Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Smitfraud


  • This topic is locked This topic is locked
2 replies to this topic

#1 Darren_B

Darren_B

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:12:01 PM

Posted 07 June 2007 - 09:08 AM

Hi

I have IE windows from url.cvpfeed.com keep appearing on my Vista laptop.
I have run AdAware and Spybot and Spybot found the Smitfraud-C.Coreservice but cannot remove it even after a reboot and a rerun of Spybot.

Spybot Log below....



--- Search result list ---
Smitfraud-C.CoreService: Settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\core

Smitfraud-C.CoreService: Settings (Registry key, nothing done)
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\core

Smitfraud-C.CoreService: Data (File, nothing done)
C:\Windows\System32\drivers\core.cache.dsk

Smitfraud-C.CoreService: System file (File, nothing done)
C:\Windows\System32\drivers\core.sys

CasinoPopupStuff: Tracking cookie (Internet Explorer: d.belton) (Cookie, nothing done)


Winsoftware: Tracking cookie (Internet Explorer: d.belton) (Cookie, nothing done)


WebTrends live: Tracking cookie (Firefox: default) (Cookie, nothing done)



--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2007-06-07 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2007-05-23 advcheck.dll (1.5.3.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2007-01-02 Tools.dll (2.0.1.0)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2007-06-06 Includes\Cookies.sbi (*)
2007-05-30 Includes\Dialer.sbi (*)
2007-06-06 Includes\DialerC.sbi (*)
2007-05-30 Includes\Hijackers.sbi (*)
2007-06-06 Includes\HijackersC.sbi (*)
2006-10-27 Includes\Keyloggers.sbi (*)
2007-06-06 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2007-05-30 Includes\Malware.sbi (*)
2007-06-06 Includes\MalwareC.sbi (*)
2003-03-16 Includes\plugin-ignore.ini
2007-03-21 Includes\PUPS.sbi (*)
2007-06-06 Includes\PUPSC.sbi (*)
2007-06-06 Includes\Revision.sbi (*)
2007-05-30 Includes\Security.sbi (*)
2007-06-06 Includes\SecurityC.sbi (*)
2007-06-06 Includes\Spybots.sbi (*)
2007-06-06 Includes\SpybotsC.sbi (*)
2003-03-16 Includes\Temporary.sbi (*)
2005-02-17 Includes\Tracks.uti
2007-05-16 Includes\Trojans.sbi (*)
2007-06-06 Includes\TrojansC.sbi (*)



--- System information ---
Unknown Windows version 6.0 (Build: 6000)
/ MSXML4SP2: FIX: ASP stops responding when calling Response.Redirect to another server using msxml4 sp2


--- Startup entries list ---
Located: HK_LM:Run, !AVG Anti-Spyware
command: "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
file: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
size: 6731312
MD5: 5d6086e6d1e14d69723e7685ff595081

Located: HK_LM:Run, AMSG
command: C:\Program Files\ThinkVantage\AMSG\Amsg.exe /startup
file:

Located: HK_LM:Run, AVG7_CC
command: C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
file: C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
size: 416256
MD5: 2200c98c049de1a7638ea0edba1c8882

Located: HK_LM:Run, AwaySch
command: C:\Program Files\Lenovo\AwayTask\AwaySch.EXE
file: C:\Program Files\Lenovo\AwayTask\AwaySch.EXE
size: 91688
MD5: 78374c795b65347220250f15186b5c67

Located: HK_LM:Run, cssauth
command: "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
file: C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
size: 2614848
MD5: d180e2f10ca62ea60f964c272b90dbad

Located: HK_LM:Run, EZEJMNAP
command: C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
file: C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
size: 243248
MD5: 2bbadc532a4f473b602185438805ac16

Located: HK_LM:Run, LPManager
command: C:\PROGRA~1\THINKV~2\PrdCtr\LPMGR.exe
file: C:\PROGRA~1\THINKV~2\PrdCtr\LPMGR.exe
size: 120368
MD5: af74ed9e40ea84b9f8e9ee99f04c5c05

Located: HK_LM:Run, PWMTRV
command: rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
file:

Located: HK_LM:Run, SoundMAXPnP
command: C:\Program Files\Analog Devices\Core\smax4pnp.exe
file: C:\Program Files\Analog Devices\Core\smax4pnp.exe
size: 1097728
MD5: bfe13605a62696ebf1c8fea9e2d279bd

Located: HK_LM:Run, TPFNF7
command: C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe /r
file:

Located: HK_LM:Run, TPHOTKEY
command: C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
file: C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
size: 64128
MD5: 8598f2166a2f60214a04373562d9ffa3

Located: HK_LM:Run, TPKMAPHELPER
command: C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe -helper
file:

Located: HK_LM:Run, TpShocks
command: TpShocks.exe
file: C:\Windows\system32\TpShocks.exe
size: 181808
MD5: 2e1ef009beced35a0b2aa038382cd1c3

Located: HK_LM:Run, TVT Scheduler Proxy
command: C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
file: C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
size: 536576
MD5: db83282d8955aad7bf224459b28dec4c

Located: HK_CU:Run, msnmsgr
command: "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
file: C:\Program Files\MSN Messenger\msnmsgr.exe
size: 5674352
MD5: c4281ad865739e71fd1e4dac19a68d60

Located: HK_CU:Run, SpybotSD TeaTimer
command: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
file: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 1415824
MD5: 70496eee0ddbe485f658693826f44d38

Located: System.ini, avgwlntf
command: avgwlntf.dll
file: avgwlntf.dll

Located: System.ini, igfxcui
command: igfxdev.dll
file: igfxdev.dll

Located: System.ini, psfus
command: C:\Windows\system32\psqlpwd.dll
file: C:\Windows\system32\psqlpwd.dll
size: 89600
MD5: c19e9ebf939e093ea0aebac4ec09c21d



--- Browser helper object list ---
{00C6482D-C502-44C8-8409-FCE54AD9C208} (SnagIt Toolbar Loader)
BHO name:
CLSID name: SnagIt Toolbar Loader
description: SnagIt
classification: Legitimate
known filename: SnagItBHO.dll
info link: http://www.techsmith.com/products/snagit/default.asp
info source: TonyKlein
Path: C:\Program Files\TechSmith\SnagIt 8\
Long name: SnagItBHO.dll
Short name: SNA335~1.DLL
Date (created): 01/05/2007 11:11:48
Date (last access): 04/06/2007 11:56:28
Date (last write): 01/05/2007 11:11:48
Filesize: 63048
Attributes: archive
MD5: 921BA32FE172DC3731E3ED72F2BA7B5D
CRC32: 6DF28297
Version: 8.2.3.14

{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Adobe PDF Reader Link Helper)
BHO name:
CLSID name: Adobe PDF Reader Link Helper
description: Adobe Acrobat reader
classification: Legitimate
known filename: AcroIEhelper.ocx<br>AcroIEhelper.dll
info link: http://www.adobe.com/products/acrobat/readstep2.html
info source: TonyKlein
Path: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\
Long name: AcroIEHelper.dll
Short name: ACROIE~1.DLL
Date (created): 23/10/2006 00:08:42
Date (last access): 19/02/2007 15:08:56
Date (last write): 23/10/2006 00:08:42
Filesize: 62080
Attributes: archive
MD5: C11F6A1F61481E24BE3FDC06EA6F7D2A
CRC32: E388508F
Version: 8.0.0.456

{53707962-6F74-2D53-2644-206D7942484F} ()
BHO name:
CLSID name:
description: Spybot-S&D IE Browser plugin
classification: Legitimate
known filename: SDhelper.dll
info link: http://spybot.eon.net.au/
info source: Patrick M. Kolla
Path: C:\PROGRA~1\SPYBOT~1\
Long name: SDHelper.dll
Short name:
Date (created): 16/03/2003 01:02:00
Date (last access): 07/06/2007 13:01:10
Date (last write): 31/05/2005 01:04:00
Filesize: 853672
Attributes: archive
MD5: 250D787A5712D7768DDC133B3E477759
CRC32: D4589A41
Version: 1.4.0.0

{72853161-30C5-4D22-B7F9-0BBC1D38A37E} (Groove GFS Browser Helper)
BHO name:
CLSID name: Groove GFS Browser Helper
Path: C:\PROGRA~1\MICROS~2\Office12\
Long name: GrooveShellExtensions.dll
Short name: GRA8E1~1.DLL
Date (created): 27/10/2006 01:48:42
Date (last access): 16/02/2007 13:27:54
Date (last write): 27/10/2006 01:48:42
Filesize: 2210608
Attributes: archive
MD5: 786DD1892B553EFE5A004AC39775C851
CRC32: AAD965C9
Version: 12.0.4518.1014

{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
BHO name:
CLSID name: SSVHelper Class
Path: C:\Program Files\Java\jre1.6.0\bin\
Long name: ssv.dll
Short name:
Date (created): 21/02/2007 17:40:34
Date (last access): 21/02/2007 17:40:34
Date (last write): 21/02/2007 17:40:34
Filesize: 501384
Attributes: archive
MD5: 55A2F8AE42C4B347173F1AEDE5061BE3
CRC32: E41413E9
Version: 6.0.0.105

{7E853D72-626A-48EC-A868-BA8D5E23E045} ()
BHO name:
CLSID name:

{F040E541-A427-4CF7-85D8-75E3E0F476C5} (CPwmIEBrowserHelper Object)
BHO name:
CLSID name: CPwmIEBrowserHelper Object
Path: C:\Program Files\Lenovo\Client Security Solution\
Long name: tvtpwm_ie_com.dll
Short name: TVTPWM~1.DLL
Date (created): 20/12/2006 14:38:02
Date (last access): 14/02/2007 16:27:26
Date (last write): 20/12/2006 14:38:02
Filesize: 796224
Attributes: archive
MD5: B74F765DE76FB6A56F65596EA8E65441
CRC32: 92D00F9A
Version: 2.1.0.0



--- ActiveX list ---
Microsoft XML Parser for Java (Microsoft XML Parser for Java)
DPF name: Microsoft XML Parser for Java
CLSID name:
Installer:
Codebase: file:///C:/Windows/Java/classes/xmldso.cab
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\xmldso.cab
info link:
info source: Patrick M. Kolla



--- Process list ---
PID: 432 ( 4) \SystemRoot\System32\smss.exe
PID: 500 ( 488) C:\Windows\system32\csrss.exe
size: 7680
MD5: 117B7C8A8B026A5DCE5E3180ED05E823
PID: 544 ( 488) C:\Windows\system32\wininit.exe
size: 95744
MD5: D4385B03E8CCCEE6F0EE249F827C1F3E
PID: 556 ( 536) C:\Windows\system32\csrss.exe
size: 7680
MD5: 117B7C8A8B026A5DCE5E3180ED05E823
PID: 588 ( 544) C:\Windows\system32\services.exe
size: 279552
MD5: 329CF3C97CE4C19375C8ABCABAE258B0
PID: 604 ( 544) C:\Windows\system32\lsass.exe
size: 7680
MD5: 6A0E382E74280E4CC0DF17FE2661D003
PID: 612 ( 544) C:\Windows\system32\lsm.exe
size: 210944
MD5: 77F52395637906269B91264FFE576B51
PID: 712 ( 536) C:\Windows\system32\winlogon.exe
size: 308224
MD5: 9F75392B9128A91ABAFB044EA350BAAD
PID: 800 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 840 ( 588) C:\Windows\system32\ibmpmsvc.exe
size: 73782
MD5: 21ABD7E16659602723F984F512C65E02
PID: 892 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 940 ( 588) C:\Windows\System32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1020 ( 588) C:\Windows\System32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1084 ( 588) C:\Windows\System32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1132 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1260 ( 588) C:\Windows\system32\SLsvc.exe
size: 2592256
MD5: 7610645679BB5994210D21A347E0C479
PID: 1352 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1472 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1696 ( 588) C:\Windows\System32\spoolsv.exe
size: 124928
MD5: DA612EF2556776DF2630B68BF2D48935
PID: 1720 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1940 ( 588) C:\Windows\system32\IPSSVC.EXE
size: 108080
MD5: CAB0D5BFD4F66613D18C9225C7FED334
PID: 1976 ( 588) C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
size: 312880
MD5: 5DCD235C061022BCDA9AA48670B64211
PID: 1988 ( 588) C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
size: 353280
MD5: 5F4ED1DBA7E1EAECBA443A53DA176485
PID: 2008 ( 588) C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
size: 49664
MD5: 30A14F65DB477DC00A64A5A24E96919C
PID: 124 ( 588) C:\PROGRA~1\Grisoft\AVGFRE~1\avgrssvc.exe
size: 192512
MD5: 08D3C84AE7573DFA62E9CDC24594B125
PID: 276 ( 588) C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
size: 351744
MD5: C6A162BEDAA82DBE9EBF8C7EEBD2929B
PID: 308 ( 124) C:\PROGRA~1\Grisoft\AVGFRE~1\avgrssvc.exe
size: 192512
MD5: 08D3C84AE7573DFA62E9CDC24594B125
PID: 348 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 468 ( 588) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
size: 335872
MD5: 7CF1B716372B89568AE4C0FE769F5869
PID: 1204 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1492 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 1480 ( 588) C:\Program Files\Lenovo\System Update\SUService.exe
size: 13312
MD5: 4817C973D41F97F89C996276C9C6FC4B
PID: 1824 ( 588) C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
size: 644672
MD5: 0C84DA9176A4417739383B0CE70334D2
PID: 656 ( 588) C:\Windows\System32\TPHDEXLG.exe
size: 37168
MD5: 050E28B770D1CEC2E0F5CE4432F922CD
PID: 1456 ( 588) C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
size: 55928
MD5: 422962C6EC9EF36817D8B0C32A8938EC
PID: 1956 ( 588) C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe
size: 722496
MD5: D9D3D4008D2D7EB10C61D01B25A3A8CF
PID: 452 ( 588) C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
size: 569344
MD5: A99F64C0BF107B4D3E61DAC7F4BD3F26
PID: 2112 ( 588) C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
size: 950272
MD5: E0A5BB730F72B8089B660DB9155C0389
PID: 2224 ( 588) C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
size: 1118208
MD5: 354A569D2F3AB9A4E2F061B373059590
PID: 2276 ( 588) C:\Program Files\Lenovo\Rescue and Recovery\ADM\IUService.exe
size: 45056
MD5: 2E72C66682E9274C97AE3F5A57C2FA33
PID: 2304 ( 588) C:\Windows\System32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 2368 ( 588) C:\Windows\system32\SearchIndexer.exe
size: 287744
MD5: 5DE40982E3AE45DC00586A93637B351B
PID: 2472 (2224) C:\Program Files\Common Files\Lenovo\Logger\logmon.exe
size: 22016
MD5: 1D1528D57A28B8DB2284582B9C1AF4BC
PID: 2728 (1132) C:\Windows\system32\taskeng.exe
size: 166400
MD5: 1226E9FAE5B8508801EC974E3C9D9C14
PID: 3092 ( 972) C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe
size: 21504
MD5: 3B74016F79D9CEFFEB6A2BDD0BF03CD4
PID: 1468 ( 588) C:\Windows\system32\svchost.exe
size: 22016
MD5: 10DA15933D582D2FEDCF705EFE394B09
PID: 3956 (1132) C:\Windows\system32\taskeng.exe
size: 166400
MD5: 1226E9FAE5B8508801EC974E3C9D9C14
PID: 3024 (1084) C:\Windows\system32\Dwm.exe
size: 83456
MD5: E87B968F3D49117445893EB0503FE34F
PID: 3788 (4032) C:\Windows\Explorer.EXE
size: 2923520
MD5: FD8C53FB002217F6F888BCF6F5D7084D
PID: 3732 (3788) C:\Windows\System32\TpShocks.exe
size: 181808
MD5: 2E1EF009BECED35A0B2AA038382CD1C3
PID: 3992 (3788) C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe
size: 58416
MD5: F6A1E289563C9BD25F1EA17AD7CD1A65
PID: 3580 (3788) C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE
size: 120368
MD5: AF74ED9E40EA84B9F8E9EE99F04C5C05
PID: 1712 (3788) C:\Program Files\Lenovo\AwayTask\AwaySch.EXE
size: 91688
MD5: 78374C795B65347220250F15186B5C67
PID: 3440 (3788) C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
size: 536576
MD5: DB83282D8955AAD7BF224459B28DEC4C
PID: 404 (3788) C:\Windows\System32\rundll32.exe
size: 44544
MD5: 4B555106290BD117334E9A08761C035A
PID: 2836 (3788) C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE
size: 243248
MD5: 2BBADC532A4F473B602185438805AC16
PID: 4076 (3788) C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
size: 2614848
MD5: D180E2F10CA62EA60F964C272B90DBAD
PID: 3064 (3788) C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
size: 64128
MD5: 8598F2166A2F60214A04373562D9FFA3
PID: 2596 (3788) C:\Program Files\Grisoft\AVG Free\avgcc.exe
size: 416256
MD5: 2200C98C049DE1A7638EA0EDBA1C8882
PID: 2208 (3788) C:\Program Files\Analog Devices\Core\smax4pnp.exe
size: 1097728
MD5: BFE13605A62696EBF1C8FEA9E2D279BD
PID: 3912 (3788) C:\Program Files\MSN Messenger\msnmsgr.exe
size: 5674352
MD5: C4281AD865739E71FD1E4DAC19A68D60
PID: 3056 (3064) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
size: 73256
MD5: E5AE80B6E37498E5DFF5565CA18A0528
PID: 3664 (3064) C:\Program Files\Lenovo\Zoom\TpScrex.exe
size: 91688
MD5: 4F76767FE9C277E835087A39240A5EF6
PID: 3116 ( 800) C:\Windows\System32\mobsync.exe
size: 95232
MD5: 9C632DC0F1B6D79B05F46A4A5349CEF4
PID: 4032 ( 800) C:\Windows\system32\wbem\unsecapp.exe
size: 37376
MD5: E19C7BCE081B85F86F03AE9D82FFA77B
PID: 3600 ( 800) C:\Windows\system32\wbem\wmiprvse.exe
size: 245248
MD5: CD8A7F4847DD181903E6B2F1924E723E
PID: 3220 (3788) C:\Program Files\Mozilla Firefox\firefox.exe
size: 7637104
MD5: 77C6AB4E70E7FC35E17B8ED919408B62
PID: 4396 (3788) C:\Windows\System32\notepad.exe
size: 151040
MD5: FF7F14FDA901090E337488A1900E3660
PID: 3836 (4576) C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 1415824
MD5: 70496EEE0DDBE485F658693826F44D38
PID: 5880 (4580) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 4393096
MD5: 09CA174A605B480318731E691DC98539
PID: 1760 (2368) C:\Windows\system32\SearchProtocolHost.exe
size: 204288
MD5: 2A0B63014AD1ED027D47A58C89F4A1AA
PID: 4708 (5880) C:\Program Files\Common Files\Microsoft Shared\MODI\12.0\MSPVIEW.EXE
size: 437056
MD5: 39B69FD4C4176ABE3FA4CCE629E395C8
PID: 2876 (1084) C:\Windows\SYSTEM32\WISPTIS.EXE
size: 244224
MD5: E5DBB8BB4374C7739F3AE05623983A59
PID: 3088 (2368) C:\Windows\system32\SearchFilterHost.exe
size: 76288
MD5: 78B5AE488DCD24556CF976BE0BBA82BE
PID: 0 ( 0) [System Process]
PID: 4 ( 0) System
PID: 1212 (1020) audiodg.exe


