Hi, My PC running very slow, Excel & Outlook Express not working, MSN logs in itself upon start up, cannot download anything, & IE is not working properly. Is it time to format? Oh no.. Logfile of HijackThis v1.99.1 Scan saved at 5:14:34 PM, on 3/2/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Spyware Doctor\sdhelp.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE C:\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k O4 - HKLM\..\Run: [PrU Async Service] C:\WINDOWS\system32\pruas.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{8141C4F5-9474-4946-B7DB-218FBCA21BFB}: NameServer = 202.188.0.133,202.188.1.5 O17 - HKLM\System\CS1\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\ O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
Well, whenever I have a buttload of errors like that, I just reinstall the whole OS. Back up what you need onto disks and format and reinstall. Its a bitch and a half but its well worth it. You just need to look for a recovery disk or some sort of OS disk, also dont forget about your drivers you can prolly find them on the manufactures website.
Hello, I don't think you should reformat yet, however I looked at your log and found some things that werernt serious, but unecessary. Here they are: O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k O4 - HKLM\..\Run: [PrU Async Service] C:\WINDOWS\system32\pruas.exe O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm Do you have Ad-Aware SE Personel and Spybot Search&Destroy? If not, please download them both, and then run then individually in safe mode. Also, please download CCleaner from this site: www.majorgeeks.com Then, run that tool in safe mode too. Post your HJT log when you're done. Thanks
Hi Waymon3x6, I have followed your steps accordingly. Here's the reports. Ad-Aware SE Build 1.06r1 Logfile Created on:Wednesday, March 07, 2007 9:12:37 AM Created with Ad-Aware SE Personal, free for private use. Using definitions file:SE1R157 05.03.2007 »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» References detected during the scan: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» MRU List(TAC index:0):41 total references »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Ad-Aware SE Settings =========================== Set : Search for negligible risk entries Set : Safe mode (always request confirmation) Set : Scan active processes Set : Scan registry Set : Deep-scan registry Set : Scan my IE Favorites for banned URLs Set : Scan my Hosts file Extended Ad-Aware SE Settings =========================== Set : Unload recognized processes & modules during scan Set : Scan registry for all users instead of current user only Set : Always try to unload modules before deletion Set : During removal, unload Explorer and IE if necessary Set : Let Windows remove files in use at next reboot Set : Delete quarantined objects after restoring Set : Include basic Ad-Aware settings in log file Set : Include additional Ad-Aware settings in log file Set : Include reference summary in log file Set : Include alternate data stream details in log file Set : Play sound at scan completion if scan locates critical objects 3-7-2007 9:12:37 AM - Scan started. (Full System Scan) MRU List Object Recognized! Location: : C:\Documents and Settings\User\Application Data\microsoft\office\recent Description : list of recently opened documents using microsoft office MRU List Object Recognized! Location: : C:\Documents and Settings\User\recent Description : list of recently opened documents MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct3d MRU List Object Recognized! Location: : software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct3d MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct X MRU List Object Recognized! Location: : software\microsoft\direct3d\mostrecentapplication Description : most recent application to use microsoft direct X MRU List Object Recognized! Location: : software\microsoft\directdraw\mostrecentapplication Description : most recent application to use microsoft directdraw MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\directinput\mostrecentapplication Description : most recent application to use microsoft directinput MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\directinput\mostrecentapplication Description : most recent application to use microsoft directinput MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\internet explorer Description : last download directory used in microsoft internet explorer MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\internet explorer\main Description : last save directory used in microsoft internet explorer MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\internet explorer\typedurls Description : list of recently entered addresses in microsoft internet explorer MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\medialibraryui Description : last selected node in the microsoft windows media player media library MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\player\settings Description : last save as directory used in jasc paint shop pro MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\player\settings Description : last open directory used in jasc paint shop pro MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\preferences Description : last playlist index loaded in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\preferences Description : last playlist loaded in microsoft windows media player MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\microsoft management console\recent file list Description : list of recent snap-ins used in the microsoft management console MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\common\general Description : list of recently used symbols in microsoft office MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\common\open find\microsoft word\settings\open\file name mru Description : list of recent documents opened by microsoft word MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\common\open find\microsoft word\settings\save as\file name mru Description : list of recent documents saved by microsoft word MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\excel\recent files Description : list of recent files used by microsoft excel MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\excel\recent templates Description : list of recent templates used by microsoft excel MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\word\recent templates Description : list of recent templates used by microsoft word MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\11.0\powerpoint\recent file list Description : list of recent files used by microsoft powerpoint MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\search assistant\acmru Description : list of recent search terms used with the search assistant MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\applets\paint\recent file list Description : list of files recently opened using microsoft paint MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\applets\regedit Description : last key accessed using the microsoft registry editor MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\applets\wordpad\recent file list Description : list of recent files opened using wordpad MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru Description : list of recent programs opened MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru Description : list of recently saved files, stored according to file extension MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\recentdocs Description : list of recent documents opened MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\runmru Description : mru list for items opened in start | run MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\nico mak computing\winzip\filemenu Description : winzip recently used archives MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\realnetworks\realplayer\6.0\preferences Description : list of recent skins in realplayer MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\realnetworks\realplayer\6.0\preferences Description : list of recent clips in realplayer MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\realnetworks\realplayer\6.0\preferences Description : last login time in realplayer MRU List Object Recognized! Location: : .DEFAULT\software\microsoft\windows media\wmsdk\general Description : windows media sdk MRU List Object Recognized! Location: : S-1-5-18\software\microsoft\windows media\wmsdk\general Description : windows media sdk MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows media\wmsdk\general Description : windows media sdk MRU List Object Recognized! Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\winrar\dialogedithistory\extrpath Description : winrar "extract-to" history Listing running processes »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» #:1 [smss.exe] FilePath : \SystemRoot\System32\ ProcessID : 136 ThreadCreationTime : 3-7-2007 1:11:08 AM BasePriority : Normal #:2 [winlogon.exe] FilePath : \??\C:\WINDOWS\system32\ ProcessID : 212 ThreadCreationTime : 3-7-2007 1:11:19 AM BasePriority : High #:3 [services.exe] FilePath : C:\WINDOWS\system32\ ProcessID : 256 ThreadCreationTime : 3-7-2007 1:11:22 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Services and Controller app InternalName : services.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : services.exe #:4 [lsass.exe] FilePath : C:\WINDOWS\system32\ ProcessID : 268 ThreadCreationTime : 3-7-2007 1:11:22 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : LSA Shell (Export Version) InternalName : lsass.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : lsass.exe #:5 [svchost.exe] FilePath : C:\WINDOWS\system32\ ProcessID : 416 ThreadCreationTime : 3-7-2007 1:11:25 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:6 [svchost.exe] FilePath : C:\WINDOWS\system32\ ProcessID : 524 ThreadCreationTime : 3-7-2007 1:11:27 AM BasePriority : Normal FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 5.1.2600.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Generic Host Process for Win32 Services InternalName : svchost.exe LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : svchost.exe #:7 [explorer.exe] FilePath : C:\WINDOWS\ ProcessID : 744 ThreadCreationTime : 3-7-2007 1:11:45 AM BasePriority : Normal FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158) ProductVersion : 6.00.2900.2180 ProductName : Microsoft® Windows® Operating System CompanyName : Microsoft Corporation FileDescription : Windows Explorer InternalName : explorer LegalCopyright : © Microsoft Corporation. All rights reserved. OriginalFilename : EXPLORER.EXE #:8 [ad-aware.exe] FilePath : C:\Program Files\Lavasoft\Ad-Aware SE Personal\ ProcessID : 844 ThreadCreationTime : 3-7-2007 1:12:03 AM BasePriority : Normal FileVersion : 6.2.0.236 ProductVersion : SE 106 ProductName : Lavasoft Ad-Aware SE CompanyName : Lavasoft Sweden FileDescription : Ad-Aware SE Core application InternalName : Ad-Aware.exe LegalCopyright : Copyright © Lavasoft AB Sweden OriginalFilename : Ad-Aware.exe Comments : All Rights Reserved Memory scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 41 Started registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Registry Scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 41 Started deep registry scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Deep registry scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 41 Started Tracking Cookie scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Tracking cookie scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 41 Deep scanning and examining files (C »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for C:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 41 Deep scanning and examining files (D »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Disk Scan Result for D:\ »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 41 Performing conditional scans... »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Conditional scan result: »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» New critical objects: 0 Objects found so far: 41 9:19:27 AM Scan Complete Summary Of This Scan »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» Total scanning time:00:06:49.669 Objects scanned:105517 Objects identified:0 Objects ignored:0 New critical objects:0
Spybot - Search & Destroy --- Search result list --- Nat: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Desktop\host WinClean: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\Temp\installer.exe Smitfraud-C.: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\WindowsSubVersion BraveSentry: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program Files\BraveSentry\BraveSentry.exe Win32.Small.dp: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Security\host Nurech: User settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\upnp.exe --- Spybot - Search & Destroy version: 1.4 (build: 20050523) --- 2007-03-07 unins000.exe (51.41.0.0) 2005-05-31 blindman.exe (1.0.0.1) 2005-05-31 SpybotSD.exe (1.4.0.3) 2005-05-31 TeaTimer.exe (1.4.0.2) 2005-05-31 Update.exe (1.4.0.0) 2005-05-31 aports.dll (2.1.0.0) 2005-05-31 borlndmm.dll (7.0.4.453) 2005-05-31 delphimm.dll (7.0.4.453) 2005-05-31 SDHelper.dll (1.4.0.0) 2005-05-31 UnzDll.dll (1.73.1.1) 2005-05-31 ZipDll.dll (1.73.2.0) 2007-01-15 advcheck.dll (1.2.1.0) 2007-01-02 Tools.dll (2.0.1.0) 2006-12-08 Includes\Dialer.sbi (*) 2007-02-07 Includes\Hijackers.sbi (*) 2006-10-27 Includes\Keyloggers.sbi (*) 2007-02-14 Includes\Malware.sbi (*) 2007-01-19 Includes\PUPS.sbi (*) 2006-12-08 Includes\Security.sbi (*) 2007-02-02 Includes\Spybots.sbi (*) 2007-02-14 Includes\Trojans.sbi (*) 2007-02-28 Includes\Cookies.sbi (*) 2007-02-28 Includes\Revision.sbi (*) 2005-02-17 Includes\Tracks.uti 2007-02-28 Includes\TrojansC.sbi (*) 2007-02-28 Includes\SpybotsC.sbi (*) 2007-02-28 Includes\SecurityC.sbi (*) 2007-02-28 Includes\PUPSC.sbi (*) 2007-02-28 Includes\MalwareC.sbi (*) 2007-02-28 Includes\KeyloggersC.sbi (*) 2007-02-28 Includes\HijackersC.sbi (*) 2007-02-28 Includes\DialerC.sbi (*) --- System information --- Windows XP (Build: 2600) Service Pack 2 / Windows Media Player 9: Security Update for Windows Media Player 9 (KB917734) --- Startup entries list --- Located: HK_LM:Run, AVP command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe size: 155751 MD5: 250f20c64fd9eaa0f2d7844bca92e741 Located: HK_LM:Run, RemoteControl command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe size: 32768 MD5: 915a106a2fb87292cef0ad4f36adf313 Located: HK_CU:Run, ctfmon.exe command: C:\WINDOWS\system32\ctfmon.exe file: C:\WINDOWS\system32\ctfmon.exe size: 15360 MD5: 24232996a38c0b0cf151c2140ae29fc8 Located: HK_CU:Run, Spyware Doctor command: "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q file: C:\Program Files\Spyware Doctor\swdoctor.exe size: 3375104 MD5: 53d577860f1b4b0fbb8b8770bad60628 Located: System.ini, crypt32chain command: crypt32.dll file: crypt32.dll Located: System.ini, cryptnet command: cryptnet.dll file: cryptnet.dll Located: System.ini, cscdll command: cscdll.dll file: cscdll.dll Located: System.ini, klogon command: C:\WINDOWS\system32\klogon.dll file: C:\WINDOWS\system32\klogon.dll size: 94314 MD5: 3f97f0f4a9a6d21a1a496c1d8fe84e4e Located: System.ini, ScCertProp command: wlnotify.dll file: wlnotify.dll Located: System.ini, Schedule command: wlnotify.dll file: wlnotify.dll Located: System.ini, sclgntfy command: sclgntfy.dll file: sclgntfy.dll Located: System.ini, SensLogn command: WlNotify.dll file: WlNotify.dll Located: System.ini, termsrv command: wlnotify.dll file: wlnotify.dll Located: System.ini, WgaLogon command: file: Located: System.ini, wlballoon command: wlnotify.dll file: wlnotify.dll --- Browser helper object list --- {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} (BitComet ClickCapture) BHO name: BitComet ClickCapture CLSID name: BitComet Helper Path: C:\Program Files\BitComet\tools\ Long name: BitCometBHO.dll Short name: BITCOM~2.DLL Date (created): 1/11/2007 11:05:28 PM Date (last access): 3/7/2007 Date (last write): 1/11/2007 11:05:28 PM Filesize: 386624 Attributes: archive MD5: 8B148EFE8B203108FB3064AF38EF8C13 CRC32: DF87F475 {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} (Yahoo! IE Services Button) BHO name: CLSID name: Yahoo! IE Services Button Path: C:\Program Files\Yahoo!\Common\ Long name: yiesrvc.dll Short name: Date (created): 1/12/2007 9:39:38 AM Date (last access): 3/6/2007 Date (last write): 10/31/2006 3:29:16 PM Filesize: 198136 Attributes: archive MD5: F8981F09E8DA4FDB7F6B6E2B5361AEAE CRC32: 2CDBBB6C Version: 2006.10.31.3 --- ActiveX list --- --- Process list --- PID: 0 ( 0) [System] PID: 136 ( 4) \SystemRoot\System32\smss.exe PID: 212 ( 136) \??\C:\WINDOWS\system32\winlogon.exe PID: 256 ( 212) C:\WINDOWS\system32\services.exe size: 108032 MD5: C6CE6EEC82F187615D1002BB3BB50ED4 PID: 268 ( 212) C:\WINDOWS\system32\lsass.exe size: 13312 MD5: 84885F9B82F4D55C6146EBF6065D75D2 PID: 416 ( 256) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 524 ( 256) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 744 ( 728) C:\WINDOWS\Explorer.EXE size: 1032192 MD5: A0732187050030AE399B241436565E64 PID: 1056 ( 744) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe size: 4393096 MD5: 09CA174A605B480318731E691DC98539 PID: 4 ( 0) System PID: 188 ( 136) csrss.exe PID: 464 ( 256) svchost.exe --- Browser start & search pages list --- Spybot - Search & Destroy browser pages report, 3/7/2007 9:37:54 AM HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page C:\WINDOWS\system32\blank.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page http://www.yahoo.com/ HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@ http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page %SystemRoot%\system32\blank.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page about:blank HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm --- Winsock Layered Service Provider list --- --- Uninstall list --- Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal) uninstall cmd: C:\PROGRA~1\LAVASOFT\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\LAVASOFT\AD-AWA~1\INSTALL.LOG publisher: Lavasoft help link: http://www.lavasoft.com (AddressBook) BitComet 0.82 0.82 (BitComet) uninstall cmd: C:\Program Files\BitComet\uninst.exe publisher: ~RnySmile~ (Branding) CCleaner (remove only) (CCleaner) uninstall cmd: "C:\Program Files\CCleaner\uninst.exe" Cdex version 1.30 (CDex_is1) uninstall cmd: "C:\Program Files\CDex130\unins000.exe" (Connection Manager) (DirectAnimation) (DirectDrawEx) Download Accelerator Plus (DAP) 8000 (Build 135) (Download Accelerator Plus (DAP)) uninstall cmd: C:\PROGRA~1\DAP\DAPREMOVE.EXE publisher: Speedbit Ltd. contact: support@downloadaccelerator.com help link: http://redir.speedbit.com/redir.asp?ID=7066 (DXM_Runtime) (Fontcore) FreeRIP v2.951 2.951 (FreeRIP_is1) install location: C:\Program Files\FreeRIP\ uninstall cmd: "C:\Program Files\FreeRIP\unins000.exe" publisher: MGShareware HijackThis 1.99.1 1.99.1 (HijackThis) uninstall cmd: \\DSP1\My Completed Downloads\HijackThis.exe /uninstall publisher: Soeperman Enterprises Ltd. (ICW) (IE40) (IE4Data) (IE5BAKEX) (IEData) 5.2.4.2528 (IncrediMail) publisher: IncrediMail Ltd. help link: http://www.incredimail.com/english/help/index.html (InstallShield Uninstall Information) iTunes 4.7.1.30 (InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6}) version: 67567617 version (major): 4 version (minor): 7 estimated size: 13607 install date: 20051207 install location: C:\Program Files\iTunes\ install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\ uninstall cmd: C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3CB41017-F5CA-4C56-934C-ED02156251E6} publisher: Apple Computer, Inc. contact: AppleCare Support help link: http://www.info.apple.com/ help telephone: 1-800-275-2273 Kaspersky Anti-Virus 6.0 6.0.1.411 (InstallWIX_{75193929-9A52-4CA4-98DE-8C7296940920}) uninstall cmd: MsiExec.exe /I{75193929-9A52-4CA4-98DE-8C7296940920} publisher: Kaspersky Lab help link: http://www.kaspersky.com/support.asp (KB884016) (KB893803) Macromedia Shockwave Player 10.1.0.11 (Macromedia Shockwave Player) uninstall cmd: C:\WINDOWS\system32\MACROMED\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\MACROMED\SHOCKW~1\Install.log publisher: Macromedia, Inc. help link: http://www.macromedia.com/support/shockwave (MobileOptionPack) (MPlayer2) (MSI30-Beta1) (MSI30-Beta2) (MSI30-KB884016) (MSI30-RC1) (MSI30-RC2) (MSI30a-KB884016) (MSI31-Beta) (MSI31-RC1) (NetMeeting) (OutlookExpress) (PCHealth) uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf QuickTime (QuickTime) uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log (RealJukebox 1.0) uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 RealPlayer (RealPlayer 6.0) uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 (SchedulingAgent) (Shockwave) Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash) uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q publisher: Adobe Systems help link: http://www.adobe.com/go/flashplayer_support/ NetoDragon 56K Voice Modem (SLAMRNTV) uninstall cmd: C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1) install location: C:\Program Files\Spybot - Search & Destroy\ uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe" publisher: Safer Networking Limited Spyware Doctor 4.0 4.0 (Spyware Doctor_is1) install date: 20070201 install location: C:\Program Files\Spyware Doctor\ uninstall cmd: "C:\Program Files\Spyware Doctor\unins000.exe" publisher: PC Tools help link: http://www.pctools.com/spyware-doctor/support/ StartUp Manager (StartUp Manager) uninstall cmd: C:\Program Files\INAC\StartUp Manager\uninstall.exe Windows Genuine Advantage Notifications (KB905474) 1.5.0532.0 (WgaNotify) install date: 20060503 publisher: Microsoft Corporation help link: http://support.microsoft.com?kbid=905474 Winamp (remove only) (Winamp) uninstall cmd: "C:\Program Files\Winamp\UninstWA.exe" WinRAR archiver (WinRAR archiver) uninstall cmd: C:\Program Files\WinRAR\uninstall.exe WinZip 8.1 (4331) (WinZip) version (major): 8 version (minor): 1 install location: C:\PROGRA~1\WINZIP\ uninstall cmd: "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall publisher: WinZip Computing, Inc. help link: http://www.winzip.com/xsupport.htm Yahoo! Browser Services (Yahoo! Customizations) uninstall cmd: C:\PROGRA~1\YAHOO!\COMMON\unyext.exe Yahoo! Messenger (Yahoo! Messenger) uninstall cmd: C:\PROGRA~1\YAHOO!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\YAHOO!\MESSEN~1\INSTALL.LOG ZTE ADSL Dialer 1.0j_MY (ZTE ADSL Dialer_is1) uninstall cmd: "C:\Program Files\ZTE\ADSLDIAL\unins000.exe" publisher: ZTE Inc. help link: http://www.ZTE.com.cn AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC}) install location: C:\Program Files\DivX AstraPix 450/460 ({26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}) uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}\Setup.exe" Java(TM) SE Runtime Environment 6 1.6.0.0 ({3248F0A8-6813-11D6-A77B-00B0D0160000}) version: 17170432 version (major): 1 version (minor): 6 estimated size: 111474 install date: 20070228 install source: C:\Documents and Settings\User\Application Data\Sun\Java\jre1.6.0\ uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000} publisher: Sun Microsystems, Inc. contact: http://java.com help link: http://java.com readme: C:\Program Files\Java\jre1.6.0\README.txt WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}) version: 154279267 version (major): 9 version (minor): 50 estimated size: 2500 install date: 20051207 install source: C:\WINDOWS\system32\ publisher: Microsoft Corporation help link: http://www.microsoft.com/windows iTunes 4.7.1.30 ({3CB41017-F5CA-4C56-934C-ED02156251E6}) version: 67567617 version (major): 4 version (minor): 7 estimated size: 13607 install date: 20051207 install location: C:\Program Files\iTunes\ install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\ publisher: Apple Computer, Inc. contact: AppleCare Support help link: http://www.info.apple.com/ help telephone: 1-800-275-2273 ({62369F2F77534556AEF4C58152E3BDE5}) PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall Kaspersky Anti-Virus 6.0 6.0.1.411 ({75193929-9A52-4CA4-98DE-8C7296940920}) version: 100663297 version (major): 6 estimated size: 27246 install date: 20070124 install source: C:\kav\kav6.0\english\ publisher: Kaspersky Lab help link: http://www.kaspersky.com/support.asp DivX 6.1.1 ({7B63B2922B174135AFC0E1377DD81EC2}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC publisher: DivX, Inc. DivX Player 6.1.1 ({8ADFC4160D694100B5B8A22DE9DCABD9}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER publisher: DivXNetworks, Inc. Microsoft Office Professional Edition 2003 11.0.5614.0 ({90110409-6000-11D3-8CFE-0150048383C9}) version: 184554990 version (major): 11 estimated size: 379454 install date: 20051219 install location: C:\Program Files\Microsoft Office\ install source: D:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\ uninstall cmd: MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9} publisher: Microsoft Corporation help link: http://www.microsoft.com/support readme: C:\Program Files\Microsoft Office\OFFICE11\1033\OFREADME.HTM Microsoft Office XP Small Business 10.0.2627.01 ({91130409-6000-11D3-8CFE-0050048383C9}) version: 167774787 version (major): 10 estimated size: 474490 install date: 20051207 install location: INSTALLLOCATION install source: E:\ uninstall cmd: MsiExec.exe /I{91130409-6000-11D3-8CFE-0050048383C9} publisher: Microsoft Corporation help link: http://www.microsoft.com/support readme: C:\Program Files\Microsoft Office\Office10\1033\OFREAD10.HTM Adobe Reader 7.0 7.0.0 ({AC76BA86-7AD7-1033-7B44-A70000000000}) version: 117440512 version (major): 7 estimated size: 65659 install date: 20051207 install location: C:\Program Files\Adobe\Acrobat 7.0\Reader\ install source: C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\ENU\ uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000} publisher: Adobe Systems Incorporated comments: contact: help link: http://www.adobe.com/support/main.html help telephone: readme: C:\Program Files\Adobe\Acrobat 7.0\Reader\Readme.htm ACDSee 8 8.0.39 ({AE80641A-0C8D-4670-A518-B4EC154B1027}) version: 134217767 version (major): 8 estimated size: 34108 install date: 20061213 install location: C:\Program Files\ACD Systems\ install source: C:\WINDOWS\Downloaded Installations\{015363C3-0256-4F1B-95E5-304040BF9C4D}\ uninstall cmd: MsiExec.exe /I{AE80641A-0C8D-4670-A518-B4EC154B1027} publisher: ACD Systems Ltd. comments: This database contains the necessary files and logic to install ACDSee and additional support programs and plug-ins where appropriate contact: Technical Support help link: http://go.acdsystems.com/client/en/534017 help telephone: 250-544-6701 ({B13A7C41581B411290FBC0395694E2A9}) DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN publisher: DivX,Inc. Nokia Connectivity Cable Driver 1.00.159 ({B7757137-0A71-4A9F-8A82-1AE4A1B73420}) version: 16777375 version (major): 1 estimated size: 400 install date: 20061215 install location: C:\Program Files\Nokia\Connectivity Cable Driver\ install source: C:\Program Files\Nokia\Nokia PC Suite 6\ uninstall cmd: MsiExec.exe /X{B7757137-0A71-4A9F-8A82-1AE4A1B73420} publisher: Nokia help link: http://www.nokia.com/nokia/0,8764,75877,00.html jetAudio 6.1 ({DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}) version: 100728832 install date: 20060401 install location: C:\Program Files\JetAudio install source: C:\DOCUME~1\User\LOCALS~1\Temp\bye9B.tmp\Disk1\ uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -l0x9 -removeonly publisher: JetAudio, Inc. Windows Live Messenger 8.0.0812.00 ({FCE50DB8-C610-4C42-BE5C-193F46C6F812}) version: 134218540 version (major): 8 estimated size: 33821 install date: 20070110 install source: C:\DOCUME~1\User\LOCALS~1\Temp\IXP000.TMP\ uninstall cmd: MsiExec.exe /I{FCE50DB8-C610-4C42-BE5C-193F46C6F812} publisher: Microsoft Corporation Nokia PC Suite 6.70.22 ({FF059F2A-62A7-4E6A-B305-559591D2769E}) version: 105250838 version (major): 6 version (minor): 70 estimated size: 36140 install date: 20061215 install location: C:\Program Files\Nokia\ install source: E:\software\PCSuite\ uninstall cmd: MsiExec.exe /I{FF059F2A-62A7-4E6A-B305-559591D2769E} publisher: Nokia help link: http://www.nokia.com/nokia/0,8764,75877,00.html --- System Services --- Service (registry key): Abiosdsk Start: 4 Type: 1 Error Control: 0 Service (registry key): abp480n5 Start: 4 Type: 1 Error Control: 1 Service (registry key): ac97intc Display name: Intel(r) 82801 Audio Driver Install Service (WDM) Image path: system32\drivers\ac97intc.sys Image size: 96256 Image MD5: 0F2D66D5F08EBE2F77BB904288DCF6F0 Start: 3 Type: 1 Error Control: 1 Service (registry key): ACPI Display name: Microsoft ACPI Driver Image path: system32\DRIVERS\ACPI.sys Image size: 187776 Image MD5: A10C7534F7223F4A73A948967D00E69B Start: 0 Type: 1 Error Control: 1 Service (registry key): ACPIEC Start: 4 Type: 1 Error Control: 1 Service (registry key): adpu160m Start: 4 Type: 1 Error Control: 1 Service (registry key): aec Display name: Microsoft Kernel Acoustic Echo Canceller Image path: system32\drivers\aec.sys Image size: 142464 Image MD5: 841F385C6CFAF66B58FBD898722BB4F0 Start: 3 Type: 1 Error Control: 1 Service (registry key): AFD Display name: AFD Description: AFD Networking Support Environment Image path: \SystemRoot\System32\drivers\afd.sys Start: 1 Type: 1 Error Control: 1 Service (registry key): Aha154x Start: 4 Type: 1 Error Control: 1 Service (registry key): aic78u2 Start: 4 Type: 1 Error Control: 1 Service (registry key): aic78xx Start: 4 Type: 1 Error Control: 1 Service (registry key): Alerter Display name: Alerter Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): ALG Display name: Application Layer Gateway Service Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\System32\alg.exe Image size: 44544 Image MD5: F1958FBF86D5C004CF19A5951A9514B7 Start: 3 Type: 16 Error Control: 1 Service (registry key): AliIde Start: 4 Type: 1 Error Control: 1 Service (registry key): amsint Start: 4 Type: 1 Error Control: 1 Service (registry key): AppMgmt Display name: Application Management Description: Provides software installation services such as Assign, Publish, and Remove. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): asc Start: 4 Type: 1 Error Control: 1 Service (registry key): asc3350p Start: 4 Type: 1 Error Control: 1 Service (registry key): asc3550 Start: 4 Type: 1 Error Control: 1 Service (registry key): AsyncMac Display name: RAS Asynchronous Media Driver Description: RAS Asynchronous Media Driver Image path: system32\DRIVERS\asyncmac.sys Image size: 14336 Image MD5: 02000ABF34AF4C218C35D257024807D6 Start: 3 Type: 1 Error Control: 1 Service (registry key): atapi Display name: Standard IDE/ESDI Hard Disk Controller Image path: system32\DRIVERS\atapi.sys Image size: 95360 Image MD5: CDFE4411A69C224BD1D11B2DA92DAC51 Start: 0 Type: 1 Error Control: 1 Service (registry key): Atdisk Start: 4 Type: 1 Error Control: 0 Service (registry key): Atmarpc Display name: ATM ARP Client Protocol Description: ATM ARP Client Protocol Image path: system32\DRIVERS\atmarpc.sys Image size: 59904 Image MD5: EC88DA854AB7D7752EC8BE11A741BB7F Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): AudioSrv Display name: Windows Audio Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: PlugPlay,RpcSs Service (registry key): audstub Display name: Audio Stub Driver Image path: system32\DRIVERS\audstub.sys Image size: 3072 Image MD5: D9F724AA26C010A217C97606B160ED68 Start: 3 Type: 1 Error Control: 1 Service (registry key): AVP Start: 2 Type: 0 Error Control: 0 Service (registry key): AxPsHook11 Start: 0 Type: 0 Error Control: 0 Service (registry key): BattC Start: 0 Type: 0 Error Control: 0 Service (registry key): Beep Start: 1 Type: 1 Error Control: 1 Service (registry key): BITS Display name: Background Intelligent Transfer Service Description: Transfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): Browser Display name: Computer Browser Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation,LanmanServer Service (registry key): cbidf2k Start: 4 Type: 1 Error Control: 1 Service (registry key): cd20xrnt Start: 4 Type: 1 Error Control: 1 Service (registry key): Cdaudio Start: 1 Type: 1 Error Control: 0 Service (registry key): Cdfs Start: 4 Type: 2 Error Control: 1 Depends On group: "SCSI CDROM Class" Service (registry key): Cdrom Display name: CD-ROM Driver Image path: system32\DRIVERS\cdrom.sys Image size: 49536 Image MD5: AF9C19B3100FE010496B1A27181FBF72 Start: 1 Type: 1 Error Control: 1 Depends On group: "SCSI miniport" Service (registry key): Changer Start: 1 Type: 1 Error Control: 0 Service (registry key): CiSvc Display name: Indexing Service Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language. Object name: LocalSystem Image path: %SystemRoot%\system32\cisvc.exe Image size: 5632 Image MD5: 3192BD04D032A9C4A85A3278C268A13A Start: 3 Type: 288 Error Control: 1 Depends On services: RPCSS Service (registry key): ClipSrv Display name: ClipBook Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\clipsrv.exe Image size: 33280 Image MD5: C8DEC22C4137D7A90F8BDF41CA4B82AE Start: 4 Type: 16 Error Control: 1 Depends On services: NetDDE Service (registry key): CmdIde Start: 4 Type: 1 Error Control: 1 Service (registry key): COMSysApp Display name: COM+ System Application Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} Image size: 5120 Image MD5: DD87DB7387B9EB441C5674888A0D840C Start: 3 Type: 16 Error Control: 1 Depends On services: rpcss Service (registry key): ContentFilter Start: 0 Type: 0 Error Control: 0 Service (registry key): ContentIndex Start: 0 Type: 0 Error Control: 0 Service (registry key): Cpqarray Start: 4 Type: 1 Error Control: 1 Service (registry key): CryptSvc Display name: Cryptographic Services Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): dac2w2k Start: 4 Type: 1 Error Control: 0 Service (registry key): dac960nt Start: 4 Type: 1 Error Control: 1 Service (registry key): DcomLaunch Display name: DCOM Server Process Launcher Description: Provides launch functionality for DCOM services. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost -k DcomLaunch Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): Dhcp Display name: DHCP Client Description: Manages network configuration by registering and updating IP addresses and DNS names. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Tcpip,Afd,NetBT Service (registry key): Disk Display name: Disk Driver Image path: system32\DRIVERS\disk.sys Image size: 36352 Image MD5: 00CA44E4534865F8A3B64F7C0984BFF0 Start: 0 Type: 1 Error Control: 1 Depends On group: "SCSI miniport" Service (registry key): dmadmin Display name: Logical Disk Manager Administrative Service Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops. Object name: LocalSystem Image path: %SystemRoot%\System32\dmadmin.exe /com Image size: 224768 Image MD5: 554C7CB178FE3BD12450B81AD63ADBC3 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs,PlugPlay,DmServer Service (registry key): dmboot Image path: System32\drivers\dmboot.sys Image size: 799744 Image MD5: C0FBB516E06E243F0CF31F597E7EBF7D Start: 4 Type: 1 Error Control: 1 Service (registry key): dmio Display name: Logical Disk Manager Driver Image path: system32\DRIVERS\dmio.sys Image size: 153344 Image MD5: F5E7B358A732D09F4BCF2824B88B9E28 Start: 0 Type: 1 Error Control: 1 Service (registry key): dmload Start: 0 Type: 1 Error Control: 1 Service (registry key): dmserver Display name: Logical Disk Manager Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs,PlugPlay Service (registry key): DMusic Display name: Microsoft Kernel DLS Syntheiszer Image path: system32\drivers\DMusic.sys Image size: 52864 Image MD5: A6F881284AC1150E37D9AE47FF601267 Start: 3 Type: 1 Error Control: 1 Service (registry key): Dnscache Display name: DNS Client Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\svchost.exe -k NetworkService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Tcpip Service (registry key): dpti2o Start: 4 Type: 1 Error Control: 1 Service (registry key): drmkaud Display name: Microsoft Kernel DRM Audio Descrambler Image path: system32\drivers\drmkaud.sys Image size: 2944 Image MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E Start: 3 Type: 1 Error Control: 1 Service (registry key): ERSvc Display name: Error Reporting Service Description: Allows error reporting for services and applictions running in non-standard environments. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RpcSs Service (registry key): Eventlog Display name: Event Log Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped. Object name: LocalSystem Image path: %SystemRoot%\system32\services.exe Image size: 108032 Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4 Start: 2 Type: 32 Error Control: 1 Service (registry key): EventSystem Display name: COM+ Event System Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): Fastfat Start: 4 Type: 2 Error Control: 1 Service (registry key): FastUserSwitchingCompatibility Display name: Fast User Switching Compatibility Description: Provides management for applications that require assistance in a multiple user environment. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: TermService Service (registry key): Fdc Display name: Floppy Disk Controller Driver Image path: system32\DRIVERS\fdc.sys Image size: 27392 Image MD5: CED2E8396A8838E59D8FD529C680E02C Start: 3 Type: 1 Error Control: 1 Service (registry key): Fips Start: 1 Type: 1 Error Control: 1 Service (registry key): Flpydisk Display name: Floppy Disk Driver Image path: system32\DRIVERS\flpydisk.sys Image size: 20480 Image MD5: 0DD1DE43115B93F4D85E889D7A86F548 Start: 3 Type: 1 Error Control: 1 Service (registry key): FltMgr Display name: FltMgr Description: File System Filter Manager Driver Image path: system32\DRIVERS\fltMgr.sys Image size: 124800 Image MD5: 157754F0DF355A9E0A6F54721914F9C6 Start: 0 Type: 2 Error Control: 1 Service (registry key): Fs_Rec Start: 1 Type: 8 Error Control: 0 Service (registry key): Ftdisk Display name: Volume Manager Driver Image path: system32\DRIVERS\ftdisk.sys Image size: 125056 Image MD5: 6AC26732762483366C3969C9E4D2259D Start: 0 Type: 1 Error Control: 1 Service (registry key): gameenum Display name: Game Port Enumerator Image path: system32\DRIVERS\gameenum.sys Image size: 10624 Image MD5: 5F92FD09E5610A5995DA7D775EADCD12 Start: 3 Type: 1 Error Control: 0 Service (registry key): GEARAspiWDM Display name: GEAR CDRom Filter Image path: SYSTEM32\DRIVERS\GEARAspiWDM.sys Image size: 13872 Image MD5: 2FB04DB459C71F416EE8B05448CA4AC3 Start: 3 Type: 1 Error Control: 1 Service (registry key): Gpc Display name: Generic Packet Classifier Description: Generic Packet Classifier Image path: system32\DRIVERS\msgpc.sys Image size: 35072 Image MD5: C0F1D4A21DE5A415DF8170616703DEBF Start: 3 Type: 1 Error Control: 1 Service (registry key): helpsvc Display name: Help and Support Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): HidServ Display name: Human Interface Device Access Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): hpn Start: 4 Type: 1 Error Control: 1 Service (registry key): HSFHWBS2 Image path: system32\DRIVERS\HSFBS2S2.sys Image size: 220032 Image MD5: 970178E8E003EB1481293830069624B9 Start: 3 Type: 1 Error Control: 0 Service (registry key): HSF_DP Image path: system32\DRIVERS\HSFDPSP2.sys Image size: 1041536 Image MD5: EBB354438A4C5A3327FB97306260714A Start: 3 Type: 1 Error Control: 0 Service (registry key): HTTP Display name: HTTP Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start. Image path: System32\Drivers\HTTP.sys Image size: 263040 Image MD5: C19B522A9AE0BBC3293397F3055E80A1 Start: 3 Type: 1 Error Control: 1 Service (registry key): HTTPFilter Display name: HTTP SSL Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: HTTP Service (registry key): i2omgmt Start: 1 Type: 1 Error Control: 1 Service (registry key): i2omp Start: 4 Type: 1 Error Control: 1 Service (registry key): i8042prt Display name: i8042 Keyboard and PS/2 Mouse Port Driver Image path: system32\DRIVERS\i8042prt.sys Image size: 52736 Image MD5: 5502B58EEF7486EE6F93F3F164DCB808 Start: 1 Type: 1 Error Control: 1 Service (registry key): i81x Image path: system32\DRIVERS\i81xnt5.sys Image size: 161020 Image MD5: 06B7EF73BA5F302EECC294CDF7E19702 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP0 Image path: system32\DRIVERS\wADV01nt.sys Image size: 12415 Image MD5: 7B5B44EFE5EB9DADFB8EE29700885D23 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP1 Image path: system32\DRIVERS\wADV02NT.sys Image size: 12127 Image MD5: EB1F6BAB6C22EDE0BA551B527475F7E9 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP2 Image path: system32\DRIVERS\wADV05NT.sys Image size: 11775 Image MD5: 03CE989D846C1AA81145CB22FCB86D06 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP3 Image path: system32\DRIVERS\wSiINTxx.sys Image size: 12063 Image MD5: 525849B4469DE021D5D61B4DB9BE3A9D Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP4 Image path: system32\DRIVERS\wVchNTxx.sys Image size: 19455 Image MD5: 589C2BCDB5BD602BF7B63D210407EF8C Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP5 Image path: system32\DRIVERS\wADV07nt.sys Image size: 11807 Image MD5: 0308AEF61941E4AF478FA1A0F83812F5 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP6 Image path: system32\DRIVERS\wADV08nt.sys Image size: 11295 Image MD5: 714038A8AA5DE08E12062202CD7EAEB5 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP7 Image path: system32\DRIVERS\wADV09nt.sys Image size: 11871 Image MD5: 7BB3AA595E4507A788DE1CDC63F4C8C4 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV0 Image path: system32\DRIVERS\wATV01nt.sys Image size: 29311 Image MD5: D83BDD5C059667A2F647A6BE5703A4D2 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV1 Image path: system32\DRIVERS\wATV02NT.sys Image size: 19551 Image MD5: ED968D23354DAA0D7C621580C012A1F6 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV3 Image path: system32\DRIVERS\wATV04nt.sys Image size: 33599 Image MD5: D738273F218A224C1DDAC04203F27A84 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV4 Image path: system32\DRIVERS\wCh7xxNT.sys Image size: 23615 Image MD5: 0052D118995CBAB152DAABE6106D1442 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV5 Image path: system32\DRIVERS\wATV10nt.sys Image size: 25471 Image MD5: 791CC45DE6E50445BE72E8AD6401FF45 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV6 Image path: system32\DRIVERS\wATV06nt.sys Image size: 22271 Image MD5: 352FA0E98BC461CE1CE5D41F64DB558D Start: 3 Type: 1 Error Control: 0 Service (registry key): ikhfile Display name: File Security Kernel Anti-Spyware Driver Description: File Security Kernel Anti-Spyware Image path: system32\drivers\ikhfile.sys Image size: 30592 Image MD5: F24866EE5C0819E9B1B58F2C00AF078E Start: 1 Type: 2 Error Control: 0 Service (registry key): ikhlayer Display name: Kernel Anti-Spyware Driver Description: Kernel Anti-Spyware Image path: system32\drivers\ikhlayer.sys Image size: 51072 Image MD5: 9A2CFF8E3EF0A35F23F544FAB915C060 Start: 1 Type: 1 Error Control: 0 Service (registry key): Imapi Display name: CD-Burning Filter Driver Image path: system32\DRIVERS\imapi.sys Image size: 41856 Image MD5: F8AA320C6A0409C0380E5D8A99D76EC6 Start: 1 Type: 1 Error Control: 1 Service (registry key): ImapiService Display name: IMAPI CD-Burning COM Service Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\imapi.exe Image size: 150016 Image MD5: FA788520BCAC0F5D9D5CDE5615C0D931 Start: 3 Type: 16 Error Control: 1 Service (registry key): inetaccs Start: 0 Type: 0 Error Control: 0 Service (registry key): ini910u Start: 4 Type: 1 Error Control: 1 Service (registry key): Inport Start: 0 Type: 0 Error Control: 0 Service (registry key): IntelIde Image path: system32\DRIVERS\intelide.sys Image size: 5504 Image MD5: 2D722B2B54AB55B2FA475EB58D7B2AAD Start: 0 Type: 1 Error Control: 1 Service (registry key): Ip6Fw Display name: IPv6 Windows Firewall Driver Description: Provides intrusion prevention service for a home or small office network. Image path: system32\DRIVERS\Ip6Fw.sys Image size: 29056 Image MD5: 4448006B6BC60E6C027932CFC38D6855 Start: 3 Type: 1 Error Control: 1 Service (registry key): IpFilterDriver Display name: IP Traffic Filter Driver Description: IP Traffic Filter Driver Image path: system32\DRIVERS\ipfltdrv.sys Image size: 32896 Image MD5: 731F22BA402EE4B62748ADAF6363C182 Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): IpInIp Display name: IP in IP Tunnel Driver Description: IP in IP Tunnel Driver Image path: system32\DRIVERS\ipinip.sys Image size: 20992 Image MD5: E1EC7F5DA720B640CD8FB8424F1B14BB Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): IpNat Display name: IP Network Address Translator Description: IP Network Address Translator Image path: system32\DRIVERS\ipnat.sys Image size: 134912 Image MD5: B5A8E215AC29D24D60B4D1250EF05ACE Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): iPodService Display name: iPod Service Description: iPod hardware management services Object name: LocalSystem Image path: "C:\Program Files\iPod\bin\iPodService.exe" Image size: 327680 Image MD5: 3AC9F355ECCE7D6BB8FF184E9B2229A9 Start: 3 Type: 16 Error Control: 0 Service (registry key): IPSec Display name: IPSEC driver Description: IPSEC driver Image path: system32\DRIVERS\ipsec.sys Image size: 74752 Image MD5: 64537AA5C003A6AFEEE1DF819062D0D1 Start: 1 Type: 1 Error Control: 1 Service (registry key): IRENUM Display name: IR Enumerator Service Image path: system32\DRIVERS\irenum.sys Image size: 11264 Image MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410 Start: 3 Type: 1 Error Control: 1 Service (registry key): ISAPISearch Start: 0 Type: 0 Error Control: 0 Service (registry key): isapnp Display name: PnP ISA/EISA Bus Driver Image path: system32\DRIVERS\isapnp.sys Image size: 35840 Image MD5: E504F706CCB699C2596E9A3DA1596E87 Start: 0 Type: 1 Error Control: 3 Service (registry key): Kbdclass Display name: Keyboard Class Driver Image path: system32\DRIVERS\kbdclass.sys Image size: 24576 Image MD5: EBDEE8A2EE5393890A1ACEE971C4C246 Start: 1 Type: 1 Error Control: 1 Service (registry key): kl1 Display name: Kl1 Image path: system32\drivers\kl1.sys Image size: 104448 Image MD5: BC02A8E0DD5DC266E5CC3636DD454403 Start: 0 Type: 1 Error Control: 1 Service (registry key): klif Display name: Klif Image path: \??\C:\WINDOWS\system32\drivers\klif.sys Image size: 174864 Image MD5: F0653E5E164123CAD51EDDA22418C2A3 Start: 1 Type: 1 Error Control: 1 Service (registry key): kmixer Display name: Microsoft Kernel Wave Audio Mixer Image path: system32\drivers\kmixer.sys Image size: 171776 Image MD5: D93CAD07C5683DB066B0B2D2D3790EAD Start: 3 Type: 1 Error Control: 1 Service (registry key): KSecDD Start: 0 Type: 1 Error Control: 1 Service (registry key): lanmanserver Display name: Server Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): lanmanworkstation Display name: Workstation Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): lbrtfdc Start: 1 Type: 1 Error Control: 0 Service (registry key): ldap Start: 0 Type: 0 Error Control: 0 Service (registry key): LicenseService Start: 0 Type: 0 Error Control: 0 Service (registry key): LmHosts Display name: TCP/IP NetBIOS Helper Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: NetBT,Afd Service (registry key): MDM Display name: Machine Debug Manager Description: Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly. Object name: LocalSystem Image path: "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe" Image size: 322120 Image MD5: 11F714F85530A2BD134074DC30E99FCA Start: 2 Type: 272 Error Control: 1 Depends On services: RPCSS Service (registry key): mdmxsdk Image path: system32\DRIVERS\mdmxsdk.sys Image size: 11868 Image MD5: 195741AEE20369980796B557358CD774 Start: 2 Type: 1 Error Control: 0 Service (registry key): Messenger Display name: Messenger Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS Service (registry key): mnmdd Start: 1 Type: 1 Error Control: 0 Service (registry key): mnmsrvc Display name: NetMeeting Remote Desktop Sharing Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\mnmsrvc.exe Image size: 32768 Image MD5: F6415361201915B9FE3896B0E4E724FF Start: 3 Type: 272 Error Control: 1 Service (registry key): Modem Start: 3 Type: 1 Error Control: 0 Service (registry key): MODEMCSA Display name: Unimodem Streaming Filter Device Image path: system32\drivers\MODEMCSA.sys Image size: 16128 Image MD5: 1992E0D143B09653AB0F9C5E04B0FD65 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mouclass Display name: Mouse Class Driver Image path: system32\DRIVERS\mouclass.sys Image size: 23040 Image MD5: 34E1F0031153E491910E12551400192C Start: 1 Type: 1 Error Control: 1 Service (registry key): MountMgr Start: 0 Type: 1 Error Control: 1 Service (registry key): mraid35x Start: 4 Type: 1 Error Control: 1 Service (registry key): MRxDAV Display name: WebDav Client Redirector Description: WebDav Client Redirector Image path: system32\DRIVERS\mrxdav.sys Image size: 181248 Image MD5: 46EDCC8F2DB2F322C24F48785CB46366 Start: 3 Type: 2 Error Control: 1 Service (registry key): MRxSmb Display name: MRXSMB Description: MRXSMB Image path: system32\DRIVERS\mrxsmb.sys Image size: 451456 Image MD5: 1FD607FC67F7F7C633C3DA65BFC53D18 Start: 1 Type: 2 Error Control: 1 Service (registry key): MSDTC Display name: Distributed Transaction Coordinator Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\NetworkService Image path: C:\WINDOWS\system32\msdtc.exe Image size: 6144 Image MD5: C7C3D89EB0A6F3DBA622EA737FA335B1 Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS,SamSS Service (registry key): Msfs Start: 1 Type: 2 Error Control: 1 Service (registry key): MSIServer Display name: Windows Installer Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\msiexec.exe /V Image size: 77312 Image MD5: 4236AE241F193F58ADAB141CECCFD5F4 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): MSKSSRV Display name: Microsoft Streaming Service Proxy Image path: system32\drivers\MSKSSRV.sys Image size: 7552 Image MD5: AE431A8DD3C1D0D0610CDBAC16057AD0 Start: 3 Type: 1 Error Control: 1 Service (registry key): MSPCLOCK Display name: Microsoft Streaming Clock Proxy Image path: system32\drivers\MSPCLOCK.sys Image size: 5376 Image MD5: 13E75FEF9DFEB08EEDED9D0246E1F448 Start: 3 Type: 1 Error Control: 1 Service (registry key): MSPQM Display name: Microsoft Streaming Quality Manager Proxy Image path: system32\drivers\MSPQM.sys Image size: 4992 Image MD5: 1988A33FF19242576C3D0EF9CE785DA7 Start: 3 Type: 1 Error Control: 1 Service (registry key): mssmbios Display name: Microsoft System Management BIOS Driver Image path: system32\DRIVERS\mssmbios.sys Image size: 15488 Image MD5: 469541F8BFD2B32659D5D463A6714BCE Start: 3 Type: 1 Error Control: 1 Service (registry key): ms_mpu401 Display name: Microsoft MPU-401 MIDI UART Driver Image path: system32\drivers\msmpu401.sys Image size: 2944 Image MD5: CA3E22598F411199ADC2DFEE76CD0AE0 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mtlmnt5 Display name: Mtlmnt5 Image path: system32\DRIVERS\Mtlmnt5.sys Image size: 221736 Image MD5: 32CE8D0359672BCB720BF82C86A50D71 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mtlstrm Display name: Mtlstrm Image path: system32\DRIVERS\Mtlstrm.sys Image size: 1301128 Image MD5: 8ADA829D3D7CF2DB7B1C41F3C7BEAA79 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mup Display name: Mup Start: 0 Type: 2 Error Control: 1 Service (registry key): NDIS Display name: NDIS System Driver Start: 0 Type: 1 Error Control: 1 Service (registry key): NdisTapi Display name: Remote Access NDIS TAPI Driver Description: Remote Access NDIS TAPI Driver Image path: system32\DRIVERS\ndistapi.sys Image size: 9600 Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C Start: 3 Type: 1 Error Control: 1 Service (registry key): Ndisuio Display name: NDIS Usermode I/O Protocol Description: NDIS Usermode I/O Protocol Image path: system32\DRIVERS\ndisuio.sys Image size: 12928 Image MD5: 34D6CD56409DA9A7ED573E1C90A308BF Start: 3 Type: 1 Error Control: 1 Service (registry key): NdisWan Display name: Remote Access NDIS WAN Driver Description: Remote Access NDIS WAN Driver Image path: system32\DRIVERS\ndiswan.sys Image size: 91776 Image MD5: 0B90E255A9490166AB368CD55A529893 Start: 3 Type: 1 Error Control: 1 Service (registry key): NDProxy Start: 3 Type: 1 Error Control: 1 Service (registry key): NetBIOS Display name: NetBIOS Interface Description: NetBIOS Interface Image path: system32\DRIVERS\netbios.sys Image size: 34560 Image MD5: 3A2ACA8FC1D7786902CA434998D7CEB4 Start: 1 Type: 2 Error Control: 1 Service (registry key): NetBT Display name: NetBios over Tcpip Description: NetBios over Tcpip Image path: system32\DRIVERS\netbt.sys Image size: 162816 Image MD5: 0C80E410CD2F47134407EE7DD19CC86B Start: 1 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): NetDDE Display name: Network DDE Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\netdde.exe Image size: 111104 Image MD5: 05AFB5AD06462257BEA7495283C86D50 Start: 4 Type: 32 Error Control: 1 Depends On services: NetDDEDSDM Service (registry key): NetDDEdsdm Display name: Network DDE DSDM Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\netdde.exe Image size: 111104 Image MD5: 05AFB5AD06462257BEA7495283C86D50 Start: 4 Type: 32 Error Control: 1 Service (registry key): Netlogon Display name: Net Logon Description: Supports pass-through authentication of account logon events for computers in a domain. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 3 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): Netman Display name: Network Connections Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 288 Error Control: 1 Depends On services: RpcSs Service (registry key): Nla Display name: Network Location Awareness (NLA) Description: Collects and stores network configuration and location information, and notifies applications when this information changes. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: Tcpip,Afd Service (registry key): Nokia USB Generic Display name: Nokia USB Generic Image path: system32\drivers\nmwcdc.sys Image size: 8704 Image MD5: 19CBCC1C8168FD6736DE06F287A1413E Start: 3 Type: 1 Error Control: 0 Service (registry key): Nokia USB Modem Display name: Nokia USB Modem Image path: system32\drivers\nmwcdcm.sys Image size: 12800 Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F Start: 3 Type: 1 Error Control: 0 Service (registry key): Nokia USB Phone Parent Display name: Nokia USB Phone Parent Image path: system32\drivers\nmwcd.sys Image size: 124928 Image MD5: 09899CA1E1DF288BEB768461401D18EE Start: 3 Type: 1 Error Control: 1 Service (registry key): Nokia USB Port Display name: Nokia USB Port Image path: system32\drivers\nmwcdcj.sys Image size: 12800 Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F Start: 3 Type: 1 Error Control: 0 Service (registry key): Npfs Start: 1 Type: 2 Error Control: 1 Service (registry key): Ntfs Start: 4 Type: 2 Error Control: 1 Service (registry key): NtLmSsp Display name: NT LM Security Support Provider Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 3 Type: 32 Error Control: 1 Service (registry key): NtmsSvc Display name: Removable Storage Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): NtMtlFax Display name: NtMtlFax Image path: system32\DRIVERS\NtMtlFax.sys Image size: 167384 Image MD5: F11E04E2D0034172EB2938D0BBC7B05B Start: 3 Type: 1 Error Control: 1 Service (registry key): Null Start: 1 Type: 1 Error Control: 1 Service (registry key): NwlnkFlt Display name: IPX Traffic Filter Driver Description: IPX Traffic Filter Driver Image path: system32\DRIVERS\nwlnkflt.sys Image size: 12416 Image MD5: B305F3FAD35083837EF46A0BBCE2FC57 Start: 3 Type: 1 Error Control: 1 Depends On services: NwlnkFwd Service (registry key): NwlnkFwd Display name: IPX Traffic Forwarder Driver Description: IPX Traffic Forwarder Driver Image path: system32\DRIVERS\nwlnkfwd.sys Image size: 32512 Image MD5: C99B3415198D1AAB7227F2C88FD664B9 Start: 3 Type: 1 Error Control: 1 Service (registry key): ose Display name: Office Source Engine Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports. Object name: LocalSystem Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE" Image size: 89136 Image MD5: 7A56CF3E3F12E8AF599963B16F50FB6A Start: 3 Type: 16 Error Control: 1 Service (registry key): P3 Display name: Intel PentiumIII Processor Driver Image path: system32\DRIVERS\p3.sys Image size: 42496 Image MD5: 3E16EFF2A6FED2D8D7F5A66DFE65D183 Start: 1 Type: 1 Error Control: 1 Service (registry key): Parport Display name: Parallel port driver Image path: system32\DRIVERS\parport.sys Image size: 80128 Image MD5: 29744EB4CE659DFE3B4122DEB45BC478 Start: 3 Type: 1 Error Control: 1 Service (registry key): PartMgr Start: 0 Type: 1 Error Control: 1 Service (registry key): ParVdm Start: 2 Type: 1 Error Control: 0 Depends On services: Parport Depends On group: "Parallel arbitrator" Service (registry key): PCI Display name: PCI Bus Driver Image path: system32\DRIVERS\pci.sys Image size: 68224 Image MD5: 8086D9979234B603AD5BC2F5D890B234 Start: 0 Type: 1 Error Control: 3 Service (registry key): PCIDump Start: 1 Type: 1 Error Control: 0 Service (registry key): PCIIde Start: 4 Type: 1 Error Control: 1 Service (registry key): Pcmcia Start: 4 Type: 1 Error Control: 1 Service (registry key): PDCOMP Start: 3 Type: 1 Error Control: 0 Service (registry key): PDFRAME Start: 3 Type: 1 Error Control: 0 Service (registry key): PDRELI Start: 3 Type: 1 Error Control: 0 Service (registry key): PDRFRAME Start: 3 Type: 1 Error Control: 0 Service (registry key): perc2 Start: 4 Type: 1 Error Control: 1 Service (registry key): perc2hib Start: 4 Type: 1 Error Control: 1 Service (registry key): PerfDisk Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfNet Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfOS Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfProc Start: 0 Type: 0 Error Control: 0 Service (registry key): PlugPlay Display name: Plug and Play Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability. Object name: LocalSystem Image path: %SystemRoot%\system32\services.exe Image size: 108032 Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4 Start: 2 Type: 32 Error Control: 1 Service (registry key): PolicyAgent Display name: IPSEC Services Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS,Tcpip,IPSec Service (registry key): PptpMiniport Display name: WAN Miniport (PPTP) Description: WAN Miniport (PPTP) Image path: system32\DRIVERS\raspptp.sys Image size: 48384 Image MD5: 1C5CC65AAC0783C344F16353E60B72AC Start: 3 Type: 1 Error Control: 1 Service (registry key): ProtectedStorage Display name: Protected Storage Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 288 Error Control: 1 Depends On services: RpcSs Service (registry key): PSched Display name: QoS Packet Scheduler Description: QoS Packet Scheduler Image path: system32\DRIVERS\psched.sys Image size: 69120 Image MD5: 48671F327553DCF1D27F6197F622A668 Start: 3 Type: 1 Error Control: 1 Depends On services: Gpc Service (registry key): Ptilink Display name: Direct Parallel Link Driver Description: Direct Parallel Link Driver Image path: system32\DRIVERS\ptilink.sys Image size: 17792 Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD Start: 3 Type: 1 Error Control: 1 Service (registry key): PxHelp20 Display name: PxHelp20 Image path: System32\Drivers\PxHelp20.sys Image size: 20640 Image MD5: 86724469CD077901706854974CD13C3E Start: 0 Type: 1 Error Control: 1 Service (registry key): ql1080 Start: 4 Type: 1 Error Control: 1 Service (registry key): Ql10wnt Start: 4 Type: 1 Error Control: 1 Service (registry key): ql12160 Start: 4 Type: 1 Error Control: 1 Service (registry key): ql1240 Start: 4 Type: 1 Error Control: 1 Service (registry key): ql1280 Start: 4 Type: 1 Error Control: 1 Service (registry key): RasAcd Display name: Remote Access Auto Connection Driver Description: Remote Access Auto Connection Driver Image path: system32\DRIVERS\rasacd.sys Image size: 8832 Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C Start: 1 Type: 1 Error Control: 1 Service (registry key): RasAuto Display name: Remote Access Auto Connection Manager Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RasMan,Tapisrv Service (registry key): Rasl2tp Display name: WAN Miniport (L2TP) Description: WAN Miniport (L2TP) Image path: system32\DRIVERS\rasl2tp.sys Image size: 51328 Image MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C Start: 3 Type: 1 Error Control: 1 Service (registry key): RasMan Display name: Remote Access Connection Manager Description: Creates a network connection. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: Tapisrv Service (registry key): RasPppoe Display name: Remote Access PPPOE Driver Description: Remote Access PPPOE Driver Image path: system32\DRIVERS\raspppoe.sys Image size: 41472 Image MD5: 7306EEED8895454CBED4669BE9F79FAA Start: 3 Type: 1 Error Control: 1 Service (registry key): Raspti Display name: Direct Parallel Description: Direct Parallel Image path: system32\DRIVERS\raspti.sys Image size: 16512 Image MD5: FDBB1D60066FCFBB7452FD8F9829B242 Start: 3 Type: 1 Error Control: 1 Service (registry key): Rdbss Display name: Rdbss Description: Rdbss Image path: system32\DRIVERS\rdbss.sys Image size: 176512 Image MD5: 29D66245ADBA878FFF574CD66ABD2884 Start: 1 Type: 2 Error Control: 1 Service (registry key): RDPCDD Image path: System32\DRIVERS\RDPCDD.sys Image size: 4224 Image MD5: 4912D5B403614CE99C28420F75353332 Start: 1 Type: 1 Error Control: 0 Service (registry key): RDPDD Start: 0 Type: 0 Error Control: 0 Service (registry key): rdpdr Display name: Terminal Server Device Redirector Driver Image path: system32\DRIVERS\rdpdr.sys Image size: 196864 Image MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD Start: 3 Type: 1 Error Control: 1 Service (registry key): RDPNP Start: 0 Type: 0 Error Control: 0 Service (registry key): RDPWD Start: 3 Type: 1 Error Control: 0 Service (registry key): RDSessMgr Display name: Remote Desktop Help Session Manager Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box. Object name: LocalSystem Image path: C:\WINDOWS\system32\sessmgr.exe Image size: 140800 Image MD5: 729798E0933076B8FCFCD9934698F164 Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): RecAgent Display name: recagent Image path: \??\C:\WINDOWS\system32\DRIVERS\RecAgent.sys Image size: 13776 Image MD5: E9AAA0092D74A9D371659C4C38882E12 Start: 3 Type: 1 Error Control: 1 Service (registry key): redbook Display name: Digital CD Audio Playback Filter Driver Image path: system32\DRIVERS\redbook.sys Image size: 57472 Image MD5: B31B4588E4086D8D84ADBF9845C2402B Start: 1 Type: 1 Error Control: 1 Service (registry key): RemoteAccess Display name: Routing and Remote Access Description: Offers routing services to businesses in local area and wide area network environments. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: RpcSS Depends On group: NetBIOSGroup Service (registry key): RemoteRegistry Display name: Remote Registry Description: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): RpcLocator Display name: Remote Procedure Call (RPC) Locator Description: Manages the RPC name service database. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\locator.exe Image size: 75264 Image MD5: 793F04A09B15E7C6C11DBDFFAF06C0AB Start: 3 Type: 16 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): RpcSs Display name: Remote Procedure Call (RPC) Description: Provides the endpoint mapper and other miscellaneous RPC services. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\svchost -k rpcss Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): RSVP Display name: QoS RSVP Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets. Object name: LocalSystem Image path: %SystemRoot%\system32\rsvp.exe Image size: 132608 Image MD5: 471B3F9741D762ABE75E9DEEA4787E47 Start: 3 Type: 16 Error Control: 1 Depends On services: TcpIp,Afd,RpcSs Service (registry key): rtl8139 Display name: Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver Image path: system32\DRIVERS\RTL8139.SYS Image size: 20992 Image MD5: D507C1400284176573224903819FFDA3 Start: 3 Type: 1 Error Control: 1 Service (registry key): SamSs Display name: Security Accounts Manager Description: Stores security information for local user accounts. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): SCardSvr Display name: Smart Card Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\System32\SCardSvr.exe Image size: 95744 Image MD5: 25D8DE134DF108E3DBC8D7D23B1AA58E Start: 3 Type: 32 Error Control: 0 Depends On services: PlugPlay Service (registry key): Schedule Display name: Task Scheduler Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): SDhelper Display name: PC Tools Spyware Doctor Description: Provides spyware and malware protection for the system. If this service is disabled spyware protection will be reduced. Object name: LocalSystem Image path: C:\Program Files\Spyware Doctor\sdhelp.exe Image size: 895088 Image MD5: D8CA03BE0F6DC8C8D71009795028006A Start: 2 Type: 16 Error Control: 1 Service (registry key): Secdrv Display name: Secdrv Description: SafeDisc driver Image path: system32\DRIVERS\secdrv.sys Image size: 27440 Image MD5: D26E26EA516450AF9D072635C60387F4 Start: 3 Type: 1 Error Control: 1 Service (registry key): seclogon Display name: Secondary Logon Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 288 Error Control: 0 Service (registry key): SENS Display name: System Event Notification Description: Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: EventSystem Service (registry key): serenum Display name: Serenum Filter Driver Image path: system32\DRIVERS\serenum.sys Image size: 15488 Image MD5: A2D868AEEFF612E70E213C451A70CAFB Start: 3 Type: 1 Error Control: 1 Service (registry key): Serial Display name: Serial port driver Image path: system32\DRIVERS\serial.sys Image size: 64896 Image MD5: CD9404D115A00D249F70A371B46D5A26 Start: 1 Type: 1 Error Control: 0 Service (registry key): sermouse Display name: Serial Mouse Driver Image path: system32\DRIVERS\sermouse.sys Image size: 17664 Image MD5: 1F16931C722C69E4A7866244796C66A0 Start: 3 Type: 1 Error Control: 1 Service (registry key): Sfloppy Start: 1 Type: 1 Error Control: 0 Depends On group: "SCSI miniport" Service (registry key): SharedAccess Display name: Windows Firewall/Internet Connection Sharing (ICS) Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Netman,WinMgmt Service (registry key): ShellHWDetection Display name: Shell Hardware Detection Description: Provides notifications for AutoPlay hardware events. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RpcSs Service (registry key): Simbad Start: 4 Type: 1 Error Control: 1 Service (registry key): Slntamr Display name: NetoDragon AMR_PCI Driver Image path: system32\DRIVERS\slntamr.sys Image size: 545528 Image MD5: 2EE2E5AA1B0FEB8E32D615BC8AAE6D14 Start: 3 Type: 1 Error Control: 0 Service (registry key): SlNtHal Display name: SlNtHal Image path: system32\DRIVERS\Slnthal.sys Image size: 86128 Image MD5: D84CE5182F7D9F3E7E4FF0C36B16A466 Start: 3 Type: 1 Error Control: 1 Service (registry key): SlWdmSup Display name: SlWdmSup Image path: system32\DRIVERS\SlWdmSup.sys Image size: 39348 Image MD5: 4A35904E8EE6C103C815EE269CC7A7B9 Start: 3 Type: 1 Error Control: 0 Service (registry key): Sparrow Start: 4 Type: 1 Error Control: 1 Service (registry key): splitter Display name: Microsoft Kernel Audio Splitter Image path: system32\drivers\splitter.sys Image size: 6400 Image MD5: 8E186B8F23295D1E42C573B82B80D548 Start: 3 Type: 1 Error Control: 1 Service (registry key): Spooler Display name: Print Spooler Description: Loads files to memory for later printing. Object name: LocalSystem Image path: %SystemRoot%\system32\spoolsv.exe Image size: 57856 Image MD5: 7435B108B935E42EA92CA94F59C8E717 Start: 2 Type: 272 Error Control: 1 Depends On services: RPCSS Service (registry key): sp_rsdrv2 Display name: Spyware Terminator Driver 2 Image path: \??\C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys Start: 1 Type: 1 Error Control: 1 Service (registry key): sr Display name: System Restore Filter Driver Image path: system32\DRIVERS\sr.sys Image size: 73472 Image MD5: E41B6D037D6CD08461470AF04500DC24 Start: 0 Type: 2 Error Control: 1 Service (registry key): srservice Display name: System Restore Service Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): Srv Display name: Srv Description: Srv Image path: system32\DRIVERS\srv.sys Image size: 336256 Image MD5: 20B7E396720353E4117D64D9DCB926CA Start: 3 Type: 2 Error Control: 1 Service (registry key): SSDPSRV Display name: SSDP Discovery Service Description: Enables discovery of UPnP devices on your home network. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: HTTP Service (registry key): stisvc Display name: Windows Image Acquisition (WIA) Description: Provides image acquisition services for scanners and cameras. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k imgsvc Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): swenum Display name: Software Bus Driver Image path: system32\DRIVERS\swenum.sys Image size: 4352 Image MD5: 03C1BAE4766E2450219D20B993D6E046 Start: 3 Type: 1 Error Control: 1 Service (registry key): swmidi Display name: Microsoft Kernel GS Wavetable Synthesizer Image path: system32\drivers\swmidi.sys Image size: 54272 Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D Start: 3 Type: 1 Error Control: 1 Service (registry key): SwPrv Display name: MS Software Shadow Copy Provider Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{56859176-B9E9-4E77-B6D9-37C208D2F4BE} Image size: 5120 Image MD5: DD87DB7387B9EB441C5674888A0D840C Start: 3 Type: 16 Error Control: 0 Depends On services: rpcss Service (registry key): symc810 Start: 4 Type: 1 Error Control: 1 Service (registry key): symc8xx Start: 4 Type: 1 Error Control: 1 Service (registry key): sym_hi Start: 4 Type: 1 Error Control: 1 Service (registry key): sym_u3 Start: 4 Type: 1 Error Control: 1 Service (registry key): sysaudio Display name: Microsoft Kernel System Audio Device Image path: system32\drivers\sysaudio.sys Image size: 60800 Image MD5: 650AD082D46BAC0E64C9C0E0928492FD Start: 3 Type: 1 Error Control: 1 Service (registry key): SysmonLog Display name: Performance Logs and Alerts Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT Authority\NetworkService Image path: %SystemRoot%\system32\smlogsvc.exe Image size: 89600 Image MD5: 8B54AA346D1B1B113FFAA75501B8B1B2 Start: 3 Type: 16 Error Control: 1 Service (registry key): TapiSrv Display name: Telephony Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: PlugPlay,RpcSs Service (registry key): Tcpip Display name: TCP/IP Protocol Driver Description: TCP/IP Protocol Driver Image path: system32\DRIVERS\tcpip.sys Image size: 359040 Image MD5: 9F4B36614A0FC234525BA224957DE55C Start: 1 Type: 1 Error Control: 1 Depends On services: IPSec Service (registry key): TDPIPE Start: 3 Type: 1 Error Control: 0 Service (registry key): TDTCP Start: 3 Type: 1 Error Control: 0 Service (registry key): TermDD Display name: Terminal Device Driver Image path: system32\DRIVERS\termdd.sys Image size: 40840 Image MD5: A540A99C281D933F3D69D55E48727F47 Start: 1 Type: 1 Error Control: 1 Service (registry key): TermService Display name: Terminal Services Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost -k DComLaunch Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): Themes Display name: Themes Description: Provides user experience theme management. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): TlntSvr Display name: Telnet Description: Enables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\tlntsvr.exe Image size: 73216 Image MD5: 37DB0A7D097310E8B4DE803FC3119C78 Start: 4 Type: 16 Error Control: 1 Depends On services: RPCSS,TCPIP,NTLMSSP Service (registry key): TosIde Start: 4 Type: 1 Error Control: 1 Service (registry key): trid3d Image path: system32\DRIVERS\trid3dm.sys Image size: 222336 Image MD5: 8DFD837A98A4A6C581214FA358430837 Start: 3 Type: 1 Error Control: 0 Service (registry key): TrkWks Display name: Distributed Link Tracking Client Description: Maintains links between NTFS files within a computer or across computers in a network domain. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): TSDDD Start: 0 Type: 0 Error Control: 0 Service (registry key): Udfs Start: 4 Type: 2 Error Control: 1 Service (registry key): ultra Start: 4 Type: 1 Error Control: 1 Service (registry key): Update Display name: Microcode Update Driver Image path: system32\DRIVERS\update.sys Image size: 209408 Image MD5: AFF2E5045961BBC0A602BB6F95EB1345 Start: 3 Type: 1 Error Control: 1 Service (registry key): upnphost Display name: Universal Plug and Play Device Host Description: Provides support to host Universal Plug and Play devices. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: SSDPSRV,HTTP Service (registry key): UPS Display name: Uninterruptible Power Supply Description: Manages an uninterruptible power supply (UPS) connected to the computer. Object name: LocalSystem Image path: %SystemRoot%\System32\ups.exe Image size: 18432 Image MD5: 3F5DF65B0758675F95A2D43918A740A3 Start: 3 Type: 16 Error Control: 1 Service (registry key): usbhub Display name: USB2 Enabled Hub Image path: system32\DRIVERS\usbhub.sys Image size: 57600 Image MD5: C72F40947F92CEA56A8FB532EDF025F1 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbprint Display name: Microsoft USB PRINTER Class Image path: system32\DRIVERS\usbprint.sys Image size: 25856 Image MD5: A42369B7CD8886CD7C70F33DA6FCBCF5 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbscan Display name: USB Scanner Driver Image path: system32\DRIVERS\usbscan.sys Image size: 15104 Image MD5: A6BC71402F4F7DD5B77FD7F4A8DDBA85 Start: 3 Type: 1 Error Control: 1 Service (registry key): USBSTOR Display name: USB Mass Storage Driver Image path: system32\DRIVERS\USBSTOR.SYS Image size: 26496 Image MD5: 6CD7B22193718F1D17A47A1CD6D37E75 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbuhci Display name: Microsoft USB Universal Host Controller Miniport Driver Image path: system32\DRIVERS\usbuhci.sys Image size: 20480 Image MD5: F8FD1400092E23C8F2F31406EF06167B Start: 3 Type: 1 Error Control: 1 Service (registry key): usnsvc Display name: Messenger Sharing USN Journal Reader service Description: Service installed by Messenger to enable sharing scenarios Object name: LocalSystem Image path: C:\WINDOWS\system32\svchost.exe -k usnsvc Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 16 Error Control: 1 Depends On services: rpcss,eventlog Service (registry key): VgaSave Image path: \SystemRoot\System32\drivers\vga.sys Start: 1 Type: 1 Error Control: 0 Service (registry key): viaagp Display name: VIA AGP Bus Filter Image path: system32\DRIVERS\viaagp.sys Image size: 42240 Image MD5: D92E7C8A30CFD14D8E15B5F7F032151B Start: 0 Type: 1 Error Control: 1 Service (registry key): ViaIde Image path: system32\DRIVERS\viaide.sys Image size: 5376 Image MD5: 59CB1338AD3654417BEA49636457F65D Start: 0 Type: 1 Error Control: 1 Service (registry key): VIAudio Display name: VIA AC'97 Audio Controller (WDM) Image path: system32\drivers\ac97via.sys Image size: 84480 Image MD5: 819BF44085104BE6527B86A88ACF856B Start: 3 Type: 1 Error Control: 1 Service (registry key): VolSnap Start: 0 Type: 1 Error Control: 1 Service (registry key): VSS Display name: Volume Shadow Copy Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\vssvc.exe Image size: 289792 Image MD5: 3EE00364AE0FD8D604F46CBAF512838A Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): W32Time Display name: Windows Time Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): W3SVC Start: 0 Type: 0 Error Control: 0 Service (registry key): Wanarp Display name: Remote Access IP ARP Driver Description: Remote Access IP ARP Driver Image path: system32\DRIVERS\wanarp.sys Image size: 34560 Image MD5: 984EF0B9788ABF89974CFED4BFBAACBC Start: 3 Type: 1 Error Control: 1 Service (registry key): WDICA Start: 3 Type: 1 Error Control: 0 Service (registry key): wdmaud Display name: Microsoft WINMM WDM Audio Compatibility Driver Image path: system32\drivers\wdmaud.sys Image size: 82944 Image MD5: 2797F33EBF50466020C430EE4F037933 Start: 3 Type: 1 Error Control: 1 Service (registry key): WebClient Display name: WebClient Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: MRxDAV Service (registry key): winachsf Image path: system32\DRIVERS\HSFCXTS2.sys Image size: 685056 Image MD5: 1225EBEA76AAC3C84DF6C54FE5E5D8BE Start: 3 Type: 1 Error Control: 0 Service (registry key): winmgmt Display name: Windows Management Instrumentation Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %systemroot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RPCSS Service (registry key): Winsock Start: 3 Type: 4 Error Control: 1 Service (registry key): WinSock2 Start: 0 Type: 0 Error Control: 0 Service (registry key): WinTrust Start: 0 Type: 0 Error Control: 0 Service (registry key): WmdmPmSN Display name: Portable Media Serial Number Service Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): Wmi Display name: Windows Management Instrumentation Driver Extensions Description: Provides systems management information to and from drivers. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): WmiApRpl Start: 0 Type: 0 Error Control: 0 Service (registry key): WmiApSrv Display name: WMI Performance Adapter Description: Provides performance library information from WMI HiPerf providers. Object name: LocalSystem Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe Image size: 126464 Image MD5: BA8CECC3E813E1F7C441B20393D4F86C Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): WS2IFSL Start: 1 Type: 0 Error Control: 0 Service (registry key): wuauserv Display name: Automatic Updates Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site. Object name: LocalSystem Image path: %systemroot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): WZCSVC Display name: Wireless Zero Configuration Description: Provides automatic configuration for the 802.11 adapters Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs,Ndisuio Service (registry key): xmlprov Display name: Network Provisioning Service Description: Manages XML configuration files on a domain basis for automatic network provisioning. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): ZTPPPOE Display name: WAN Miniport (PPP over Ethernet Protocol) Image path: system32\DRIVERS\ztpppoe.sys Image size: 18238 Image MD5: EF41F47D21761FF125E615E175984521 Start: 3 Type: 1 Error Control: 1 Service (registry key): {3A5367D3-6621-4321-86BA-FBF1DC8E8A32} Start: 0 Type: 0 Error Control: 0 Service (registry key): {8141C4F5-9474-4946-B7DB-218FBCA21BFB} Start: 0 Type: 0 Error Control: 0
Spybot - Search & Destroy --- Search result list --- Nat: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Desktop\host WinClean: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\Temp\installer.exe Smitfraud-C.: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\WindowsSubVersion BraveSentry: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program Files\BraveSentry\BraveSentry.exe Win32.Small.dp: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Security\host Nurech: User settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\upnp.exe --- Spybot - Search & Destroy version: 1.4 (build: 20050523) --- 2007-03-07 unins000.exe (51.41.0.0) 2005-05-31 blindman.exe (1.0.0.1) 2005-05-31 SpybotSD.exe (1.4.0.3) 2005-05-31 TeaTimer.exe (1.4.0.2) 2005-05-31 Update.exe (1.4.0.0) 2005-05-31 aports.dll (2.1.0.0) 2005-05-31 borlndmm.dll (7.0.4.453) 2005-05-31 delphimm.dll (7.0.4.453) 2005-05-31 SDHelper.dll (1.4.0.0) 2005-05-31 UnzDll.dll (1.73.1.1) 2005-05-31 ZipDll.dll (1.73.2.0) 2007-01-15 advcheck.dll (1.2.1.0) 2007-01-02 Tools.dll (2.0.1.0) 2006-12-08 Includes\Dialer.sbi (*) 2007-02-07 Includes\Hijackers.sbi (*) 2006-10-27 Includes\Keyloggers.sbi (*) 2007-02-14 Includes\Malware.sbi (*) 2007-01-19 Includes\PUPS.sbi (*) 2006-12-08 Includes\Security.sbi (*) 2007-02-02 Includes\Spybots.sbi (*) 2007-02-14 Includes\Trojans.sbi (*) 2007-02-28 Includes\Cookies.sbi (*) 2007-02-28 Includes\Revision.sbi (*) 2005-02-17 Includes\Tracks.uti 2007-02-28 Includes\TrojansC.sbi (*) 2007-02-28 Includes\SpybotsC.sbi (*) 2007-02-28 Includes\SecurityC.sbi (*) 2007-02-28 Includes\PUPSC.sbi (*) 2007-02-28 Includes\MalwareC.sbi (*) 2007-02-28 Includes\KeyloggersC.sbi (*) 2007-02-28 Includes\HijackersC.sbi (*) 2007-02-28 Includes\DialerC.sbi (*) --- System information --- Windows XP (Build: 2600) Service Pack 2 / Windows Media Player 9: Security Update for Windows Media Player 9 (KB917734) --- Startup entries list --- Located: HK_LM:Run, AVP command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe size: 155751 MD5: 250f20c64fd9eaa0f2d7844bca92e741 Located: HK_LM:Run, RemoteControl command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe size: 32768 MD5: 915a106a2fb87292cef0ad4f36adf313 Located: HK_CU:Run, ctfmon.exe command: C:\WINDOWS\system32\ctfmon.exe file: C:\WINDOWS\system32\ctfmon.exe size: 15360 MD5: 24232996a38c0b0cf151c2140ae29fc8 Located: HK_CU:Run, Spyware Doctor command: "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q file: C:\Program Files\Spyware Doctor\swdoctor.exe size: 3375104 MD5: 53d577860f1b4b0fbb8b8770bad60628 Located: System.ini, crypt32chain command: crypt32.dll file: crypt32.dll Located: System.ini, cryptnet command: cryptnet.dll file: cryptnet.dll Located: System.ini, cscdll command: cscdll.dll file: cscdll.dll Located: System.ini, klogon command: C:\WINDOWS\system32\klogon.dll file: C:\WINDOWS\system32\klogon.dll size: 94314 MD5: 3f97f0f4a9a6d21a1a496c1d8fe84e4e Located: System.ini, ScCertProp command: wlnotify.dll file: wlnotify.dll Located: System.ini, Schedule command: wlnotify.dll file: wlnotify.dll Located: System.ini, sclgntfy command: sclgntfy.dll file: sclgntfy.dll Located: System.ini, SensLogn command: WlNotify.dll file: WlNotify.dll Located: System.ini, termsrv command: wlnotify.dll file: wlnotify.dll Located: System.ini, WgaLogon command: file: Located: System.ini, wlballoon command: wlnotify.dll file: wlnotify.dll --- Browser helper object list --- {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} (BitComet ClickCapture) BHO name: BitComet ClickCapture CLSID name: BitComet Helper Path: C:\Program Files\BitComet\tools\ Long name: BitCometBHO.dll Short name: BITCOM~2.DLL Date (created): 1/11/2007 11:05:28 PM Date (last access): 3/7/2007 Date (last write): 1/11/2007 11:05:28 PM Filesize: 386624 Attributes: archive MD5: 8B148EFE8B203108FB3064AF38EF8C13 CRC32: DF87F475 {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} (Yahoo! IE Services Button) BHO name: CLSID name: Yahoo! IE Services Button Path: C:\Program Files\Yahoo!\Common\ Long name: yiesrvc.dll Short name: Date (created): 1/12/2007 9:39:38 AM Date (last access): 3/6/2007 Date (last write): 10/31/2006 3:29:16 PM Filesize: 198136 Attributes: archive MD5: F8981F09E8DA4FDB7F6B6E2B5361AEAE CRC32: 2CDBBB6C Version: 2006.10.31.3 --- ActiveX list --- --- Process list --- PID: 0 ( 0) [System] PID: 136 ( 4) \SystemRoot\System32\smss.exe PID: 212 ( 136) \??\C:\WINDOWS\system32\winlogon.exe PID: 256 ( 212) C:\WINDOWS\system32\services.exe size: 108032 MD5: C6CE6EEC82F187615D1002BB3BB50ED4 PID: 268 ( 212) C:\WINDOWS\system32\lsass.exe size: 13312 MD5: 84885F9B82F4D55C6146EBF6065D75D2 PID: 416 ( 256) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 524 ( 256) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 744 ( 728) C:\WINDOWS\Explorer.EXE size: 1032192 MD5: A0732187050030AE399B241436565E64 PID: 1056 ( 744) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe size: 4393096 MD5: 09CA174A605B480318731E691DC98539 PID: 4 ( 0) System PID: 188 ( 136) csrss.exe PID: 464 ( 256) svchost.exe --- Browser start & search pages list --- Spybot - Search & Destroy browser pages report, 3/7/2007 9:37:54 AM HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page C:\WINDOWS\system32\blank.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page http://www.yahoo.com/ HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@ http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page %SystemRoot%\system32\blank.