Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

All Browsers Crash On Opening


  • Please log in to reply
No replies to this topic

#1 OnyxReaper

OnyxReaper

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:11:25 PM

Posted 10 December 2015 - 08:20 PM

I'm writing this on behalf of my Girlfriend as she now has no access to sites like this.

 

Whenever she tries to open a browser, it will crash before even reaching the home page. This is with Firefox, Internet Explorer, and Google Chrome. In Safe Mode the browsers open fine.

 

The issue started a day or two ago after a windows 7 update. The computer restarted itself while she was asleep and when she woke up none of her browsers were working any more.

 

We've tried re-installing Google Chrome, and it did not solve the situation. Firefox was not on the computer at the time of the issue arrising, so I sent her an installer for Firefox and it encountered the same problem when attempting to start up.

 

Other than access to Web Browsers, there are no other issues with her internet, she can be on Skype fine, on Steam fine, she can download and upload files through other mediums such as the file browser in Teamspeak, or send them through Skype.

 

These are the errors in the event viewer:

 

 

---------------------------------------[Start]----------------------------------------------

 

---------------------------------------Internet Explorer----------------------------------------------

- System

 

- Provider

[ Name]  Application Error

 

- EventID 1000

 

[ Qualifiers]  0

 

Level 2

 

Task 100

Keywords 0x80000000000000

- TimeCreated

 

[ SystemTime] 2015-12-10T08:10:49.000000000Z

EventRecordID 322559

Channel Application

Computer Kira-PC

Security


- EventData

IEXPLORE.EXE
11.0.9600.18124
5641278d
unknown
0.0.0.0
00000000
c000041d
770cd8f1
1ad4
01d1332246c65156
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
unknown
858b8beb-9f15-11e5-af20-dc0ea1298a92

 

---------------------------------------Firefox----------------------------------------------

 

 

- System

- Provider

[ Name] Application Error

- EventID 1000

[ Qualifiers] 0

Level 2

Task 100

Keywords 0x80000000000000

- TimeCreated

[ SystemTime] 2015-12-10T08:03:47.000000000Z

EventRecordID 322555

Channel Application

Computer Kira-PC

Security


- EventData

firefox.exe
42.0.0.5780
5632ba5c
unknown
0.0.0.0
00000000
c000041d
770cd8f1
9d0
01d133214ba69543
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
unknown
8a034880-9f14-11e5-af20-dc0ea1298a92

 

---------------------------------------Chrome----------------------------------------------

 

 

System

- Provider

[ Name] Application Error

- EventID 1000

[ Qualifiers] 0

Level 2

Task 100

Keywords 0x80000000000000

- TimeCreated

[ SystemTime] 2015-12-10T07:51:59.000000000Z

EventRecordID 322542

Channel Application

Computer Kira-PC

Security


- EventData

chrome.exe
47.0.2526.80
5661f059
unknown
0.0.0.0
00000000
c000041d
770cd8f1
b18
01d1331fa6290e64
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
unknown
e3dc5fc7-9f12-11e5-af20-dc0ea1298a92

 

---------------------------------------[End]----------------------------------------------

 

 

I've had her run a scan with Malwarebytes (While in safe mode), which detected nothing, a scan with the malwarebytes Anti-Rootkit tool (Not in safe mode) which also returned nothing.

 

Running the System File Scanner told her that there were some corrupted files that could not be repaired.

 

I asked her to open the log and send me the files that couldn't be repaired which were here in this spoiler:

 

 

 

 

2015-12-09 22:46:11, Info CSI 00000368 [SR] Cannot repair member file [l:20{10}]"_isdel.exe" of Microsoft-Windows-InstallShield-WOW64-Main, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file is missing
2015-12-09 22:46:11, Info CSI 00000369 [SR] Cannot repair member file [l:20{10}]"_isdel.exe" of Microsoft-Windows-InstallShield-WOW64-Main, Version = 6.1.7600.16385, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, file is missing
2015-12-09 22:46:11, Info CSI 0000036a [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2015-12-09 22:46:11, Info CSI 0000036b [SR] Could not reproject corrupted file [ml:76{38},l:74{37}]"\??\C:\Windows\SysWOW64\InstallShield"\[l:20{10}]"_isdel.exe"; source file in store is also corrupted
2015-12-09 22:46:11, Info CSI 0000036c Repair results created:
POQ 153 starts:
0: Move File: Source = [l:192{96}]"\SystemRoot\WinSxS\Temp\PendingRenames\17eaaf741633d101e44200008021f822._0000000000000000.cdf-ms", Destination = [l:104{52}]"\SystemRoot\WinSxS\FileMaps\_0000000000000000.cdf-ms"
1: Move File: Source = [l:162{81}]"\SystemRoot\WinSxS\Temp\PendingRenames\2811b0741633d101e54200008021f822.$$.cdf-ms", Destination = [l:74{37}]"\SystemRoot\WinSxS\FileMaps\$$.cdf-ms"
2: Move File: Source = [l:214{107}]"\SystemRoot\WinSxS\Temp\PendingRenames\e079b6741633d101e64200008021f822.$$_syswow64_21ffbdd2a2dd92e0.cdf-ms", Destination = [l:126{63}]"\SystemRoot\WinSxS\FileMaps\$$_syswow64_21ffbdd2a2dd92e0.cdf-ms"
3: Move File: Source = [l:242{121}]"\SystemRoot\WinSxS\Temp\PendingRenames\4364b7741633d101e74200008021f822.$$_syswow64_installshield_b5853d7fd6c30e20.cdf-ms", Destination = [l:154{77}]"\SystemRoot\WinSxS\FileMaps\$$_syswow64_installshield_b5853d7fd6c30e20.cdf-ms"

 

 

 

 

We also ran Autoruns For Windows, and this is the log from that.

 

 

 

 