--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 07/06/2007 13:18:27

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\Windows\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.google.com
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
about:blank
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.google.co.uk/
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
about:blank
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://go.microsoft.com/fwlink/?LinkId=54896
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://go.microsoft.com/fwlink/?LinkId=69157
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://go.microsoft.com/fwlink/?LinkId=69157
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://go.microsoft.com/fwlink/?LinkId=54896
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
about:blank


--- Winsock Layered Service Provider list ---
Protocol 0: MSAFD Tcpip [TCP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 1: MSAFD Tcpip [UDP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 2: MSAFD Tcpip [RAW/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 3: MSAFD Tcpip [TCP/IPv6]
GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IPv6 protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 4: MSAFD Tcpip [UDP/IPv6]
GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IPv6 protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 5: MSAFD Tcpip [RAW/IPv6]
GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IPv6 protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 6: RSVP TCPv6 Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 7: RSVP TCP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 8: RSVP UDPv6 Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 9: RSVP UDP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 10: MSAFD Irda [IrDA]
GUID: {3972523D-2AF1-11D1-B655-00805F3642CC}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Infrared protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Irda [IrDA]

Protocol 11: MSAFD RfComm [Bluetooth]
GUID: {9FC48064-7298-43E4-B7BD-181F2089792A}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Bluetooth
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD RfComm [Bluetooth]

Protocol 12: MSAFD NetBIOS [\Device\NetBT_Tcpip_{C7AE54FA-7BAE-44A4-959E-721F6C24D23E}] SEQPACKET 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 13: MSAFD NetBIOS [\Device\NetBT_Tcpip_{C7AE54FA-7BAE-44A4-959E-721F6C24D23E}] DATAGRAM 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 14: MSAFD NetBIOS [\Device\NetBT_Tcpip_{EAC55B56-37DA-40CF-B599-E0B128D85944}] SEQPACKET 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 15: MSAFD NetBIOS [\Device\NetBT_Tcpip_{EAC55B56-37DA-40CF-B599-E0B128D85944}] DATAGRAM 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 16: MSAFD NetBIOS [\Device\NetBT_Tcpip_{D904EF20-30E3-411A-AA66-3860F082052F}] SEQPACKET 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 17: MSAFD NetBIOS [\Device\NetBT_Tcpip_{D904EF20-30E3-411A-AA66-3860F082052F}] DATAGRAM 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 18: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{C7AE54FA-7BAE-44A4-959E-721F6C24D23E}] SEQPACKET 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 19: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{C7AE54FA-7BAE-44A4-959E-721F6C24D23E}] DATAGRAM 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 20: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{EAC55B56-37DA-40CF-B599-E0B128D85944}] SEQPACKET 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 21: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{EAC55B56-37DA-40CF-B599-E0B128D85944}] DATAGRAM 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 22: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{D904EF20-30E3-411A-AA66-3860F082052F}] SEQPACKET 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 23: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{D904EF20-30E3-411A-AA66-3860F082052F}] DATAGRAM 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Namespace Provider 0: Network Location Awareness Legacy (NLAv1) Namespace
GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
Filename:
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: NLA-Namespace

Namespace Provider 1: Tcpip
GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
Filename:
Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: TCP/IP

Namespace Provider 2: NTDS
GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
Filename: %SystemRoot%\System32\winrnr.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\winrnr.dll
DB protocol: NTDS

Namespace Provider 3: E-mail Naming Shim Provider
GUID: {964ACBA2-B2BC-40EB-8C6A-A6DB40161CAE}
Filename:

Namespace Provider 4: PNRP Cloud Namespace Provider
GUID: {03FE89CE-766D-4976-B9C1-BB9BC42C7B4D}
Filename:

Namespace Provider 5: PNRP Name Namespace Provider
GUID: {03FE89CD-766D-4976-B9C1-BB9BC42C7B4D}
Filename:

Namespace Provider 6: Bluetooth Namespace
GUID: {06AA63E0-7D60-41FF-AFB2-3EE6D2D9392D}
Filename: %SystemRoot%\system32\wshbth.dll
Description: Bluetooth
DB filename: %SystemRoot%\system32\wshbth.dll
DB protocol: Bluetooth-Namespace



--- Uninstall list ---
Windows Driver Package - Nokia Modem (11/03/2006 6.82.0.1) 11/03/2006 6.82.0.1 (0852D05415AB9A4F1EF451E342267F76C776ED2F)
uninstall cmd: C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_7dedec2f\nokbtmdm.inf
publisher: Nokia

(AddressBook)

Audacity 1.2.6 (Audacity_is1)
install location: C:\Program Files\Audacity\
uninstall cmd: "C:\Program Files\Audacity\unins000.exe"
help link: http://audacity.sourceforge.net

AVG Free Edition (AVG7Uninstall)
uninstall cmd: C:\Program Files\Grisoft\AVG Free\setup.exe /UNINSTALL

AVG Anti-Spyware 7.5 (AVGAntiSpyware75)
install location: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5
uninstall cmd: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
publisher: Grisoft Ltd.
help link: http://www.grisoft.com

Maintenance Manager 3.0.2.0 (AwayTask)
uninstall cmd: Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\Windows\INF\AWAYTASK.INF

(Connection Manager)

Registry Patch of Enabling Device Initiated Power Management(DIPM) on SATA for Windows Vista 1.01 (Dipmon)
uninstall cmd: Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\Dipmon\Dipmon.inf

(DirectDrawEx)

(DXM_Runtime)

Microsoft Office Enterprise 2007 12.0.4518.1014 (ENTERPRISER)
install location: C:\Program Files\Microsoft Outlook
uninstall cmd: "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISER /dll OSETUP.DLL
publisher: Microsoft Corporation

Ethereal 0.99.0 0.99.0 (Ethereal)
uninstall cmd: "C:\Program Files\Ethereal\uninstall.exe"
publisher: The Ethereal developer community, http://www.ethereal.com
help link: mailto:ethereal-users@ethereal.com

(Fontcore)

Registry patch of Changing Timing of IDLE IRP by Finger Print Driver for Windows Vista 1.00 (FPIRPOn)
uninstall cmd: Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\FPIRPOn\FPIRPOn.inf

Intel® Graphics Media Accelerator Driver (HDMI)
uninstall cmd: C:\Windows\system32\igxpun.exe -uninstall

(IE40)

(IE4Data)

(IE5BAKEX)

(IEData)

(InstallShield Uninstall Information)

Sage Accounts V10.00 10.02.0022 (InstallShield_{1A96F74C-EAE3-483E-A5A4-C658D319405A})
version: 167903254
version (major): 10
version (minor): 2
estimated size: 22448
install date: 20070219
install location: C:\Program Files\Sage\Accounts\
install source: \\sbs2003\sage line 50\
uninstall cmd: C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{1A96F74C-EAE3-483E-A5A4-C658D319405A}
publisher: Sage
comments: Blah Blah Blah, Yadda yadda yadda.
contact: Customer Support Department
help link: http://www.uk.sage.com
help telephone: 0845 1115555
readme: Readme.rtf

K-Lite Codec Pack 2.84 Full 2.84 (KLiteCodecPack_is1)
install date: 20070216
install location: C:\Program Files\K-Lite Codec Pack\
uninstall cmd: "C:\Program Files\K-Lite Codec Pack\unins000.exe"

Lenovo System Interface Driver 1.00 (LENOVO.SMIIF)
uninstall cmd: RunDll32.exe setupapi.dll,InstallHinfSection DefaultUninstall.NTx86 130 C:\Program Files\Lenovo\SMIIF\lnvsmi.inf

Microsoft Power Toys for Pocket PCs (Microsoft Power Toys for Pocket PCs)
uninstall cmd: C:\Windows\IsUninst.exe -f"C:\Windows\WindowsMobile\Microsoft Power Toys For Pocket PCs\Uninst.isu"

(MobileOptionPack)

Mozilla Firefox (2.0.0.4) 2.0.0.4 (en-GB) (Mozilla Firefox (2.0.0.4))
install location: C:\Program Files\Mozilla Firefox
uninstall cmd: C:\Program Files\Mozilla Firefox\uninstall\helper.exe
publisher: Mozilla
comments: Mozilla Firefox

(MPlayer2)

(MsJavaVM)

(Nero - Burning Rom!UninstallKey)
uninstall cmd: C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL

Nero 7 Lite 7.7.5.1 7.7.5.1 (Nero7Lite_is1)
install date: 20070405
install location: C:\Program Files\Nero\
uninstall cmd: "C:\Program Files\Nero\unins000.exe"
publisher: Updatepack.nl

(NeroBackItUp!UninstallKey)
uninstall cmd: C:\Windows\UNNeroBackItUp.exe /UNINSTALL

(NeroMediaHome!UninstallKey)
uninstall cmd: C:\Windows\UNNeroMediaHome.exe /UNINSTALL

(NeroRecode!UninstallKey)
uninstall cmd: C:\Windows\UNRecode.exe /UNINSTALL

(NeroShowTime!UninstallKey)
uninstall cmd: C:\Windows\UNNeroShowTime.exe /UNINSTALL

(NeroVision!UninstallKey)
uninstall cmd: C:\Windows\UNNeroVision.exe /UNINSTALL

Nokia Maploader (Nokia Maploader)
uninstall cmd: C:\Program Files\Nokia Maploader\Uninstall.exe

Nokia PC Suite 6.83.14.1 (Nokia PC Suite)
install location: C:\Program Files\Nokia\Nokia PC Suite 6\
install source: C:\ProgramData\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Installations\Nokia PC Suite\
uninstall cmd: C:\ProgramData\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_eng_web.exe /LANG="2057"
publisher: Nokia

On Screen Display 5.00 (OnScreenDisplay)
uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall.LH 132 C:\Program Files\Lenovo\HOTKEY\tphk_tp.inf

ThinkPad Power Management Driver 1.33 (Power Management Driver)
uninstall cmd: RunDll32.exe tpinspm.dll,Uninstall

PowerISO (PowerISO)
uninstall cmd: "C:\Program Files\PowerISO\uninstall.exe"

PrimoPDF 3.0 (PrimoPDF3.0)
uninstall cmd: "C:\Windows\PrimoPDF\uninstall.exe" "/U:C:\Program Files\activePDF\PrimoPDF\Uninstall\uninstall.xml"
publisher: activePDF
contact: activePDF Support Department
help link: http://www.primopdf.com

Intel® PRO Network Connections Drivers (PROSet)
uninstall cmd: Prounstl.exe

VNC Free Edition 4.1.2 4.1.2 (RealVNC_is1)
install location: C:\Program Files\RealVNC\VNC4\
uninstall cmd: "C:\Program Files\RealVNC\VNC4\unins000.exe"
publisher: RealVNC Ltd.
help link: http://www.realvnc.com/products/free/4.1

Sage MIS 3.01 (Sage MIS 3.01)
uninstall cmd: C:\Windows\IsUninst.exe -f"C:\Program Files\Informer50\Uninst.isu"

(SchedulingAgent)

(ShockwaveFlash)

Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
install location: C:\Program Files\Spybot - Search & Destroy\
uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
publisher: Safer Networking Limited

ThinkPad UltraNav Driver 9.1.3.0 (SynTPDeinstKey)
uninstall cmd: rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall

ThinkPad FullScreen Magnifier 1.16 (ThinkPad FullScreen Magnifier)
uninstall cmd: RunDll32 setupapi.dll,InstallHinfSection DefaultUninstall.NT 132 C:\Program Files\Lenovo\Zoom\TpScrex.inf

Registry patch for Windows Vista USB S3 PM Enablement 1.00 (USBPMon)
uninstall cmd: Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\USBPMon\USBPMon.inf

Microsoft Office Visio Professional 2007 12.0.4518.1014 (VISPROR)
install location: C:\Program Files\Microsoft Outlook
uninstall cmd: "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall VISPROR /dll OSETUP.DLL
publisher: Microsoft Corporation

VideoLAN VLC media player 0.8.6a 0.8.6a (VLC media player)
uninstall cmd: C:\Program Files\VideoLAN\VLC\uninstall.exe
publisher: VideoLAN Team

Microsoft Expression Web 12.0.4518.1014 (WebDesigner)
install location: C:\Program Files\Microsoft Expression
uninstall cmd: "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall WEBDESIGNER /dll ESETUP.DLL
publisher: Microsoft Corporation

WinPcap 3.1 3.1.0.27 (WinPcapInst)
uninstall cmd: C:\Program Files\WinPcap\uninstall.exe
publisher: CACE Technologies

WinRAR archiver (WinRAR archiver)
uninstall cmd: C:\Program Files\WinRAR\uninstall.exe

X-Lite 3.0 (X-Lite 1.5_is1)
install location: C:\Program Files\CounterPath\X-Lite\
uninstall cmd: "C:\Program Files\CounterPath\X-Lite\unins000.exe"
publisher: CounterPath Solutions Inc.
help link: http://www.counterpath.com/x-lite/

X-Lite 3.0 (X-Lite 3.0_is1)
install location: C:\Program Files\CounterPath\X-Lite\
uninstall cmd: "C:\Program Files\CounterPath\X-Lite\unins001.exe"
publisher: CounterPath Solutions Inc.
help link: http://www.counterpath.com/x-lite/

ZipItFast Pro 3.01 - A Free, Fast All in One Archive Utility! (ZipItFast_Pro_-_Better_than_ever!_3.01)
uninstall cmd: C:\Windows\iun6002.exe "c:\zipitpro\irunin.ini"

PC Connectivity Solution 7.7.10.0 ({066D65EA-ED53-44E4-A96A-F81B6E409D2E})
version: 117899274
version (major): 7
version (minor): 7
estimated size: 8620
install date: 20070416
install location: C:\Program Files\PC Connectivity Solution\
install source: C:\ProgramData\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Installations\PCCS\
uninstall cmd: MsiExec.exe /I{066D65EA-ED53-44E4-A96A-F81B6E409D2E}
publisher: Nokia

Client Security Solution 8.0.0114.00 ({0F4EFCE8-E358-4430-A504-F55F32BA1816})
version: 134217842
version (major): 8
estimated size: 101451
install date: 20070214
install location: C:\Program Files\Lenovo\
install source: C:\Windows\Downloaded Installations\{F8F69406-B1EC-4C96-B1E1-C44C3ADAF588}\
uninstall cmd: MsiExec.exe /X{0F4EFCE8-E358-4430-A504-F55F32BA1816}
publisher: Lenovo Group Limited
help link: http://www.lenovo.com/think/support

ThinkVantage Fingerprint Software 5.6 5.6.0.3307 ({10113A44-CBFF-4FF7-8A13-BD1EC4180C56})
version: 84279296
version (major): 5
version (minor): 6
estimated size: 29171
install date: 20070221
install source: C:\ProgramData\UIB\{10113A44-CBFF-4FF7-8A13-BD1EC4180C56}\
publisher: UPEK Inc.
help link: http://www.upek.com/

Windows Installer Clean Up 3.00.00.0000 ({121634B0-2F4B-11D3-ADA3-00C04F52DD52})
version: 50331648
version (major): 3
estimated size: 305
install date: 20070425
install source: C:\Program Files\MSECACHE\WICU3\
uninstall cmd: MsiExec.exe /X{121634B0-2F4B-11D3-ADA3-00C04F52DD52}
publisher: Microsoft Corporation

ThinkPad EasyEject Utility 2.30 ({1297C681-92D7-40EF-93BF-03F66EC5105C})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1297C681-92D7-40EF-93BF-03F66EC5105C}\SETUP.EXE" -l0x9 -AddRemove

ThinkPad UltraNav Utility 1.01 ({17CBC505-D1AE-459D-B445-3D2000A85842})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17CBC505-D1AE-459D-B445-3D2000A85842}\SETUP.EXE" -l0x9 UNINSTALL

Sage Accounts 10.02.0022 ({1A96F74C-EAE3-483E-A5A4-C658D319405A})
version: 167903254
version (major): 10
version (minor): 2
estimated size: 22448
install date: 20070219
install location: C:\Program Files\Sage\Accounts\
install source: \\sbs2003\sage line 50\
publisher: Sage
comments: Blah Blah Blah, Yadda yadda yadda.
contact: Customer Support Department
help link: http://www.uk.sage.com
help telephone: 0845 1115555
readme: Readme.rtf

Windows Mobile Device Center 6.0.6783.0 ({1F2A5DF9-40E1-4644-ADBD-D80F347BA6C8})
version: 100670079
version (major): 6
estimated size: 24783
install date: 20070228
install source: C:\Windows\WindowsMobile\
uninstall cmd: MsiExec.exe /I{1F2A5DF9-40E1-4644-ADBD-D80F347BA6C8}
publisher: Microsoft Corporation

ThinkPad Keyboard Customizer Utility 1.0.00 ({2111B23F-7FDA-4A41-8309-E5A1663CA296})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2111B23F-7FDA-4A41-8309-E5A1663CA296}\Setup.exe" -l0x9 anything

Shadow Copy Client 5.2.01 ({23E5032B-56CA-4C19-A72E-B50161DB82CA})
version: 84017153
version (major): 5
version (minor): 2
estimated size: 496
install date: 20070216
install source: \\sbs2003\clientapps\shadowcopy\
uninstall cmd: MsiExec.exe /I{23E5032B-56CA-4C19-A72E-B50161DB82CA}
publisher: Microsoft

Java™ SE Runtime Environment 6 1.6.0.0 ({3248F0A8-6813-11D6-A77B-00B0D0160000})
version: 17170432
version (major): 1
version (minor): 6
estimated size: 111346
install date: 20070221
install source: http://javadl.sun.com/webapps/download/Get...5/windows-i586/
uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
publisher: Sun Microsystems, Inc.
contact: http://java.com
help link: http://java.com
readme: C:\Program Files\Java\jre1.6.0\README.txt

MSXML 4.0 SP2 (KB927978) 4.20.9841.0 ({37477865-A3F1-4772-AD43-AAFC6BCFF99F})
version: 68429425
version (major): 4
version (minor): 20
estimated size: 1269
install date: 20070216
install source: c:\2d9e16fce5d19eb5f5759a6b6894\
uninstall cmd: MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
publisher: Microsoft Corporation
help link: http://support.microsoft.com/kb/927978