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page about:blank HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm --- Winsock Layered Service Provider list --- --- Uninstall list --- Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal) uninstall cmd: C:\PROGRA~1\LAVASOFT\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\LAVASOFT\AD-AWA~1\INSTALL.LOG publisher: Lavasoft help link: http://www.lavasoft.com (AddressBook) BitComet 0.82 0.82 (BitComet) uninstall cmd: C:\Program Files\BitComet\uninst.exe publisher: ~RnySmile~ (Branding) CCleaner (remove only) (CCleaner) uninstall cmd: "C:\Program Files\CCleaner\uninst.exe" Cdex version 1.30 (CDex_is1) uninstall cmd: "C:\Program Files\CDex130\unins000.exe" (Connection Manager) (DirectAnimation) (DirectDrawEx) Download Accelerator Plus (DAP) 8000 (Build 135) (Download Accelerator Plus (DAP)) uninstall cmd: C:\PROGRA~1\DAP\DAPREMOVE.EXE publisher: Speedbit Ltd. contact: support@downloadaccelerator.com help link: http://redir.speedbit.com/redir.asp?ID=7066 (DXM_Runtime) (Fontcore) FreeRIP v2.951 2.951 (FreeRIP_is1) install location: C:\Program Files\FreeRIP\ uninstall cmd: "C:\Program Files\FreeRIP\unins000.exe" publisher: MGShareware HijackThis 1.99.1 1.99.1 (HijackThis) uninstall cmd: \\DSP1\My Completed Downloads\HijackThis.exe /uninstall publisher: Soeperman Enterprises Ltd. (ICW) (IE40) (IE4Data) (IE5BAKEX) (IEData) 5.2.4.2528 (IncrediMail) publisher: IncrediMail Ltd. help link: http://www.incredimail.com/english/help/index.html (InstallShield Uninstall Information) iTunes 4.7.1.30 (InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6}) version: 67567617 version (major): 4 version (minor): 7 estimated size: 13607 install date: 20051207 install location: C:\Program Files\iTunes\ install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\ uninstall cmd: C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3CB41017-F5CA-4C56-934C-ED02156251E6} publisher: Apple Computer, Inc. contact: AppleCare Support help link: http://www.info.apple.com/ help telephone: 1-800-275-2273 Kaspersky Anti-Virus 6.0 6.0.1.411 (InstallWIX_{75193929-9A52-4CA4-98DE-8C7296940920}) uninstall cmd: MsiExec.exe /I{75193929-9A52-4CA4-98DE-8C7296940920} publisher: Kaspersky Lab help link: http://www.kaspersky.com/support.asp (KB884016) (KB893803) Macromedia Shockwave Player 10.1.0.11 (Macromedia Shockwave Player) uninstall cmd: C:\WINDOWS\system32\MACROMED\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\MACROMED\SHOCKW~1\Install.log publisher: Macromedia, Inc. help link: http://www.macromedia.com/support/shockwave (MobileOptionPack) (MPlayer2) (MSI30-Beta1) (MSI30-Beta2) (MSI30-KB884016) (MSI30-RC1) (MSI30-RC2) (MSI30a-KB884016) (MSI31-Beta) (MSI31-RC1) (NetMeeting) (OutlookExpress) (PCHealth) uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf QuickTime (QuickTime) uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log (RealJukebox 1.0) uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 RealPlayer (RealPlayer 6.0) uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 (SchedulingAgent) (Shockwave) Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash) uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q publisher: Adobe Systems help link: http://www.adobe.com/go/flashplayer_support/ NetoDragon 56K Voice Modem (SLAMRNTV) uninstall cmd: C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1) install location: C:\Program Files\Spybot - Search & Destroy\ uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe" publisher: Safer Networking Limited Spyware Doctor 4.0 4.0 (Spyware Doctor_is1) install date: 20070201 install location: C:\Program Files\Spyware Doctor\ uninstall cmd: "C:\Program Files\Spyware Doctor\unins000.exe" publisher: PC Tools help link: http://www.pctools.com/spyware-doctor/support/ StartUp Manager (StartUp Manager) uninstall cmd: C:\Program Files\INAC\StartUp Manager\uninstall.exe Windows Genuine Advantage Notifications (KB905474) 1.5.0532.0 (WgaNotify) install date: 20060503 publisher: Microsoft Corporation help link: http://support.microsoft.com?kbid=905474 Winamp (remove only) (Winamp) uninstall cmd: "C:\Program Files\Winamp\UninstWA.exe" WinRAR archiver (WinRAR archiver) uninstall cmd: C:\Program Files\WinRAR\uninstall.exe WinZip 8.1 (4331) (WinZip) version (major): 8 version (minor): 1 install location: C:\PROGRA~1\WINZIP\ uninstall cmd: "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall publisher: WinZip Computing, Inc. help link: http://www.winzip.com/xsupport.htm Yahoo! Browser Services (Yahoo! Customizations) uninstall cmd: C:\PROGRA~1\YAHOO!\COMMON\unyext.exe Yahoo! Messenger (Yahoo! Messenger) uninstall cmd: C:\PROGRA~1\YAHOO!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\YAHOO!\MESSEN~1\INSTALL.LOG ZTE ADSL Dialer 1.0j_MY (ZTE ADSL Dialer_is1) uninstall cmd: "C:\Program Files\ZTE\ADSLDIAL\unins000.exe" publisher: ZTE Inc. help link: http://www.ZTE.com.cn AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC}) install location: C:\Program Files\DivX AstraPix 450/460 ({26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}) uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}\Setup.exe" Java(TM) SE Runtime Environment 6 1.6.0.0 ({3248F0A8-6813-11D6-A77B-00B0D0160000}) version: 17170432 version (major): 1 version (minor): 6 estimated size: 111474 install date: 20070228 install source: C:\Documents and Settings\User\Application Data\Sun\Java\jre1.6.0\ uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000} publisher: Sun Microsystems, Inc. contact: http://java.com help link: http://java.com readme: C:\Program Files\Java\jre1.6.0\README.txt WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}) version: 154279267 version (major): 9 version (minor): 50 estimated size: 2500 install date: 20051207 install source: C:\WINDOWS\system32\ publisher: Microsoft Corporation help link: http://www.microsoft.com/windows iTunes 4.7.1.30 ({3CB41017-F5CA-4C56-934C-ED02156251E6}) version: 67567617 version (major): 4 version (minor): 7 estimated size: 13607 install date: 20051207 install location: C:\Program Files\iTunes\ install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\ publisher: Apple Computer, Inc. contact: AppleCare Support help link: http://www.info.apple.com/ help telephone: 1-800-275-2273 ({62369F2F77534556AEF4C58152E3BDE5}) PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall Kaspersky Anti-Virus 6.0 6.0.1.411 ({75193929-9A52-4CA4-98DE-8C7296940920}) version: 100663297 version (major): 6 estimated size: 27246 install date: 20070124 install source: C:\kav\kav6.0\english\ publisher: Kaspersky Lab help link: http://www.kaspersky.com/support.asp DivX 6.1.1 ({7B63B2922B174135AFC0E1377DD81EC2}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC publisher: DivX, Inc. DivX Player 6.1.1 ({8ADFC4160D694100B5B8A22DE9DCABD9}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER publisher: DivXNetworks, Inc. Microsoft Office Professional Edition 2003 11.0.5614.0 ({90110409-6000-11D3-8CFE-0150048383C9}) version: 184554990 version (major): 11 estimated size: 379454 install date: 20051219 install location: C:\Program Files\Microsoft Office\ install source: D:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\ uninstall cmd: MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9} publisher: Microsoft Corporation help link: http://www.microsoft.com/support readme: C:\Program Files\Microsoft Office\OFFICE11\1033\OFREADME.HTM Microsoft Office XP Small Business 10.0.2627.01 ({91130409-6000-11D3-8CFE-0050048383C9}) version: 167774787 version (major): 10 estimated size: 474490 install date: 20051207 install location: INSTALLLOCATION install source: E:\ uninstall cmd: MsiExec.exe /I{91130409-6000-11D3-8CFE-0050048383C9} publisher: Microsoft Corporation help link: http://www.microsoft.com/support readme: C:\Program Files\Microsoft Office\Office10\1033\OFREAD10.HTM Adobe Reader 7.0 7.0.0 ({AC76BA86-7AD7-1033-7B44-A70000000000}) version: 117440512 version (major): 7 estimated size: 65659 install date: 20051207 install location: C:\Program Files\Adobe\Acrobat 7.0\Reader\ install source: C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\ENU\ uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000} publisher: Adobe Systems Incorporated comments: contact: help link: http://www.adobe.com/support/main.html help telephone: readme: C:\Program Files\Adobe\Acrobat 7.0\Reader\Readme.htm ACDSee 8 8.0.39 ({AE80641A-0C8D-4670-A518-B4EC154B1027}) version: 134217767 version (major): 8 estimated size: 34108 install date: 20061213 install location: C:\Program Files\ACD Systems\ install source: C:\WINDOWS\Downloaded Installations\{015363C3-0256-4F1B-95E5-304040BF9C4D}\ uninstall cmd: MsiExec.exe /I{AE80641A-0C8D-4670-A518-B4EC154B1027} publisher: ACD Systems Ltd. comments: This database contains the necessary files and logic to install ACDSee and additional support programs and plug-ins where appropriate contact: Technical Support help link: http://go.acdsystems.com/client/en/534017 help telephone: 250-544-6701 ({B13A7C41581B411290FBC0395694E2A9}) DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN publisher: DivX,Inc. Nokia Connectivity Cable Driver 1.00.159 ({B7757137-0A71-4A9F-8A82-1AE4A1B73420}) version: 16777375 version (major): 1 estimated size: 400 install date: 20061215 install location: C:\Program Files\Nokia\Connectivity Cable Driver\ install source: C:\Program Files\Nokia\Nokia PC Suite 6\ uninstall cmd: MsiExec.exe /X{B7757137-0A71-4A9F-8A82-1AE4A1B73420} publisher: Nokia help link: http://www.nokia.com/nokia/0,8764,75877,00.html jetAudio 6.1 ({DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}) version: 100728832 install date: 20060401 install location: C:\Program Files\JetAudio install source: C:\DOCUME~1\User\LOCALS~1\Temp\bye9B.tmp\Disk1\ uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -l0x9 -removeonly publisher: JetAudio, Inc. Windows Live Messenger 8.0.0812.00 ({FCE50DB8-C610-4C42-BE5C-193F46C6F812}) version: 134218540 version (major): 8 estimated size: 33821 install date: 20070110 install source: C:\DOCUME~1\User\LOCALS~1\Temp\IXP000.TMP\ uninstall cmd: MsiExec.exe /I{FCE50DB8-C610-4C42-BE5C-193F46C6F812} publisher: Microsoft Corporation Nokia PC Suite 6.70.22 ({FF059F2A-62A7-4E6A-B305-559591D2769E}) version: 105250838 version (major): 6 version (minor): 70 estimated size: 36140 install date: 20061215 install location: C:\Program Files\Nokia\ install source: E:\software\PCSuite\ uninstall cmd: MsiExec.exe /I{FF059F2A-62A7-4E6A-B305-559591D2769E} publisher: Nokia help link: http://www.nokia.com/nokia/0,8764,75877,00.html --- System Services --- Service (registry key): Abiosdsk Start: 4 Type: 1 Error Control: 0 Service (registry key): abp480n5 Start: 4 Type: 1 Error Control: 1 Service (registry key): ac97intc Display name: Intel(r) 82801 Audio Driver Install Service (WDM) Image path: system32\drivers\ac97intc.sys Image size: 96256 Image MD5: 0F2D66D5F08EBE2F77BB904288DCF6F0 Start: 3 Type: 1 Error Control: 1 Service (registry key): ACPI Display name: Microsoft ACPI Driver Image path: system32\DRIVERS\ACPI.sys Image size: 187776 Image MD5: A10C7534F7223F4A73A948967D00E69B Start: 0 Type: 1 Error Control: 1 Service (registry key): ACPIEC Start: 4 Type: 1 Error Control: 1 Service (registry key): adpu160m Start: 4 Type: 1 Error Control: 1 Service (registry key): aec Display name: Microsoft Kernel Acoustic Echo Canceller Image path: system32\drivers\aec.sys Image size: 142464 Image MD5: 841F385C6CFAF66B58FBD898722BB4F0 Start: 3 Type: 1 Error Control: 1 Service (registry key): AFD Display name: AFD Description: AFD Networking Support Environment Image path: \SystemRoot\System32\drivers\afd.sys Start: 1 Type: 1 Error Control: 1 Service (registry key): Aha154x Start: 4 Type: 1 Error Control: 1 Service (registry key): aic78u2 Start: 4 Type: 1 Error Control: 1 Service (registry key): aic78xx Start: 4 Type: 1 Error Control: 1 Service (registry key): Alerter Display name: Alerter Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): ALG Display name: Application Layer Gateway Service Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\System32\alg.exe Image size: 44544 Image MD5: F1958FBF86D5C004CF19A5951A9514B7 Start: 3 Type: 16 Error Control: 1 Service (registry key): AliIde Start: 4 Type: 1 Error Control: 1 Service (registry key): amsint Start: 4 Type: 1 Error Control: 1 Service (registry key): AppMgmt Display name: Application Management Description: Provides software installation services such as Assign, Publish, and Remove. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): asc Start: 4 Type: 1 Error Control: 1 Service (registry key): asc3350p Start: 4 Type: 1 Error Control: 1 Service (registry key): asc3550 Start: 4 Type: 1 Error Control: 1 Service (registry key): AsyncMac Display name: RAS Asynchronous Media Driver Description: RAS Asynchronous Media Driver Image path: system32\DRIVERS\asyncmac.sys Image size: 14336 Image MD5: 02000ABF34AF4C218C35D257024807D6 Start: 3 Type: 1 Error Control: 1 Service (registry key): atapi Display name: Standard IDE/ESDI Hard Disk Controller Image path: system32\DRIVERS\atapi.sys Image size: 95360 Image MD5: CDFE4411A69C224BD1D11B2DA92DAC51 Start: 0 Type: 1 Error Control: 1 Service (registry key): Atdisk Start: 4 Type: 1 Error Control: 0 Service (registry key): Atmarpc Display name: ATM ARP Client Protocol Description: ATM ARP Client Protocol Image path: system32\DRIVERS\atmarpc.sys Image size: 59904 Image MD5: EC88DA854AB7D7752EC8BE11A741BB7F Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): AudioSrv Display name: Windows Audio Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: PlugPlay,RpcSs Service (registry key): audstub Display name: Audio Stub Driver Image path: system32\DRIVERS\audstub.sys Image size: 3072 Image MD5: D9F724AA26C010A217C97606B160ED68 Start: 3 Type: 1 Error Control: 1 Service (registry key): AVP Start: 2 Type: 0 Error Control: 0 Service (registry key): AxPsHook11 Start: 0 Type: 0 Error Control: 0 Service (registry key): BattC Start: 0 Type: 0 Error Control: 0 Service (registry key): Beep Start: 1 Type: 1 Error Control: 1 Service (registry key): BITS Display name: Background Intelligent Transfer Service Description: Transfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): Browser Display name: Computer Browser Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation,LanmanServer Service (registry key): cbidf2k Start: 4 Type: 1 Error Control: 1 Service (registry key): cd20xrnt Start: 4 Type: 1 Error Control: 1 Service (registry key): Cdaudio Start: 1 Type: 1 Error Control: 0 Service (registry key): Cdfs Start: 4 Type: 2 Error Control: 1 Depends On group: "SCSI CDROM Class" Service (registry key): Cdrom Display name: CD-ROM Driver Image path: system32\DRIVERS\cdrom.sys Image size: 49536 Image MD5: AF9C19B3100FE010496B1A27181FBF72 Start: 1 Type: 1 Error Control: 1 Depends On group: "SCSI miniport" Service (registry key): Changer Start: 1 Type: 1 Error Control: 0 Service (registry key): CiSvc Display name: Indexing Service Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language. Object name: LocalSystem Image path: %SystemRoot%\system32\cisvc.exe Image size: 5632 Image MD5: 3192BD04D032A9C4A85A3278C268A13A Start: 3 Type: 288 Error Control: 1 Depends On services: RPCSS Service (registry key): ClipSrv Display name: ClipBook Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\clipsrv.exe Image size: 33280 Image MD5: C8DEC22C4137D7A90F8BDF41CA4B82AE Start: 4 Type: 16 Error Control: 1 Depends On services: NetDDE Service (registry key): CmdIde Start: 4 Type: 1 Error Control: 1 Service (registry key): COMSysApp Display name: COM+ System Application Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} Image size: 5120 Image MD5: DD87DB7387B9EB441C5674888A0D840C Start: 3 Type: 16 Error Control: 1 Depends On services: rpcss Service (registry key): ContentFilter Start: 0 Type: 0 Error Control: 0 Service (registry key): ContentIndex Start: 0 Type: 0 Error Control: 0 Service (registry key): Cpqarray Start: 4 Type: 1 Error Control: 1 Service (registry key): CryptSvc Display name: Cryptographic Services Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): dac2w2k Start: 4 Type: 1 Error Control: 0 Service (registry key): dac960nt Start: 4 Type: 1 Error Control: 1 Service (registry key): DcomLaunch Display name: DCOM Server Process Launcher Description: Provides launch functionality for DCOM services. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost -k DcomLaunch Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): Dhcp Display name: DHCP Client Description: Manages network configuration by registering and updating IP addresses and DNS names. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Tcpip,Afd,NetBT Service (registry key): Disk Display name: Disk Driver Image path: system32\DRIVERS\disk.sys Image size: 36352 Image MD5: 00CA44E4534865F8A3B64F7C0984BFF0 Start: 0 Type: 1 Error Control: 1 Depends On group: "SCSI miniport" Service (registry key): dmadmin Display name: Logical Disk Manager Administrative Service Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops. Object name: LocalSystem Image path: %SystemRoot%\System32\dmadmin.exe /com Image size: 224768 Image MD5: 554C7CB178FE3BD12450B81AD63ADBC3 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs,PlugPlay,DmServer Service (registry key): dmboot Image path: System32\drivers\dmboot.sys Image size: 799744 Image MD5: C0FBB516E06E243F0CF31F597E7EBF7D Start: 4 Type: 1 Error Control: 1 Service (registry key): dmio Display name: Logical Disk Manager Driver Image path: system32\DRIVERS\dmio.sys Image size: 153344 Image MD5: F5E7B358A732D09F4BCF2824B88B9E28 Start: 0 Type: 1 Error Control: 1 Service (registry key): dmload Start: 0 Type: 1 Error Control: 1 Service (registry key): dmserver Display name: Logical Disk Manager Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs,PlugPlay Service (registry key): DMusic Display name: Microsoft Kernel DLS Syntheiszer Image path: system32\drivers\DMusic.sys Image size: 52864 Image MD5: A6F881284AC1150E37D9AE47FF601267 Start: 3 Type: 1 Error Control: 1 Service (registry key): Dnscache Display name: DNS Client Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\svchost.exe -k NetworkService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Tcpip Service (registry key): dpti2o Start: 4 Type: 1 Error Control: 1 Service (registry key): drmkaud Display name: Microsoft Kernel DRM Audio Descrambler Image path: system32\drivers\drmkaud.sys Image size: 2944 Image MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E Start: 3 Type: 1 Error Control: 1 Service (registry key): ERSvc Display name: Error Reporting Service Description: Allows error reporting for services and applictions running in non-standard environments. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RpcSs Service (registry key): Eventlog Display name: Event Log Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped. Object name: LocalSystem Image path: %SystemRoot%\system32\services.exe Image size: 108032 Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4 Start: 2 Type: 32 Error Control: 1 Service (registry key): EventSystem Display name: COM+ Event System Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): Fastfat Start: 4 Type: 2 Error Control: 1 Service (registry key): FastUserSwitchingCompatibility Display name: Fast User Switching Compatibility Description: Provides management for applications that require assistance in a multiple user environment. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: TermService Service (registry key): Fdc Display name: Floppy Disk Controller Driver Image path: system32\DRIVERS\fdc.sys Image size: 27392 Image MD5: CED2E8396A8838E59D8FD529C680E02C Start: 3 Type: 1 Error Control: 1 Service (registry key): Fips Start: 1 Type: 1 Error Control: 1 Service (registry key): Flpydisk Display name: Floppy Disk Driver Image path: system32\DRIVERS\flpydisk.sys Image size: 20480 Image MD5: 0DD1DE43115B93F4D85E889D7A86F548 Start: 3 Type: 1 Error Control: 1 Service (registry key): FltMgr Display name: FltMgr Description: File System Filter Manager Driver Image path: system32\DRIVERS\fltMgr.sys Image size: 124800 Image MD5: 157754F0DF355A9E0A6F54721914F9C6 Start: 0 Type: 2 Error Control: 1 Service (registry key): Fs_Rec Start: 1 Type: 8 Error Control: 0 Service (registry key): Ftdisk Display name: Volume Manager Driver Image path: system32\DRIVERS\ftdisk.sys Image size: 125056 Image MD5: 6AC26732762483366C3969C9E4D2259D Start: 0 Type: 1 Error Control: 1 Service (registry key): gameenum Display name: Game Port Enumerator Image path: system32\DRIVERS\gameenum.sys Image size: 10624 Image MD5: 5F92FD09E5610A5995DA7D775EADCD12 Start: 3 Type: 1 Error Control: 0 Service (registry key): GEARAspiWDM Display name: GEAR CDRom Filter Image path: SYSTEM32\DRIVERS\GEARAspiWDM.sys Image size: 13872 Image MD5: 2FB04DB459C71F416EE8B05448CA4AC3 Start: 3 Type: 1 Error Control: 1 Service (registry key): Gpc Display name: Generic Packet Classifier Description: Generic Packet Classifier Image path: system32\DRIVERS\msgpc.sys Image size: 35072 Image MD5: C0F1D4A21DE5A415DF8170616703DEBF Start: 3 Type: 1 Error Control: 1 Service (registry key): helpsvc Display name: Help and Support Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): HidServ Display name: Human Interface Device Access Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): hpn Start: 4 Type: 1 Error Control: 1 Service (registry key): HSFHWBS2 Image path: system32\DRIVERS\HSFBS2S2.sys Image size: 220032 Image MD5: 970178E8E003EB1481293830069624B9 Start: 3 Type: 1 Error Control: 0 Service (registry key): HSF_DP Image path: system32\DRIVERS\HSFDPSP2.sys Image size: 1041536 Image MD5: EBB354438A4C5A3327FB97306260714A Start: 3 Type: 1 Error Control: 0 Service (registry key): HTTP Display name: HTTP Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start. Image path: System32\Drivers\HTTP.sys Image size: 263040 Image MD5: C19B522A9AE0BBC3293397F3055E80A1 Start: 3 Type: 1 Error Control: 1 Service (registry key): HTTPFilter Display name: HTTP SSL Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: HTTP Service (registry key): i2omgmt Start: 1 Type: 1 Error Control: 1 Service (registry key): i2omp Start: 4 Type: 1 Error Control: 1 Service (registry key): i8042prt Display name: i8042 Keyboard and PS/2 Mouse Port Driver Image path: system32\DRIVERS\i8042prt.sys Image size: 52736 Image MD5: 5502B58EEF7486EE6F93F3F164DCB808 Start: 1 Type: 1 Error Control: 1 Service (registry key): i81x Image path: system32\DRIVERS\i81xnt5.sys Image size: 161020 Image MD5: 06B7EF73BA5F302EECC294CDF7E19702 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP0 Image path: system32\DRIVERS\wADV01nt.sys Image size: 12415 Image MD5: 7B5B44EFE5EB9DADFB8EE29700885D23 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP1 Image path: system32\DRIVERS\wADV02NT.sys Image size: 12127 Image MD5: EB1F6BAB6C22EDE0BA551B527475F7E9 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP2 Image path: system32\DRIVERS\wADV05NT.sys Image size: 11775 Image MD5: 03CE989D846C1AA81145CB22FCB86D06 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP3 Image path: system32\DRIVERS\wSiINTxx.sys Image size: 12063 Image MD5: 525849B4469DE021D5D61B4DB9BE3A9D Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP4 Image path: system32\DRIVERS\wVchNTxx.sys Image size: 19455 Image MD5: 589C2BCDB5BD602BF7B63D210407EF8C Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP5 Image path: system32\DRIVERS\wADV07nt.sys Image size: 11807 Image MD5: 0308AEF61941E4AF478FA1A0F83812F5 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP6 Image path: system32\DRIVERS\wADV08nt.sys Image size: 11295 Image MD5: 714038A8AA5DE08E12062202CD7EAEB5 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP7 Image path: system32\DRIVERS\wADV09nt.sys Image size: 11871 Image MD5: 7BB3AA595E4507A788DE1CDC63F4C8C4 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV0 Image path: system32\DRIVERS\wATV01nt.sys Image size: 29311 Image MD5: D83BDD5C059667A2F647A6BE5703A4D2 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV1 Image path: system32\DRIVERS\wATV02NT.sys Image size: 19551 Image MD5: ED968D23354DAA0D7C621580C012A1F6 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV3 Image path: system32\DRIVERS\wATV04nt.sys Image size: 33599 Image MD5: D738273F218A224C1DDAC04203F27A84 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV4 Image path: system32\DRIVERS\wCh7xxNT.sys Image size: 23615 Image MD5: 0052D118995CBAB152DAABE6106D1442 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV5 Image path: system32\DRIVERS\wATV10nt.sys Image size: 25471 Image MD5: 791CC45DE6E50445BE72E8AD6401FF45 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV6 Image path: system32\DRIVERS\wATV06nt.sys Image size: 22271 Image MD5: 352FA0E98BC461CE1CE5D41F64DB558D Start: 3 Type: 1 Error Control: 0 Service (registry key): ikhfile Display name: File Security Kernel Anti-Spyware Driver Description: File Security Kernel Anti-Spyware Image path: system32\drivers\ikhfile.sys Image size: 30592 Image MD5: F24866EE5C0819E9B1B58F2C00AF078E Start: 1 Type: 2 Error Control: 0 Service (registry key): ikhlayer Display name: Kernel Anti-Spyware Driver Description: Kernel Anti-Spyware Image path: system32\drivers\ikhlayer.sys Image size: 51072 Image MD5: 9A2CFF8E3EF0A35F23F544FAB915C060 Start: 1 Type: 1 Error Control: 0 Service (registry key): Imapi Display name: CD-Burning Filter Driver Image path: system32\DRIVERS\imapi.sys Image size: 41856 Image MD5: F8AA320C6A0409C0380E5D8A99D76EC6 Start: 1 Type: 1 Error Control: 1 Service (registry key): ImapiService Display name: IMAPI CD-Burning COM Service Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\imapi.exe Image size: 150016 Image MD5: FA788520BCAC0F5D9D5CDE5615C0D931 Start: 3 Type: 16 Error Control: 1 Service (registry key): inetaccs Start: 0 Type: 0 Error Control: 0 Service (registry key): ini910u Start: 4 Type: 1 Error Control: 1 Service (registry key): Inport Start: 0 Type: 0 Error Control: 0 Service (registry key): IntelIde Image path: system32\DRIVERS\intelide.sys Image size: 5504 Image MD5: 2D722B2B54AB55B2FA475EB58D7B2AAD Start: 0 Type: 1 Error Control: 1 Service (registry key): Ip6Fw Display name: IPv6 Windows Firewall Driver Description: Provides intrusion prevention service for a home or small office network. Image path: system32\DRIVERS\Ip6Fw.sys Image size: 29056 Image MD5: 4448006B6BC60E6C027932CFC38D6855 Start: 3 Type: 1 Error Control: 1 Service (registry key): IpFilterDriver Display name: IP Traffic Filter Driver Description: IP Traffic Filter Driver Image path: system32\DRIVERS\ipfltdrv.sys Image size: 32896 Image MD5: 731F22BA402EE4B62748ADAF6363C182 Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): IpInIp Display name: IP in IP Tunnel Driver Description: IP in IP Tunnel Driver Image path: system32\DRIVERS\ipinip.sys Image size: 20992 Image MD5: E1EC7F5DA720B640CD8FB8424F1B14BB Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): IpNat Display name: IP Network Address Translator Description: IP Network Address Translator Image path: system32\DRIVERS\ipnat.sys Image size: 134912 Image MD5: B5A8E215AC29D24D60B4D1250EF05ACE Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): iPodService Display name: iPod Service Description: iPod hardware management services Object name: LocalSystem Image path: "C:\Program Files\iPod\bin\iPodService.exe" Image size: 327680 Image MD5: 3AC9F355ECCE7D6BB8FF184E9B2229A9 Start: 3 Type: 16 Error Control: 0 Service (registry key): IPSec Display name: IPSEC driver Description: IPSEC driver Image path: system32\DRIVERS\ipsec.sys Image size: 74752 Image MD5: 64537AA5C003A6AFEEE1DF819062D0D1 Start: 1 Type: 1 Error Control: 1 Service (registry key): IRENUM Display name: IR Enumerator Service Image path: system32\DRIVERS\irenum.sys Image size: 11264 Image MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410 Start: 3 Type: 1 Error Control: 1 Service (registry key): ISAPISearch Start: 0 Type: 0 Error Control: 0 Service (registry key): isapnp Display name: PnP ISA/EISA Bus Driver Image path: system32\DRIVERS\isapnp.sys Image size: 35840 Image MD5: E504F706CCB699C2596E9A3DA1596E87 Start: 0 Type: 1 Error Control: 3 Service (registry key): Kbdclass Display name: Keyboard Class Driver Image path: system32\DRIVERS\kbdclass.sys Image size: 24576 Image MD5: EBDEE8A2EE5393890A1ACEE971C4C246 Start: 1 Type: 1 Error Control: 1 Service (registry key): kl1 Display name: Kl1 Image path: system32\drivers\kl1.sys Image size: 104448 Image MD5: BC02A8E0DD5DC266E5CC3636DD454403 Start: 0 Type: 1 Error Control: 1 Service (registry key): klif Display name: Klif Image path: \??