"HKLM\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\StartupPrograms"    ""    ""    ""    "20/11/2010 7:33 PM"    ""
+ "rdpclip"    ""    ""    "File not found: rdpclip"    ""    ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"    ""    ""    ""    "16/07/2014 1:31 AM"    ""
+ "HotKeysCmds"    "hkcmd Module"    "Intel Corporation"    "c:\windows\system32\hkcmd.exe"    "10/06/2011 9:45 AM"    ""
+ "IgfxTray"    "igfxTray Module"    "Intel Corporation"    "c:\windows\system32\igfxtray.exe"    "10/06/2011 9:45 AM"    ""
+ "IntelPAN"    "Intel® PROSet/Wireless Framework"    "Intel® Corporation"    "c:\program files\common files\intel\wirelesscommon\ifrmewrk.exe"    "02/05/2011 1:16 PM"    ""
+ "IntelTBRunOnce"    ""    ""    "c:\program files\intel\turboboost\runtbgadgetonce.vbs"    "29/11/2010 11:59 AM"    ""
+ "Logitech Download Assistant"    "Logitech Download Assistant"    "Logitech, Inc."    "c:\windows\system32\logilda.dll"    "13/09/2012 2:57 PM"    ""
+ "NvBackend"    "NVIDIA GeForce Experience Backend"    "NVIDIA Corporation"    "c:\program files (x86)\nvidia corporation\update core\nvbackend.exe"    "29/05/2014 2:42 PM"    ""
+ "Persistence"    "persistence Module"    "Intel Corporation"    "c:\windows\system32\igfxpers.exe"    "10/06/2011 9:45 AM"    ""
+ "Power Management"    "ePowerTray"    "Acer Incorporated"    "c:\program files\gateway\gateway power management\epowertray.exe"    "01/08/2011 7:05 PM"    ""
+ "RtHDVCpl"    "Realtek HD Audio Manager"    "Realtek Semiconductor"    "c:\program files\realtek\audio\hda\ravcpl64.exe"    "10/03/2011 12:44 AM"    ""
+ "ShadowPlay"    "NVIDIA Capture Server Proxy"    "NVIDIA Corporation"    "c:\windows\system32\nvspcap64.dll"    "29/05/2014 2:54 PM"    ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run"    ""    ""    ""    "09/12/2015 8:38 PM"    ""
+ "APSDaemon"    "Apple Push"    "Apple Inc."    "c:\program files (x86)\common files\apple\apple application support\apsdaemon.exe"    "16/04/2013 7:13 PM"    ""
+ "AvastUI.exe"    "avast! Antivirus"    "AVAST Software"    "c:\program files\avast software\avast\avastui.exe"    "28/10/2015 11:59 PM"    ""
+ "AVG_UI"    "AVG User Interface"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgui.exe"    "19/11/2015 11:14 PM"    ""
+ "AvgUi"    "AVG User Interface"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\framework\common\avguix.exe"    "12/11/2015 7:57 AM"    ""
+ "BackupManagerTray"    "Gateway MyBackup"    "NTI Corporation"    "c:\program files (x86)\nti\gateway mybackup\backupmanagertray.exe"    "08/03/2011 5:46 PM"    ""
+ "BCSSync"    "Microsoft Office 2010 component"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\bcssync.exe"    "05/11/2012 7:25 AM"    ""
+ "iTunesHelper"    "iTunesHelper"    "Apple Inc."    "c:\program files (x86)\itunes\ituneshelper.exe"    "31/05/2013 10:27 AM"    ""
+ "LManager"    "Launch Manager"    "Dritek System Inc."    "c:\program files (x86)\launch manager\lmanager.exe"    "30/06/2011 6:47 PM"    ""
+ "NUSB3MON"    "USB 3.0 Monitor"    "Renesas Electronics Corporation"    "c:\program files (x86)\renesas electronics\usb 3.0 host controller driver\application\nusb3mon.exe"    "12/11/2010 3:19 AM"    ""
+ "QuickTime Task"    "QuickTime Task"    "Apple Inc."    "c:\program files (x86)\quicktime\qttask.exe"    "01/05/2013 2:42 AM"    ""
+ "RemoteControl10"    "PowerDVD RC Service"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\pdvd10serv.exe"    "02/02/2010 8:08 AM"    ""
+ "SunJavaUpdateSched"    "Java Update Scheduler"    "Oracle Corporation"    "c:\program files (x86)\common files\java\java update\jusched.exe"    "09/11/2015 12:52 PM"    ""
+ "vProt"    "VProtect Application (Non Official)"    ""    "c:\program files (x86)\avg web tuneup\vprot.exe"    "21/07/2015 5:29 AM"    ""
"HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"    ""    ""    ""    "09/12/2015 11:25 PM"    ""
+ "Dropbox Update"    "Dropbox Update"    "Dropbox, Inc."    "c:\users\kira\appdata\local\dropbox\update\dropboxupdate.exe"    "30/04/2015 12:41 PM"    ""
+ "Facebook Update"    "Facebook Installer"    "Facebook Inc."    "c:\users\kira\appdata\local\facebook\update\facebookupdate.exe"    "06/07/2012 11:50 AM"    ""
+ "Gyazo"    "Gyazo Station"    "Nota Inc."    "c:\program files (x86)\gyazo\gystation.exe"    "19/08/2015 2:56 AM"    ""
+ "Spotify"    "Spotify"    "Spotify Ltd"    "c:\users\kira\appdata\roaming\spotify\spotify.exe"    "10/11/2015 3:30 AM"    ""
+ "Spotify Web Helper"    "SpotifyWebHelper"    "Spotify Ltd"    "c:\users\kira\appdata\roaming\spotify\spotifywebhelper.exe"    "10/11/2015 3:29 AM"    ""
+ "Steam"    "Steam Client Bootstrapper"    "Valve Corporation"    "c:\program files (x86)\steam\steam.exe"    "09/11/2015 6:24 PM"    ""
+ "SugarSync"    "SugarSync Manager"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\sugarsync.exe"    "06/05/2014 10:44 AM"    ""
"C:\Users\Kira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup"    ""    ""    ""    "09/12/2015 3:02 PM"    ""
+ "Adobe Gamma.lnk"    "Adobe Gamma Loader"    "Adobe Systems, Inc."    "c:\program files (x86)\common files\adobe\calibration\adobe gamma loader.exe"    "04/11/1999 2:06 PM"    ""
+ "Dropbox.lnk"    "Dropbox"    "Dropbox, Inc."    "c:\users\kira\appdata\roaming\dropbox\bin\dropbox.exe"    "27/10/2015 12:55 PM"    ""
+ "OpenOffice.org 3.3.lnk"    ""    ""    "c:\program files (x86)\openoffice.org 3\program\quickstart.exe"    "13/12/2010 2:12 AM"    ""
"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components"    ""    ""    ""    "14/10/2015 2:43 AM"    ""
+ "Microsoft Windows"    "Windows Mail"    "Microsoft Corporation"    "c:\program files\windows mail\winmail.exe"    "13/07/2009 3:58 PM"    ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components"    ""    ""    ""    "09/12/2015 11:51 PM"    ""
+ "Google Chrome"    "Google Chrome Installer"    "Google Inc."    "c:\program files (x86)\google\chrome\application\47.0.2526.80\installer\chrmstp.exe"    "04/12/2015 11:00 AM"    ""
+ "Internet Explorer"    ""    ""    "File not found: C:\Windows\system32\ie4uinit.exe"    ""    ""
+ "Microsoft Windows"    "Windows Mail"    "Microsoft Corporation"    "c:\program files (x86)\windows mail\winmail.exe"    "13/07/2009 3:42 PM"    ""
"HKLM\SOFTWARE\Classes\Protocols\Filter"    ""    ""    ""    "24/03/2014 11:16 PM"    ""
+ "text/xml"    "Microsoft Office XML MIME Filter"    "Microsoft Corporation"    "c:\program files\common files\microsoft shared\office14\msoxmlmf.dll"    "28/02/2010 1:24 AM"    ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler"    ""    ""    ""    "27/04/2013 6:29 PM"    ""
+ "Virtual Storage Mount Notification"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\system32\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler"    ""    ""    ""    "27/04/2013 6:29 PM"    ""
+ "Virtual Storage Mount Notification"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\syswow64\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects"    ""    ""    ""    "12/05/2015 10:25 AM"    ""
+ "Virtual Storage Mount Notification"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\system32\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellServiceObjects"    ""    ""    ""    "12/05/2015 10:25 AM"    ""
+ "Virtual Storage Mount Notification"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\syswow64\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"    ""    ""    ""    "27/04/2013 6:29 PM"    ""
+ "EldosMountNotificator"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\system32\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad"    ""    ""    ""    "27/04/2013 6:29 PM"    ""
+ "EldosMountNotificator"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\syswow64\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks"    ""    ""    ""    "24/03/2014 11:16 PM"    ""
+ "Groove GFS Stub Execution Hook"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks"    ""    ""    ""    "24/03/2014 11:21 PM"    ""
+ "Groove GFS Stub Execution Hook"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers"    ""    ""    ""    "10/08/2015 7:27 PM"    ""
+ "avast"    "avast! Shell Extension"    "AVAST Software"    "c:\program files\avast software\avast\ashsha64.dll"    "27/07/2015 9:35 AM"    ""
+ "AVG Shell Extension"    "AVG Shell Extension"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgsea.dll"    "19/11/2015 11:11 PM"    ""
+ "SugarSync"    "SugarSync Explorer Shell Extensions"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\x64\sugarsyncshellext_x64.dll"    "06/05/2014 10:04 AM"    ""
+ "WinRAR"    ""    ""    "c:\program files (x86)\winrar\rarext64.dll"    "09/01/2012 5:44 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
"HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers"    ""    ""    ""    "10/08/2015 7:27 PM"    ""
+ "avast"    "avast! Shell Extension"    "AVAST Software"    "c:\program files\avast software\avast\ashshell.dll"    "27/07/2015 9:03 AM"    ""
+ "AVG Shell Extension"    "AVG Shell Extension"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgse.dll"    "19/11/2015 11:08 PM"    ""
+ "NeroShellExt Class"    "Nero Burning ROM Shell Extension"    "Nero AG"    "c:\program files (x86)\common files\nero\neroshellext\neroshellext.dll"    "18/01/2011 5:18 AM"    ""
+ "WinRAR32"    ""    ""    "c:\program files (x86)\winrar\rarext.dll"    "09/01/2012 5:44 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
"HKLM\Software\Wow6432Node\Classes\Drive\ShellEx\ContextMenuHandlers"    ""    ""    ""    "21/01/2012 2:43 AM"    ""
+ "NeroShellExt Class"    "Nero Burning ROM Shell Extension"    "Nero AG"    "c:\program files (x86)\common files\nero\neroshellext\neroshellext.dll"    "18/01/2011 5:18 AM"    ""
"HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"    ""    ""    ""    "10/08/2015 7:27 PM"    ""
+ "00avast"    "avast! Shell Extension"    "AVAST Software"    "c:\program files\avast software\avast\ashsha64.dll"    "27/07/2015 9:35 AM"    ""
+ "MBAMShlExt"    "Malwarebytes Anti-Malware"    "Malwarebytes"    "c:\program files (x86)\malwarebytes anti-malware\mbamext.dll"    "29/07/2015 8:20 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
"HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers"    ""    ""    ""    "10/08/2015 7:27 PM"    ""
+ "00avast"    "avast! Shell Extension"    "AVAST Software"    "c:\program files\avast software\avast\ashshell.dll"    "27/07/2015 9:03 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers"    ""    ""    ""    "24/04/2014 7:44 PM"    ""
+ "WinRAR"    ""    ""    "c:\program files (x86)\winrar\rarext64.dll"    "09/01/2012 5:44 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
"HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers"    ""    ""    ""    "24/04/2014 7:44 PM"    ""
+ "NeroShellExt Class"    "Nero Burning ROM Shell Extension"    "Nero AG"    "c:\program files (x86)\common files\nero\neroshellext\neroshellext.dll"    "18/01/2011 5:18 AM"    ""
+ "WinRAR32"    ""    ""    "c:\program files (x86)\winrar\rarext.dll"    "09/01/2012 5:44 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers"    ""    ""    ""    "21/01/2012 7:30 PM"    ""
+ "WinRAR"    ""    ""    "c:\program files (x86)\winrar\rarext64.dll"    "09/01/2012 5:44 AM"    ""
"HKLM\Software\Wow6432Node\Classes\Directory\Shellex\DragDropHandlers"    ""    ""    ""    "21/01/2012 7:30 PM"    ""
+ "WinRAR32"    ""    ""    "c:\program files (x86)\winrar\rarext.dll"    "09/01/2012 5:44 AM"    ""
"HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers"    ""    ""    ""    "24/03/2014 11:16 PM"    ""
+ "Gadgets"    "Sidebar droptarget"    "Microsoft Corporation"    "c:\program files\windows sidebar\sbdrop.dll"    "13/07/2009 5:32 PM"    ""
+ "igfxcui"    "igfxpph Module"    "Intel Corporation"    "c:\windows\system32\igfxpph.dll"    "10/06/2011 9:45 AM"    ""
+ "NvCplDesktopContext"    ""    "NVIDIA Corporation"    "c:\windows\system32\nvshext.dll"    "16/10/2011 5:53 PM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
"HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers"    ""    ""    ""    "24/03/2014 11:16 PM"    ""
+ "Gadgets"    "Sidebar droptarget"    "Microsoft Corporation"    "c:\program files (x86)\windows sidebar\sbdrop.dll"    "13/07/2009 5:09 PM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers"    ""    ""    ""    "13/09/2013 3:38 PM"    ""
+ "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}"    ""    "OpenOffice.org"    "c:\program files (x86)\openoffice.org 3\basis\program\shlxthdl\shlxthdl_x64.dll"    "13/12/2010 7:23 AM"    ""
"HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers"    ""    ""    ""    "13/09/2013 3:38 PM"    ""
+ "PDF Shell Extension"    "PDF Shell Extension"    "Adobe Systems, Inc."    "c:\program files (x86)\common files\adobe\acrobat\activex\pdfshell.dll"    "24/09/2015 5:42 AM"    ""
+ "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}"    ""    "OpenOffice.org"    "c:\program files (x86)\openoffice.org 3\basis\program\shlxthdl\shlxthdl.dll"    "17/01/2011 7:19 AM"    ""
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers"    ""    ""    ""    "10/08/2015 7:27 PM"    ""
+ "avast"    "avast! Shell Extension"    "AVAST Software"    "c:\program files\avast software\avast\ashsha64.dll"    "27/07/2015 9:35 AM"    ""
+ "AVG Shell Extension"    "AVG Shell Extension"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgsea.dll"    "19/11/2015 11:11 PM"    ""
+ "MBAMShlExt"    "Malwarebytes Anti-Malware"    "Malwarebytes"    "c:\program files (x86)\malwarebytes anti-malware\mbamext.dll"    "29/07/2015 8:20 AM"    ""
+ "SugarSync"    "SugarSync Explorer Shell Extensions"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\x64\sugarsyncshellext_x64.dll"    "06/05/2014 10:04 AM"    ""
+ "WinRAR"    ""    ""    "c:\program files (x86)\winrar\rarext64.dll"    "09/01/2012 5:44 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers"    ""    ""    ""    "10/08/2015 7:27 PM"    ""
+ "avast"    "avast! Shell Extension"    "AVAST Software"    "c:\program files\avast software\avast\ashshell.dll"    "27/07/2015 9:03 AM"    ""
+ "AVG Shell Extension"    "AVG Shell Extension"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgse.dll"    "19/11/2015 11:08 PM"    ""
+ "WinRAR32"    ""    ""    "c:\program files (x86)\winrar\rarext.dll"    "09/01/2012 5:44 AM"    ""
+ "XXX Groove GFS Context Menu Handler XXX"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
"HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers"    ""    ""    ""    "21/01/2012 7:30 PM"    ""
+ "WinRAR"    ""    ""    "c:\program files (x86)\winrar\rarext64.dll"    "09/01/2012 5:44 AM"    ""
"HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers"    ""    ""    ""    "21/01/2012 7:30 PM"    ""
+ "WinRAR32"    ""    ""    "c:\program files (x86)\winrar\rarext.dll"    "09/01/2012 5:44 AM"    ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"    ""    ""    ""    "09/12/2015 8:47 PM"    ""
+ " SkyDrivePro1 (ErrorConflict)"    "Microsoft OneDrive for Business Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\grooveex.dll"    "11/11/2015 3:55 AM"    ""
+ " SkyDrivePro2 (SyncInProgress)"    "Microsoft OneDrive for Business Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\grooveex.dll"    "11/11/2015 3:55 AM"    ""
+ " SkyDrivePro3 (InSync)"    "Microsoft OneDrive for Business Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\grooveex.dll"    "11/11/2015 3:55 AM"    ""
+ "00avast"    "avast! Shell Extension"    "AVAST Software"    "c:\program files\avast software\avast\ashsha64.dll"    "27/07/2015 9:35 AM"    ""
+ "EldosIconOverlay"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\system32\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
+ "Groove Explorer Icon Overlay 2 (GFS Stub)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
+ "Groove Explorer Icon Overlay 3 (GFS Folder)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
+ "SugarSyncBackedUp"    "SugarSync Explorer Shell Extensions"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\x64\sugarsyncshellext_x64.dll"    "06/05/2014 10:04 AM"    ""
+ "SugarSyncPending"    "SugarSync Explorer Shell Extensions"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\x64\sugarsyncshellext_x64.dll"    "06/05/2014 10:04 AM"    ""
+ "SugarSyncRoot"    "SugarSync Explorer Shell Extensions"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\x64\sugarsyncshellext_x64.dll"    "06/05/2014 10:04 AM"    ""
+ "SugarSyncShared"    "SugarSync Explorer Shell Extensions"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\x64\sugarsyncshellext_x64.dll"    "06/05/2014 10:04 AM"    ""
+ "SugarSyncSharedPending"    "SugarSync Explorer Shell Extensions"    "SugarSync, Inc."    "c:\program files (x86)\sugarsync\x64\sugarsyncshellext_x64.dll"    "06/05/2014 10:04 AM"    ""
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers"    ""    ""    ""    "09/12/2015 8:47 PM"    ""
+ "EldosIconOverlay"    "CbFs Mount Notifier"    "EldoS Corporation"    "c:\windows\syswow64\sscbfsmntntf3.dll"    "30/01/2013 1:12 PM"    ""
+ "Groove Explorer Icon Overlay 1 (GFS Unread Stub)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
+ "Groove Explorer Icon Overlay 2 (GFS Stub)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
+ "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
+ "Groove Explorer Icon Overlay 3 (GFS Folder)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
