Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Firefox redirecting sometimes


  • Please log in to reply
22 replies to this topic

#1 FrankOtheMountaiN

FrankOtheMountaiN

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 14 January 2013 - 11:36 PM

Hello, My Firefox v18 browser is redirecting every 20 times or so. Guess I could try uninstalling Firefox and all traces of it,
but I would like to just get rid of the problem and save the installation. Any help appreciated. Frank


This is an XP pro laptop sp3/all updates.

Edited by FrankOtheMountaiN, 14 January 2013 - 11:37 PM.


Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:32 AM

Posted 14 January 2013 - 11:47 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here.If you get crashes in normal mode,run it in safemode with networking

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 14 January 2013 - 11:55 PM

TDSSkiller log:

23:49:32.0750 2700 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
23:49:33.0015 2700 ============================================================
23:49:33.0015 2700 Current date / time: 2013/01/14 23:49:33.0015
23:49:33.0015 2700 SystemInfo:
23:49:33.0015 2700
23:49:33.0015 2700 OS Version: 5.1.2600 ServicePack: 3.0
23:49:33.0015 2700 Product type: Workstation
23:49:33.0015 2700 ComputerName: DELLD620
23:49:33.0015 2700 UserName: Administrator
23:49:33.0015 2700 Windows directory: C:\WINDOWS
23:49:33.0015 2700 System windows directory: C:\WINDOWS
23:49:33.0015 2700 Processor architecture: Intel x86
23:49:33.0015 2700 Number of processors: 2
23:49:33.0015 2700 Page size: 0x1000
23:49:33.0015 2700 Boot type: Normal boot
23:49:33.0015 2700 ============================================================
23:49:37.0046 2700 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
23:49:37.0046 2700 ============================================================
23:49:37.0046 2700 \Device\Harddisk0\DR0:
23:49:37.0046 2700 MBR partitions:
23:49:37.0046 2700 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x650A5C4
23:49:37.0062 2700 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x650A642, BlocksNum 0x33E7B9AF
23:49:37.0062 2700 ============================================================
23:49:37.0125 2700 C: <-> \Device\Harddisk0\DR0\Partition1
23:50:26.0000 2700 F: <-> \Device\Harddisk0\DR0\Partition2
23:50:26.0000 2700 ============================================================
23:50:26.0000 2700 Initialize success
23:50:26.0000 2700 ============================================================
23:51:22.0500 3164 ============================================================
23:51:22.0500 3164 Scan started
23:51:22.0500 3164 Mode: Manual; TDLFS;
23:51:22.0500 3164 ============================================================
23:51:30.0562 3164 ================ Scan system memory ========================
23:51:30.0562 3164 System memory - ok
23:51:30.0562 3164 ================ Scan services =============================
23:51:31.0718 3164 6to4 - ok
23:51:31.0781 3164 Abiosdsk - ok
23:51:31.0781 3164 abp480n5 - ok
23:51:31.0812 3164 [ 8FD99680A539792A30E97944FDAECF17 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
23:51:31.0828 3164 ACPI - ok
23:51:31.0859 3164 [ 9859C0F6936E723E4892D7141B1327D5 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
23:51:31.0859 3164 ACPIEC - ok
23:51:31.0937 3164 AcrSch2Svc - ok
23:51:31.0968 3164 [ 424877CB9D5517F980FF7BACA2EB379D ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
23:51:31.0984 3164 AdobeFlashPlayerUpdateSvc - ok
23:51:32.0000 3164 adpu160m - ok
23:51:32.0031 3164 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
23:51:32.0046 3164 aec - ok
23:51:32.0078 3164 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
23:51:32.0078 3164 AFD - ok
23:51:32.0093 3164 Aha154x - ok
23:51:32.0093 3164 aic78u2 - ok
23:51:32.0109 3164 aic78xx - ok
23:51:32.0140 3164 [ A9A3DAA780CA6C9671A19D52456705B4 ] Alerter C:\WINDOWS\system32\alrsvc.dll
23:51:32.0140 3164 Alerter - ok
23:51:32.0140 3164 [ 8C515081584A38AA007909CD02020B3D ] ALG C:\WINDOWS\System32\alg.exe
23:51:32.0156 3164 ALG - ok
23:51:32.0156 3164 AliIde - ok
23:51:32.0156 3164 amsint - ok
23:51:32.0343 3164 [ AEB775A2BAE0F392BA6ADC0BB706233A ] ApfiltrService C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
23:51:32.0359 3164 ApfiltrService - ok
23:51:32.0375 3164 [ D8849F77C0B66226335A59D26CB4EDC6 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll
23:51:32.0390 3164 AppMgmt - ok
23:51:32.0531 3164 [ B5B8A80875C1DEDEDA8B02765642C32F ] Arp1394 C:\WINDOWS\system32\DRIVERS\arp1394.sys
23:51:32.0531 3164 Arp1394 - ok
23:51:32.0531 3164 asc - ok
23:51:32.0546 3164 asc3350p - ok
23:51:32.0546 3164 asc3550 - ok
23:51:32.0671 3164 [ 0E5E4957549056E2BF2C49F4F6B601AD ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
23:51:32.0687 3164 aspnet_state - ok
23:51:32.0703 3164 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
23:51:32.0703 3164 AsyncMac - ok
23:51:32.0734 3164 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
23:51:32.0734 3164 atapi - ok
23:51:32.0750 3164 Atdisk - ok
23:51:32.0796 3164 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
23:51:32.0796 3164 Atmarpc - ok
23:51:32.0890 3164 [ DEF7A7882BEC100FE0B2CE2549188F9D ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
23:51:32.0890 3164 AudioSrv - ok
23:51:32.0906 3164 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
23:51:32.0921 3164 audstub - ok
23:51:32.0937 3164 [ F96038AA1EC4013A93D2420FC689D1E9 ] b57w2k C:\WINDOWS\system32\DRIVERS\b57xp32.sys
23:51:32.0953 3164 b57w2k - ok
23:51:32.0968 3164 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
23:51:32.0984 3164 Beep - ok
23:51:33.0015 3164 [ 574738F61FCA2935F5265DC4E5691314 ] BITS C:\WINDOWS\system32\qmgr.dll
23:51:33.0046 3164 BITS - ok
23:51:33.0078 3164 [ F934D1B230F84E1D19DD00AC5A7A83ED ] Bridge C:\WINDOWS\system32\DRIVERS\bridge.sys
23:51:33.0078 3164 Bridge - ok
23:51:33.0078 3164 [ F934D1B230F84E1D19DD00AC5A7A83ED ] BridgeMP C:\WINDOWS\system32\DRIVERS\bridge.sys
23:51:33.0078 3164 BridgeMP - ok
23:51:33.0125 3164 [ CFD4E51402DA9838B5A04AE680AF54A0 ] Browser C:\WINDOWS\System32\browser.dll
23:51:33.0140 3164 Browser - ok
23:51:33.0546 3164 catchme - ok
23:51:33.0562 3164 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
23:51:33.0562 3164 cbidf2k - ok
23:51:33.0765 3164 [ 0BE5AEF125BE881C4F854C554F2B025C ] CCDECODE C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
23:51:33.0781 3164 CCDECODE - ok
23:51:33.0781 3164 cd20xrnt - ok
23:51:33.0796 3164 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
23:51:33.0796 3164 Cdaudio - ok
23:51:33.0828 3164 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
23:51:33.0828 3164 Cdfs - ok
23:51:33.0843 3164 [ 1F4260CC5B42272D71F79E570A27A4FE ] cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
23:51:33.0843 3164 cdrom - ok
23:51:33.0859 3164 Changer - ok
23:51:33.0890 3164 [ 1CFE720EB8D93A7158A4EBC3AB178BDE ] CiSvc C:\WINDOWS\system32\cisvc.exe
23:51:33.0890 3164 CiSvc - ok
23:51:33.0906 3164 [ 34CBE729F38138217F9C80212A2A0C82 ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
23:51:33.0906 3164 ClipSrv - ok
23:51:33.0953 3164 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:51:33.0984 3164 clr_optimization_v2.0.50727_32 - ok
23:51:34.0093 3164 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:51:34.0109 3164 clr_optimization_v4.0.30319_32 - ok
23:51:34.0171 3164 [ 0F6C187D38D98F8DF904589A5F94D411 ] CmBatt C:\WINDOWS\system32\DRIVERS\CmBatt.sys
23:51:34.0187 3164 CmBatt - ok
23:51:34.0187 3164 CmdIde - ok
23:51:34.0640 3164 [ 6E4C9F21F0FAE8940661144F41B13203 ] Compbatt C:\WINDOWS\system32\DRIVERS\compbatt.sys
23:51:34.0656 3164 Compbatt - ok
23:51:34.0656 3164 COMSysApp - ok
23:51:34.0671 3164 Cpqarray - ok
23:51:34.0718 3164 [ 3D4E199942E29207970E04315D02AD3B ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
23:51:34.0718 3164 CryptSvc - ok
23:51:34.0734 3164 dac2w2k - ok
23:51:34.0734 3164 dac960nt - ok
23:51:34.0781 3164 [ 6B27A5C03DFB94B4245739065431322C ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
23:51:34.0796 3164 DcomLaunch - ok
23:51:34.0843 3164 [ 5E38D7684A49CACFB752B046357E0589 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
23:51:34.0843 3164 Dhcp - ok
23:51:34.0859 3164 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
23:51:34.0859 3164 Disk - ok
23:51:34.0875 3164 dmadmin - ok
23:51:34.0921 3164 [ D992FE1274BDE0F84AD826ACAE022A41 ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
23:51:34.0984 3164 dmboot - ok
23:51:35.0031 3164 [ 7C824CF7BBDE77D95C08005717A95F6F ] dmio C:\WINDOWS\system32\drivers\dmio.sys
23:51:35.0078 3164 dmio - ok
23:51:35.0156 3164 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
23:51:35.0171 3164 dmload - ok
23:51:35.0359 3164 [ 57EDEC2E5F59F0335E92F35184BC8631 ] dmserver C:\WINDOWS\System32\dmserver.dll
23:51:35.0375 3164 dmserver - ok
23:51:35.0718 3164 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
23:51:35.0718 3164 DMusic - ok
23:51:37.0093 3164 [ 5F7E24FA9EAB896051FFB87F840730D2 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
23:51:37.0093 3164 Dnscache - ok
23:51:38.0609 3164 [ 0F0F6E687E5E15579EF4DA8DD6945814 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
23:51:38.0625 3164 Dot3svc - ok
23:51:38.0625 3164 dpti2o - ok
23:51:38.0656 3164 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
23:51:38.0671 3164 drmkaud - ok
23:51:38.0687 3164 [ 2187855A7703ADEF0CEF9EE4285182CC ] EapHost C:\WINDOWS\System32\eapsvc.dll
23:51:38.0687 3164 EapHost - ok
23:51:38.0734 3164 [ BC93B4A066477954555966D77FEC9ECB ] ERSvc C:\WINDOWS\System32\ersvc.dll
23:51:38.0734 3164 ERSvc - ok
23:51:38.0765 3164 [ 65DF52F5B8B6E9BBD183505225C37315 ] Eventlog C:\WINDOWS\system32\services.exe
23:51:38.0765 3164 Eventlog - ok
23:51:38.0812 3164 [ D4991D98F2DB73C60D042F1AEF79EFAE ] EventSystem C:\WINDOWS\system32\es.dll
23:51:38.0828 3164 EventSystem - ok
23:51:38.0875 3164 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
23:51:38.0875 3164 Fastfat - ok
23:51:38.0890 3164 [ 99BC0B50F511924348BE19C7C7313BBF ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
23:51:38.0921 3164 FastUserSwitchingCompatibility - ok
23:51:38.0937 3164 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys
23:51:38.0937 3164 Fdc - ok
23:51:38.0953 3164 [ D45926117EB9FA946A6AF572FBE1CAA3 ] Fips C:\WINDOWS\system32\drivers\Fips.sys
23:51:38.0953 3164 Fips - ok
23:51:38.0968 3164 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys
23:51:38.0984 3164 Flpydisk - ok
23:51:39.0000 3164 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
23:51:39.0000 3164 FltMgr - ok
23:51:39.0046 3164 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
23:51:39.0062 3164 FontCache3.0.0.0 - ok
23:51:39.0078 3164 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
23:51:39.0078 3164 Fs_Rec - ok
23:51:39.0078 3164 [ 6AC26732762483366C3969C9E4D2259D ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
23:51:39.0093 3164 Ftdisk - ok
23:51:39.0125 3164 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
23:51:39.0125 3164 Gpc - ok
23:51:39.0140 3164 [ C0BDAB85F3E8B2138C513255E2BCC4D8 ] guardian2 C:\WINDOWS\system32\Drivers\oz776.sys
23:51:39.0140 3164 guardian2 - ok
23:51:39.0875 3164 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
23:51:39.0875 3164 gupdate - ok
23:51:39.0890 3164 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
23:51:39.0890 3164 gupdatem - ok
23:51:39.0937 3164 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
23:51:39.0937 3164 HDAudBus - ok
23:51:40.0015 3164 [ 4FCCA060DFE0C51A09DD5C3843888BCD ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
23:51:40.0015 3164 helpsvc - ok
23:51:40.0046 3164 [ DEB04DA35CC871B6D309B77E1443C796 ] HidServ C:\WINDOWS\System32\hidserv.dll
23:51:40.0046 3164 HidServ - ok
23:51:40.0078 3164 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] HidUsb C:\WINDOWS\system32\DRIVERS\hidusb.sys
23:51:40.0078 3164 HidUsb - ok
23:51:40.0109 3164 [ 019E1D51A7A40E5C4B2A866A351715D9 ] HitmanProScheduler C:\Program Files\HitmanPro\hmpsched.exe
23:51:40.0140 3164 HitmanProScheduler - ok
23:51:40.0171 3164 [ 8878BD685E490239777BFE51320B88E9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
23:51:40.0187 3164 hkmsvc - ok
23:51:40.0203 3164 hpn - ok
23:51:40.0312 3164 [ 290CDBB05903742EA06B7203C5A662F5 ] HSFHWAZL C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys
23:51:40.0343 3164 HSFHWAZL - ok
23:51:41.0968 3164 [ 7AB812355F98858B9ECDD46E6FCC221F ] HSF_DPV C:\WINDOWS\system32\DRIVERS\HSF_DPV.sys
23:51:42.0078 3164 HSF_DPV - ok
23:51:42.0125 3164 [ 61478FA42EE04562E7F11F4DCA87E9C8 ] HSXHWAZL C:\WINDOWS\system32\DRIVERS\HSXHWAZL.sys
23:51:42.0125 3164 HSXHWAZL - ok
23:51:42.0171 3164 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
23:51:42.0187 3164 HTTP - ok
23:51:43.0171 3164 [ 6100A808600F44D999CEBDEF8841C7A3 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
23:51:43.0187 3164 HTTPFilter - ok
23:51:43.0187 3164 i2omgmt - ok
23:51:43.0187 3164 i2omp - ok
23:51:43.0750 3164 [ 4A0B06AA8943C1E332520F7440C0AA30 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
23:51:43.0750 3164 i8042prt - ok
23:51:43.0968 3164 [ CC449157474D5E43DAEA7E20F52C635A ] ialm C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
23:51:44.0062 3164 ialm - ok
23:51:44.0078 3164 Ias - ok
23:51:44.0156 3164 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
23:51:44.0234 3164 idsvc - ok
23:51:44.0843 3164 [ 25EDD75E23C5EF6B33D0FBCCE125A601 ] imagedrv C:\WINDOWS\system32\Drivers\imagedrv.sys
23:51:44.0843 3164 imagedrv - ok
23:51:44.0859 3164 [ 9C4BBACF4E9B9543C3CE23F1FE556941 ] imagesrv C:\WINDOWS\system32\DRIVERS\imagesrv.sys
23:51:44.0875 3164 imagesrv - ok
23:51:44.0906 3164 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
23:51:44.0921 3164 Imapi - ok
23:51:44.0937 3164 [ 30DEAF54A9755BB8546168CFE8A6B5E1 ] ImapiService C:\WINDOWS\system32\imapi.exe
23:51:44.0953 3164 ImapiService - ok
23:51:44.0953 3164 ini910u - ok
23:51:44.0968 3164 IntelIde - ok
23:51:45.0000 3164 [ 8C953733D8F36EB2133F5BB58808B66B ] intelppm C:\WINDOWS\system32\DRIVERS\intelppm.sys
23:51:45.0000 3164 intelppm - ok
23:51:45.0062 3164 [ D9DA7B3117BF5EFF921C0CDED4D58050 ] IntuitUpdateServiceV4 C:\Program Files\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
23:51:45.0062 3164 IntuitUpdateServiceV4 - ok
23:51:45.0109 3164 [ 022B559D042FAC2438F4EC6DC78A3BC5 ] IP Monitor C:\Program Files\IP Monitor\IPMonSvc.exe
23:51:45.0125 3164 IP Monitor - ok
23:51:45.0140 3164 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
23:51:45.0156 3164 Ip6Fw - ok
23:51:47.0265 3164 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
23:51:47.0281 3164 IpFilterDriver - ok
23:51:49.0234 3164 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
23:51:49.0234 3164 IpInIp - ok
23:51:49.0250 3164 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
23:51:49.0250 3164 IpNat - ok
23:51:49.0281 3164 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
23:51:49.0296 3164 IPSec - ok
23:51:49.0343 3164 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
23:51:49.0359 3164 IRENUM - ok
23:51:49.0375 3164 [ 05A299EC56E52649B1CF2FC52D20F2D7 ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
23:51:49.0390 3164 isapnp - ok
23:51:49.0406 3164 [ 463C1EC80CD17420A542B7F36A36F128 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
23:51:49.0421 3164 Kbdclass - ok
23:51:49.0421 3164 [ 9EF487A186DEA361AA06913A75B3FA99 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
23:51:49.0437 3164 kbdhid - ok
23:51:54.0218 3164 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
23:51:54.0218 3164 kmixer - ok
23:51:54.0250 3164 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
23:51:54.0250 3164 KSecDD - ok
23:51:54.0281 3164 [ 3A7C3CBE5D96B8AE96CE81F0B22FB527 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
23:51:54.0281 3164 lanmanserver - ok
23:51:54.0312 3164 [ A8888A5327621856C0CEC4E385F69309 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
23:51:54.0312 3164 LanmanWorkstation - ok
23:51:54.0328 3164 lbrtfdc - ok
23:51:54.0375 3164 [ A7DB739AE99A796D91580147E919CC59 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
23:51:54.0390 3164 LmHosts - ok
23:51:54.0453 3164 [ 11F714F85530A2BD134074DC30E99FCA ] MDM C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
23:51:54.0578 3164 MDM - ok
23:51:54.0609 3164 [ 0CEA2D0D3FA284B85ED5B68365114F76 ] mdmxsdk C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
23:51:54.0625 3164 mdmxsdk - ok
23:51:54.0734 3164 [ 986B1FF5814366D71E0AC5755C88F2D3 ] Messenger C:\WINDOWS\System32\msgsvc.dll
23:51:54.0734 3164 Messenger - ok
23:51:55.0140 3164 Microsoft SharePoint Workspace Audit Service - ok
23:51:55.0156 3164 [ D96EA49AB9A9174331BC023FD0CADC18 ] mirrorv3 C:\WINDOWS\system32\DRIVERS\rminiv3.sys
23:51:55.0156 3164 mirrorv3 - ok
23:51:55.0187 3164 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
23:51:55.0187 3164 mnmdd - ok
23:51:55.0218 3164 [ D18F1F0C101D06A1C1ADF26EED16FCDD ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
23:51:55.0218 3164 mnmsrvc - ok
23:51:55.0250 3164 [ DFCBAD3CEC1C5F964962AE10E0BCC8E1 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
23:51:55.0250 3164 Modem - ok
23:51:55.0265 3164 [ 35C9E97194C8CFB8430125F8DBC34D04 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
23:51:55.0265 3164 Mouclass - ok
23:51:55.0296 3164 [ B1C303E17FB9D46E87A98E4BA6769685 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
23:51:55.0296 3164 mouhid - ok
23:51:55.0328 3164 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
23:51:55.0328 3164 MountMgr - ok
23:51:55.0359 3164 [ 730A519505621DF46BCBF9CDAC9FB6AD ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
23:51:55.0375 3164 MozillaMaintenance - ok
23:51:55.0375 3164 mraid35x - ok
23:51:55.0390 3164 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
23:51:55.0406 3164 MRxDAV - ok
23:51:55.0468 3164 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
23:51:55.0484 3164 MRxSmb - ok
23:51:55.0515 3164 [ A137F1470499A205ABBB9AAFB3B6F2B1 ] MSDTC C:\WINDOWS\system32\msdtc.exe
23:51:55.0515 3164 MSDTC - ok
23:51:55.0531 3164 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
23:51:55.0531 3164 Msfs - ok
23:51:55.0531 3164 MSIServer - ok
23:51:55.0562 3164 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
23:51:55.0562 3164 MSKSSRV - ok
23:51:55.0609 3164 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
23:51:55.0609 3164 MSPCLOCK - ok
23:51:55.0656 3164 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
23:51:55.0671 3164 MSPQM - ok
23:51:55.0875 3164 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
23:51:55.0875 3164 mssmbios - ok
23:51:56.0000 3164 MSSQL$HPWJA - ok
23:51:56.0046 3164 [ ADAF062116B4E6D96E44D26486A87AF6 ] MSSQLServerADHelper C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe
23:51:56.0093 3164 MSSQLServerADHelper - ok
23:51:56.0125 3164 [ E53736A9E30C45FA9E7B5EAC55056D1D ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys
23:51:56.0125 3164 MSTEE - ok
23:51:56.0171 3164 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
23:51:56.0187 3164 Mup - ok
23:51:56.0218 3164 [ 5B50F1B2A2ED47D560577B221DA734DB ] NABTSFEC C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
23:51:56.0234 3164 NABTSFEC - ok
23:51:56.0296 3164 [ 0102140028FAD045756796E1C685D695 ] napagent C:\WINDOWS\System32\qagentrt.dll
23:51:56.0343 3164 napagent - ok
23:51:56.0359 3164 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
23:51:56.0375 3164 NDIS - ok
23:51:56.0421 3164 [ 7FF1F1FD8609C149AA432F95A8163D97 ] NdisIP C:\WINDOWS\system32\DRIVERS\NdisIP.sys
23:51:56.0421 3164 NdisIP - ok
23:51:56.0453 3164 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
23:51:56.0468 3164 NdisTapi - ok
23:51:56.0671 3164 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
23:51:56.0687 3164 Ndisuio - ok
23:51:56.0703 3164 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
23:51:56.0703 3164 NdisWan - ok
23:51:56.0718 3164 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
23:51:56.0734 3164 NDProxy - ok
23:51:56.0750 3164 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
23:51:56.0765 3164 NetBIOS - ok
23:51:56.0812 3164 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
23:51:56.0843 3164 NetBT - ok
23:51:56.0890 3164 [ B857BA82860D7FF85AE29B095645563B ] NetDDE C:\WINDOWS\system32\netdde.exe
23:51:56.0906 3164 NetDDE - ok
23:51:56.0921 3164 [ B857BA82860D7FF85AE29B095645563B ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
23:51:56.0921 3164 NetDDEdsdm - ok
23:51:56.0953 3164 [ BF2466B3E18E970D8A976FB95FC1CA85 ] Netlogon C:\WINDOWS\system32\lsass.exe
23:51:56.0968 3164 Netlogon - ok
23:51:57.0000 3164 [ 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE ] Netman C:\WINDOWS\System32\netman.dll
23:51:57.0031 3164 Netman - ok
23:51:57.0296 3164 [ D34612C5D02D026535B3095D620626AE ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
23:51:57.0375 3164 NetTcpPortSharing - ok
23:51:58.0078 3164 [ F43DA6B7E26FFF9AC4D3210F2F9B5D8C ] NETw3x32 C:\WINDOWS\system32\DRIVERS\NETw3x32.sys
23:51:58.0171 3164 NETw3x32 - ok
23:51:58.0453 3164 [ 91F027C242D3FF6E5C09F92A0518297F ] NETw5x32 C:\WINDOWS\system32\DRIVERS\NETw5x32.sys
23:51:59.0250 3164 NETw5x32 - ok
23:51:59.0421 3164 [ 1E6791F68640C6B916DF4E53C086CD51 ] NGCLIENT C:\Program Files\Symantec\Ghost\ngctw32.exe
23:51:59.0656 3164 NGCLIENT - ok
23:52:00.0375 3164 [ E9E47CFB2D461FA0FC75B7A74C6383EA ] NIC1394 C:\WINDOWS\system32\DRIVERS\nic1394.sys
23:52:00.0375 3164 NIC1394 - ok
23:52:00.0421 3164 [ 943337D786A56729263071623BBB9DE5 ] Nla C:\WINDOWS\System32\mswsock.dll
23:52:00.0437 3164 Nla - ok
23:52:00.0484 3164 [ 7AEA4DF1CA68FD45DD4BBE1F0243CE7F ] NMSAccess C:\Program Files\CDBurnerXP\NMSAccessU.exe
23:52:00.0562 3164 NMSAccess - ok
23:52:00.0671 3164 [ B48DC6ABCD3AEFF8618350CCBDC6B09A ] NPF C:\WINDOWS\system32\drivers\npf.sys
23:52:00.0687 3164 NPF - ok
23:52:00.0703 3164 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
23:52:00.0718 3164 Npfs - ok
23:52:01.0000 3164 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
23:52:01.0140 3164 Ntfs - ok
23:52:01.0156 3164 [ BF2466B3E18E970D8A976FB95FC1CA85 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
23:52:01.0156 3164 NtLmSsp - ok
23:52:01.0218 3164 [ 156F64A3345BD23C600655FB4D10BC08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
23:52:01.0265 3164 NtmsSvc - ok
23:52:01.0281 3164 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
23:52:01.0296 3164 Null - ok
23:52:03.0203 3164 [ B420E29C9E463C3E6184BD1B10796711 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
23:52:04.0781 3164 nv - ok
23:52:04.0937 3164 [ 0137637DC941BC9B7C3D231F78F2AAD8 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe
23:52:04.0953 3164 NVSvc - ok
23:52:05.0015 3164 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
23:52:05.0031 3164 NwlnkFlt - ok
23:52:05.0031 3164 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
23:52:05.0031 3164 NwlnkFwd - ok
23:52:05.0125 3164 [ CA33832DF41AFB202EE7AEB05145922F ] ohci1394 C:\WINDOWS\system32\DRIVERS\ohci1394.sys
23:52:05.0125 3164 ohci1394 - ok
23:52:05.0250 3164 [ B99575D16F887883B821D372FF292C20 ] oreans32 C:\WINDOWS\system32\drivers\oreans32.sys
23:52:05.0250 3164 oreans32 - ok
23:52:05.0343 3164 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
23:52:05.0359 3164 ose - ok
23:52:05.0671 3164 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
23:52:06.0031 3164 osppsvc - ok
23:52:06.0312 3164 [ 673E36852E2F9FA778D5D3DDCEFA591B ] PaceLicenseDServices C:\Program Files\Common Files\PACE\Services\LicenseServices\LDSvc.exe
23:52:07.0031 3164 PaceLicenseDServices - ok
23:52:07.0937 3164 [ 5575FAF8F97CE5E713D108C2A58D7C7C ] Parport C:\WINDOWS\system32\drivers\Parport.sys
23:52:07.0953 3164 Parport - ok
23:52:07.0984 3164 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
23:52:08.0000 3164 PartMgr - ok
23:52:08.0015 3164 [ 70E98B3FD8E963A6A46A2E6247E0BEA1 ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
23:52:08.0031 3164 ParVdm - ok
23:52:08.0046 3164 [ A219903CCF74233761D92BEF471A07B1 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
23:52:08.0046 3164 PCI - ok
23:52:08.0062 3164 PCIDump - ok
23:52:08.0093 3164 [ CCF5F451BB1A5A2A522A76E670000FF0 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
23:52:08.0093 3164 PCIIde - ok
23:52:08.0109 3164 [ 9E89EF60E9EE05E3F2EEF2DA7397F1C1 ] Pcmcia C:\WINDOWS\system32\DRIVERS\pcmcia.sys
23:52:08.0125 3164 Pcmcia - ok
23:52:08.0125 3164 PDCOMP - ok
23:52:08.0125 3164 PDFRAME - ok
23:52:08.0140 3164 PDRELI - ok
23:52:08.0140 3164 PDRFRAME - ok
23:52:08.0156 3164 perc2 - ok
23:52:08.0156 3164 perc2hib - ok
23:52:08.0171 3164 PEVSystemStart - ok
23:52:08.0187 3164 [ 65DF52F5B8B6E9BBD183505225C37315 ] PlugPlay C:\WINDOWS\system32\services.exe
23:52:08.0203 3164 PlugPlay - ok
23:52:08.0328 3164 [ 75CF9DE0A67AF916ED591743DFB69694 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.dll
23:52:08.0328 3164 Pml Driver HPZ12 - ok
23:52:08.0375 3164 [ BF2466B3E18E970D8A976FB95FC1CA85 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
23:52:08.0375 3164 PolicyAgent - ok
23:52:08.0421 3164 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
23:52:08.0437 3164 PptpMiniport - ok
23:52:08.0437 3164 [ BF2466B3E18E970D8A976FB95FC1CA85 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
23:52:08.0453 3164 ProtectedStorage - ok
23:52:08.0468 3164 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
23:52:08.0468 3164 PSched - ok
23:52:08.0484 3164 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
23:52:08.0500 3164 Ptilink - ok
23:52:08.0546 3164 [ CFACAA25576D473EF7B771ECE1B24D73 ] pwdrvio C:\WINDOWS\system32\pwdrvio.sys
23:52:08.0546 3164 pwdrvio - ok
23:52:08.0546 3164 [ 0B675A61B23561C86E8710F751842276 ] pwdspio C:\WINDOWS\system32\pwdspio.sys
23:52:08.0546 3164 pwdspio - ok
23:52:08.0562 3164 ql1080 - ok
23:52:08.0562 3164 Ql10wnt - ok
23:52:08.0562 3164 ql12160 - ok
23:52:08.0578 3164 ql1240 - ok
23:52:08.0578 3164 ql1280 - ok
23:52:08.0625 3164 [ 2E4F7D36C0D4085C53E151E0C2A85971 ] raddrvv3 C:\WINDOWS\system32\rserver30\raddrvv3.sys
23:52:08.0640 3164 raddrvv3 - ok
23:52:09.0484 3164 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
23:52:09.0484 3164 RasAcd - ok
23:52:09.0531 3164 [ AD188BE7BDF94E8DF4CA0A55C00A5073 ] RasAuto C:\WINDOWS\System32\rasauto.dll
23:52:09.0531 3164 RasAuto - ok
23:52:09.0593 3164 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
23:52:09.0593 3164 Rasl2tp - ok
23:52:10.0281 3164 [ 76A9A3CBEADD68CC57CDA5E1D7448235 ] RasMan C:\WINDOWS\System32\rasmans.dll
23:52:10.0296 3164 RasMan - ok
23:52:10.0312 3164 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
23:52:10.0312 3164 RasPppoe - ok
23:52:10.0328 3164 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
23:52:10.0343 3164 Raspti - ok
23:52:10.0359 3164 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
23:52:10.0359 3164 Rdbss - ok
23:52:10.0406 3164 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
23:52:10.0406 3164 RDPCDD - ok
23:52:10.0421 3164 [ 15CABD0F7C00C47C70124907916AF3F1 ] rdpdr C:\WINDOWS\system32\DRIVERS\rdpdr.sys
23:52:10.0437 3164 rdpdr - ok
23:52:10.0484 3164 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
23:52:10.0500 3164 RDPWD - ok
23:52:10.0546 3164 [ 3C37BF86641BDA977C3BF8A840F3B7FA ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
23:52:10.0546 3164 RDSessMgr - ok
23:52:10.0562 3164 [ F828DD7E1419B6653894A8F97A0094C5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
23:52:10.0578 3164 redbook - ok
23:52:10.0593 3164 [ 7E699FF5F59B5D9DE5390E3C34C67CF5 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
23:52:10.0609 3164 RemoteAccess - ok
23:52:10.0625 3164 [ 5B19B557B0C188210A56A6B699D90B8F ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll
23:52:10.0625 3164 RemoteRegistry - ok
23:52:11.0843 3164 [ B60F58F175DE20A6739194E85B035178 ] rpcapd C:\Program Files\WinPcap\rpcapd.exe
23:52:11.0921 3164 rpcapd - ok
23:52:12.0015 3164 [ AAED593F84AFA419BBAE8572AF87CF6A ] RpcLocator C:\WINDOWS\system32\locator.exe
23:52:12.0031 3164 RpcLocator - ok
23:52:13.0515 3164 [ 6B27A5C03DFB94B4245739065431322C ] RpcSs C:\WINDOWS\System32\rpcss.dll
23:52:13.0515 3164 RpcSs - ok
23:52:13.0593 3164 [ 84D738020C550725635C591FE48C288A ] RServer3 C:\WINDOWS\system32\rserver30\RServer3.exe
23:52:13.0765 3164 RServer3 - ok
23:52:13.0906 3164 [ 471B3F9741D762ABE75E9DEEA4787E47 ] RSVP C:\WINDOWS\system32\rsvp.exe
23:52:13.0906 3164 RSVP - ok
23:52:13.0921 3164 [ BF2466B3E18E970D8A976FB95FC1CA85 ] SamSs C:\WINDOWS\system32\lsass.exe
23:52:13.0921 3164 SamSs - ok
23:52:13.0953 3164 [ 86D007E7A654B9A71D1D7D856B104353 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
23:52:13.0968 3164 SCardSvr - ok
23:52:14.0000 3164 [ 0A9A7365A1CA4319AA7C1D6CD8E4EAFA ] Schedule C:\WINDOWS\system32\schedsvc.dll
23:52:14.0000 3164 Schedule - ok
23:52:14.0234 3164 [ A689D522EEDF89401E1DA2FE883AA7EC ] SCREAMINGBDRIVER C:\WINDOWS\system32\drivers\ScreamingBAudio.sys
23:52:14.0234 3164 SCREAMINGBDRIVER - ok
23:52:14.0312 3164 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
23:52:14.0328 3164 Secdrv - ok
23:52:14.0343 3164 [ CBE612E2BB6A10E3563336191EDA1250 ] seclogon C:\WINDOWS\System32\seclogon.dll
23:52:14.0343 3164 seclogon - ok
23:52:14.0359 3164 [ 7FDD5D0684ECA8C1F68B4D99D124DCD0 ] SENS C:\WINDOWS\system32\sens.dll
23:52:14.0359 3164 SENS - ok
23:52:14.0390 3164 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
23:52:14.0390 3164 serenum - ok
23:52:14.0406 3164 [ CCA207A8896D4C6A0C9CE29A4AE411A7 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
23:52:14.0406 3164 Serial - ok
23:52:14.0468 3164 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\DRIVERS\sfloppy.sys
23:52:14.0468 3164 Sfloppy - ok
23:52:14.0671 3164 [ 83F41D0D89645D7235C051AB1D9523AC ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
23:52:14.0687 3164 SharedAccess - ok
23:52:14.0734 3164 [ 99BC0B50F511924348BE19C7C7313BBF ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
23:52:14.0750 3164 ShellHWDetection - ok
23:52:14.0750 3164 Simbad - ok
23:52:14.0828 3164 [ 903B5B4CAA9A85B85BA57E411F7235FA ] SliceDisk5 C:\Program Files\A-FF Find and Mount\slicedisk.sys
23:52:14.0828 3164 SliceDisk5 - ok
23:52:14.0890 3164 [ 866D538EBE33709A5C9F5C62B73B7D14 ] SLIP C:\WINDOWS\system32\DRIVERS\SLIP.sys
23:52:14.0906 3164 SLIP - ok
23:52:14.0906 3164 Sparrow - ok
23:52:14.0984 3164 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
23:52:15.0000 3164 splitter - ok
23:52:15.0031 3164 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
23:52:15.0031 3164 Spooler - ok
23:52:15.0062 3164 [ D2B096CD2F56FAC6EEEED9A77DDF6DC8 ] SQLBrowser C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
23:52:15.0078 3164 SQLBrowser - ok
23:52:15.0093 3164 [ 76BB022C2FB6902FD5BDD4F78FC13A5D ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
23:52:15.0093 3164 sr - ok
23:52:15.0125 3164 [ 3805DF0AC4296A34BA4BF93B346CC378 ] srservice C:\WINDOWS\system32\srsvc.dll
23:52:15.0125 3164 srservice - ok
23:52:15.0156 3164 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
23:52:15.0187 3164 Srv - ok
23:52:15.0359 3164 [ 0A5679B3714EDAB99E357057EE88FCA6 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
23:52:15.0375 3164 SSDPSRV - ok
23:52:15.0421 3164 [ 6E8127F55AECD75B403A5AC792F43E72 ] sst5BB C:\WINDOWS\system32\drivers\sst5BB.sys
23:52:15.0437 3164 sst5BB - ok
23:52:15.0468 3164 [ E57B778208C783D8DEBAB320C16A1B82 ] StarOpen C:\WINDOWS\system32\drivers\StarOpen.sys
23:52:15.0484 3164 StarOpen - ok
23:52:15.0562 3164 [ 951801DFB54D86F611F0AF47825476F9 ] STHDA C:\WINDOWS\system32\drivers\sthda.sys
23:52:15.0687 3164 STHDA - ok
23:52:15.0750 3164 [ A9573045BAA16EAB9B1085205B82F1ED ] StillCam C:\WINDOWS\system32\DRIVERS\serscan.sys
23:52:15.0765 3164 StillCam - ok
23:52:15.0796 3164 [ 8BAD69CBAC032D4BBACFCE0306174C30 ] stisvc C:\WINDOWS\system32\wiaservc.dll
23:52:15.0828 3164 stisvc - ok
23:52:15.0859 3164 [ 77813007BA6265C4B6098187E6ED79D2 ] streamip C:\WINDOWS\system32\DRIVERS\StreamIP.sys
23:52:15.0859 3164 streamip - ok
23:52:16.0375 3164 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
23:52:16.0375 3164 swenum - ok
23:52:16.0578 3164 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
23:52:16.0593 3164 swmidi - ok
23:52:16.0593 3164 SwPrv - ok
23:52:16.0593 3164 symc810 - ok
23:52:16.0609 3164 symc8xx - ok
23:52:16.0609 3164 sym_hi - ok
23:52:16.0609 3164 sym_u3 - ok
23:52:17.0359 3164 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
23:52:17.0359 3164 sysaudio - ok
23:52:17.0390 3164 [ C7ABBC59B43274B1109DF6B24D617051 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
23:52:17.0406 3164 SysmonLog - ok
23:52:17.0437 3164 [ 3CB78C17BB664637787C9A1C98F79C38 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
23:52:17.0453 3164 TapiSrv - ok
23:52:17.0500 3164 [ D24EA301E2B36C4E975FD216CA85D8E7 ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
23:52:17.0546 3164 Tcpip - ok
23:52:17.0562 3164 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
23:52:17.0562 3164 TDPIPE - ok
23:52:17.0593 3164 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
23:52:17.0593 3164 TDTCP - ok
23:52:17.0609 3164 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
23:52:17.0625 3164 TermDD - ok
23:52:17.0890 3164 [ 515F42E2BF149342CABC1B16A10C2212 ] TermService C:\WINDOWS\System32\termsrv.dll
23:52:17.0906 3164 TermService - ok
23:52:17.0937 3164 [ 99BC0B50F511924348BE19C7C7313BBF ] Themes C:\WINDOWS\System32\shsvcs.dll
23:52:17.0937 3164 Themes - ok
23:52:17.0968 3164 [ DB7205804759FF62C34E3EFD8A4CC76A ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe
23:52:17.0968 3164 TlntSvr - ok
23:52:17.0984 3164 TosIde - ok
23:52:18.0015 3164 [ E830CDA96B3C43971874C3BEE2D0BB18 ] TPkd C:\WINDOWS\system32\drivers\TPkd.sys
23:52:18.0015 3164 TPkd - ok
23:52:18.0062 3164 [ 55BCA12F7F523D35CA3CB833C725F54E ] TrkWks C:\WINDOWS\system32\trkwks.dll
23:52:18.0062 3164 TrkWks - ok
23:52:18.0109 3164 [ 8F861EDA21C05857EB8197300A92501C ] tunmp C:\WINDOWS\system32\DRIVERS\tunmp.sys
23:52:18.0109 3164 tunmp - ok
23:52:18.0140 3164 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
23:52:18.0156 3164 Udfs - ok
23:52:18.0156 3164 UIUSys - ok
23:52:18.0171 3164 ultra - ok
23:52:18.0203 3164 [ 3D571A3CBF127E9555EAD2F8598F425F ] UnsignedThemes C:\WINDOWS\UnsignedThemesSvc.exe
23:52:19.0250 3164 UnsignedThemes - ok
23:52:20.0125 3164 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
23:52:20.0187 3164 Update - ok
23:52:20.0312 3164 [ 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 ] upnphost C:\WINDOWS\System32\upnphost.dll
23:52:20.0359 3164 upnphost - ok
23:52:20.0390 3164 [ 05365FB38FCA1E98F7A566AAAF5D1815 ] UPS C:\WINDOWS\System32\ups.exe
23:52:20.0390 3164 UPS - ok
23:52:20.0421 3164 [ E919708DB44ED8543A7C017953148330 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys
23:52:20.0437 3164 usbaudio - ok
23:52:20.0484 3164 [ 5353218B3265E3B8190335059F697A11 ] usbbus C:\WINDOWS\system32\DRIVERS\lgusbbus.sys
23:52:20.0484 3164 usbbus - ok
23:52:20.0500 3164 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
23:52:20.0515 3164 usbccgp - ok
23:52:20.0531 3164 [ 7DD3EEFC62A1EF44E5F940FA651ED9ED ] UsbDiag C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys
23:52:20.0546 3164 UsbDiag - ok
23:52:20.0593 3164 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
23:52:20.0593 3164 usbehci - ok
23:52:21.0312 3164 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
23:52:21.0312 3164 usbhub - ok
23:52:21.0468 3164 [ 083031A78822ECCBD7510BCCD3E20D4C ] USBModem C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys
23:52:21.0484 3164 USBModem - ok
23:52:21.0515 3164 [ A0B8CF9DEB1184FBDD20784A58FA75D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys
23:52:21.0515 3164 usbscan - ok
23:52:21.0562 3164 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
23:52:21.0562 3164 USBSTOR - ok
23:52:21.0593 3164 [ 26496F9DEE2D787FC3E61AD54821FFE6 ] usbuhci C:\WINDOWS\system32\DRIVERS\usbuhci.sys
23:52:21.0625 3164 usbuhci - ok
23:52:22.0031 3164 [ 63BBFCA7F390F4C49ED4B96BFB1633E0 ] usbvideo C:\WINDOWS\system32\Drivers\usbvideo.sys
23:52:22.0093 3164 usbvideo - ok
23:52:22.0125 3164 [ 628C632710AB55747CB5BCC68716BE21 ] uxpatch C:\WINDOWS\system32\drivers\uxpatch.sys
23:52:22.0125 3164 uxpatch - ok
23:52:22.0171 3164 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
23:52:22.0187 3164 VgaSave - ok
23:52:22.0203 3164 ViaIde - ok
23:52:22.0359 3164 [ 817DA66B1B889FAD1DBF669E0E2F3228 ] vmm C:\WINDOWS\system32\Drivers\vmm.sys
23:52:22.0390 3164 vmm - ok
23:52:22.0437 3164 [ 4C8FCB5CC53AAB716D810740FE59D025 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
23:52:22.0437 3164 VolSnap - ok
23:52:22.0484 3164 [ 2ABE8281DB609D8BB1BD1B2F93800D5F ] VPCNetS2 C:\WINDOWS\system32\DRIVERS\VMNetSrv.sys
23:52:22.0484 3164 VPCNetS2 - ok
23:52:22.0500 3164 [ 7A9DB3A67C333BF0BD42E42B8596854B ] VSS C:\WINDOWS\System32\vssvc.exe
23:52:22.0531 3164 VSS - ok
23:52:22.0562 3164 [ 54AF4B1D5459500EF0937F6D33B1914F ] W32Time C:\WINDOWS\system32\w32time.dll
23:52:22.0562 3164 W32Time - ok
23:52:22.0625 3164 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
23:52:22.0625 3164 Wanarp - ok
23:52:22.0625 3164 WDICA - ok
23:52:23.0578 3164 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
23:52:23.0578 3164 wdmaud - ok
23:52:23.0593 3164 [ 77A354E28153AD2D5E120A5A8687BC06 ] WebClient C:\WINDOWS\System32\webclnt.dll
23:52:23.0609 3164 WebClient - ok
23:52:23.0812 3164 [ A8596CF86D445269A42ECC08B7066A4C ] winachsf C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
23:52:23.0875 3164 winachsf - ok
23:52:24.0203 3164 [ 2D0E4ED081963804CCC196A0929275B5 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
23:52:24.0218 3164 winmgmt - ok
23:52:24.0265 3164 [ 18F347402DA544A780949B8FDF83351B ] WinRM C:\WINDOWS\system32\WsmSvc.dll
23:52:24.0406 3164 WinRM - ok
23:52:24.0437 3164 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
23:52:24.0453 3164 WmdmPmSN - ok
23:52:24.0500 3164 [ E76F8807070ED04E7408A86D6D3A6137 ] Wmi C:\WINDOWS\System32\advapi32.dll
23:52:24.0593 3164 Wmi - ok
23:52:24.0625 3164 [ C42584FD66CE9E17403AEBCA199F7BDB ] WmiAcpi C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
23:52:24.0656 3164 WmiAcpi - ok
23:52:24.0859 3164 [ E0673F1106E62A68D2257E376079F821 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
23:52:24.0906 3164 WmiApSrv - ok
23:52:25.0078 3164 [ F74E3D9A7FA9556C3BBB14D4E5E63D3B ] WMPNetworkSvc C:\Program Files\Windows Media Player\WMPNetwk.exe
23:52:25.0265 3164 WMPNetworkSvc - ok
23:52:25.0562 3164 [ CF4DEF1BF66F06964DC0D91844239104 ] WpdUsb C:\WINDOWS\system32\DRIVERS\wpdusb.sys
23:52:25.0578 3164 WpdUsb - ok
23:52:26.0015 3164 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
23:52:26.0375 3164 WPFFontCache_v0400 - ok
23:52:26.0421 3164 [ 6ABE6E225ADB5A751622A9CC3BC19CE8 ] WS2IFSL C:\WINDOWS\System32\drivers\ws2ifsl.sys
23:52:26.0437 3164 WS2IFSL - ok
23:52:26.0484 3164 [ 4160CBE59D9B5BE22E4C3897E8DB9D56 ] WsAudio_DeviceS(1) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(1).sys
23:52:26.0484 3164 WsAudio_DeviceS(1) - ok
23:52:26.0531 3164 [ 4160CBE59D9B5BE22E4C3897E8DB9D56 ] WsAudio_DeviceS(2) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(2).sys
23:52:26.0546 3164 WsAudio_DeviceS(2) - ok
23:52:26.0578 3164 [ 4160CBE59D9B5BE22E4C3897E8DB9D56 ] WsAudio_DeviceS(3) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(3).sys
23:52:26.0593 3164 WsAudio_DeviceS(3) - ok
23:52:26.0609 3164 [ 4160CBE59D9B5BE22E4C3897E8DB9D56 ] WsAudio_DeviceS(4) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(4).sys
23:52:26.0625 3164 WsAudio_DeviceS(4) - ok
23:52:26.0859 3164 [ 4160CBE59D9B5BE22E4C3897E8DB9D56 ] WsAudio_DeviceS(5) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(5).sys
23:52:26.0968 3164 WsAudio_DeviceS(5) - ok
23:52:27.0093 3164 [ 7C278E6408D1DCE642230C0585A854D5 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
23:52:27.0125 3164 wscsvc - ok
23:52:27.0171 3164 [ C98B39829C2BBD34E454150633C62C78 ] WSTCODEC C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
23:52:27.0187 3164 WSTCODEC - ok
23:52:27.0234 3164 [ 35321FB577CDC98CE3EB3A3EB9E4610A ] wuauserv C:\WINDOWS\system32\wuauserv.dll
23:52:27.0250 3164 wuauserv - ok
23:52:27.0296 3164 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
23:52:27.0312 3164 WudfPf - ok
23:52:27.0328 3164 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
23:52:27.0375 3164 WudfRd - ok
23:52:27.0406 3164 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
23:52:27.0421 3164 WudfSvc - ok
23:52:27.0484 3164 [ 81DC3F549F44B1C1FFF022DEC9ECF30B ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
23:52:27.0546 3164 WZCSVC - ok
23:52:28.0093 3164 [ 295D21F14C335B53CB8154E5B1F892B9 ] xmlprov C:\WINDOWS\System32\xmlprov.dll
23:52:28.0140 3164 xmlprov - ok
23:52:28.0140 3164 yqlutk - ok
23:52:28.0156 3164 ================ Scan global ===============================
23:52:28.0187 3164 [ 42F1F4C0AFB08410E5F02D4B13EBB623 ] C:\WINDOWS\system32\basesrv.dll
23:52:28.0265 3164 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
23:52:28.0343 3164 [ 8C7DCA4B158BF16894120786A7A5F366 ] C:\WINDOWS\system32\winsrv.dll
23:52:28.0359 3164 [ 65DF52F5B8B6E9BBD183505225C37315 ] C:\WINDOWS\system32\services.exe
23:52:28.0359 3164 [Global] - ok
23:52:28.0359 3164 ================ Scan MBR ==================================
23:52:28.0375 3164 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
23:52:36.0578 3164 \Device\Harddisk0\DR0 - ok
23:52:36.0578 3164 ================ Scan VBR ==================================
23:52:36.0640 3164 [ 5A1608BAE34067EC1BB0246E83FC94CC ] \Device\Harddisk0\DR0\Partition1
23:52:36.0921 3164 \Device\Harddisk0\DR0\Partition1 - ok
23:52:36.0984 3164 [ 80A91BBE12587E3E53D906A25235B93D ] \Device\Harddisk0\DR0\Partition2
23:52:36.0984 3164 \Device\Harddisk0\DR0\Partition2 - ok
23:52:36.0984 3164 ============================================================
23:52:36.0984 3164 Scan finished
23:52:36.0984 3164 ============================================================
23:52:37.0000 3852 Detected object count: 0
23:52:37.0000 3852 Actual detected object count: 0

Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#4 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 12:18 AM

aswMBR log:_____________________________________________________________________________________________


aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2013-01-15 00:04:41
-----------------------------
00:04:41.468 OS Version: Windows 5.1.2600 Service Pack 3
00:04:41.468 Number of processors: 2 586 0xE08
00:04:41.468 ComputerName: DELLD620 UserName:
00:04:42.437 Initialize success
00:04:54.046 AVAST engine defs: 13011402
00:04:56.656 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
00:04:56.656 Disk 0 Vendor: ST9500420AS 0001BSM2 Size: 476940MB BusType: 3
00:04:56.656 Disk 0 MBR read successfully
00:04:56.671 Disk 0 MBR scan
00:04:56.687 Disk 0 Windows XP default MBR code
00:04:56.687 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 51732 MB offset 63
00:04:56.687 Disk 0 Partition - 00 0F Extended LBA 425207 MB offset 105948736
00:04:56.703 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 425207 MB offset 105948738
00:04:56.703 Disk 0 scanning sectors +976773105
00:04:56.750 Disk 0 scanning C:\WINDOWS\system32\drivers
00:05:11.828 Service scanning
00:05:32.312 Modules scanning
00:05:42.218 Disk 0 trace - called modules:
00:05:42.234 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
00:05:42.234 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8aa3eab8]
00:05:42.234 3 CLASSPNP.SYS[b80e8fd7] -> nt!IofCallDriver -> \Device\00000092[0x8aa36f18]
00:05:42.234 5 ACPI.sys[b7f5f620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8aa56d98]
00:05:42.640 AVAST engine scan C:\WINDOWS
00:05:48.734 AVAST engine scan C:\WINDOWS\system32
00:10:28.953 AVAST engine scan C:\WINDOWS\system32\drivers
00:11:12.390 AVAST engine scan C:\Documents and Settings\Administrator
00:15:06.234 AVAST engine scan C:\Documents and Settings\All Users
00:15:51.812 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Administrator\Desktop\MBR.dat"
00:15:51.812 The log file has been saved successfully to "C:\Documents and Settings\Administrator\Desktop\aswMBR.txt"
00:17:15.515 Scan finished successfully
00:20:20.218 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Administrator\Desktop\MBR.dat"
00:20:20.218 The log file has been saved successfully to "C:\Documents and Settings\Administrator\Desktop\aswMBR.txt"

Edited by FrankOtheMountaiN, 15 January 2013 - 12:21 AM.


Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#5 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 12:46 AM

I'm going to have to delay posting the ESET log. It's at 30% right now and running. Gotta get some sleep. Will post in the morning.
Thanks again, Frank

Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#6 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:32 AM

Posted 15 January 2013 - 01:41 AM

:thumbup2:

#7 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 07:17 AM

ESET list of threats : No threats found

Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#8 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:32 AM

Posted 15 January 2013 - 08:12 AM

Download

Malwarebytes

Install,update and run a full scan

Click on Show results.Right click on the list ,select all and remove them.

Post the generated log here

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size
List restore points

Click Go and post the result.

Download

Farbar service scanner

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.

Download

adware cleaner

Launch it click on Delete

A log should be generated after scan ,post it here

Download

Junkware removal tool

For vista and windows 7 right click on the tool and select run as administrator

After scan gets completed,post the generated log here.


Download

http://www.bleepingcomputer.com/download/rkill/

Run it and after scan finishes,post the contents of RKILL log located on the desktop here


Download

Autoruns

Extract and launch autoruns.exe

Allow the scan to get finished

Now click on FILE-SAVE

Filename:Autoruns.txt
Save as :Text

Paste the contents of text here

#9 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 10:21 AM

MBAM full scan: No malicious items detected

Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org

Database version: v2013.01.15.09

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Administrator :: DELLD620 [administrator]

1/15/2013 9:42:39 AM
mbam-log-2013-01-15 (09-42-39).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 312182
Time elapsed: 36 minute(s), 44 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#10 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 10:30 AM

MINITOOLBOX RESULTS:



MiniToolBox by Farbar Version:10-01-2013
Ran by Administrator (administrator) on 15-01-2013 at 10:22:28
Running from "C:\Documents and Settings\Administrator\Desktop"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Windows IP Configuration



Successfully flushed the DNS Resolver Cache.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.socks_version", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================
127.0.0.1 localhost
127.0.0.1 localhost

========================= IP Configuration: ================================

Intel® PRO/Wireless 3945ABG Network Connection = Wireless (Connected)
Broadcom NetXtreme 57xx Gigabit Controller = Wired (Media disconnected)


# ----------------------------------
# Interface IP Configuration
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Wired"

set address name="Wired" source=static addr=192.168.1.160 mask=255.255.255.0
set address name="Wired" gateway=192.168.1.1 gwmetric=0
set dns name="Wired" source=static addr=192.168.1.1 register=PRIMARY
set wins name="Wired" source=static addr=none

# Interface IP Configuration for "Wireless"

set address name="Wireless" source=static addr=192.168.1.162 mask=255.255.255.0
set address name="Wireless" gateway=192.168.1.1 gwmetric=0
set dns name="Wireless" source=static addr=192.168.1.1 register=PRIMARY
set wins name="Wireless" source=static addr=none


popd
# End of interface IP configuration




Windows IP Configuration



Host Name . . . . . . . . . . . . : delld620

Primary Dns Suffix . . . . . . . :

Node Type . . . . . . . . . . . . : Unknown

IP Routing Enabled. . . . . . . . : No

WINS Proxy Enabled. . . . . . . . : Yes



Ethernet adapter Wired:



Media State . . . . . . . . . . . : Media disconnected

Description . . . . . . . . . . . : Broadcom NetXtreme 57xx Gigabit Controller

Physical Address. . . . . . . . . : 00-18-8B-A2-57-19



Ethernet adapter Wireless:



Connection-specific DNS Suffix . :

Description . . . . . . . . . . . : Intel® PRO/Wireless 3945ABG Network Connection

Physical Address. . . . . . . . . : 00-18-DE-82-F3-ED

Dhcp Enabled. . . . . . . . . . . : No

IP Address. . . . . . . . . . . . : 192.168.1.162

Subnet Mask . . . . . . . . . . . : 255.255.255.0

Default Gateway . . . . . . . . . : 192.168.1.1

DNS Servers . . . . . . . . . . . : 192.168.1.1

Server: SAV
Address: 192.168.1.1

Name: google.com
Addresses: 74.125.226.227, 74.125.226.229, 74.125.226.231, 74.125.226.225
74.125.226.226, 74.125.226.230, 74.125.226.232, 74.125.226.228, 74.125.226.233
74.125.226.238, 74.125.226.224



Pinging google.com [74.125.226.224] with 32 bytes of data:



Reply from 74.125.226.224: bytes=32 time=24ms TTL=55

Reply from 74.125.226.224: bytes=32 time=11ms TTL=55



Ping statistics for 74.125.226.224:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 11ms, Maximum = 24ms, Average = 17ms

Server: SAV
Address: 192.168.1.1

Name: yahoo.com
Addresses: 98.138.253.109, 72.30.38.140, 98.139.183.24



Pinging yahoo.com [98.139.183.24] with 32 bytes of data:



Reply from 98.139.183.24: bytes=32 time=384ms TTL=49

Reply from 98.139.183.24: bytes=32 time=608ms TTL=49



Ping statistics for 98.139.183.24:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 384ms, Maximum = 608ms, Average = 496ms



Pinging 127.0.0.1 with 32 bytes of data:



Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 18 8b a2 57 19 ...... Broadcom NetXtreme 57xx Gigabit Controller - Packet Scheduler Miniport
0x3 ...00 18 de 82 f3 ed ...... Intel® PRO/Wireless 3945ABG Network Connection - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.162 25
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
192.168.1.0 255.255.255.0 192.168.1.162 192.168.1.162 25
192.168.1.162 255.255.255.255 127.0.0.1 127.0.0.1 25
192.168.1.255 255.255.255.255 192.168.1.162 192.168.1.162 25
224.0.0.0 240.0.0.0 192.168.1.162 192.168.1.162 25
255.255.255.255 255.255.255.255 192.168.1.162 2 1
255.255.255.255 255.255.255.255 192.168.1.162 192.168.1.162 1
Default Gateway: 192.168.1.1
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 mswsock.dll [File not found] ()
Catalog9 05 mswsock.dll [File not found] ()
Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 16 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 17 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 18 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 19 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 20 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 21 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 22 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 23 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 25 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (01/13/2013 09:09:12 AM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (01/12/2013 05:49:32 AM) (Source: Automatic LiveUpdate Scheduler) (User: DELLD620)
Description: errorFailed unregistering service.

Error: (01/12/2013 05:16:20 AM) (Source: Symantec AntiVirus) (User: )
Description: Security Risk Found!Risk: Remacc.Radmin in File: c:\program files\radmin\raddrv.dll by: Manual scan. Action: Quarantine succeeded. Action Description: The file was quarantined successfully.

Error: (01/12/2013 05:16:17 AM) (Source: Symantec AntiVirus) (User: )
Description: Security Risk Found!Risk: Remacc.Radmin in File: c:\program files\radmin\raddrv.dll by: Manual scan. Action: Quarantine failed. Action Description: The file was left unchanged.

Error: (01/07/2013 03:36:01 PM) (Source: MsiInstaller) (User: DELLD620)
Description: Product: Notification Center -- BlueStacks currently doesn't recognize your graphics card.
It is possible your Graphics Drivers may need to be updated. Please update them and try installing again.(NULL)(NULL)(NULL)(NULL)

Error: (01/05/2013 11:10:36 AM) (Source: Application Error) (User: )
Description: Faulting application explorer.exe, version 6.0.2900.5512, faulting module unknown, version 0.0.0.0, fault address 0x0516ceb0.
Processing media-specific event for [explorer.exe!ws!]

Error: (01/01/2013 06:34:39 PM) (Source: MSSQL$HPWJA) (User: )
Description: UpdateUptimeRegKey: Operating system error 5(Access is denied.) encountered.

Error: (12/29/2012 06:37:02 PM) (Source: Microsoft Office 11) (User: )
Description: Microsoft Office FrontPageFrontPage failed to start correctly last time. Starting FrontPage in safe mode will help you correct or isolate a startup problem in order to successfully start the program. Some functionality may be disabled in this mode.

Do you want to start FrontPage in safe mode?

Error: (11/28/2012 02:44:38 PM) (Source: Application Error) (User: )
Description: Faulting application stupdaterapptelechip77x.exe, version 1.0.1.1010, faulting module stupdaterapptelechip77x.exe, version 1.0.1.1010, fault address 0x000037c3.
Processing media-specific event for [stupdaterapptelechip77x.exe!ws!]

Error: (11/04/2012 11:56:40 AM) (Source: Application Error) (User: )
Description: Faulting application vidcap60.exe, version 6.0.0.1000, faulting module vidcap60.exe, version 6.0.0.1000, fault address 0x000427b3.
Processing media-specific event for [vidcap60.exe!ws!]


System errors:
=============
Error: (01/15/2013 09:42:32 AM) (Source: DCOM) (User: DELLD620)
Description: DCOM got error "%%1058" attempting to start the service MDM with arguments ""
in order to run the server:
{0C0A3666-30C9-11D0-8F20-00805F2CD064}

Error: (01/15/2013 08:55:20 AM) (Source: DCOM) (User: DELLD620)
Description: DCOM got error "%%1058" attempting to start the service MDM with arguments ""
in order to run the server:
{0C0A3666-30C9-11D0-8F20-00805F2CD064}

Error: (01/15/2013 08:51:50 AM) (Source: Service Control Manager) (User: )
Description: The Network Security service terminated with the following error:
%%126

Error: (01/15/2013 08:51:50 AM) (Source: Service Control Manager) (User: )
Description: The Network Security service terminated with the following error:
%%126

Error: (01/15/2013 08:50:09 AM) (Source: NETLOGON) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.

Error: (01/15/2013 07:20:19 AM) (Source: 0) (User: )
Description: \Device\LanmanDatagramReceiverDELLSERVERNetBT_Tcpip_{2166ADE1-5741-4B5

Error: (01/15/2013 00:05:53 AM) (Source: 0) (User: )
Description: \Device\Ide\IdePort0

Error: (01/14/2013 00:52:04 PM) (Source: Service Control Manager) (User: )
Description: The Network Security service terminated with the following error:
%%126

Error: (01/14/2013 00:52:04 PM) (Source: Service Control Manager) (User: )
Description: The Network Security service terminated with the following error:
%%126

Error: (01/14/2013 00:50:25 PM) (Source: NETLOGON) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.


Microsoft Office Sessions:
=========================

=========================== Installed Programs ============================

7-Zip 4.57
Active@ Partition Recovery
Adobe Flash Player 11 ActiveX (Version: 11.5.502.146)
Adobe Flash Player 11 Plugin (Version: 11.5.502.146)
Adobe Photoshop CS (Version: CS)
Advanced Mp3 Wma Recorder and Editor v7.3 Build 685 (Version: v7.3 Build 685)
Aimersoft Music Converter(Build 1.4.2.1)
Aimersoft Video Converter Ultimate(Build 4.1.0.2)
AKAI professional VST Collection v1.0
ALPS Touch Pad Driver
Analog Factory SE 1.2
Antares Auto-Tune 3.06 DirectX
Antares Autotune Evo VST RTAS v6.0.9
Antenna
Apple Application Support (Version: 2.1.7)
Apple Software Update (Version: 2.1.3.127)
Applian FLV and Media Player 3.1.1.12 (Version: 3.1.1.12)
Arturia Minimoog V v1.0
Arturia Moog Modular V v1.1
Arturia Moog Modular V2 v1.0
ASIO4ALL (Version: 2.11 Beta1)
Audiograbber 1.83 SE (Version: 1.83 SE )
Auslogics Duplicate File Finder (Version: 2.4)
BitPim 1.0.7.20080908 (Version: 1.0.7.20080908)
Bome's SendSX V1.30beta3
Broadcom Gigabit Integrated Controller (Version: 10.15.08)
Calculator Powertoy for Windows XP (Version: 1.00.0001)
Camtasia Studio 6 (Version: 6.0.3)
CCleaner (Version: 3.02)
CDBurnerXP (Version: 4.4.1.3341)
CombiWave 4.0.1.4 (Version: 4.0.1.4)
CommView for WiFi (Version: 6.3)
Conexant HDA D110 MDC V.92 Modem
Conexant HDA D330 MDC V.92 Modem
ConvertHelper 2.2
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
DFF2 (Version: 1.0.0)
Duplicate Cleaner Free 3.0.0 (Version: 3.0.0)
Duplicate File Detective 4 by Moon-Dancer
DVD Decrypter (Remove Only)
ESET Online Scanner v3
EVEREST Home Edition v2.00 (Version: 2.00)
Find and Mount 2.31 (Version: 2.31)
FL Studio 10
FL Studio 9
Flash Decompiler Trillix (Version: 4.2)
FlashBoot 2.1s
Fliqlo Screen Saver
Foxit Reader (Version: 5.4.3.920)
GetDiz 3.0 (Version: 3.0)
Google Earth Plug-in (Version: 6.2.2.6613)
Google Update Helper (Version: 1.3.21.115)
Hardcore
HijackThis 1.99.1 (Version: 1.99.1)
HitmanPro 3.7 (Version: 3.7.0.185)
HP Color LaserJet 4700 PCL 6 (02/24/2007 61.071.661.41) (Version: 02/24/2007 61.071.661.41)
HyperSnap 6 (Version: 6.21.04)
IK Multimedia SampleTank XL DXi VSTi RTAS v2.1.0
ImgBurn (Version: 2.5.7.0)
Intel PROSet Wireless
Intel® Graphics Media Accelerator Driver (Version: 6.14.10.4446)
Intel® PROSet/Wireless WiFi Software (Version: 12.04.4000)
IP Monitor (Version: 5.0)
iWisoft Free Video Converter 1.2 (Version: 1.2)
iZotope iDrum (Version: 1.75)
keysound (remove only)
LAN Search Pro 9.1.1
LEDhead Alpha 4
Lernout & Hauspie TruVoice American English TTS Engine
LG USB Drivers
License Support (Version: 1.2.0.5555)
Malwarebytes Anti-Malware version 1.70.0.1100 (Version: 1.70.0.1100)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2742597)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office FrontPage 2003 (Version: 11.0.8173.0)
Microsoft Office Groove MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office InfoPath MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft Software Update for Web Folders (English) 14 (Version: 14.0.6029.1000)
Microsoft Speech Recognition Engine 4.0 (English)
Microsoft SQL Server 2005 Express Edition (HPWJA) (Version: 9.2.3042.00)
Microsoft SQL Server Native Client (Version: 9.00.3042.00)
Microsoft SQL Server Setup Support Files (English) (Version: 9.00.3042.00)
Microsoft Text-to-Speech Engine 4.0 (English)
Microsoft Tool Web Package:INUSE.EXE (Version: 1.0.0.1)
Microsoft Virtual PC 2007 SP1 (Version: 6.0.210.0)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
MiniTool Partition Wizard Home Edition 7.1
MiniTool Partition Wizard Home Edition 7.6.1
MirageEditor (Version: 1.10.1118)
Moog Modular V 2.5
Mozilla Firefox 18.0 (x86 en-US) (Version: 18.0)
Mozilla Maintenance Service (Version: 18.0)
MSVCRT Redists (Version: 1.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 6.0 Parser (Version: 6.10.1129.0)
N.I. Guitar Rig v2.0.2 (Version: 2.0.2)
Native Instruments B4 Tone Wheels Bundle v1.11
Native Instruments FM7 Sounds Vol.2
Native Instruments FM7 v1.10.006
Nero Suite
NetWorx 5.2.2
Noise Reduction Plug-In 2.0 (Version: 2.0.502)
NVIDIA Control Panel 305.93 (Version: 305.93)
NVIDIA Drivers
NVIDIA Graphics Driver 305.93 (Version: 305.93)
NVIDIA Install Application (Version: 2.1002.82.513)
NVIDIA nView 136.49 (Version: 136.49)
OmniPeek (Version: 6.0.2)
Open Ports Scanner 1.2
OZ776 SCR Driver V1.1.4.202 (Version: 1.1.4.202)
PaperPort Image Printer (Version: 1.00.0000)
PoiZone
Power MP3 WMA Recorder 1.02
PureVoice (Version: 2.04.000)
QPST
QuickTime (Version: 7.72.80.56)
Remote Desktop Connection (Version: 5.2.3790.0)
Sakura
Sawer
ScanSoft PaperPort 11 (Version: 11.2.0000)
SeaTools for Windows (Version: 1.2.0.5)
SigmaTel Audio (Version: 5.10.5210.0)
SMAC 2.0
Sonigen Modular version
Sophos Virus Removal Tool (Version: 2.2)
Sound Forge Pro 10.0 (Version: 10.0.506)
SoundToys Native Effects V4
Spark 1.4
StandAlone DVR Center Application
StandAlone DVR Remote Application
StandAlone DVR Viewer Application
Symantec Ghost Console Client (Version: 110.00.1502)
TallStick TS-AudioToMIDI 3.30 (remove only)
TextPipe 9.1 (Version: 9.1)
The T-Pain Effect Bundle (Version: 1.02)
Timeworks Millenium Pack
Toxic Biohazard
TurboTax 2012 (Version: 2012.0)
TurboTax 2012 WinPerFedFormset (Version: 012.000.1594)
TurboTax 2012 WinPerReleaseEngine (Version: 012.000.0363)
TurboTax 2012 WinPerTaxSupport (Version: 012.000.0157)
TurboTax 2012 wnyiper (Version: 012.000.1156)
TurboTax 2012 wrapper (Version: 012.000.0127)
Tweak UI
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2687277) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition
Update for Windows Internet Explorer 8 (KB2447568) (Version: 1)
Update for Windows Internet Explorer 8 (KB2598845) (Version: 1)
Update for Windows Internet Explorer 8 (KB2632503) (Version: 1)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows XP (KB2492386) (Version: 1)
Update for Windows XP (KB2541763) (Version: 1)
Update for Windows XP (KB2641690) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
UxStyle Core Beta (Version: 0.2.1.1)
Vegas Pro 10.0 (Version: 10.0.466)
Visual C++ Redistributables (Version: 1.2.0.5555)
VLC media player 2.0.3 (Version: 2.0.3)
WaveMachine Labs Drumagog Platinum v5.11
WebFldrs XP (Version: 9.50.7523)
WildPackets OmniPeek 6.0.2 (Version: 6.0.2)
Windows 7 Upgrade Advisor (Version: 2.0.5000.0)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2)
Windows Media Format 11 runtime
Windows Media Player 11
Windows Support Tools (Version: 5.1.2600.2180)
WinPatrol (Version: 25.0.2012.5)
WinPcap 4.1.2 (Version: 4.1.0.2001)
WinRAR archiver
WinSetupFromUSB
Yahoo! Messenger
Yawcam 0.3.9

========================= Memory info: ===================================

Percentage of memory in use: 33%
Total physical RAM: 2038.05 MB
Available physical RAM: 1353.76 MB
Total Pagefile: 3408.73 MB
Available Pagefile: 2954.34 MB
Total Virtual: 2047.88 MB
Available Virtual: 1975.07 MB

========================= Partitions: =====================================

1 Drive c: (XP 37 GIGS) (Fixed) (Total:50.52 GB) (Free:25.61 GB) NTFS
4 Drive f: (Frank Audio-415gigs) (Fixed) (Total:415.24 GB) (Free:180.31 GB) NTFS

========================= Users: ========================================

User accounts for \\DELLD620

600m Administrator ASPNET
Guest HelpAssistant lemure
sonny SUPPORT_388945a0

========================= Restore Points ==================================


**** End of log ****


Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#11 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 10:35 AM

Farbar results:

Farbar Service Scanner Version: 05-01-2013
Ran by Administrator (administrator) on 15-01-2013 at 10:33:21
Running from "C:\Documents and Settings\Administrator\Desktop"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Attempt to access Google IP returned error. Google IP is offline
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============
Srservice Service is not running. Checking service configuration:
The start type of Srservice service is OK.
The ImagePath of Srservice service is OK.
The ServiceDll of Srservice service is OK.


System Restore Disabled Policy:
========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=DWORD:1


Security Center:
============
wscsvc Service is not running. Checking service configuration:
The start type of wscsvc service is set to Demand. The default start type is Auto.
The ImagePath of wscsvc service is OK.
The ServiceDll of wscsvc service is OK.
Checking LEGACY_wscsvc: ATTENTION!=====> Unable to open LEGACY_wscsvc\0000 registry key. The key does not exist.


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys
[2004-08-03 13:07] - [2012-09-08 13:16] - 0361600 ____A (Microsoft Corporation) D24EA301E2B36C4E975FD216CA85D8E7

C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit

Extra List:
=======
Bridge(10) BridgeMP(9) Gpc(3) IPSec(5) NetBT(6) PSched(7) Tcpip(4) VPCNetS2(13)
0x0F0000000500000001000000020000000300000004000000060000000700000008000000090000000A0000000B0000000C0000000D0000000E0000000F000000
IpSec Tag value is correct.

**** End of log ****

Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#12 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 10:40 AM

adwcleaner results:

# AdwCleaner v2.105 - Logfile created 01/15/2013 at 10:36:34
# Updated 08/01/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Administrator - DELLD620
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Administrator\Desktop\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****


***** [Registry] *****


***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Mozilla Firefox v18.0 (en-US)

File : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\febeprof.Frank\prefs.js

[OK] File is clean.

File : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\obn3q3vk.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[R6].txt - [990 octets] - [15/01/2013 10:35:25]
AdwCleaner[S5].txt - [922 octets] - [15/01/2013 10:36:34]

########## EOF - C:\AdwCleaner[S5].txt - [981 octets] ##########


Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#13 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 10:52 AM

JRT log:


~~~ Registry Values

Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{0633ee93-d776-472f-a0ff-e1416b8b2e3a}\\DisplayName
Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{0633ee93-d776-472f-a0ff-e1416b8b2e3a}\\URL



~~~ Registry Keys

Successfully deleted: [Registry Key] hkey_current_user\software\billp studios\detected\startup



~~~ Files

Successfully deleted: [File] "C:\WINDOWS\system32\dds_trash_log.cmd"



~~~ Folders



~~~ FireFox

Successfully deleted the following from C:\Documents and Settings\Administrator\Application Data\mozilla\firefox\profiles\febeprof.Frank\prefs.js

user_pref("extensions.jid1-F9UJ2thwoAm5gQ@jetpack.install-event-fired", true);
user_pref("extensions.ziinkcl@Ziink.options", "{\"emailProvider\":\"gmail\",\"smartMode\":false,\"lazyLoad\":false,\"showTn\":true,\"hlNew\":true,\"showAdTextChars\":\"0\",\"h
Emptied folder: C:\Documents and Settings\Administrator\Application Data\mozilla\firefox\profiles\obn3q3vk.default\minidumps [2 files]
Emptied folder: C:\Documents and Settings\Administrator\Application Data\mozilla\firefox\profiles\febeprof.Frank\minidumps [5 files]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Tue 01/15/2013 at 10:46:42.00
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Edited by FrankOtheMountaiN, 15 January 2013 - 10:53 AM.


Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#14 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 10:59 AM

RKILL LOG:

Rkill 2.4.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2013 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 01/15/2013 10:55:37 AM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* C:\WINDOWS\system32\hkcmd.exe (PID: 1092) [WD-HEUR]
* C:\WINDOWS\system32\igfxpers.exe (PID: 1100) [WD-HEUR]
* C:\WINDOWS\system32\igfxsrvc.exe (PID: 1132) [WD-HEUR]

3 proccesses terminated!

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* System Restore Disabled

[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = dword:00000001

Checking Windows Service Integrity:

* System Restore Service (srservice) is not Running.
Startup Type set to: Automatic

* Security Center (wscsvc) is not Running.
Startup Type set to: Manual

* System Restore Filter Driver (sr) is not Running.
Startup Type set to: Disabled

* RpcSs => %SystemRoot%\system32\svchost.exe -k rpcss [Incorrect ImagePath]

Searching for Missing Digital Signatures:

* C:\WINDOWS\System32\Drivers\tcpip.sys [NoSig]
+-> C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys : 361,600 : 06/19/2008 11:59 PM : ad978a1b783b5719720cff204b666c8e [Pos Repl]
+-> C:\WINDOWS\ERDNT\cache\tcpip.sys : 361,600 : 06/19/2008 11:51 PM : 9aefa14bd6b182d61e3119fa5f436d3d [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\TCPIP.SYS : 361,344 : 04/13/2008 11:20 AM : 93ea8d04ec73a85db02eb8805988f733 [Pos Repl]
+-> C:\WINDOWS\system32\dllcache\TCPIP.SYS : 361,600 : 09/08/2012 01:16 PM : d24ea301e2b36c4e975fd216ca85d8e7 [Pos Repl]

* C:\WINDOWS\System32\termsrv.dll [NoSig]

* C:\WINDOWS\System32\winlogon.exe [NoSig]
+-> C:\WINDOWS\ERDNT\cache\winlogon.exe : 507,904 : 04/13/2008 01:12 AM : ed0ef0a136dec83df69f04118870003e [Pos Repl]
+-> C:\WINDOWS\ServicePackFiles\i386\winlogon.exe : 507,904 : 04/13/2008 01:12 AM : ed0ef0a136dec83df69f04118870003e [Pos Repl]

Checking HOSTS File:

* HOSTS file entries found:

127.0.0.1 localhost

Program finished at: 01/15/2013 10:56:39 AM
Execution time: 0 hours(s), 1 minute(s), and 1 seconds(s)



Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.


#15 FrankOtheMountaiN

FrankOtheMountaiN
  • Topic Starter

  • Members
  • 514 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NY
  • Local time:03:32 AM

Posted 15 January 2013 - 11:07 AM

autoruns results:

"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "Apoint" "Alps Pointing-device Driver" "Alps Electric Co., Ltd." "c:\program files\apoint\apoint.exe"
+ "igfxhkcmd" "hkcmd Module" "Intel Corporation" "c:\windows\system32\hkcmd.exe"
+ "igfxpers" "persistence Module" "Intel Corporation" "c:\windows\system32\igfxpers.exe"
+ "igfxtray" "igfxTray Module" "Intel Corporation" "c:\windows\system32\igfxtray.exe"
+ "NGTray" "Ghost System Tray Provider" "Symantec Corporation" "c:\program files\symantec\ghost\ngtray.exe"
"C:\Documents and Settings\All Users\Start Menu\Programs\Startup" "" "" ""
+ "tarsier.exe.lnk" "Tarsier" "Trained Monkey" "c:\program files\tarsier.exe"
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""
+ "Address Book 6" "Outlook Express Setup Library" "Microsoft Corporation" "c:\program files\outlook express\setup50.exe"
+ "Microsoft Outlook Express 6" "Outlook Express Setup Library" "Microsoft Corporation" "c:\program files\outlook express\setup50.exe"
"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""
+ "IP Monitor" "IP Monitor" "Barefoot Productions, Inc." "c:\program files\ip monitor\ipmonitor.exe"
"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" ""
+ "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office11\msoxmlmf.dll"
"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" ""
+ "ms-help" "Microsoft® Help Data Services Module" "Microsoft Corporation" "c:\program files\common files\microsoft shared\help\hxds.dll"
+ "ms-itss" "Microsoft® InfoTech Storage System Library" "Microsoft Corporation" "c:\program files\common files\microsoft shared\information retrieval\msitss.dll"
+ "mso-offdap11" "Microsoft Office Web Components 2003" "Microsoft Corporation" "c:\program files\common files\microsoft shared\web components\11\owc11.dll"
+ "x-wpexpert" "WildPackets OmniEngine Component" "WildPackets, Inc." "c:\program files\wildpackets\omnipeek\peekrecon.dll"
"HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components" "" "" ""
+ "0" "" "" "File not found: About:Home"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" ""
+ "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "AimersoftUltimateFileOpreation" "" "" "c:\windows\system32\ai_contextmenu.dll"
+ "tpext" "" "" "c:\program files\datamystic\textpipe\contmenu.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" ""
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files\malwarebytes' anti-malware\mbamext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" ""
+ "7-Zip" "7-Zip Shell Extension" "Igor Pavlov" "c:\program files\7-zip\7-zip.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" ""
+ "VPCHostCopyHook" "Virtual PC Host Shell Extension" "Microsoft Corporation" "c:\program files\microsoft virtual pc\vpcshexh.dll"
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" ""
+ "00nView" "NVIDIA Desktop Explorer, Version 120.91 " "NVIDIA Corporation" "c:\windows\system32\nvshell.dll"
+ "igfxcui" "igfxpph Module" "Intel Corporation" "c:\windows\system32\igfxpph.dll"
+ "NvCplDesktopContext" "NVIDIA Display Properties Extension" "NVIDIA Corporation" "c:\windows\system32\nvcpl.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""
+ "MBAMShlExt" "Malwarebytes Anti-Malware" "Malwarebytes Corporation" "c:\program files\malwarebytes' anti-malware\mbamext.dll"
+ "tpext" "" "" "c:\program files\datamystic\textpipe\contmenu.dll"
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
+ "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" ""
+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" ""
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""
+ "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\office2010\office14\grooveex.dll"
+ "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files\office2010\office14\urlredir.dll"
"HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" ""
+ "&NetWorx Desk Band" "NetWorx Desk Band (32-bit)" "SoftPerfect Research" "c:\program files\networx\deskband.dll"
"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""
+ "Yahoo! Messenger" "Yahoo! Messenger" "Yahoo! Inc." "c:\program files\yahoo!\messenger\yahoomessenger.exe"
"Task Scheduler" "" "" ""
+ "Adobe Flash Player Updater.job" "Adobe® Flash® Player Update Service 11.5 r502" "Adobe Systems Incorporated" "c:\windows\system32\macromed\flash\flashplayerupdateservice.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "6to4" "Windows Power Management Service" "" "File not found: C:\WINDOWS\system32\6to4v32.dll"
+ "AdobeFlashPlayerUpdateSvc" "This service keeps your Adobe Flash Player installation up to date with the latest enhancements and security fixes." "Adobe Systems Incorporated" "c:\windows\system32\macromed\flash\flashplayerupdateservice.exe"
+ "Ias" "Windows Power Management Service" "" "File not found: C:\WINDOWS\system32\Iasv32.dll"
+ "IP Monitor" "IP Monitor network address monitor." "Barefoot Productions, Inc." "c:\program files\ip monitor\ipmonsvc.exe"
+ "NGCLIENT" "Symantec Ghost Client Agent" "Symantec Corporation" "c:\program files\symantec\ghost\ngctw32.exe"
"HKLM\System\CurrentControlSet\Services" "" "" ""
+ "ApfiltrService" "Alps Touch Pad Driver" "Alps Electric Co., Ltd." "c:\windows\system32\drivers\apfiltr.sys"
+ "b57w2k" "Broadcom NetXtreme Gigabit Ethernet NDIS5.1 Driver." "Broadcom Corporation" "c:\windows\system32\drivers\b57xp32.sys"
+ "catchme" "" "" "File not found: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys"
+ "Changer" "" "" "File not found: C:\WINDOWS\System32\Drivers\Changer.sys"
+ "guardian2" "O2Micro USB CCID SmartCard Reader" "O2Micro" "c:\windows\system32\drivers\oz776.sys"
+ "HDAudBus" "High Definition Audio Bus Driver v1.0a" "Windows ® Server 2003 DDK provider" "c:\windows\system32\drivers\hdaudbus.sys"
+ "HSF_DPV" "HSF_DP driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\hsf_dpv.sys"
+ "HSFHWAZL" "HSF_HWAZL WDM driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\hsfhwazl.sys"
+ "HSXHWAZL" "HSF_HWAZL WDM driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\hsxhwazl.sys"
+ "i2omgmt" "" "" "File not found: C:\WINDOWS\System32\Drivers\i2omgmt.sys"
+ "ialm" "Intel Graphics Miniport Driver" "Intel Corporation" "c:\windows\system32\drivers\ialmnt5.sys"
+ "imagedrv" "NERO IMAGEDRIVE SCSI miniport" "Ahead Software AG" "c:\windows\system32\drivers\imagedrv.sys"
+ "imagesrv" "Nero Image Server" "Ahead Software AG" "c:\windows\system32\drivers\imagesrv.sys"
+ "lbrtfdc" "" "" "File not found: C:\WINDOWS\System32\Drivers\lbrtfdc.sys"
+ "MBAMSwissArmy" "Malwarebytes' Anti-Malware" "Malwarebytes Corporation" "c:\windows\system32\drivers\mbamswissarmy.sys"
+ "mdmxsdk" "Diagnostic Interface x86 Driver" "Conexant" "c:\windows\system32\drivers\mdmxsdk.sys"
+ "mirrorv3" "Radmin Mirror Miniport Driver V3" "Famatech International Corp." "c:\windows\system32\drivers\rminiv3.sys"
+ "NETw3x32" "Intel® Wireless LAN Driver" "Intel® Corporation" "c:\windows\system32\drivers\netw3x32.sys"
+ "NETw5x32" "Intel® Wireless WiFi Link Driver" "Intel Corporation" "c:\windows\system32\drivers\netw5x32.sys"
+ "NPF" "npf.sys (NT5/6 x86) Kernel Driver" "CACE Technologies, Inc." "c:\windows\system32\drivers\npf.sys"
+ "nv" "NVIDIA Windows XP Miniport Driver, Version 305.93 " "NVIDIA Corporation" "c:\windows\system32\drivers\nv4_mini.sys"
+ "oreans32" "" "" "c:\windows\system32\drivers\oreans32.sys"
+ "PCIDump" "" "" "File not found: C:\WINDOWS\System32\Drivers\PCIDump.sys"
+ "PDCOMP" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDCOMP.sys"
+ "PDFRAME" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDFRAME.sys"
+ "PDRELI" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDRELI.sys"
+ "PDRFRAME" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDRFRAME.sys"
+ "Ptilink" "Direct Parallel Link Driver" "Parallel Technologies, Inc." "c:\windows\system32\drivers\ptilink.sys"
+ "pwdrvio" "" "" "c:\windows\system32\pwdrvio.sys"
+ "pwdspio" "" "" "c:\windows\system32\pwdspio.sys"
+ "raddrvv3" "Radmin Server support driver" "Famatech Corp." "c:\windows\system32\rserver30\raddrvv3.sys"
+ "SCREAMINGBDRIVER" "Screaming Bee Audio Driver" "Screaming Bee LLC" "c:\windows\system32\drivers\screamingbaudio.sys"
+ "Secdrv" "SafeDisc driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys"
+ "SliceDisk5" "SliceDisk driver" "Atola" "c:\program files\a-ff find and mount\slicedisk.sys"
+ "StarOpen" "" "" "c:\windows\system32\drivers\staropen.sys"
+ "STHDA" "NDRC" "SigmaTel, Inc." "c:\windows\system32\drivers\sthda.sys"
+ "TPkd" "InterLok system file" "PACE Anti-Piracy, Inc." "c:\windows\system32\drivers\tpkd.sys"
+ "UIUSys" "" "" "File not found: system32\DRIVERS\UIUSYS.SYS"
+ "usbbus" "lgusbbus.sys" "LG Electronics Inc." "c:\windows\system32\drivers\lgusbbus.sys"
+ "UsbDiag" "LGE CDMA USB Serial Port" "LG Electronics Inc." "c:\windows\system32\drivers\lgusbdiag.sys"
+ "USBModem" "LGE CDMA Modem Support" "LG Electronics Inc." "c:\windows\system32\drivers\lgusbmodem.sys"
+ "uxpatch" "" "" "c:\windows\system32\drivers\uxpatch.sys"
+ "WDICA" "" "" "File not found: C:\WINDOWS\System32\Drivers\WDICA.sys"
+ "winachsf" "HSF_CNXT driver" "Conexant Systems, Inc." "c:\windows\system32\drivers\hsf_cnxt.sys"
+ "WsAudio_DeviceS(1)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(1).sys"
+ "WsAudio_DeviceS(2)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(2).sys"
+ "WsAudio_DeviceS(3)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(3).sys"
+ "WsAudio_DeviceS(4)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(4).sys"
+ "WsAudio_DeviceS(5)" "Wondershare Virtual Audio Device" "Wondershare" "c:\windows\system32\drivers\wsaudio_devices(5).sys"
+ "yqlutk" "" "" "File not found: System32\drivers\nnifc.sys"
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""
+ "msacm.iac2" "Indeo® audio software" "Intel Corporation" "c:\windows\system32\iac25_32.ax"
+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"
+ "msacm.sl_anet" "Audio codec for MS ACM" "Sipro Lab Telecom Inc." "c:\windows\system32\sl_anet.acm"
+ "msacm.trspch" "DSP Group TrueSpeech™ Audio Codec for MSACM V3.50" "DSP GROUP, INC." "c:\windows\system32\tssoft32.acm"
+ "msacm.vorbis" "Ogg Vorbis CODEC for MSACM" "HMS http://hp.vector.co.jp/authors/VA012897/" "c:\windows\system32\vorbis.acm"
+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\system32\iccvid.dll"
+ "vidc.iv31" "" "" "c:\windows\system32\ir32_32.dll"
+ "vidc.iv32" "" "" "c:\windows\system32\ir32_32.dll"
+ "vidc.iv41" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
+ "vidc.iv50" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"
+ "vidc.tscc" "TechSmith Screen Capture Codec" "TechSmith Corporation" "c:\windows\system32\tsccvid.dll"
+ "vidc.XVID" "" "" "c:\windows\system32\xvidvfw.dll"
"HKLM\Software\Classes\Filter" "" "" ""
+ "Antares Auto-Tune 3" "Auto-Tune 3 DirectX" "Antares Audio Technologies, Inc." "c:\~plugs\autotune.ax"
+ "Antares Auto-Tune 3" "Auto-Tune 3 DirectX" "Antares Audio Technologies, Inc." "c:\~plugs\autotune.ax"
+ "IL FL Studio DXi" "" "Image-Line" "c:\program files\image-line\fl studio 10\system\plugin\dxi\fl studio dxi.dll"
+ "IL FL Studio DXi" "" "Image-Line" "c:\program files\image-line\fl studio 10\system\plugin\dxi\fl studio dxi.dll"
+ "IL Multi FL Studio DXi" "" "Image-Line" "c:\program files\image-line\fl studio 10\system\plugin\dxi\fl studio dxi (multi).dll"
+ "IL Multi FL Studio DXi" "" "Image-Line" "c:\program files\image-line\fl studio 10\system\plugin\dxi\fl studio dxi (multi).dll"
+ "Indeo® video 4.4 Compression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
+ "Indeo® video 4.4 Compression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
+ "Indeo® video 4.4 Decompression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
+ "Indeo® video 4.4 Decompression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"
+ "iZotope Consumer Restoration" "iZotope Consumer Restoration" "iZotope, Inc." "c:\program files\common files\techsmith shared\izotope\izotope_consumerrestoration.dll"
+ "iZotope Consumer Restoration" "iZotope Consumer Restoration" "iZotope, Inc." "c:\program files\common files\techsmith shared\izotope\izotope_consumerrestoration.dll"
+ "iZotope Vocal Enhancement" "iZotope Vocal Enhancement" "iZotope, Inc." "c:\program files\common files\techsmith shared\izotope\izotope_vocalenhancement.dll"
+ "iZotope Vocal Enhancement" "iZotope Vocal Enhancement" "iZotope, Inc." "c:\program files\common files\techsmith shared\izotope\izotope_vocalenhancement.dll"
+ "LAME Audio Encoder" "LAME Audio Encoder" "" "c:\program files\techsmith\camtasia studio 6\lame_dshow.ax"
+ "LAME Audio Encoder" "LAME Audio Encoder" "" "c:\program files\techsmith\camtasia studio 6\lame_dshow.ax"
+ "minimoog V" "" "" "c:\~plugs\minimoog v\minimoogvdx.dll"
+ "minimoog V" "" "" "c:\~plugs\minimoog v\minimoogvdx.dll"
+ "Moog Modular V" "" "" "c:\~plugs\moog modular v\moog modular v dxi.dll"
+ "Moog Modular V" "" "" "c:\~plugs\moog modular v\moog modular v dxi.dll"
+ "Sony Acoustic Mirror" "Sony Acoustic Mirror" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfmirror.dll"
+ "Sony Acoustic Mirror" "Sony Acoustic Mirror" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfmirror.dll"
+ "Sony Amplitude Modulation" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Amplitude Modulation" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Audio Restoration" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Audio Restoration" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Chorus" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Chorus" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Click and Crackle Removal" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Click and Crackle Removal" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Clipped Peak Restoration" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Clipped Peak Restoration" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Distortion" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Distortion" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Dither" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony Dither" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony ExpressFX Amplitude Modulation" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Amplitude Modulation" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Audio Restoration" "Sony ExpressFX Audio Restoration" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\xpvinyl.dll"
+ "Sony ExpressFX Audio Restoration" "Sony ExpressFX Audio Restoration" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\xpvinyl.dll"
+ "Sony ExpressFX Chorus" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Chorus" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Delay" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Delay" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Distortion" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Distortion" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Dynamics" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony ExpressFX Dynamics" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony ExpressFX Equalization" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Equalization" "Sony ExpressFX 2 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx2.dll"
+ "Sony ExpressFX Flange/Wah-Wah" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Flange/Wah-Wah" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Graphic EQ" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony ExpressFX Graphic EQ" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony ExpressFX Noise Gate" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony ExpressFX Noise Gate" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony ExpressFX Reverb" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Reverb" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Stutter" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Stutter" "Sony ExpressFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx1.dll"
+ "Sony ExpressFX Time Stretch" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony ExpressFX Time Stretch" "Sony ExpressFX 3 " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfxpfx3.dll"
+ "Sony Flange/Wah-wah" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Flange/Wah-wah" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Gapper/Snipper" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Gapper/Snipper" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Graphic Dynamics" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Graphic Dynamics" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Graphic EQ" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Graphic EQ" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Multi-Band Dynamics" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Multi-Band Dynamics" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Multi-Tap Delay" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Multi-Tap Delay" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Noise Gate" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Noise Gate" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Noise Reduction" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Noise Reduction" "Sony Noise Reduction Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\noise reduction plug-in 2.0\sfnrpack.dll"
+ "Sony Pan" "Sound Forge Pro Pan and Volume 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sffrgpnv.dll"
+ "Sony Pan" "Sound Forge Pro Pan and Volume 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sffrgpnv.dll"
+ "Sony Paragraphic EQ" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Paragraphic EQ" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Parametric EQ" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Parametric EQ" "Sony XFX 2 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack2.dll"
+ "Sony Pitch Shift" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Pitch Shift" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Resonant Filter" "Sony Resonant Filter" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfresfilter.dll"
+ "Sony Resonant Filter" "Sony Resonant Filter" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfresfilter.dll"
+ "Sony Reverb" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Reverb" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Simple Delay" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Simple Delay" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Smooth/Enhance" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Smooth/Enhance" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Time Stretch" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Time Stretch" "Sony XFX 1 Plug-In Pack " "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack1.dll"
+ "Sony Track Compressor" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony Track Compressor" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony Track EQ" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony Track EQ" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony Track Noise Gate" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony Track Noise Gate" "Sony TrackFX 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sftrkfx1.dll"
+ "Sony Vibrato" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Vibrato" "Sony XFX 3 Plug-In Pack" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfppack3.dll"
+ "Sony Volume" "Sound Forge Pro Pan and Volume 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sffrgpnv.dll"
+ "Sony Volume" "Sound Forge Pro Pan and Volume 1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sffrgpnv.dll"
+ "Sony élastique Timestretch" "Sony élastique Timestretch Plug-In" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfzplane.dll"
+ "Sony élastique Timestretch" "Sony élastique Timestretch Plug-In" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfzplane.dll"
+ "Timeworks CompressorX" "Timeworks CompressorX" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\compressor\compressorx.ax"
+ "Timeworks CompressorX" "Timeworks CompressorX" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\compressor\compressorx.ax"
+ "Timeworks Delay 6022" "Timeworks Delay 6022" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\delay 6022\bin\tsd.ax"
+ "Timeworks Delay 6022" "Timeworks Delay 6022" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\delay 6022\bin\tsd.ax"
+ "Timeworks Mastering Compressor" "Timeworks Mastering Compressor" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\mastering compressor\mcomp.ax"
+ "Timeworks Mastering Compressor" "Timeworks Mastering Compressor" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\mastering compressor\mcomp.ax"
+ "Timeworks Mastering EQ" "Timeworks Mastering EQ" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\mastering eq\bin\teq.ax"
+ "Timeworks Mastering EQ" "Timeworks Mastering EQ" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\mastering eq\bin\teq.ax"
+ "timeworks Phazer Model 88" "timeworks Phazer Model 88" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\phazer model 88\bin\tpz.ax"
+ "timeworks Phazer Model 88" "timeworks Phazer Model 88" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\phazer model 88\bin\tpz.ax"
+ "Timeworks Reverb 4080L" "Timeworks Reverb 4080L" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\reverb 4080l\bin\trvb.ax"
+ "Timeworks Reverb 4080L" "Timeworks Reverb 4080L" "Sonic Timeworks L.L.P." "c:\~plugs\timeworks\reverb 4080l\bin\trvb.ax"
"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""
+ "32KHz to 16KHz Audio Decimator" "QCP DirectShow Filters" "Qualcomm, Inc." "c:\windows\system32\qcp.ax"
+ "9x8Resize" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "ACELP.net Audio Decoder" "ACELP.net Audio Decoder" "Sipro Lab Telecom Inc." "c:\windows\system32\acelpdec.ax"
+ "Allocator Fix" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Bitmap" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Frame Eater" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Indeo® audio software" "Indeo® audio software" "Intel Corporation" "c:\windows\system32\iac25_32.ax"
+ "Indeo® video 5.10 Compression Filter" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"
+ "Indeo® video 5.10 Decompression Filter" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"
+ "LAME Audio Encoder" "LAME Audio Encoder" "" "c:\program files\techsmith\camtasia studio 6\lame_dshow.ax"
+ "MPEG Layer-3 Decoder" "MPEG Layer-3 Audio Decoder" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codecx.ax"
+ "Nero AAC Parser" "Nero Audio Decoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudio.ax"
+ "Nero Audio CD Filter" "Nero Audio CD Source Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio CD Navigator" "Nero Audio CD Source Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudcd.ax"
+ "Nero Audio Processor" "Nero Audio Processor" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudioconv.ax"
+ "Nero Audio Source" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "Nero Digital Audio Decoder" "Nero Audio Decoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\neaudio.ax"
+ "Nero Digital AVC Audio Encoder" "AAC LC/HE Audio Encoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendaud.ax"
+ "Nero Digital AVC File Writer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Muxer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Null Renderer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital AVC Subpicture Enc" "NeroDigital File Format Muxer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nendmux.ax"
+ "Nero Digital Parser" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files\common files\ahead\dsfilter\ndparser.ax"
+ "Nero DV Splitter" "DV Splitter Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nedvsplitter.ax"
+ "Nero DVD Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideo.ax"
+ "Nero DVD Navigator" "DVD Navigator Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nedvd.ax"
+ "Nero ES Video Reader" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files\common files\ahead\dsfilter\ndparser.ax"
+ "Nero File Source" "Nero SVCD source filter" "Nero AG " "c:\program files\common files\ahead\dsfilter\nefilesrc.ax"
+ "Nero File Source (Async.)" "NeFileSourceAsync" "Nero AG" "c:\program files\common files\ahead\dsfilter\nefilesourceasync.ax"
+ "Nero File Source / Splitter" "Push Mode VOB Source Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nefsource.ax"
+ "Nero Format Converter" "Frame rate / Color space converter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neroformatconv.ax"
+ "Nero Frame Capture" "Direct Show frame grabber filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\necapture.ax"
+ "Nero Mpeg2 Encoder" "MPEG 1/2 Video Encoder" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevcr.ax"
+ "Nero Photo Source" "NePhotoSource" "Ahead Software AG" "c:\program files\common files\ahead\dsfilter\nephotosource.ax"
+ "Nero PS Muxer" "PS Muxer Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nepsmuxer.ax"
+ "Nero QuickTime™ Audio Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero QuickTime™ Video Decoder" "QuickTime™ Decoder Wrapper" "Nero AG" "c:\program files\common files\ahead\dsfilter\neqtdec.ax"
+ "Nero Resize" "Nero Resizing Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\neresize.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files\common files\ahead\dsfilter\nescenedetector.ax"
+ "Nero Splitter" "Splitter Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nesplitter.ax"
+ "Nero Vcd Navigator" "Nero Vcd Navigator Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevcd.ax"
+ "Nero Video Analyzer" "Nero Video Analyzer" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideoanalyzer.ax"
+ "Nero Video Decoder" "MPEG-1/2/4 & AVC video decoder w/ DxVA" "Nero AG" "c:\program files\common files\ahead\dsfilter\nevideo.ax"
+ "Nero Video Processor" "Resize / Deinterlace / Color Correction / Film Effect / Frame Capture Filter" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerovideoproc.ax"
+ "Nero Video Source" "Nero Library" "Nero AG" "c:\program files\common files\ahead\dsfilter\nerender.ax"
+ "PCM Time Stretching Filter" "QCP DirectShow Filters" "Qualcomm, Inc." "c:\windows\system32\qcp.ax"
+ "QCP Codec Filter" "QCP DirectShow Filters" "Qualcomm, Inc." "c:\windows\system32\qcp.ax"
+ "QCP File Generator" "QCP DirectShow Filters" "Qualcomm, Inc." "c:\windows\system32\qcp.ax"
+ "QCP File Parser" "QCP DirectShow Filters" "Qualcomm, Inc." "c:\windows\system32\qcp.ax"
+ "QCP Mixer Filter" "QCP DirectShow Filters" "Qualcomm, Inc." "c:\windows\system32\qcp.ax"
+ "Record Queue" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "ShotDetect" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "Sony Wave Hammer" "Sony Wave Hammer" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\sfhammer.dll"
+ "Sony Wave Hammer Surround" "Sony Wave Hammer 5.1" "Sony Creative Software Inc." "c:\program files\sony\shared plug-ins\audio\mchammer.dll"
+ "Stetch" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "TechSmith Camera Adjust" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith File Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Flv Key Frame Setter" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Force Color32A" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith ForceColor 24" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith ForceColor 32" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith ForceColor 555" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith ForceColor 565" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith ForceColor 8" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Frame Rate Tuner" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Frame Skip Filter" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Image Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Overlay" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Perf Skip Filter" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith PushBitmap Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith PushBitmap Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith PushVMR Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "Techsmith Quicktime MOV Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Simple PIP" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith SimplePushBitmap Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Splitter Filter" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "Techsmith Structured Storage Writer" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith SWF Writer" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Time Adjust" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Title Source" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Wave Buffer" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith Wave Dest" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith WMFSDK Writer" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "TechSmith ZoomPIP Filter" "Camtasia Studio DirectShow Filters" "TechSmith Corporation" "c:\program files\techsmith\camtasia studio 6\camtasiafilters.dll"
+ "Video Memory Render Filter" "" "" "c:\program files\image-line\fl studio 10\plugins\fruity\effects\zgameeditor visualizer\videomemoryrenderfilter.ax"
+ "WIA Stream Snapshot Filter" "WIA Stream Snapshot Filter" "MyCompanyName" "c:\windows\system32\wiasf.ax"
+ "WM VIH2 Fix" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Audio Analyzer" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Black Frame Generator" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT DirectX Transform Wrapper" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT DV Extract Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT FormatConversion" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Import Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Interlacer" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Log Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT MuxDeMux Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Sample Info Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Screen capture Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Switch Filter" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Virtual Renderer" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Virtual Source" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WMT Volume" "Movie Maker Filters" "Microsoft Corporation" "c:\program files\movie maker\wmm2filt.dll"
+ "WS ScreenCapture" "ScreenCa Dynamic Link Library" "" "c:\program files\aimersoft\video converter ultimate\screencapturefilter.ax"
+ "Xvid MPEG-4 Video Decoder" "xvid" "http://www.xvid.org" "c:\windows\system32\xvid.ax"
"HKLM\SYSTEM\Setup\CmdLine" "" "" ""
+ "/update" "" "" "File not found: /update"
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify" "" "" ""
+ "igfxcui" "igfxdev Module" "Intel Corporation" "c:\windows\system32\igfxdev.dll"
"HKCU\Control Panel\Desktop\Scrnsave.exe" "" "" ""
+ "C:\WINDOWS\system32\Fliqlo.scr" "ScreenTime Screensaver Engine" "ScreenTime Media" "c:\windows\system32\fliqlo.scr"
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" ""
+ "HP Standard TCP/IP Port" "Standard TCP/IP Port Monitor DLL" "Hewlett Packard" "c:\windows\system32\hptcpmon.dll"


That's all of the requested logs

Edited by FrankOtheMountaiN, 15 January 2013 - 11:08 AM.


Frank O' The Mountain
Doing more stupid before 5AM than most people do all day.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users