\C:\WINDOWS\system32\drivers\klif.sys Image size: 174864 Image MD5: F0653E5E164123CAD51EDDA22418C2A3 Start: 1 Type: 1 Error Control: 1 Service (registry key): kmixer Display name: Microsoft Kernel Wave Audio Mixer Image path: system32\drivers\kmixer.sys Image size: 171776 Image MD5: D93CAD07C5683DB066B0B2D2D3790EAD Start: 3 Type: 1 Error Control: 1 Service (registry key): KSecDD Start: 0 Type: 1 Error Control: 1 Service (registry key): lanmanserver Display name: Server Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): lanmanworkstation Display name: Workstation Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): lbrtfdc Start: 1 Type: 1 Error Control: 0 Service (registry key): ldap Start: 0 Type: 0 Error Control: 0 Service (registry key): LicenseService Start: 0 Type: 0 Error Control: 0 Service (registry key): LmHosts Display name: TCP/IP NetBIOS Helper Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: NetBT,Afd Service (registry key): MDM Display name: Machine Debug Manager Description: Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly. Object name: LocalSystem Image path: "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe" Image size: 322120 Image MD5: 11F714F85530A2BD134074DC30E99FCA Start: 2 Type: 272 Error Control: 1 Depends On services: RPCSS Service (registry key): mdmxsdk Image path: system32\DRIVERS\mdmxsdk.sys Image size: 11868 Image MD5: 195741AEE20369980796B557358CD774 Start: 2 Type: 1 Error Control: 0 Service (registry key): Messenger Display name: Messenger Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS Service (registry key): mnmdd Start: 1 Type: 1 Error Control: 0 Service (registry key): mnmsrvc Display name: NetMeeting Remote Desktop Sharing Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\mnmsrvc.exe Image size: 32768 Image MD5: F6415361201915B9FE3896B0E4E724FF Start: 3 Type: 272 Error Control: 1 Service (registry key): Modem Start: 3 Type: 1 Error Control: 0 Service (registry key): MODEMCSA Display name: Unimodem Streaming Filter Device Image path: system32\drivers\MODEMCSA.sys Image size: 16128 Image MD5: 1992E0D143B09653AB0F9C5E04B0FD65 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mouclass Display name: Mouse Class Driver Image path: system32\DRIVERS\mouclass.sys Image size: 23040 Image MD5: 34E1F0031153E491910E12551400192C Start: 1 Type: 1 Error Control: 1 Service (registry key): MountMgr Start: 0 Type: 1 Error Control: 1 Service (registry key): mraid35x Start: 4 Type: 1 Error Control: 1 Service (registry key): MRxDAV Display name: WebDav Client Redirector Description: WebDav Client Redirector Image path: system32\DRIVERS\mrxdav.sys Image size: 181248 Image MD5: 46EDCC8F2DB2F322C24F48785CB46366 Start: 3 Type: 2 Error Control: 1 Service (registry key): MRxSmb Display name: MRXSMB Description: MRXSMB Image path: system32\DRIVERS\mrxsmb.sys Image size: 451456 Image MD5: 1FD607FC67F7F7C633C3DA65BFC53D18 Start: 1 Type: 2 Error Control: 1 Service (registry key): MSDTC Display name: Distributed Transaction Coordinator Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\NetworkService Image path: C:\WINDOWS\system32\msdtc.exe Image size: 6144 Image MD5: C7C3D89EB0A6F3DBA622EA737FA335B1 Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS,SamSS Service (registry key): Msfs Start: 1 Type: 2 Error Control: 1 Service (registry key): MSIServer Display name: Windows Installer Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\msiexec.exe /V Image size: 77312 Image MD5: 4236AE241F193F58ADAB141CECCFD5F4 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): MSKSSRV Display name: Microsoft Streaming Service Proxy Image path: system32\drivers\MSKSSRV.sys Image size: 7552 Image MD5: AE431A8DD3C1D0D0610CDBAC16057AD0 Start: 3 Type: 1 Error Control: 1 Service (registry key): MSPCLOCK Display name: Microsoft Streaming Clock Proxy Image path: system32\drivers\MSPCLOCK.sys Image size: 5376 Image MD5: 13E75FEF9DFEB08EEDED9D0246E1F448 Start: 3 Type: 1 Error Control: 1 Service (registry key): MSPQM Display name: Microsoft Streaming Quality Manager Proxy Image path: system32\drivers\MSPQM.sys Image size: 4992 Image MD5: 1988A33FF19242576C3D0EF9CE785DA7 Start: 3 Type: 1 Error Control: 1 Service (registry key): mssmbios Display name: Microsoft System Management BIOS Driver Image path: system32\DRIVERS\mssmbios.sys Image size: 15488 Image MD5: 469541F8BFD2B32659D5D463A6714BCE Start: 3 Type: 1 Error Control: 1 Service (registry key): ms_mpu401 Display name: Microsoft MPU-401 MIDI UART Driver Image path: system32\drivers\msmpu401.sys Image size: 2944 Image MD5: CA3E22598F411199ADC2DFEE76CD0AE0 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mtlmnt5 Display name: Mtlmnt5 Image path: system32\DRIVERS\Mtlmnt5.sys Image size: 221736 Image MD5: 32CE8D0359672BCB720BF82C86A50D71 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mtlstrm Display name: Mtlstrm Image path: system32\DRIVERS\Mtlstrm.sys Image size: 1301128 Image MD5: 8ADA829D3D7CF2DB7B1C41F3C7BEAA79 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mup Display name: Mup Start: 0 Type: 2 Error Control: 1 Service (registry key): NDIS Display name: NDIS System Driver Start: 0 Type: 1 Error Control: 1 Service (registry key): NdisTapi Display name: Remote Access NDIS TAPI Driver Description: Remote Access NDIS TAPI Driver Image path: system32\DRIVERS\ndistapi.sys Image size: 9600 Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C Start: 3 Type: 1 Error Control: 1 Service (registry key): Ndisuio Display name: NDIS Usermode I/O Protocol Description: NDIS Usermode I/O Protocol Image path: system32\DRIVERS\ndisuio.sys Image size: 12928 Image MD5: 34D6CD56409DA9A7ED573E1C90A308BF Start: 3 Type: 1 Error Control: 1 Service (registry key): NdisWan Display name: Remote Access NDIS WAN Driver Description: Remote Access NDIS WAN Driver Image path: system32\DRIVERS\ndiswan.sys Image size: 91776 Image MD5: 0B90E255A9490166AB368CD55A529893 Start: 3 Type: 1 Error Control: 1 Service (registry key): NDProxy Start: 3 Type: 1 Error Control: 1 Service (registry key): NetBIOS Display name: NetBIOS Interface Description: NetBIOS Interface Image path: system32\DRIVERS\netbios.sys Image size: 34560 Image MD5: 3A2ACA8FC1D7786902CA434998D7CEB4 Start: 1 Type: 2 Error Control: 1 Service (registry key): NetBT Display name: NetBios over Tcpip Description: NetBios over Tcpip Image path: system32\DRIVERS\netbt.sys Image size: 162816 Image MD5: 0C80E410CD2F47134407EE7DD19CC86B Start: 1 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): NetDDE Display name: Network DDE Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\netdde.exe Image size: 111104 Image MD5: 05AFB5AD06462257BEA7495283C86D50 Start: 4 Type: 32 Error Control: 1 Depends On services: NetDDEDSDM Service (registry key): NetDDEdsdm Display name: Network DDE DSDM Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\netdde.exe Image size: 111104 Image MD5: 05AFB5AD06462257BEA7495283C86D50 Start: 4 Type: 32 Error Control: 1 Service (registry key): Netlogon Display name: Net Logon Description: Supports pass-through authentication of account logon events for computers in a domain. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 3 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): Netman Display name: Network Connections Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 288 Error Control: 1 Depends On services: RpcSs Service (registry key): Nla Display name: Network Location Awareness (NLA) Description: Collects and stores network configuration and location information, and notifies applications when this information changes. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: Tcpip,Afd Service (registry key): Nokia USB Generic Display name: Nokia USB Generic Image path: system32\drivers\nmwcdc.sys Image size: 8704 Image MD5: 19CBCC1C8168FD6736DE06F287A1413E Start: 3 Type: 1 Error Control: 0 Service (registry key): Nokia USB Modem Display name: Nokia USB Modem Image path: system32\drivers\nmwcdcm.sys Image size: 12800 Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F Start: 3 Type: 1 Error Control: 0 Service (registry key): Nokia USB Phone Parent Display name: Nokia USB Phone Parent Image path: system32\drivers\nmwcd.sys Image size: 124928 Image MD5: 09899CA1E1DF288BEB768461401D18EE Start: 3 Type: 1 Error Control: 1 Service (registry key): Nokia USB Port Display name: Nokia USB Port Image path: system32\drivers\nmwcdcj.sys Image size: 12800 Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F Start: 3 Type: 1 Error Control: 0 Service (registry key): Npfs Start: 1 Type: 2 Error Control: 1 Service (registry key): Ntfs Start: 4 Type: 2 Error Control: 1 Service (registry key): NtLmSsp Display name: NT LM Security Support Provider Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 3 Type: 32 Error Control: 1 Service (registry key): NtmsSvc Display name: Removable Storage Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): NtMtlFax Display name: NtMtlFax Image path: system32\DRIVERS\NtMtlFax.sys Image size: 167384 Image MD5: F11E04E2D0034172EB2938D0BBC7B05B Start: 3 Type: 1 Error Control: 1 Service (registry key): Null Start: 1 Type: 1 Error Control: 1 Service (registry key): NwlnkFlt Display name: IPX Traffic Filter Driver Description: IPX Traffic Filter Driver Image path: system32\DRIVERS\nwlnkflt.sys Image size: 12416 Image MD5: B305F3FAD35083837EF46A0BBCE2FC57 Start: 3 Type: 1 Error Control: 1 Depends On services: NwlnkFwd Service (registry key): NwlnkFwd Display name: IPX Traffic Forwarder Driver Description: IPX Traffic Forwarder Driver Image path: system32\DRIVERS\nwlnkfwd.sys Image size: 32512 Image MD5: C99B3415198D1AAB7227F2C88FD664B9 Start: 3 Type: 1 Error Control: 1 Service (registry key): ose Display name: Office Source Engine Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports. Object name: LocalSystem Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE" Image size: 89136 Image MD5: 7A56CF3E3F12E8AF599963B16F50FB6A Start: 3 Type: 16 Error Control: 1 Service (registry key): P3 Display name: Intel PentiumIII Processor Driver Image path: system32\DRIVERS\p3.sys Image size: 42496 Image MD5: 3E16EFF2A6FED2D8D7F5A66DFE65D183 Start: 1 Type: 1 Error Control: 1 Service (registry key): Parport Display name: Parallel port driver Image path: system32\DRIVERS\parport.sys Image size: 80128 Image MD5: 29744EB4CE659DFE3B4122DEB45BC478 Start: 3 Type: 1 Error Control: 1 Service (registry key): PartMgr Start: 0 Type: 1 Error Control: 1 Service (registry key): ParVdm Start: 2 Type: 1 Error Control: 0 Depends On services: Parport Depends On group: "Parallel arbitrator" Service (registry key): PCI Display name: PCI Bus Driver Image path: system32\DRIVERS\pci.sys Image size: 68224 Image MD5: 8086D9979234B603AD5BC2F5D890B234 Start: 0 Type: 1 Error Control: 3 Service (registry key): PCIDump Start: 1 Type: 1 Error Control: 0 Service (registry key): PCIIde Start: 4 Type: 1 Error Control: 1 Service (registry key): Pcmcia Start: 4 Type: 1 Error Control: 1 Service (registry key): PDCOMP Start: 3 Type: 1 Error Control: 0 Service (registry key): PDFRAME Start: 3 Type: 1 Error Control: 0 Service (registry key): PDRELI Start: 3 Type: 1 Error Control: 0 Service (registry key): PDRFRAME Start: 3 Type: 1 Error Control: 0 Service (registry key): perc2 Start: 4 Type: 1 Error Control: 1 Service (registry key): perc2hib Start: 4 Type: 1 Error Control: 1 Service (registry key): PerfDisk Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfNet Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfOS Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfProc Start: 0 Type: 0 Error Control: 0 Service (registry key): PlugPlay Display name: Plug and Play Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability. Object name: LocalSystem Image path: %SystemRoot%\system32\services.exe Image size: 108032 Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4 Start: 2 Type: 32 Error Control: 1 Service (registry key): PolicyAgent Display name: IPSEC Services Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS,Tcpip,IPSec Service (registry key): PptpMiniport Display name: WAN Miniport (PPTP) Description: WAN Miniport (PPTP) Image path: system32\DRIVERS\raspptp.sys Image size: 48384 Image MD5: 1C5CC65AAC0783C344F16353E60B72AC Start: 3 Type: 1 Error Control: 1 Service (registry key): ProtectedStorage Display name: Protected Storage Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 288 Error Control: 1 Depends On services: RpcSs Service (registry key): PSched Display name: QoS Packet Scheduler Description: QoS Packet Scheduler Image path: system32\DRIVERS\psched.sys Image size: 69120 Image MD5: 48671F327553DCF1D27F6197F622A668 Start: 3 Type: 1 Error Control: 1 Depends On services: Gpc Service (registry key): Ptilink Display name: Direct Parallel Link Driver Description: Direct Parallel Link Driver Image path: system32\DRIVERS\ptilink.sys Image size: 17792 Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD Start: 3 Type: 1 Error Control: 1 Service (registry key): PxHelp20 Display name: PxHelp20 Image path: System32\Drivers\PxHelp20.sys Image size: 20640 Image MD5: 86724469CD077901706854974CD13C3E Start: 0 Type: 1 Error Control: 1 Service (registry key): ql1080 Start: 4 Type: 1 Error Control: 1 Service (registry key): Ql10wnt Start: 4 Type: 1 Error Control: 1 Service (registry key): ql12160 Start: 4 Type: 1 Error Control: 1 Service (registry key): ql1240 Start: 4 Type: 1 Error Control: 1 Service (registry key): ql1280 Start: 4 Type: 1 Error Control: 1 Service (registry key): RasAcd Display name: Remote Access Auto Connection Driver Description: Remote Access Auto Connection Driver Image path: system32\DRIVERS\rasacd.sys Image size: 8832 Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C Start: 1 Type: 1 Error Control: 1 Service (registry key): RasAuto Display name: Remote Access Auto Connection Manager Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RasMan,Tapisrv Service (registry key): Rasl2tp Display name: WAN Miniport (L2TP) Description: WAN Miniport (L2TP) Image path: system32\DRIVERS\rasl2tp.sys Image size: 51328 Image MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C Start: 3 Type: 1 Error Control: 1 Service (registry key): RasMan Display name: Remote Access Connection Manager Description: Creates a network connection. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: Tapisrv Service (registry key): RasPppoe Display name: Remote Access PPPOE Driver Description: Remote Access PPPOE Driver Image path: system32\DRIVERS\raspppoe.sys Image size: 41472 Image MD5: 7306EEED8895454CBED4669BE9F79FAA Start: 3 Type: 1 Error Control: 1 Service (registry key): Raspti Display name: Direct Parallel Description: Direct Parallel Image path: system32\DRIVERS\raspti.sys Image size: 16512 Image MD5: FDBB1D60066FCFBB7452FD8F9829B242 Start: 3 Type: 1 Error Control: 1 Service (registry key): Rdbss Display name: Rdbss Description: Rdbss Image path: system32\DRIVERS\rdbss.sys Image size: 176512 Image MD5: 29D66245ADBA878FFF574CD66ABD2884 Start: 1 Type: 2 Error Control: 1 Service (registry key): RDPCDD Image path: System32\DRIVERS\RDPCDD.sys Image size: 4224 Image MD5: 4912D5B403614CE99C28420F75353332 Start: 1 Type: 1 Error Control: 0 Service (registry key): RDPDD Start: 0 Type: 0 Error Control: 0 Service (registry key): rdpdr Display name: Terminal Server Device Redirector Driver Image path: system32\DRIVERS\rdpdr.sys Image size: 196864 Image MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD Start: 3 Type: 1 Error Control: 1 Service (registry key): RDPNP Start: 0 Type: 0 Error Control: 0 Service (registry key): RDPWD Start: 3 Type: 1 Error Control: 0 Service (registry key): RDSessMgr Display name: Remote Desktop Help Session Manager Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box. Object name: LocalSystem Image path: C:\WINDOWS\system32\sessmgr.exe Image size: 140800 Image MD5: 729798E0933076B8FCFCD9934698F164 Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): RecAgent Display name: recagent Image path: \??\C:\WINDOWS\system32\DRIVERS\RecAgent.sys Image size: 13776 Image MD5: E9AAA0092D74A9D371659C4C38882E12 Start: 3 Type: 1 Error Control: 1 Service (registry key): redbook Display name: Digital CD Audio Playback Filter Driver Image path: system32\DRIVERS\redbook.sys Image size: 57472 Image MD5: B31B4588E4086D8D84ADBF9845C2402B Start: 1 Type: 1 Error Control: 1 Service (registry key): RemoteAccess Display name: Routing and Remote Access Description: Offers routing services to businesses in local area and wide area network environments. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: RpcSS Depends On group: NetBIOSGroup Service (registry key): RemoteRegistry Display name: Remote Registry Description: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): RpcLocator Display name: Remote Procedure Call (RPC) Locator Description: Manages the RPC name service database. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\locator.exe Image size: 75264 Image MD5: 793F04A09B15E7C6C11DBDFFAF06C0AB Start: 3 Type: 16 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): RpcSs Display name: Remote Procedure Call (RPC) Description: Provides the endpoint mapper and other miscellaneous RPC services. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\svchost -k rpcss Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): RSVP Display name: QoS RSVP Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets. Object name: LocalSystem Image path: %SystemRoot%\system32\rsvp.exe Image size: 132608 Image MD5: 471B3F9741D762ABE75E9DEEA4787E47 Start: 3 Type: 16 Error Control: 1 Depends On services: TcpIp,Afd,RpcSs Service (registry key): rtl8139 Display name: Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver Image path: system32\DRIVERS\RTL8139.SYS Image size: 20992 Image MD5: D507C1400284176573224903819FFDA3 Start: 3 Type: 1 Error Control: 1 Service (registry key): SamSs Display name: Security Accounts Manager Description: Stores security information for local user accounts. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): SCardSvr Display name: Smart Card Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\System32\SCardSvr.exe Image size: 95744 Image MD5: 25D8DE134DF108E3DBC8D7D23B1AA58E Start: 3 Type: 32 Error Control: 0 Depends On services: PlugPlay Service (registry key): Schedule Display name: Task Scheduler Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): SDhelper Display name: PC Tools Spyware Doctor Description: Provides spyware and malware protection for the system. If this service is disabled spyware protection will be reduced. Object name: LocalSystem Image path: C:\Program Files\Spyware Doctor\sdhelp.exe Image size: 895088 Image MD5: D8CA03BE0F6DC8C8D71009795028006A Start: 2 Type: 16 Error Control: 1 Service (registry key): Secdrv Display name: Secdrv Description: SafeDisc driver Image path: system32\DRIVERS\secdrv.sys Image size: 27440 Image MD5: D26E26EA516450AF9D072635C60387F4 Start: 3 Type: 1 Error Control: 1 Service (registry key): seclogon Display name: Secondary Logon Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 288 Error Control: 0 Service (registry key): SENS Display name: System Event Notification Description: Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: EventSystem Service (registry key): serenum Display name: Serenum Filter Driver Image path: system32\DRIVERS\serenum.sys Image size: 15488 Image MD5: A2D868AEEFF612E70E213C451A70CAFB Start: 3 Type: 1 Error Control: 1 Service (registry key): Serial Display name: Serial port driver Image path: system32\DRIVERS\serial.sys Image size: 64896 Image MD5: CD9404D115A00D249F70A371B46D5A26 Start: 1 Type: 1 Error Control: 0 Service (registry key): sermouse Display name: Serial Mouse Driver Image path: system32\DRIVERS\sermouse.sys Image size: 17664 Image MD5: 1F16931C722C69E4A7866244796C66A0 Start: 3 Type: 1 Error Control: 1 Service (registry key): Sfloppy Start: 1 Type: 1 Error Control: 0 Depends On group: "SCSI miniport" Service (registry key): SharedAccess Display name: Windows Firewall/Internet Connection Sharing (ICS) Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Netman,WinMgmt Service (registry key): ShellHWDetection Display name: Shell Hardware Detection Description: Provides notifications for AutoPlay hardware events. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RpcSs Service (registry key): Simbad Start: 4 Type: 1 Error Control: 1 Service (registry key): Slntamr Display name: NetoDragon AMR_PCI Driver Image path: system32\DRIVERS\slntamr.sys Image size: 545528 Image MD5: 2EE2E5AA1B0FEB8E32D615BC8AAE6D14 Start: 3 Type: 1 Error Control: 0 Service (registry key): SlNtHal Display name: SlNtHal Image path: system32\DRIVERS\Slnthal.sys Image size: 86128 Image MD5: D84CE5182F7D9F3E7E4FF0C36B16A466 Start: 3 Type: 1 Error Control: 1 Service (registry key): SlWdmSup Display name: SlWdmSup Image path: system32\DRIVERS\SlWdmSup.sys Image size: 39348 Image MD5: 4A35904E8EE6C103C815EE269CC7A7B9 Start: 3 Type: 1 Error Control: 0 Service (registry key): Sparrow Start: 4 Type: 1 Error Control: 1 Service (registry key): splitter Display name: Microsoft Kernel Audio Splitter Image path: system32\drivers\splitter.sys Image size: 6400 Image MD5: 8E186B8F23295D1E42C573B82B80D548 Start: 3 Type: 1 Error Control: 1 Service (registry key): Spooler Display name: Print Spooler Description: Loads files to memory for later printing. Object name: LocalSystem Image path: %SystemRoot%\system32\spoolsv.exe Image size: 57856 Image MD5: 7435B108B935E42EA92CA94F59C8E717 Start: 2 Type: 272 Error Control: 1 Depends On services: RPCSS Service (registry key): sp_rsdrv2 Display name: Spyware Terminator Driver 2 Image path: \??\C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys Start: 1 Type: 1 Error Control: 1 Service (registry key): sr Display name: System Restore Filter Driver Image path: system32\DRIVERS\sr.sys Image size: 73472 Image MD5: E41B6D037D6CD08461470AF04500DC24 Start: 0 Type: 2 Error Control: 1 Service (registry key): srservice Display name: System Restore Service Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): Srv Display name: Srv Description: Srv Image path: system32\DRIVERS\srv.sys Image size: 336256 Image MD5: 20B7E396720353E4117D64D9DCB926CA Start: 3 Type: 2 Error Control: 1 Service (registry key): SSDPSRV Display name: SSDP Discovery Service Description: Enables discovery of UPnP devices on your home network. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: HTTP Service (registry key): stisvc Display name: Windows Image Acquisition (WIA) Description: Provides image acquisition services for scanners and cameras. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k imgsvc Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): swenum Display name: Software Bus Driver Image path: system32\DRIVERS\swenum.sys Image size: 4352 Image MD5: 03C1BAE4766E2450219D20B993D6E046 Start: 3 Type: 1 Error Control: 1 Service (registry key): swmidi Display name: Microsoft Kernel GS Wavetable Synthesizer Image path: system32\drivers\swmidi.sys Image size: 54272 Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D Start: 3 Type: 1 Error Control: 1 Service (registry key): SwPrv Display name: MS Software Shadow Copy Provider Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{56859176-B9E9-4E77-B6D9-37C208D2F4BE} Image size: 5120 Image MD5: DD87DB7387B9EB441C5674888A0D840C Start: 3 Type: 16 Error Control: 0 Depends On services: rpcss Service (registry key): symc810 Start: 4 Type: 1 Error Control: 1 Service (registry key): symc8xx Start: 4 Type: 1 Error Control: 1 Service (registry key): sym_hi Start: 4 Type: 1 Error Control: 1 Service (registry key): sym_u3 Start: 4 Type: 1 Error Control: 1 Service (registry key): sysaudio Display name: Microsoft Kernel System Audio Device Image path: system32\drivers\sysaudio.sys Image size: 60800 Image MD5: 650AD082D46BAC0E64C9C0E0928492FD Start: 3 Type: 1 Error Control: 1 Service (registry key): SysmonLog Display name: Performance Logs and Alerts Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT Authority\NetworkService Image path: %SystemRoot%\system32\smlogsvc.exe Image size: 89600 Image MD5: 8B54AA346D1B1B113FFAA75501B8B1B2 Start: 3 Type: 16 Error Control: 1 Service (registry key): TapiSrv Display name: Telephony Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: PlugPlay,RpcSs Service (registry key): Tcpip Display name: TCP/IP Protocol Driver Description: TCP/IP Protocol Driver Image path: system32\DRIVERS\tcpip.sys Image size: 359040 Image MD5: 9F4B36614A0FC234525BA224957DE55C Start: 1 Type: 1 Error Control: 1 Depends On services: IPSec Service (registry key): TDPIPE Start: 3 Type: 1 Error Control: 0 Service (registry key): TDTCP Start: 3 Type: 1 Error Control: 0 Service (registry key): TermDD Display name: Terminal Device Driver Image path: system32\DRIVERS\termdd.sys Image size: 40840 Image MD5: A540A99C281D933F3D69D55E48727F47 Start: 1 Type: 1 Error Control: 1 Service (registry key): TermService Display name: Terminal Services Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost -k DComLaunch Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): Themes Display name: Themes Description: Provides user experience theme management. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): TlntSvr Display name: Telnet Description: Enables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\tlntsvr.exe Image size: 73216 Image MD5: 37DB0A7D097310E8B4DE803FC3119C78 Start: 4 Type: 16 Error Control: 1 Depends On services: RPCSS,TCPIP,NTLMSSP Service (registry key): TosIde Start: 4 Type: 1 Error Control: 1 Service (registry key): trid3d Image path: system32\DRIVERS\trid3dm.sys Image size: 222336 Image MD5: 8DFD837A98A4A6C581214FA358430837 Start: 3 Type: 1 Error Control: 0 Service (registry key): TrkWks Display name: Distributed Link Tracking Client Description: Maintains links between NTFS files within a computer or across computers in a network domain. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): TSDDD Start: 0 Type: 0 Error Control: 0 Service (registry key): Udfs Start: 4 Type: 2 Error Control: 1 Service (registry key): ultra Start: 4 Type: 1 Error Control: 1 Service (registry key): Update Display name: Microcode Update Driver Image path: system32\DRIVERS\update.sys Image size: 209408 Image MD5: AFF2E5045961BBC0A602BB6F95EB1345 Start: 3 Type: 1 Error Control: 1 Service (registry key): upnphost Display name: Universal Plug and Play Device Host Description: Provides support to host Universal Plug and Play devices. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: SSDPSRV,HTTP Service (registry key): UPS Display name: Uninterruptible Power Supply Description: Manages an uninterruptible power supply (UPS) connected to the computer. Object name: LocalSystem Image path: %SystemRoot%\System32\ups.exe Image size: 18432 Image MD5: 3F5DF65B0758675F95A2D43918A740A3 Start: 3 Type: 16 Error Control: 1 Service (registry key): usbhub Display name: USB2 Enabled Hub Image path: system32\DRIVERS\usbhub.sys Image size: 57600 Image MD5: C72F40947F92CEA56A8FB532EDF025F1 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbprint Display name: Microsoft USB PRINTER Class Image path: system32\DRIVERS\usbprint.sys Image size: 25856 Image MD5: A42369B7CD8886CD7C70F33DA6FCBCF5 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbscan Display name: USB Scanner Driver Image path: system32\DRIVERS\usbscan.sys Image size: 15104 Image MD5: A6BC71402F4F7DD5B77FD7F4A8DDBA85 Start: 3 Type: 1 Error Control: 1 Service (registry key): USBSTOR Display name: USB Mass Storage Driver Image path: system32\DRIVERS\USBSTOR.SYS Image size: 26496 Image MD5: 6CD7B22193718F1D17A47A1CD6D37E75 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbuhci Display name: Microsoft USB Universal Host Controller Miniport Driver Image path: system32\DRIVERS\usbuhci.sys Image size: 20480 Image MD5: F8FD1400092E23C8F2F31406EF06167B Start: 3 Type: 1 Error Control: 1 Service (registry key): usnsvc Display name: Messenger Sharing USN Journal Reader service Description: Service installed by Messenger to enable sharing scenarios Object name: LocalSystem Image path: C:\WINDOWS\system32\svchost.exe -k usnsvc Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 16 Error Control: 1 Depends On services: rpcss,eventlog Service (registry key): VgaSave Image path: \SystemRoot\System32\drivers\vga.sys Start: 1 Type: 1 Error Control: 0 Service (registry key): viaagp Display name: VIA AGP Bus Filter Image path: system32\DRIVERS\viaagp.sys Image size: 42240 Image MD5: D92E7C8A30CFD14D8E15B5F7F032151B Start: 0 Type: 1 Error Control: 1 Service (registry key): ViaIde Image path: system32\DRIVERS\viaide.sys Image size: 5376 Image MD5: 59CB1338AD3654417BEA49636457F65D Start: 0 Type: 1 Error Control: 1 Service (registry key): VIAudio Display name: VIA AC'97 Audio Controller (WDM) Image path: system32\drivers\ac97via.sys Image size: 84480 Image MD5: 819BF44085104BE6527B86A88ACF856B Start: 3 Type: 1 Error Control: 1 Service (registry key): VolSnap Start: 0 Type: 1 Error Control: 1 Service (registry key): VSS Display name: Volume Shadow Copy Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\vssvc.exe Image size: 289792 Image MD5: 3EE00364AE0FD8D604F46CBAF512838A Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): W32Time Display name: Windows Time Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): W3SVC Start: 0 Type: 0 Error Control: 0 Service (registry key): Wanarp Display name: Remote Access IP ARP Driver Description: Remote Access IP ARP Driver Image path: system32\DRIVERS\wanarp.sys Image size: 34560 Image MD5: 984EF0B9788ABF89974CFED4BFBAACBC Start: 3 Type: 1 Error Control: 1 Service (registry key): WDICA Start: 3 Type: 1 Error Control: 0 Service (registry key): wdmaud Display name: Microsoft WINMM WDM Audio Compatibility Driver Image path: system32\drivers\wdmaud.sys Image size: 82944 Image MD5: 2797F33EBF50466020C430EE4F037933 Start: 3 Type: 1 Error Control: 1 Service (registry key): WebClient Display name: WebClient Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: MRxDAV Service (registry key): winachsf Image path: system32\DRIVERS\HSFCXTS2.sys Image size: 685056 Image MD5: 1225EBEA76AAC3C84DF6C54FE5E5D8BE Start: 3 Type: 1 Error Control: 0 Service (registry key): winmgmt Display name: Windows Management Instrumentation Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %systemroot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RPCSS Service (registry key): Winsock Start: 3 Type: 4 Error Control: 1 Service (registry key): WinSock2 Start: 0 Type: 0 Error Control: 0 Service (registry key): WinTrust Start: 0 Type: 0 Error Control: 0 Service (registry key): WmdmPmSN Display name: Portable Media Serial Number Service Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): Wmi Display name: Windows Management Instrumentation Driver Extensions Description: Provides systems management information to and from drivers. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): WmiApRpl Start: 0 Type: 0 Error Control: 0 Service (registry key): WmiApSrv Display name: WMI Performance Adapter Description: Provides performance library information from WMI HiPerf providers. Object name: LocalSystem Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe Image size: 126464 Image MD5: BA8CECC3E813E1F7C441B20393D4F86C Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): WS2IFSL Start: 1 Type: 0 Error Control: 0 Service (registry key): wuauserv Display name: Automatic Updates Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site. Object name: LocalSystem Image path: %systemroot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): WZCSVC Display name: Wireless Zero Configuration Description: Provides automatic configuration for the 802.11 adapters Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs,Ndisuio Service (registry key): xmlprov Display name: Network Provisioning Service Description: Manages XML configuration files on a domain basis for automatic network provisioning. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): ZTPPPOE Display name: WAN Miniport (PPP over Ethernet Protocol) Image path: system32\DRIVERS\ztpppoe.sys Image size: 18238 Image MD5: EF41F47D21761FF125E615E175984521 Start: 3 Type: 1 Error Control: 1 Service (registry key): {3A5367D3-6621-4321-86BA-FBF1DC8E8A32} Start: 0 Type: 0 Error Control: 0 Service (registry key): {8141C4F5-9474-4946-B7DB-218FBCA21BFB} Start: 0 Type: 0 Error Control: 0