+ "Groove Explorer Icon Overlay 4 (GFS Unread Mark)"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects"    ""    ""    ""    "09/12/2015 8:43 PM"    ""
+ "avast! Online Security"    "IE Webrep plugin"    "AVAST Software"    "c:\program files\avast software\avast\aswwebrepie64.dll"    "09/07/2015 4:17 PM"    ""
+ "Groove GFS Browser Helper"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
+ "Java™ Plug-In 2 SSV Helper"    "Java™ Platform SE binary"    "Oracle Corporation"    "c:\program files\java\jre1.8.0_66\bin\jp2ssv.dll"    "09/11/2015 11:22 AM"    ""
+ "Java™ Plug-In SSV Helper"    "Java™ Platform SE binary"    "Oracle Corporation"    "c:\program files\java\jre1.8.0_66\bin\ssv.dll"    "09/11/2015 11:22 AM"    ""
+ "Lync Browser Helper"    "Skype for Business"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\ochelper.dll"    "11/11/2015 3:49 AM"    ""
+ "Microsoft OneDrive for Business Browser Helper"    "Microsoft OneDrive for Business Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\grooveex.dll"    "11/11/2015 3:55 AM"    ""
+ "Office Document Cache Handler"    "Microsoft Office Document Cache Handler"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\urlredir.dll"    "11/11/2015 3:57 AM"    ""
+ "Windows Live ID Sign-in Helper"    "Microsoft® Windows Live ID Login Helper"    "Microsoft Corp."    "c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll"    "28/03/2011 8:12 PM"    ""
"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects"    ""    ""    ""    "09/12/2015 8:43 PM"    ""
+ "avast! Online Security"    "IE Webrep plugin"    "AVAST Software"    "c:\program files\avast software\avast\aswwebrepie.dll"    "09/07/2015 4:14 PM"    ""
+ "Groove GFS Browser Helper"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
+ "Java™ Plug-In 2 SSV Helper"    "Java™ Platform SE binary"    "Oracle Corporation"    "c:\program files (x86)\java\jre1.8.0_66\bin\jp2ssv.dll"    "09/11/2015 12:10 PM"    ""
+ "Java™ Plug-In SSV Helper"    "Java™ Platform SE binary"    "Oracle Corporation"    "c:\program files (x86)\java\jre1.8.0_66\bin\ssv.dll"    "09/11/2015 12:09 PM"    ""
+ "Office Document Cache Handler"    "Microsoft Office Document Cache Handler"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\office16\urlredir.dll"    "11/11/2015 3:36 AM"    ""
+ "Skype Browser Helper"    "Skype Click to Call for Internet Explorer"    "Skype Technologies S.A."    "c:\program files (x86)\skype\toolbars\internet explorer\skypeieplugin.dll"    "14/05/2013 5:25 AM"    ""
+ "Windows Live ID Sign-in Helper"    "Microsoft® Windows Live ID Login Helper"    "Microsoft Corp."    "c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll"    "28/03/2011 7:32 PM"    ""
"HKLM\Software\Microsoft\Internet Explorer\Extensions"    ""    ""    ""    "09/12/2015 8:43 PM"    ""
+ "Lync Click to Call"    "Skype for Business"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\ochelper.dll"    "11/11/2015 3:49 AM"    ""
+ "OneNote Lin&ked Notes"    "Microsoft OneNote Internet Explorer Add-in"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\onbttnielinkednotes.dll"    "11/11/2015 3:54 AM"    ""
+ "Se&nd to OneNote"    "Microsoft OneNote Internet Explorer Add-in"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\vfs\programfilesx64\microsoft office\office16\onbttnie.dll"    "11/11/2015 3:46 AM"    ""
"HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions"    ""    ""    ""    "26/04/2014 12:40 PM"    ""
+ "OneNote Lin&ked Notes"    "Microsoft OneNote Internet Explorer Add-in"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\office16\onbttnielinkednotes.dll"    "11/11/2015 3:42 AM"    ""
+ "Se&nd to OneNote"    "Microsoft OneNote Internet Explorer Add-in"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\root\office16\onbttnie.dll"    "11/11/2015 3:51 AM"    ""
+ "Skype Click to Call"    "Skype Click to Call for Internet Explorer"    "Skype Technologies S.A."    "c:\program files (x86)\skype\toolbars\internet explorer\skypeieplugin.dll"    "14/05/2013 5:25 AM"    ""
"Task Scheduler"    ""    ""    ""    ""    ""
+ "\Adobe Acrobat Update Task"    "Adobe Reader and Acrobat Manager"    "Adobe Systems Incorporated"    "c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe"    "28/10/2015 5:42 PM"    ""
+ "\Adobe online update program"    "Adobe Reader and Acrobat Manager"    "Adobe Systems Incorporated"    "c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe"    "28/10/2015 5:42 PM"    ""
+ "\Apple\AppleSoftwareUpdate"    "Apple Software Update"    "Apple Inc."    "c:\program files (x86)\apple software update\softwareupdate.exe"    "01/06/2011 4:46 PM"    ""
+ "\CCleanerSkipUAC"    "CCleaner"    "Piriform Ltd"    "c:\program files\ccleaner\ccleaner.exe"    "19/04/2013 1:04 PM"    ""
+ "\DeviceDetector"    "MediaEspresso DeviceDetector"    "CyberLink"    "c:\program files (x86)\cyberlink\mediaespresso\devicedetector\devicedetector.exe"    "05/05/2011 6:24 AM"    ""
+ "\DropboxUpdateTaskUserS-1-5-21-3210138317-1086117833-226108382-1001Core"    "Dropbox Update"    "Dropbox, Inc."    "c:\users\kira\appdata\local\dropbox\update\dropboxupdate.exe"    "30/04/2015 12:41 PM"    ""
+ "\DropboxUpdateTaskUserS-1-5-21-3210138317-1086117833-226108382-1001UA"    "Dropbox Update"    "Dropbox, Inc."    "c:\users\kira\appdata\local\dropbox\update\dropboxupdate.exe"    "30/04/2015 12:41 PM"    ""
+ "\FacebookUpdateTaskUserS-1-5-21-3210138317-1086117833-226108382-1001Core"    "Facebook Installer"    "Facebook Inc."    "c:\users\kira\appdata\local\facebook\update\facebookupdate.exe"    "06/07/2012 11:50 AM"    ""
+ "\FacebookUpdateTaskUserS-1-5-21-3210138317-1086117833-226108382-1001UA"    "Facebook Installer"    "Facebook Inc."    "c:\users\kira\appdata\local\facebook\update\facebookupdate.exe"    "06/07/2012 11:50 AM"    ""
+ "\Google Updater and Installer"    ""    ""    "File not found: C:\Users\Kira\AppData\Local\Google\Update\GoogleUpdate.exe"    ""    ""
+ "\GyazoUpdateTaskMachine"    "Gyazo Auto Update Machine"    ""    "c:\program files (x86)\gyazo\gyazoupdate.exe"    "10/11/2008 1:40 AM"    ""
+ "\GyazoUpdateTaskMachineDaily"    "Gyazo Auto Update Machine"    ""    "c:\program files (x86)\gyazo\gyazoupdate.exe"    "10/11/2008 1:40 AM"    ""
+ "\Java Update Scheduler"    "Java Update Scheduler"    "Oracle Corporation"    "c:\program files (x86)\common files\java\java update\jusched.exe"    "09/11/2015 12:52 PM"    ""
+ "\Microsoft\Office\Office Automatic Updates"    "Microsoft Office Click-to-Run Client"    "Microsoft Corporation"    "c:\program files\common files\microsoft shared\clicktorun\officec2rclient.exe"    "18/11/2015 6:52 AM"    ""
+ "\Microsoft\Office\Office ClickToRun Service Monitor"    "Microsoft Office Click-to-Run Client"    "Microsoft Corporation"    "c:\program files\common files\microsoft shared\clicktorun\officec2rclient.exe"    "18/11/2015 6:52 AM"    ""
+ "\Microsoft\Office\Office Subscription Maintenance"    ""    ""    "File not found: C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe"    ""    ""
+ "\Microsoft\Windows\NetTrace\GatherNetworkInfo"    ""    ""    "c:\windows\system32\gathernetworkinfo.vbs"    "10/06/2009 12:36 PM"    ""
+ "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary"    "Windows Media Player Network Sharing Service Configuration Application"    "Microsoft Corporation"    "c:\program files\windows media player\wmpnscfg.exe"    "13/07/2009 4:24 PM"    ""
+ "\SidebarExecute"    "Windows Desktop Gadgets"    "Microsoft Corporation"    "c:\program files\windows sidebar\sidebar.exe"    "20/11/2010 2:24 AM"    ""
+ "\UALU notificatin"    "ALURecover"    "Acer Incorporated"    "c:\program files\gateway\gateway updater\ualu.exe"    "05/02/2012 6:32 PM"    ""
+ "\{5D4C6DE0-EB59-4A8C-ACD9-1152C6777124}"    ""    ""    "File not found: c:\users\kira\appdata\local\google\chrome\application\chrome.exe"    ""    ""
+ "\{E87F1DA6-D8F2-4AC3-BC08-A33CC44946C8}"    ""    ""    "File not found: c:\users\kira\appdata\local\google\chrome\application\chrome.exe"    ""    ""
"HKLM\System\CurrentControlSet\Services"    ""    ""    ""    "10/12/2015 1:15 PM"    ""
+ "Adobe LM Service"    "AdobeLM Service"    "Adobe Systems"    "c:\program files (x86)\common files\adobe systems shared\service\adobelmsvc.exe"    "07/01/2005 6:00 AM"    ""
+ "AdobeARMservice"    "Adobe Acrobat Updater keeps your Adobe software up to date."    "Adobe Systems Incorporated"    "c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe"    "28/10/2015 5:42 PM"    ""
+ "AdobeFlashPlayerUpdateSvc"    "This service keeps your Adobe Flash Player installation up to date with the latest enhancements and security fixes."    "Adobe Systems Incorporated"    "c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe"    "01/12/2015 12:17 PM"    ""
+ "Apple Mobile Device"    "Provides the interface to Apple mobile devices."    "Apple Inc."    "c:\program files (x86)\common files\apple\mobile device support\applemobiledeviceservice.exe"    "17/05/2012 7:06 PM"    ""
+ "avast! Antivirus"    "Manages and implements Avast antivirus services for this computer. This includes the real-time shields, the virus chest and the scheduler."    "AVAST Software"    "c:\program files\avast software\avast\avastsvc.exe"    "27/07/2015 9:17 AM"    ""
+ "AvastVBoxSvc"    "AvastVirtualBox Interface"    "Avast Software"    "c:\program files\avast software\avast\ng\vbox\avastvboxsvc.exe"    "09/07/2015 12:38 AM"    ""
+ "AvgAMPS"    "Provides protected service functionality for AVG."    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgamps.exe"    "19/11/2015 11:13 PM"    ""
+ "AVGIDSAgent"    "Provides Identity Protection Against Cyber Crime."    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgidsagent.exe"    "19/11/2015 11:19 PM"    ""
+ "avgsvc"    "AVG Service"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\framework\common\avgsvca.exe"    "12/11/2015 7:57 AM"    ""
+ "avgwd"    "AVG Watchdog Service"    "AVG Technologies CZ, s.r.o."    "c:\program files (x86)\avg\av\avgwdsvcx.exe"    "19/11/2015 11:14 PM"    ""
+ "ClickToRunSvc"    "Manages resource coordination, background streaming, and system integration of Microsoft Office products and their related updates. This service is required to run during the use of any Microsoft Office program, during initial streaming installation and all subsequent updates."    "Microsoft Corporation"    "c:\program files\common files\microsoft shared\clicktorun\officeclicktorun.exe"    "18/11/2015 6:34 AM"    ""
+ "cvhsvc"    "Client Virtualization Handler Service (unlocalized description)"    "Microsoft Corporation"    "c:\program files (x86)\common files\microsoft shared\virtualization handler\cvhsvc.exe"    "18/03/2015 11:48 AM"    ""
+ "DsiWMIService"    "Launch Manager WMI service program"    "Dritek System Inc."    "c:\program files (x86)\launch manager\dsiwmis.exe"    "30/06/2011 6:47 PM"    ""
+ "ePowerSvc"    "ePower Service"    "Acer Incorporated"    "c:\program files\gateway\gateway power management\epowersvc.exe"    "01/08/2011 6:59 PM"    ""
+ "EvtEng"    "Manages the event trace messages for all the Intel® PROSet/Wireless Software components."    "Intel® Corporation"    "c:\program files\intel\wifi\bin\evteng.exe"    "02/05/2011 1:27 PM"    ""
+ "GREGService"    "Global Registration Service"    "Acer Incorporated"    "c:\program files (x86)\gateway\registration\gregsvc.exe"    "29/05/2011 6:53 PM"    ""
+ "gupdate"    "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."    "Google Inc."    "c:\program files (x86)\google\update\googleupdate.exe"    "20/11/2015 8:55 AM"    ""
+ "gupdatem"    "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it."    "Google Inc."    "c:\program files (x86)\google\update\googleupdate.exe"    "20/11/2015 8:55 AM"    ""
+ "IAStorDataMgrSvc"    "Provides storage event notification and manages communication between the storage driver and user space applications."    "Intel Corporation"    "c:\program files (x86)\intel\intel® rapid storage technology\iastordatamgrsvc.exe"    "29/04/2011 11:28 PM"    ""
+ "iPod Service"    "iPod hardware management services"    "Apple Inc."    "c:\program files\ipod\bin\ipodservice.exe"    "31/05/2013 10:27 AM"    ""
+ "Live Updater Service"    "Updater Service"    "Acer Incorporated"    "c:\program files\gateway\gateway updater\updaterservice.exe"    "02/04/2012 9:49 PM"    ""
+ "LMS"    "Allows applications to access the local Intel® Management and Security Application using its locally-available selected network interfaces."    "Intel Corporation"    "c:\program files (x86)\intel\intel® management engine components\lms\lms.exe"    "22/12/2010 12:08 PM"    ""
+ "MBAMService"    "Malwarebytes Anti-Malware service"    "Malwarebytes"    "c:\program files (x86)\malwarebytes anti-malware\mbamservice.exe"    "03/09/2015 5:08 AM"    ""
+ "Microsoft SharePoint Workspace Audit Service"    "Microsoft SharePoint Workspace"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\groove.exe"    "18/12/2013 4:34 PM"    ""
+ "MozillaMaintenance"    "The Mozilla Maintenance Service ensures that you have the latest and most secure version of Mozilla Firefox on your computer. Keeping Firefox up to date is very important for your online security, and Mozilla strongly recommends that you keep this service enabled."    "Mozilla Foundation"    "c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe"    "29/10/2015 4:30 PM"    ""
+ "MyWiFiDHCPDNS"    "Wireless PAN DHCP and DNS Server"    ""    "c:\program files\intel\wifi\bin\pandhcpdns.exe"    "02/05/2011 1:13 PM"    ""
+ "NAUpdate"    "Provides access to Nero application updates and manages Nero applications."    "Nero AG"    "c:\program files (x86)\nero\update\nasvc.exe"    "04/05/2010 2:06 AM"    ""
+ "NTI IScheduleSvc"    "NTI IShadow Manage backup/Sync jobs and  etc..."    "NTI Corporation"    "c:\program files (x86)\nti\gateway mybackup\ischedulesvc.exe"    "08/03/2011 5:42 PM"    ""
+ "NvNetworkService"    "NVIDIA Network Service"    "NVIDIA Corporation"    "c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe"    "12/05/2014 6:17 AM"    ""
+ "NvStreamSvc"    "Service for SHIELD Streaming"    "NVIDIA Corporation"    "c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe"    "24/05/2014 5:12 AM"    ""
+ "nvsvc"    "Provides system and desktop level support to the NVIDIA display driver"    "NVIDIA Corporation"    "c:\windows\system32\nvvsvc.exe"    "16/10/2011 5:53 PM"    ""
+ "ose"    "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports."    "Microsoft Corporation"    "c:\program files (x86)\common files\microsoft shared\source engine\ose.exe"    "11/11/2015 3:45 AM"    ""
+ "osppsvc"    "Enables the download, installation, and enforcement of digital licenses for Microsoft Office applications. These applications require this service for proper operation. It is strongly recommended that you keep this service enabled."    "Microsoft Corporation"    "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe"    "05/07/2012 4:13 PM"    ""
+ "RegSrvc"    "Provides registry access to all Intel® PROSet/Wireless Software components"    "Intel® Corporation"    "c:\program files\common files\intel\wirelesscommon\regsrvc.exe"    "02/05/2011 1:10 PM"    ""
+ "sftlist"    "Streams and manages applications."    "Microsoft Corporation"    "c:\program files (x86)\microsoft application virtualization client\sftlist.exe"    "07/10/2014 4:56 PM"    ""
+ "sftvsa"    "Monitors global service events and launches virtual services."    "Microsoft Corporation"    "c:\program files (x86)\microsoft application virtualization client\sftvsa.exe"    "07/10/2014 4:54 PM"    ""
+ "SkypeUpdate"    "Enables the detection, download and installation of updates for Skype."    "Skype Technologies"    "c:\program files (x86)\skype\updater\updater.exe"    "09/07/2015 4:12 AM"    ""
+ "Steam Client Service"    "Steam Client Service monitors and updates Steam content"    "Valve Corporation"    "c:\program files (x86)\common files\steam\steamservice.exe"    "09/11/2015 6:23 PM"    ""
+ "TurboBoost"    "Intel® Turbo Boost Technology Monitor 2.0"    "Intel® Corporation"    "c:\program files\intel\turboboost\turboboost.exe"    "29/11/2010 3:02 PM"    ""
+ "UNS"    "Intel® Management and Security Application User Notification Service - Updates the Windows Event Log with notifications of pre defined events received from the local Intel® Management and Security Application Device."    "Intel Corporation"    "c:\program files (x86)\intel\intel® management engine components\uns\uns.exe"    "22/12/2010 12:12 PM"    ""
+ "vToolbarUpdater3.4.0"    "ToolbarU Application (Non Official)"    "AVG Secure Search"    "c:\program files (x86)\common files\avg secure search\vtoolbarupdater\3.4.0\toolbarupdater.exe"    "21/07/2015 5:28 AM"    ""
+ "WinDefend"    "Protection against spyware and potentially unwanted software"    "Microsoft Corporation"    "c:\program files\windows defender\mpsvc.dll"    "26/05/2013 9:51 PM"    ""
+ "wlidsvc"    "Enables Windows Live ID authentication."    "Microsoft Corp."    "c:\program files\common files\microsoft shared\windows live\wlidsvc.exe"    "28/03/2011 8:11 PM"    ""
+ "WMPNetworkSvc"    "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play"    "Microsoft Corporation"    "c:\program files\windows media player\wmpnetwk.exe"    "20/11/2010 3:18 AM"    ""
"HKLM\System\CurrentControlSet\Services"    ""    ""    ""    "10/12/2015 1:15 PM"    ""
+ "adp94xx"    "Adaptec Windows SAS/SATA Storport Driver"    "Adaptec, Inc."    "c:\windows\system32\drivers\adp94xx.sys"    "05/12/2008 3:54 PM"    ""
+ "adpahci"    "Adaptec Windows SATA Storport Driver"    "Adaptec, Inc."    "c:\windows\system32\drivers\adpahci.sys"    "01/05/2007 9:30 AM"    ""
+ "adpu320"    "Adaptec StorPort Ultra320 SCSI Driver (X64)"    "Adaptec, Inc."    "c:\windows\system32\drivers\adpu320.sys"    "27/02/2007 4:04 PM"    ""
+ "aliide"    "ALi mini IDE Driver"    "Acer Laboratories Inc."    "c:\windows\system32\drivers\aliide.sys"    "13/07/2009 3:19 PM"    ""
+ "amdsata"    "AHCI 1.2 Device Driver"    "Advanced Micro Devices"    "c:\windows\system32\drivers\amdsata.sys"    "18/03/2010 4:45 PM"    ""
+ "amdsbs"    "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform"    "AMD Technologies Inc."    "c:\windows\system32\drivers\amdsbs.sys"    "20/03/2009 10:36 AM"    ""
+ "amdxata"    "Storage Filter Driver"    "Advanced Micro Devices"    "c:\windows\system32\drivers\amdxata.sys"    "19/03/2010 8:18 AM"    ""
+ "arc"    "Adaptec RAID Storport Driver"    "Adaptec, Inc."    "c:\windows\system32\drivers\arc.sys"    "24/05/2007 1:27 PM"    ""
+ "arcsas"    "Adaptec SAS RAID WS03 Driver"    "Adaptec, Inc."    "c:\windows\system32\drivers\arcsas.sys"    "14/01/2009 11:27 AM"    ""
+ "aswHwid"    "avast! HardwareID"    "AVAST Software"    "c:\windows\system32\drivers\aswhwid.sys"    "27/07/2015 9:06 AM"    ""
+ "aswMonFlt"    "avast! mini-filter driver (aswMonFlt)"    "AVAST Software"    "c:\windows\system32\drivers\aswmonflt.sys"    "27/07/2015 9:06 AM"    ""
+ "aswRdr"    "avast! WFP Redirect driver"    "AVAST Software"    "c:\windows\system32\drivers\aswrdr2.sys"    "27/07/2015 9:07 AM"    ""
+ "aswRvrt"    "avast! Revert"    "AVAST Software"    "c:\windows\system32\drivers\aswrvrt.sys"    "27/07/2015 9:06 AM"    ""
+ "aswSnx"    "avast! virtualization driver (aswSnx)"    "AVAST Software"    "c:\windows\system32\drivers\aswsnx.sys"    "28/10/2015 11:34 PM"    ""
+ "aswSP"    "avast! Self Protection"    "AVAST Software"    "c:\windows\system32\drivers\aswsp.sys"    "28/10/2015 11:52 PM"    ""
+ "aswStm"    "avast! StreamFilter Callout Driver"    "AVAST Software"    "c:\windows\system32\drivers\aswstm.sys"    "27/07/2015 9:37 AM"    ""
+ "aswVmm"    "avast! VM Monitor"    "AVAST Software"    "c:\windows\system32\drivers\aswvmm.sys"    "27/07/2015 9:34 AM"    ""
+ "AthBTPort"    ""    ""    "File not found: system32\DRIVERS\btath_flt.sys"    ""    ""
+ "Avgdiska"    "AVG File Vault Driver"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgdiska.sys"    "06/11/2015 6:50 AM"    ""
+ "AVGIDSDriver"    "AVG Technologies IDS Application Activity Monitor Driver"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgidsdrivera.sys"    "06/11/2015 6:49 AM"    ""
+ "AVGIDSHA"    "AVG Technologies IDS Application Activity Monitor Helper Driver"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgidsha.sys"    "20/08/2015 3:58 AM"    ""
+ "Avgldx64"    "AVG AVI Loader Driver"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgldx64.sys"    "21/10/2015 7:16 AM"    ""
+ "Avgloga"    "AVG Logging Driver"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgloga.sys"    "14/08/2015 4:24 AM"    ""
+ "Avgmfx64"    "AVG Resident Shield Minifilter Driver"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgmfx64.sys"    "06/11/2015 6:49 AM"    ""
+ "Avgrkx64"    "AVG Anti-Rootkit Driver"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgrkx64.sys"    "10/08/2015 5:25 AM"    ""
+ "Avgtdia"    "AVG Network connection watcher"    "AVG Technologies CZ, s.r.o."    "c:\windows\system32\drivers\avgtdia.sys"    "07/10/2015 10:46 PM"    ""
+ "b06bdrv"    "Broadcom NetXtreme II GigE VBD"    "Broadcom Corporation"    "c:\windows\system32\drivers\bxvbda.sys"    "13/02/2009 2:18 PM"    ""
+ "b57nd60a"    "Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver."    "Broadcom Corporation"    "c:\windows\system32\drivers\b57nd60a.sys"    "26/04/2009 3:14 AM"    ""
+ "b57xdbd"    "Broadcom xD Picture Card Bus Driver"    "Broadcom Corporation"    "c:\windows\system32\drivers\b57xdbd.sys"    "20/01/2011 6:13 PM"    ""
+ "b57xdmp"    "Broadcom xD Picture Card Miniport Driver"    "Broadcom Corporation"    "c:\windows\system32\drivers\b57xdmp.sys"    "20/01/2011 6:13 PM"    ""
+ "BrFiltLo"    "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver"    "Brother Industries, Ltd."    "c:\windows\system32\drivers\brfiltlo.sys"    "06/08/2006 5:51 PM"    ""
+ "BrFiltUp"    "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver"    "Brother Industries, Ltd."    "c:\windows\system32\drivers\brfiltup.sys"    "06/08/2006 5:51 PM"    ""
+ "Brserid"    "Brotehr Serial I/F Driver (WDM)"    "Brother Industries Ltd."    "c:\windows\system32\drivers\brserid.sys"    "06/08/2006 5:51 PM"    ""
+ "BrSerWdm"    "Brother Serial driver (WDM version)"    "Brother Industries Ltd."    "c:\windows\system32\drivers\brserwdm.sys"    "06/08/2006 5:51 PM"    ""
+ "BrUsbMdm"    "Brother USB MDM Driver "    "Brother Industries Ltd."    "c:\windows\system32\drivers\brusbmdm.sys"    "06/08/2006 5:51 PM"    ""
+ "BrUsbSer"    "Brother USB Serial Driver"    "Brother Industries Ltd."    "c:\windows\system32\drivers\brusbser.sys"    "09/08/2006 4:11 AM"    ""
+ "bScsiMSa"    "Broadcom Memory Stick Driver"    "Broadcom Corporation"    "c:\windows\system32\drivers\bscsimsa.sys"    "16/05/2011 1:56 PM"    ""
+ "bScsiSDa"    "Broadcom SD 3.0 Driver"    "Broadcom Corporation"    "c:\windows\system32\drivers\bscsisda.sys"    "06/05/2011 9:10 AM"    ""
+ "BTATH_A2DP"    ""    ""    "File not found: system32\drivers\btath_a2dp.sys"    ""    ""
+ "btath_avdt"    ""    ""    "File not found: system32\drivers\btath_avdt.sys"    ""    ""
+ "BTATH_BUS"    ""    ""    "File not found: system32\DRIVERS\btath_bus.sys"    ""    ""
+ "BTATH_HCRP"    ""    ""    "File not found: system32\DRIVERS\btath_hcrp.sys"    ""    ""
+ "BTATH_LWFLT"    ""    ""    "File not found: system32\DRIVERS\btath_lwflt.sys"    ""    ""
+ "BTATH_RCP"    ""    ""    "File not found: system32\DRIVERS\btath_rcp.sys"    ""    ""
+ "BtFilter"    ""    ""    "File not found: system32\DRIVERS\btfilter.sys"    ""    ""
+ "cmdide"    "CMD PCI IDE Bus Driver"    "CMD Technology, Inc."    "c:\windows\system32\drivers\cmdide.sys"    "13/07/2009 3:19 PM"    ""
+ "EagleX64"    ""    ""    "File not found: C:\Windows\system32\drivers\EagleX64.sys"    ""    ""
+ "ebdrv"    "Broadcom NetXtreme II 10 GigE VBD"    "Broadcom Corporation"    "c:\windows\system32\drivers\evbda.sys"    "31/12/2008 8:29 AM"    ""
+ "elxstor"    "Storport Miniport Driver for LightPulse HBAs"    "Emulex"    "c:\windows\system32\drivers\elxstor.sys"    "03/02/2009 2:52 PM"    ""
+ "ew_hwusbdev"    ""    ""    "File not found: system32\DRIVERS\ew_hwusbdev.sys"    ""    ""
+ "ew_usbenumfilter"    ""    ""    "File not found: system32\DRIVERS\ew_usbenumfilter.sys"    ""    ""
+ "GEARAspiWDM"    "CD DVD Filter"    "GEAR Software Inc."    "c:\windows\system32\drivers\gearaspiwdm.sys"    "03/05/2012 11:56 AM"    ""
+ "hamachi"    "Hamachi Virtual Network Interface Driver"    "LogMeIn, Inc."    "c:\windows\system32\drivers\hamachi.sys"    "19/02/2009 2:36 AM"    ""
+ "hcw85cir"    "Hauppauge WinTV 885 Consumer IR Driver for eHome"    "Hauppauge Computer Works, Inc."    "c:\windows\system32\drivers\hcw85cir.sys"    "11/05/2009 12:26 AM"    ""
+ "HpSAMD"    "Smart Array SAS/SATA Controller Media Driver"    "Hewlett-Packard Company"    "c:\windows\system32\drivers\hpsamd.sys"    "20/04/2010 10:32 AM"    ""
+ "huawei_cdcacm"    ""    ""    "File not found: system32\DRIVERS\ew_jucdcacm.sys"    ""    ""
+ "huawei_cdcecm"    ""    ""    "File not found: system32\DRIVERS\ew_jucdcecm.sys"    ""    ""
+ "huawei_enumerator"    ""    ""    "File not found: system32\DRIVERS\ew_jubusenum.sys"    ""    ""
+ "huawei_ext_ctrl"    ""    ""    "File not found: system32\DRIVERS\ew_juextctrl.sys"    ""    ""
+ "iaStor"    "Intel Rapid Storage Technology driver - x64"    "Intel Corporation"    "c:\windows\system32\drivers\iastor.sys"    "26/04/2011 10:06 AM"    ""
+ "iaStorV"    "Intel Matrix Storage Manager driver - x64"    "Intel Corporation"    "c:\windows\system32\drivers\iastorv.sys"    "10/06/2010 4:46 PM"    ""
+ "igfx"    "Intel Graphics Kernel Mode Driver"    "Intel Corporation"    "c:\windows\system32\drivers\igdkmd64.sys"    "10/06/2011 10:16 AM"    ""
+ "iirsp"    "Intel/ICP Raid Storport Driver"    "Intel Corp./ICP vortex GmbH"    "c:\windows\system32\drivers\iirsp.sys"    "13/12/2005 1:47 PM"    ""
+ "intaud_WaveExtensible"    "Intel® WiDi Solution"    "Intel Corporation"    "c:\windows\system32\drivers\intelaud.sys"    "09/03/2011 3:43 PM"    ""
+ "IntcAzAudAddService"    "Realtek® High Definition Audio Function Driver"    "Realtek Semiconductor Corp."    "c:\windows\system32\drivers\rtkvhd64.sys"    "15/03/2011 2:27 AM"    ""
+ "IntcDAud"    "Intel® Display Audio Driver"    "Intel® Corporation"    "c:\windows\system32\drivers\intcdaud.sys"    "15/10/2010 12:28 AM"    ""
+ "iwdbus"    "Intel® WiDi Solution"    "Intel Corporation"    "c:\windows\system32\drivers\iwdbus.sys"    "09/03/2011 3:43 PM"    ""
+ "k57nd60a"    "Broadcom NetLink ™ Gigabit Ethernet NDIS6.x Unified Driver."    "Broadcom Corporation"    "c:\windows\system32\drivers\k57nd60a.sys"    "09/05/2011 8:42 PM"    ""
+ "LSI_FC"    "LSI Fusion-MPT FC Driver (StorPort)"    "LSI Corporation"    "c:\windows\system32\drivers\lsi_fc.sys"    "09/12/2008 2:46 PM"    ""
+ "LSI_SAS"    "LSI Fusion-MPT SAS Driver (StorPort)"    "LSI Corporation"    "c:\windows\system32\drivers\lsi_sas.sys"    "18/05/2009 4:20 PM"    ""
+ "LSI_SAS2"    "LSI SAS Gen2 Driver (StorPort)"    "LSI Corporation"    "c:\windows\system32\drivers\lsi_sas2.sys"    "18/05/2009 4:31 PM"    ""
+ "LSI_SCSI"    "LSI Fusion-MPT SCSI Driver (StorPort)"    "LSI Corporation"    "c:\windows\system32\drivers\lsi_scsi.sys"    "16/04/2009 2:13 PM"    ""
+ "MBAMProtector"    "Malwarebytes Anti-Malware"    "Malwarebytes"    "c:\windows\system32\drivers\mbam.sys"    "11/08/2015 9:35 AM"    ""
+ "MBAMWebAccessControl"    "Malwarebytes Web Access Control"    "Malwarebytes Corporation"    "c:\windows\system32\drivers\mwac.sys"    "17/06/2014 6:06 PM"    ""
+ "megasas"    "MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64"    "LSI Corporation"    "c:\windows\system32\drivers\megasas.sys"    "18/05/2009 5:09 PM"    ""
+ "MegaSR"    "LSI MegaRAID Software RAID Driver"    "LSI Corporation, Inc."    "c:\windows\system32\drivers\megasr.sys"    "18/05/2009 5:25 PM"    ""
+ "MEIx64"    "Intel® Management Engine Interface"    "Intel Corporation"    "c:\windows\system32\drivers\hecix64.sys"    "19/10/2010 3:33 PM"    ""
+ "NETwNs64"    "Intel® Wireless WiFi Link Driver"    "Intel Corporation"    "c:\windows\system32\drivers\netwns64.sys"    "01/05/2011 1:33 PM"    ""
+ "nfrd960"    "IBM ServeRAID Controller Driver"    "IBM Corporation"    "c:\windows\system32\drivers\nfrd960.sys"    "06/06/2006 1:11 PM"    ""
+ "ngvss"    "avast! NG snapshot driver"    "AVAST Software"    "c:\windows\system32\drivers\ngvss.sys"    "09/07/2015 11:57 PM"    ""
+ "NTIDrvr"    "NTI CD-ROM Filter Driver"    "NewTech Infosystems, Inc."    "c:\windows\system32\drivers\ntidrvr.sys"    "24/03/2009 7:09 PM"    ""
+ "nusb3hub"    "USB 3.0 Hub Driver"    "Renesas Electronics Corporation"    "c:\windows\system32\drivers\nusb3hub.sys"    "09/02/2011 9:52 PM"    ""
+ "nusb3xhc"    "USB 3.0 Host Controller Driver"    "Renesas Electronics Corporation"    "c:\windows\system32\drivers\nusb3xhc.sys"    "09/02/2011 9:52 PM"    ""
+ "nvlddmkm"    "NVIDIA Windows Kernel Mode Driver, Version 285.64 "    "NVIDIA Corporation"    "c:\windows\system32\drivers\nvlddmkm.sys"    "16/10/2011 4:49 PM"    ""
+ "nvpciflt"    "NVIDIA Windows Kernel Mode Driver, Version 285.64 "    "NVIDIA Corporation"    "c:\windows\system32\drivers\nvpciflt.sys"    "16/10/2011 4:50 PM"    ""
+ "nvraid"    "NVIDIA® nForce™ RAID Driver"    "NVIDIA Corporation"    "c:\windows\system32\drivers\nvraid.sys"    "19/03/2010 12:59 PM"    ""
+ "nvstor"    "NVIDIA® nForce™ Sata Performance Driver"    "NVIDIA Corporation"    "c:\windows\system32\drivers\nvstor.sys"    "19/03/2010 12:45 PM"    ""
+ "NvStreamKms"    "Nvidia Streaming Kernel Service"    "NVIDIA Corporation"    "c:\program files\nvidia corporation\nvstreamsrv\nvstreamkms.sys"    "22/05/2014 8:43 AM"    ""
+ "nvvad_WaveExtensible"    "NVIDIA Virtual Audio Driver"    "NVIDIA Corporation"    "c:\windows\system32\drivers\nvvad64v.sys"    "28/03/2014 5:32 AM"    ""
+ "ql2300"    "QLogic Fibre Channel Stor Miniport Driver"    "QLogic Corporation"    "c:\windows\system32\drivers\ql2300.sys"    "22/01/2009 3:05 PM"    ""
+ "ql40xx"    "QLogic iSCSI Storport Miniport Driver"    "QLogic Corporation"    "c:\windows\system32\drivers\ql40xx.sys"    "18/05/2009 5:18 PM"    ""
+ "Serial"    "Brotehr Serial I/F Driver (WDM)"    "Brother Industries Ltd."    "c:\windows\system32\drivers\serial.sys"    "13/07/2009 4:00 PM"    ""
+ "SiSRaid2"    "SiS RAID Stor Miniport Driver"    "Silicon Integrated Systems Corp."    "c:\windows\system32\drivers\sisraid2.sys"    "24/09/2008 10:28 AM"    ""
+ "SiSRaid4"    "SiS AHCI Stor-Miniport Driver"    "Silicon Integrated Systems"    "c:\windows\system32\drivers\sisraid4.sys"    "01/10/2008 1:56 PM"    ""
+ "SSCBFS3"    "Callback File System Driver"    "EldoS Corporation"    "c:\windows\system32\drivers\sscbfs3.sys"    "30/01/2013 1:11 PM"    ""
+ "stexstor"    "Promise  SuperTrak EX Series Driver for Windows "    "Promise Technology"    "c:\windows\system32\drivers\stexstor.sys"    "17/02/2009 3:03 PM"    ""
+ "TurboB"    "Turbo Boost UI Monitor driver"    "Intel® Corporation"    "c:\windows\system32\drivers\turbob.sys"    "29/11/2010 3:02 PM"    ""
+ "UBHelper"    "NTI CDROM Filter Driver"    "NewTech Infosystems Corporation"    "c:\windows\system32\drivers\ubhelper.sys"    "27/04/2009 12:48 AM"    ""
+ "USBAAPL64"    "Apple Mobile Device USB Driver"    "Apple, Inc."    "c:\windows\system32\drivers\usbaapl64.sys"    "27/11/2012 3:38 PM"    ""
+ "VBoxAswDrv"    "VirtualBox Support Driver"    "Avast Software"    "c:\program files\avast software\avast\ng\vbox\vboxaswdrv.sys"    "09/07/2015 1:18 AM"    ""
+ "viaide"    "VIA Generic PCI IDE Bus Driver"    "VIA Technologies, Inc."    "c:\windows\system32\drivers\viaide.sys"    "13/07/2009 3:19 PM"    ""
+ "vsmraid"    "VIA RAID DRIVER FOR AMD-X86-64"    "VIA Technologies Inc.,Ltd"    "c:\windows\system32\drivers\vsmraid.sys"    "30/01/2009 5:18 PM"    ""
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32"    ""    ""    ""    "16/07/2014 1:29 AM"    ""
+ "msacm.l3acm"    "MPEG Layer-3 Audio Codec for MSACM"    "Fraunhofer Institut Integrierte Schaltungen IIS"    "c:\windows\system32\l3codeca.acm"    "13/07/2009 5:28 PM"    ""
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32"    ""    ""    ""    "16/07/2014 1:29 AM"    ""
+ "msacm.l3acm"    "MPEG Layer-3 Audio Codec for MSACM"    "Fraunhofer Institut Integrierte Schaltungen IIS"    "c:\windows\syswow64\l3codeca.acm"    "13/07/2009 5:06 PM"    ""
+ "msacm.l3codecp"    "MPEG Audio Layer-3 Codec for MSACM"    "Fraunhofer Institut Integrierte Schaltungen IIS"    "c:\windows\syswow64\l3codecp.acm"    "13/07/2009 5:06 PM"    ""
+ "vidc.cvid"    "Cinepak® Codec"    "Radius Inc."    "c:\windows\syswow64\iccvid.dll"    "20/11/2010 3:59 AM"    ""
+ "VIDC.LWLR"    ""    ""    "c:\windows\syswow64\rgbacodec.dll"    "29/01/2014 11:12 AM"    ""
+ "vidc.VP60"    "VP6 VIDEO FOR WINDOWS CODEC "    "On2.com"    "c:\windows\syswow64\vp6vfw.dll"    "02/10/2003 12:38 PM"    ""
+ "vidc.VP61"    "VP6 VIDEO FOR WINDOWS CODEC "    "On2.com"    "c:\windows\syswow64\vp6vfw.dll"    "02/10/2003 12:38 PM"    ""
"HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance"    ""    ""    ""    "30/09/2015 1:40 PM"    ""
+ "CyberLink Audio Decoder (PDVD10)"    "CyberLink Audio Decoder Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claud.ax"    "20/02/2011 6:50 PM"    ""
+ "CyberLink Audio Effect (PDVD10)"    "CyberLink Audio Effect Filter"    "CyberLink Corporation"    "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claudfx.ax"    "25/12/2009 12:54 AM"    ""
+ "CyberLink Audio Wizard"    "CyberLink Audio Wizard Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claudwizard.ax"    "14/08/2009 5:26 AM"    ""
+ "CyberLink AudioCD Filter (PDVD10)"    "CyberLink AudioCD Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claudiocd.ax"    "23/06/2009 6:00 AM"    ""
+ "Cyberlink Demuxer 2.0 (PDVD10)"    "CLDemuxer2"    "Cyberlink"    "c:\program files (x86)\cyberlink\powerdvd10\navfilter\cldemuxer2.ax"    "20/03/2011 7:51 PM"    ""
+ "CyberLink Digest Filter (PDVD10)"    "DigestFilter Dynamic Link Library"    ""    "c:\program files (x86)\cyberlink\powerdvd10\digestfilter.dll"    "28/04/2010 4:54 AM"    ""
+ "CyberLink DVD Navigator (PDVD10)"    "CyberLink DVD Navigation Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clnavx.ax"    "03/05/2011 1:39 AM"    ""
+ "CyberLink FLV Splitter(PDVD10)"    "CyberLink FLV Splitter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clflvsplitter.ax"    "26/08/2010 11:06 PM"    ""
+ "CyberLink HAM Decoder (PDVD10)"    "CyberLink 264 Decoder Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clcvd.ax"    "10/02/2011 12:28 AM"    ""
+ "CyberLink HD/BD Mixer (PDVD10)"    "CLHBMixer"    " "    "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\clhbmixer.ax"    "06/10/2010 11:16 PM"    ""
+ "CyberLink Line21 Decoder (PDVD10)"    "CyberLink Line21 Decoder Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clline21.ax"    "23/07/2009 6:21 PM"    ""
+ "CyberLink Matroska Splitter(PDVD10)"    "CyberLink Matroska Splitter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clmkvsplter.ax"    "11/04/2011 1:49 AM"    ""
+ "CyberLink MPEG Splitter"    "CyberLink MPEG Splitter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clsplter.ax"    "28/12/2010 5:01 AM"    ""
+ "CyberLink MPEG-4 Splitter (PDVD10)"    "CyberLink MPEG-4 Splitter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clm4splt.ax"    "09/06/2010 11:06 PM"    ""
+ "CyberLink RealAudio Decoder(PDVD10)"    "CyberLink RealMedia Audio Decoder"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\clrmaud.ax"    "24/12/2009 7:44 PM"    ""
+ "CyberLink RealMedia Splitter(PDVD10)"    "CyberLink RealMedia Splitter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clrmsplitter.ax"    "06/05/2010 1:42 AM"    ""
+ "CyberLink RealVideo Decoder(PDVD10)"    "CyberLink RealMedia Video Decoder"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clrmvd.ax"    "24/12/2009 7:42 PM"    ""
+ "Cyberlink SubTitle Importor (PDVD10)"    "CLSubTitle.ax"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clsubtitle.ax"    "21/10/2010 1:34 AM"    ""
+ "Cyberlink SubTitle Importor 2.0 (PDVD10)"    "CLSubTitle.ax"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clsubtitle.ax"    "21/10/2010 1:34 AM"    ""
+ "CyberLink TimeStretch Filter (PDVD10)"    "CLAuTS.ax"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\clauts.ax"    "03/10/2010 7:39 PM"    ""
+ "CyberLink Tzan Filter (PDVD10)"    "Cyberlink Tzan Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\cltzan.ax"    "26/10/2010 4:22 AM"    ""
+ "CyberLink Video Decoder (PDVD10)"    "CyberLink 264 Decoder Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clcvd.ax"    "10/02/2011 12:28 AM"    ""
+ "CyberLink Video/SP Decoder (PDVD10)"    "CyberLink Video/SP Filter"    "CyberLink Corp."    "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clvsd.ax"    "13/07/2010 2:17 AM"    ""
+ "DS Video Buffer Filter"    "WiDiAgent.dll COM object."    "Intel Corporation"    "c:\program files (x86)\common files\intel corporation\widiagent\dsbuffer_video.ax"    "21/06/2011 2:22 PM"    ""
+ "Intel® Mux Renderer"    "Intel® TS Mux / Network Renderer"    "Intel Corporation"    "c:\program files (x86)\common files\intel corporation\widiagent\intelmux.dll"    "21/06/2011 2:22 PM"    ""
+ "Intel®WiDi H264 encoder"    ""    ""    "c:\program files (x86)\common files\intel corporation\widiagent\h264_enc_filter.dll"    "21/06/2011 2:20 PM"    ""
+ "MainConcept AAC Encoder"    "AAC audio encoder filter"    "MainConcept GmbH"    "c:\program files (x86)\common files\intel corporation\mainconcept filters\mc_enc_aac_ds.ax"    "23/03/2009 11:02 AM"    ""
+ "Memory Buffered Filter"    ""    ""    "c:\program files (x86)\steam\steamapps\common\worms clan wars\redist\memorybufferedfilter.dll"    "22/04/2012 11:39 PM"    ""
+ "WD Audio Filter"    "WiDi Audio Source Filter."    "Intel Corporation"    "c:\program files (x86)\common files\intel corporation\widiagent\wdaudiofilter.dll"    "21/06/2011 2:22 PM"    ""
+ "WD Secure Source Filter"    "Intel® WiDi Secure Video Source Filter."    "Intel Corporation"    "c:\program files (x86)\common files\intel corporation\widiagent\wdsecuresourcefilter.dll"    "21/06/2011 2:22 PM"    ""
+ "WDSource Filter"    "WiDi Video Source Filter."    "Intel Corporation"    "c:\program files (x86)\common files\intel corporation\widiagent\wdsourcefilter.dll"    "21/06/2011 2:22 PM"    ""
"HKLM\SOFTWARE\Classes\Htmlfile\Shell\Open\Command\(Default)"    ""    ""    ""    "30/03/2013 2:39 PM"    ""
+ "C:\Program Files\Internet Explorer\iexplore.exe"    "Internet Explorer"    "Microsoft Corporation"    "c:\program files\internet explorer\iexplore.exe"    "08/11/2015 12:24 PM"    ""
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers"    ""    ""    ""    "24/04/2014 7:58 PM"    ""
+ "WLIDCredentialProvider"    "Microsoft® Windows Live ID Credential Provider"    "Microsoft Corp."    "c:\program files\common files\microsoft shared\windows live\wlidcredprov.dll"    "28/03/2011 8:12 PM"    ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries"    ""    ""    ""    "24/04/2014 7:51 PM"    ""
+ "WindowsLive Local NSP"    "Microsoft® Windows Live ID Namespace Provider"    "Microsoft Corp."    "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll"    "28/03/2011 7:31 PM"    ""
+ "WindowsLive NSP"    "Microsoft® Windows Live ID Namespace Provider"    "Microsoft Corp."    "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll"    "28/03/2011 7:31 PM"    ""
"HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64"    ""    ""    ""    "24/04/2014 7:51 PM"    ""
+ "WindowsLive Local NSP"    "Microsoft® Windows Live ID Namespace Provider"    "Microsoft Corp."    "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll"    "28/03/2011 8:10 PM"    ""
+ "WindowsLive NSP"    "Microsoft® Windows Live ID Namespace Provider"    "Microsoft Corp."    "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll"    "28/03/2011 8:10 PM"    ""
"HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors"    ""    ""    ""    "12/10/2014 9:40 PM"    ""
+ "Canon BJ Language Monitor MG2200 series"    "IJ Language Monitor"    "CANON INC."    "c:\windows\system32\cnmlmb6.dll"    "23/03/2012 10:34 AM"    ""
+ "LIDIL hpzllw71"    "LanguageMonitor"    "Hewlett-Packard Corporation"    "c:\windows\system32\hpzllw71.dll"    "13/07/2009 5:28 PM"    ""
+ "PCL hpf3lw73"    "LanguageMonitor"    "Hewlett-Packard Company"    "c:\windows\system32\hpf3lw73.dll"    "13/07/2009 5:27 PM"    ""
"HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order"    ""    ""    ""    "27/04/2013 6:29 PM"    ""
+ "SSCBFS3"    "Virtual Network Shares SugarSync VFS v3"    "EldoS Corporation"    "c:\windows\system32\sscbfsnetrdr3.dll"    "30/01/2013 1:12 PM"    ""
"HKLM\Software\Microsoft\Office\Outlook\Addins"    ""    ""    ""    "10/08/2015 7:28 PM"    ""
+ "Connect Class"    "OutlookChangeNotifier"    "Apple Inc."    "c:\program files\common files\apple\mobile device support\outlookchangenotifieraddin.dll"    "06/12/2012 11:54 AM"    ""
+ "Groove OutlookProxyAddIn"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files\microsoft office\office14\grooveex.dll"    "18/12/2013 4:41 PM"    ""
"HKCU\Software\Microsoft\Office\Outlook\Addins"    ""    ""    ""    "26/04/2014 12:40 PM"    ""
+ "CalendarHelper Class"    "iTunes Outlook Add-in"    "Apple Inc."    "c:\program files\itunes\itunesoutlookaddin.dll"    "31/05/2013 10:49 AM"    ""
+ "{5B7AB748-6D2E-4827-90A5-32B426DC61B7}"    ""    ""    ""    "23/01/2014 11:48 AM"    ""
+ "{EFEF7FDB-0CED-4FB6-B3BB-3C50D39F4120}"    ""    ""    ""    "23/01/2014 11:48 AM"    ""
"HKLM\Software\Wow6432Node\Microsoft\Office\Outlook\Addins"    ""    ""    ""    "10/08/2015 7:28 PM"    ""
+ "BCSAddin Connect class"    "Microsoft Office 2010 component"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\addins\bcsaddin.dll"    "05/11/2012 7:24 AM"    ""
+ "Connect Class"    "Microsoft Outlook Social Connector"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\socialconnector.dll"    "12/05/2015 5:21 PM"    ""
+ "Connect Class"    "OutlookChangeNotifier"    "Apple Inc."    "c:\program files (x86)\common files\apple\mobile device support\outlookchangenotifieraddin.dll"    "06/12/2012 12:02 PM"    ""
+ "FormRegionAddin Class"    ""    ""    "c:\program files (x86)\microsoft office\office14\addins\umoutlookaddin.dll"    "10/11/2015 6:41 PM"    ""
+ "Groove OutlookProxyAddIn"    "Microsoft SharePoint Workspace Extensions"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\grooveex.dll"    "18/12/2013 4:37 PM"    ""
+ "Microsoft VBA for Outlook Addin"    "Outlook VBA Integration Add-In"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\addins\outlvba.dll"    "14/02/2013 7:43 AM"    ""
+ "OneNote Notes about Outlook Items"    "Microsoft OneNote Outlook Add-in"    "Microsoft Corporation"    "c:\program files (x86)\microsoft office\office14\onbttnol.dll"    "14/10/2015 7:56 AM"    ""
"HKCU\Software\Microsoft\Office\PowerPoint\Addins"    ""    ""    ""    "23/01/2014 11:48 AM"    ""
X "{3A7CAEBB-C5C3-4EFF-ADDF-C32663BDF8DA}"    ""    ""    ""    "09/12/2015 11:43 PM"    ""
"HKCU\Software\Microsoft\Office\Word\Addins"    ""    ""    ""    "23/01/2014 11:48 AM"    ""
X "{C580A1B2-5915-4DC3-BE93-8A51F4CAB320}"    ""    ""    ""    "23/01/2014 11:48 AM"    ""

 

 

 

I wanted her to run minitoolbox and rkill just to get some more data to post, but she's been system restoring for the past hour and I'm tired of waiting.


Edited by OnyxReaper, 10 December 2015 - 08:49 PM.


BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users