ISO Recorder 3.0.0 ({39600969-41C3-4658-876E-16F108FC5C92})
version: 50331648
version (major): 3
estimated size: 648
install date: 20070216
install source: C:\Users\d.belton\AppData\Local\Temp\Temp1_ISORecorderV3RC1x86.zip\
uninstall cmd: MsiExec.exe /I{39600969-41C3-4658-876E-16F108FC5C92}
publisher: Alex Feinman
comments: ISO Recorder - CD/DVD Image recorder for Windows Vista
contact: Alex Feinman
help link: http://isorecorder.alexfeinman.com

Google Earth 4.0.2737 ({3DE5E7D4-7B88-403C-A3FD-2017A8240C5B})
version: 67111601
install date: 20070606
install location: C:\Program Files\Google\Google Earth
install source: C:\Users\d.belton\Desktop\GoogleEarthWin.exe
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B}\setup.exe" -l0x9 -removeonly
publisher: Google

ThinkVantage Active Protection System 1.51 ({46A84694-59EC-48F0-964C-7E76E9F8A2ED})
version: 20119552
version (major): 1
version (minor): 51
estimated size: 4139
install date: 20070214
install location: C:\Program Files\ThinkPad\TpShocks\
install source: C:\Users\Darren\AppData\Local\Temp\{9013BAD2-58D5-4342-B50B-1D895A163B59}\
uninstall cmd: MsiExec.exe /X{46A84694-59EC-48F0-964C-7E76E9F8A2ED}
publisher: Lenovo

QuickTime 7.1.3.170 ({50D8FFDD-90CD-4859-841F-AA1961C7767A})
version: 117506051
version (major): 7
version (minor): 1
estimated size: 71805
install date: 20070228
install location: C:\Program Files\QuickTime\
install source: C:\Users\D7CAC~1.BEL\AppData\Local\Temp\IXP189.TMP\
uninstall cmd: MsiExec.exe /I{50D8FFDD-90CD-4859-841F-AA1961C7767A}
publisher: Apple Computer, Inc.
contact: AppleCare Support
help link: http://www.apple.com/support/
help telephone: 1-800-275-2273

Windows Live Messenger 8.1.0178.00 ({571700F0-DB9D-4B3A-B03D-35A14BB5939F})
version: 134283442
version (major): 8
version (minor): 1
estimated size: 30208
install date: 20070430
install source: C:\Users\D7CAC~1.BEL\AppData\Local\Temp\IXP000.TMP\
uninstall cmd: MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}
publisher: Microsoft Corporation

Nokia PC Suite 6.83.14.1 ({57A48477-92F0-4C1F-ADF9-4806C4EC3CF2})
version: 106102798
version (major): 6
version (minor): 83
estimated size: 38779
install date: 20070416
install location: C:\Program Files\Nokia\Nokia PC Suite 6\
install source: C:\ProgramData\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Installations\Nokia PC Suite\
uninstall cmd: MsiExec.exe /I{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}
publisher: Nokia
help link: http://www.nokia.com/nokia/0,8764,75877,00.html

Sony USB Driver ({5C29CB8B-AC1E-4114-8D68-9CD080140D4A})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}\Setup.exe" UNINSTALL

Presentation Director 3.01 ({65706020-7B6F-41F2-8047-FC69579E386A})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65706020-7B6F-41F2-8047-FC69579E386A}\Setup.exe" -l0x9 -AddRemove

PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall

Windows Media Player Firefox Plugin 1.0.0.8 ({69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4})
version: 16777216
version (major): 1
estimated size: 296
install date: 20070517
install source: C:\Users\D7CAC~1.BEL\AppData\Local\Temp\IXP000.TMP\
uninstall cmd: MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
publisher: Microsoft Corp

Ad-Aware SE Personal 1.0.6 ({78CC3BAB-DE2A-4FB4-8FBB-E4DADDC26747})
version: 16777222
version (major): 1
estimated size: 3557
install date: 20070607
install source: C:\Program Files\Common Files\Wise Installation Wizard\
uninstall cmd: MsiExec.exe /X{78CC3BAB-DE2A-4FB4-8FBB-E4DADDC26747}
publisher: Lavasoft AB
help link: http://www.lavasoftsupport.com

Rescue and Recovery 4.00.0117.00 ({7E4C16B8-8F76-4940-8505-98E93C00BF19})
version: 67108981
version (major): 4
estimated size: 392402
install date: 20070214
install location: C:\Program Files\Lenovo\
install source: C:\Windows\Downloaded Installations\{95F21418-376B-41FA-8E95-6860B1F0B583}\
uninstall cmd: MsiExec.exe /X{7E4C16B8-8F76-4940-8505-98E93C00BF19}
publisher: Lenovo Group Limited
help link: http://www.lenovo.com/think/support

3Com Wireless Infrastructure Device Manager ({837AF9C6-A55A-4E48-AFF8-D95C26B2FBF1})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{837AF9C6-A55A-4E48-AFF8-D95C26B2FBF1}\Setup.exe" -l0x9 \ -uninst

System Update 3.00.0026 ({8675339C-128C-44DD-83BF-0A5D6ABD8297})
version: 50331674
version (major): 3
estimated size: 10355
install date: 20070214
install location: C:\Program Files\Lenovo\System Update\
install source: C:\Users\Darren\AppData\Local\Temp\pft42BC.tmp\
uninstall cmd: MsiExec.exe /X{8675339C-128C-44DD-83BF-0A5D6ABD8297}
publisher: Lenovo
contact: Lenovo Help Center
help link: http://www.lenovo.com/support

VSO CopyToDVD 4 4.0.3 ({870F1750-BA89-11DA-A94D-0800200C9A66}_is1)
install date: 20070219
install location: C:\Program Files\VSO\
uninstall cmd: "C:\Program Files\VSO\unins000.exe"
publisher: VSO Software

PrimoPDF Redistribution Package 1.0.0.0 ({885744A4-1A01-44B0-858A-0AE6738CBCF7})
version: 16777216
version (major): 1
estimated size: 2205
install date: 20070216
install source: C:\Program Files\activePDF\PrimoPDF\
uninstall cmd: MsiExec.exe /I{885744A4-1A01-44B0-858A-0AE6738CBCF7}
publisher: activePDF, Inc.

Microsoft Virtual PC 2007 6.0.156.0 ({8A7CAA24-7B23-410B-A7C3-F994B0944160})
version: 100663452
version (major): 6
estimated size: 37660
install date: 20070515
install source: C:\Users\D7CAC~1.BEL\AppData\Local\Temp\
uninstall cmd: MsiExec.exe /X{8A7CAA24-7B23-410B-A7C3-F994B0944160}
publisher: Microsoft Corporation
contact: Technical Support
help link: http://www.microsoft.com/support

Microsoft Office Access MUI (English) 2007 12.0.4518.1014 ({90120000-0015-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 31916
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0117-0409-0000-0000000FF1CE}-C\Access.en-us\
uninstall cmd: MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Excel MUI (English) 2007 12.0.4518.1014 ({90120000-0016-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 16272
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0016-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office PowerPoint MUI (English) 2007 12.0.4518.1014 ({90120000-0018-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 15521
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0018-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Publisher MUI (English) 2007 12.0.4518.1014 ({90120000-0019-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 24282
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0019-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Outlook MUI (English) 2007 12.0.4518.1014 ({90120000-001A-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 22840
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-001A-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Word MUI (English) 2007 12.0.4518.1014 ({90120000-001B-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 18657
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-001B-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Proof (English) 2007 12.0.4518.1014 ({90120000-001F-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 51191
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-C\Proof.en\
uninstall cmd: MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Proof (French) 2007 12.0.4518.1014 ({90120000-001F-040C-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 23416
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-C\Proof.fr\
uninstall cmd: MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Proof (Spanish) 2007 12.0.4518.1014 ({90120000-001F-0C0A-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 38197
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-C\Proof.es\
uninstall cmd: MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Expression Web 12.0.4518.1014 ({90120000-0026-0000-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 242620
install date: 20070416
install location: C:\Program Files\Microsoft Office\
install source: C:\MSOCache\All Users\{90120000-0026-0000-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0026-0000-0000-0000000FF1CE}
publisher: Microsoft Corporation

Update for Office 2007 (KB932080) ({90120000-0026-0000-0000-0000000FF1CE}_WebDesigner_{EDC9CA29-6BC1-471C-828C-7A36109005D7})
uninstall cmd: msiexec /package {90120000-0026-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}

Microsoft Expression Web MUI (English) 12.0.4518.1014 ({90120000-0026-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 14201
install date: 20070216
install location: C:\Program Files\Microsoft Expression\
install source: C:\MSOCache\All Users\{90120000-0026-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0026-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Proofing (English) 2007 12.0.4518.1014 ({90120000-002C-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 506
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office InfoPath MUI (English) 2007 12.0.4518.1014 ({90120000-0044-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 73506
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0044-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Visio MUI (English) 2007 12.0.4518.1014 ({90120000-0054-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 109971
install date: 20070223
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0054-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0054-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Shared MUI (English) 2007 12.0.4518.1014 ({90120000-006E-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 36906
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office OneNote MUI (English) 2007 12.0.4518.1014 ({90120000-00A1-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 37842
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-00A1-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Groove MUI (English) 2007 12.0.4518.1014 ({90120000-00BA-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 4438
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0114-0409-0000-0000000FF1CE}-C\Groove.en-us\
uninstall cmd: MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Groove Setup Metadata MUI (English) 2007 12.0.4518.1014 ({90120000-0114-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 502
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0114-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Shared Setup Metadata MUI (English) 2007 12.0.4518.1014 ({90120000-0115-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 494
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Access Setup Metadata MUI (English) 2007 12.0.4518.1014 ({90120000-0117-0409-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 502
install date: 20070216
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{90120000-0117-0409-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
publisher: Microsoft Corporation

Microsoft Office Enterprise 2007 12.0.4518.1014 ({91120000-0030-0000-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 712963
install date: 20070416
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{91120000-0030-0000-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{91120000-0030-0000-0000-0000000FF1CE}
publisher: Microsoft Corporation

Update for Outlook 2007 Junk Email Filter (KB932338) ({91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{E90DA454-DE6C-45FA-A702-47B614A0159F})
uninstall cmd: msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {E90DA454-DE6C-45FA-A702-47B614A0159F}

Update for Office 2007 (KB932080) ({91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{EDC9CA29-6BC1-471C-828C-7A36109005D7})
uninstall cmd: msiexec /package {91120000-0030-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}

Microsoft Office Visio Professional 2007 12.0.4518.1014 ({91120000-0051-0000-0000-0000000FF1CE})
version: 201331110
version (major): 12
estimated size: 243686
install date: 20070416
install location: C:\Program Files\Microsoft Outlook\
install source: C:\MSOCache\All Users\{91120000-0051-0000-0000-0000000FF1CE}-C\
uninstall cmd: MsiExec.exe /X{91120000-0051-0000-0000-0000000FF1CE}
publisher: Microsoft Corporation

Update for Office 2007 (KB932080) ({91120000-0051-0000-0000-0000000FF1CE}_VISPROR_{EDC9CA29-6BC1-471C-828C-7A36109005D7})
uninstall cmd: msiexec /package {91120000-0051-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}

Nokia Software Updater 01.03.060.27328 ({95F2AFB0-8BC9-4E40-A4E1-B9066D2469C0})
version: 16973884
version (major): 1
version (minor): 3
estimated size: 35168
install date: 20070417
install location: C:\Program Files\Nokia\Nokia Software Updater\
install source: C:\Users\D7CAC~1.BEL\AppData\Local\Temp\{B11B4D2C-5F58-4CB5-B177-269D82563620}\
uninstall cmd: MsiExec.exe /X{95F2AFB0-8BC9-4E40-A4E1-B9066D2469C0}
publisher: Nokia Corporation

Nokia Connectivity Cable Driver 6.83.9.0 ({972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1})
version: 106102793
version (major): 6
version (minor): 83
estimated size: 965
install date: 20070416
install location: C:\Program Files\Nokia\Connectivity Cable Driver\
install source: C:\ProgramData\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Installations\Nokia_Connectivity_Cable_Driver\
uninstall cmd: MsiExec.exe /X{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}
publisher: Nokia
help link: http://www.nokia.com/nokia/0,8764,75877,00.html

Help Center 2.00b ({986F64DC-FF15-449D-998F-EE3BCEC6666A})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{986F64DC-FF15-449D-998F-EE3BCEC6666A}\Setup.exe" -l0x9 -AddRemove

Paint.NET v2.6 2.6.12 ({9B26CF0A-EE65-4379-B2D4-6E6AABE06498})
version: 33947660
version (major): 2
version (minor): 6
estimated size: 5701
install date: 20070517
install source: C:\Program Files\Paint.NET\Staging\
uninstall cmd: MsiExec.exe /X{9B26CF0A-EE65-4379-B2D4-6E6AABE06498}
publisher: Paint.NET Team
comments: Installs Paint.NET
contact: Paint.NET Team
help link: http://www.eecs.wsu.edu/paint.net

Microsoft Visual C++ 2005 Redistributable 8.0.50727.42 ({A49F249F-0C91-497F-86DF-B2585E8E76B7})
version: 134268455
version (major): 8
estimated size: 558
install date: 20070214
install source: C:\Users\Darren\AppData\Local\Temp\IXP001.TMP\
uninstall cmd: MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
publisher: Microsoft Corporation

Adobe Reader 8 8.0.0 ({AC76BA86-7AD7-1033-7B44-A80000000002})
version: 134217728
version (major): 8
estimated size: 118051
install date: 20070219
install location: C:\Program Files\Adobe\Reader 8.0\Reader\
install source: C:\Users\d.belton\AppData\LocalLow\Netopsystems\temp\Adobe Reader 8.0\
uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A80000000002}
publisher: Adobe Systems Incorporated
comments:
contact: Customer Support
help link: http://www.adobe.com/support/main.html
readme: C:\Program Files\Adobe\Reader 8.0\Reader\Readme.htm

Access Help 2.00 ({C6FA39A7-26B1-480A-BC74-6D17531AC222})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C6FA39A7-26B1-480A-BC74-6D17531AC222}\Setup.exe" -l0x9 UNINSTALL

Nero 7 Demo 7.00.2734 ({C93369CB-B4E9-E095-9289-E6B5AE941033})
version: 117443246
version (major): 7
estimated size: 267820
install date: 20070405
install location: C:\Program Files\Nero\Nero 7\
install source: C:\Users\D7CAC~1.BEL\AppData\Local\Temp\Nero7.tmp\
uninstall cmd: MsiExec.exe /I{C93369CB-B4E9-E095-9289-E6B5AE941033}
publisher: Nero AG
comments: Nero AG
contact: techsupport@nero.com
help link: http://www.nero.com/

Windows Mobile Device Center Driver Update 6.0.6783.0 ({CB8CA439-DA83-419C-A4CF-5A0A50025144})
version: 100670079
version (major): 6
estimated size: 36216
install date: 20070228
install source: C:\Users\D7CAC~1.BEL\AppData\Local\Temp\IXP000.TMP\
uninstall cmd: MsiExec.exe /X{CB8CA439-DA83-419C-A4CF-5A0A50025144}
publisher: Microsoft Corporation

ThinkVantage Productivity Center 2.01a ({CF5737AF-8550-4546-A69B-0EA9EF5A9B55})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CF5737AF-8550-4546-A69B-0EA9EF5A9B55}\setup.exe" -l0x9 -AddRemove

({D1A4DEBD-C2EE-449f-B9FB-E8409F9A0BC5})

Productivity Center Supplement for ThinkPad 2.00 ({D728E945-256D-4477-B377-6BBA693714AC})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D728E945-256D-4477-B377-6BBA693714AC}\setup.exe" -l0x9 -AddRemove

SnagIt 8 8.2.3 ({DA0BF7AB-88EB-4675-8FA1-531EAD938821})
version: 134348803
version (major): 8
version (minor): 2
estimated size: 28007
install date: 20070604
install location: C:\Program Files\TechSmith\SnagIt 8\
install source: C:\Program Files\Common Files\Wise Installation Wizard\
uninstall cmd: MsiExec.exe /I{DA0BF7AB-88EB-4675-8FA1-531EAD938821}
publisher: TechSmith Corporation
help link: http://support.techsmith.com

ThinkPad Power Manager 2.01 ({DAC01CEE-5BAE-42D5-81FC-B687E84E8405})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}\SETUP.EXE" -l0x9 -AddRemove

ThinkPad Mobility Center Customization 1.00.0000 ({E0EF321A-1949-451B-9484-7886F4F4719E})
version: 16777216
version (major): 1
estimated size: 318
install date: 20070214
install location: C:\Program Files\Lenovo\MBLCTR\
install source: C:\Users\Darren\AppData\Local\Temp\{BB826BE6-471A-4F35-9C9F-4D3D495A0341}\
uninstall cmd: MsiExec.exe /X{E0EF321A-1949-451B-9484-7886F4F4719E}
publisher: Lenovo

Message Center 2.00b ({E7E836B8-4BDD-454F-82E6-5FEA17C83AD4})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E7E836B8-4BDD-454F-82E6-5FEA17C83AD4}\Setup.exe" -l0x9 -AddRemove

SoundMAX 6.10.1.5140 ({F0A37341-D692-11D4-A984-009027EC0A9C})
version: 117440545
install date: 20070523
install location: C:\Program Files\Analog Devices\SoundMAX
install source: C:\drivers\Vista\Audio\
uninstall cmd: C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\SETUP.exe -runfromtemp -l0x0009 -removeonly
publisher: Analog Devices



--- System Services ---
Service (registry key): .NET CLR Data
Start: 0
Type: 0
Error Control: 0

Service (registry key): .NET CLR Networking
Start: 0
Type: 0
Error Control: 0

Service (registry key): .NET Data Provider for Oracle
Start: 0
Type: 0
Error Control: 0

Service (registry key): .NET Data Provider for SqlServer
Start: 0
Type: 0
Error Control: 0

Service (registry key): .NETFramework
Start: 0
Type: 0
Error Control: 0

Service (registry key): ACPI
Display name: Microsoft ACPI Driver
Image path: system32\drivers\acpi.sys
Image size: 255592
Image MD5: 192BDBD1540645C4A2AA69F24CCE197F
Start: 0
Type: 1
Error Control: 3

Service (registry key): ADIHdAudAddService
Display name: ADI UAA Function Driver for High Definition Audio Service
Image path: system32\drivers\ADIHdAud.sys
Image size: 307712
Image MD5: A99FC78A0B5F22E98D0EC050BD891E52
Start: 3
Type: 1
Error Control: 1

Service (registry key): adp94xx
Image path: \SystemRoot\system32\drivers\adp94xx.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): adpahci
Image path: \SystemRoot\system32\drivers\adpahci.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): adpu160m
Image path: \SystemRoot\system32\drivers\adpu160m.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): adpu320
Image path: \SystemRoot\system32\drivers\adpu320.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): adsi
Start: 0
Type: 0
Error Control: 0

Service (registry key): AeLookupSvc
Display name: @%SystemRoot%\system32\aelupsvc.dll,-1
Description: @%SystemRoot%\system32\aelupsvc.dll,-2
Object name: localSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): AFD
Display name: Ancilliary Function Driver for Winsock
Description: Ancilliary Function Driver for Winsock
Image path: \SystemRoot\system32\drivers\afd.sys
Start: 1
Type: 1
Error Control: 1

Service (registry key): agp440
Display name: Intel AGP Bus Filter
Image path: \SystemRoot\system32\drivers\agp440.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): aic78xx
Image path: \SystemRoot\system32\drivers\djsvs.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): ALG
Display name: @%SystemRoot%\system32\Alg.exe,-112
Description: @%SystemRoot%\system32\Alg.exe,-113
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\alg.exe
Image size: 58880
Image MD5: E69FB0E3112C40FDC0EF7D21A52DC951
Start: 3
Type: 16
Error Control: 1

Service (registry key): aliide
Image path: \SystemRoot\system32\drivers\aliide.sys
Start: 4
Type: 1
Error Control: 3

Service (registry key): amdagp
Display name: AMD AGP Bus Filter Driver
Image path: \SystemRoot\system32\drivers\amdagp.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): amdide
Image path: \SystemRoot\system32\drivers\amdide.sys
Start: 4
Type: 1
Error Control: 3

Service (registry key): AmdK7
Display name: AMD K7 Processor Driver
Image path: \SystemRoot\system32\drivers\amdk7.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): AmdK8
Display name: AMD K8 Processor Driver
Image path: \SystemRoot\system32\drivers\amdk8.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Appinfo
Display name: @%systemroot%\system32\appinfo.dll,-100
Description: @%systemroot%\system32\appinfo.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,ProfSvc

Service (registry key): AppMgmt
Display name: @appmgmts.dll,-3250
Description: @appmgmts.dll,-3251
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): arc
Image path: \SystemRoot\system32\drivers\arc.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): arcsas
Image path: \SystemRoot\system32\drivers\arcsas.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Aspi32
Start: 0
Type: 0
Error Control: 0

Service (registry key): AsyncMac
Display name: RAS Asynchronous Media Driver
Description: RAS Asynchronous Media Driver
Image path: system32\DRIVERS\asyncmac.sys
Image size: 17408
Image MD5: E86CF7CE67D5DE898F27EF884DC357D8
Start: 3
Type: 1
Error Control: 1

Service (registry key): atapi
Display name: IDE Channel
Image path: system32\drivers\atapi.sys
Image size: 19048
Image MD5: 4F4FCB8B6EA06784FB6D475B7EC7300F
Start: 0
Type: 1
Error Control: 3

Service (registry key): AudioEndpointBuilder
Display name: @%SystemRoot%\system32\audiosrv.dll,-204
Description: @%SystemRoot%\System32\audiosrv.dll,-205
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: PlugPlay

Service (registry key): Audiosrv
Display name: @%SystemRoot%\system32\audiosrv.dll,-200
Description: @%SystemRoot%\System32\audiosrv.dll,-201
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: AudioEndpointBuilder,RpcSs,MMCSS

Service (registry key): AVG Anti-Spyware Driver
Display name: AVG Anti-Spyware Driver
Image path: \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
Image size: 11000
Image MD5: D6F4C1450699901048818B0C3AAF7A17
Start: 1
Type: 1
Error Control: 1

Service (registry key): AVG Anti-Spyware Guard
Display name: AVG Anti-Spyware Guard
Object name: LocalSystem
Image path: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
Image size: 312880
Image MD5: 5DCD235C061022BCDA9AA48670B64211
Start: 2
Type: 16
Error Control: 1

Service (registry key): Avg7Alrt
Display name: AVG7 Alert Manager Server
Object name: LocalSystem
Image path: C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
Image size: 353280
Image MD5: 5F4ED1DBA7E1EAECBA443A53DA176485
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS

Service (registry key): Avg7UpdSvc
Display name: AVG7 Update Service
Object name: LocalSystem
Image path: C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
Image size: 49664
Image MD5: 30A14F65DB477DC00A64A5A24E96919C
Start: 2
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): AvgAsCln
Display name: AVG Anti-Spyware Clean Driver
Image path: System32\DRIVERS\AvgAsCln.sys
Image size: 10872
Image MD5: 856B0CEE009946BF2D327E6B24FE7E3F
Start: 1
Type: 1
Error Control: 1

Service (registry key): AvgClean
Display name: AVG7 Clean Driver
Image path: \SystemRoot\System32\Drivers\avgclean.sys
Start: 1
Type: 1
Error Control: 1

Service (registry key): AvgCoreSvc
Display name: AVG7 Resident Shield Service
Object name: LocalSystem
Image path: C:\PROGRA~1\Grisoft\AVGFRE~1\avgrssvc.exe
Image size: 192512
Image MD5: 08D3C84AE7573DFA62E9CDC24594B125
Start: 2
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): AVGEMS
Display name: AVG E-mail Scanner
Object name: LocalSystem
Image path: C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
Image size: 351744
Image MD5: C6A162BEDAA82DBE9EBF8C7EEBD2929B
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS

Service (registry key): AvgMfx86
Display name: AVG Minifilter x86 Resident Driver
Image path: \SystemRoot\System32\Drivers\avgmfx86.sys
Start: 1
Type: 2
Error Control: 1

Service (registry key): AvgTdi
Display name: AVG Network Redirector
Image path: \SystemRoot\System32\Drivers\avgtdi.sys
Start: 2
Type: 1
Error Control: 1

Service (registry key): BattC
Start: 0
Type: 0
Error Control: 0

Service (registry key): Beep
Display name: Beep
Start: 1
Type: 1
Error Control: 1

Service (registry key): BFE
Display name: @%SystemRoot%\system32\bfe.dll,-1001
Description: @%SystemRoot%\system32\bfe.dll,-1002
Object name: NT AUTHORITY\LocalService
Image path: %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): BITS
Display name: @%SystemRoot%\system32\qmgr.dll,-1000
Description: @%SystemRoot%\system32\qmgr.dll,-1001
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,EventSystem

Service (registry key): blbdrive
Image path: \SystemRoot\system32\drivers\blbdrive.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): bowser
Display name: Bowser
Description: Implements the datagram receiver for the computer browser browser service.
Image path: system32\DRIVERS\bowser.sys
Image size: 69632
Image MD5: 913CD06FBE9105CE6077E90FD4418561
Start: 3
Type: 2
Error Control: 1

Service (registry key): BrFiltLo
Display name: Brother USB Mass-Storage Lower Filter Driver
Image path: \SystemRoot\system32\drivers\brfiltlo.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): BrFiltUp
Display name: Brother USB Mass-Storage Upper Filter Driver
Image path: \SystemRoot\system32\drivers\brfiltup.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): Browser
Display name: @%systemroot%\system32\browser.dll,-100
Description: @%systemroot%\system32\browser.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,LanmanServer

Service (registry key): Brserid
Display name: Brother MFC Serial Port Interface Driver (WDM)
Image path: \SystemRoot\system32\drivers\brserid.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): BrSerWdm
Display name: Brother WDM Serial driver
Image path: \SystemRoot\system32\drivers\brserwdm.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): BrUsbMdm
Display name: Brother MFC USB Fax Only Modem
Image path: \SystemRoot\system32\drivers\brusbmdm.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): BrUsbSer
Display name: Brother MFC USB Serial WDM Driver
Image path: \SystemRoot\system32\drivers\brusbser.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): BthEnum
Display name: Bluetooth Request Block Driver
Image path: system32\DRIVERS\BthEnum.sys
Image size: 19456
Image MD5: A820438255F37AB8BAA2BD59753A8D81
Start: 3
Type: 1
Error Control: 1

Service (registry key): BTHMODEM
Display name: Bluetooth Modem Communications Driver
Image path: system32\DRIVERS\bthmodem.sys
Image size: 39936
Image MD5: AD07C1EC6665B8B35741AB91200C6B68
Start: 3
Type: 1
Error Control: 1

Service (registry key): BthPan
Display name: Bluetooth Device (Personal Area Network)
Description: Bluetooth Device (Personal Area Network)
Image path: system32\DRIVERS\bthpan.sys
Image size: 92160
Image MD5: B8C3D9DDF85FD197C3E5F849FEF71144
Start: 3
Type: 1
Error Control: 1

Service (registry key): BTHPORT
Display name: Bluetooth Port Driver
Image path: System32\Drivers\BTHport.sys
Image size: 220160
Image MD5: 4A74BBB2B6761789F42A6613479BDB1D
Start: 3
Type: 1
Error Control: 1

Service (registry key): BthServ
Display name: @%SystemRoot%\System32\bthserv.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k bthsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: rpcss

Service (registry key): BTHUSB
Display name: Bluetooth Radio USB Driver
Image path: System32\Drivers\BTHUSB.sys
Image size: 29184
Image MD5: 1A407F9B707A06F55AA150F9AA072B09
Start: 3
Type: 1
Error Control: 1

Service (registry key): btwavdt
Display name: Bluetooth AVDT Service
Image path: system32\DRIVERS\btwavdt.sys
Image size: 80688
Image MD5: AAC8D48EFD99655D044243BFA8E88DBB
Start: 3
Type: 1
Error Control: 1

Service (registry key): cdfs
Display name: CD/DVD File System Reader
Description: ISO9660/Joliet File System Reader for CD/DVDs. (Core) (All pieces)
Image path: system32\DRIVERS\cdfs.sys
Image size: 70144
Image MD5: 6C3A437FC873C6F6A4FC620B6888CB86
Start: 4
Type: 2
Error Control: 1
Depends On group: "SCSI CDROM Class"

Service (registry key): cdrom
Display name: CD-ROM Driver
Image path: system32\DRIVERS\cdrom.sys
Image size: 67072
Image MD5: 8D1866E61AF096AE8B582454F5E4D303
Start: 1
Type: 1
Error Control: 1

Service (registry key): CertPropSvc
Display name: @%SystemRoot%\System32\certprop.dll,-11
Description: @%SystemRoot%\System32\certprop.dll,-12
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): circlass
Display name: Consumer IR Devices
Image path: \SystemRoot\system32\drivers\circlass.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): CLFS
Display name: Common Log (CLFS)
Description: Common Log (CLFS)
Image path: System32\CLFS.sys
Image size: 221800
Image MD5: 51B4B82560E49C415AE5B1337D635C3F
Start: 0
Type: 1
Error Control: 3

Service (registry key): clr_optimization_v2.0.50727_32
Display name: Microsoft .NET Framework NGEN v2.0.50727_X86
Description: Microsoft .NET Framework NGEN
Object name: LocalSystem
Image path: %systemroot%\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
Image size: 59392
Image MD5: D3BF342F47996E18490970FCFB8126A8
Start: 3
Type: 16
Error Control: 0

Service (registry key): CmBatt
Display name: Microsoft ACPI Control Method Battery Driver
Image path: system32\DRIVERS\CmBatt.sys
Image size: 14208
Image MD5: 0FED59EDB4A83FF17F1778827B88AB1A
Start: 3
Type: 1
Error Control: 1

Service (registry key): cmdide
Image path: \SystemRoot\system32\drivers\cmdide.sys
Start: 4
Type: 1
Error Control: 3

Service (registry key): Compbatt
Display name: Microsoft Composite Battery Driver
Image path: system32\DRIVERS\compbatt.sys
Image size: 18280
Image MD5: 82B8C91D327CFECF76CB58716F7D4997
Start: 0
Type: 1
Error Control: 3

Service (registry key): COMSysApp
Display name: @comres.dll,-947
Description: @comres.dll,-948
Object name: LocalSystem
Image path: %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
Image size: 7168
Image MD5: BE01E566D1F569AAB32D0335613E1EEA
Start: 3
Type: 16
Error Control: 1
Depends On services: RpcSs,EventSystem,SENS

Service (registry key): core
Image path: system32\drivers\core.sys
Start: 1
Type: 1
Error Control: 0

Service (registry key): crcdisk
Display name: Crcdisk Filter Driver
Image path: system32\drivers\crcdisk.sys
Image size: 22632
Image MD5: 2A213AE086BBEC5E937553C7D9A2B22C
Start: 0
Type: 1
Error Control: 1

Service (registry key): Crusoe
Display name: Transmeta Crusoe Processor Driver
Image path: \SystemRoot\system32\drivers\crusoe.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): crypt32
Start: 0
Type: 0
Error Control: 0

Service (registry key): CryptSvc
Display name: @%SystemRoot%\system32\cryptsvc.dll,-1001
Description: @%SystemRoot%\system32\cryptsvc.dll,-1002
Object name: NT Authority\NetworkService
Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): CSC
Display name: Offline Files Driver
Description: Allows network files to be used while the local computer is offline.
Image path: system32\drivers\csc.sys
Image size: 319488
Image MD5: 398F8C5E8DE793F01139B1FE5746AAD1
Start: 1
Type: 1
Error Control: 1
Depends On services: rdbss

Service (registry key): CscService
Display name: @%systemroot%\system32\cscsvc.dll,-200
Description: @%systemroot%\system32\cscsvc.dll,-201
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): DCLocator
Start: 0
Type: 0
Error Control: 0

Service (registry key): DcomLaunch
Display name: @oleres.dll,-5012
Description: @oleres.dll,-5013
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): DfsC
Display name: Dfs Client Driver
Description: Dfs Client Driver
Image path: System32\Drivers\dfsc.sys
Image size: 74752
Image MD5: A7179DE59AE269AB70345527894CCD7C
Start: 1
Type: 2
Error Control: 1
Depends On services: Mup

Service (registry key): DFSR
Display name: @dfsrres.dll,-101
Description: @dfsrres.dll,-102
Object name: LocalSystem
Image path: %SystemRoot%\system32\DFSR.exe
Image size: 2089984
Image MD5: E0D584AA76C7D845BA9F3A788260528F
Start: 3
Type: 16
Error Control: 1
Depends On services: RpcSs,EventSystem

Service (registry key): Dhcp
Display name: @%SystemRoot%\system32\dhcpcsvc.dll,-100
Description: @%SystemRoot%\system32\dhcpcsvc.dll,-101
Object name: NT Authority\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: NSI,Tdx,Afd

Service (registry key): disk
Display name: Disk Driver
Image path: system32\drivers\disk.sys
Image size: 52840
Image MD5: 841AF4C4D41D3E3B2F244E976B0F7963
Start: 0
Type: 1
Error Control: 1

Service (registry key): Dnscache
Display name: @%SystemRoot%\System32\dnsapi.dll,-101
Description: @%SystemRoot%\System32\dnsapi.dll,-102
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: Tdx

Service (registry key): dot3svc
Display name: @%systemroot%\system32\dot3svc.dll,-1102
Description: @%systemroot%\system32\dot3svc.dll,-1103
Object name: localSystem
Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,Ndisuio,Eaphost

Service (registry key): DPS
Display name: @%systemroot%\system32\dps.dll,-500
Description: @%systemroot%\system32\dps.dll,-501
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): drmkaud
Display name: Microsoft Kernel DRM Audio Descrambler
Image path: system32\drivers\drmkaud.sys
Image size: 5632
Image MD5: EE472CD2C01F6F8E8AA1FA06FFEF61B6
Start: 3
Type: 1
Error Control: 1

Service (registry key): DXGKrnl
Display name: LDDM Graphics Subsystem
Description: Controls the underlying video driver stacks to provide fully-featured display capabilities.
Image path: \SystemRoot\System32\drivers\dxgkrnl.sys
Start: 3
Type: 1
Error Control: 0

Service (registry key): e1express
Display name: Intel® PRO/1000 PCI Express Network Connection Driver
Image path: system32\DRIVERS\e1e6032.sys
Image size: 214912
Image MD5: 9F3E3F19D28B3B4FF261A1E758F4AD26
Start: 3
Type: 1
Error Control: 1

Service (registry key): E1G60
Display name: Intel® PRO/1000 NDIS 6 Adapter Driver
Image path: system32\DRIVERS\E1G60I32.sys
Image size: 117760
Image MD5: F88FB26547FD2CE6D0A5AF2985892C48
Start: 3
Type: 1
Error Control: 1

Service (registry key): EapHost
Display name: @%systemroot%\system32\eapsvc.dll,-1
Description: @%systemroot%\system32\eapsvc.dll,-2
Object name: localSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS,KeyIso

Service (registry key): Ecache
Display name: ReadyBoost Caching Driver
Description: ReadyBoost Caching Driver
Image path: System32\drivers\ecache.sys
Image size: 132200
Image MD5: 0EFC7531B936EE57FDB4E837664C509F
Start: 0
Type: 1
Error Control: 3

Service (registry key): elxstor
Image path: \SystemRoot\system32\drivers\elxstor.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): EmdCache
Start: 0
Type: 0
Error Control: 0

Service (registry key): EMDMgmt
Display name: @%SystemRoot%\system32\emdmgmt.dll,-1000
Description: @%SystemRoot%\system32\emdmgmt.dll,-1001
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 0
Depends On services: rpcss,ecache,slsvc,fileinfo

Service (registry key): ESENT
Start: 0
Type: 0
Error Control: 0

Service (registry key): Eventlog
Display name: @%SystemRoot%\system32\wevtsvc.dll,-200
Description: @%SystemRoot%\system32\wevtsvc.dll,-201
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): EventSystem
Display name: @comres.dll,-2450
Description: @comres.dll,-2451
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: rpcss

Service (registry key): fastfat
Display name: FAT12/16/32 File System Driver
Description: Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)
Start: 3
Type: 2
Error Control: 1

Service (registry key): Fax
Display name: @%systemroot%\system32\fxsresm.dll,-118
Description: @%systemroot%\system32\fxsresm.dll,-122
Object name: NT AUTHORITY\NetworkService
Image path: %systemroot%\system32\fxssvc.exe
Image size: 521216
Image MD5: 93F75490B02033DF8EDF4D7089C7E1D8
Start: 3
Type: 16
Error Control: 1
Depends On services: TapiSrv,RpcSs,PlugPlay,Spooler

Service (registry key): fdc
Display name: Floppy Disk Controller Driver
Image path: system32\DRIVERS\fdc.sys
Image size: 25088
Image MD5: 63BDADA84951B9C03E641800E176898A
Start: 4
Type: 1
Error Control: 1

Service (registry key): fdPHost
Display name: @%systemroot%\system32\fdPHost.dll,-100
Description: @%systemroot%\system32\fdPHost.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,http

Service (registry key): FDResPub
Display name: @%systemroot%\system32\fdrespub.dll,-100
Description: @%systemroot%\system32\fdrespub.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,http

Service (registry key): FileInfo
Display name: File Information FS MiniFilter
Description: Collects information about files in memory to be consumed by other system services.
Image path: system32\drivers\fileinfo.sys
Image size: 56424
Image MD5: 65773D6115C037FFD7EF8280AE85EB9D
Start: 0
Type: 2
Error Control: 1
Depends On services: fltmgr

Service (registry key): Filetrace
Display name: FileTrace
Description: ETW File Trace Filter
Image path: system32\drivers\filetrace.sys
Image size: 27648
Image MD5: C226DD0DE060745F3E042F58DCF78402
Start: 3
Type: 2
Error Control: 1
Depends On services: FltMgr

Service (registry key): flpydisk
Display name: Floppy Disk Driver
Image path: system32\DRIVERS\flpydisk.sys
Image size: 20480
Image MD5: 6603957EFF5EC62D25075EA8AC27DE68
Start: 4
Type: 1
Error Control: 1

Service (registry key): FltMgr
Display name: FltMgr
Description: File System Filter Manager Driver
Image path: system32\drivers\fltmgr.sys
Image size: 183912
Image MD5: A6A8DA7AE4D53394AB22AC3AB6D3F5D3
Start: 0
Type: 2
Error Control: 3

Service (registry key): FontCache3.0.0.0
Display name: @%SystemRoot%\system32\PresentationHost.exe,-3309
Description: @%SystemRoot%\system32\PresentationHost.exe,-3310
Object name: NT Authority\LocalService
Image path: %systemroot%\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
Image size: 36864
Image MD5: 7EF57375636991F794BF40B522A8E7EF
Start: 3
Type: 16
Error Control: 1

Service (registry key): Fs_Rec
Start: 1
Type: 8
Error Control: 0

Service (registry key): gagp30kx
Display name: Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms
Image path: \SystemRoot\system32\drivers\gagp30kx.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): gpsvc
Display name: @gpapi.dll,-112
Description: @gpapi.dll,-113
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS,Mup

Service (registry key): HdAudAddService
Display name: Microsoft 1.1 UAA Function Driver for High Definition Audio Service
Image path: system32\drivers\HdAudio.sys
Image size: 235520
Image MD5: CB04C744BE0A61B1D648FAED182C3B59
Start: 3
Type: 1
Error Control: 1

Service (registry key): HDAudBus
Display name: Microsoft UAA Bus Driver for High Definition Audio
Image path: system32\DRIVERS\HDAudBus.sys
Image size: 53760
Image MD5: FFB271303BA3C59D9C97B7AF1175DE95
Start: 3
Type: 1
Error Control: 1

Service (registry key): HidBth
Display name: Microsoft Bluetooth HID Miniport
Image path: system32\DRIVERS\hidbth.sys
Image size: 29184
Image MD5: 1338520E78D90154ED6BE8F84DE5FCEB
Start: 3
Type: 1
Error Control: 0

Service (registry key): HidIr
Display name: Microsoft Infrared HID Driver
Image path: \SystemRoot\system32\drivers\hidir.sys
Start: 4
Type: 1
Error Control: 0

Service (registry key): hidserv
Display name: @%SystemRoot%\System32\hidserv.dll,-101
Description: @%SystemRoot%\System32\hidserv.dll,-102
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): HidUsb
Display name: Microsoft HID Class Driver
Image path: system32\DRIVERS\hidusb.sys
Image size: 12288
Image MD5: 3C64042B95E583B366BA4E5D2450235E
Start: 3
Type: 1
Error Control: 0

Service (registry key): hkmsvc
Display name: @%SystemRoot%\system32\kmsvc.dll,-6
Description: @%SystemRoot%\system32\kmsvc.dll,-7
Object name: localSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): HpCISSs
Image path: \SystemRoot\system32\drivers\hpcisss.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): HSFHWAZL
Image path: system32\DRIVERS\VSTAZL3.SYS
Image size: 200704
Image MD5: 46D67209550973257601A533E2AC5785
Start: 3
Type: 1
Error Control: 0

Service (registry key): HSF_DPV
Image path: system32\DRIVERS\VSTDPV3.SYS
Image size: 987648
Image MD5: EC36F1D542ED4252390D446BF6D4DFD0
Start: 3
Type: 1
Error Control: 0

Service (registry key): HTTP
Display name: HTTP
Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
Image path: system32\drivers\HTTP.sys
Image size: 385536
Image MD5: F31D27CCF514549A17E79BEBE01B40B6
Start: 3
Type: 1
Error Control: 1

Service (registry key): i2omp
Image path: \SystemRoot\system32\drivers\i2omp.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): i8042prt
Display name: i8042 Keyboard and PS/2 Mouse Port Driver
Image path: system32\DRIVERS\i8042prt.sys
Image size: 54784
Image MD5: 1060F1377F395A242E27719440ECE602
Start: 1
Type: 1
Error Control: 1

Service (registry key): ialm
Image path: system32\DRIVERS\igdkmd32.sys
Image size: 1473024
Image MD5: 0215E1204D5410E50A5EA9D442FE7DA3
Start: 3
Type: 1
Error Control: 0

Service (registry key): iaStorV
Display name: Intel RAID Controller Vista
Image path: \SystemRoot\system32\drivers\iastorv.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): IBMPMDRV
Image path: system32\DRIVERS\ibmpmdrv.sys
Image size: 10112
Image MD5: 067A88764593B1F46A6CFB00C69C11EB
Start: 3
Type: 1
Error Control: 0

Service (registry key): IBMPMSVC
Display name: ThinkPad PM Service
Object name: LocalSystem
Image path: %SystemRoot%\system32\ibmpmsvc.exe
Image size: 73782
Image MD5: 21ABD7E16659602723F984F512C65E02
Start: 2
Type: 272
Error Control: 0

Service (registry key): idsvc
Display name: @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193
Description: @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8192
Object name: LocalSystem
Image path: "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"
Image size: 741376
Image MD5: 6D1D3CAB85BA0C63CB83296A8A1825F9
Start: 3
Type: 32
Error Control: 1

Service (registry key): igfx
Image path: system32\DRIVERS\igdkmd32.sys
Image size: 1473024
Image MD5: 0215E1204D5410E50A5EA9D442FE7DA3
Start: 3
Type: 1
Error Control: 0

Service (registry key): iirsp
Image path: \SystemRoot\system32\drivers\iirsp.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): IKEEXT
Display name: @%SystemRoot%\system32\ikeext.dll,-501
Description: @%SystemRoot%\system32\ikeext.dll,-502
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: BFE

Service (registry key): ImapiHelper
Description: ISO Recoder helper service
Start: 0
Type: 0
Error Control: 0

Service (registry key): inetaccs
Start: 0
Type: 0
Error Control: 0

Service (registry key): intelide
Image path: system32\drivers\intelide.sys
Image size: 14952
Image MD5: 97469037714070E45194ED318D636401
Start: 0
Type: 1
Error Control: 3

Service (registry key): intelppm
Display name: Intel Processor Driver
Image path: system32\DRIVERS\intelppm.sys
Image size: 39424
Image MD5: CE44CC04262F28216DD4341E9E36A16F
Start: 3
Type: 1
Error Control: 1

Service (registry key): IPBusEnum
Display name: @%systemroot%\system32\IPBusEnum.dll,-102
Description: @%systemroot%\system32\IPBusEnum.dll,-103
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,fdPHost

Service (registry key): IpFilterDriver
Display name: IP Traffic Filter Driver
Description: IP Traffic Filter Driver
Image path: system32\DRIVERS\ipfltdrv.sys
Image size: 47104
Image MD5: 880C6F86CC3F551B8FEA2C11141268C0
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): iphlpsvc
Display name: @%SystemRoot%\system32\iphlpsvc.dll,-200
Description: @%SystemRoot%\system32\iphlpsvc.dll,-201
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k NetSvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSS,Tdx,winmgmt,tcpip,nsi

Service (registry key): IpInIp
Display name: IP in IP Tunnel Driver
Description: IP in IP Tunnel Driver
Image path: system32\DRIVERS\ipinip.sys
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): IPMIDRV
Image path: \SystemRoot\system32\drivers\ipmidrv.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): IPNAT
Display name: IP Network Address Translator
Description: IP Network Address Translator
Image path: system32\DRIVERS\ipnat.sys
Image size: 99840
Image MD5: 10077C35845101548037DF04FD1A420B
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): IPSSVC
Display name: IPS Core Service
Object name: LocalSystem
Image path: %SystemRoot%\system32\IPSSVC.EXE
Image size: 108080
Image MD5: CAB0D5BFD4F66613D18C9225C7FED334
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS,PROCDD

Service (registry key): irda
Display name: IrDA Protocol
Description: IrDA Protocol
Image path: system32\DRIVERS\irda.sys
Image size: 95744
Image MD5: F11A90FB3F44F37AD10A4893BB690065
Start: 2
Type: 1
Error Control: 1

Service (registry key): IRENUM
Display name: IR Bus Enumerator
Description: IR Bus Enumerator
Image path: system32\drivers\irenum.sys
Image size: 13312
Image MD5: A82F328F4792304184642D6D397BB1E3
Start: 3
Type: 1
Error Control: 0

Service (registry key): Irmon
Display name: @%SystemRoot%\System32\irmon.dll,-2000
Description: @%SystemRoot%\System32\irmon.dll,-2001
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: irda

Service (registry key): isapnp
Display name: PnP ISA/EISA Bus Driver
Image path: \SystemRoot\system32\drivers\isapnp.sys
Start: 4
Type: 1
Error Control: 3

Service (registry key): iScsiPrt
Display name: iScsiPort Driver
Image path: system32\DRIVERS\msiscsi.sys
Image size: 168552
Image MD5: 4DCA456D4D5723F8FA9C6760D240B0DF
Start: 3
Type: 1
Error Control: 1

Service (registry key): iteatapi
Display name: ITEATAPI_Service_Install
Image path: \SystemRoot\system32\drivers\iteatapi.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): iteraid
Display name: ITERAID_Service_Install
Image path: \SystemRoot\system32\drivers\iteraid.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): kbdclass
Display name: Keyboard Class Driver
Image path: system32\DRIVERS\kbdclass.sys
Image size: 32872
Image MD5: 1A48765F92BA1A88445FC25C9C9D94FC
Start: 1
Type: 1
Error Control: 1

Service (registry key): kbdhid
Display name: Keyboard HID Driver
Image path: system32\DRIVERS\kbdhid.sys
Image size: 15872
Image MD5: D2600CB17B7408B4A83F231DC9A11AC3
Start: 1
Type: 1
Error Control: 0

Service (registry key): KeyIso
Display name: @keyiso.dll,-100
Description: @keyiso.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 7680
Image MD5: 6A0E382E74280E4CC0DF17FE2661D003
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): KSecDD
Image path: System32\Drivers\ksecdd.sys
Image size: 407144
Image MD5: 11D0BC1F2AFD8ABBB5A3DC47A042DE54
Start: 0
Type: 1
Error Control: 3

Service (registry key): KtmRm
Display name: @comres.dll,-2946
Description: @comres.dll,-2947
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS,SamSS

Service (registry key): LanmanServer
Display name: @%systemroot%\system32\srvsvc.dll,-100
Description: @%systemroot%\system32\srvsvc.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: SamSS,Srv

Service (registry key): LanmanWorkstation
Display name: @%systemroot%\system32\wkssvc.dll,-100
Description: @%systemroot%\system32\wkssvc.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: Bowser,MRxSmb10,MRxSmb20,NSI

Service (registry key): ldap
Start: 0
Type: 0
Error Control: 0

Service (registry key): lenovo.smi
Display name: Lenovo System Interface Driver
Image path: system32\DRIVERS\smiif32.sys
Image size: 13744
Image MD5: 63DE2C8974F5D528FBC3D6978FD8AD6A
Start: 1
Type: 1
Error Control: 1

Service (registry key): lltdio
Display name: Link-Layer Topology Discovery Mapper I/O Driver
Image path: system32\DRIVERS\lltdio.sys
Image size: 47104
Image MD5: FD015B4F95DAA2B712F0E372A116FBAD
Start: 2
Type: 1
Error Control: 1

Service (registry key): lltdsvc
Display name: @%SystemRoot%\system32\lltdres.dll,-1
Description: @%SystemRoot%\system32\lltdres.dll,-2
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: rpcss,lltdio

Service (registry key): lmhosts
Display name: @%SystemRoot%\system32\lmhsvc.dll,-101
Description: @%SystemRoot%\system32\lmhsvc.dll,-102
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: NetBT,Afd

Service (registry key): Lsa
Start: 0
Type: 0
Error Control: 0

Service (registry key): LSI_FC
Image path: \SystemRoot\system32\drivers\lsi_fc.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): LSI_SAS
Image path: \SystemRoot\system32\drivers\lsi_sas.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): LSI_SCSI
Image path: \SystemRoot\system32\drivers\lsi_scsi.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): luafv
Display name: UAC File Virtualization
Description: Virtualizes file write failures to per-user locations.
Image path: \SystemRoot\system32\drivers\luafv.sys
Start: 2
Type: 2
Error Control: 1
Depends On services: FltMgr

Service (registry key): MDM
Display name: Machine Debug Manager
Description: Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly.
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
Image size: 335872
Image MD5: 7CF1B716372B89568AE4C0FE769F5869
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS

Service (registry key): megasas
Image path: \SystemRoot\system32\drivers\megasas.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Microsoft Office Groove Audit Service
Display name: Microsoft Office Groove Audit Service
Object name: NT AUTHORITY\LocalService
Image path: "C:\Program Files\Microsoft Outlook\Office12\GrooveAuditService.exe"
Image size: 65824
Image MD5: FAFE367D032ED82E9332B4C741A20216
Start: 3
Type: 16
Error Control: 1

Service (registry key): MMCSS
Display name: @%systemroot%\system32\mmcss.dll,-100
Description: @%systemroot%\system32\mmcss.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): Modem
Image path: system32\drivers\modem.sys
Image size: 31744
Image MD5: 21755967298A46FB6ADFEC9DB6012211
Start: 3
Type: 1
Error Control: 0

Service (registry key): monitor
Display name: Microsoft Monitor Class Function Driver Service
Image path: system32\DRIVERS\monitor.sys
Image size: 41984
Image MD5: EC839BA91E45CCE6EADAFC418FFF8206
Start: 3
Type: 1
Error Control: 1

Service (registry key): mouclass
Display name: Mouse Class Driver
Image path: system32\DRIVERS\mouclass.sys
Image size: 31848
Image MD5: 3C9469DFB3440555DAB070716D768B1E
Start: 1
Type: 1
Error Control: 1

Service (registry key): mouhid
Display name: Mouse HID Driver
Image path: system32\DRIVERS\mouhid.sys
Image size: 15872
Image MD5: A3A6DFF7E9E757DB3DF51A833BC28885
Start: 3
Type: 1
Error Control: 0

Service (registry key): MountMgr
Display name: Mount Point Manager
Image path: System32\drivers\mountmgr.sys
Image size: 54888
Image MD5: 01F1E5A3E4877C931CBB31613FEC16A6
Start: 0
Type: 1
Error Control: 3

Service (registry key): mpio
Display name: Microsoft Multi-Path Bus Driver
Image path: \SystemRoot\system32\drivers\mpio.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): mpsdrv
Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23092
Description: @%SystemRoot%\system32\FirewallAPI.dll,-23093
Image path: System32\drivers\mpsdrv.sys
Image size: 63488
Image MD5: 8D326E8B321685D4784AFA1C55169D73
Start: 3
Type: 1
Error Control: 1

Service (registry key): MpsSvc
Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23090
Description: @%SystemRoot%\system32\FirewallAPI.dll,-23091
Object name: NT Authority\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: mpsdrv,bfe

Service (registry key): Mraid35x
Image path: \SystemRoot\system32\drivers\mraid35x.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): MRxDAV
Display name: WebDav Client Redirector Driver
Description: WebDav Client Redirector Driver
Image path: \SystemRoot\system32\drivers\mrxdav.sys
Start: 3
Type: 2
Error Control: 1
Depends On services: rdbss

Service (registry key): mrxsmb
Display name: SMB MiniRedirector Wrapper and Engine
Description: Implements the framework for the SMB filesystem redirector
Image path: system32\DRIVERS\mrxsmb.sys
Image size: 101888
Image MD5: FCA7563D87F71C6DB0182CA67CC19AA7
Start: 3
Type: 2
Error Control: 1
Depends On services: rdbss

Service (registry key): mrxsmb10
Display name: SMB 1.x MiniRedirector
Description: Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers
Image path: system32\DRIVERS\mrxsmb10.sys
Image size: 211456
Image MD5: 58A9AB5754FA4CABEDE7401283B5A771
Start: 3
Type: 2
Error Control: 1
Depends On services: mrxsmb

Service (registry key): mrxsmb20
Display name: SMB 2.0 MiniRedirector
Description: Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers
Image path: system32\DRIVERS\mrxsmb20.sys
Image size: 57856
Image MD5: 79B09504E4A790104683722CD04F76B4
Start: 3
Type: 2
Error Control: 1
Depends On services: mrxsmb

Service (registry key): msahci
Image path: system32\drivers\msahci.sys
Image size: 23144
Image MD5: 742AED7939E734C36B7E8D6228CE26B7
Start: 0
Type: 1
Error Control: 3

Service (registry key): msdsm
Display name: Microsoft Multi-Path Device Specific Module
Image path: \SystemRoot\system32\drivers\msdsm.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): MSDTC
Display name: @comres.dll,-2797
Description: @comres.dll,-2798
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\msdtc.exe
Image size: 106496
Image MD5: BC64A92D821EFEA8BAB8E8CAF1B668BC
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS,SamSS

Service (registry key): MSDTC Bridge 3.0.0.0
Start: 0
Type: 0
Error Control: 0

Service (registry key): Msfs
Start: 1
Type: 2
Error Control: 1

Service (registry key): msisadrv
Display name: ISA/EISA Class Driver
Image path: system32\drivers\msisadrv.sys
Image size: 13928
Image MD5: 5F454A16A5146CD91A176D70F0CFA3EC
Start: 0
Type: 1
Error Control: 3

Service (registry key): MSiSCSI
Display name: @%SystemRoot%\system32\iscsidsc.dll,-5000
Description: @%SystemRoot%\system32\iscsidsc.dll,-5001
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): msiserver
Display name: @%SystemRoot%\system32\msimsg.dll,-27
Description: @%SystemRoot%\system32\msimsg.dll,-32
Object name: LocalSystem
Image path: %systemroot%\system32\msiexec /V
Image size: 71680
Image MD5: B038D40785FA669BD8C3E0252909B4C2
Start: 3
Type: 16
Error Control: 1
Depends On services: rpcss

Service (registry key): MSKSSRV
Display name: Microsoft Streaming Service Proxy
Image path: system32\drivers\MSKSSRV.sys
Image size: 8192
Image MD5: 892CEDEFA7E0FFE7BE8DA651B651D047
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSPCLOCK
Display name: Microsoft Streaming Clock Proxy
Image path: system32\drivers\MSPCLOCK.sys
Image size: 5888
Image MD5: AE2CB1DA69B2676B4CEE2A501AF5871C
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSPQM
Display name: Microsoft Streaming Quality Manager Proxy
Image path: system32\drivers\MSPQM.sys
Image size: 5504
Image MD5: F910DA84FA90C44A3ADDB7CD874463FD
Start: 3
Type: 1
Error Control: 1

Service (registry key): MsRPC
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSSCNTRS
Start: 0
Type: 0
Error Control: 0

Service (registry key): mssmbios
Display name: Microsoft System Management BIOS Driver
Image path: system32\DRIVERS\mssmbios.sys
Image size: 28776
Image MD5: 4385C80EDE885E25492D408CAD91BD6F
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSTEE
Display name: Microsoft Streaming Tee/Sink-to-Sink Converter
Image path: system32\drivers\MSTEE.sys
Image size: 6016
Image MD5: C826DD1373F38AFD9CA46EC3C436A14E
Start: 3
Type: 1
Error Control: 1

Service (registry key): Mup
Display name: Mup
Description: Multiple UNC Provider
Image path: System32\Drivers\mup.sys
Image size: 46696
Image MD5: FA7AA70050CF5E2D15DE00941E5665E5
Start: 0
Type: 2
Error Control: 1

Service (registry key): napagent
Display name: @%SystemRoot%\system32\qagentrt.dll,-6
Description: @%SystemRoot%\system32\qagentrt.dll,-7
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): NativeWifiP
Display name: NativeWiFi Filter
Image path: system32\DRIVERS\nwifi.sys
Image size: 154112
Image MD5: 497DE786240303EE67AB01F5690C24C2
Start: 3
Type: 1
Error Control: 1

Service (registry key): NDIS
Display name: NDIS System Driver
Description: NDIS System Driver
Image path: system32\drivers\ndis.sys
Image size: 500840
Image MD5: 227C11E1E7CF6EF8AFB2A238D209760C
Start: 0
Type: 1
Error Control: 3

Service (registry key): NdisTapi
Display name: Remote Access NDIS TAPI Driver
Description: Remote Access NDIS TAPI Driver
Image path: system32\DRIVERS\ndistapi.sys
Image size: 20480
Image MD5: 7584F1794B23B83D63CC124A8C56D103
Start: 3
Type: 1
Error Control: 1

Service (registry key): Ndisuio
Display name: NDIS Usermode I/O Protocol
Image path: system32\DRIVERS\ndisuio.sys
Image size: 16896
Image MD5: 5DE5EE546BF40838EBE0E01CB629DF64
Start: 3
Type: 1
Error Control: 1

Service (registry key): NdisWan
Display name: Remote Access NDIS WAN Driver
Description: Remote Access NDIS WAN Driver
Image path: system32\DRIVERS\ndiswan.sys
Image size: 118784
Image MD5: 397402ADCBB8946223A1950101F6CD94
Start: 3
Type: 1
Error Control: 1

Service (registry key): NDProxy
Start: 3
Type: 1
Error Control: 1

Service (registry key): NetBIOS
Display name: NetBIOS Interface
Description: NetBIOS Interface
Image path: system32\DRIVERS\netbios.sys
Image size: 35840
Image MD5: 356DBB9F98E8DC1028DD3092FCEEB877
Start: 1
Type: 2
Error Control: 1

Service (registry key): netbt
Display name: NETBT
Description: This service implements NetBios over TCP/IP.
Image path: System32\DRIVERS\netbt.sys
Image size: 184320
Image MD5: E3A168912E7EEFC3BD3B814720D68B41
Start: 1
Type: 1
Error Control: 1
Depends On services: Tdx,tcpip

Service (registry key): Netlogon
Display name: @%SystemRoot%\System32\netlogon.dll,-102
Description: @%SystemRoot%\System32\netlogon.dll,-103
Object name: LocalSystem
Image path: %systemroot%\system32\lsass.exe
Image size: 7680
Image MD5: 6A0E382E74280E4CC0DF17FE2661D003
Start: 2
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation

Service (registry key): Netman
Display name: @%SystemRoot%\system32\netman.dll,-109
Description: @%SystemRoot%\system32\netman.dll,-110
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,nsi

Service (registry key): netprofm
Display name: @%SystemRoot%\system32\netprof.dll,-246
Description: @%SystemRoot%\system32\netprof.dll,-247
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,nlasvc

Service (registry key): NetTcpPortSharing
Display name: @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
Description: @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
Object name: NT AUTHORITY\LocalService
Image path: "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe"
Image size: 122880
Image MD5: B418382DE04FF58567AA07A2B66B2332
Start: 4
Type: 32
Error Control: 1

Service (registry key): NETw3v32
Display name: Intel® PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit
Image path: system32\DRIVERS\NETw3v32.sys
Image size: 1786880
Image MD5: EA30BD026A7D1B745A37516880C4AC1B
Start: 3
Type: 1
Error Control: 1

Service (registry key): nfrd960
Image path: \SystemRoot\system32\drivers\nfrd960.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): NlaSvc
Display name: @%SystemRoot%\System32\nlasvc.dll,-1
Description: @%SystemRoot%\System32\nlasvc.dll,-2
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: NSI,RpcSs,TcpIp

Service (registry key): nmwcd
Display name: Nokia USB Phone Parent
Image path: system32\drivers\nmwcd.sys
Image size: 137216
Image MD5: 696B37EA78F9D9767A2F18BA0304A51A
Start: 3
Type: 1
Error Control: 1

Service (registry key): nmwcdc
Display name: Nokia USB Generic
Image path: system32\drivers\nmwcdc.sys
Image size: 8320
Image MD5: BBB6010FC01D9239D88FCDF133E03FF0
Start: 3
Type: 1
Error Control: 0

Service (registry key): nmwcdcj
Display name: Nokia USB Port
Image path: system32\drivers\nmwcdcj.sys
Image size: 12288
Image MD5: 4C3726467D67483F054C88F058E9C153
Start: 3
Type: 1
Error Control: 0

Service (registry key): nmwcdcm
Display name: Nokia USB Modem
Image path: system32\drivers\nmwcdcm.sys
Image size: 12288
Image MD5: 4C3726467D67483F054C88F058E9C153
Start: 3
Type: 1
Error Control: 0

Service (registry key): NPF
Display name: NetGroup Packet Filter Driver
Image path: system32\drivers\npf.sys
Image size: 32512
Image MD5: D21FEE8DB254BA762656878168AC1DB6
Start: 2
Type: 1
Error Control: 1

Service (registry key): Npfs
Start: 1
Type: 2
Error Control: 1

Service (registry key): NSCIRDA
Display name: NSC Infrared Device Driver
Image path: system32\DRIVERS\nscirda.sys
Image size: 30720
Image MD5: C9294E01E45139FD77E16EC07FD86F61
Start: 3
Type: 1
Error Control: 1

Service (registry key): nsi
Display name: @%SystemRoot%\system32\nsisvc.dll,-200
Description: @%SystemRoot%\system32\nsisvc.dll,-201
Object name: NT Authority\LocalService
Image path: %systemroot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: nsiproxy

Service (registry key): nsiproxy
Display name: NSI proxy service
Description: NSI proxy service
Image path: system32\drivers\nsiproxy.sys
Image size: 16384
Image MD5: B488DFEC274DE1FC9D653870EF2587BE
Start: 1
Type: 1
Error Control: 1

Service (registry key): NTDS
Start: 0
Type: 0
Error Control: 0

Service (registry key): Ntfs
Start: 3
Type: 2
Error Control: 1

Service (registry key): ntrigdigi
Display name: N-trig HID Tablet Driver
Image path: \SystemRoot\system32\drivers\ntrigdigi.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Null
Start: 1
Type: 1
Error Control: 1

Service (registry key): nvraid
Image path: \SystemRoot\system32\drivers\nvraid.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): nvstor
Image path: \SystemRoot\system32\drivers\nvstor.sys
Start: 4
Type: 1
Error Control: 3

Service (registry key): nv_agp
Display name: NVIDIA nForce AGP Bus Filter
Image path: \SystemRoot\system32\drivers\nv_agp.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): NwlnkFlt
Display name: IPX Traffic Filter Driver
Description: IPX Traffic Filter Driver
Image path: system32\DRIVERS\nwlnkflt.sys
Start: 3
Type: 1
Error Control: 1
Depends On services: NwlnkFwd

Service (registry key): NwlnkFwd
Display name: IPX Traffic Forwarder Driver
Description: IPX Traffic Forwarder Driver
Image path: system32\DRIVERS\nwlnkfwd.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): odserv
Display name: Microsoft Office Diagnostics Service
Description: Run portions of Microsoft Office Diagnostics.
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE"
Image size: 441136
Image MD5: 84DE1DD996B48B05ACE31AD015FA108A
Start: 3
Type: 16
Error Control: 1

Service (registry key): ohci1394
Display name: NEC FireWarden OHCI Compliant IEEE 1394 Host Controller
Image path: \SystemRoot\system32\drivers\ohci1394.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): ose
Display name: Office Source Engine
Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports.
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
Image size: 145184
Image MD5: 5A432A042DAE460ABE7199B758E8606C
Start: 3
Type: 16
Error Control: 1

Service (registry key): Outlook
Start: 0
Type: 0
Error Control: 0

Service (registry key): p2pimsvc
Display name: @%SystemRoot%\system32\p2psvc.dll,-8004
Description: @%SystemRoot%\system32\p2psvc.dll,-8005
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): p2psvc
Display name: @%SystemRoot%\system32\p2psvc.dll,-8006
Description: @%SystemRoot%\system32\p2psvc.dll,-8007
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: p2pimsvc,PNRPSvc

Service (registry key): Parport
Display name: Parallel port driver
Image path: \SystemRoot\system32\drivers\parport.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): partmgr
Display name: Partition Manager
Description: Disk class filter driver that auctions out partitions to volume managers
Image path: System32\drivers\partmgr.sys
Image size: 49256
Image MD5: 555A5B2C8022983BC7467BC925B222EE
Start: 0
Type: 1
Error Control: 3

Service (registry key): Parvdm
Image path: \SystemRoot\system32\drivers\parvdm.sys
Start: 2
Type: 1
Error Control: 0
Depends On services: Parport
Depends On group: "Parallel arbitrator"

Service (registry key): PcaSvc
Display name: @%SystemRoot%\system32\pcasvc.dll,-1
Description: @%SystemRoot%\system32\pcasvc.dll,-2
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): pci
Display name: PCI Bus Driver
Image path: system32\drivers\pci.sys
Image size: 140392
Image MD5: 1085D75657807E0E8B32F9E19A1647C3
Start: 0
Type: 1
Error Control: 1

Service (registry key): pciide
Image path: \SystemRoot\system32\drivers\pciide.sys
Start: 4
Type: 1
Error Control: 3

Service (registry key): pcmcia
Image path: system32\DRIVERS\pcmcia.sys
Image size: 167528
Image MD5: E6F3FB1B86AA519E7698AD05E58B04E5
Start: 0
Type: 1
Error Control: 1

Service (registry key): pcouffin
Display name: VSO Software pcouffin
Image path: System32\Drivers\pcouffin.sys
Image size: 47360
Image MD5: 5B6C11DE7E839C05248CED8825470FEF
Start: 3
Type: 1
Error Control: 1

Service (registry key): PEAUTH
Display name: PEAUTH
Image path: system32\drivers\peauth.sys
Image size: 878080
Image MD5: 6349F6ED9C623B44B52EA3C63C831A92
Start: 2
Type: 1
Error Control: 1

Service (registry key): PerfDisk
Start: 0
Type: 0
Error Control: 0

Service (registry key): PerfNet
Start: 0
Type: 0
Error Control: 0

Service (registry key): PerfOS
Start: 0
Type: 0
Error Control: 0

Service (registry key): PerfProc
Start: 0
Type: 0
Error Control: 0

Service (registry key): pla
Display name: @%systemroot%\system32\pla.dll,-500
Description: @%systemroot%\system32\pla.dll,-501
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): PlugPlay
Display name: @%SystemRoot%\system32\umpnpmgr.dll,-100
Description: @%SystemRoot%\system32\umpnpmgr.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): PNRPAutoReg
Display name: @%SystemRoot%\system32\p2psvc.dll,-8002
Description: @%SystemRoot%\system32\p2psvc.dll,-8003
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: pnrpsvc

Service (registry key): PNRPsvc
Display name: @%SystemRoot%\system32\p2psvc.dll,-8000
Description: @%SystemRoot%\system32\p2psvc.dll,-8001
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: p2pimsvc

Service (registry key): PolicyAgent
Display name: @%SystemRoot%\System32\polstore.dll,-5010
Description: @%SystemRoot%\system32\polstore.dll,-5011
Object name: NT Authority\NetworkService
Image path: %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: Tcpip,bfe

Service (registry key): PortProxy
Start: 0
Type: 0
Error Control: 0

Service (registry key): PptpMiniport
Display name: WAN Miniport (PPTP)
Description: WAN Miniport (PPTP)
Image path: system32\DRIVERS\raspptp.sys
Image size: 61440
Image MD5: 6C359AC71D7B550A0D41F9DB4563CE05
Start: 3
Type: 1
Error Control: 1

Service (registry key): PROCDD
Display name: IPS Helper Driver
Image path: system32\DRIVERS\PROCDD.SYS
Image size: 12080
Image MD5: 1D80309FED4BABF8EA9E7B84A394348B
Start: 2
Type: 1
Error Control: 1

Service (registry key): Processor
Display name: Processor Driver
Image path: \SystemRoot\system32\drivers\processr.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): ProfSvc
Display name: @%systemroot%\system32\profsvc.dll,-300
Description: @%systemroot%\system32\profsvc.dll,-301
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): ProtectedStorage
Display name: @%systemroot%\system32\psbase.dll,-300
Description: @%systemroot%\system32\psbase.dll,-301
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 7680
Image MD5: 6A0E382E74280E4CC0DF17FE2661D003
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): psadd
Display name: Lenovo Parties Service Access Device Driver
Image path: system32\DRIVERS\psadd.sys
Image size: 28224
Image MD5: CE5114C9D3AB67E6F6F8017C5F975292
Start: 3
Type: 1
Error Control: 1

Service (registry key): PSched
Display name: @%SystemRoot%\System32\drivers\pacer.sys,-101
Description: @%SystemRoot%\System32\drivers\pacer.sys,-101
Image path: system32\DRIVERS\pacer.sys
Image size: 70144
Image MD5: B74EDF14453C9987E99E66535047EBEE
Start: 1
Type: 1
Error Control: 1

Service (registry key): ql2300
Display name: QLogic Fibre Channel Miniport Driver
Image path: \SystemRoot\system32\drivers\ql2300.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): ql40xx
Display name: QLogic iSCSI Miniport Driver
Image path: \SystemRoot\system32\drivers\ql40xx.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): QWAVE
Display name: @%SystemRoot%\system32\qwave.dll,-1
Description: @%SystemRoot%\system32\qwave.dll,-2
Object name: NT AUTHORITY\LocalService
Image path: %windir%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: rpcss,psched,QWAVEdrv,LLTDIO

Service (registry key): QWAVEdrv
Display name: @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
Description: @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
Image path: \SystemRoot\system32\drivers\qwavedrv.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): RapiMgr
Display name: @%windir%\WindowsMobile\rapimgr.dll,-104
Description: @%windir%\WindowsMobile\rapimgr.dll,-105
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k WindowsMobile
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): RasAcd
Display name: Remote Access Auto Connection Driver
Description: Remote Access Auto Connection Driver
Image path: System32\DRIVERS\rasacd.sys
Image size: 11776
Image MD5: BD7B30F55B3649506DD8B3D38F571D2A
Start: 1
Type: 1
Error Control: 1

Service (registry key): RasAuto
Display name: @%Systemroot%\system32\rasauto.dll,-200
Description: @%Systemroot%\system32\rasauto.dll,-201
Object name: localSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RasMan,Tapisrv

Service (registry key): Rasl2tp
Display name: WAN Miniport (L2TP)
Description: WAN Miniport (L2TP)
Image path: system32\DRIVERS\rasl2tp.sys
Image size: 75776
Image MD5: 88587DD843E2059848995B407B67F6CF
Start: 3
Type: 1
Error Control: 1

Service (registry key): RasMan
Display name: @%Systemroot%\system32\rasmans.dll,-200
Description: @%Systemroot%\system32\rasmans.dll,-201
Object name: localSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: Tapisrv

Service (registry key): RasPppoe
Display name: Remote Access PPPOE Driver
Description: Remote Access PPPOE Driver
Image path: system32\DRIVERS\raspppoe.sys
Image size: 41472
Image MD5: CCF4E9C6CBBAC81437F88CB2AE0B6C96
Start: 3
Type: 1
Error Control: 1

Service (registry key): rdbss
Display name: Redirected Buffering Sub Sysytem
Description: Provides the framework for network mini-redirectors
Image path: system32\DRIVERS\rdbss.sys
Image size: 222208
Image MD5: 54129C5D9581BBEC8BD1EBD3BA813F47
Start: 1
Type: 2
Error Control: 1
Depends On services: Mup

Service (registry key): RDPCDD
Display name: RDPCDD
Description: RDPDD Chained DD
Image path: System32\DRIVERS\RDPCDD.sys
Image size: 6144
Image MD5: 794585276B5D7FCA9F3FC15543F9F0B9
Start: 1
Type: 1
Error Control: 0

Service (registry key): RDPDD
Start: 0
Type: 0
Error Control: 0

Service (registry key): rdpdr
Display name: Terminal Server Device Redirector Driver
Image path: system32\DRIVERS\rdpdr.sys
Image size: 242688
Image MD5: E8BD98D46F2ED77132BA927FCCB47D8B
Start: 3
Type: 1
Error Control: 1

Service (registry key): RDPENCDD
Display name: RDP Encoder Mirror Driver
Description: RDP Encoder Mirror Driver
Image path: system32\drivers\rdpencdd.sys
Image size: 6144
Image MD5: 980B56E2E273E19D3A9D72D5C420F008
Start: 1
Type: 1
Error Control: 0

Service (registry key): RDPNP
Display name: @%systemroot%\system32\drprov.dll,-100
Description: @%systemroot%\system32\drprov.dll,-101
Start: 0
Type: 0
Error Control: 0

Service (registry key): RDPWD
Display name: RDP Winstation Driver
Start: 3
Type: 1
Error Control: 0

Service (registry key): RemoteAccess
Display name: @%Systemroot%\system32\mprdim.dll,-200
Description: @%Systemroot%\system32\mprdim.dll,-201
Object name: localSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 4
Type: 32
Error Control: 1
Depends On services: RpcSS,RasMan,bfe
Depends On group: NetBIOSGroup

Service (registry key): RemoteRegistry
Display name: @regsvc.dll,-1
Description: @regsvc.dll,-2
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k regsvc
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): RFCOMM
Display name: Bluetooth Device (RFCOMM Protocol TDI)
Description: Bluetooth Device (RFCOMM Protocol TDI)
Image path: system32\DRIVERS\rfcomm.sys
Image size: 49664
Image MD5: 7EC90C316177BA3F1BCE92005264B447
Start: 3
Type: 1
Error Control: 1

Service (registry key): rpcapd
Display name: Remote Packet Capture Protocol v.0 (experimental)
Description: Allows to capture traffic on this machine from a remote machine.
Object name: LocalSystem
Image path: "%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini"
Image size: 86016
Image MD5: 67C607857CCD6EBFFE768DAD5B2CA239
Start: 3
Type: 16
Error Control: 1

Service (registry key): RpcLocator
Display name: @%systemroot%\system32\Locator.exe,-2
Description: @%systemroot%\system32\Locator.exe,-3
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\locator.exe
Image size: 7680
Image MD5: 5123F83CBC4349D065534EEB6BBDC42B
Start: 3
Type: 16
Error Control: 1

Service (registry key): RpcSs
Display name: @oleres.dll,-5010
Description: @oleres.dll,-5011
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\svchost.exe -k rpcss
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: DcomLaunch

Service (registry key): rspndr
Display name: Link-Layer Topology Discovery Responder
Image path: system32\DRIVERS\rspndr.sys
Image size: 60416
Image MD5: 97E939D2128FEC5D5A3E6E79B290A2F4
Start: 2
Type: 1
Error Control: 1

Service (registry key): SamSs
Display name: @%SystemRoot%\system32\samsrv.dll,-1
Description: @%SystemRoot%\system32\samsrv.dll,-2
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 7680
Image MD5: 6A0E382E74280E4CC0DF17FE2661D003
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): sbp2port
Display name: SBP-2 Transport/Protocol Bus Driver
Image path: \SystemRoot\system32\drivers\sbp2port.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): SCardSvr
Display name: @%SystemRoot%\System32\SCardSvr.dll,-1
Description: @%SystemRoot%\System32\SCardSvr.dll,-5
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: PlugPlay

Service (registry key): SCDEmu
Start: 1
Type: 1
Error Control: 1

Service (registry key): Schedule
Display name: @%SystemRoot%\system32\schedsvc.dll,-100
Description: @%SystemRoot%\system32\schedsvc.dll,-101
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS,EventLog

Service (registry key): SCPolicySvc
Display name: @%SystemRoot%\System32\certprop.dll,-13
Description: @%SystemRoot%\System32\certprop.dll,-14
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): SDRSVC
Display name: @%SystemRoot%\system32\sdrsvc.dll,-107
Description: @%SystemRoot%\system32\sdrsvc.dll,-102
Object name: localSystem
Image path: %SystemRoot%\system32\svchost.exe -k SDRSVC
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): secdrv
Display name: Security Driver
Start: 2
Type: 1
Error Control: 1

Service (registry key): seclogon
Display name: @%SystemRoot%\system32\seclogon.dll,-7001
Description: @%SystemRoot%\system32\seclogon.dll,-7000
Object name: LocalSystem
Image path: %windir%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): SENS
Display name: @%SystemRoot%\system32\Sens.dll,-200
Description: @%SystemRoot%\system32\Sens.dll,-201
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: EventSystem

Service (registry key): Serenum
Display name: Serenum Filter Driver
Image path: \SystemRoot\system32\drivers\serenum.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): Serial
Display name: Serial Port Driver
Image path: \SystemRoot\system32\drivers\serial.sys
Start: 3
Type: 1
Error Control: 0

Service (registry key): sermouse
Display name: Serial Mouse Driver
Image path: \SystemRoot\system32\drivers\sermouse.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): ServiceLayer
Display name: ServiceLayer
Object name: LocalSystem
Image path: "C:\Program Files\PC Connectivity Solution\ServiceLayer.exe"
Image size: 292864
Image MD5: 78546CD2ECA6DD6BDCD4B13048621F88
Start: 3
Type: 272
Error Control: 1
Depends On services: RPCSS

Service (registry key): ServiceModelEndpoint 3.0.0.0
Start: 0
Type: 0
Error Control: 0

Service (registry key): ServiceModelOperation 3.0.0.0
Start: 0
Type: 0
Error Control: 0

Service (registry key): ServiceModelService 3.0.0.0
Start: 0
Type: 0
Error Control: 0

Service (registry key): SessionEnv
Display name: @%SystemRoot%\System32\SessEnv.dll,-1026
Description: @%SystemRoot%\System32\SessEnv.dll,-1027
Object name: localSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS,LanmanWorkstation

Service (registry key): sffdisk
Display name: SFF Storage Class Driver
Image path: \SystemRoot\system32\drivers\sffdisk.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): sffp_mmc
Display name: SFF Storage Protocol Driver for MMC
Image path: \SystemRoot\system32\drivers\sffp_mmc.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): sffp_sd
Display name: SFF Storage Protocol Driver for SDBus
Image path: \SystemRoot\system32\drivers\sffp_sd.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): sfloppy
Display name: High-Capacity Floppy Disk Drive
Image path: \SystemRoot\system32\drivers\sfloppy.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): SharedAccess
Display name: @%SystemRoot%\system32\ipnathlp.dll,-106
Description: @%SystemRoot%\system32\ipnathlp.dll,-107
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: Netman,WinMgmt,RasMan,BFE

Service (registry key): ShellHWDetection
Display name: @%SystemRoot%\System32\shsvcs.dll,-12288
Description: @%SystemRoot%\System32\shsvcs.dll,-12289
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 0
Depends On services: RpcSs

Service (registry key): Shockprf
Image path: System32\DRIVERS\Apsx86.sys
Image size: 100144
Image MD5: 0B3E58FDC92E944F875B72E150D6D85D
Start: 0
Type: 1
Error Control: 1

Service (registry key): sisagp
Display name: SIS AGP Bus Filter
Image path: \SystemRoot\system32\drivers\sisagp.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): SiSRaid2
Image path: \SystemRoot\system32\drivers\sisraid2.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): SiSRaid4
Image path: \SystemRoot\system32\drivers\sisraid4.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): slsvc
Display name: @%SystemRoot%\system32\SLsvc.exe,-101
Description: @%SystemRoot%\system32\SLsvc.exe,-100
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\SLsvc.exe
Image size: 2592256
Image MD5: 7610645679BB5994210D21A347E0C479
Start: 2
Type: 16
Error Control: 1
Depends On services: RpcSs

Service (registry key): SLUINotify
Display name: @%SystemRoot%\system32\SLUINotify.dll,-103
Description: @%SystemRoot%\system32\SLUINotify.dll,-102
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: SLSvc,netprofm,EventSystem

Service (registry key): Smb
Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50005
Description: @%SystemRoot%\system32\tcpipcfg.dll,-50006
Image path: system32\DRIVERS\smb.sys
Image size: 66048
Image MD5: AC0D90738ADB51A6FD12FF00874A2162
Start: 1
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): smihlp
Display name: SMI Helper Driver (smihlp)
Image path: \??\C:\Program Files\Common Files\ThinkVantage Fingerprint Software\Drivers\smihlp.sys
Image size: 11152
Image MD5: 30F3BD4007AC9916B18A79A4C2985A08
Start: 2
Type: 1
Error Control: 1

Service (registry key): SMSvcHost 3.0.0.0
Start: 0
Type: 0
Error Control: 0

Service (registry key): SNMPTRAP
Display name: @%SystemRoot%\system32\snmptrap.exe,-3
Description: @%SystemRoot%\system32\snmptrap.exe,-4
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\snmptrap.exe
Image size: 12800
Image MD5: 2A146A055B4401C16EE62D18B8E2A032
Start: 3
Type: 16
Error Control: 1

Service (registry key): sonypvs1
Display name: Sony Digital Imaging Video2
Image path: system32\DRIVERS\sonypvs1.sys
Image size: 102220
Image MD5: DFADFC2C86662F40759BF02ADD27D569
Start: 3
Type: 1
Error Control: 1

Service (registry key): spldr
Display name: Security Processor Loader Driver
Start: 0
Type: 1
Error Control: 3

Service (registry key): Spooler
Display name: @%systemroot%\system32\spoolsv.exe,-1
Description: @%systemroot%\system32\spoolsv.exe,-2
Object name: LocalSystem
Image path: %SystemRoot%\System32\spoolsv.exe
Image size: 124928
Image MD5: DA612EF2556776DF2630B68BF2D48935
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS,http

Service (registry key): srv
Image path: System32\DRIVERS\srv.sys
Image size: 290304
Image MD5: 2C677528B24D64D22886ECBE5CD97F20
Start: 3
Type: 2
Error Control: 1
Depends On services: srv2

Service (registry key): srv2
Display name: srv2
Description: Default SDDL for Windows Resource Protected file
Image path: System32\DRIVERS\srv2.sys
Image size: 129536
Image MD5: 382BAF4DCBD7648CED6C64A8A1E335B2
Start: 3
Type: 2
Error Control: 1
Depends On services: srvnet

Service (registry key): srvnet
Image path: System32\DRIVERS\srvnet.sys
Image size: 85504
Image MD5: F8E47A77E1690D8574962B69CB22BEB3
Start: 3
Type: 2
Error Control: 1

Service (registry key): SSDPSRV
Display name: @%systemroot%\system32\ssdpsrv.dll,-100
Description: @%systemroot%\system32\ssdpsrv.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: HTTP

Service (registry key): stisvc
Display name: @%SystemRoot%\system32\wiaservc.dll,-9
Description: @%SystemRoot%\system32\wiaservc.dll,-10
Object name: NT Authority\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 16
Error Control: 1
Depends On services: RpcSs,ShellHWDetection

Service (registry key): SUService
Display name: System Update
Object name: LocalSystem
Image path: "C:\Program Files\Lenovo\System Update\SUService.exe"
Image size: 13312
Image MD5: 4817C973D41F97F89C996276C9C6FC4B
Start: 2
Type: 272
Error Control: 1

Service (registry key): swenum
Display name: Software Bus Driver
Image path: system32\DRIVERS\swenum.sys
Image size: 12776
Image MD5: 1379BDB336F8158C176A465E30759F57
Start: 3
Type: 1
Error Control: 1

Service (registry key): swprv
Display name: @%SystemRoot%\System32\swprv.dll,-103
Description: @%SystemRoot%\System32\swprv.dll,-102
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k swprv
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): Symc8xx
Image path: \SystemRoot\system32\drivers\symc8xx.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Sym_hi
Image path: \SystemRoot\system32\drivers\sym_hi.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Sym_u3
Image path: \SystemRoot\system32\drivers\sym_u3.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): SynTP
Display name: Synaptics TouchPad Driver
Image path: system32\DRIVERS\SynTP.sys
Image size: 181176
Image MD5: 1F452F22DF0C00DD2529867E1EA0DC25
Start: 3
Type: 1
Error Control: 1

Service (registry key): SysMain
Display name: @%SystemRoot%\system32\sysmain.dll,-1000
Description: @%SystemRoot%\system32\sysmain.dll,-1001
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 0
Depends On services: rpcss,fileinfo

Service (registry key): TabletInputService
Display name: @%SystemRoot%\system32\TabSvc.dll,-100
Description: @%SystemRoot%\system32\TabSvc.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: PlugPlay,RpcSs

Service (registry key): TapiSrv
Display name: @%SystemRoot%\system32\tapisrv.dll,-10100
Description: @%SystemRoot%\system32\tapisrv.dll,-10101
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: PlugPlay,RpcSs

Service (registry key): TBS
Display name: @%SystemRoot%\system32\tbssvc.dll,-100
Description: @%SystemRoot%\system32\tbssvc.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): Tcpip
Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50003
Description: @%SystemRoot%\system32\tcpipcfg.dll,-50003
Image path: System32\drivers\tcpip.sys
Image size: 802816
Image MD5: D944522B048A5FEB7700B5170D3D9423
Start: 1
Type: 1
Error Control: 1

Service (registry key): Tcpip6
Display name: Microsoft IPv6 Protocol Driver
Description: Microsoft IPv6 Protocol Driver
Image path: system32\DRIVERS\tcpip.sys
Image size: 802816
Image MD5: D944522B048A5FEB7700B5170D3D9423
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): tcpipreg
Display name: TCP/IP Registry Compatibility
Description: Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality.
Image path: System32\drivers\tcpipreg.sys
Image size: 27648
Image MD5: 5CE0C4A7B12D0067DAD527D72B68C726
Start: 2
Type: 1
Error Control: 1
Depends On services: tcpip

Service (registry key): TcUsb
Display name: TC USB Kernel Driver
Image path: System32\Drivers\tcusb.sys
Image size: 39056
Image MD5: 009AEDE9FE870C247014450DC1E01D5D
Start: 3
Type: 1
Error Control: 1

Service (registry key): TDPIPE
Display name: TDPIPE
Image path: system32\drivers\tdpipe.sys
Image size: 17920
Image MD5: 964248AEF49C31FA6A93201A73FFAF50
Start: 3
Type: 1
Error Control: 1

Service (registry key): TDTCP
Display name: TDTCP
Image path: system32\drivers\tdtcp.sys
Image size: 28672
Image MD5: 7D2C1AE1648A60FCE4AA0F7982E419D3
Start: 3
Type: 1
Error Control: 1

Service (registry key): tdx
Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50004
Description: @%SystemRoot%\system32\tcpipcfg.dll,-50004
Image path: system32\DRIVERS\tdx.sys
Image size: 68096
Image MD5: AB4FDE8AF4A0270A46A001C08CBCE1C2
Start: 1
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): TermDD
Display name: Terminal Device Driver
Image path: system32\DRIVERS\termdd.sys
Image size: 50792
Image MD5: 2C549BD9DD091FBFAA0A2A48E82EC2FB
Start: 1
Type: 1
Error Control: 1

Service (registry key): TermService
Display name: @%SystemRoot%\System32\termsrv.dll,-268
Description: @%SystemRoot%\System32\termsrv.dll,-267
Object name: NT Authority\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS,TermDD

Service (registry key): Themes
Display name: @%SystemRoot%\System32\shsvcs.dll,-8192
Description: @%SystemRoot%\System32\shsvcs.dll,-8193
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): ThinkVantage Registry Monitor Service
Display name: ThinkVantage Registry Monitor Service
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe"
Image size: 644672
Image MD5: 0C84DA9176A4417739383B0CE70334D2
Start: 2
Type: 272
Error Control: 0

Service (registry key): THREADORDER
Display name: @%systemroot%\system32\mmcss.dll,-102
Description: @%systemroot%\system32\mmcss.dll,-103
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): TPDIGIMN
Description: APS Digitizer Activity Monitor
Image path: System32\DRIVERS\ApsHM86.sys
Image size: 19760
Image MD5: F39EEF399CC6726024011F7AEAB1A53A
Start: 0
Type: 1
Error Control: 1

Service (registry key): TPHDEXLGSVC
Display name: ThinkPad HDD APS Logging Service
Object name: LocalSystem
Image path: System32\TPHDEXLG.exe
Image size: 37168
Image MD5: 050E28B770D1CEC2E0F5CE4432F922CD
Start: 2
Type: 16
Error Control: 1

Service (registry key): TPHKSVC
Display name: On Screen Display
Object name: LocalSystem
Image path: C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
Image size: 55928
Image MD5: 422962C6EC9EF36817D8B0C32A8938EC
Start: 2
Type: 272
Error Control: 0
Depends On services: IBMPMSVC

Service (registry key): TPM
Display name: TPM
Description: TPM Driver
Image path: system32\drivers\tpm.sys
Image size: 41064
Image MD5: 6D9AD3534A9CF7E4B86C6EAE8BC335F6
Start: 3
Type: 1
Error Control: 1

Service (registry key): TPPWRIF
Image path: System32\drivers\Tppwr32v.sys
Image size: 12080
Image MD5: 1BD5719EF160E0AB739CD0FF3BA5E298
Start: 1
Type: 1
Error Control: 1

Service (registry key): TrkWks
Display name: @%SystemRoot%\system32\trkwks.dll,-1
Description: @%SystemRoot%\system32\trkwks.dll,-2
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): TrustedInstaller
Display name: @%SystemRoot%\servicing\TrustedInstaller.exe,-100
Description: @%SystemRoot%\servicing\TrustedInstaller.exe,-101
Object name: localSystem
Image path: %SystemRoot%\servicing\TrustedInstaller.exe
Image size: 26112
Image MD5: CD987375605E6F9C3230E99EDA9D9C6D
Start: 3
Type: 16
Error Control: 1
Depends On services: PlugPlay

Service (registry key): TSDDD
Start: 0
Type: 0
Error Control: 0

Service (registry key): TSSCoreService
Display name: TSS Core Service
Object name: NT AUTHORITY\NetworkService
Image path: "C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe"
Image size: 722496
Image MD5: D9D3D4008D2D7EB10C61D01B25A3A8CF
Start: 2
Type: 16
Error Control: 0

Service (registry key): tssecsrv
Display name: Terminal Services Security Filter Driver
Description: Terminal Services Security Filter Driver
Image path: System32\DRIVERS\tssecsrv.sys
Image size: 23552
Image MD5: 29F0ECA726F0D51F7E048BDB0B372F29
Start: 3
Type: 1
Error Control: 0

Service (registry key): tunmp
Display name: Microsoft Tun Miniport Adapter Driver
Image path: system32\DRIVERS\tunmp.sys
Image size: 15360
Image MD5: 80FC4AC81602C88E7D23618E6EFBA2C6
Start: 3
Type: 1
Error Control: 1

Service (registry key): tunnel
Display name: Microsoft IPv6 Tunnel Miniport Adapter Driver
Image path: system32\DRIVERS\tunnel.sys
Image size: 23040
Image MD5: 52DAA1FA3B5A40D6A6627B44C60A9B78
Start: 3
Type: 1
Error Control: 1

Service (registry key): TVT Backup Protection Service
Display name: TVT Backup Protection Service
Object name: LocalSystem
Image path: "C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe"
Image size: 569344
Image MD5: A99F64C0BF107B4D3E61DAC7F4BD3F26
Start: 2
Type: 272
Error Control: 0

Service (registry key): TVT Backup Service
Display name: TVT Backup Service
Object name: LocalSystem
Image path: "C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe"
Image size: 950272
Image MD5: E0A5BB730F72B8089B660DB9155C0389
Start: 2
Type: 272
Error Control: 0

Service (registry key): TVT Scheduler
Display name: TVT Scheduler
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe"
Image size: 1118208
Image MD5: 354A569D2F3AB9A4E2F061B373059590
Start: 2
Type: 272
Error Control: 0

Service (registry key): tvtfilter
Display name: tvtfilter
Description: tvtfilter Filter Driver
Image path: system32\DRIVERS\tvtfilter.sys
Image size: 33536
Image MD5: 49258A02A1E8D304ED88B0F1C56B1738
Start: 2
Type: 2
Error Control: 1

Service (registry key): TVTI2C
Display name: Lenovo SM bus driver
Image path: system32\DRIVERS\Tvti2c.sys
Image size: 35264
Image MD5: C254BFF0A928EA7D5CCDC2522D56FD01
Start: 3
Type: 1
Error Control: 1

Service (registry key): tvtnetwk
Display name: tvtnetwk
Object name: LocalSystem
Image path: C:\Program Files\Lenovo\Rescue and Recovery\ADM\IUService.exe
Image size: 45056
Image MD5: 2E72C66682E9274C97AE3F5A57C2FA33
Start: 2
Type: 16
Error Control: 1

Service (registry key): uagp35
Display name: Microsoft AGPv3.5 Filter
Image path: \SystemRoot\system32\drivers\uagp35.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): udfs
Display name: udfs
Description: Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)
Image path: system32\DRIVERS\udfs.sys
Image size: 225280
Image MD5: 6348DA98707CEDA8A0DFB05820E17732
Start: 4
Type: 2
Error Control: 1

Service (registry key): UGatherer
Start: 0
Type: 0
Error Control: 0

Service (registry key): UGTHRSVC
Start: 0
Type: 0
Error Control: 0

Service (registry key): UI0Detect
Display name: @%SystemRoot%\system32\ui0detect.exe,-101
Description: @%SystemRoot%\system32\ui0detect.exe,-102
Object name: LocalSystem
Image path: %SystemRoot%\system32\UI0Detect.exe
Image size: 35840
Image MD5: 24A333F4F14DCFB6FF6D5A1B9E5D79DD
Start: 3
Type: 272
Error Control: 1

Service (registry key): uliagpkx
Display name: Uli AGP Bus Filter
Image path: \SystemRoot\system32\drivers\uliagpkx.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): uliahci
Image path: \SystemRoot\system32\drivers\uliahci.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): UlSata
Image path: \SystemRoot\system32\drivers\ulsata.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): ulsata2
Image path: \SystemRoot\system32\drivers\ulsata2.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): umbus
Display name: UMBus Enumerator Driver
Image path: system32\DRIVERS\umbus.sys
Image size: 34816
Image MD5: 3FB78F1D1DD86D87BECECD9DFFA24DD9
Start: 3
Type: 1
Error Control: 1

Service (registry key): UmRdpService
Display name: @%SystemRoot%\system32\umrdp.dll,-1000
Description: @%SystemRoot%\system32\umrdp.dll,-1001
Object name: localSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: TermService

Service (registry key): upnphost
Display name: @%systemroot%\system32\upnphost.dll,-213
Description: @%systemroot%\system32\upnphost.dll,-214
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: SSDPSRV,HTTP

Service (registry key): usb
Start: 0
Type: 0
Error Control: 0

Service (registry key): usbaudio
Display name: USB Audio Driver (WDM)
Image path: system32\drivers\usbaudio.sys
Image size: 71552
Image MD5: F6BF998AE33E3FB6C7D27F0560F1173F
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbccgp
Display name: Microsoft USB Generic Parent Driver
Image path: system32\DRIVERS\usbccgp.sys
Image size: 73216
Image MD5: 8BD3AE150D97BA4E633C6C5C51B41AE1
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbcir
Display name: eHome Infrared Receiver (USBCIR)
Image path: \SystemRoot\system32\drivers\usbcir.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): usbehci
Display name: Microsoft USB 2.0 Enhanced Host Controller Miniport Driver
Image path: system32\DRIVERS\usbehci.sys
Image size: 38400
Image MD5: 63FE924D8A1113C3BA6750693FBEC7D3
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbhub
Display name: USB2 Enabled Hub
Image path: system32\DRIVERS\usbhub.sys
Image size: 191488
Image MD5: 5EDEC5510592C905E91817707DCE62A2
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbohci
Display name: Microsoft USB Open Host Controller Miniport Driver
Image path: \SystemRoot\system32\drivers\usbohci.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): usbprint
Display name: Microsoft USB PRINTER Class
Image path: system32\DRIVERS\usbprint.sys
Image size: 18944
Image MD5: B51E52ACF758BE00EF3A58EA452FE360
Start: 3
Type: 1
Error Control: 1

Service (registry key): USBSTOR
Display name: USB Mass Storage Driver
Image path: system32\DRIVERS\USBSTOR.SYS
Image size: 54784
Image MD5: FDBAABF07244C60B0F4E0A6E71A107C6
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbuhci
Display name: Microsoft USB Universal Host Controller Miniport Driver
Image path: system32\DRIVERS\usbuhci.sys
Image size: 22528
Image MD5: 325DBBACB8A36AF9988CCF40EAC228CC
Start: 3
Type: 1
Error Control: 1

Service (registry key): usnjsvc
Display name: Messenger Sharing Folders USN Journal Reader service
Description: Service installed by Messenger to enable sharing scenarios
Object name: LocalSystem
Image path: "C:\Program Files\MSN Messenger\usnsvc.exe"
Image size: 97136
Image MD5: C5B70A6AA947667CE0E5FC84A05EC8B6
Start: 3
Type: 16
Error Control: 1
Depends On services: rpcss,eventlog

Service (registry key): UxSms
Display name: @%SystemRoot%\system32\dwm.exe,-2000
Description: @%SystemRoot%\system32\dwm.exe,-2001
Object name: localSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): vds
Display name: @%SystemRoot%\system32\vds.exe,-100
Description: @%SystemRoot%\system32\vds.exe,-101
Object name: LocalSystem
Image path: %SystemRoot%\System32\vds.exe
Image size: 392704
Image MD5: C9D0BAFEE0D0A2681F048CA61BC0DA96
Start: 3
Type: 16
Error Control: 1
Depends On services: RpcSs,PlugPlay

Service (registry key): vga
Image path: system32\DRIVERS\vgapnp.sys
Image size: 26112
Image MD5: 7D92BE0028ECDEDEC74617009084B5EF
Start: 3
Type: 1
Error Control: 0

Service (registry key): VgaSave
Image path: \SystemRoot\System32\drivers\vga.sys
Start: 1
Type: 1
Error Control: 0

Service (registry key): viaagp
Display name: VIA AGP Bus Filter
Image path: \SystemRoot\system32\drivers\viaagp.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): ViaC7
Display name: VIA C7 Processor Driver
Image path: \SystemRoot\system32\drivers\viac7.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): viaide
Image path: \SystemRoot\system32\drivers\viaide.sys
Start: 4
Type: 1
Error Control: 3

Service (registry key): vmm
Display name: Virtual Machine Monitor
Image path: \??\C:\Windows\system32\Drivers\vmm.sys
Image size: 232816
Image MD5: 590C7A3A1133E51A7E1CEF67366E75AF
Start: 1
Type: 1
Error Control: 1

Service (registry key): volmgr
Display name: Volume Manager Driver
Image path: system32\drivers\volmgr.sys
Image size: 50280
Image MD5: 103E84C95832D0ED93507997CC7B54E8
Start: 0
Type: 1
Error Control: 3

Service (registry key): volmgrx
Display name: Dynamic Volume Manager
Description: Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks
Image path: System32\drivers\volmgrx.sys
Image size: 290408
Image MD5: 294DA8D3F965F6A8DB934A83C7B461FF
Start: 0
Type: 1
Error Control: 3

Service (registry key): volsnap
Display name: Storage volumes
Image path: system32\drivers\volsnap.sys
Image size: 208488
Image MD5: 11EF6C1CAEF76B685233450A126125D6
Start: 0
Type: 1
Error Control: 3

Service (registry key): VPCNetS2
Display name: Virtual Machine Network Services Driver
Image path: system32\DRIVERS\VMNetSrv.sys
Image size: 59280
Image MD5: F96A678DEBDCCB0B4BB7F38CB2580589
Start: 3
Type: 1
Error Control: 1

Service (registry key): vsmraid
Image path: \SystemRoot\system32\drivers\vsmraid.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): VSS
Display name: @%systemroot%\system32\vssvc.exe,-102
Description: @%systemroot%\system32\vssvc.exe,-101
Object name: LocalSystem
Image path: %systemroot%\system32\vssvc.exe
Image size: 924160
Image MD5: E0E29D9EF2524ABD11749C7C2FD7F607
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): VXD
Start: 0
Type: 0
Error Control: 0

Service (registry key): W32Time
Display name: @%SystemRoot%\system32\w32time.dll,-200
Description: @%SystemRoot%\system32\w32time.dll,-201
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1

Service (registry key): W3SVC
Start: 0
Type: 0
Error Control: 0

Service (registry key): WacomPen
Display name: Wacom Serial Pen HID Driver
Image path: \SystemRoot\system32\drivers\wacompen.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Wanarp
Display name: Remote Access IP ARP Driver
Description: Remote Access IP ARP Driver
Image path: system32\DRIVERS\wanarp.sys
Image size: 61952
Image MD5: 6E1A5BE9A0605F3D932FF35FBA2B22B3
Start: 3
Type: 1
Error Control: 1

Service (registry key): Wanarpv6
Display name: Remote Access IPv6 ARP Driver
Description: Remote Access IPv6 ARP Driver
Image path: system32\DRIVERS\wanarp.sys
Image size: 61952
Image MD5: 6E1A5BE9A0605F3D932FF35FBA2B22B3
Start: 1
Type: 1
Error Control: 1

Service (registry key): wbengine
Display name: @%systemroot%\system32\wbengine.exe,-104
Description: @%systemroot%\system32\wbengine.exe,-105
Object name: localSystem
Image path: "%systemroot%\system32\wbengine.exe"
Image size: 562176
Image MD5: 6D2F099D4CE88777E46CB1808C87B132
Start: 3
Type: 16
Error Control: 1

Service (registry key): WcesComm
Display name: @%windir%\WindowsMobile\wcescomm.dll,-40079
Description: @%windir%\WindowsMobile\wcescomm.dll,-40080
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k WindowsMobile
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RapiMgr

Service (registry key): wcncsvc
Display name: @%SystemRoot%\system32\wcncsvc.dll,-3
Description: @%SystemRoot%\system32\wcncsvc.dll,-4
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: rpcss

Service (registry key): WcsPlugInService
Display name: @%SystemRoot%\system32\WcsPlugInService.dll,-200
Description: @%SystemRoot%\system32\WcsPlugInService.dll,-201
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k wcssvc
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): Wd
Display name: Microsoft Watchdog Timer Driver
Image path: \SystemRoot\system32\drivers\wd.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): Wdf01000
Display name: Kernel Mode Driver Frameworks service
Image path: system32\drivers\Wdf01000.sys
Image size: 492648
Image MD5: 5DFDBD5EF13E4D95BE6FC108E2ED4A67
Start: 0
Type: 1
Error Control: 1

Service (registry key): WdiServiceHost
Display name: @%systemroot%\system32\wdi.dll,-502
Description: @%systemroot%\system32\wdi.dll,-503
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k wdisvc
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): WdiSystemHost
Display name: @%systemroot%\system32\wdi.dll,-500
Description: @%systemroot%\system32\wdi.dll,-501
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): WebClient
Display name: @%systemroot%\system32\webclnt.dll,-100
Description: @%systemroot%\system32\webclnt.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: MRxDAV

Service (registry key): Wecsvc
Display name: @%SystemRoot%\system32\wecsvc.dll,-200
Description: @%SystemRoot%\system32\wecsvc.dll,-201
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): wercplsupport
Display name: @%SystemRoot%\System32\wercplsupport.dll,-101
Description: @%SystemRoot%\System32\wercplsupport.dll,-100
Object name: localSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1

Service (registry key): WerSvc
Display name: @%SystemRoot%\System32\wersvc.dll,-100
Description: @%SystemRoot%\System32\wersvc.dll,-101
Object name: localSystem
Image path: %SystemRoot%\System32\svchost.exe -k WerSvcGroup
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 0

Service (registry key): winachsf
Image path: system32\DRIVERS\VSTCNXT3.SYS
Image size: 654336
Image MD5: 5C7BDCF5864DB00323FE2D90FA26A8A2
Start: 3
Type: 1
Error Control: 0

Service (registry key): WinDefend
Display name: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103
Description: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-3068
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k secsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): Windows Workflow Foundation 3.0.0.0
Start: 0
Type: 0
Error Control: 0

Service (registry key): WinHttpAutoProxySvc
Display name: @%SystemRoot%\system32\winhttp.dll,-100
Description: @%SystemRoot%\system32\winhttp.dll,-101
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: Dhcp

Service (registry key): Winmgmt
Display name: @%Systemroot%\system32\wbem\wmisvc.dll,-205
Description: @%Systemroot%\system32\wbem\wmisvc.dll,-204
Object name: localSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 0
Depends On services: RPCSS

Service (registry key): WinRM
Display name: @%Systemroot%\system32\wsmsvc.dll,-101
Description: @%Systemroot%\system32\wsmsvc.dll,-102
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS,HTTP

Service (registry key): Winsock
Start: 3
Type: 4
Error Control: 1

Service (registry key): WinSock2
Start: 0
Type: 0
Error Control: 0

Service (registry key): winusb
Display name: WinUsb Driver
Image path: system32\DRIVERS\winusb.sys
Image size: 31616
Image MD5: 086D2E78EECD6195667282ADC6CA109F
Start: 3
Type: 1
Error Control: 1

Service (registry key): Wlansvc
Display name: @%SystemRoot%\System32\wlansvc.dll,-257
Description: @%SystemRoot%\System32\wlansvc.dll,-258
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: nativewifip,RpcSs,Ndisuio,Eaphost

Service (registry key): WmiAcpi
Display name: Microsoft Windows Management Interface for ACPI
Image path: \SystemRoot\system32\drivers\wmiacpi.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): WmiApRpl
Start: 0
Type: 0
Error Control: 0

Service (registry key): wmiApSrv
Display name: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110
Description: @%Systemroot%\system32\wbem\wmiapsrv.exe,-111
Object name: localSystem
Image path: %systemroot%\system32\wbem\WmiApSrv.exe
Image size: 137216
Image MD5: A279323BEE5FFFAFDA222910BCE92132
Start: 3
Type: 16
Error Control: 1

Service (registry key): WMPNetworkSvc
Display name: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101
Description: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-102
Object name: NT AUTHORITY\NetworkService
Image path: "%ProgramFiles%\Windows Media Player\wmpnetwk.exe"
Image size: 895488
Image MD5: ACB2E63D50157E3EA7140F29D9E76A48
Start: 3
Type: 16
Error Control: 1
Depends On services: UPnPHost,http

Service (registry key): WPDBusEnum
Display name: @%SystemRoot%\system32\wpdbusenum.dll,-100
Description: @%SystemRoot%\system32\wpdbusenum.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): ws2ifsl
Display name: Winsock IFS driver
Description: Winsock IFS driver
Image path: \SystemRoot\system32\drivers\ws2ifsl.sys
Start: 4
Type: 1
Error Control: 1

Service (registry key): wscsvc
Display name: @%SystemRoot%\System32\wscsvc.dll,-200
Description: @%SystemRoot%\System32\wscsvc.dll,-201
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,WinMgmt

Service (registry key): WSearch
Display name: @%systemroot%\system32\SearchIndexer.exe,-103
Description: @%systemroot%\system32\SearchIndexer.exe,-104
Object name: LocalSystem
Image path: %systemroot%\system32\SearchIndexer.exe /Embedding
Image size: 287744
Image MD5: 5DE40982E3AE45DC00586A93637B351B
Start: 2
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): WSearchIdxPi
Start: 0
Type: 0
Error Control: 0

Service (registry key): wuauserv
Display name: @%systemroot%\system32\wuaueng.dll,-105
Description: @%systemroot%\system32\wuaueng.dll,-106
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: rpcss

Service (registry key): WUDFRd
Image path: system32\DRIVERS\WUDFRd.sys
Image size: 82560
Image MD5: A2AAFCC8A204736296D937C7C545B53F
Start: 3
Type: 1
Error Control: 1

Service (registry key): wudfsvc
Display name: @%SystemRoot%\system32\wudfsvc.dll,-1000
Description: @%SystemRoot%\system32\wudfsvc.dll,-1001
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
Image size: 22016
Image MD5: 10DA15933D582D2FEDCF705EFE394B09
Start: 2
Type: 32
Error Control: 1
Depends On services: PlugPlay

Service (registry key): xmlprov
Start: 0
Type: 0
Error Control: 0

Service (registry key): {C7AE54FA-7BAE-44A4-959E-721F6C24D23E}
Start: 0
Type: 0
Error Control: 0

Service (registry key): {D904EF20-30E3-411A-AA66-3860F082052F}
Start: 0
Type: 0
Error Control: 0

Service (registry key): {EAC55B56-37DA-40CF-B599-E0B128D85944}
Start: 0
Type: 0
Error Control: 0





Any help gratefully appreciated.

Darren

BC AdBot (Login to Remove)

 


#2 Whisperer

Whisperer

  • Members
  • 405 posts
  • OFFLINE
  •  
  • Local time:12:01 PM

Posted 14 June 2007 - 09:06 AM

Hi Darren and welcome to the Bleeping Computer forums. My name is Whisperer and I will be helping you with your problem. I am currently a Trainee in Malware removal and, as such, ALL of my fixes will be checked by malware experts. I am sorry for the delay in answering your problem but things are pretty hectic in the anti-malware world. Thank you for the Spybot log and if you still need help then please read on.
  • I like to do an initial diagnosis using HijackThis so please download the latest version of HijackThis at this link Once downloaded please run the file which will install an up-to-date copy in the following directory C:\HijackThis and also place a shortcut on your desktop.
  • If you have not done so already, then please do the initial cleanup steps in the following instructions: Preparation Guide For Use Before Posting a HijackThis Log
  • To assist me in any cleanup, I would like you to produce a list of installed programs; to do this open your HijackThis
    • Click on Open the Misc Tools section or Config… button, depending on how you are set up.
    • If you used the Config... option then click the Misc Tools tab
    • Select Open Uninstall Manager , a list of your installed programs will be displayed.
    • Select the Save List… button and save the file to your desktop.
  • Please click the Add Reply button and post in your reply to this thread
    • A copy of this list
    • A HijackThis log
GT :thumbsup:

#3 illukka

illukka

    retar.. erm retired!


  • Security Colleague
  • 2,858 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Pits Of Hell
  • Local time:01:01 PM

Posted 23 June 2007 - 12:00 PM

due to lack of feedback to a helper--> this topic is now closed
to get it reopened PM a staff member with the address of this thread.
this applies to the topic starter only, everyone else with similar problems start a new topic.

thank you Whisperer :thumbsup:
To Ride, Shoot Straight And Speak The Truth

a retired malware fighter/teacher/advisor




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users