Spybot - Search & Destroy --- Search result list --- Nat: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Desktop\host WinClean: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\Temp\installer.exe Smitfraud-C.: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\WindowsSubVersion BraveSentry: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program Files\BraveSentry\BraveSentry.exe Win32.Small.dp: Settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Security\host Nurech: User settings (Registry value, nothing done) HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\upnp.exe --- Spybot - Search & Destroy version: 1.4 (build: 20050523) --- 2007-03-07 unins000.exe (51.41.0.0) 2005-05-31 blindman.exe (1.0.0.1) 2005-05-31 SpybotSD.exe (1.4.0.3) 2005-05-31 TeaTimer.exe (1.4.0.2) 2005-05-31 Update.exe (1.4.0.0) 2005-05-31 aports.dll (2.1.0.0) 2005-05-31 borlndmm.dll (7.0.4.453) 2005-05-31 delphimm.dll (7.0.4.453) 2005-05-31 SDHelper.dll (1.4.0.0) 2005-05-31 UnzDll.dll (1.73.1.1) 2005-05-31 ZipDll.dll (1.73.2.0) 2007-01-15 advcheck.dll (1.2.1.0) 2007-01-02 Tools.dll (2.0.1.0) 2006-12-08 Includes\Dialer.sbi (*) 2007-02-07 Includes\Hijackers.sbi (*) 2006-10-27 Includes\Keyloggers.sbi (*) 2007-02-14 Includes\Malware.sbi (*) 2007-01-19 Includes\PUPS.sbi (*) 2006-12-08 Includes\Security.sbi (*) 2007-02-02 Includes\Spybots.sbi (*) 2007-02-14 Includes\Trojans.sbi (*) 2007-02-28 Includes\Cookies.sbi (*) 2007-02-28 Includes\Revision.sbi (*) 2005-02-17 Includes\Tracks.uti 2007-02-28 Includes\TrojansC.sbi (*) 2007-02-28 Includes\SpybotsC.sbi (*) 2007-02-28 Includes\SecurityC.sbi (*) 2007-02-28 Includes\PUPSC.sbi (*) 2007-02-28 Includes\MalwareC.sbi (*) 2007-02-28 Includes\KeyloggersC.sbi (*) 2007-02-28 Includes\HijackersC.sbi (*) 2007-02-28 Includes\DialerC.sbi (*) --- System information --- Windows XP (Build: 2600) Service Pack 2 / Windows Media Player 9: Security Update for Windows Media Player 9 (KB917734) --- Startup entries list --- Located: HK_LM:Run, AVP command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe size: 155751 MD5: 250f20c64fd9eaa0f2d7844bca92e741 Located: HK_LM:Run, RemoteControl command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe size: 32768 MD5: 915a106a2fb87292cef0ad4f36adf313 Located: HK_CU:Run, ctfmon.exe command: C:\WINDOWS\system32\ctfmon.exe file: C:\WINDOWS\system32\ctfmon.exe size: 15360 MD5: 24232996a38c0b0cf151c2140ae29fc8 Located: HK_CU:Run, Spyware Doctor command: "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q file: C:\Program Files\Spyware Doctor\swdoctor.exe size: 3375104 MD5: 53d577860f1b4b0fbb8b8770bad60628 Located: System.ini, crypt32chain command: crypt32.dll file: crypt32.dll Located: System.ini, cryptnet command: cryptnet.dll file: cryptnet.dll Located: System.ini, cscdll command: cscdll.dll file: cscdll.dll Located: System.ini, klogon command: C:\WINDOWS\system32\klogon.dll file: C:\WINDOWS\system32\klogon.dll size: 94314 MD5: 3f97f0f4a9a6d21a1a496c1d8fe84e4e Located: System.ini, ScCertProp command: wlnotify.dll file: wlnotify.dll Located: System.ini, Schedule command: wlnotify.dll file: wlnotify.dll Located: System.ini, sclgntfy command: sclgntfy.dll file: sclgntfy.dll Located: System.ini, SensLogn command: WlNotify.dll file: WlNotify.dll Located: System.ini, termsrv command: wlnotify.dll file: wlnotify.dll Located: System.ini, WgaLogon command: file: Located: System.ini, wlballoon command: wlnotify.dll file: wlnotify.dll --- Browser helper object list --- {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} (BitComet ClickCapture) BHO name: BitComet ClickCapture CLSID name: BitComet Helper Path: C:\Program Files\BitComet\tools\ Long name: BitCometBHO.dll Short name: BITCOM~2.DLL Date (created): 1/11/2007 11:05:28 PM Date (last access): 3/7/2007 Date (last write): 1/11/2007 11:05:28 PM Filesize: 386624 Attributes: archive MD5: 8B148EFE8B203108FB3064AF38EF8C13 CRC32: DF87F475 {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} (Yahoo! IE Services Button) BHO name: CLSID name: Yahoo! IE Services Button Path: C:\Program Files\Yahoo!\Common\ Long name: yiesrvc.dll Short name: Date (created): 1/12/2007 9:39:38 AM Date (last access): 3/6/2007 Date (last write): 10/31/2006 3:29:16 PM Filesize: 198136 Attributes: archive MD5: F8981F09E8DA4FDB7F6B6E2B5361AEAE CRC32: 2CDBBB6C Version: 2006.10.31.3 --- ActiveX list --- --- Process list --- PID: 0 ( 0) [System] PID: 136 ( 4) \SystemRoot\System32\smss.exe PID: 212 ( 136) \??\C:\WINDOWS\system32\winlogon.exe PID: 256 ( 212) C:\WINDOWS\system32\services.exe size: 108032 MD5: C6CE6EEC82F187615D1002BB3BB50ED4 PID: 268 ( 212) C:\WINDOWS\system32\lsass.exe size: 13312 MD5: 84885F9B82F4D55C6146EBF6065D75D2 PID: 416 ( 256) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 524 ( 256) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 744 ( 728) C:\WINDOWS\Explorer.EXE size: 1032192 MD5: A0732187050030AE399B241436565E64 PID: 1056 ( 744) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe size: 4393096 MD5: 09CA174A605B480318731E691DC98539 PID: 4 ( 0) System PID: 188 ( 136) csrss.exe PID: 464 ( 256) svchost.exe --- Browser start & search pages list --- Spybot - Search & Destroy browser pages report, 3/7/2007 9:37:54 AM HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page C:\WINDOWS\system32\blank.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page http://www.yahoo.com/ HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@ http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page %SystemRoot%\system32\blank.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page about:blank HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm --- Winsock Layered Service Provider list --- --- Uninstall list --- Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal) uninstall cmd: C:\PROGRA~1\LAVASOFT\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\LAVASOFT\AD-AWA~1\INSTALL.LOG publisher: Lavasoft help link: http://www.lavasoft.com (AddressBook) BitComet 0.82 0.82 (BitComet) uninstall cmd: C:\Program Files\BitComet\uninst.exe publisher: ~RnySmile~ (Branding) CCleaner (remove only) (CCleaner) uninstall cmd: "C:\Program Files\CCleaner\uninst.exe" Cdex version 1.30 (CDex_is1) uninstall cmd: "C:\Program Files\CDex130\unins000.exe" (Connection Manager) (DirectAnimation) (DirectDrawEx) Download Accelerator Plus (DAP) 8000 (Build 135) (Download Accelerator Plus (DAP)) uninstall cmd: C:\PROGRA~1\DAP\DAPREMOVE.EXE publisher: Speedbit Ltd. contact: support@downloadaccelerator.com help link: http://redir.speedbit.com/redir.asp?ID=7066 (DXM_Runtime) (Fontcore) FreeRIP v2.951 2.951 (FreeRIP_is1) install location: C:\Program Files\FreeRIP\ uninstall cmd: "C:\Program Files\FreeRIP\unins000.exe" publisher: MGShareware HijackThis 1.99.1 1.99.1 (HijackThis) uninstall cmd: \\DSP1\My Completed Downloads\HijackThis.exe /uninstall publisher: Soeperman Enterprises Ltd. (ICW) (IE40) (IE4Data) (IE5BAKEX) (IEData) 5.2.4.2528 (IncrediMail) publisher: IncrediMail Ltd. help link: http://www.incredimail.com/english/help/index.html (InstallShield Uninstall Information) iTunes 4.7.1.30 (InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6}) version: 67567617 version (major): 4 version (minor): 7 estimated size: 13607 install date: 20051207 install location: C:\Program Files\iTunes\ install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\ uninstall cmd: C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3CB41017-F5CA-4C56-934C-ED02156251E6} publisher: Apple Computer, Inc. contact: AppleCare Support help link: http://www.info.apple.com/ help telephone: 1-800-275-2273 Kaspersky Anti-Virus 6.0 6.0.1.411 (InstallWIX_{75193929-9A52-4CA4-98DE-8C7296940920}) uninstall cmd: MsiExec.exe /I{75193929-9A52-4CA4-98DE-8C7296940920} publisher: Kaspersky Lab help link: http://www.kaspersky.com/support.asp (KB884016) (KB893803) Macromedia Shockwave Player 10.1.0.11 (Macromedia Shockwave Player) uninstall cmd: C:\WINDOWS\system32\MACROMED\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\MACROMED\SHOCKW~1\Install.log publisher: Macromedia, Inc. help link: http://www.macromedia.com/support/shockwave (MobileOptionPack) (MPlayer2) (MSI30-Beta1) (MSI30-Beta2) (MSI30-KB884016) (MSI30-RC1) (MSI30-RC2) (MSI30a-KB884016) (MSI31-Beta) (MSI31-RC1) (NetMeeting) (OutlookExpress) (PCHealth) uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf QuickTime (QuickTime) uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log (RealJukebox 1.0) uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 RealPlayer (RealPlayer 6.0) uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0 (SchedulingAgent) (Shockwave) Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash) uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q publisher: Adobe Systems help link: http://www.adobe.com/go/flashplayer_support/ NetoDragon 56K Voice Modem (SLAMRNTV) uninstall cmd: C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1) install location: C:\Program Files\Spybot - Search & Destroy\ uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe" publisher: Safer Networking Limited Spyware Doctor 4.0 4.0 (Spyware Doctor_is1) install date: 20070201 install location: C:\Program Files\Spyware Doctor\ uninstall cmd: "C:\Program Files\Spyware Doctor\unins000.exe" publisher: PC Tools help link: http://www.pctools.com/spyware-doctor/support/ StartUp Manager (StartUp Manager) uninstall cmd: C:\Program Files\INAC\StartUp Manager\uninstall.exe Windows Genuine Advantage Notifications (KB905474) 1.5.0532.0 (WgaNotify) install date: 20060503 publisher: Microsoft Corporation help link: http://support.microsoft.com?kbid=905474 Winamp (remove only) (Winamp) uninstall cmd: "C:\Program Files\Winamp\UninstWA.exe" WinRAR archiver (WinRAR archiver) uninstall cmd: C:\Program Files\WinRAR\uninstall.exe WinZip 8.1 (4331) (WinZip) version (major): 8 version (minor): 1 install location: C:\PROGRA~1\WINZIP\ uninstall cmd: "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall publisher: WinZip Computing, Inc. help link: http://www.winzip.com/xsupport.htm Yahoo! Browser Services (Yahoo! Customizations) uninstall cmd: C:\PROGRA~1\YAHOO!\COMMON\unyext.exe Yahoo! Messenger (Yahoo! Messenger) uninstall cmd: C:\PROGRA~1\YAHOO!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\YAHOO!\MESSEN~1\INSTALL.LOG ZTE ADSL Dialer 1.0j_MY (ZTE ADSL Dialer_is1) uninstall cmd: "C:\Program Files\ZTE\ADSLDIAL\unins000.exe" publisher: ZTE Inc. help link: http://www.ZTE.com.cn AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC}) install location: C:\Program Files\DivX AstraPix 450/460 ({26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}) uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}\Setup.exe" Java(TM) SE Runtime Environment 6 1.6.0.0 ({3248F0A8-6813-11D6-A77B-00B0D0160000}) version: 17170432 version (major): 1 version (minor): 6 estimated size: 111474 install date: 20070228 install source: C:\Documents and Settings\User\Application Data\Sun\Java\jre1.6.0\ uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000} publisher: Sun Microsystems, Inc. contact: http://java.com help link: http://java.com readme: C:\Program Files\Java\jre1.6.0\README.txt WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}) version: 154279267 version (major): 9 version (minor): 50 estimated size: 2500 install date: 20051207 install source: C:\WINDOWS\system32\ publisher: Microsoft Corporation help link: http://www.microsoft.com/windows iTunes 4.7.1.30 ({3CB41017-F5CA-4C56-934C-ED02156251E6}) version: 67567617 version (major): 4 version (minor): 7 estimated size: 13607 install date: 20051207 install location: C:\Program Files\iTunes\ install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\ publisher: Apple Computer, Inc. contact: AppleCare Support help link: http://www.info.apple.com/ help telephone: 1-800-275-2273 ({62369F2F77534556AEF4C58152E3BDE5}) PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall Kaspersky Anti-Virus 6.0 6.0.1.411 ({75193929-9A52-4CA4-98DE-8C7296940920}) version: 100663297 version (major): 6 estimated size: 27246 install date: 20070124 install source: C:\kav\kav6.0\english\ publisher: Kaspersky Lab help link: http://www.kaspersky.com/support.asp DivX 6.1.1 ({7B63B2922B174135AFC0E1377DD81EC2}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC publisher: DivX, Inc. DivX Player 6.1.1 ({8ADFC4160D694100B5B8A22DE9DCABD9}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER publisher: DivXNetworks, Inc. Microsoft Office Professional Edition 2003 11.0.5614.0 ({90110409-6000-11D3-8CFE-0150048383C9}) version: 184554990 version (major): 11 estimated size: 379454 install date: 20051219 install location: C:\Program Files\Microsoft Office\ install source: D:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\ uninstall cmd: MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9} publisher: Microsoft Corporation help link: http://www.microsoft.com/support readme: C:\Program Files\Microsoft Office\OFFICE11\1033\OFREADME.HTM Microsoft Office XP Small Business 10.0.2627.01 ({91130409-6000-11D3-8CFE-0050048383C9}) version: 167774787 version (major): 10 estimated size: 474490 install date: 20051207 install location: INSTALLLOCATION install source: E:\ uninstall cmd: MsiExec.exe /I{91130409-6000-11D3-8CFE-0050048383C9} publisher: Microsoft Corporation help link: http://www.microsoft.com/support readme: C:\Program Files\Microsoft Office\Office10\1033\OFREAD10.HTM Adobe Reader 7.0 7.0.0 ({AC76BA86-7AD7-1033-7B44-A70000000000}) version: 117440512 version (major): 7 estimated size: 65659 install date: 20051207 install location: C:\Program Files\Adobe\Acrobat 7.0\Reader\ install source: C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\ENU\ uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000} publisher: Adobe Systems Incorporated comments: contact: help link: http://www.adobe.com/support/main.html help telephone: readme: C:\Program Files\Adobe\Acrobat 7.0\Reader\Readme.htm ACDSee 8 8.0.39 ({AE80641A-0C8D-4670-A518-B4EC154B1027}) version: 134217767 version (major): 8 estimated size: 34108 install date: 20061213 install location: C:\Program Files\ACD Systems\ install source: C:\WINDOWS\Downloaded Installations\{015363C3-0256-4F1B-95E5-304040BF9C4D}\ uninstall cmd: MsiExec.exe /I{AE80641A-0C8D-4670-A518-B4EC154B1027} publisher: ACD Systems Ltd. comments: This database contains the necessary files and logic to install ACDSee and additional support programs and plug-ins where appropriate contact: Technical Support help link: http://go.acdsystems.com/client/en/534017 help telephone: 250-544-6701 ({B13A7C41581B411290FBC0395694E2A9}) DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29}) install location: C:\Program Files\DivX uninstall cmd: C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN publisher: DivX,Inc. Nokia Connectivity Cable Driver 1.00.159 ({B7757137-0A71-4A9F-8A82-1AE4A1B73420}) version: 16777375 version (major): 1 estimated size: 400 install date: 20061215 install location: C:\Program Files\Nokia\Connectivity Cable Driver\ install source: C:\Program Files\Nokia\Nokia PC Suite 6\ uninstall cmd: MsiExec.exe /X{B7757137-0A71-4A9F-8A82-1AE4A1B73420} publisher: Nokia help link: http://www.nokia.com/nokia/0,8764,75877,00.html jetAudio 6.1 ({DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}) version: 100728832 install date: 20060401 install location: C:\Program Files\JetAudio install source: C:\DOCUME~1\User\LOCALS~1\Temp\bye9B.tmp\Disk1\ uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -l0x9 -removeonly publisher: JetAudio, Inc. Windows Live Messenger 8.0.0812.00 ({FCE50DB8-C610-4C42-BE5C-193F46C6F812}) version: 134218540 version (major): 8 estimated size: 33821 install date: 20070110 install source: C:\DOCUME~1\User\LOCALS~1\Temp\IXP000.TMP\ uninstall cmd: MsiExec.exe /I{FCE50DB8-C610-4C42-BE5C-193F46C6F812} publisher: Microsoft Corporation Nokia PC Suite 6.70.22 ({FF059F2A-62A7-4E6A-B305-559591D2769E}) version: 105250838 version (major): 6 version (minor): 70 estimated size: 36140 install date: 20061215 install location: C:\Program Files\Nokia\ install source: E:\software\PCSuite\ uninstall cmd: MsiExec.exe /I{FF059F2A-62A7-4E6A-B305-559591D2769E} publisher: Nokia help link: http://www.nokia.com/nokia/0,8764,75877,00.html --- System Services --- Service (registry key): Abiosdsk Start: 4 Type: 1 Error Control: 0 Service (registry key): abp480n5 Start: 4 Type: 1 Error Control: 1 Service (registry key): ac97intc Display name: Intel(r) 82801 Audio Driver Install Service (WDM) Image path: system32\drivers\ac97intc.sys Image size: 96256 Image MD5: 0F2D66D5F08EBE2F77BB904288DCF6F0 Start: 3 Type: 1 Error Control: 1 Service (registry key): ACPI Display name: Microsoft ACPI Driver Image path: system32\DRIVERS\ACPI.sys Image size: 187776 Image MD5: A10C7534F7223F4A73A948967D00E69B Start: 0 Type: 1 Error Control: 1 Service (registry key): ACPIEC Start: 4 Type: 1 Error Control: 1 Service (registry key): adpu160m Start: 4 Type: 1 Error Control: 1 Service (registry key): aec Display name: Microsoft Kernel Acoustic Echo Canceller Image path: system32\drivers\aec.sys Image size: 142464 Image MD5: 841F385C6CFAF66B58FBD898722BB4F0 Start: 3 Type: 1 Error Control: 1 Service (registry key): AFD Display name: AFD Description: AFD Networking Support Environment Image path: \SystemRoot\System32\drivers\afd.sys Start: 1 Type: 1 Error Control: 1 Service (registry key): Aha154x Start: 4 Type: 1 Error Control: 1 Service (registry key): aic78u2 Start: 4 Type: 1 Error Control: 1 Service (registry key): aic78xx Start: 4 Type: 1 Error Control: 1 Service (registry key): Alerter Display name: Alerter Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): ALG Display name: Application Layer Gateway Service Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\System32\alg.exe Image size: 44544 Image MD5: F1958FBF86D5C004CF19A5951A9514B7 Start: 3 Type: 16 Error Control: 1 Service (registry key): AliIde Start: 4 Type: 1 Error Control: 1 Service (registry key): amsint Start: 4 Type: 1 Error Control: 1 Service (registry key): AppMgmt Display name: Application Management Description: Provides software installation services such as Assign, Publish, and Remove. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): asc Start: 4 Type: 1 Error Control: 1 Service (registry key): asc3350p Start: 4 Type: 1 Error Control: 1 Service (registry key): asc3550 Start: 4 Type: 1 Error Control: 1 Service (registry key): AsyncMac Display name: RAS Asynchronous Media Driver Description: RAS Asynchronous Media Driver Image path: system32\DRIVERS\asyncmac.sys Image size: 14336 Image MD5: 02000ABF34AF4C218C35D257024807D6 Start: 3 Type: 1 Error Control: 1 Service (registry key): atapi Display name: Standard IDE/ESDI Hard Disk Controller Image path: system32\DRIVERS\atapi.sys Image size: 95360 Image MD5: CDFE4411A69C224BD1D11B2DA92DAC51 Start: 0 Type: 1 Error Control: 1 Service (registry key): Atdisk Start: 4 Type: 1 Error Control: 0 Service (registry key): Atmarpc Display name: ATM ARP Client Protocol Description: ATM ARP Client Protocol Image path: system32\DRIVERS\atmarpc.sys Image size: 59904 Image MD5: EC88DA854AB7D7752EC8BE11A741BB7F Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): AudioSrv Display name: Windows Audio Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: PlugPlay,RpcSs Service (registry key): audstub Display name: Audio Stub Driver Image path: system32\DRIVERS\audstub.sys Image size: 3072 Image MD5: D9F724AA26C010A217C97606B160ED68 Start: 3 Type: 1 Error Control: 1 Service (registry key): AVP Start: 2 Type: 0 Error Control: 0 Service (registry key): AxPsHook11 Start: 0 Type: 0 Error Control: 0 Service (registry key): BattC Start: 0 Type: 0 Error Control: 0 Service (registry key): Beep Start: 1 Type: 1 Error Control: 1 Service (registry key): BITS Display name: Background Intelligent Transfer Service Description: Transfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): Browser Display name: Computer Browser Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation,LanmanServer Service (registry key): cbidf2k Start: 4 Type: 1 Error Control: 1 Service (registry key): cd20xrnt Start: 4 Type: 1 Error Control: 1 Service (registry key): Cdaudio Start: 1 Type: 1 Error Control: 0 Service (registry key): Cdfs Start: 4 Type: 2 Error Control: 1 Depends On group: "SCSI CDROM Class" Service (registry key): Cdrom Display name: CD-ROM Driver Image path: system32\DRIVERS\cdrom.sys Image size: 49536 Image MD5: AF9C19B3100FE010496B1A27181FBF72 Start: 1 Type: 1 Error Control: 1 Depends On group: "SCSI miniport" Service (registry key): Changer Start: 1 Type: 1 Error Control: 0 Service (registry key): CiSvc Display name: Indexing Service Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language. Object name: LocalSystem Image path: %SystemRoot%\system32\cisvc.exe Image size: 5632 Image MD5: 3192BD04D032A9C4A85A3278C268A13A Start: 3 Type: 288 Error Control: 1 Depends On services: RPCSS Service (registry key): ClipSrv Display name: ClipBook Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\clipsrv.exe Image size: 33280 Image MD5: C8DEC22C4137D7A90F8BDF41CA4B82AE Start: 4 Type: 16 Error Control: 1 Depends On services: NetDDE Service (registry key): CmdIde Start: 4 Type: 1 Error Control: 1 Service (registry key): COMSysApp Display name: COM+ System Application Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} Image size: 5120 Image MD5: DD87DB7387B9EB441C5674888A0D840C Start: 3 Type: 16 Error Control: 1 Depends On services: rpcss Service (registry key): ContentFilter Start: 0 Type: 0 Error Control: 0 Service (registry key): ContentIndex Start: 0 Type: 0 Error Control: 0 Service (registry key): Cpqarray Start: 4 Type: 1 Error Control: 1 Service (registry key): CryptSvc Display name: Cryptographic Services Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): dac2w2k Start: 4 Type: 1 Error Control: 0 Service (registry key): dac960nt Start: 4 Type: 1 Error Control: 1 Service (registry key): DcomLaunch Display name: DCOM Server Process Launcher Description: Provides launch functionality for DCOM services. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost -k DcomLaunch Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): Dhcp Display name: DHCP Client Description: Manages network configuration by registering and updating IP addresses and DNS names. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Tcpip,Afd,NetBT Service (registry key): Disk Display name: Disk Driver Image path: system32\DRIVERS\disk.sys Image size: 36352 Image MD5: 00CA44E4534865F8A3B64F7C0984BFF0 Start: 0 Type: 1 Error Control: 1 Depends On group: "SCSI miniport" Service (registry key): dmadmin Display name: Logical Disk Manager Administrative Service Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops. Object name: LocalSystem Image path: %SystemRoot%\System32\dmadmin.exe /com Image size: 224768 Image MD5: 554C7CB178FE3BD12450B81AD63ADBC3 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs,PlugPlay,DmServer Service (registry key): dmboot Image path: System32\drivers\dmboot.sys Image size: 799744 Image MD5: C0FBB516E06E243F0CF31F597E7EBF7D Start: 4 Type: 1 Error Control: 1 Service (registry key): dmio Display name: Logical Disk Manager Driver Image path: system32\DRIVERS\dmio.sys Image size: 153344 Image MD5: F5E7B358A732D09F4BCF2824B88B9E28 Start: 0 Type: 1 Error Control: 1 Service (registry key): dmload Start: 0 Type: 1 Error Control: 1 Service (registry key): dmserver Display name: Logical Disk Manager Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs,PlugPlay Service (registry key): DMusic Display name: Microsoft Kernel DLS Syntheiszer Image path: system32\drivers\DMusic.sys Image size: 52864 Image MD5: A6F881284AC1150E37D9AE47FF601267 Start: 3 Type: 1 Error Control: 1 Service (registry key): Dnscache Display name: DNS Client Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\svchost.exe -k NetworkService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Tcpip Service (registry key): dpti2o Start: 4 Type: 1 Error Control: 1 Service (registry key): drmkaud Display name: Microsoft Kernel DRM Audio Descrambler Image path: system32\drivers\drmkaud.sys Image size: 2944 Image MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E Start: 3 Type: 1 Error Control: 1 Service (registry key): ERSvc Display name: Error Reporting Service Description: Allows error reporting for services and applictions running in non-standard environments. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RpcSs Service (registry key): Eventlog Display name: Event Log Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped. Object name: LocalSystem Image path: %SystemRoot%\system32\services.exe Image size: 108032 Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4 Start: 2 Type: 32 Error Control: 1 Service (registry key): EventSystem Display name: COM+ Event System Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): Fastfat Start: 4 Type: 2 Error Control: 1 Service (registry key): FastUserSwitchingCompatibility Display name: Fast User Switching Compatibility Description: Provides management for applications that require assistance in a multiple user environment. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: TermService Service (registry key): Fdc Display name: Floppy Disk Controller Driver Image path: system32\DRIVERS\fdc.sys Image size: 27392 Image MD5: CED2E8396A8838E59D8FD529C680E02C Start: 3 Type: 1 Error Control: 1 Service (registry key): Fips Start: 1 Type: 1 Error Control: 1 Service (registry key): Flpydisk Display name: Floppy Disk Driver Image path: system32\DRIVERS\flpydisk.sys Image size: 20480 Image MD5: 0DD1DE43115B93F4D85E889D7A86F548 Start: 3 Type: 1 Error Control: 1 Service (registry key): FltMgr Display name: FltMgr Description: File System Filter Manager Driver Image path: system32\DRIVERS\fltMgr.sys Image size: 124800 Image MD5: 157754F0DF355A9E0A6F54721914F9C6 Start: 0 Type: 2 Error Control: 1 Service (registry key): Fs_Rec Start: 1 Type: 8 Error Control: 0 Service (registry key): Ftdisk Display name: Volume Manager Driver Image path: system32\DRIVERS\ftdisk.sys Image size: 125056 Image MD5: 6AC26732762483366C3969C9E4D2259D Start: 0 Type: 1 Error Control: 1 Service (registry key): gameenum Display name: Game Port Enumerator Image path: system32\DRIVERS\gameenum.sys Image size: 10624 Image MD5: 5F92FD09E5610A5995DA7D775EADCD12 Start: 3 Type: 1 Error Control: 0 Service (registry key): GEARAspiWDM Display name: GEAR CDRom Filter Image path: SYSTEM32\DRIVERS\GEARAspiWDM.sys Image size: 13872 Image MD5: 2FB04DB459C71F416EE8B05448CA4AC3 Start: 3 Type: 1 Error Control: 1 Service (registry key): Gpc Display name: Generic Packet Classifier Description: Generic Packet Classifier Image path: system32\DRIVERS\msgpc.sys Image size: 35072 Image MD5: C0F1D4A21DE5A415DF8170616703DEBF Start: 3 Type: 1 Error Control: 1 Service (registry key): helpsvc Display name: Help and Support Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): HidServ Display name: Human Interface Device Access Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): hpn Start: 4 Type: 1 Error Control: 1 Service (registry key): HSFHWBS2 Image path: system32\DRIVERS\HSFBS2S2.sys Image size: 220032 Image MD5: 970178E8E003EB1481293830069624B9 Start: 3 Type: 1 Error Control: 0 Service (registry key): HSF_DP Image path: system32\DRIVERS\HSFDPSP2.sys Image size: 1041536 Image MD5: EBB354438A4C5A3327FB97306260714A Start: 3 Type: 1 Error Control: 0 Service (registry key): HTTP Display name: HTTP Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start. Image path: System32\Drivers\HTTP.sys Image size: 263040 Image MD5: C19B522A9AE0BBC3293397F3055E80A1 Start: 3 Type: 1 Error Control: 1 Service (registry key): HTTPFilter Display name: HTTP SSL Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: HTTP Service (registry key): i2omgmt Start: 1 Type: 1 Error Control: 1 Service (registry key): i2omp Start: 4 Type: 1 Error Control: 1 Service (registry key): i8042prt Display name: i8042 Keyboard and PS/2 Mouse Port Driver Image path: system32\DRIVERS\i8042prt.sys Image size: 52736 Image MD5: 5502B58EEF7486EE6F93F3F164DCB808 Start: 1 Type: 1 Error Control: 1 Service (registry key): i81x Image path: system32\DRIVERS\i81xnt5.sys Image size: 161020 Image MD5: 06B7EF73BA5F302EECC294CDF7E19702 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP0 Image path: system32\DRIVERS\wADV01nt.sys Image size: 12415 Image MD5: 7B5B44EFE5EB9DADFB8EE29700885D23 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP1 Image path: system32\DRIVERS\wADV02NT.sys Image size: 12127 Image MD5: EB1F6BAB6C22EDE0BA551B527475F7E9 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP2 Image path: system32\DRIVERS\wADV05NT.sys Image size: 11775 Image MD5: 03CE989D846C1AA81145CB22FCB86D06 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP3 Image path: system32\DRIVERS\wSiINTxx.sys Image size: 12063 Image MD5: 525849B4469DE021D5D61B4DB9BE3A9D Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP4 Image path: system32\DRIVERS\wVchNTxx.sys Image size: 19455 Image MD5: 589C2BCDB5BD602BF7B63D210407EF8C Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP5 Image path: system32\DRIVERS\wADV07nt.sys Image size: 11807 Image MD5: 0308AEF61941E4AF478FA1A0F83812F5 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP6 Image path: system32\DRIVERS\wADV08nt.sys Image size: 11295 Image MD5: 714038A8AA5DE08E12062202CD7EAEB5 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimFP7 Image path: system32\DRIVERS\wADV09nt.sys Image size: 11871 Image MD5: 7BB3AA595E4507A788DE1CDC63F4C8C4 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV0 Image path: system32\DRIVERS\wATV01nt.sys Image size: 29311 Image MD5: D83BDD5C059667A2F647A6BE5703A4D2 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV1 Image path: system32\DRIVERS\wATV02NT.sys Image size: 19551 Image MD5: ED968D23354DAA0D7C621580C012A1F6 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV3 Image path: system32\DRIVERS\wATV04nt.sys Image size: 33599 Image MD5: D738273F218A224C1DDAC04203F27A84 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV4 Image path: system32\DRIVERS\wCh7xxNT.sys Image size: 23615 Image MD5: 0052D118995CBAB152DAABE6106D1442 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV5 Image path: system32\DRIVERS\wATV10nt.sys Image size: 25471 Image MD5: 791CC45DE6E50445BE72E8AD6401FF45 Start: 3 Type: 1 Error Control: 0 Service (registry key): iAimTV6 Image path: system32\DRIVERS\wATV06nt.sys Image size: 22271 Image MD5: 352FA0E98BC461CE1CE5D41F64DB558D Start: 3 Type: 1 Error Control: 0 Service (registry key): ikhfile Display name: File Security Kernel Anti-Spyware Driver Description: File Security Kernel Anti-Spyware Image path: system32\drivers\ikhfile.sys Image size: 30592 Image MD5: F24866EE5C0819E9B1B58F2C00AF078E Start: 1 Type: 2 Error Control: 0 Service (registry key): ikhlayer Display name: Kernel Anti-Spyware Driver Description: Kernel Anti-Spyware Image path: system32\drivers\ikhlayer.sys Image size: 51072 Image MD5: 9A2CFF8E3EF0A35F23F544FAB915C060 Start: 1 Type: 1 Error Control: 0 Service (registry key): Imapi Display name: CD-Burning Filter Driver Image path: system32\DRIVERS\imapi.sys Image size: 41856 Image MD5: F8AA320C6A0409C0380E5D8A99D76EC6 Start: 1 Type: 1 Error Control: 1 Service (registry key): ImapiService Display name: IMAPI CD-Burning COM Service Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\imapi.exe Image size: 150016 Image MD5: FA788520BCAC0F5D9D5CDE5615C0D931 Start: 3 Type: 16 Error Control: 1 Service (registry key): inetaccs Start: 0 Type: 0 Error Control: 0 Service (registry key): ini910u Start: 4 Type: 1 Error Control: 1 Service (registry key): Inport Start: 0 Type: 0 Error Control: 0 Service (registry key): IntelIde Image path: system32\DRIVERS\intelide.sys Image size: 5504 Image MD5: 2D722B2B54AB55B2FA475EB58D7B2AAD Start: 0 Type: 1 Error Control: 1 Service (registry key): Ip6Fw Display name: IPv6 Windows Firewall Driver Description: Provides intrusion prevention service for a home or small office network. Image path: system32\DRIVERS\Ip6Fw.sys Image size: 29056 Image MD5: 4448006B6BC60E6C027932CFC38D6855 Start: 3 Type: 1 Error Control: 1 Service (registry key): IpFilterDriver Display name: IP Traffic Filter Driver Description: IP Traffic Filter Driver Image path: system32\DRIVERS\ipfltdrv.sys Image size: 32896 Image MD5: 731F22BA402EE4B62748ADAF6363C182 Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): IpInIp Display name: IP in IP Tunnel Driver Description: IP in IP Tunnel Driver Image path: system32\DRIVERS\ipinip.sys Image size: 20992 Image MD5: E1EC7F5DA720B640CD8FB8424F1B14BB Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): IpNat Display name: IP Network Address Translator Description: IP Network Address Translator Image path: system32\DRIVERS\ipnat.sys Image size: 134912 Image MD5: B5A8E215AC29D24D60B4D1250EF05ACE Start: 3 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): iPodService Display name: iPod Service Description: iPod hardware management services Object name: LocalSystem Image path: "C:\Program Files\iPod\bin\iPodService.exe" Image size: 327680 Image MD5: 3AC9F355ECCE7D6BB8FF184E9B2229A9 Start: 3 Type: 16 Error Control: 0 Service (registry key): IPSec Display name: IPSEC driver Description: IPSEC driver Image path: system32\DRIVERS\ipsec.sys Image size: 74752 Image MD5: 64537AA5C003A6AFEEE1DF819062D0D1 Start: 1 Type: 1 Error Control: 1 Service (registry key): IRENUM Display name: IR Enumerator Service Image path: system32\DRIVERS\irenum.sys Image size: 11264 Image MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410 Start: 3 Type: 1 Error Control: 1 Service (registry key): ISAPISearch Start: 0 Type: 0 Error Control: 0 Service (registry key): isapnp Display name: PnP ISA/EISA Bus Driver Image path: system32\DRIVERS\isapnp.sys Image size: 35840 Image MD5: E504F706CCB699C2596E9A3DA1596E87 Start: 0 Type: 1 Error Control: 3 Service (registry key): Kbdclass Display name: Keyboard Class Driver Image path: system32\DRIVERS\kbdclass.sys Image size: 24576 Image MD5: EBDEE8A2EE5393890A1ACEE971C4C246 Start: 1 Type: 1 Error Control: 1 Service (registry key): kl1 Display name: Kl1 Image path: system32\drivers\kl1.sys Image size: 104448 Image MD5: BC02A8E0DD5DC266E5CC3636DD454403 Start: 0 Type: 1 Error Control: 1 Service (registry key): klif Display name: Klif Image path: \??\C:\WINDOWS\system32\drivers\klif.sys Image size: 174864 Image MD5: F0653E5E164123CAD51EDDA22418C2A3 Start: 1 Type: 1 Error Control: 1 Service (registry key): kmixer Display name: Microsoft Kernel Wave Audio Mixer Image path: system32\drivers\kmixer.sys Image size: 171776 Image MD5: D93CAD07C5683DB066B0B2D2D3790EAD Start: 3 Type: 1 Error Control: 1 Service (registry key): KSecDD Start: 0 Type: 1 Error Control: 1 Service (registry key): lanmanserver Display name: Server Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): lanmanworkstation Display name: Workstation Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): lbrtfdc Start: 1 Type: 1 Error Control: 0 Service (registry key): ldap Start: 0 Type: 0 Error Control: 0 Service (registry key): LicenseService Start: 0 Type: 0 Error Control: 0 Service (registry key): LmHosts Display name: TCP/IP NetBIOS Helper Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: NetBT,Afd Service (registry key): MDM Display name: Machine Debug Manager Description: Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly. Object name: LocalSystem Image path: "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe" Image size: 322120 Image MD5: 11F714F85530A2BD134074DC30E99FCA Start: 2 Type: 272 Error Control: 1 Depends On services: RPCSS Service (registry key): mdmxsdk Image path: system32\DRIVERS\mdmxsdk.sys Image size: 11868 Image MD5: 195741AEE20369980796B557358CD774 Start: 2 Type: 1 Error Control: 0 Service (registry key): Messenger Display name: Messenger Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS Service (registry key): mnmdd Start: 1 Type: 1 Error Control: 0 Service (registry key): mnmsrvc Display name: NetMeeting Remote Desktop Sharing Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\mnmsrvc.exe Image size: 32768 Image MD5: F6415361201915B9FE3896B0E4E724FF Start: 3 Type: 272 Error Control: 1 Service (registry key): Modem Start: 3 Type: 1 Error Control: 0 Service (registry key): MODEMCSA Display name: Unimodem Streaming Filter Device Image path: system32\drivers\MODEMCSA.sys Image size: 16128 Image MD5: 1992E0D143B09653AB0F9C5E04B0FD65 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mouclass Display name: Mouse Class Driver Image path: system32\DRIVERS\mouclass.sys Image size: 23040 Image MD5: 34E1F0031153E491910E12551400192C Start: 1 Type: 1 Error Control: 1 Service (registry key): MountMgr Start: 0 Type: 1 Error Control: 1 Service (registry key): mraid35x Start: 4 Type: 1 Error Control: 1 Service (registry key): MRxDAV Display name: WebDav Client Redirector Description: WebDav Client Redirector Image path: system32\DRIVERS\mrxdav.sys Image size: 181248 Image MD5: 46EDCC8F2DB2F322C24F48785CB46366 Start: 3 Type: 2 Error Control: 1 Service (registry key): MRxSmb Display name: MRXSMB Description: MRXSMB Image path: system32\DRIVERS\mrxsmb.sys Image size: 451456 Image MD5: 1FD607FC67F7F7C633C3DA65BFC53D18 Start: 1 Type: 2 Error Control: 1 Service (registry key): MSDTC Display name: Distributed Transaction Coordinator Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\NetworkService Image path: C:\WINDOWS\system32\msdtc.exe Image size: 6144 Image MD5: C7C3D89EB0A6F3DBA622EA737FA335B1 Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS,SamSS Service (registry key): Msfs Start: 1 Type: 2 Error Control: 1 Service (registry key): MSIServer Display name: Windows Installer Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\msiexec.exe /V Image size: 77312 Image MD5: 4236AE241F193F58ADAB141CECCFD5F4 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): MSKSSRV Display name: Microsoft Streaming Service Proxy Image path: system32\drivers\MSKSSRV.sys Image size: 7552 Image MD5: AE431A8DD3C1D0D0610CDBAC16057AD0 Start: 3 Type: 1 Error Control: 1 Service (registry key): MSPCLOCK Display name: Microsoft Streaming Clock Proxy Image path: system32\drivers\MSPCLOCK.sys Image size: 5376 Image MD5: 13E75FEF9DFEB08EEDED9D0246E1F448 Start: 3 Type: 1 Error Control: 1 Service (registry key): MSPQM Display name: Microsoft Streaming Quality Manager Proxy Image path: system32\drivers\MSPQM.sys Image size: 4992 Image MD5: 1988A33FF19242576C3D0EF9CE785DA7 Start: 3 Type: 1 Error Control: 1 Service (registry key): mssmbios Display name: Microsoft System Management BIOS Driver Image path: system32\DRIVERS\mssmbios.sys Image size: 15488 Image MD5: 469541F8BFD2B32659D5D463A6714BCE Start: 3 Type: 1 Error Control: 1 Service (registry key): ms_mpu401 Display name: Microsoft MPU-401 MIDI UART Driver Image path: system32\drivers\msmpu401.sys Image size: 2944 Image MD5: CA3E22598F411199ADC2DFEE76CD0AE0 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mtlmnt5 Display name: Mtlmnt5 Image path: system32\DRIVERS\Mtlmnt5.sys Image size: 221736 Image MD5: 32CE8D0359672BCB720BF82C86A50D71 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mtlstrm Display name: Mtlstrm Image path: system32\DRIVERS\Mtlstrm.sys Image size: 1301128 Image MD5: 8ADA829D3D7CF2DB7B1C41F3C7BEAA79 Start: 3 Type: 1 Error Control: 1 Service (registry key): Mup Display name: Mup Start: 0 Type: 2 Error Control: 1 Service (registry key): NDIS Display name: NDIS System Driver Start: 0 Type: 1 Error Control: 1 Service (registry key): NdisTapi Display name: Remote Access NDIS TAPI Driver Description: Remote Access NDIS TAPI Driver Image path: system32\DRIVERS\ndistapi.sys Image size: 9600 Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C Start: 3 Type: 1 Error Control: 1 Service (registry key): Ndisuio Display name: NDIS Usermode I/O Protocol Description: NDIS Usermode I/O Protocol Image path: system32\DRIVERS\ndisuio.sys Image size: 12928 Image MD5: 34D6CD56409DA9A7ED573E1C90A308BF Start: 3 Type: 1 Error Control: 1 Service (registry key): NdisWan Display name: Remote Access NDIS WAN Driver Description: Remote Access NDIS WAN Driver Image path: system32\DRIVERS\ndiswan.sys Image size: 91776 Image MD5: 0B90E255A9490166AB368CD55A529893 Start: 3 Type: 1 Error Control: 1 Service (registry key): NDProxy Start: 3 Type: 1 Error Control: 1 Service (registry key): NetBIOS Display name: NetBIOS Interface Description: NetBIOS Interface Image path: system32\DRIVERS\netbios.sys Image size: 34560 Image MD5: 3A2ACA8FC1D7786902CA434998D7CEB4 Start: 1 Type: 2 Error Control: 1 Service (registry key): NetBT Display name: NetBios over Tcpip Description: NetBios over Tcpip Image path: system32\DRIVERS\netbt.sys Image size: 162816 Image MD5: 0C80E410CD2F47134407EE7DD19CC86B Start: 1 Type: 1 Error Control: 1 Depends On services: Tcpip Service (registry key): NetDDE Display name: Network DDE Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\netdde.exe Image size: 111104 Image MD5: 05AFB5AD06462257BEA7495283C86D50 Start: 4 Type: 32 Error Control: 1 Depends On services: NetDDEDSDM Service (registry key): NetDDEdsdm Display name: Network DDE DSDM Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\system32\netdde.exe Image size: 111104 Image MD5: 05AFB5AD06462257BEA7495283C86D50 Start: 4 Type: 32 Error Control: 1 Service (registry key): Netlogon Display name: Net Logon Description: Supports pass-through authentication of account logon events for computers in a domain. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 3 Type: 32 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): Netman Display name: Network Connections Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 288 Error Control: 1 Depends On services: RpcSs Service (registry key): Nla Display name: Network Location Awareness (NLA) Description: Collects and stores network configuration and location information, and notifies applications when this information changes. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: Tcpip,Afd Service (registry key): Nokia USB Generic Display name: Nokia USB Generic Image path: system32\drivers\nmwcdc.sys Image size: 8704 Image MD5: 19CBCC1C8168FD6736DE06F287A1413E Start: 3 Type: 1 Error Control: 0 Service (registry key): Nokia USB Modem Display name: Nokia USB Modem Image path: system32\drivers\nmwcdcm.sys Image size: 12800 Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F Start: 3 Type: 1 Error Control: 0 Service (registry key): Nokia USB Phone Parent Display name: Nokia USB Phone Parent Image path: system32\drivers\nmwcd.sys Image size: 124928 Image MD5: 09899CA1E1DF288BEB768461401D18EE Start: 3 Type: 1 Error Control: 1 Service (registry key): Nokia USB Port Display name: Nokia USB Port Image path: system32\drivers\nmwcdcj.sys Image size: 12800 Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F Start: 3 Type: 1 Error Control: 0 Service (registry key): Npfs Start: 1 Type: 2 Error Control: 1 Service (registry key): Ntfs Start: 4 Type: 2 Error Control: 1 Service (registry key): NtLmSsp Display name: NT LM Security Support Provider Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 3 Type: 32 Error Control: 1 Service (registry key): NtmsSvc Display name: Removable Storage Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): NtMtlFax Display name: NtMtlFax Image path: system32\DRIVERS\NtMtlFax.sys Image size: 167384 Image MD5: F11E04E2D0034172EB2938D0BBC7B05B Start: 3 Type: 1 Error Control: 1 Service (registry key): Null Start: 1 Type: 1 Error Control: 1 Service (registry key): NwlnkFlt Display name: IPX Traffic Filter Driver Description: IPX Traffic Filter Driver Image path: system32\DRIVERS\nwlnkflt.sys Image size: 12416 Image MD5: B305F3FAD35083837EF46A0BBCE2FC57 Start: 3 Type: 1 Error Control: 1 Depends On services: NwlnkFwd Service (registry key): NwlnkFwd Display name: IPX Traffic Forwarder Driver Description: IPX Traffic Forwarder Driver Image path: system32\DRIVERS\nwlnkfwd.sys Image size: 32512 Image MD5: C99B3415198D1AAB7227F2C88FD664B9 Start: 3 Type: 1 Error Control: 1 Service (registry key): ose Display name: Office Source Engine Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports. Object name: LocalSystem Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE" Image size: 89136 Image MD5: 7A56CF3E3F12E8AF599963B16F50FB6A Start: 3 Type: 16 Error Control: 1 Service (registry key): P3 Display name: Intel PentiumIII Processor Driver Image path: system32\DRIVERS\p3.sys Image size: 42496 Image MD5: 3E16EFF2A6FED2D8D7F5A66DFE65D183 Start: 1 Type: 1 Error Control: 1 Service (registry key): Parport Display name: Parallel port driver Image path: system32\DRIVERS\parport.sys Image size: 80128 Image MD5: 29744EB4CE659DFE3B4122DEB45BC478 Start: 3 Type: 1 Error Control: 1 Service (registry key): PartMgr Start: 0 Type: 1 Error Control: 1 Service (registry key): ParVdm Start: 2 Type: 1 Error Control: 0 Depends On services: Parport Depends On group: "Parallel arbitrator" Service (registry key): PCI Display name: PCI Bus Driver Image path: system32\DRIVERS\pci.sys Image size: 68224 Image MD5: 8086D9979234B603AD5BC2F5D890B234 Start: 0 Type: 1 Error Control: 3 Service (registry key): PCIDump Start: 1 Type: 1 Error Control: 0 Service (registry key): PCIIde Start: 4 Type: 1 Error Control: 1 Service (registry key): Pcmcia Start: 4 Type: 1 Error Control: 1 Service (registry key): PDCOMP Start: 3 Type: 1 Error Control: 0 Service (registry key): PDFRAME Start: 3 Type: 1 Error Control: 0 Service (registry key): PDRELI Start: 3 Type: 1 Error Control: 0 Service (registry key): PDRFRAME Start: 3 Type: 1 Error Control: 0 Service (registry key): perc2 Start: 4 Type: 1 Error Control: 1 Service (registry key): perc2hib Start: 4 Type: 1 Error Control: 1 Service (registry key): PerfDisk Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfNet Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfOS Start: 0 Type: 0 Error Control: 0 Service (registry key): PerfProc Start: 0 Type: 0 Error Control: 0 Service (registry key): PlugPlay Display name: Plug and Play Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability. Object name: LocalSystem Image path: %SystemRoot%\system32\services.exe Image size: 108032 Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4 Start: 2 Type: 32 Error Control: 1 Service (registry key): PolicyAgent Display name: IPSEC Services Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS,Tcpip,IPSec Service (registry key): PptpMiniport Display name: WAN Miniport (PPTP) Description: WAN Miniport (PPTP) Image path: system32\DRIVERS\raspptp.sys Image size: 48384 Image MD5: 1C5CC65AAC0783C344F16353E60B72AC Start: 3 Type: 1 Error Control: 1 Service (registry key): ProtectedStorage Display name: Protected Storage Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 288 Error Control: 1 Depends On services: RpcSs Service (registry key): PSched Display name: QoS Packet Scheduler Description: QoS Packet Scheduler Image path: system32\DRIVERS\psched.sys Image size: 69120 Image MD5: 48671F327553DCF1D27F6197F622A668 Start: 3 Type: 1 Error Control: 1 Depends On services: Gpc Service (registry key): Ptilink Display name: Direct Parallel Link Driver Description: Direct Parallel Link Driver Image path: system32\DRIVERS\ptilink.sys Image size: 17792 Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD Start: 3 Type: 1 Error Control: 1 Service (registry key): PxHelp20 Display name: PxHelp20 Image path: System32\Drivers\PxHelp20.sys Image size: 20640 Image MD5: 86724469CD077901706854974CD13C3E Start: 0 Type: 1 Error Control: 1 Service (registry key): ql1080 Start: 4 Type: 1 Error Control: 1 Service (registry key): Ql10wnt Start: 4 Type: 1 Error Control: 1 Service (registry key): ql12160 Start: 4 Type: 1 Error Control: 1 Service (registry key): ql1240 Start: 4 Type: 1 Error Control: 1 Service (registry key): ql1280 Start: 4 Type: 1 Error Control: 1 Service (registry key): RasAcd Display name: Remote Access Auto Connection Driver Description: Remote Access Auto Connection Driver Image path: system32\DRIVERS\rasacd.sys Image size: 8832 Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C Start: 1 Type: 1 Error Control: 1 Service (registry key): RasAuto Display name: Remote Access Auto Connection Manager Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RasMan,Tapisrv Service (registry key): Rasl2tp Display name: WAN Miniport (L2TP) Description: WAN Miniport (L2TP) Image path: system32\DRIVERS\rasl2tp.sys Image size: 51328 Image MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C Start: 3 Type: 1 Error Control: 1 Service (registry key): RasMan Display name: Remote Access Connection Manager Description: Creates a network connection. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: Tapisrv Service (registry key): RasPppoe Display name: Remote Access PPPOE Driver Description: Remote Access PPPOE Driver Image path: system32\DRIVERS\raspppoe.sys Image size: 41472 Image MD5: 7306EEED8895454CBED4669BE9F79FAA Start: 3 Type: 1 Error Control: 1 Service (registry key): Raspti Display name: Direct Parallel Description: Direct Parallel Image path: system32\DRIVERS\raspti.sys Image size: 16512 Image MD5: FDBB1D60066FCFBB7452FD8F9829B242 Start: 3 Type: 1 Error Control: 1 Service (registry key): Rdbss Display name: Rdbss Description: Rdbss Image path: system32\DRIVERS\rdbss.sys Image size: 176512 Image MD5: 29D66245ADBA878FFF574CD66ABD2884 Start: 1 Type: 2 Error Control: 1 Service (registry key): RDPCDD Image path: System32\DRIVERS\RDPCDD.sys Image size: 4224 Image MD5: 4912D5B403614CE99C28420F75353332 Start: 1 Type: 1 Error Control: 0 Service (registry key): RDPDD Start: 0 Type: 0 Error Control: 0 Service (registry key): rdpdr Display name: Terminal Server Device Redirector Driver Image path: system32\DRIVERS\rdpdr.sys Image size: 196864 Image MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD Start: 3 Type: 1 Error Control: 1 Service (registry key): RDPNP Start: 0 Type: 0 Error Control: 0 Service (registry key): RDPWD Start: 3 Type: 1 Error Control: 0 Service (registry key): RDSessMgr Display name: Remote Desktop Help Session Manager Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box. Object name: LocalSystem Image path: C:\WINDOWS\system32\sessmgr.exe Image size: 140800 Image MD5: 729798E0933076B8FCFCD9934698F164 Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): RecAgent Display name: recagent Image path: \??\C:\WINDOWS\system32\DRIVERS\RecAgent.sys Image size: 13776 Image MD5: E9AAA0092D74A9D371659C4C38882E12 Start: 3 Type: 1 Error Control: 1 Service (registry key): redbook Display name: Digital CD Audio Playback Filter Driver Image path: system32\DRIVERS\redbook.sys Image size: 57472 Image MD5: B31B4588E4086D8D84ADBF9845C2402B Start: 1 Type: 1 Error Control: 1 Service (registry key): RemoteAccess Display name: Routing and Remote Access Description: Offers routing services to businesses in local area and wide area network environments. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 4 Type: 32 Error Control: 1 Depends On services: RpcSS Depends On group: NetBIOSGroup Service (registry key): RemoteRegistry Display name: Remote Registry Description: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): RpcLocator Display name: Remote Procedure Call (RPC) Locator Description: Manages the RPC name service database. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\locator.exe Image size: 75264 Image MD5: 793F04A09B15E7C6C11DBDFFAF06C0AB Start: 3 Type: 16 Error Control: 1 Depends On services: LanmanWorkstation Service (registry key): RpcSs Display name: Remote Procedure Call (RPC) Description: Provides the endpoint mapper and other miscellaneous RPC services. Object name: NT AUTHORITY\NetworkService Image path: %SystemRoot%\system32\svchost -k rpcss Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): RSVP Display name: QoS RSVP Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets. Object name: LocalSystem Image path: %SystemRoot%\system32\rsvp.exe Image size: 132608 Image MD5: 471B3F9741D762ABE75E9DEEA4787E47 Start: 3 Type: 16 Error Control: 1 Depends On services: TcpIp,Afd,RpcSs Service (registry key): rtl8139 Display name: Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver Image path: system32\DRIVERS\RTL8139.SYS Image size: 20992 Image MD5: D507C1400284176573224903819FFDA3 Start: 3 Type: 1 Error Control: 1 Service (registry key): SamSs Display name: Security Accounts Manager Description: Stores security information for local user accounts. Object name: LocalSystem Image path: %SystemRoot%\system32\lsass.exe Image size: 13312 Image MD5: 84885F9B82F4D55C6146EBF6065D75D2 Start: 2 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): SCardSvr Display name: Smart Card Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\System32\SCardSvr.exe Image size: 95744 Image MD5: 25D8DE134DF108E3DBC8D7D23B1AA58E Start: 3 Type: 32 Error Control: 0 Depends On services: PlugPlay Service (registry key): Schedule Display name: Task Scheduler Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): SDhelper Display name: PC Tools Spyware Doctor Description: Provides spyware and malware protection for the system. If this service is disabled spyware protection will be reduced. Object name: LocalSystem Image path: C:\Program Files\Spyware Doctor\sdhelp.exe Image size: 895088 Image MD5: D8CA03BE0F6DC8C8D71009795028006A Start: 2 Type: 16 Error Control: 1 Service (registry key): Secdrv Display name: Secdrv Description: SafeDisc driver Image path: system32\DRIVERS\secdrv.sys Image size: 27440 Image MD5: D26E26EA516450AF9D072635C60387F4 Start: 3 Type: 1 Error Control: 1 Service (registry key): seclogon Display name: Secondary Logon Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 288 Error Control: 0 Service (registry key): SENS Display name: System Event Notification Description: Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: EventSystem Service (registry key): serenum Display name: Serenum Filter Driver Image path: system32\DRIVERS\serenum.sys Image size: 15488 Image MD5: A2D868AEEFF612E70E213C451A70CAFB Start: 3 Type: 1 Error Control: 1 Service (registry key): Serial Display name: Serial port driver Image path: system32\DRIVERS\serial.sys Image size: 64896 Image MD5: CD9404D115A00D249F70A371B46D5A26 Start: 1 Type: 1 Error Control: 0 Service (registry key): sermouse Display name: Serial Mouse Driver Image path: system32\DRIVERS\sermouse.sys Image size: 17664 Image MD5: 1F16931C722C69E4A7866244796C66A0 Start: 3 Type: 1 Error Control: 1 Service (registry key): Sfloppy Start: 1 Type: 1 Error Control: 0 Depends On group: "SCSI miniport" Service (registry key): SharedAccess Display name: Windows Firewall/Internet Connection Sharing (ICS) Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: Netman,WinMgmt Service (registry key): ShellHWDetection Display name: Shell Hardware Detection Description: Provides notifications for AutoPlay hardware events. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RpcSs Service (registry key): Simbad Start: 4 Type: 1 Error Control: 1 Service (registry key): Slntamr Display name: NetoDragon AMR_PCI Driver Image path: system32\DRIVERS\slntamr.sys Image size: 545528 Image MD5: 2EE2E5AA1B0FEB8E32D615BC8AAE6D14 Start: 3 Type: 1 Error Control: 0 Service (registry key): SlNtHal Display name: SlNtHal Image path: system32\DRIVERS\Slnthal.sys Image size: 86128 Image MD5: D84CE5182F7D9F3E7E4FF0C36B16A466 Start: 3 Type: 1 Error Control: 1 Service (registry key): SlWdmSup Display name: SlWdmSup Image path: system32\DRIVERS\SlWdmSup.sys Image size: 39348 Image MD5: 4A35904E8EE6C103C815EE269CC7A7B9 Start: 3 Type: 1 Error Control: 0 Service (registry key): Sparrow Start: 4 Type: 1 Error Control: 1 Service (registry key): splitter Display name: Microsoft Kernel Audio Splitter Image path: system32\drivers\splitter.sys Image size: 6400 Image MD5: 8E186B8F23295D1E42C573B82B80D548 Start: 3 Type: 1 Error Control: 1 Service (registry key): Spooler Display name: Print Spooler Description: Loads files to memory for later printing. Object name: LocalSystem Image path: %SystemRoot%\system32\spoolsv.exe Image size: 57856 Image MD5: 7435B108B935E42EA92CA94F59C8E717 Start: 2 Type: 272 Error Control: 1 Depends On services: RPCSS Service (registry key): sp_rsdrv2 Display name: Spyware Terminator Driver 2 Image path: \??