C:\Windows\SysWOW64\imgutil.dll
A C:\Windows\SysWOW64\IMJP10.IME
A C:\Windows\SysWOW64\IMJP10K.DLL
A C:\Windows\SysWOW64\imkr80.ime
A C:\Windows\SysWOW64\imm32.dll
A C:\Windows\SysWOW64\inetcomm.dll
A C:\Windows\SysWOW64\inetcpl.cpl
A C:\Windows\SysWOW64\inetmib1.dll
A C:\Windows\SysWOW64\INETRES.dll
A C:\Windows\SysWOW64\InfDefaultInstall.exe
A C:\Windows\SysWOW64\infocardapi.dll
A C:\Windows\SysWOW64\infocardcpl.cpl
A C:\Windows\SysWOW64\InkEd.dll
A C:\Windows\SysWOW64\input.dll
A C:\Windows\SysWOW64\inseng.dll
A C:\Windows\SysWOW64\instnm.exe
A C:\Windows\SysWOW64\intl.cpl
A C:\Windows\SysWOW64\iologmsg.dll
A C:\Windows\SysWOW64\IPBusEnumProxy.dll
A C:\Windows\SysWOW64\ipconfig.exe
A C:\Windows\SysWOW64\IPHLPAPI.DLL
A C:\Windows\SysWOW64\iprop.dll
A C:\Windows\SysWOW64\iprtprio.dll
A C:\Windows\SysWOW64\iprtrmgr.dll
A C:\Windows\SysWOW64\ipsecsnp.dll
A C:\Windows\SysWOW64\ipsmsnap.dll
A C:\Windows\SysWOW64\ir32_32.dll
A C:\Windows\SysWOW64\ir41_32.ax
A C:\Windows\SysWOW64\ir41_qc.dll
A C:\Windows\SysWOW64\ir41_qcx.dll
A C:\Windows\SysWOW64\ir50_32.dll
A C:\Windows\SysWOW64\ir50_qc.dll
A C:\Windows\SysWOW64\ir50_qcx.dll
A C:\Windows\SysWOW64\irclass.dll
A C:\Windows\SysWOW64\irprops.cpl
A C:\Windows\SysWOW64\iscsicli.exe
A C:\Windows\SysWOW64\iscsicpl.dll
A C:\Windows\SysWOW64\iscsicpl.exe
A C:\Windows\SysWOW64\iscsidsc.dll
A C:\Windows\SysWOW64\iscsied.dll
A C:\Windows\SysWOW64\iscsium.dll
A C:\Windows\SysWOW64\iscsiwmi.dll
A C:\Windows\SysWOW64\isoburn.exe
A C:\Windows\SysWOW64\itircl.dll
A C:\Windows\SysWOW64\itss.dll
A C:\Windows\SysWOW64\iTVData.dll
A C:\Windows\SysWOW64\ivfsrc.ax
A C:\Windows\SysWOW64\iyuv_32.dll
A C:\Windows\SysWOW64\java.exe
A C:\Windows\SysWOW64\javaw.exe
A C:\Windows\SysWOW64\joy.cpl
A C:\Windows\SysWOW64\jscript.dll
A C:\Windows\SysWOW64\jsproxy.dll
A C:\Windows\SysWOW64\jupdate-1.6.0_26-b03.log
A C:\Windows\SysWOW64\jupdate-1.6.0_29-b11.log
A C:\Windows\SysWOW64\jupdate-1.7.0_09-b05.log
A C:\Windows\SysWOW64\kanji_1.uce
A C:\Windows\SysWOW64\kanji_2.uce
A C:\Windows\SysWOW64\kbd101.DLL
A C:\Windows\SysWOW64\kbd101a.DLL
A C:\Windows\SysWOW64\kbd101b.DLL
A C:\Windows\SysWOW64\kbd101c.DLL
A C:\Windows\SysWOW64\kbd103.DLL
A C:\Windows\SysWOW64\kbd106.dll
A C:\Windows\SysWOW64\kbd106n.dll
A C:\Windows\SysWOW64\KBDA1.DLL
A C:\Windows\SysWOW64\KBDA2.DLL
A C:\Windows\SysWOW64\KBDA3.DLL
A C:\Windows\SysWOW64\KBDAL.DLL
A C:\Windows\SysWOW64\KBDARME.DLL
A C:\Windows\SysWOW64\KBDARMW.DLL
A C:\Windows\SysWOW64\kbdax2.dll
A C:\Windows\SysWOW64\KBDAZE.DLL
A C:\Windows\SysWOW64\KBDAZEL.DLL
A C:\Windows\SysWOW64\KBDBASH.DLL
A C:\Windows\SysWOW64\KBDBE.DLL
A C:\Windows\SysWOW64\KBDBENE.DLL
A C:\Windows\SysWOW64\KBDBGPH.DLL
A C:\Windows\SysWOW64\KBDBGPH1.DLL
A C:\Windows\SysWOW64\KBDBHC.DLL
A C:\Windows\SysWOW64\KBDBLR.DLL
A C:\Windows\SysWOW64\KBDBR.DLL
A C:\Windows\SysWOW64\KBDBU.DLL
A C:\Windows\SysWOW64\KBDBULG.DLL
A C:\Windows\SysWOW64\KBDCA.DLL
A C:\Windows\SysWOW64\KBDCAN.DLL
A C:\Windows\SysWOW64\KBDCR.DLL
A C:\Windows\SysWOW64\KBDCZ.DLL
A C:\Windows\SysWOW64\KBDCZ1.DLL
A C:\Windows\SysWOW64\KBDCZ2.DLL
A C:\Windows\SysWOW64\KBDDA.DLL
A C:\Windows\SysWOW64\KBDDIV1.DLL
A C:\Windows\SysWOW64\KBDDIV2.DLL
A C:\Windows\SysWOW64\KBDDV.DLL
A C:\Windows\SysWOW64\KBDES.DLL
A C:\Windows\SysWOW64\KBDEST.DLL
A C:\Windows\SysWOW64\KBDFA.DLL
A C:\Windows\SysWOW64\KBDFC.DLL
A C:\Windows\SysWOW64\KBDFI.DLL
A C:\Windows\SysWOW64\KBDFI1.DLL
A C:\Windows\SysWOW64\KBDFO.DLL
A C:\Windows\SysWOW64\KBDFR.DLL
A C:\Windows\SysWOW64\KBDGAE.DLL
A C:\Windows\SysWOW64\KBDGEO.DLL
A C:\Windows\SysWOW64\kbdgeoer.dll
A C:\Windows\SysWOW64\kbdgeoqw.dll
A C:\Windows\SysWOW64\KBDGKL.DLL
A C:\Windows\SysWOW64\KBDGR.DLL
A C:\Windows\SysWOW64\KBDGR1.DLL
A C:\Windows\SysWOW64\KBDGRLND.DLL
A C:\Windows\SysWOW64\KBDHAU.DLL
A C:\Windows\SysWOW64\KBDHE.DLL
A C:\Windows\SysWOW64\KBDHE220.DLL
A C:\Windows\SysWOW64\KBDHE319.DLL
A C:\Windows\SysWOW64\KBDHEB.DLL
A C:\Windows\SysWOW64\KBDHELA2.DLL
A C:\Windows\SysWOW64\KBDHELA3.DLL
A C:\Windows\SysWOW64\KBDHEPT.DLL
A C:\Windows\SysWOW64\KBDHU.DLL
A C:\Windows\SysWOW64\KBDHU1.DLL
A C:\Windows\SysWOW64\kbdibm02.DLL
A C:\Windows\SysWOW64\KBDIBO.DLL
A C:\Windows\SysWOW64\KBDIC.DLL
A C:\Windows\SysWOW64\KBDINASA.DLL
A C:\Windows\SysWOW64\KBDINBE1.DLL
A C:\Windows\SysWOW64\KBDINBE2.DLL
A C:\Windows\SysWOW64\KBDINBEN.DLL
A C:\Windows\SysWOW64\KBDINDEV.DLL
A C:\Windows\SysWOW64\KBDINGUJ.DLL
A C:\Windows\SysWOW64\KBDINHIN.DLL
A C:\Windows\SysWOW64\KBDINKAN.DLL
A C:\Windows\SysWOW64\KBDINMAL.DLL
A C:\Windows\SysWOW64\KBDINMAR.DLL
A C:\Windows\SysWOW64\KBDINORI.DLL
A C:\Windows\SysWOW64\KBDINPUN.DLL
A C:\Windows\SysWOW64\KBDINTAM.DLL
A C:\Windows\SysWOW64\KBDINTEL.DLL
A C:\Windows\SysWOW64\KBDINUK2.DLL
A C:\Windows\SysWOW64\KBDIR.DLL
A C:\Windows\SysWOW64\KBDIT.DLL
A C:\Windows\SysWOW64\KBDIT142.DLL
A C:\Windows\SysWOW64\KBDIULAT.DLL
A C:\Windows\SysWOW64\KBDJPN.DLL
A C:\Windows\SysWOW64\KBDKAZ.DLL
A C:\Windows\SysWOW64\KBDKHMR.DLL
A C:\Windows\SysWOW64\KBDKOR.DLL
A C:\Windows\SysWOW64\KBDKYR.DLL
A C:\Windows\SysWOW64\KBDLA.DLL
A C:\Windows\SysWOW64\KBDLAO.DLL
A C:\Windows\SysWOW64\kbdlk41a.dll
A C:\Windows\SysWOW64\KBDLT.DLL
A C:\Windows\SysWOW64\KBDLT1.DLL
A C:\Windows\SysWOW64\KBDLT2.DLL
A C:\Windows\SysWOW64\KBDLV.DLL
A C:\Windows\SysWOW64\KBDLV1.DLL
A C:\Windows\SysWOW64\KBDMAC.DLL
A C:\Windows\SysWOW64\KBDMACST.DLL
A C:\Windows\SysWOW64\KBDMAORI.DLL
A C:\Windows\SysWOW64\KBDMLT47.DLL
A C:\Windows\SysWOW64\KBDMLT48.DLL
A C:\Windows\SysWOW64\KBDMON.DLL
A C:\Windows\SysWOW64\KBDMONMO.DLL
A C:\Windows\SysWOW64\KBDNE.DLL
A C:\Windows\SysWOW64\kbdnec.DLL
A C:\Windows\SysWOW64\kbdnec95.DLL
A C:\Windows\SysWOW64\kbdnecat.DLL
A C:\Windows\SysWOW64\kbdnecnt.DLL
A C:\Windows\SysWOW64\KBDNEPR.DLL
A C:\Windows\SysWOW64\KBDNO.DLL
A C:\Windows\SysWOW64\KBDNO1.DLL
A C:\Windows\SysWOW64\KBDNSO.DLL
A C:\Windows\SysWOW64\KBDPASH.DLL
A C:\Windows\SysWOW64\KBDPL.DLL
A C:\Windows\SysWOW64\KBDPL1.DLL
A C:\Windows\SysWOW64\KBDPO.DLL
A C:\Windows\SysWOW64\KBDRO.DLL
A C:\Windows\SysWOW64\KBDROPR.DLL
A C:\Windows\SysWOW64\KBDROST.DLL
A C:\Windows\SysWOW64\KBDRU.DLL
A C:\Windows\SysWOW64\KBDRU1.DLL
A C:\Windows\SysWOW64\KBDSF.DLL
A C:\Windows\SysWOW64\KBDSG.DLL
A C:\Windows\SysWOW64\KBDSL.DLL
A C:\Windows\SysWOW64\KBDSL1.DLL
A C:\Windows\SysWOW64\KBDSMSFI.DLL
A C:\Windows\SysWOW64\KBDSMSNO.DLL
A C:\Windows\SysWOW64\KBDSN1.DLL
A C:\Windows\SysWOW64\KBDSOREX.DLL
A C:\Windows\SysWOW64\KBDSORS1.DLL
A C:\Windows\SysWOW64\KBDSORST.DLL
A C:\Windows\SysWOW64\KBDSP.DLL
A C:\Windows\SysWOW64\KBDSW.DLL
A C:\Windows\SysWOW64\KBDSW09.DLL
A C:\Windows\SysWOW64\KBDSYR1.DLL
A C:\Windows\SysWOW64\KBDSYR2.DLL
A C:\Windows\SysWOW64\KBDTAJIK.DLL
A C:\Windows\SysWOW64\KBDTAT.DLL
A C:\Windows\SysWOW64\KBDTH0.DLL
A C:\Windows\SysWOW64\KBDTH1.DLL
A C:\Windows\SysWOW64\KBDTH2.DLL
A C:\Windows\SysWOW64\KBDTH3.DLL
A C:\Windows\SysWOW64\KBDTIPRC.DLL
A C:\Windows\SysWOW64\KBDTUF.DLL
A C:\Windows\SysWOW64\KBDTUQ.DLL
A C:\Windows\SysWOW64\KBDTURME.DLL
A C:\Windows\SysWOW64\KBDUGHR.DLL
A C:\Windows\SysWOW64\KBDUGHR1.DLL
A C:\Windows\SysWOW64\KBDUK.DLL
A C:\Windows\SysWOW64\KBDUKX.DLL
A C:\Windows\SysWOW64\KBDUR.DLL
A C:\Windows\SysWOW64\KBDUR1.DLL
A C:\Windows\SysWOW64\KBDURDU.DLL
A C:\Windows\SysWOW64\KBDUS.DLL
A C:\Windows\SysWOW64\KBDUSA.DLL
A C:\Windows\SysWOW64\KBDUSL.DLL
A C:\Windows\SysWOW64\KBDUSR.DLL
A C:\Windows\SysWOW64\KBDUSX.DLL
A C:\Windows\SysWOW64\KBDUZB.DLL
A C:\Windows\SysWOW64\KBDVNTC.DLL
A C:\Windows\SysWOW64\KBDWOL.DLL
A C:\Windows\SysWOW64\KBDYAK.DLL
A C:\Windows\SysWOW64\KBDYBA.DLL
A C:\Windows\SysWOW64\KBDYCC.DLL
A C:\Windows\SysWOW64\KBDYCL.DLL
A C:\Windows\SysWOW64\kerberos.dll
A C:\Windows\SysWOW64\kernel32.dll
A C:\Windows\SysWOW64\KernelBase.dll
A C:\Windows\SysWOW64\keyiso.dll
A C:\Windows\SysWOW64\keymgr.dll
A C:\Windows\SysWOW64\kmddsp.tsp
A C:\Windows\SysWOW64\korean.uce
A C:\Windows\SysWOW64\korwbrkr.dll
A C:\Windows\SysWOW64\korwbrkr.lex
A C:\Windows\SysWOW64\ksproxy.ax
A C:\Windows\SysWOW64\kstvtune.ax
A C:\Windows\SysWOW64\ksuser.dll
A C:\Windows\SysWOW64\Kswdmcap.ax
A C:\Windows\SysWOW64\ksxbar.ax
A C:\Windows\SysWOW64\ktmutil.exe
A C:\Windows\SysWOW64\ktmw32.dll
A C:\Windows\SysWOW64\l2gpstore.dll
A C:\Windows\SysWOW64\l2nacp.dll
A C:\Windows\SysWOW64\L2SecHC.dll
A C:\Windows\SysWOW64\l3codeca.acm
A C:\Windows\SysWOW64\l3codecp.acm
A C:\Windows\SysWOW64\label.exe
A C:\Windows\SysWOW64\LAPRXY.DLL
A C:\Windows\SysWOW64\lcphrase.tbl
A C:\Windows\SysWOW64\lcptr.tbl
A C:\Windows\SysWOW64\license.rtf
A C:\Windows\SysWOW64\licmgr10.dll
A C:\Windows\SysWOW64\linkinfo.dll
A C:\Windows\SysWOW64\LIVESSP.DLL
A C:\Windows\SysWOW64\loadperf.dll
A C:\Windows\SysWOW64\locale.nls
A C:\Windows\SysWOW64\localsec.dll
A C:\Windows\SysWOW64\LocationApi.dll
A C:\Windows\SysWOW64\LocationNotifications.exe
A C:\Windows\SysWOW64\locationnotificationsview.xml
A C:\Windows\SysWOW64\lodctr.exe
A C:\Windows\SysWOW64\log.txt
A C:\Windows\SysWOW64\logagent.exe
A C:\Windows\SysWOW64\loghours.dll
A C:\Windows\SysWOW64\logman.exe
A C:\Windows\SysWOW64\logoncli.dll
A C:\Windows\SysWOW64\lpk.dll
A C:\Windows\SysWOW64\lsmproxy.dll
A C:\Windows\SysWOW64\luainstall.dll
A C:\Windows\SysWOW64\lusrmgr.msc
A C:\Windows\SysWOW64\lz32.dll
A C:\Windows\SysWOW64\l_intl.nls
A C:\Windows\SysWOW64\Magnification.dll
A C:\Windows\SysWOW64\Magnify.exe
A C:\Windows\SysWOW64\main.cpl
A C:\Windows\SysWOW64\makecab.exe
A C:\Windows\SysWOW64\mapi32.dll
A C:\Windows\SysWOW64\mapistub.dll
A C:\Windows\SysWOW64\mapisvc.inf
A C:\Windows\SysWOW64\mcbuilder.exe
A C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll
A C:\Windows\SysWOW64\mciavi32.dll
A C:\Windows\SysWOW64\mcicda.dll
A C:\Windows\SysWOW64\mciqtz32.dll
A C:\Windows\SysWOW64\mciseq.dll
A C:\Windows\SysWOW64\mciwave.dll
A C:\Windows\SysWOW64\mctres.dll
A C:\Windows\SysWOW64\mdminst.dll
A C:\Windows\SysWOW64\MediaMetadataHandler.dll
A C:\Windows\SysWOW64\mf.dll
A C:\Windows\SysWOW64\mf3216.dll
A C:\Windows\SysWOW64\mfAACEnc.dll
A C:\Windows\SysWOW64\mfc100.dll
A C:\Windows\SysWOW64\mfc100chs.dll
A C:\Windows\SysWOW64\mfc100cht.dll
A C:\Windows\SysWOW64\mfc100deu.dll
A C:\Windows\SysWOW64\mfc100enu.dll
A C:\Windows\SysWOW64\mfc100esn.dll
A C:\Windows\SysWOW64\mfc100fra.dll
A C:\Windows\SysWOW64\mfc100ita.dll
A C:\Windows\SysWOW64\mfc100jpn.dll
A C:\Windows\SysWOW64\mfc100kor.dll
A C:\Windows\SysWOW64\mfc100rus.dll
A C:\Windows\SysWOW64\mfc100u.dll
A C:\Windows\SysWOW64\mfc40.dll
A C:\Windows\SysWOW64\mfc40u.dll
A C:\Windows\SysWOW64\mfc42.dll
A C:\Windows\SysWOW64\MFC42ENU.DLL
A C:\Windows\SysWOW64\mfc42u.dll
A C:\Windows\SysWOW64\mfcm100.dll
A C:\Windows\SysWOW64\mfcm100u.dll
A C:\Windows\SysWOW64\mfcsubs.dll
A C:\Windows\SysWOW64\mfds.dll
A C:\Windows\SysWOW64\mfdvdec.dll
A C:\Windows\SysWOW64\mferror.dll
A C:\Windows\SysWOW64\mfh264enc.dll
A C:\Windows\SysWOW64\mfmjpegdec.dll
A C:\Windows\SysWOW64\mfplat.dll
A C:\Windows\SysWOW64\MFPlay.dll
A C:\Windows\SysWOW64\mfpmp.exe
A C:\Windows\SysWOW64\mfps.dll
A C:\Windows\SysWOW64\mfreadwrite.dll
A C:\Windows\SysWOW64\mfvdsp.dll
A C:\Windows\SysWOW64\MFWMAAEC.DLL
A C:\Windows\SysWOW64\mgmtapi.dll
A C:\Windows\SysWOW64\midimap.dll
A C:\Windows\SysWOW64\MigAutoPlay.exe
A C:\Windows\SysWOW64\migisol.dll
A C:\Windows\SysWOW64\miguiresource.dll
A C:\Windows\SysWOW64\mimefilt.dll
A C:\Windows\SysWOW64\mlang.dat
A C:\Windows\SysWOW64\mlang.dll
A I C:\Windows\SysWOW64\mmc.exe
A I C:\Windows\SysWOW64\mmcbase.dll
A C:\Windows\SysWOW64\mmci.dll
A C:\Windows\SysWOW64\mmcico.dll
A C:\Windows\SysWOW64\mmcndmgr.dll
A I C:\Windows\SysWOW64\mmcshext.dll
A C:\Windows\SysWOW64\MMDevAPI.dll
A C:\Windows\SysWOW64\mmres.dll
A C:\Windows\SysWOW64\mmsys.cpl
A C:\Windows\SysWOW64\mobsync.exe
A C:\Windows\SysWOW64\mode.com
A C:\Windows\SysWOW64\modemui.dll
A C:\Windows\SysWOW64\more.com
A C:\Windows\SysWOW64\moricons.dll
A C:\Windows\SysWOW64\mountvol.exe
A C:\Windows\SysWOW64\MP3DMOD.DLL
A C:\Windows\SysWOW64\MP43DECD.DLL
A C:\Windows\SysWOW64\MP4SDECD.DLL
A C:\Windows\SysWOW64\Mpeg2Data.ax
A C:\Windows\SysWOW64\mpg2splt.ax
A C:\Windows\SysWOW64\MPG4DECD.DLL
A C:\Windows\SysWOW64\mpr.dll
A C:\Windows\SysWOW64\mprapi.dll
A C:\Windows\SysWOW64\mprddm.dll
A C:\Windows\SysWOW64\mprdim.dll
A C:\Windows\SysWOW64\mprmsg.dll
A C:\Windows\SysWOW64\MRINFO.EXE
A C:\Windows\SysWOW64\msaatext.dll
A C:\Windows\SysWOW64\MSAC3ENC.DLL
A C:\Windows\SysWOW64\msacm32.dll
A C:\Windows\SysWOW64\msacm32.drv
A C:\Windows\SysWOW64\msadp32.acm
A C:\Windows\SysWOW64\msafd.dll
A C:\Windows\SysWOW64\msasn1.dll
A C:\Windows\SysWOW64\msaudite.dll
A C:\Windows\SysWOW64\mscandui.dll
A C:\Windows\SysWOW64\mscat32.dll
A C:\Windows\SysWOW64\msclmd.dll
A C:\Windows\SysWOW64\mscms.dll
A C:\Windows\SysWOW64\MSCOMCTL.OCX
A C:\Windows\SysWOW64\mscoree.dll
A C:\Windows\SysWOW64\mscorier.dll
A C:\Windows\SysWOW64\mscories.dll
A C:\Windows\SysWOW64\mscpx32r.dLL
A C:\Windows\SysWOW64\mscpxl32.dLL
A C:\Windows\SysWOW64\msctf.dll
A C:\Windows\SysWOW64\msctfime.ime
A C:\Windows\SysWOW64\MsCtfMonitor.dll
A C:\Windows\SysWOW64\msctfp.dll
A C:\Windows\SysWOW64\msctfui.dll
A C:\Windows\SysWOW64\msdadiag.dll
A C:\Windows\SysWOW64\msdart.dll
A C:\Windows\SysWOW64\msdatsrc.tlb
A C:\Windows\SysWOW64\msdelta.dll
A C:\Windows\SysWOW64\msdmo.dll
A C:\Windows\SysWOW64\msdrm.dll
A C:\Windows\SysWOW64\msdt.exe
A C:\Windows\SysWOW64\msdtcprx.dll
A C:\Windows\SysWOW64\msdtcuiu.dll
A C:\Windows\SysWOW64\msdtcVSp1res.dll
A C:\Windows\SysWOW64\MSDvbNP.ax
A C:\Windows\SysWOW64\msdxm.ocx
A C:\Windows\SysWOW64\msdxm.tlb
A C:\Windows\SysWOW64\msexch40.dll
A C:\Windows\SysWOW64\msexcl40.dll
A C:\Windows\SysWOW64\msfeeds.dll
A C:\Windows\SysWOW64\msfeedsbs.dll
A C:\Windows\SysWOW64\msfeedssync.exe
A C:\Windows\SysWOW64\msftedit.dll
A C:\Windows\SysWOW64\msg711.acm
A C:\Windows\SysWOW64\msgsm32.acm
A C:\Windows\SysWOW64\mshta.exe
A C:\Windows\SysWOW64\mshtml.dll
A C:\Windows\SysWOW64\mshtml.tlb
A C:\Windows\SysWOW64\mshtmled.dll
A C:\Windows\SysWOW64\mshtmler.dll
A C:\Windows\SysWOW64\msi.dll
A C:\Windows\SysWOW64\msidcrl30.dll
A C:\Windows\SysWOW64\msident.dll
A C:\Windows\SysWOW64\msidle.dll
A C:\Windows\SysWOW64\msidntld.dll
A C:\Windows\SysWOW64\msieftp.dll
A C:\Windows\SysWOW64\msiexec.exe
A C:\Windows\SysWOW64\msihnd.dll
A C:\Windows\SysWOW64\msiltcfg.dll
A C:\Windows\SysWOW64\msimg32.dll
A C:\Windows\SysWOW64\msimsg.dll
A C:\Windows\SysWOW64\msimtf.dll
A C:\Windows\SysWOW64\msinfo32.exe
A C:\Windows\SysWOW64\msisip.dll
A C:\Windows\SysWOW64\msjet40.dll
A C:\Windows\SysWOW64\msjetoledb40.dll
A C:\Windows\SysWOW64\msjint40.dll
A C:\Windows\SysWOW64\msjter40.dll
A C:\Windows\SysWOW64\msjtes40.dll
A C:\Windows\SysWOW64\msls31.dll
A C:\Windows\SysWOW64\msltus40.dll
A C:\Windows\SysWOW64\msmpeg2adec.dll
A C:\Windows\SysWOW64\MSMPEG2ENC.DLL
A C:\Windows\SysWOW64\msmpeg2vdec.dll
A C:\Windows\SysWOW64\msnetobj.dll
A C:\Windows\SysWOW64\MSNP.ax
A C:\Windows\SysWOW64\msobjs.dll
A C:\Windows\SysWOW64\msoeacct.dll
A C:\Windows\SysWOW64\msoert2.dll
A C:\Windows\SysWOW64\msorc32r.dll
A C:\Windows\SysWOW64\msorcl32.dll
A C:\Windows\SysWOW64\mspaint.exe
A C:\Windows\SysWOW64\mspatcha.dll
A C:\Windows\SysWOW64\mspbde40.dll
A C:\Windows\SysWOW64\msports.dll
A C:\Windows\SysWOW64\msra.exe
A C:\Windows\SysWOW64\MsraLegacy.tlb
A C:\Windows\SysWOW64\msrating.dll
A C:\Windows\SysWOW64\msrd2x40.dll
A C:\Windows\SysWOW64\msrd3x40.dll
A C:\Windows\SysWOW64\msrdc.dll
A C:\Windows\SysWOW64\MSRDO20.DLL
A C:\Windows\SysWOW64\MsRdpWebAccess.dll
A C:\Windows\SysWOW64\msrepl40.dll
A C:\Windows\SysWOW64\msrle32.dll
A C:\Windows\SysWOW64\msscntrs.dll
A C:\Windows\SysWOW64\msscp.dll
A C:\Windows\SysWOW64\msscript.ocx
A C:\Windows\SysWOW64\mssha.dll
A C:\Windows\SysWOW64\msshavmsg.dll
A C:\Windows\SysWOW64\msshooks.dll
A C:\Windows\SysWOW64\mssign32.dll
A C:\Windows\SysWOW64\mssip32.dll
A C:\Windows\SysWOW64\mssitlb.dll
A C:\Windows\SysWOW64\mssph.dll
A C:\Windows\SysWOW64\mssphtb.dll
A C:\Windows\SysWOW64\mssprxy.dll
A C:\Windows\SysWOW64\mssrch.dll
A C:\Windows\SysWOW64\MSSTDFMT.DLL
A C:\Windows\SysWOW64\MSSTKPRP.DLL
A C:\Windows\SysWOW64\mssvp.dll
A C:\Windows\SysWOW64\msswch.dll
A C:\Windows\SysWOW64\mstask.dll
A C:\Windows\SysWOW64\mstext40.dll
A C:\Windows\SysWOW64\mstime.dll
A C:\Windows\SysWOW64\mstsc.exe
A C:\Windows\SysWOW64\mstscax.dll
A C:\Windows\SysWOW64\msutb.dll
A C:\Windows\SysWOW64\msv1_0.dll
A C:\Windows\SysWOW64\msvbvm60.dll
A C:\Windows\SysWOW64\msvcirt.dll
A C:\Windows\SysWOW64\msvcp100.dll
A C:\Windows\SysWOW64\msvcp60.dll
A C:\Windows\SysWOW64\msvcp71.dll
A C:\Windows\SysWOW64\msvcr100.dll
A C:\Windows\SysWOW64\msvcr100_clr0400.dll
A C:\Windows\SysWOW64\msvcr71.dll
A C:\Windows\SysWOW64\msvcrt.dll
A C:\Windows\SysWOW64\msvcrt20.dll
A C:\Windows\SysWOW64\msvcrt40.dll
A C:\Windows\SysWOW64\msvfw32.dll
A C:\Windows\SysWOW64\msvidc32.dll
A C:\Windows\SysWOW64\MSVidCtl.dll
A C:\Windows\SysWOW64\mswdat10.dll
A C:\Windows\SysWOW64\mswmdm.dll
A C:\Windows\SysWOW64\mswsock.dll
A C:\Windows\SysWOW64\mswstr10.dll
A C:\Windows\SysWOW64\msxbde40.dll
A C:\Windows\SysWOW64\msxml3.dll
A C:\Windows\SysWOW64\msxml3r.dll
A C:\Windows\SysWOW64\msxml4.dll
A C:\Windows\SysWOW64\msxml4r.dll
A C:\Windows\SysWOW64\msxml6.dll
A C:\Windows\SysWOW64\msxml6r.dll
A C:\Windows\SysWOW64\msyuv.dll
A C:\Windows\SysWOW64\mtstocom.exe
A C:\Windows\SysWOW64\mtxclu.dll
A C:\Windows\SysWOW64\mtxdm.dll
A C:\Windows\SysWOW64\mtxex.dll
A C:\Windows\SysWOW64\mtxlegih.dll
A C:\Windows\SysWOW64\mtxoci.dll
A C:\Windows\SysWOW64\muifontsetup.dll
A C:\Windows\SysWOW64\MuiUnattend.exe
A C:\Windows\SysWOW64\mycomput.dll
A C:\Windows\SysWOW64\mydocs.dll
A C:\Windows\SysWOW64\Mystify.scr
A C:\Windows\SysWOW64\NAPCLCFG.MSC
A C:\Windows\SysWOW64\NAPCRYPT.DLL
A C:\Windows\SysWOW64\napdsnap.dll
A C:\Windows\SysWOW64\NAPHLPR.DLL
A C:\Windows\SysWOW64\NapiNSP.dll
A C:\Windows\SysWOW64\napipsec.dll
A C:\Windows\SysWOW64\NAPMONTR.DLL
A C:\Windows\SysWOW64\NAPSTAT.EXE
A C:\Windows\SysWOW64\NativeHooks.dll
A C:\Windows\SysWOW64\NaturalLanguage6.dll
A C:\Windows\SysWOW64\NcdProp.dll
A C:\Windows\SysWOW64\nci.dll
A C:\Windows\SysWOW64\ncobjapi.dll
A C:\Windows\SysWOW64\ncpa.cpl
A C:\Windows\SysWOW64\ncrypt.dll
A C:\Windows\SysWOW64\ncryptui.dll
A C:\Windows\SysWOW64\ncsi.dll
A C:\Windows\SysWOW64\ndadmin.exe
A C:\Windows\SysWOW64\nddeapi.dll
A C:\Windows\SysWOW64\ndfapi.dll
A C:\Windows\SysWOW64\ndfetw.dll
A C:\Windows\SysWOW64\NdfEventView.xml
A C:\Windows\SysWOW64\ndfhcdiscovery.dll
A C:\Windows\SysWOW64\ndiscapCfg.dll
A C:\Windows\SysWOW64\ndishc.dll
A C:\Windows\SysWOW64\ndproxystub.dll
A C:\Windows\SysWOW64\ndptsp.tsp
A C:\Windows\SysWOW64\negoexts.dll
A C:\Windows\SysWOW64\net.exe
A C:\Windows\SysWOW64\net1.exe
A C:\Windows\SysWOW64\netapi32.dll
A C:\Windows\SysWOW64\netbios.dll
A C:\Windows\SysWOW64\netbtugc.exe
A C:\Windows\SysWOW64\netcenter.dll
A C:\Windows\SysWOW64\netcfgx.dll
A C:\Windows\SysWOW64\netcorehc.dll
A C:\Windows\SysWOW64\netdiagfx.dll
A C:\Windows\SysWOW64\netevent.dll
A C:\Windows\SysWOW64\netfxperf.dll
A C:\Windows\SysWOW64\neth.dll
A C:\Windows\SysWOW64\netid.dll
A C:\Windows\SysWOW64\netiohlp.dll
A C:\Windows\SysWOW64\netiougc.exe
A C:\Windows\SysWOW64\netjoin.dll
A C:\Windows\SysWOW64\netlogon.dll
A C:\Windows\SysWOW64\netmsg.dll
A C:\Windows\SysWOW64\netplwiz.dll
A C:\Windows\SysWOW64\Netplwiz.exe
A C:\Windows\SysWOW64\netprof.dll
A C:\Windows\SysWOW64\netprofm.dll
A C:\Windows\SysWOW64\netsh.exe
A C:\Windows\SysWOW64\netshell.dll
A C:\Windows\SysWOW64\NETSTAT.EXE
A C:\Windows\SysWOW64\netutils.dll
A C:\Windows\SysWOW64\networkexplorer.dll
A C:\Windows\SysWOW64\networkitemfactory.dll
A C:\Windows\SysWOW64\networkmap.dll
A C:\Windows\SysWOW64\newdev.dll
A C:\Windows\SysWOW64\newdev.exe
A C:\Windows\SysWOW64\nlaapi.dll
A C:\Windows\SysWOW64\nlhtml.dll
A C:\Windows\SysWOW64\nlmgp.dll
A C:\Windows\SysWOW64\nlmsprep.dll
A C:\Windows\SysWOW64\nlsbres.dll
A C:\Windows\SysWOW64\NlsData0000.dll
A C:\Windows\SysWOW64\NlsData0001.dll
A C:\Windows\SysWOW64\NlsData0002.dll
A C:\Windows\SysWOW64\NlsData0003.dll
A C:\Windows\SysWOW64\NlsData0007.dll
A C:\Windows\SysWOW64\NlsData0009.dll
A C:\Windows\SysWOW64\NlsData000a.dll
A C:\Windows\SysWOW64\NlsData000c.dll
A C:\Windows\SysWOW64\NlsData000d.dll
A C:\Windows\SysWOW64\NlsData000f.dll
A C:\Windows\SysWOW64\NlsData0010.dll
A C:\Windows\SysWOW64\NlsData0011.dll
A C:\Windows\SysWOW64\NlsData0013.dll
A C:\Windows\SysWOW64\NlsData0018.dll
A C:\Windows\SysWOW64\NlsData0019.dll
A C:\Windows\SysWOW64\NlsData001a.dll
A C:\Windows\SysWOW64\NlsData001b.dll
A C:\Windows\SysWOW64\NlsData001d.dll
A C:\Windows\SysWOW64\NlsData0020.dll
A C:\Windows\SysWOW64\NlsData0021.dll
A C:\Windows\SysWOW64\NlsData0022.dll
A C:\Windows\SysWOW64\NlsData0024.dll
A C:\Windows\SysWOW64\NlsData0026.dll
A C:\Windows\SysWOW64\NlsData0027.dll
A C:\Windows\SysWOW64\NlsData002a.dll
A C:\Windows\SysWOW64\NlsData0039.dll
A C:\Windows\SysWOW64\NlsData003e.dll
A C:\Windows\SysWOW64\NlsData0045.dll
A C:\Windows\SysWOW64\NlsData0046.dll
A C:\Windows\SysWOW64\NlsData0047.dll
A C:\Windows\SysWOW64\NlsData0049.dll
A C:\Windows\SysWOW64\NlsData004a.dll
A C:\Windows\SysWOW64\NlsData004b.dll
A C:\Windows\SysWOW64\NlsData004c.dll
A C:\Windows\SysWOW64\NlsData004e.dll
A C:\Windows\SysWOW64\NlsData0414.dll
A C:\Windows\SysWOW64\NlsData0416.dll
A C:\Windows\SysWOW64\NlsData0816.dll
A C:\Windows\SysWOW64\NlsData081a.dll
A C:\Windows\SysWOW64\NlsData0c1a.dll
A C:\Windows\SysWOW64\Nlsdl.dll
A C:\Windows\SysWOW64\NlsLexicons0001.dll
A C:\Windows\SysWOW64\NlsLexicons0002.dll
A C:\Windows\SysWOW64\NlsLexicons0003.dll
A C:\Windows\SysWOW64\NlsLexicons0007.dll
A C:\Windows\SysWOW64\NlsLexicons0009.dll
A C:\Windows\SysWOW64\NlsLexicons000a.dll
A C:\Windows\SysWOW64\NlsLexicons000c.dll
A C:\Windows\SysWOW64\NlsLexicons000d.dll
A C:\Windows\SysWOW64\NlsLexicons000f.dll
A C:\Windows\SysWOW64\NlsLexicons0010.dll
A C:\Windows\SysWOW64\NlsLexicons0011.dll
A C:\Windows\SysWOW64\NlsLexicons0013.dll
A C:\Windows\SysWOW64\NlsLexicons0018.dll
A C:\Windows\SysWOW64\NlsLexicons0019.dll
A C:\Windows\SysWOW64\NlsLexicons001a.dll
A C:\Windows\SysWOW64\NlsLexicons001b.dll
A C:\Windows\SysWOW64\NlsLexicons001d.dll
A C:\Windows\SysWOW64\NlsLexicons0020.dll
A C:\Windows\SysWOW64\NlsLexicons0021.dll
A C:\Windows\SysWOW64\NlsLexicons0022.dll
A C:\Windows\SysWOW64\NlsLexicons0024.dll
A C:\Windows\SysWOW64\NlsLexicons0026.dll
A C:\Windows\SysWOW64\NlsLexicons0027.dll
A C:\Windows\SysWOW64\NlsLexicons002a.dll
A C:\Windows\SysWOW64\NlsLexicons0039.dll
A C:\Windows\SysWOW64\NlsLexicons003e.dll
A C:\Windows\SysWOW64\NlsLexicons0045.dll
A C:\Windows\SysWOW64\NlsLexicons0046.dll
A C:\Windows\SysWOW64\NlsLexicons0047.dll
A C:\Windows\SysWOW64\NlsLexicons0049.dll
A C:\Windows\SysWOW64\NlsLexicons004a.dll
A C:\Windows\SysWOW64\NlsLexicons004b.dll
A C:\Windows\SysWOW64\NlsLexicons004c.dll
A C:\Windows\SysWOW64\NlsLexicons004e.dll
A C:\Windows\SysWOW64\NlsLexicons0414.dll
A C:\Windows\SysWOW64\NlsLexicons0416.dll
A C:\Windows\SysWOW64\NlsLexicons0816.dll
A C:\Windows\SysWOW64\NlsLexicons081a.dll
A C:\Windows\SysWOW64\NlsLexicons0c1a.dll
A C:\Windows\SysWOW64\NlsModels0011.dll
A C:\Windows\SysWOW64\NOISE.CHS
A C:\Windows\SysWOW64\NOISE.CHT
A C:\Windows\SysWOW64\NOISE.DAT
A C:\Windows\SysWOW64\noise.jpn
A C:\Windows\SysWOW64\noise.kor
A C:\Windows\SysWOW64\NOISE.THA
A C:\Windows\SysWOW64\normaliz.dll
A C:\Windows\SysWOW64\notepad.exe
A C:\Windows\SysWOW64\npDeployJava1.dll
A C:\Windows\SysWOW64\npmproxy.dll
A C:\Windows\SysWOW64\nshhttp.dll
A C:\Windows\SysWOW64\nshipsec.dll
A C:\Windows\SysWOW64\nshwfp.dll
A C:\Windows\SysWOW64\nsi.dll
A C:\Windows\SysWOW64\nslookup.exe
A C:\Windows\SysWOW64\ntdll.dll
A C:\Windows\SysWOW64\ntdsapi.dll
A C:\Windows\SysWOW64\ntkrnlpa.exe
A C:\Windows\SysWOW64\ntlanman.dll
A C:\Windows\SysWOW64\ntlanui2.dll
A C:\Windows\SysWOW64\ntmarta.dll
A C:\Windows\SysWOW64\ntoskrnl.exe
A C:\Windows\SysWOW64\ntprint.dll
A C:\Windows\SysWOW64\ntprint.exe
A C:\Windows\SysWOW64\ntshrui.dll
A C:\Windows\SysWOW64\ntvdm64.dll
A C:\Windows\SysWOW64\nvapi.dll
A C:\Windows\SysWOW64\nvcompiler.dll
A C:\Windows\SysWOW64\nvcuda.dll
A C:\Windows\SysWOW64\nvcuvenc.dll
A C:\Windows\SysWOW64\nvcuvid.dll
A C:\Windows\SysWOW64\nvd3dum.dll
A C:\Windows\SysWOW64\nvoglv32.dll
A C:\Windows\SysWOW64\nvopencl.dll
A C:\Windows\SysWOW64\nvStreaming.exe
A C:\Windows\SysWOW64\nvwgf2um.dll
A C:\Windows\SysWOW64\objsel.dll
A C:\Windows\SysWOW64\occache.dll
A C:\Windows\SysWOW64\ocsetapi.dll
A C:\Windows\SysWOW64\ocsetup.exe
A C:\Windows\SysWOW64\odbc32.dll
A C:\Windows\SysWOW64\odbc32gt.dll
A C:\Windows\SysWOW64\odbcad32.exe
A C:\Windows\SysWOW64\odbcbcp.dll
A C:\Windows\SysWOW64\odbcconf.dll
A C:\Windows\SysWOW64\odbcconf.exe
A C:\Windows\SysWOW64\odbcconf.rsp
A C:\Windows\SysWOW64\odbccp32.dll
A C:\Windows\SysWOW64\odbccr32.dll
A C:\Windows\SysWOW64\odbccu32.dll
A C:\Windows\SysWOW64\odbcint.dll
A C:\Windows\SysWOW64\odbcji32.dll
A C:\Windows\SysWOW64\odbcjt32.dll
A C:\Windows\SysWOW64\odbctrac.dll
A C:\Windows\SysWOW64\oddbse32.dll
A C:\Windows\SysWOW64\odexl32.dll
A C:\Windows\SysWOW64\odfox32.dll
A C:\Windows\SysWOW64\odpdx32.dll
A C:\Windows\SysWOW64\odtext32.dll
A C:\Windows\SysWOW64\Oemdspif.dll
A C:\Windows\SysWOW64\offfilt.dll
A C:\Windows\SysWOW64\oflc.rs
A C:\Windows\SysWOW64\ogldrv.dll
A C:\Windows\SysWOW64\ole2.dll
A C:\Windows\SysWOW64\ole2disp.dll
A C:\Windows\SysWOW64\ole2nls.dll
A C:\Windows\SysWOW64\ole32.dll
A C:\Windows\SysWOW64\oleacc.dll
A C:\Windows\SysWOW64\oleacchooks.dll
A C:\Windows\SysWOW64\oleaccrc.dll
A C:\Windows\SysWOW64\oleaut32.dll
A C:\Windows\SysWOW64\olecli32.dll
A C:\Windows\SysWOW64\oledlg.dll
A C:\Windows\SysWOW64\oleprn.dll
A C:\Windows\SysWOW64\olepro32.dll
A C:\Windows\SysWOW64\oleres.dll
A C:\Windows\SysWOW64\olesvr32.dll
A C:\Windows\SysWOW64\olethk32.dll
A C:\Windows\SysWOW64\onex.dll
A C:\Windows\SysWOW64\onexui.dll
A C:\Windows\SysWOW64\OnLineIDCpl.dll
A C:\Windows\SysWOW64\OobeFldr.dll
A C:\Windows\SysWOW64\OpcServices.dll
A C:\Windows\SysWOW64\OpenAL32.dll
A C:\Windows\SysWOW64\OpenCL.dll
A C:\Windows\SysWOW64\openfiles.exe
A C:\Windows\SysWOW64\opengl32.dll
A C:\Windows\SysWOW64\OptionalFeatures.exe
A C:\Windows\SysWOW64\osbaseln.dll
A C:\Windows\SysWOW64\osk.exe
A C:\Windows\SysWOW64\osuninst.dll
A C:\Windows\SysWOW64\P2P.dll
A C:\Windows\SysWOW64\p2pcollab.dll
A C:\Windows\SysWOW64\P2PGraph.dll
A C:\Windows\SysWOW64\p2pnetsh.dll
A C:\Windows\SysWOW64\packager.dll
A C:\Windows\SysWOW64\panmap.dll
A C:\Windows\SysWOW64\PATHPING.EXE
A C:\Windows\SysWOW64\pautoenr.dll
A C:\Windows\SysWOW64\pcaui.dll
A C:\Windows\SysWOW64\pcaui.exe
A C:\Windows\SysWOW64\pcl.sep
A C:\Windows\SysWOW64\pcwum.dll
A C:\Windows\SysWOW64\pdh.dll
A C:\Windows\SysWOW64\pdhui.dll
A C:\Windows\SysWOW64\pegi-fi.rs
A C:\Windows\SysWOW64\pegi-pt.rs
A C:\Windows\SysWOW64\pegi.rs
A C:\Windows\SysWOW64\pegibbfc.rs
A C:\Windows\SysWOW64\PerfCenterCPL.dll
A C:\Windows\SysWOW64\PerfCenterCpl.ico
A C:\Windows\SysWOW64\perfctrs.dll
A C:\Windows\SysWOW64\perfdisk.dll
A C:\Windows\SysWOW64\perfhost.exe
A C:\Windows\SysWOW64\perfmon.exe
A C:\Windows\SysWOW64\perfmon.msc
A C:\Windows\SysWOW64\perfnet.dll
A C:\Windows\SysWOW64\perfos.dll
A C:\Windows\SysWOW64\perfproc.dll
A C:\Windows\SysWOW64\PerfStringBackup.INI
A C:\Windows\SysWOW64\perfts.dll
A C:\Windows\SysWOW64\phon.ime
A C:\Windows\SysWOW64\PhotoMetadataHandler.dll
A C:\Windows\SysWOW64\PhotoScreensaver.scr
A C:\Windows\SysWOW64\photowiz.dll
A C:\Windows\SysWOW64\pid.dll
A C:\Windows\SysWOW64\pidgenx.dll
A C:\Windows\SysWOW64\pifmgr.dll
A C:\Windows\SysWOW64\PING.EXE
A C:\Windows\SysWOW64\pintlgnt.ime
A C:\Windows\SysWOW64\PkgMgr.exe
A C:\Windows\SysWOW64\pku2u.dll
A C:\Windows\SysWOW64\pla.dll
A C:\Windows\SysWOW64\PlaySndSrv.dll
A C:\Windows\SysWOW64\pngfilt.dll
A C:\Windows\SysWOW64\pnidui.dll
A C:\Windows\SysWOW64\pnpsetup.dll
A C:\Windows\SysWOW64\pnrpnsp.dll
A C:\Windows\SysWOW64\polstore.dll
A C:\Windows\SysWOW64\poqexec.exe
A C:\Windows\SysWOW64\PortableDeviceApi.dll
A C:\Windows\SysWOW64\PortableDeviceClassExtension.dll
A C:\Windows\SysWOW64\PortableDeviceConnectApi.dll
A C:\Windows\SysWOW64\PortableDeviceStatus.dll
A C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
A C:\Windows\SysWOW64\PortableDeviceTypes.dll
A C:\Windows\SysWOW64\PortableDeviceWiaCompat.dll
A C:\Windows\SysWOW64\PortableDeviceWMDRM.dll
A C:\Windows\SysWOW64\pots.dll
A C:\Windows\SysWOW64\powercfg.cpl
A C:\Windows\SysWOW64\powercfg.exe
A C:\Windows\SysWOW64\powercpl.dll
A C:\Windows\SysWOW64\powrprof.dll
A C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
A C:\Windows\SysWOW64\PresentationHost.exe
A C:\Windows\SysWOW64\PresentationHostProxy.dll
A C:\Windows\SysWOW64\PresentationNative_v0300.dll
A C:\Windows\SysWOW64\prevhost.exe
A C:\Windows\SysWOW64\prflbmsg.dll
A C:\Windows\SysWOW64\print.exe
A C:\Windows\SysWOW64\printui.dll
A C:\Windows\SysWOW64\printui.exe
A C:\Windows\SysWOW64\prncache.dll
A C:\Windows\SysWOW64\prnfldr.dll
A C:\Windows\SysWOW64\prnntfy.dll
A C:\Windows\SysWOW64\prntvpt.dll
A C:\Windows\SysWOW64\profapi.dll
A C:\Windows\SysWOW64\propsys.dll
A C:\Windows\SysWOW64\proquota.exe
A C:\Windows\SysWOW64\provsvc.dll
A C:\Windows\SysWOW64\provthrd.dll
A C:\Windows\SysWOW64\psapi.dll
A C:\Windows\SysWOW64\psbase.dll
A C:\Windows\SysWOW64\pscript.sep
A C:\Windows\SysWOW64\PSHED.DLL
A C:\Windows\SysWOW64\psisdecd.dll
A C:\Windows\SysWOW64\psisrndr.ax
A C:\Windows\SysWOW64\psr.exe
A C:\Windows\SysWOW64\pstorec.dll
A C:\Windows\SysWOW64\pstorsvc.dll
A C:\Windows\SysWOW64\puiapi.dll
A C:\Windows\SysWOW64\puiobj.dll
A C:\Windows\SysWOW64\pwrshplugin.dll
A C:\Windows\SysWOW64\QAGENT.DLL
A C:\Windows\SysWOW64\qasf.dll
A C:\Windows\SysWOW64\qcap.dll
A C:\Windows\SysWOW64\QCLIPROV.DLL
A C:\Windows\SysWOW64\qdv.dll
A C:\Windows\SysWOW64\qdvd.dll
A C:\Windows\SysWOW64\qedit.dll
A C:\Windows\SysWOW64\qedwipes.dll
A C:\Windows\SysWOW64\qintlgnt.ime
A C:\Windows\SysWOW64\qmgrprxy.dll
A C:\Windows\SysWOW64\QSHVHOST.DLL
A C:\Windows\SysWOW64\QSVRMGMT.DLL
A C:\Windows\SysWOW64\quartz.dll
A C:\Windows\SysWOW64\Query.dll
A C:\Windows\SysWOW64\quick.ime
A C:\Windows\SysWOW64\QUTIL.DLL
A C:\Windows\SysWOW64\qwave.dll
A C:\Windows\SysWOW64\RacEngn.dll
A C:\Windows\SysWOW64\racpldlg.dll
A C:\Windows\SysWOW64\RacRules.xml
A C:\Windows\SysWOW64\radardt.dll
A C:\Windows\SysWOW64\radarrs.dll
A C:\Windows\SysWOW64\rasadhlp.dll
A C:\Windows\SysWOW64\rasapi32.dll
A C:\Windows\SysWOW64\rasautou.exe
A C:\Windows\SysWOW64\rascfg.dll
A C:\Windows\SysWOW64\raschap.dll
A C:\Windows\SysWOW64\rasctrnm.h
A C:\Windows\SysWOW64\rasctrs.dll
A C:\Windows\SysWOW64\rasdiag.dll
A C:\Windows\SysWOW64\rasdial.exe
A C:\Windows\SysWOW64\rasdlg.dll
A C:\Windows\SysWOW64\raserver.exe
A C:\Windows\SysWOW64\rasgcw.dll
A C:\Windows\SysWOW64\rasman.dll
A C:\Windows\SysWOW64\RASMM.dll
A C:\Windows\SysWOW64\rasmontr.dll
A C:\Windows\SysWOW64\rasmxs.dll
A C:\Windows\SysWOW64\rasphone.exe
A C:\Windows\SysWOW64\rasplap.dll
A C:\Windows\SysWOW64\rasppp.dll
A C:\Windows\SysWOW64\rasser.dll
A C:\Windows\SysWOW64\rastapi.dll
A C:\Windows\SysWOW64\rastls.dll
A C:\Windows\SysWOW64\RDOCURS.DLL
A C:\Windows\SysWOW64\rdpcore.dll
A C:\Windows\SysWOW64\rdpd3d.dll
A C:\Windows\SysWOW64\rdpencom.dll
A C:\Windows\SysWOW64\rdprefdrvapi.dll
A C:\Windows\SysWOW64\rdrleakdiag.exe
A C:\Windows\SysWOW64\ReAgent.dll
A C:\Windows\SysWOW64\ReAgentc.exe
A C:\Windows\SysWOW64\recover.exe
A C:\Windows\SysWOW64\reg.exe
A C:\Windows\SysWOW64\regapi.dll
A C:\Windows\SysWOW64\RegCtrl.dll
A C:\Windows\SysWOW64\regedit.exe
A C:\Windows\SysWOW64\regedt32.exe
A C:\Windows\SysWOW64\regini.exe
A C:\Windows\SysWOW64\RegisterIEPKEYs.exe
A C:\Windows\SysWOW64\regsvr32.exe
A C:\Windows\SysWOW64\rekeywiz.exe
A C:\Windows\SysWOW64\relog.exe
A C:\Windows\SysWOW64\remotepg.dll
A C:\Windows\SysWOW64\remotesp.tsp
A C:\Windows\SysWOW64\rendezvousSession.tlb
A C:\Windows\SysWOW64\replace.exe
A C:\Windows\SysWOW64\RESAMPLEDMO.DLL
A C:\Windows\SysWOW64\resmon.exe
A C:\Windows\SysWOW64\RestartManager.mof
A C:\Windows\SysWOW64\RestartManagerUninstall.mof
A C:\Windows\SysWOW64\resutils.dll
A C:\Windows\SysWOW64\rgb9rast.dll
A C:\Windows\SysWOW64\Ribbons.scr
A C:\Windows\SysWOW64\riched20.dll
A C:\Windows\SysWOW64\riched32.dll
A C:\Windows\SysWOW64\RMActivate.exe
A C:\Windows\SysWOW64\RMActivate_isv.exe
A C:\Windows\SysWOW64\RMActivate_ssp.exe
A C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
A C:\Windows\SysWOW64\RmClient.exe
A C:\Windows\SysWOW64\rnr20.dll
A C:\Windows\SysWOW64\Robocopy.exe
A C:\Windows\SysWOW64\ROUTE.EXE
A C:\Windows\SysWOW64\RpcDiag.dll
A C:\Windows\SysWOW64\rpchttp.dll
A C:\Windows\SysWOW64\RPCNDFP.dll
A C:\Windows\SysWOW64\RpcNs4.dll
A C:\Windows\SysWOW64\rpcnsh.dll
A C:\Windows\SysWOW64\RpcPing.exe
A C:\Windows\SysWOW64\rpcrt4.dll
A C:\Windows\SysWOW64\RpcRtRemote.dll
A C:\Windows\SysWOW64\rrinstaller.exe
A C:\Windows\SysWOW64\rsaenh.dll
A C:\Windows\SysWOW64\rshx32.dll
A C:\Windows\SysWOW64\RstrtMgr.dll
A C:\Windows\SysWOW64\rtffilt.dll
A C:\Windows\SysWOW64\rtm.dll
A C:\Windows\SysWOW64\rtutils.dll
A C:\Windows\SysWOW64\runas.exe
A C:\Windows\SysWOW64\rundll32.exe
A C:\Windows\SysWOW64\RunLegacyCPLElevated.exe
A C:\Windows\SysWOW64\runonce.exe
A C:\Windows\SysWOW64\samcli.dll
A C:\Windows\SysWOW64\samlib.dll
A C:\Windows\SysWOW64\SampleRes.dll
A C:\Windows\SysWOW64\sas.dll
A C:\Windows\SysWOW64\sbe.dll
A C:\Windows\SysWOW64\sbeio.dll
A C:\Windows\SysWOW64\sberes.dll
A C:\Windows\SysWOW64\sbunattend.exe
A C:\Windows\SysWOW64\sc.exe
A C:\Windows\SysWOW64\scansetting.dll
A C:\Windows\SysWOW64\SCardDlg.dll
A C:\Windows\SysWOW64\scecli.dll
A C:\Windows\SysWOW64\scesrv.dll
A C:\Windows\SysWOW64\schannel.dll
A C:\Windows\SysWOW64\schedcli.dll
A C:\Windows\SysWOW64\schtasks.exe
A C:\Windows\SysWOW64\scksp.dll
A C:\Windows\SysWOW64\scripto.dll
A C:\Windows\SysWOW64\scrnsave.scr
A C:\Windows\SysWOW64\scrobj.dll
A C:\Windows\SysWOW64\scrrun.dll
A C:\Windows\SysWOW64\sdbinst.exe
A C:\Windows\SysWOW64\sdchange.exe
A C:\Windows\SysWOW64\sdiageng.dll
A C:\Windows\SysWOW64\sdiagnhost.exe
A C:\Windows\SysWOW64\sdiagprv.dll
A C:\Windows\SysWOW64\sdohlp.dll
A C:\Windows\SysWOW64\SearchFilterHost.exe
A C:\Windows\SysWOW64\SearchFolder.dll
A C:\Windows\SysWOW64\SearchIndexer.exe
A C:\Windows\SysWOW64\SearchProtocolHost.exe
A C:\Windows\SysWOW64\SecEdit.exe
A C:\Windows\SysWOW64\sechost.dll
A C:\Windows\SysWOW64\secinit.exe
A C:\Windows\SysWOW64\secproc.dll
A C:\Windows\SysWOW64\secproc_isv.dll
A C:\Windows\SysWOW64\secproc_ssp.dll
A C:\Windows\SysWOW64\secproc_ssp_isv.dll
A C:\Windows\SysWOW64\secur32.dll
A C:\Windows\SysWOW64\security.dll
A C:\Windows\SysWOW64\sendmail.dll
A C:\Windows\SysWOW64\Sens.dll
A C:\Windows\SysWOW64\SensApi.dll
A C:\Windows\SysWOW64\SensorsApi.dll
A C:\Windows\SysWOW64\SensorsCpl.dll
A C:\Windows\SysWOW64\serialui.dll
A C:\Windows\SysWOW64\services.msc
A C:\Windows\SysWOW64\serwvdrv.dll
A C:\Windows\SysWOW64\SessEnv.dll
A C:\Windows\SysWOW64\sethc.exe
A C:\Windows\SysWOW64\SetIEInstalledDate.exe
A C:\Windows\SysWOW64\setup16.exe
A C:\Windows\SysWOW64\setupapi.dll
A C:\Windows\SysWOW64\setupcln.dll
A C:\Windows\SysWOW64\setupSNK.exe
A C:\Windows\SysWOW64\setupugc.exe
A C:\Windows\SysWOW64\setx.exe
A C:\Windows\SysWOW64\sfc.dll
A C:\Windows\SysWOW64\sfc.exe
A C:\Windows\SysWOW64\sfc_os.dll
A C:\Windows\SysWOW64\shacct.dll
A C:\Windows\SysWOW64\shdocvw.dll
A C:\Windows\SysWOW64\shell32.dll
A C:\Windows\SysWOW64\shellstyle.dll
A C:\Windows\SysWOW64\shfolder.dll
A C:\Windows\SysWOW64\shgina.dll
A C:\Windows\SysWOW64\ShiftJIS.uce
A C:\Windows\SysWOW64\shimeng.dll
A C:\Windows\SysWOW64\shimgvw.dll
A C:\Windows\SysWOW64\shlwapi.dll
A C:\Windows\SysWOW64\shpafact.dll
A C:\Windows\SysWOW64\shrpubw.exe
A C:\Windows\SysWOW64\shsetup.dll
A C:\Windows\SysWOW64\shsvcs.dll
A C:\Windows\SysWOW64\shunimpl.dll
A C:\Windows\SysWOW64\shutdown.exe
A C:\Windows\SysWOW64\shwebsvc.dll
A C:\Windows\SysWOW64\signdrv.dll
A C:\Windows\SysWOW64\simpdata.tlb
A C:\Windows\SysWOW64\sirenacm.dll
A C:\Windows\SysWOW64\sisbkup.dll
A C:\Windows\SysWOW64\slc.dll
A C:\Windows\SysWOW64\slcext.dll
A C:\Windows\SysWOW64\slmgr.vbs
A C:\Windows\SysWOW64\slwga.dll
A C:\Windows\SysWOW64\Smart Bulb Saver.scr
A C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
A C:\Windows\SysWOW64\SmartDocCameraIM.dll
A C:\Windows\SysWOW64\SMBHelperClass.dll
A C:\Windows\SysWOW64\SndVol.exe
A C:\Windows\SysWOW64\SndVolSSO.dll
A C:\Windows\SysWOW64\snmpapi.dll
A C:\Windows\SysWOW64\softkbd.dll
A C:\Windows\SysWOW64\softpub.dll
A C:\Windows\SysWOW64\sort.exe
A C:\Windows\SysWOW64\SortServer2003Compat.dll
A C:\Windows\SysWOW64\SortWindows6Compat.dll
A C:\Windows\SysWOW64\spbcd.dll
A C:\Windows\SysWOW64\spfileq.dll
A C:\Windows\SysWOW64\SPInf.dll
A C:\Windows\SysWOW64\spnet.dll
A C:\Windows\SysWOW64\spopk.dll
A C:\Windows\SysWOW64\spp.dll
A C:\Windows\SysWOW64\sppc.dll
A C:\Windows\SysWOW64\sppcc.dll
A C:\Windows\SysWOW64\sppcext.dll
A C:\Windows\SysWOW64\sppcomapi.dll
A C:\Windows\SysWOW64\sppcommdlg.dll
A C:\Windows\SysWOW64\sppinst.dll
A C:\Windows\SysWOW64\sppwmi.dll
A C:\Windows\SysWOW64\spwinsat.dll
A C:\Windows\SysWOW64\spwizeng.dll
A C:\Windows\SysWOW64\spwizimg.dll
A C:\Windows\SysWOW64\spwizres.dll
A C:\Windows\SysWOW64\spwmp.dll
A C:\Windows\SysWOW64\sqlceoledb30.dll
A C:\Windows\SysWOW64\sqlceqp30.dll
A C:\Windows\SysWOW64\sqlcese30.dll
A C:\Windows\SysWOW64\sqlsrv32.dll
A C:\Windows\SysWOW64\sqlsrv32.rll
A C:\Windows\SysWOW64\sqlunirl.dll
A C:\Windows\SysWOW64\sqlwid.dll
A C:\Windows\SysWOW64\sqlwoa.dll
A C:\Windows\SysWOW64\sqmapi.dll
A C:\Windows\SysWOW64\srchadmin.dll
A C:\Windows\SysWOW64\srclient.dll
A C:\Windows\SysWOW64\srdelayed.exe
A C:\Windows\SysWOW64\srhelper.dll
A C:\Windows\SysWOW64\srvcli.dll
A C:\Windows\SysWOW64\sscore.dll
A C:\Windows\SysWOW64\ssdpapi.dll
A C:\Windows\SysWOW64\sspicli.dll
A C:\Windows\SysWOW64\SSShim.dll
A C:\Windows\SysWOW64\ssText3d.scr
A C:\Windows\SysWOW64\stclient.dll
A C:\Windows\SysWOW64\stdole2.tlb
A C:\Windows\SysWOW64\stdole32.tlb
A C:\Windows\SysWOW64\sti.dll
A C:\Windows\SysWOW64\stobject.dll
A C:\Windows\SysWOW64\storage.dll
A C:\Windows\SysWOW64\StorageContextHandler.dll
A C:\Windows\SysWOW64\Storprop.dll
A C:\Windows\SysWOW64\StructuredQuery.dll
A C:\Windows\SysWOW64\SubRange.uce
A C:\Windows\SysWOW64\subst.exe
A C:\Windows\SysWOW64\sud.dll
A C:\Windows\SysWOW64\svchost.exe
A C:\Windows\SysWOW64\sxproxy.dll
A C:\Windows\SysWOW64\sxs.dll
A C:\Windows\SysWOW64\sxshared.dll
A C:\Windows\SysWOW64\sxsstore.dll
A C:\Windows\SysWOW64\sxstrace.exe
A C:\Windows\SysWOW64\SyncCenter.dll
A C:\Windows\SysWOW64\synceng.dll
A C:\Windows\SysWOW64\SyncHost.exe
A C:\Windows\SysWOW64\SyncHostps.dll
A C:\Windows\SysWOW64\SyncInfrastructure.dll
A C:\Windows\SysWOW64\SyncInfrastructureps.dll
A C:\Windows\SysWOW64\Syncreg.dll
A C:\Windows\SysWOW64\syncui.dll
A C:\Windows\SysWOW64\sysdm.cpl
A C:\Windows\SysWOW64\syskey.exe
A C:\Windows\SysWOW64\sysmon.ocx
A C:\Windows\SysWOW64\sysprint.sep
A C:\Windows\SysWOW64\sysprtj.sep
A C:\Windows\SysWOW64\syssetup.dll
A C:\Windows\SysWOW64\systemcpl.dll
A C:\Windows\SysWOW64\systeminfo.exe
A C:\Windows\SysWOW64\SystemPropertiesAdvanced.exe
A C:\Windows\SysWOW64\SystemPropertiesComputerName.exe
A C:\Windows\SysWOW64\SystemPropertiesDataExecutionPrevention.exe
A C:\Windows\SysWOW64\SystemPropertiesHardware.exe
A C:\Windows\SysWOW64\SystemPropertiesPerformance.exe
A C:\Windows\SysWOW64\SystemPropertiesProtection.exe
A C:\Windows\SysWOW64\SystemPropertiesRemote.exe
A C:\Windows\SysWOW64\systray.exe
A C:\Windows\SysWOW64\t2embed.dll
A C:\Windows\SysWOW64\takeown.exe
A C:\Windows\SysWOW64\tapi3.dll
A C:\Windows\SysWOW64\tapi32.dll
A C:\Windows\SysWOW64\TapiMigPlugin.dll
A C:\Windows\SysWOW64\tapiperf.dll
A C:\Windows\SysWOW64\tapisrv.dll
A C:\Windows\SysWOW64\TapiSysprep.dll
A C:\Windows\SysWOW64\tapiui.dll
A C:\Windows\SysWOW64\TapiUnattend.exe
A C:\Windows\SysWOW64\taskcomp.dll
A C:\Windows\SysWOW64\taskeng.exe
A C:\Windows\SysWOW64\taskkill.exe
A C:\Windows\SysWOW64\tasklist.exe
A C:\Windows\SysWOW64\taskmgr.exe
A C:\Windows\SysWOW64\taskschd.dll
A C:\Windows\SysWOW64\taskschd.msc
A C:\Windows\SysWOW64\TaskSchdPS.dll
A C:\Windows\SysWOW64\tbs.dll
A C:\Windows\SysWOW64\tcmsetup.exe
A C:\Windows\SysWOW64\tcpbidi.xml
A C:\Windows\SysWOW64\tcpipcfg.dll
A C:\Windows\SysWOW64\tcpmonui.dll
A C:\Windows\SysWOW64\TCPSVCS.EXE
A C:\Windows\SysWOW64\tdc.ocx
A C:\Windows\SysWOW64\tdh.dll
A C:\Windows\SysWOW64\telephon.cpl
A C:\Windows\SysWOW64\termmgr.dll
A C:\Windows\SysWOW64\thawbrkr.dll
A C:\Windows\SysWOW64\themecpl.dll
A C:\Windows\SysWOW64\themeui.dll
A C:\Windows\SysWOW64\thumbcache.dll
A C:\Windows\SysWOW64\ticrf.rat
A C:\Windows\SysWOW64\timedate.cpl
A C:\Windows\SysWOW64\TimeDateMUICallback.dll
A C:\Windows\SysWOW64\timeout.exe
A C:\Windows\SysWOW64\tintlgnt.ime
A C:\Windows\SysWOW64\tlscsp.dll
A C:\Windows\SysWOW64\tpm.msc
A C:\Windows\SysWOW64\tpmcompc.dll
A C:\Windows\SysWOW64\TpmInit.exe
A C:\Windows\SysWOW64\tquery.dll
A C:\Windows\SysWOW64\tracerpt.exe
A C:\Windows\SysWOW64\TRACERT.EXE
A C:\Windows\SysWOW64\traffic.dll
A C:\Windows\SysWOW64\TRAPI.dll
A C:\Windows\SysWOW64\tree.com
A C:\Windows\SysWOW64\tsbyuv.dll
A C:\Windows\SysWOW64\tsccvid.dll
A C:\Windows\SysWOW64\TSChannel.dll
A C:\Windows\SysWOW64\tsgqec.dll
A C:\Windows\SysWOW64\tsmf.dll
A C:\Windows\SysWOW64\TSpkg.dll
A C:\Windows\SysWOW64\TSTheme.exe
A C:\Windows\SysWOW64\TSWorkspace.dll
A C:\Windows\SysWOW64\TsWpfWrp.exe
A C:\Windows\SysWOW64\tvratings.dll
A C:\Windows\SysWOW64\twext.dll
A C:\Windows\SysWOW64\txflog.dll
A C:\Windows\SysWOW64\txfw32.dll
A C:\Windows\SysWOW64\typelib.dll
A C:\Windows\SysWOW64\typeperf.exe
A C:\Windows\SysWOW64\tzres.dll
A C:\Windows\SysWOW64\tzutil.exe
A C:\Windows\SysWOW64\ubpm.dll
A C:\Windows\SysWOW64\ucmhc.dll
A C:\Windows\SysWOW64\udhisapi.dll
A C:\Windows\SysWOW64\uexfat.dll
A C:\Windows\SysWOW64\ufat.dll
A C:\Windows\SysWOW64\UIAnimation.dll
A C:\Windows\SysWOW64\UIAutomationCore.dll
A C:\Windows\SysWOW64\uicom.dll
A C:\Windows\SysWOW64\UIRibbon.dll
A C:\Windows\SysWOW64\UIRibbonRes.dll
A C:\Windows\SysWOW64\ulib.dll
A C:\Windows\SysWOW64\umdmxfrm.dll
A C:\Windows\SysWOW64\unimdm.tsp
A C:\Windows\SysWOW64\unimdmat.dll
A C:\Windows\SysWOW64\uniplat.dll
A C:\Windows\SysWOW64\unlodctr.exe
A C:\Windows\SysWOW64\unregmp2.exe
A C:\Windows\SysWOW64\untfs.dll
A C:\Windows\SysWOW64\upnp.dll
A C:\Windows\SysWOW64\upnpcont.exe
A C:\Windows\SysWOW64\upnphost.dll
A C:\Windows\SysWOW64\ureg.dll
A C:\Windows\SysWOW64\url.dll
A C:\Windows\SysWOW64\urlmon.dll
A C:\Windows\SysWOW64\usbceip.dll
A C:\Windows\SysWOW64\usbperf.dll
A C:\Windows\SysWOW64\usbui.dll
A C:\Windows\SysWOW64\user.exe
A C:\Windows\SysWOW64\user32.dll
A C:\Windows\SysWOW64\UserAccountControlSettings.dll
A C:\Windows\SysWOW64\UserAccountControlSettings.exe
A C:\Windows\SysWOW64\usercpl.dll
A C:\Windows\SysWOW64\userenv.dll
A C:\Windows\SysWOW64\userinit.exe
A C:\Windows\SysWOW64\usk.rs
A C:\Windows\SysWOW64\usp10.dll
A C:\Windows\SysWOW64\utildll.dll
A C:\Windows\SysWOW64\Utilman.exe
A C:\Windows\SysWOW64\uudf.dll
A C:\Windows\SysWOW64\UXInit.dll
A C:\Windows\SysWOW64\uxlib.dll
A C:\Windows\SysWOW64\uxlibres.dll
A C:\Windows\SysWOW64\uxtheme.dll
A C:\Windows\SysWOW64\VAN.dll
A C:\Windows\SysWOW64\Vault.dll
A C:\Windows\SysWOW64\vaultcli.dll
A C:\Windows\SysWOW64\VBAEN32.OLB
A C:\Windows\SysWOW64\VBAEND32.OLB
A C:\Windows\SysWOW64\vbajet32.dll
A C:\Windows\SysWOW64\VBICodec.ax
A C:\Windows\SysWOW64\vbisurf.ax
A C:\Windows\SysWOW64\vbscript.dll
A C:\Windows\SysWOW64\vcomp100.dll
A C:\Windows\SysWOW64\vdmdbg.dll
A C:\Windows\SysWOW64\vdsbas.dll
A C:\Windows\SysWOW64\vdsdyn.dll
A C:\Windows\SysWOW64\vdsvd.dll
A C:\Windows\SysWOW64\vds_ps.dll
A C:\Windows\SysWOW64\VEN2232.OLB
A C:\Windows\SysWOW64\verclsid.exe
A C:\Windows\SysWOW64\verifier.dll
A C:\Windows\SysWOW64\verifier.exe
A C:\Windows\SysWOW64\version.dll
A C:\Windows\SysWOW64\vfpodbc.dll
A C:\Windows\SysWOW64\vfwwdm32.dll
A C:\Windows\SysWOW64\vidcap.ax
A C:\Windows\SysWOW64\VIDRESZR.DLL
A C:\Windows\SysWOW64\virtdisk.dll
A C:\Windows\SysWOW64\vpnikeapi.dll
A C:\Windows\SysWOW64\VSFLEX3.OCX
A C:\Windows\SysWOW64\vssadmin.exe
A C:\Windows\SysWOW64\vssapi.dll
A C:\Windows\SysWOW64\vsstrace.dll
A C:\Windows\SysWOW64\vss_ps.dll
A C:\Windows\SysWOW64\w32tm.exe
A C:\Windows\SysWOW64\w32topl.dll
A C:\Windows\SysWOW64\WABSyncProvider.dll
A C:\Windows\SysWOW64\waitfor.exe
A C:\Windows\SysWOW64\wavemsp.dll
A C:\Windows\SysWOW64\wbemcomn.dll
A C:\Windows\SysWOW64\WcnApi.dll
A C:\Windows\SysWOW64\wcncsvc.dll
A C:\Windows\SysWOW64\WcnEapAuthProxy.dll
A C:\Windows\SysWOW64\WcnEapPeerProxy.dll
A C:\Windows\SysWOW64\wcnwiz.dll
A C:\Windows\SysWOW64\WcsPlugInService.dll
A C:\Windows\SysWOW64\wdc.dll
A C:\Windows\SysWOW64\wdi.dll
A C:\Windows\SysWOW64\wdigest.dll
A C:\Windows\SysWOW64\wdmaud.drv
A C:\Windows\SysWOW64\wdscore.dll
A C:\Windows\SysWOW64\WEB.rs
A C:\Windows\SysWOW64\webcheck.dll
A C:\Windows\SysWOW64\WebClnt.dll
A C:\Windows\SysWOW64\webio.dll
A C:\Windows\SysWOW64\webservices.dll
A C:\Windows\SysWOW64\wecapi.dll
A C:\Windows\SysWOW64\wecutil.exe
A C:\Windows\SysWOW64\wer.dll
A C:\Windows\SysWOW64\werdiagcontroller.dll
A C:\Windows\SysWOW64\WerFault.exe
A C:\Windows\SysWOW64\WerFaultSecure.exe
A C:\Windows\SysWOW64\wermgr.exe
A C:\Windows\SysWOW64\werui.dll
A C:\Windows\SysWOW64\wevtapi.dll
A C:\Windows\SysWOW64\wevtfwd.dll
A C:\Windows\SysWOW64\wevtutil.exe
A C:\Windows\SysWOW64\wextract.exe
A C:\Windows\SysWOW64\WF.msc
A C:\Windows\SysWOW64\wfapigp.dll
A C:\Windows\SysWOW64\WfHC.dll
A C:\Windows\SysWOW64\whealogr.dll
A C:\Windows\SysWOW64\where.exe
A C:\Windows\SysWOW64\whhelper.dll
A C:\Windows\SysWOW64\whoami.exe
A C:\Windows\SysWOW64\wiaacmgr.exe
A C:\Windows\SysWOW64\wiaaut.dll
A C:\Windows\SysWOW64\wiadefui.dll
A C:\Windows\SysWOW64\wiadss.dll
A C:\Windows\SysWOW64\WiaExtensionHost64.dll
A C:\Windows\SysWOW64\wiascanprofiles.dll
A C:\Windows\SysWOW64\wiashext.dll
A C:\Windows\SysWOW64\wiatrace.dll
A C:\Windows\SysWOW64\wiavideo.dll
A C:\Windows\SysWOW64\wimgapi.dll
A C:\Windows\SysWOW64\wimserv.exe
A C:\Windows\SysWOW64\win32spl.dll
A C:\Windows\SysWOW64\winbio.dll
A C:\Windows\SysWOW64\winbrand.dll
A C:\Windows\SysWOW64\wincredprovider.dll
A C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
A C:\Windows\SysWOW64\WindowsCodecs.dll
A C:\Windows\SysWOW64\WindowsCodecsExt.dll
A C:\Windows\SysWOW64\WinFax.dll
A C:\Windows\SysWOW64\winhttp.dll
A C:\Windows\SysWOW64\wininet.dll
A C:\Windows\SysWOW64\wininit.exe
A C:\Windows\SysWOW64\winipsec.dll
A C:\Windows\SysWOW64\winmm.dll
A C:\Windows\SysWOW64\winnsi.dll
A C:\Windows\SysWOW64\winrm.cmd
A C:\Windows\SysWOW64\winrm.vbs
A C:\Windows\SysWOW64\winrnr.dll
A C:\Windows\SysWOW64\winrs.exe
A C:\Windows\SysWOW64\winrscmd.dll
A C:\Windows\SysWOW64\winrshost.exe
A C:\Windows\SysWOW64\winrsmgr.dll
A C:\Windows\SysWOW64\winrssrv.dll
A C:\Windows\SysWOW64\WinSATAPI.dll
A C:\Windows\SysWOW64\WinSCard.dll
A C:\Windows\SysWOW64\winshfhc.dll
A C:\Windows\SysWOW64\winsockhc.dll
A C:\Windows\SysWOW64\winspool.drv
A C:\Windows\SysWOW64\WINSRPC.DLL
A C:\Windows\SysWOW64\winsta.dll
A C:\Windows\SysWOW64\WinSync.dll
A C:\Windows\SysWOW64\WinSyncMetastore.dll
A C:\Windows\SysWOW64\WinSyncProviders.dll
A C:\Windows\SysWOW64\wintrust.dll
A C:\Windows\SysWOW64\winusb.dll
A C:\Windows\SysWOW64\winver.exe
A C:\Windows\SysWOW64\wkscli.dll
A C:\Windows\SysWOW64\wksprtPS.dll
A C:\Windows\SysWOW64\wlanapi.dll
A C:\Windows\SysWOW64\wlancfg.dll
A C:\Windows\SysWOW64\WLanConn.dll
A C:\Windows\SysWOW64\wlandlg.dll
A C:\Windows\SysWOW64\wlanext.exe
A C:\Windows\SysWOW64\wlangpui.dll
A C:\Windows\SysWOW64\wlanhlp.dll
A C:\Windows\SysWOW64\wlaninst.dll
A C:\Windows\SysWOW64\WlanMM.dll
A C:\Windows\SysWOW64\wlanmsm.dll
A C:\Windows\SysWOW64\wlanpref.dll
A C:\Windows\SysWOW64\wlansec.dll
A C:\Windows\SysWOW64\wlanui.dll
A C:\Windows\SysWOW64\wlanutil.dll
A C:\Windows\SysWOW64\Wldap32.dll
A SHR C:\Windows\SysWOW64\Wldap32V.dll
A C:\Windows\SysWOW64\wlgpclnt.dll
A C:\Windows\SysWOW64\WlS0WndH.dll
A C:\Windows\SysWOW64\WMADMOD.DLL
A C:\Windows\SysWOW64\WMADMOE.DLL
A C:\Windows\SysWOW64\WMASF.DLL
A C:\Windows\SysWOW64\wmcodecdspps.dll
A C:\Windows\SysWOW64\wmdmlog.dll
A C:\Windows\SysWOW64\wmdmps.dll
A C:\Windows\SysWOW64\wmdrmdev.dll
A C:\Windows\SysWOW64\wmdrmnet.dll
A C:\Windows\SysWOW64\wmdrmsdk.dll
A C:\Windows\SysWOW64\wmerror.dll
A C:\Windows\SysWOW64\wmi.dll
A C:\Windows\SysWOW64\wmidx.dll
A C:\Windows\SysWOW64\wmiprop.dll
A C:\Windows\SysWOW64\WMNetMgr.dll
A C:\Windows\SysWOW64\wmp.dll
A C:\Windows\SysWOW64\wmpcm.dll
A C:\Windows\SysWOW64\WmpDui.dll
A C:\Windows\SysWOW64\wmpdxm.dll
A C:\Windows\SysWOW64\wmpeffects.dll
A C:\Windows\SysWOW64\WMPEncEn.dll
A C:\Windows\SysWOW64\WMPhoto.dll
A C:\Windows\SysWOW64\wmploc.DLL
A C:\Windows\SysWOW64\wmpmde.dll
A C:\Windows\SysWOW64\wmpps.dll
A C:\Windows\SysWOW64\wmpshell.dll
A C:\Windows\SysWOW64\wmpsrcwp.dll
A C:\Windows\SysWOW64\wmsgapi.dll
A C:\Windows\SysWOW64\WMSPDMOD.DLL
A C:\Windows\SysWOW64\WMSPDMOE.DLL
A C:\Windows\SysWOW64\WMVCORE.DLL
A C:\Windows\SysWOW64\WMVDECOD.DLL
A C:\Windows\SysWOW64\wmvdspa.dll
A C:\Windows\SysWOW64\WMVENCOD.DLL
A C:\Windows\SysWOW64\WMVSDECD.DLL
A C:\Windows\SysWOW64\WMVSENCD.DLL
A C:\Windows\SysWOW64\WMVXENCD.DLL
A C:\Windows\SysWOW64\wow32.dll
A C:\Windows\SysWOW64\wowreg32.exe
A C:\Windows\SysWOW64\Wpc.dll
A C:\Windows\SysWOW64\wpcao.dll
A C:\Windows\SysWOW64\wpcsvc.dll
A C:\Windows\SysWOW64\wpdshext.dll
A C:\Windows\SysWOW64\WPDShextAutoplay.exe
A C:\Windows\SysWOW64\WPDShServiceObj.dll
A C:\Windows\SysWOW64\WPDSp.dll
A C:\Windows\SysWOW64\wpdwcn.dll
A C:\Windows\SysWOW64\wrap_oal.dll
A C:\Windows\SysWOW64\write.exe
A C:\Windows\SysWOW64\ws2help.dll
A C:\Windows\SysWOW64\ws2_32.dll
A C:\Windows\SysWOW64\wscapi.dll
A C:\Windows\SysWOW64\wscinterop.dll
A C:\Windows\SysWOW64\wscisvif.dll
A C:\Windows\SysWOW64\wscmisetup.dll
A C:\Windows\SysWOW64\wscproxystub.dll
A C:\Windows\SysWOW64\wscript.exe
A C:\Windows\SysWOW64\wscui.cpl
A C:\Windows\SysWOW64\WSDApi.dll
A C:\Windows\SysWOW64\wsdchngr.dll
A C:\Windows\SysWOW64\wsecedit.dll
A C:\Windows\SysWOW64\wshbth.dll
A C:\Windows\SysWOW64\wshcon.dll
A C:\Windows\SysWOW64\wshelper.dll
A C:\Windows\SysWOW64\wshext.dll
A C:\Windows\SysWOW64\wship6.dll
A C:\Windows\SysWOW64\wshirda.dll
A C:\Windows\SysWOW64\wshom.ocx
A C:\Windows\SysWOW64\wshqos.dll
A C:\Windows\SysWOW64\wshrm.dll
A C:\Windows\SysWOW64\WSHTCPIP.DLL
A C:\Windows\SysWOW64\wsmanconfig_schema.xml
A C:\Windows\SysWOW64\WSManHTTPConfig.exe
A C:\Windows\SysWOW64\WSManMigrationPlugin.dll
A C:\Windows\SysWOW64\WsmAuto.dll
A C:\Windows\SysWOW64\wsmplpxy.dll
A C:\Windows\SysWOW64\wsmprovhost.exe
A C:\Windows\SysWOW64\WsmPty.xsl
A C:\Windows\SysWOW64\WsmRes.dll
A C:\Windows\SysWOW64\WsmSvc.dll
A C:\Windows\SysWOW64\WsmTxt.xsl
A C:\Windows\SysWOW64\WsmWmiPl.dll
A C:\Windows\SysWOW64\wsnmp32.dll
A C:\Windows\SysWOW64\wsock32.dll
A C:\Windows\SysWOW64\WSTPager.ax
A C:\Windows\SysWOW64\wtsapi32.dll
A C:\Windows\SysWOW64\wuapi.dll
A C:\Windows\SysWOW64\wuapp.exe
A C:\Windows\SysWOW64\wudriver.dll
A C:\Windows\SysWOW64\wups.dll
A C:\Windows\SysWOW64\wusa.exe
A C:\Windows\SysWOW64\wuwebv.dll
A C:\Windows\SysWOW64\wvc.dll
A C:\Windows\SysWOW64\WWanAPI.dll
A C:\Windows\SysWOW64\wwapi.dll
A C:\Windows\SysWOW64\wzcdlg.dll
A C:\Windows\SysWOW64\x3daudio1_0.dll
A C:\Windows\SysWOW64\x3daudio1_1.dll
A C:\Windows\SysWOW64\X3DAudio1_2.dll
A C:\Windows\SysWOW64\X3DAudio1_3.dll
A C:\Windows\SysWOW64\X3DAudio1_4.dll
A C:\Windows\SysWOW64\X3DAudio1_5.dll
A C:\Windows\SysWOW64\X3DAudio1_6.dll
A C:\Windows\SysWOW64\X3DAudio1_7.dll
A C:\Windows\SysWOW64\xactengine2_0.dll
A C:\Windows\SysWOW64\xactengine2_1.dll
A C:\Windows\SysWOW64\xactengine2_10.dll
A C:\Windows\SysWOW64\xactengine2_2.dll
A C:\Windows\SysWOW64\xactengine2_3.dll
A C:\Windows\SysWOW64\xactengine2_4.dll
A C:\Windows\SysWOW64\xactengine2_5.dll
A C:\Windows\SysWOW64\xactengine2_6.dll
A C:\Windows\SysWOW64\xactengine2_7.dll
A C:\Windows\SysWOW64\xactengine2_8.dll
A C:\Windows\SysWOW64\xactengine2_9.dll
A C:\Windows\SysWOW64\xactengine3_0.dll
A C:\Windows\SysWOW64\xactengine3_1.dll
A C:\Windows\SysWOW64\xactengine3_2.dll
A C:\Windows\SysWOW64\xactengine3_3.dll
A C:\Windows\SysWOW64\xactengine3_4.dll
A C:\Windows\SysWOW64\xactengine3_5.dll
A C:\Windows\SysWOW64\xactengine3_6.dll
A C:\Windows\SysWOW64\xactengine3_7.dll
A C:\Windows\SysWOW64\XAPOFX1_0.dll
A C:\Windows\SysWOW64\XAPOFX1_1.dll
A C:\Windows\SysWOW64\XAPOFX1_2.dll
A C:\Windows\SysWOW64\XAPOFX1_3.dll
A C:\Windows\SysWOW64\XAPOFX1_4.dll
A C:\Windows\SysWOW64\XAPOFX1_5.dll
A C:\Windows\SysWOW64\XAudio2_0.dll
A C:\Windows\SysWOW64\XAudio2_1.dll
A C:\Windows\SysWOW64\XAudio2_2.dll
A C:\Windows\SysWOW64\XAudio2_3.dll
A C:\Windows\SysWOW64\XAudio2_4.dll
A C:\Windows\SysWOW64\XAudio2_5.dll
A C:\Windows\SysWOW64\XAudio2_6.dll
A C:\Windows\SysWOW64\XAudio2_7.dll
A C:\Windows\SysWOW64\xcopy.exe
A C:\Windows\SysWOW64\xinput1_1.dll
A C:\Windows\SysWOW64\xinput1_2.dll
A C:\Windows\SysWOW64\xinput1_3.dll
A C:\Windows\SysWOW64\XInput9_1_0.dll
A C:\Windows\SysWOW64\xmlfilter.dll
A C:\Windows\SysWOW64\xmllite.dll
A C:\Windows\SysWOW64\xmlprovi.dll
A C:\Windows\SysWOW64\xolehlp.dll
A C:\Windows\SysWOW64\XpsFilt.dll
A C:\Windows\SysWOW64\XpsGdiConverter.dll
A C:\Windows\SysWOW64\XpsPrint.dll
A C:\Windows\SysWOW64\XpsRasterService.dll
A C:\Windows\SysWOW64\xpsrchvw.exe
A C:\Windows\SysWOW64\xpsrchvw.xml
A C:\Windows\SysWOW64\xpsservices.dll
A C:\Windows\SysWOW64\XPSSHHDR.dll
A C:\Windows\SysWOW64\xpssvcs.dll
A C:\Windows\SysWOW64\xwizard.dtd
A C:\Windows\SysWOW64\xwizard.exe
A C:\Windows\SysWOW64\xwizards.dll
A C:\Windows\SysWOW64\xwreg.dll
A C:\Windows\SysWOW64\xwtpdui.dll
A C:\Windows\SysWOW64\xwtpw32.dll
A C:\Windows\SysWOW64\zipfldr.dll

Rkill 2.4.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 12/10/2012 03:49:25 PM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* C:\Users\Stradeva\Local Settings\Apps\F.lux\flux.exe (PID: 3592) [UP-HEUR]

1 proccess terminated!

Checking Registry for malware related settings:

* Explorer Policy Removed: NoActiveDesktopChanges [HKLM]

Backup Registry file created at:
C:\Users\Stradeva\Desktop\rkill\rkill-12-10-2012-03-49-31.reg

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* No issues found.

Checking Windows Service Integrity:

* Security Center (wscsvc) is not Running.
Startup Type set to: Disabled

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* Cannot edit the HOSTS file.
* Permissions Fixed. Administrators can now edit the HOSTS file.

* HOSTS file entries found:

127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 www.100888290cs.com
127.0.0.1 100888290cs.com
127.0.0.1 100sexlinks.com
127.0.0.1 www.100sexlinks.com

20 out of 15237 HOSTS entries shown.
Please review HOSTS file for further entries.

Program finished at: 12/10/2012 03:49:40 PM
Execution time: 0 hours(s), 0 minute(s), and 14 seconds(s)

"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms" "" "" ""
+ "rdpclip" "" "" "File not found: rdpclip"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "BCSSync" "Microsoft Office 2010 component" "Microsoft Corporation" "c:\program files\microsoft office\office14\bcssync.exe"
+ "itype" "IType.exe" "Microsoft Corporation" "c:\program files\microsoft intellitype pro\itype.exe"
+ "MSC" "Microsoft Security Client User Interface" "Microsoft Corporation" "c:\program files\microsoft security client\msseces.exe"
+ "RtHDVCpl" "Realtek HD Audio Manager" "Realtek Semiconductor" "c:\program files\realtek\audio\hda\ravcpl64.exe"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "Adobe ARM" "Adobe Reader and Acrobat Manager" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe"
+ "DivXUpdate" "DivX Update" "" "c:\program files (x86)\divx\divx update\divxupdate.exe"
+ "Garmin Lifetime Updater" "Garmin Lifetime Updater" "Garmin" "c:\program files (x86)\garmin\lifetime updater\garminlifetime.exe"
+ "IMSS" "PIcon startup utility" "Intel Corporation" "c:\program files (x86)\intel\intel® management engine components\imss\piconstartup.exe"
+ "Lachesis" "razerhid MFC Application" "" "c:\program files (x86)\razer\lachesis\razerhid.exe"
+ "SunJavaUpdateSched" "Java™ Update Scheduler" "Sun Microsystems, Inc." "c:\program files (x86)\common files\java\java update\jusched.exe"
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup" "" "" ""
+ "NETGEAR WG111v3 Smart Wizard.lnk" "NetgearCUv2 MFC Application" "" "c:\program files (x86)\netgear\wg111v3\wg111v3.exe"
"C:\Users\Stradeva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "" "" ""
+ "Dropbox.lnk" "Dropbox" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropbox.exe"
+ "Trillian.lnk" "Trillian" "Cerulean Studios" "c:\program files (x86)\trillian\trillian.exe"
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe"
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files (x86)\windows mail\winmail.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "Desktop Software" "SupportSoft Container" "SupportSoft, Inc." "c:\program files (x86)\common files\supportsoft\bin\bcont.exe"
+ "F.lux" "" "" "c:\users\stradeva\local settings\apps\f.lux\flux.exe"
+ "Google Update" "Google Installer" "Google Inc." "c:\users\stradeva\appdata\local\google\update\googleupdate.exe"
+ "Pando Media Booster" "Pando Media Booster" "" "c:\program files (x86)\pando networks\media booster\pmb.exe"
+ "Spotify Web Helper" "SpotifyWebHelper" "Spotify Ltd" "c:\users\stradeva\appdata\roaming\spotify\data\spotifywebhelper.exe"
+ "SpybotSD TeaTimer" "System settings protector" "Safer-Networking Ltd." "c:\program files (x86)\spybot - search & destroy\teatimer.exe"
+ "Steam" "Steam" "Valve Corporation" "c:\program files (x86)\steam\steam.exe"
"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" ""
+ "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office14\msoxmlmf.dll"
"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" ""
+ "ms-help" "Microsoft® Help Data Services Module" "Microsoft Corporation" "c:\program files\common files\microsoft shared\help\hxds.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" ""
+ "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" ""
+ "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKCU\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "DropboxExt" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext64.14.dll"
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "EPP" "Microsoft Security Client Shell Extension" "Microsoft Corporation" "c:\program files\microsoft security client\shellext.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "Glary Utilities" "Context Menu Handler" "Glarysoft Ltd" "c:\program files (x86)\glary utilities\contexthandler.dll"
+ "WinRAR32" "" "" "c:\program files\winrar\rarext32.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKCU\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "DropboxExt" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext64.14.dll"
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "EPP" "Microsoft Security Client Shell Extension" "Microsoft Corporation" "c:\program files\microsoft security client\shellext.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "WinRAR32" "" "" "c:\program files\winrar\rarext32.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "WinRAR32" "" "" "c:\program files\winrar\rarext32.dll"
"HKCU\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "DropboxExt" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext64.14.dll"
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files\windows sidebar\sbdrop.dll"
+ "NvCplDesktopContext" "" "NVIDIA Corporation" "c:\windows\system32\nvshext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files (x86)\windows sidebar\sbdrop.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers" "" "" ""
+ "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files (x86)\common files\adobe\acrobat\activex\pdfshell.dll"
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamext.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "Glary Utilities" "Context Menu Handler" "Glarysoft Ltd" "c:\program files (x86)\glary utilities\contexthandler.dll"
+ "WinRAR32" "" "" "c:\program files\winrar\rarext32.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR32" "" "" "c:\program files\winrar\rarext32.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "DropboxExt1" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext64.14.dll"
+ "DropboxExt2" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext64.14.dll"
+ "DropboxExt3" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext64.14.dll"
+ "DropboxExt4" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext64.14.dll"
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "DropboxExt1" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext.14.dll"
+ "DropboxExt2" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext.14.dll"
+ "DropboxExt3" "Dropbox Shell Extension" "Dropbox, Inc." "c:\users\stradeva\appdata\roaming\dropbox\bin\dropboxext.14.dll"
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll"
+ "Java™ Plug-In 2 SSV Helper" "Java™ Platform SE binary" "Oracle Corporation" "c:\program files\java\jre7\bin\jp2ssv.dll"
+ "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files\microsoft office\office14\urlredir.dll"
+ "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll"
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiehelpershim.dll"
+ "Bing Bar Helper" "Bing Client Extensions" "Microsoft Corporation." "c:\program files (x86)\microsoft\bingbar\bingext.dll"
+ "DivX Plus Web Player HTML5 <video>" "DivX Plus Web Player HTML5 <video> version 2.1.2.145" "DivX, LLC" "c:\program files (x86)\divx\divx plus web player\ie\divxhtml5\divxhtml5.dll"
+ "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll"
+ "Java™ Plug-In 2 SSV Helper" "Java™ Platform SE binary" "Oracle Corporation" "c:\program files (x86)\java\jre7\bin\jp2ssv.dll"
+ "Java™ Plug-In SSV Helper" "Java™ Platform SE binary" "Oracle Corporation" "c:\program files (x86)\java\jre7\bin\ssv.dll"
+ "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\urlredir.dll"
+ "Skype Browser Helper" "Skype Click to Call for Internet Explorer" "Skype Technologies S.A." "c:\program files (x86)\skype\toolbars\internet explorer\skypeieplugin.dll"
+ "Updater For XFIN_PORTAL" "AUX BHO" "Visicom Media" "c:\program files (x86)\xfin_portal\auxi\comcastau.dll"
+ "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll"
+ "XFINITY Toolbar" "dtx Dynamic Link Library" "" "c:\program files (x86)\xfin_portal\comcastdx.dll"
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar" "" "" ""
+ "Bing" "Bing Client Extensions" "Microsoft Corporation." "c:\program files (x86)\microsoft\bingbar\bingext.dll"
+ "XFINITY Toolbar" "dtx Dynamic Link Library" "" "c:\program files (x86)\xfin_portal\comcastdx.dll"
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnielinkednotes.dll"
+ "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnie.dll"
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "&Blog This in Windows Live Writer" "Windows Live Writer Blog This Extension" "Microsoft Corporation" "c:\program files (x86)\windows live\writer\writerbrowserextension.dll"
+ "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnielinkednotes.dll"
+ "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnie.dll"
+ "Skype Click to Call" "Skype Click to Call for Internet Explorer" "Skype Technologies S.A." "c:\program files (x86)\skype\toolbars\internet explorer\skypeieplugin.dll"
"Task Scheduler" "" "" ""
+ "\GlaryInitialize" "Glary Utilities Initialize" "Glarysoft Ltd" "c:\program files (x86)\glary utilities\initialize.exe"
+ "\GoogleUpdateTaskUserS-1-5-21-421833623-3847636002-4141092444-1000Core" "Google Installer" "Google Inc." "c:\users\stradeva\appdata\local\google\update\googleupdate.exe"
+ "\GoogleUpdateTaskUserS-1-5-21-421833623-3847636002-4141092444-1000UA" "Google Installer" "Google Inc." "c:\users\stradeva\appdata\local\google\update\googleupdate.exe"
+ "\Microsoft\Microsoft Antimalware\MpIdleTask" "Microsoft Malware Protection Command Line Utility" "Microsoft Corporation" "c:\program files\microsoft security client\mpcmdrun.exe"
+ "\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task" "Windows Live Social Object Extractor Engine" "Microsoft Corporation" "c:\program files (x86)\windows live\soxe\wlsoxe.dll"
+ "\Microsoft\Windows\NetTrace\GatherNetworkInfo" "" "" "c:\windows\system32\gathernetworkinfo.vbs"
+ "\Microsoft\Windows\TabletPC\InputPersonalization" "" "" "File not found: C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
+ "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" "Windows Media Player Network Sharing Service Configuration Application" "Microsoft Corporation" "c:\program files\windows media player\wmpnscfg.exe"
+ "\Microsoft_Hardware_Launch_IType_exe" "IType.exe" "Microsoft Corporation" "c:\program files\microsoft intellitype pro\itype.exe"
+ "\{0ECF4658-5A13-41E9-9A2E-B55BAF70DEC7}" "Skype " "Skype Technologies S.A." "c:\program files (x86)\skype\phone\skype.exe"
+ "\{7325B5C5-ADA3-4E53-A2BC-AEFD67F4B599}" "Firefox" "Mozilla Corporation" "c:\program files (x86)\mozilla firefox\firefox.exe"
+ "\{B03BA3AD-5D76-4BB2-B4E7-E68D6FAD4893}" "Firefox" "Mozilla Corporation" "c:\program files (x86)\mozilla firefox\firefox.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "AdobeARMservice" "Adobe Acrobat Updater keeps your Adobe software up to date." "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe"
+ "AdobeFlashPlayerUpdateSvc" "This service keeps your Adobe Flash Player installation up to date with the latest enhancements and security fixes." "Adobe Systems Incorporated" "c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe"
+ "AMD External Events Utility" "AMD External Events Service Module" "AMD" "c:\windows\system32\atiesrxx.exe"
+ "AntiSpywareService" "" "" "c:\program files (x86)\comcasttb\comcastspywarescan\comcastantispyservice.exe"
+ "BBSvc" "Keeps Bing Bar up-to-date. Disabling this service might prevent updates and expose your computer to security vulnerabilities or functional flaws in Bing Bar." "Microsoft Corporation." "c:\program files (x86)\microsoft\bingbar\bbsvc.exe"
+ "CrossLoopService" "CrossLoop service" "CrossLoop Inc" "c:\users\stradeva\appdata\local\crossloop\crossloopservice.exe"
+ "DAUpdaterSvc" "Digital management system for Dragon Age: Origins downloadable content." "BioWare" "c:\program files (x86)\dragon age\bin_ship\daupdatersvc.service.exe"
+ "DeviceMonitorService" "This service supports to NGP for getting device information" "Nero AG" "c:\program files (x86)\motorola media link\lite\nserviceentry.exe"
+ "ITMRTSVC" "Service component for CA Pest Patrol Realtime Protection" "CA, Inc." "c:\program files (x86)\ca\pprt\bin\itmrtsvc.exe"
+ "LMS" "Allows applications to access the local Intel® Management and Security Application using its locally-available selected network interfaces." "Intel Corporation" "c:\program files (x86)\intel\intel® management engine components\lms\lms.exe"
+ "MBAMScheduler" "Malwarebytes Anti-Malware scheduler" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamscheduler.exe"
+ "MBAMService" "Malwarebytes Anti-Malware service" "Malwarebytes Corporation" "c:\program files (x86)\malwarebytes' anti-malware\mbamservice.exe"
+ "Microsoft SharePoint Workspace Audit Service" "Microsoft SharePoint Workspace" "Microsoft Corporation" "c:\program files\microsoft office\office14\groove.exe"
+ "MotoHelper" "MotoHelper Service" "" "c:\program files (x86)\motorola\motohelper\motohelperservice.exe"
+ "MozillaMaintenance" "The Mozilla Maintenance Service ensures that you have the latest and most secure version of Mozilla Firefox on your computer. Keeping Firefox up to date is very important for your online security, and Mozilla strongly recommends that you keep this service enabled." "Mozilla Foundation" "c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe"
+ "MsMpSvc" "Helps protect users from malware and other potentially unwanted software" "Microsoft Corporation" "c:\program files\microsoft security client\msmpeng.exe"
+ "NisSrv" "Helps guard against intrusion attempts targeting known and newly discovered vulnerabilities in network protocols" "Microsoft Corporation" "c:\program files\microsoft security client\nissrv.exe"
+ "nvsvc" "Provides system and desktop level support to the NVIDIA display driver" "NVIDIA Corporation" "c:\windows\system32\nvvsvc.exe"
+ "nvUpdatusService" "NVIDIA Settings Update Manager service, used to check new updates from NVIDIA server." "NVIDIA Corporation" "c:\program files (x86)\nvidia corporation\nvidia update core\daemonu.exe"
+ "ose64" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files\common files\microsoft shared\source engine\ose.exe"
+ "osppsvc" "Office Software Protection Platform Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe"
+ "SeaPort" "Enables the detection, download and installation of up-to-date configuration files for Bing Bar. Also provides server communication for the customer experience improvement program. Stopping or disabling this service may prevent you from getting the latest updates for Bing Bar, which may expose your computer to security vulnerabilities or functional flaws in the Bing Bar." "Microsoft Corporation" "c:\program files (x86)\microsoft\bingbar\seaport.exe"
+ "SkypeUpdate" "Enables the detection, download and installation of updates for Skype." "Skype Technologies" "c:\program files (x86)\skype\updater\updater.exe"
+ "Steam Client Service" "Steam Client Service monitors and updates Steam content" "Valve Corporation" "c:\program files (x86)\common files\steam\steamservice.exe"
+ "Stereo Service" "Provides system support for NVIDIA Stereoscopic 3D driver" "NVIDIA Corporation" "c:\program files (x86)\nvidia corporation\3d vision\nvscpapisvr.exe"
+ "tvnserver" "TightVNC Server for Windows" "GlavSoft LLC." "c:\users\stradeva\appdata\local\crossloop\tvnserver.exe"
+ "UNS" "Intel® Management and Security Application User Notification Service - Updates the Windows Event Log with notifications of pre defined events received from the local Intel® Management and Security Application Device." "Intel Corporation" "c:\program files (x86)\intel\intel® management engine components\uns\uns.exe"
+ "wlidsvc" "Enables Windows Live ID authentication." "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidsvc.exe"
+ "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "adp94xx" "Adaptec Windows SAS/SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adp94xx.sys"
+ "adpahci" "Adaptec Windows SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adpahci.sys"
+ "adpu320" "Adaptec StorPort Ultra320 SCSI Driver (X64)" "Adaptec, Inc." "c:\windows\system32\drivers\adpu320.sys"
+ "aliide" "ALi mini IDE Driver" "Acer Laboratories Inc." "c:\windows\system32\drivers\aliide.sys"
+ "amdkmdag" "ATI Radeon Kernel Mode Driver" "ATI Technologies Inc." "c:\windows\system32\drivers\atikmdag.sys"
+ "amdkmdap" "AMD multi-vendor Miniport Driver" "Advanced Micro Devices, Inc." "c:\windows\system32\drivers\atikmpag.sys"
+ "amdsata" "AHCI 1.2 Device Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdsata.sys"
+ "amdsbs" "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "AMD Technologies Inc." "c:\windows\system32\drivers\amdsbs.sys"
+ "amdxata" "Storage Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdxata.sys"
+ "arc" "Adaptec RAID Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arc.sys"
+ "arcsas" "Adaptec SAS RAID WS03 Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arcsas.sys"
+ "AtiHDAudioService" "ATI High Definition Audio Function Driver" "ATI Technologies, Inc." "c:\windows\system32\drivers\atihdw76.sys"
+ "b06bdrv" "Broadcom NetXtreme II GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\bxvbda.sys"
+ "b57nd60a" "Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver." "Broadcom Corporation" "c:\windows\system32\drivers\b57nd60a.sys"
+ "BrFiltLo" "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltlo.sys"
+ "BrFiltUp" "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltup.sys"
+ "Brserid" "Brotehr Serial I/F Driver (WDM)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserid.sys"
+ "BrSerWdm" "Brother Serial driver (WDM version)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserwdm.sys"
+ "BrUsbMdm" "Brother USB MDM Driver " "Brother Industries Ltd." "c:\windows\system32\drivers\brusbmdm.sys"
+ "BrUsbSer" "Brother USB Serial Driver" "Brother Industries Ltd." "c:\windows\system32\drivers\brusbser.sys"
+ "BTCFilterService" "Motorola Unsafe Removal Filter Driver" "Motorola Inc" "c:\windows\system32\drivers\motfilt.sys"
+ "cmdide" "CMD PCI IDE Bus Driver" "CMD Technology, Inc." "c:\windows\system32\drivers\cmdide.sys"
+ "ebdrv" "Broadcom NetXtreme II 10 GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\evbda.sys"
+ "elxstor" "Storport Miniport Driver for LightPulse HBAs" "Emulex" "c:\windows\system32\drivers\elxstor.sys"
+ "hamachi" "Hamachi Virtual Network Interface Driver" "LogMeIn, Inc." "c:\windows\system32\drivers\hamachi.sys"
+ "hcw85cir" "Hauppauge WinTV 885 Consumer IR Driver for eHome" "Hauppauge Computer Works, Inc." "c:\windows\system32\drivers\hcw85cir.sys"
+ "HECIx64" "Intel® Management Engine Interface" "Intel Corporation" "c:\windows\system32\drivers\hecix64.sys"
+ "HpSAMD" "Smart Array SAS/SATA Controller Media Driver" "Hewlett-Packard Company" "c:\windows\system32\drivers\hpsamd.sys"
+ "iaStorV" "Intel Matrix Storage Manager driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastorv.sys"
+ "iirsp" "Intel/ICP Raid Storport Driver" "Intel Corp./ICP vortex GmbH" "c:\windows\system32\drivers\iirsp.sys"
+ "IntcAzAudAddService" "Realtek® High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhd64.sys"
+ "LSI_FC" "LSI Fusion-MPT FC Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_fc.sys"
+ "LSI_SAS" "LSI Fusion-MPT SAS Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas.sys"
+ "LSI_SAS2" "LSI SAS Gen2 Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas2.sys"
+ "LSI_SCSI" "LSI Fusion-MPT SCSI Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_scsi.sys"
+ "MBAMProtector" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\windows\system32\drivers\mbam.sys"
+ "megasas" "MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64" "LSI Corporation" "c:\windows\system32\drivers\megasas.sys"
+ "MegaSR" "LSI MegaRAID Software RAID Driver" "LSI Corporation, Inc." "c:\windows\system32\drivers\megasr.sys"
+ "motccgp" "Motorola USB Composite Device Driver" "Motorola" "c:\windows\system32\drivers\motccgp.sys"
+ "motccgpfl" "Motorola USB Composite Filter Driver" "Motorola" "c:\windows\system32\drivers\motccgpfl.sys"
+ "motmodem" "Motorola USB Modem and Ports Driver" "Motorola" "c:\windows\system32\drivers\motmodem.sys"
+ "MotoSwitchService" "" "Motorola" "c:\windows\system32\drivers\motswch.sys"
+ "Motousbnet" "Motorola USB Networking Driver" "Motorola" "c:\windows\system32\drivers\motousbnet.sys"
+ "motusbdevice" "Motorola USB Device Driver (SVC)" "Motorola Inc" "c:\windows\system32\drivers\motusbdevice.sys"
+ "nfrd960" "IBM ServeRAID Controller Driver" "IBM Corporation" "c:\windows\system32\drivers\nfrd960.sys"
+ "NVENETFD" "NVIDIA MCP Networking Function Driver." "NVIDIA Corporation" "c:\windows\system32\drivers\nvm62x64.sys"
+ "nvlddmkm" "NVIDIA Windows Kernel Mode Driver, Version 306.97 " "NVIDIA Corporation" "c:\windows\system32\drivers\nvlddmkm.sys"
+ "nvraid" "NVIDIA® nForce™ RAID Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvraid.sys"
+ "nvstor" "NVIDIA® nForce™ Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor.sys"
+ "ql2300" "QLogic Fibre Channel Stor Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql2300.sys"
+ "ql40xx" "QLogic iSCSI Storport Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql40xx.sys"
+ "RTL8167" "Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver " "Realtek " "c:\windows\system32\drivers\rt64win7.sys"
+ "RTL8187B" "NETGEAR WG111v3 Wireless-G USB Adapter NDIS Driver" "NETGEAR Inc. " "c:\windows\system32\drivers\wg111v3.sys"
+ "secdrv" "Macrovision SECURITY Driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "SiSRaid2" "SiS RAID Stor Miniport Driver" "Silicon Integrated Systems Corp." "c:\windows\system32\drivers\sisraid2.sys"
+ "SiSRaid4" "SiS AHCI Stor-Miniport Driver" "Silicon Integrated Systems" "c:\windows\system32\drivers\sisraid4.sys"
+ "SMARTMouseFilterx64" "Mouse Upper Filter Driver" "SMART Technologies ULC" "c:\windows\system32\drivers\smartmousefilterx64.sys"
+ "SMARTVHidMiniVistaAmd64" "Driver for SMART HID Device" "SMART Technologies ULC" "c:\windows\system32\drivers\smartvhidminivistaamd64.sys"
+ "SMARTVTabletPCx64" "Driver for SMART Virtual TabletPC HID Device" "SMART Technologies ULC" "c:\windows\system32\drivers\smartvtabletpcx64.sys"
+ "stexstor" "Promise SuperTrak EX Series Driver for Windows " "Promise Technology" "c:\windows\system32\drivers\stexstor.sys"
+ "uisp" "UsbIsp" "Motorola" "c:\windows\system32\drivers\usbicp.sys"
+ "VaneFltr" "Lachesis USB Optical Mouse Driver" "Razer (Asia-Pacific) Pte Ltd" "c:\windows\system32\drivers\lachesis.sys"
+ "viaide" "VIA Generic PCI IDE Bus Driver" "VIA Technologies, Inc." "c:\windows\system32\drivers\viaide.sys"
+ "vsmraid" "VIA RAID DRIVER FOR AMD-X86-64" "VIA Technologies Inc.,Ltd" "c:\windows\system32\drivers\vsmraid.sys"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\syswow64\l3codeca.acm"
+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\syswow64\iccvid.dll"
+ "vidc.DIVX" "DivX" "DivX, Inc." "c:\windows\syswow64\divx.dll"
+ "vidc.tscc" "TechSmith Screen Capture Codec" "TechSmith Corporation" "c:\windows\syswow64\tsccvid.dll"
+ "vidc.yv12" "DivX" "DivX, Inc." "c:\windows\syswow64\divx.dll"
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "DivX Decoder Filter" "DivX Decoder Filter" "DivX, Inc." "c:\program files\divx\divx codec\divxdec.ax"
"HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "Capture File Writer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "DivX AAC Decoder" "AAC audio decoder filter" "DivX, Inc." "c:\program files (x86)\divx\divx plus directshow filters\daac.ax"
+ "DivX Decoder Filter" "DivX Decoder Filter" "DivX, Inc." "c:\program files (x86)\divx\divx codec\divxdec.ax"
+ "DivX Demux Filter" "DivX Plus DMF Navigator Filter" "DivX, Inc." "c:\program files (x86)\divx\divx plus directshow filters\directshowdemuxfilter.dll"
+ "DivX Demux Filter (Unrestricted Edition)" "DivX Plus DMF Navigator Filter" "DivX, Inc." "c:\program files (x86)\divx\divx plus directshow filters\directshowdemuxfilter.dll"
+ "DivX H.264 Decoder" "DivX H.264 Decoder Filter" "DivX, Inc." "c:\program files (x86)\divx\divx plus directshow filters\divxdech264.ax"
+ "Record Queue" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WM VIH2 Fix" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT DV Extract Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Sample Info Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Switch Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Renderer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
+ "WMT Virtual Source" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll"
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers" "" "" ""
+ "WLIDCredentialProvider" "Microsoft® Windows Live ID Credential Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidcredprov.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries" "" "" ""
+ "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll"
+ "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll"
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64" "" "" ""
+ "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll"
+ "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll"
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" ""
+ "Canon BJ Language Monitor MX870 series" "IJ Language Monitor" "CANON INC." "c:\windows\system32\cnmlma7.dll"
+ "Canon MP FAX Language Monitor MX870 series" "MP FAX Language Monitor DLL" "Canon Inc." "c:\windows\system32\cncf2lm.dll"
+ "LIDIL hpzlllhn" "LanguageMonitor" "Hewlett-Packard Company" "c:\windows\system32\hpzlllhn.dll"
+ "PrimoMon" "" "" "c:\windows\system32\primomonnt.dll"
+ "SMART Local Port" "SMART Notebook Document Writer Print Capture Port" "SMART Technologies ULC" "c:\windows\system32\smrtlocalmon.dll"

#8 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:53 PM

Posted 10 December 2012 - 10:23 PM

Click on startmenu and type

cmd

Right click on it and select run as administrator and run these commands

cd C:\Windows\SysWOW64
takeown /a /f Wldap32V.dll
cacls Wldap32V.dll /g everyone:f


Type Y and press <ENTER>

attrib -s -h -r Wldap32V.dll
del Wldap32V.dll


Restart the PC and let me know if you still have issues

#9 stradeva

stradeva
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:53 AM

Posted 10 December 2012 - 10:33 PM

Thank you so much!! That fixed it!!!!! I really appreciate all your help!! :)

#10 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:12:53 PM

Posted 10 December 2012 - 10:37 PM

That looks good

Remove temporary and junk files

Download

TFC

Launch it,it will close all running programs

click on START,it should ask for reboot.If TFC locks up the system,run it in safemode


Create a new restore point

Follow this guide to turn off and turn on your restore points

XP- http://support.microsoft.com/kb/310405

Vista & windows 7- http://windows.microsoft.com/en-US/windows7/Turn-System-Restore-on-or-off

Turn off your system restore-It deletes old infected restore points

Turn on system restore and create a new restore point

Update JAVA and Flash player

Uninstall old version of java from control panel-Add or remove programs.Download the latest version from here

http://java.com/en/

Update your flash player

Antivirus recommendations

Update your antivirus frequently.Two free antivirus that i would suggest are

Microsoft security essentials or Avast.You can select either one of them.

If you have a paid one,make sure to update it frequently.Do not use multiple security softwares.

Informative guides that could prevent you from being infected again

How did I get infected?

http://www.bleepingcomputer.com/forums/topic2520.html

Best Practices for Safe Computing - Prevention of Malware Infection

http://www.bleepingcomputer.com/forums/topic407147.html

Simple and easy ways to keep your computer safe and secure on the Internet

http://www.bleepingcomputer.com/tutorials/keep-your-computer-safe-online/

Safe surfing :)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users