\C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys Start: 1 Type: 1 Error Control: 1 Service (registry key): sr Display name: System Restore Filter Driver Image path: system32\DRIVERS\sr.sys Image size: 73472 Image MD5: E41B6D037D6CD08461470AF04500DC24 Start: 0 Type: 2 Error Control: 1 Service (registry key): srservice Display name: System Restore Service Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): Srv Display name: Srv Description: Srv Image path: system32\DRIVERS\srv.sys Image size: 336256 Image MD5: 20B7E396720353E4117D64D9DCB926CA Start: 3 Type: 2 Error Control: 1 Service (registry key): SSDPSRV Display name: SSDP Discovery Service Description: Enables discovery of UPnP devices on your home network. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: HTTP Service (registry key): stisvc Display name: Windows Image Acquisition (WIA) Description: Provides image acquisition services for scanners and cameras. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k imgsvc Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): swenum Display name: Software Bus Driver Image path: system32\DRIVERS\swenum.sys Image size: 4352 Image MD5: 03C1BAE4766E2450219D20B993D6E046 Start: 3 Type: 1 Error Control: 1 Service (registry key): swmidi Display name: Microsoft Kernel GS Wavetable Synthesizer Image path: system32\drivers\swmidi.sys Image size: 54272 Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D Start: 3 Type: 1 Error Control: 1 Service (registry key): SwPrv Display name: MS Software Shadow Copy Provider Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{56859176-B9E9-4E77-B6D9-37C208D2F4BE} Image size: 5120 Image MD5: DD87DB7387B9EB441C5674888A0D840C Start: 3 Type: 16 Error Control: 0 Depends On services: rpcss Service (registry key): symc810 Start: 4 Type: 1 Error Control: 1 Service (registry key): symc8xx Start: 4 Type: 1 Error Control: 1 Service (registry key): sym_hi Start: 4 Type: 1 Error Control: 1 Service (registry key): sym_u3 Start: 4 Type: 1 Error Control: 1 Service (registry key): sysaudio Display name: Microsoft Kernel System Audio Device Image path: system32\drivers\sysaudio.sys Image size: 60800 Image MD5: 650AD082D46BAC0E64C9C0E0928492FD Start: 3 Type: 1 Error Control: 1 Service (registry key): SysmonLog Display name: Performance Logs and Alerts Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT Authority\NetworkService Image path: %SystemRoot%\system32\smlogsvc.exe Image size: 89600 Image MD5: 8B54AA346D1B1B113FFAA75501B8B1B2 Start: 3 Type: 16 Error Control: 1 Service (registry key): TapiSrv Display name: Telephony Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: PlugPlay,RpcSs Service (registry key): Tcpip Display name: TCP/IP Protocol Driver Description: TCP/IP Protocol Driver Image path: system32\DRIVERS\tcpip.sys Image size: 359040 Image MD5: 9F4B36614A0FC234525BA224957DE55C Start: 1 Type: 1 Error Control: 1 Depends On services: IPSec Service (registry key): TDPIPE Start: 3 Type: 1 Error Control: 0 Service (registry key): TDTCP Start: 3 Type: 1 Error Control: 0 Service (registry key): TermDD Display name: Terminal Device Driver Image path: system32\DRIVERS\termdd.sys Image size: 40840 Image MD5: A540A99C281D933F3D69D55E48727F47 Start: 1 Type: 1 Error Control: 1 Service (registry key): TermService Display name: Terminal Services Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost -k DComLaunch Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RPCSS Service (registry key): Themes Display name: Themes Description: Provides user experience theme management. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): TlntSvr Display name: Telnet Description: Enables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: C:\WINDOWS\system32\tlntsvr.exe Image size: 73216 Image MD5: 37DB0A7D097310E8B4DE803FC3119C78 Start: 4 Type: 16 Error Control: 1 Depends On services: RPCSS,TCPIP,NTLMSSP Service (registry key): TosIde Start: 4 Type: 1 Error Control: 1 Service (registry key): trid3d Image path: system32\DRIVERS\trid3dm.sys Image size: 222336 Image MD5: 8DFD837A98A4A6C581214FA358430837 Start: 3 Type: 1 Error Control: 0 Service (registry key): TrkWks Display name: Distributed Link Tracking Client Description: Maintains links between NTFS files within a computer or across computers in a network domain. Object name: LocalSystem Image path: %SystemRoot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): TSDDD Start: 0 Type: 0 Error Control: 0 Service (registry key): Udfs Start: 4 Type: 2 Error Control: 1 Service (registry key): ultra Start: 4 Type: 1 Error Control: 1 Service (registry key): Update Display name: Microcode Update Driver Image path: system32\DRIVERS\update.sys Image size: 209408 Image MD5: AFF2E5045961BBC0A602BB6F95EB1345 Start: 3 Type: 1 Error Control: 1 Service (registry key): upnphost Display name: Universal Plug and Play Device Host Description: Provides support to host Universal Plug and Play devices. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: SSDPSRV,HTTP Service (registry key): UPS Display name: Uninterruptible Power Supply Description: Manages an uninterruptible power supply (UPS) connected to the computer. Object name: LocalSystem Image path: %SystemRoot%\System32\ups.exe Image size: 18432 Image MD5: 3F5DF65B0758675F95A2D43918A740A3 Start: 3 Type: 16 Error Control: 1 Service (registry key): usbhub Display name: USB2 Enabled Hub Image path: system32\DRIVERS\usbhub.sys Image size: 57600 Image MD5: C72F40947F92CEA56A8FB532EDF025F1 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbprint Display name: Microsoft USB PRINTER Class Image path: system32\DRIVERS\usbprint.sys Image size: 25856 Image MD5: A42369B7CD8886CD7C70F33DA6FCBCF5 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbscan Display name: USB Scanner Driver Image path: system32\DRIVERS\usbscan.sys Image size: 15104 Image MD5: A6BC71402F4F7DD5B77FD7F4A8DDBA85 Start: 3 Type: 1 Error Control: 1 Service (registry key): USBSTOR Display name: USB Mass Storage Driver Image path: system32\DRIVERS\USBSTOR.SYS Image size: 26496 Image MD5: 6CD7B22193718F1D17A47A1CD6D37E75 Start: 3 Type: 1 Error Control: 1 Service (registry key): usbuhci Display name: Microsoft USB Universal Host Controller Miniport Driver Image path: system32\DRIVERS\usbuhci.sys Image size: 20480 Image MD5: F8FD1400092E23C8F2F31406EF06167B Start: 3 Type: 1 Error Control: 1 Service (registry key): usnsvc Display name: Messenger Sharing USN Journal Reader service Description: Service installed by Messenger to enable sharing scenarios Object name: LocalSystem Image path: C:\WINDOWS\system32\svchost.exe -k usnsvc Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 16 Error Control: 1 Depends On services: rpcss,eventlog Service (registry key): VgaSave Image path: \SystemRoot\System32\drivers\vga.sys Start: 1 Type: 1 Error Control: 0 Service (registry key): viaagp Display name: VIA AGP Bus Filter Image path: system32\DRIVERS\viaagp.sys Image size: 42240 Image MD5: D92E7C8A30CFD14D8E15B5F7F032151B Start: 0 Type: 1 Error Control: 1 Service (registry key): ViaIde Image path: system32\DRIVERS\viaide.sys Image size: 5376 Image MD5: 59CB1338AD3654417BEA49636457F65D Start: 0 Type: 1 Error Control: 1 Service (registry key): VIAudio Display name: VIA AC'97 Audio Controller (WDM) Image path: system32\drivers\ac97via.sys Image size: 84480 Image MD5: 819BF44085104BE6527B86A88ACF856B Start: 3 Type: 1 Error Control: 1 Service (registry key): VolSnap Start: 0 Type: 1 Error Control: 1 Service (registry key): VSS Display name: Volume Shadow Copy Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\vssvc.exe Image size: 289792 Image MD5: 3EE00364AE0FD8D604F46CBAF512838A Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): W32Time Display name: Windows Time Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): W3SVC Start: 0 Type: 0 Error Control: 0 Service (registry key): Wanarp Display name: Remote Access IP ARP Driver Description: Remote Access IP ARP Driver Image path: system32\DRIVERS\wanarp.sys Image size: 34560 Image MD5: 984EF0B9788ABF89974CFED4BFBAACBC Start: 3 Type: 1 Error Control: 1 Service (registry key): WDICA Start: 3 Type: 1 Error Control: 0 Service (registry key): wdmaud Display name: Microsoft WINMM WDM Audio Compatibility Driver Image path: system32\drivers\wdmaud.sys Image size: 82944 Image MD5: 2797F33EBF50466020C430EE4F037933 Start: 3 Type: 1 Error Control: 1 Service (registry key): WebClient Display name: WebClient Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: NT AUTHORITY\LocalService Image path: %SystemRoot%\system32\svchost.exe -k LocalService Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: MRxDAV Service (registry key): winachsf Image path: system32\DRIVERS\HSFCXTS2.sys Image size: 685056 Image MD5: 1225EBEA76AAC3C84DF6C54FE5E5D8BE Start: 3 Type: 1 Error Control: 0 Service (registry key): winmgmt Display name: Windows Management Instrumentation Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. Object name: LocalSystem Image path: %systemroot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 0 Depends On services: RPCSS Service (registry key): Winsock Start: 3 Type: 4 Error Control: 1 Service (registry key): WinSock2 Start: 0 Type: 0 Error Control: 0 Service (registry key): WinTrust Start: 0 Type: 0 Error Control: 0 Service (registry key): WmdmPmSN Display name: Portable Media Serial Number Service Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): Wmi Display name: Windows Management Instrumentation Driver Extensions Description: Provides systems management information to and from drivers. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Service (registry key): WmiApRpl Start: 0 Type: 0 Error Control: 0 Service (registry key): WmiApSrv Display name: WMI Performance Adapter Description: Provides performance library information from WMI HiPerf providers. Object name: LocalSystem Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe Image size: 126464 Image MD5: BA8CECC3E813E1F7C441B20393D4F86C Start: 3 Type: 16 Error Control: 1 Depends On services: RPCSS Service (registry key): WS2IFSL Start: 1 Type: 0 Error Control: 0 Service (registry key): wuauserv Display name: Automatic Updates Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site. Object name: LocalSystem Image path: %systemroot%\system32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Service (registry key): WZCSVC Display name: Wireless Zero Configuration Description: Provides automatic configuration for the 802.11 adapters Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 2 Type: 32 Error Control: 1 Depends On services: RpcSs,Ndisuio Service (registry key): xmlprov Display name: Network Provisioning Service Description: Manages XML configuration files on a domain basis for automatic network provisioning. Object name: LocalSystem Image path: %SystemRoot%\System32\svchost.exe -k netsvcs Image size: 14336 Image MD5: 8F078AE4ED187AAABC0A305146DE6716 Start: 3 Type: 32 Error Control: 1 Depends On services: RpcSs Service (registry key): ZTPPPOE Display name: WAN Miniport (PPP over Ethernet Protocol) Image path: system32\DRIVERS\ztpppoe.sys Image size: 18238 Image MD5: EF41F47D21761FF125E615E175984521 Start: 3 Type: 1 Error Control: 1 Service (registry key): {3A5367D3-6621-4321-86BA-FBF1DC8E8A32} Start: 0 Type: 0 Error Control: 0 Service (registry key): {8141C4F5-9474-4946-B7DB-218FBCA21BFB} Start: 0 Type: 0 Error Control: 0
CCleaner CLEANING COMPLETE - (5.762 secs) ------------------------------------------------------------------------------------------ 274.3MB removed. ------------------------------------------------------------------------------------------ Details of files deleted ------------------------------------------------------------------------------------------ IE Temporary Internet Files (161 files) 1.38MB C:\Documents and Settings\User\Cookies\user@yahoo[1].txt 82 bytes C:\Documents and Settings\User\Cookies\user@rad.msn[2].txt 690 bytes C:\Documents and Settings\User\Local Settings\History\History.IE5\desktop.ini 113 bytes C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006100220061003\index.dat 0.22MB C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006110920061110\index.dat 96.00KB C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012007021420070215\index.dat 80.00KB C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012005123020051231\index.dat 48.00KB C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006020120060202\index.dat 0.23MB C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006031820060319\index.dat 32.00KB Marked for deletion: C:\Documents and Settings\User\Local Settings\Temporary Internet Files\Content.IE5\index.dat Marked for deletion: C:\Documents and Settings\User\Cookies\index.dat Marked for deletion: C:\Documents and Settings\User\Local Settings\History\History.IE5\index.dat Marked for deletion: C:\Documents and Settings\User\Local Settings\History\History.IE5\mshist012007030720070308\index.dat Emptied Recycle Bin (3 files) 10.1MB C:\WINDOWS\MEMORY.DMP 254.6MB C:\WINDOWS\MiniDump\Mini050806-01.dmp 92.00KB C:\WINDOWS\MiniDump\Mini112406-01.dmp 92.00KB C:\WINDOWS\MiniDump\Mini012407-01.dmp 64.00KB C:\WINDOWS\system32\wbem\Logs\setup.log 10.37KB C:\WINDOWS\system32\wbem\Logs\mofcomp.log 22.35KB C:\WINDOWS\system32\wbem\Logs\replog.log 550 bytes C:\WINDOWS\system32\wbem\Logs\wbemcore.log 285 bytes C:\WINDOWS\system32\wbem\Logs\wmiprov.log 33.67KB C:\WINDOWS\system32\wbem\Logs\wbemprox.log 2.10KB C:\WINDOWS\system32\wbem\Logs\wmiadap.log 3.99KB C:\WINDOWS\system32\wbem\Logs\FrameWork.log 28.66KB C:\WINDOWS\system32\wbem\Logs\wbemess.log 55.85KB C:\WINDOWS\system32\wbem\Logs\FrameWork.lo_ 64.01KB C:\WINDOWS\system32\wbem\Logs\wbemess.lo_ 64.08KB C:\WINDOWS\imsins.log 1.85KB C:\WINDOWS\setupapi.log 0.34MB C:\WINDOWS\setupact.log 0.22MB C:\WINDOWS\setuperr.log 316 bytes C:\WINDOWS\KB914389.log 13.99KB C:\WINDOWS\nsw.log 350 bytes C:\WINDOWS\COM+.log 1.42KB C:\WINDOWS\EventSystem.log 1.29KB C:\WINDOWS\MININU.LOG 732 bytes C:\WINDOWS\SYMEVENT.LOG 4.31KB C:\WINDOWS\regopt.log 2.99KB C:\WINDOWS\ocgen.log 0.27MB C:\WINDOWS\FaxSetup.log 0.53MB C:\WINDOWS\iis6.log 0.65MB C:\WINDOWS\comsetup.log 0.20MB C:\WINDOWS\ntdtcsetup.log 0.12MB C:\WINDOWS\tsoc.log 0.25MB C:\WINDOWS\msmqinst.log 0.17MB C:\WINDOWS\msgsocm.log 27.83KB C:\WINDOWS\tabletoc.log 27.96KB C:\WINDOWS\MedCtrOC.log 38.36KB C:\WINDOWS\netfxocm.log 94.72KB C:\WINDOWS\ocmsn.log 29.82KB C:\WINDOWS\Sti_Trace.log 0 bytes C:\WINDOWS\wiaservc.log 48 bytes C:\WINDOWS\wiadebug.log 275 bytes C:\WINDOWS\cmsetacl.log 373 bytes C:\WINDOWS\KB905915.log 16.00KB C:\WINDOWS\KB912919.log 10.73KB C:\WINDOWS\KB908519.log 9.84KB C:\WINDOWS\KB910437.log 9.20KB C:\WINDOWS\KB901190.log 9.58KB C:\WINDOWS\KB911567.log 10.50KB C:\WINDOWS\KB911927.log 10.47KB C:\WINDOWS\KB913446.log 6.56KB C:\WINDOWS\KB911565.log 7.37KB C:\WINDOWS\KB911564.log 7.16KB C:\WINDOWS\spupdsvc.log 3.16KB C:\WINDOWS\KB912812.log 16.76KB C:\WINDOWS\wmsetup.log 86.68KB C:\WINDOWS\DtcInstall.log 253 bytes C:\WINDOWS\sessmgr.setup.log 2.01KB C:\WINDOWS\KB911562.log 13.85KB C:\WINDOWS\KB908531.log 14.60KB C:\WINDOWS\KB900485.log 10.93KB C:\WINDOWS\KB913580.log 11.74KB C:\WINDOWS\WindowsUpdate.log 0.51MB C:\WINDOWS\0.log 0 bytes C:\WINDOWS\KB898461.log 8.17KB C:\WINDOWS\KB893803v2.log 7.36KB C:\WINDOWS\KB896423.log 25.29KB C:\WINDOWS\WgaNotify.log 16.41KB C:\WINDOWS\KB890859.log 16.34KB C:\WINDOWS\KB894391.log 16.28KB C:\WINDOWS\KB896428.log 15.65KB C:\WINDOWS\KB905749.log 16.83KB C:\WINDOWS\KB904706.log 16.54KB C:\WINDOWS\KB900725.log 19.29KB C:\WINDOWS\KB888302.log 17.48KB C:\WINDOWS\KB901214.log 18.21KB C:\WINDOWS\KB905414.log 19.20KB C:\WINDOWS\KB899589.log 18.89KB C:\WINDOWS\KB893066.log 18.86KB C:\WINDOWS\KB890046.log 22.43KB C:\WINDOWS\KB902400.log 31.31KB C:\WINDOWS\KB891781.log 25.21KB C:\WINDOWS\KB896358.log 26.45KB C:\WINDOWS\KB887472.log 25.11KB C:\WINDOWS\KB887742.log 25.70KB C:\WINDOWS\KB888113.log 25.17KB C:\WINDOWS\KB873339.log 25.10KB C:\WINDOWS\KB893756.log 26.73KB C:\WINDOWS\KB896424.log 27.63KB C:\WINDOWS\KB899591.log 27.36KB C:\WINDOWS\KB901017.log 27.05KB C:\WINDOWS\KB885250.log 26.83KB C:\WINDOWS\KB885836.log 26.04KB C:\WINDOWS\KB885835.log 27.12KB C:\WINDOWS\KB896422.log 27.35KB C:\WINDOWS\KB899587.log 28.21KB C:\WINDOWS\updspapi.log 32.48KB C:\WINDOWS\KB916281.log 19.60KB C:\WINDOWS\KB917953.log 15.95KB C:\WINDOWS\KB917344.log 16.18KB C:\WINDOWS\KB885884.log 8.90KB C:\WINDOWS\KB918439.log 15.80KB C:\WINDOWS\KB917734.log 13.34KB C:\WINDOWS\KB886185.log 11.59KB C:\WINDOWS\KB896688.log 20.37KB C:\WINDOWS\KB911280.log 11.80KB C:\WINDOWS\KB916595.log 10.13KB C:\WINDOWS\KB914388.log 11.96KB C:\WINDOWS\KB917159.log 11.49KB C:\WINDOWS\yacs.log 12.39KB C:\WINDOWS\KB921883.log 10.80KB C:\WINDOWS\KB917422.log 11.62KB C:\WINDOWS\KB920670.log 11.39KB C:\WINDOWS\KB918899.log 19.25KB C:\WINDOWS\KB921398.log 16.53KB C:\WINDOWS\KB922616.log 15.99KB C:\WINDOWS\KB920214.log 15.94KB C:\WINDOWS\KB920683.log 12.39KB C:\WINDOWS\KB919007.log 10.41KB C:\WINDOWS\KB920872.log 11.64KB C:\WINDOWS\KB920685.log 9.85KB C:\WINDOWS\KB922582.log 7.67KB C:\WINDOWS\KB925486.log 10.26KB C:\WINDOWS\KB923191.log 19.43KB C:\WINDOWS\KB924496.log 14.98KB C:\WINDOWS\KB923414.log 11.33KB C:\WINDOWS\KB922819.log 13.08KB C:\WINDOWS\KB924191.log 13.42KB C:\WINDOWS\KB922760.log 16.66KB C:\WINDOWS\KB920213.log 14.67KB C:\WINDOWS\KB924270.log 15.22KB C:\WINDOWS\KB923980.log 15.55KB C:\WINDOWS\imsins.BAK 1.87KB C:\WINDOWS\setuplog.txt 478 bytes C:\WINDOWS\IE4 Error Log.txt 1.52KB C:\WINDOWS\ntbtlog.txt 0.26MB C:\WINDOWS\OEWABLog.txt 1.25KB C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\drwtsn32.log 0.62MB C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp 14.49KB C:\WINDOWS\Debug\NetSetup.LOG 11.86KB C:\WINDOWS\Debug\blastcln.log 572 bytes C:\WINDOWS\Debug\mrt.log 9.33KB C:\WINDOWS\Debug\UserMode\userenv.log 9.40KB C:\WINDOWS\Debug\UserMode\userenv.bak 0.30MB C:\WINDOWS\SchedLgU.Txt 31.88KB C:\WINDOWS\security\logs\scesetup.log 0.17MB C:\WINDOWS\security\logs\SceRoot.log 440 bytes C:\WINDOWS\security\logs\backup.log 2.76KB C:\WINDOWS\security\logs\scecomp.old 29.80KB C:\Documents and Settings\User\Application Data\Real\RealPlayer\cookies.txt 480 bytes C:\Documents and Settings\User\Application Data\Real\RealPlayer\realplayer.ste 1.22KB C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\ringin.lnk 1.73KB C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\±¦±´¼Æ»®BÃæ.lnk 1.78KB C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\±¦±´¼Æ»®.lnk 1.79KB C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\27012007031.lnk 1.79KB C:\Program Files\Common Files\Real\Update_OB\RealPlayer-log.txt 76.80KB C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#local\settings.sol 75 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com\settings.sol 86 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chat1.hk1.outblaze.com\settings.sol 92 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#amd.com\settings.sol 77 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dspindustry.com\settings.sol 89 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dynodownloads.com\settings.sol 87 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#g.akamai.net\settings.sol 82 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cosmos.bcst.yahoo.com\settings.sol 91 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#go.com\settings.sol 76 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#i-dac.com\settings.sol 79 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#123greetings.com\settings.sol 86 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.rcade.com\settings.sol 83 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\settings.sol 85 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.lacoste-essential.com\settings.sol 95 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#miniclip.com\settings.sol 82 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.2.joyourself.com\settings.sol 90 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#us.i1.yimg.com\settings.sol 84 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#discovery.com\settings.sol 83 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#health.discovery.com\settings.sol 90 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nokia.com\settings.sol 79 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mymesra.com.my\settings.sol 84 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#youtube.com\settings.sol 81 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pagead2.googlesyndication.com\settings.sol 99 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nseries.com\settings.sol 85 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.metacafe.com\settings.sol 86 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nst.com.my\settings.sol 80 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#munchys.com\settings.sol 81 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#rocherusa.com\settings.sol 83 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aolcdn.com\settings.sol 80 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#oddcast.com\settings.sol 81 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#disney.co.jp\settings.sol 82 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.motorola.com\settings.sol 86 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.tudou.com\settings.sol 83 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.2.livejasmin.com\settings.sol 90 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#naiadsystems.com\settings.sol 86 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dailymotion.com\settings.sol 89 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dv.ouou.com\settings.sol 81 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.userplane.com\settings.sol 90 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#stat.radioblogclub.com\settings.sol 92 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.blastro.com\settings.sol 85 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tv.mofile.com\settings.sol 83 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zone.msn.com\settings.sol 82 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol 1.14KB C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\localhost\core.sol 53 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\localhost\core.sol 53 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\localhost\AVPrefs.sol 69 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\video.google.com\googleplayer.swf\mediaPlayerUserSettings.sol 94 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\video.google.com\datastore.swf\videoPlayerSettings.sol 145 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\chat1.hk1.outblaze.com\chatui.swf\chat_settings_6628.sol 2.13KB C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\chat1.hk1.outblaze.com\chatui.swf\chat_settings_6629.sol 2.13KB C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\dynodownloads.com\games1\files\sudoku-original.swf\defaultPack.sol 15.71KB C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\dynodownloads.com\games1\files\sudoku-original.swf\sudokuPacks.sol 93 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\g.akamai.net\falckbanner.sol 68 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\cosmos.bcst.yahoo.com\vidPlayer.sol 898 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\go.com\disneypictures\main.swf\revisitor.sol 75 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.rcade.com\games\sushisudoku\rcade\rcsumain.swf\easystat.sol 432 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.youtube.com\soundData.sol 58 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.lacoste-essential.com\site.swf\green_profile.sol 54 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\miniclip.com\swfcontent\push\gamepages.swf\MiniclipFeaturedGame.sol 64 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.2.joyourself.com\flash\freechat037.swf\jasminmember01.sol 84 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\us.i1.yimg.com\vidPlayer.sol 1.15KB C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\us.i1.yimg.com\cosmos.bcst.yahoo.com\player\embed-2-0-2006-10-25-1634\swf\yup_embed_module.swf\TestMovie_Config_Info.sol 341 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\us.i1.yimg.com\LCOMMENGINEMGR.sol 53 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\discovery.com\fpv.sol 44 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\discovery.com\common\smedia\netnav.swf\healthnetnav.sol 52 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\health.discovery.com\age_verification.sol 195 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\nokia.com\NOKIA_COM_1\Home\Landing_Page_Common_Items\wayfinderfinal.swf\userVisits1.sol 59 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\nokia.com\NOKIA_COM_1\Home\Landing_Page_Common_Items\wayfinderfinal01.swf\userVisits1.sol 59 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\mymesra.com.my\images\primax3_side_menu_prod.swf\user_click.sol 47 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\youtube.com\soundData.sol 58 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\pagead2.googlesyndication.com\pagead\googleadplayer.swf\mediaPlayerUserSettings.sol 94 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.nseries.com\nseries\nokiaLanguage.sol 70 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.metacafe.com\f\fp_site.swf\user_data.sol 55 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\nst.com.my\Current_News\NST\sudoku\uc_sudoc.swf\sudoku.sol 110 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\munchys.com\XXmain.swf\database.sol 46 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\aolcdn.com\_media\aolvideo30\rootmovie351.swf\videoSO.sol 57 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\oddcast.com\vhsssecure.php\oddcast_vhss.sol 58 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\disney.co.jp\dtopfile\swf\dtop_base.swf\disneyjpoverlays2.sol 104 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.motorola.com\50Msettop_brandstory.sol 59 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.tudou.com\TudouLogEndEvent.sol 142 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.tudou.com\TudouLog.sol 256 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.2.livejasmin.com\flash\freechat042.swf\jasminmember01.sol 84 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\naiadsystems.com\naiad.sol 72 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.dailymotion.com\flash\flvplayer.swf\userPreferences.sol 66 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\dv.ouou.com\swf\player.swf\ououplayer.sol 66 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\static.userplane.com\presence\presence.swf\presence_1.sol 103 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\stat.radioblogclub.com\RbRestoSave.sol 137 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.blastro.com\flashplayer\flvPlayer.swf\Lightningcast.sol 56 bytes C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\tv.mofile.com\cn\xplayer.swf\moxso.sol 43 bytes C:\Program Files\Ahead\Nero\NeroHistory.log 14.69KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Update downloads.log 6.45KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1340.log 833 bytes C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1353.txt 1.63KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Fixes.060925-1619.txt 1.58KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1619.log 242 bytes C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1640.txt 1.01KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0921.log 546 bytes C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0935.txt 2.26KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0938.log 546 bytes C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0950.txt 2.26KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Fixes.070307-0952.txt 2.22KB C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Statistics.ini 1.17KB C:\Program Files\Lavasoft\Ad-Aware SE Personal\defs.ref.old 0.45MB C:\Documents and Settings\User\Application Data\Lavasoft\Ad-Aware\Logs\Ad-Aware log2007-03-07 09-19-27.txt 15.85KB C:\Program Files\DAP\Temp\ADS48.tmp 233 bytes C:\Program Files\DAP\Temp\SRCFB.tmp.dap 0 bytes C:\Program Files\DAP\Temp\ADSD1.tmp.dap 0 bytes C:\Program Files\DAP\Log\DAP_WIZARD.LOG 52.32KB C:\Program Files\DAP\Log\DAP_REPORT.LOG 0 bytes C:\Program Files\DAP\Log\DAP.LOG 709 bytes ------------------------------------------------------------------------------------------
Logfile of HijackThis v1.99.1 Scan saved at 10:00:08 AM, on 3/7/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Spyware Doctor\sdhelp.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Spyware Doctor\swdoctor.exe C:\WINDOWS\system32\wuauclt.exe C:\HijackThis\HijackThis.exe C:\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{8141C4F5-9474-4946-B7DB-218FBCA21BFB}: NameServer = 202.188.0.133,202.188.1.5 O17 - HKLM\System\CS1\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\ O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe