Jump to content

Намерени проблеми с SpyBot [РЕШЕН]


Гост barutchiev

Препоръчан пост

Здравейте отново.Май проблемите ме следват навсякъде и вече почти навсякъде в форума съм питал за какво ли не :D.

Днес направих едно профилактично сканиране с SpyBot и ми излязоха някакви проблеми.Прилагам следния лог :

 

 

 

 

--- Search result list ---

Widgi.Toolbar: [sBI $885BB76E] Настройки (Registry key, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Application Updater

 

Widgi.Toolbar: [sBI $16C3A07B] Настройки (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files\Common Files\Spigot\

 

Widgi.Toolbar: [sBI $000389AB] Настройки (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files\Common Files\Spigot\Search Settings\

 

Widgi.Toolbar: [sBI $9061208C] Настройки (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files\Common Files\Spigot\Search Settings\Lang\

 

Widgi.Toolbar: [sBI $1E14509F] Настройки (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files\Common Files\Spigot\Search Settings\Res\

 

Widgi.Toolbar: [sBI $65C7C8B1] Споделен DLL (1 приложения) (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls\C:\Program Files\Application Updater\ApplicationUpdater.exe

 

Widgi.Toolbar: [sBI $65C7C8B1] Системен файл (File, nothing done)

C:\Program Files\Application Updater\ApplicationUpdater.exe

Properties.size=799624

Properties.md5=C07F7708ADB2BC2BE53B9B1E055F1955

Properties.filedate=1354118366

Properties.filedatetext=2012-11-28 17:59:26

 

Widgi.Toolbar: [sBI $65C7C8B1] Споделен DLL (1 приложения) (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls\C:\Program Files\Application Updater\ApplicationUpdater.exe

 

Widgi.Toolbar: [sBI $5AE37010] Споделен DLL (1 приложения) (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls\C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe

 

Widgi.Toolbar: [sBI $5AE37010] Системен файл (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe

Properties.size=1123720

Properties.md5=52EBE9F1CBCD3B60B08A61C8D3FEEECE

Properties.filedate=1354118366

Properties.filedatetext=2012-11-28 17:59:26

 

Widgi.Toolbar: [sBI $5AE37010] Споделен DLL (1 приложения) (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls\C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe

 

Widgi.Toolbar: [sBI $0B12F9B5] Програмна директория (Directory, nothing done)

C:\Program Files\Application Updater\

 

Widgi.Toolbar: [sBI $B5E507B2] Текстов файл (File, nothing done)

C:\Program Files\Application Updater\config.ini

Properties.size=85

Properties.md5=9E44EB00BBA056FA9B8440EF1D6C356E

Properties.filedate=1355946690

Properties.filedatetext=2012-12-19 21:51:30

 

Widgi.Toolbar: [sBI $05E59E37] Програмна директория (Directory, nothing done)

C:\Program Files\Common Files\Spigot\

 

Widgi.Toolbar: [sBI $9DDBABD2] Програмна директория (Directory, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\

 

Widgi.Toolbar: [sBI $F5D85413] Данни (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml

Properties.size=3958

Properties.md5=DA0EC54C773C9ABF2378361584814AA8

Properties.filedate=1352726762

Properties.filedatetext=2012-11-12 15:26:02

 

Widgi.Toolbar: [sBI $DFDB8C47] Данни (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml

Properties.size=416

Properties.md5=A156DEAAAAE97C4C17CA47482F90B643

Properties.filedate=1352726762

Properties.filedatetext=2012-11-12 15:26:02

 

Widgi.Toolbar: [sBI $10B6A612] Данни (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\config.ini

Properties.size=45

Properties.md5=DD9603D0052E892266D2C9AE59062A4B

Properties.filedate=1355946690

Properties.filedatetext=2012-12-19 21:51:30

 

Widgi.Toolbar: [sBI $4779936B] Данни (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml

Properties.size=1837

Properties.md5=642203F0A4AEBE9DECD211815B3E57BE

Properties.filedate=1317058818

Properties.filedatetext=2011-09-26 19:40:18

 

Widgi.Toolbar: [sBI $786A7897] Програмна директория (Directory, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\Lang\

 

Widgi.Toolbar: [sBI $094059AF] Текстов файл (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini

Properties.size=1117

Properties.md5=DDB1F8C3DDCDE8C296117A8C23FDBFC6

Properties.filedate=1352882974

Properties.filedatetext=2012-11-14 10:49:34

 

Widgi.Toolbar: [sBI $094059AF] Текстов файл (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini

Properties.size=1040

Properties.md5=E39F8BFCC903A6B6CFA10F812310BAA7

Properties.filedate=1352882974

Properties.filedatetext=2012-11-14 10:49:34

 

Widgi.Toolbar: [sBI $094059AF] Текстов файл (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini

Properties.size=1168

Properties.md5=519AB59A7EA90D2549A224B2AF69E96F

Properties.filedate=1352882974

Properties.filedatetext=2012-11-14 10:49:34

 

Widgi.Toolbar: [sBI $094059AF] Текстов файл (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini

Properties.size=1131

Properties.md5=244AF66B96BC2BAA6C5BC175E6846035

Properties.filedate=1352882974

Properties.filedatetext=2012-11-14 10:49:34

 

Widgi.Toolbar: [sBI $094059AF] Текстов файл (File, nothing done)

C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini

Properties.size=1182

Properties.md5=3AD1FDF117025D16478D67ABAC33285A

Properties.filedate=1352882974

Properties.filedatetext=2012-11-14 10:49:34

 

Widgi.Toolbar: [sBI $D4C0BB69] Системна Услуга (Registry key, nothing done)

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Application Updater

 

Widgi.Toolbar: [sBI $B9464833] Системна Услуга (Registry key, nothing done)

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Application Updater

 

Widgi.Toolbar: [sBI $E4808FA3] Настройки (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files\Application Updater\

 

SweetIM: [sBI $51CF2A45] Настройки (Registry value, nothing done)

HKEY_USERS\S-1-5-21-1371689917-1737346493-2601924973-1001\Software\SweetIM\simapp_id

 

SweetIM: [sBI $D5391F78] Настройки (Registry key, nothing done)

HKEY_USERS\S-1-5-21-1371689917-1737346493-2601924973-1001\Software\SweetIM

 

SweetIM: [sBI $3C0145EF] Настройки (Registry value, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM\simapp_id

 

SweetIM: [sBI $CA2339F3] Настройки (Registry key, nothing done)

HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM

 

 

--- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---

 

2009-01-26 blindman.exe (1.0.0.8)

2009-01-26 SDFiles.exe (1.6.1.7)

2009-01-26 SDMain.exe (1.0.0.6)

2009-01-26 SDShred.exe (1.0.2.5)

2009-01-26 SDUpdate.exe (1.6.0.12)

2009-01-26 SDWinSec.exe (1.0.0.12)

2009-01-26 SpybotSD.exe (1.6.2.46)

2009-03-05 TeaTimer.exe (1.6.6.32)

2012-12-27 unins000.exe (51.49.0.0)

2009-01-26 Update.exe (1.6.0.7)

2009-11-04 advcheck.dll (1.6.5.20)

2007-04-02 aports.dll (2.1.0.0)

2008-06-14 DelZip179.dll (1.79.11.1)

2009-01-26 SDHelper.dll (1.6.2.14)

2008-06-19 sqlite3.dll

2009-01-26 Tools.dll (2.1.6.10)

2009-01-16 UninsSrv.dll (1.0.0.0)

2012-12-18 Includes\Adware.sbi (*)

2012-12-21 Includes\AdwareC.sbi (*)

2010-08-13 Includes\Cookies.sbi (*)

2012-11-14 Includes\Dialer.sbi (*)

2012-11-14 Includes\DialerC.sbi (*)

2012-11-14 Includes\HeavyDuty.sbi (*)

2012-11-14 Includes\Hijackers.sbi (*)

2012-11-14 Includes\HijackersC.sbi (*)

2012-11-14 Includes\iPhone.sbi (*)

2012-11-14 Includes\Keyloggers.sbi (*)

2012-12-18 Includes\KeyloggersC.sbi (*)

2004-11-29 Includes\LSP.sbi (*)

2012-11-21 Includes\Malware.sbi (*)

2012-12-21 Includes\MalwareC.sbi (*)

2012-11-14 Includes\PUPS.sbi (*)

2012-12-21 Includes\PUPSC.sbi (*)

2010-01-25 Includes\Revision.sbi (*)

2012-11-14 Includes\Security.sbi (*)

2012-11-14 Includes\SecurityC.sbi (*)

2008-06-03 Includes\Spybots.sbi (*)

2008-06-03 Includes\SpybotsC.sbi (*)

2012-11-14 Includes\Spyware.sbi (*)

2012-11-14 Includes\SpywareC.sbi (*)

2012-11-19 Includes\Tracks.uti

2012-12-11 Includes\Trojans.sbi (*)

2012-12-27 Includes\TrojansC-02.sbi (*)

2012-12-21 Includes\TrojansC-03.sbi (*)

2012-12-21 Includes\TrojansC-04.sbi (*)

2012-11-14 Includes\TrojansC-05.sbi (*)

2012-12-03 Includes\TrojansC.sbi (*)

2008-03-04 Plugins\Chai.dll

2008-03-05 Plugins\Fennel.dll

2008-02-26 Plugins\Mate.dll

2007-12-24 Plugins\TCPIPAddress.dll

 

 

 

--- System information ---

Unknown Windows version 6.1 (Build: 7601) Service Pack 1 (6.1.7601)

 

 

--- Startup entries list ---

Located: HK_LM:Run,

command:

file:

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:Run, avast

command: "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui

file: C:\Program Files\AVAST Software\Avast\avastUI.exe

size: 4297136

MD5: 083649EF692A066880C9326020915AFE

 

Located: HK_LM:Run, BCU

command: "C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe"

file: C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe

size: 375000

MD5: FB309A962EACD8D104225CA857614412

 

Located: HK_LM:Run, RtHDVCpl

command: C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s

file: C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

size: 9210400

MD5: 40D5D8EEBE614F115B81E677587F1007

 

Located: HK_LM:Run, SearchSettings

command: "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"

file: C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe

size: 1123720

MD5: 52EBE9F1CBCD3B60B08A61C8D3FEEECE

 

Located: HK_LM:Run, SunJavaUpdateSched

command: "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

file: C:\Program Files\Common Files\Java\Java Update\jusched.exe

size: 252848

MD5: 12916E0642E92561C98B18A2A2D01B14

 

Located: HK_LM:RunOnce, SpybotDeletingA2254

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\config.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\config.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA5024

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA5915

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA5952

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA6112

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA7282

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA7724

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA8157

command: command.com /c del "C:\Program Files\Application Updater\ApplicationUpdater.exe_old"

file: command.com /c del "C:\Program Files\Application Updater\ApplicationUpdater.exe

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA8381

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA9520

command: command.com /c del "C:\Program Files\Application Updater\config.ini"

file: command.com /c del "C:\Program Files\Application Updater\config.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingA9955

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_LM:RunOnce, SpybotDeletingC1070

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC1297

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC1478

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC1857

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC2629

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC3781

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC6878

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC797

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC8338

command: cmd.exe /c del "C:\Program Files\Application Updater\ApplicationUpdater.exe_old"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC944

command: cmd.exe /c del "C:\Program Files\Application Updater\config.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_LM:RunOnce, SpybotDeletingC9899

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\config.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:Run, Sidebar

where: S-1-5-19...

command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun

file: C:\Program Files\Windows Sidebar\Sidebar.exe

size: 1174016

MD5: DCCA4B04AF87E52EF9EAA2190E06CBAC

 

Located: HK_CU:RunOnce, mctadmin

where: S-1-5-19...

command: C:\Windows\System32\mctadmin.exe

file: C:\Windows\System32\mctadmin.exe

size: 93696

MD5: BBA1A5B86134F496B926DDAF247DB871

 

Located: HK_CU:Run, Sidebar

where: S-1-5-20...

command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun

file: C:\Program Files\Windows Sidebar\Sidebar.exe

size: 1174016

MD5: DCCA4B04AF87E52EF9EAA2190E06CBAC

 

Located: HK_CU:RunOnce, mctadmin

where: S-1-5-20...

command: C:\Windows\System32\mctadmin.exe

file: C:\Windows\System32\mctadmin.exe

size: 93696

MD5: BBA1A5B86134F496B926DDAF247DB871

 

Located: HK_CU:Run, DAEMON Tools Lite

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun

file: C:\Program Files\DAEMON Tools Lite\DTLite.exe

size: 3671872

MD5: A974F7EB760451D7CF7342F9E088DBB0

 

Located: HK_CU:Run, ISUSPM Startup

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup

file: C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe

size: 221184

MD5: A379B75A6FFE4DFD3184F35F0141CE91

 

Located: HK_CU:Run, Sidebar

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

file: C:\Program Files\Windows Sidebar\sidebar.exe

size: 1174016

MD5: DCCA4B04AF87E52EF9EAA2190E06CBAC

 

Located: HK_CU:Run, SpybotSD TeaTimer

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

file: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

size: 2260480

MD5: 390679F7A217A5E73D756276C40AE887

 

Located: HK_CU:Run, SUPERAntiSpyware

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

file: C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

size: 4763008

MD5: 751184DF487A1B3C95CB29B0D0069C28

 

Located: HK_CU:RunOnce, SpybotDeletingB1773

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB2042

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB2302

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB3659

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Application Updater\config.ini"

file: command.com /c del "C:\Program Files\Application Updater\config.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB4804

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB4950

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB8050

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB8115

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB8730

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\config.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\config.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB9030

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Application Updater\ApplicationUpdater.exe_old"

file: command.com /c del "C:\Program Files\Application Updater\ApplicationUpdater.exe

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingB9613

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini"

file: command.com /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini"

size: 0

MD5: D41D8CD98F00B204E9800998ECF8427E

Warning: if the file is actually larger than 0 bytes,

the checksum could not be properly calculated!

 

Located: HK_CU:RunOnce, SpybotDeletingD2227

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ff.xml"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD2466

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1031.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD4535

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1034.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD4571

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1040.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD6045

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\baidu_ie.xml"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD6137

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Application Updater\config.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD6293

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\yandex_ff.xml"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD8053

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1033.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD8312

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\Lang\res1036.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD8833

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Application Updater\ApplicationUpdater.exe_old"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: HK_CU:RunOnce, SpybotDeletingD9415

where: S-1-5-21-1371689917-1737346493-2601924973-1001...

command: cmd.exe /c del "C:\Program Files\Common Files\Spigot\Search Settings\config.ini"

file: C:\Windows\system32\cmd.exe

size: 302592

MD5: AD7B9C14083B52BC532FBA5948342B98

 

Located: Startup (user), Dropbox.lnk

where: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup...

command: C:\Users\admin\AppData\Roaming\Dropbox\bin\Dropbox.exe

file: C:\Users\admin\AppData\Roaming\Dropbox\bin\Dropbox.exe

size: 29428448

MD5: 555B5609DB1D4D1B954EBE5868BCCFCF

 

Located: Startup (disabled), Изрязване на екран и стартиране на OneNote 2010 (DISABLED)

command: C:\PROGRA~1\MICROS~2\Office14\ONENOTEM.EXE /tsr

file: C:\PROGRA~1\MICROS~2\Office14\ONENOTEM.EXE

size: 227712

MD5: 358AE5DF3E3E62CC9EBD63B145BC3259

 

 

 

--- Browser helper object list ---

{03EB0E9C-7A91-4381-A220-9B52B641CDB1} (IObit Apps Toolbar)

location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

BHO name:

CLSID name: IObit Apps Toolbar

Path: C:\Program Files\IObit Apps Toolbar\IE\6.6\

Long name: iobitappsToolbarIE.dll

Short name: IOBITA~1.DLL

Date (created): 28.11.2012 г. 17:59:26

Date (last access): 19.12.2012 г. 21:51:32

Date (last write): 28.11.2012 г. 17:59:26

Filesize: 1230216

Attributes: archive

MD5: 612538856CD6EE99E62EA68AB1B3BF9A

CRC32: 805B5615

Version: 6.6.0.4

 

{72853161-30C5-4D22-B7F9-0BBC1D38A37E} (Groove GFS Browser Helper)

location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

BHO name:

CLSID name: Groove GFS Browser Helper

Path: C:\PROGRA~1\MICROS~2\Office14\

Long name: GROOVEEX.DLL

Short name:

Date (created): 25.3.2010 г. 10:25:22

Date (last access): 8.11.2012 г. 22:12:42

Date (last write): 25.3.2010 г. 10:25:22

Filesize: 4222864

Attributes: archive

MD5: 94CA6D847D08514A087E8A4C43D65BF9

CRC32: DC63EDF2

Version: 14.0.4761.1000

 

{7F6AFBF1-E065-4627-A2FD-810366367D01} (DefaultTabBHO)

location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

BHO name: DefaultTabBHO

CLSID name: DefaultTab Browser Helper

Path: C:\Users\admin\AppData\Roaming\DefaultTab\DefaultTab\

Long name: DefaultTabBHO.dll

Short name: DEFAUL~1.DLL

Date (created): 4.12.2012 г. 13:10:32

Date (last access): 17.12.2012 г. 20:22:02

Date (last write): 4.12.2012 г. 13:10:32

Filesize: 431736

Attributes: archive

MD5: 58F6CFF51DFE1C1F0FBCEF36299EAD3D

CRC32: 369C7A69

Version: 1.3.1.0

 

{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (avast! WebRep)

location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

BHO name:

CLSID name: avast! WebRep

Path: C:\Program Files\AVAST Software\Avast\

Long name: aswWebRepIE.dll

Short name: ASWWEB~1.DLL

Date (created): 8.11.2012 г. 16:29:06

Date (last access): 31.10.2012 г. 00:50:50

Date (last write): 31.10.2012 г. 00:50:50

Filesize: 1227736

Attributes: archive

MD5: DFCE15E59B8AC862B8E3CA6E43FE33F8

CRC32: 63EABF63

Version: 7.0.1474.765

 

{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)

location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

BHO name:

CLSID name: Google Toolbar Helper

description: Google toolbar

classification: Open for discussion

known filename: googletoolbar.dll

info link: http://toolbar.google.com/

info source: TonyKlein

Path: C:\Program Files\Google\Google Toolbar\

Long name: GoogleToolbar_32.dll

Short name: GOOGLE~1.DLL

Date (created): 8.11.2012 г. 16:31:02

Date (last access): 8.11.2012 г. 16:31:02

Date (last write): 8.11.2012 г. 16:31:02

Filesize: 192144

Attributes: archive

MD5: 300E3336B7BD92A29404E6157521C120

CRC32: CA9846A2

Version: 7.4.3230.2052

 

{B4F3A835-0E21-4959-BA22-42B3008E02FF} (URLRedirectionBHO)

location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

BHO name: URLRedirectionBHO

CLSID name: Office Document Cache Handler

Path: C:\PROGRA~1\MICROS~2\Office14\

Long name: URLREDIR.DLL

Short name:

Date (created): 28.2.2010 г. 02:20:14

Date (last access): 8.11.2012 г. 22:13:30

Date (last write): 28.2.2010 г. 02:20:14

Filesize: 561552

Attributes: archive

MD5: 0A63D9A102C3C0209465EA60199E6882

CRC32: AA1F9E0F

Version: 14.0.4750.1000

 

{DBC80044-A445-435b-BC74-9C25C1C588A9} (Java Plug-In 2 SSV Helper)

location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

BHO name:

CLSID name: Java Plug-In 2 SSV Helper

Path: C:\Program Files\Java\jre7\bin\

Long name: jp2ssv.dll

Short name:

Date (created): 19.11.2012 г. 12:22:38

Date (last access): 19.11.2012 г. 12:22:38

Date (last write): 19.11.2012 г. 12:22:38

Filesize: 155384

Attributes: archive

MD5: EB47E405A9222CA595E5E763B4156529

CRC32: 712D0563

Version: 10.9.2.5

 

 

 

--- ActiveX list ---

{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)

DPF name:

CLSID name: Shockwave Flash Object

Installer: C:\Windows\Downloaded Program Files\swflash64.inf

Codebase: http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

description: Macromedia Shockwave Flash Player

classification: Legitimate

known filename:

info link:

info source: Patrick M. Kolla

Path: C:\Windows\system32\Macromed\Flash\

Long name: Flash32_11_5_502_110.ocx

Short name: FLASH3~1.OCX

Date (created): 8.11.2012 г. 16:33:16

Date (last access): 8.11.2012 г. 16:33:16

Date (last write): 8.11.2012 г. 16:33:16

Filesize: 14460344

Attributes: readonly archive

MD5: 0DCB5D8ECB97961F71DFAB464FC99F7D

CRC32: F213F70B

Version: 11.5.502.110

 

 

 

--- Process list ---

PID: 316 ( 4) \SystemRoot\System32\smss.exe

size: 69632

PID: 464 ( 452) C:\Windows\system32\csrss.exe

size: 6144

MD5: 342271F6142E7C70805B8A81E1BA5F5C

PID: 528 ( 452) C:\Windows\system32\wininit.exe

size: 96256

MD5: B5C5DCAD3899512020D135600129D665

PID: 536 ( 520) C:\Windows\system32\csrss.exe

size: 6144

MD5: 342271F6142E7C70805B8A81E1BA5F5C

PID: 584 ( 528) C:\Windows\system32\services.exe

size: 259072

MD5: 5F1B6A9C35D3D5CA72D6D6FDEF9747D6

PID: 600 ( 528) C:\Windows\system32\lsass.exe

size: 22528

MD5: 81951F51E318AECC2D68559E47485CC4

PID: 608 ( 528) C:\Windows\system32\lsm.exe

size: 267776

MD5: 8AEA9A37C1A3565A204D37C5E72AB791

PID: 640 ( 520) C:\Windows\system32\winlogon.exe

size: 286720

MD5: 6D13E1406F50C66E2A95D97F22C47560

PID: 748 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 828 ( 584) C:\Windows\system32\nvvsvc.exe

size: 129640

MD5: 618F9989657CA50AA68F337BC1D8960A

PID: 868 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 920 ( 584) C:\Windows\System32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 1000 ( 584) C:\Windows\System32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 1052 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 1176 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 1228 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 1336 ( 828) C:\Windows\system32\nvvsvc.exe

size: 129640

MD5: 618F9989657CA50AA68F337BC1D8960A

PID: 1368 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 1432 ( 584) C:\Program Files\AVAST Software\Avast\AvastSvc.exe

size: 44808

MD5: 8FA553E9AE69808D99C164733A0F9590

PID: 1568 ( 584) C:\Windows\System32\spoolsv.exe

size: 317440

MD5: 9AEA093B8F9C37CF45538382CABA2475

PID: 1776 (1000) C:\Windows\system32\Dwm.exe

size: 92672

MD5: 505BF4D1CADEB8D4F8BCD08D944DE25D

PID: 1800 (1768) C:\Windows\Explorer.EXE

size: 2616320

MD5: 8B88EBBB05A0E56B7DCC708498C02B3E

PID: 1832 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 1968 ( 584) C:\Windows\system32\taskhost.exe

size: 49152

MD5: 7FA8BA5A780E4757964AC9D4238302B9

PID: 1724 ( 584) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE

size: 116608

MD5: 01E81C84AD1D0ACC61CF3CFD06632210

PID: 1936 ( 584) C:\Program Files\Application Updater\ApplicationUpdater.exe

size: 799624

MD5: C07F7708ADB2BC2BE53B9B1E055F1955

PID: 1720 ( 584) C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe

size: 223464

MD5: 382B151DAFFE4A9CE9DA9F564B66761E

PID: 2060 ( 584) C:\Users\admin\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe

size: 107520

MD5: 34AE0DFA3EE3B5B9975042D87332D0B7

PID: 2088 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 2124 ( 584) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

size: 399432

MD5: 85B16A92B117A5A800032ECD904B86DB

PID: 2200 (1800) C:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe

size: 375000

MD5: FB309A962EACD8D104225CA857614412

PID: 2228 (1800) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe

size: 9210400

MD5: 40D5D8EEBE614F115B81E677587F1007

PID: 2352 ( 584) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

size: 676936

MD5: 20E2469DB709FC675E655CEAA11BE312

PID: 2368 (1800) C:\Program Files\AVAST Software\Avast\AvastUI.exe

size: 4297136

MD5: 083649EF692A066880C9326020915AFE

PID: 2476 ( 584) C:\Program Files\SoftwareForMe Inc\PhoneMyPC\PhoneMyPC_Helper.exe

size: 31232

MD5: 25367AFF274D7DF637B7D5336246773E

PID: 2492 (2352) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

size: 766536

MD5: 12E33DD823D74680DE6F33BFA359EFB3

PID: 2520 (1800) C:\Program Files\Common Files\Java\Java Update\jusched.exe

size: 252848

MD5: 12916E0642E92561C98B18A2A2D01B14

PID: 2636 (2476) C:\Program Files\SoftwareForMe Inc\PhoneMyPC\PhoneMyPC.exe

size: 128512

MD5: FD062B4259B5D0599D4A649922D3FF02

PID: 2744 ( 584) C:\Windows\system32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 2844 (1800) C:\Program Files\Windows Sidebar\sidebar.exe

size: 1174016

MD5: DCCA4B04AF87E52EF9EAA2190E06CBAC

PID: 3316 (1800) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

size: 4763008

MD5: 751184DF487A1B3C95CB29B0D0069C28

PID: 3584 (1800) C:\Users\admin\AppData\Roaming\Dropbox\bin\Dropbox.exe

size: 29428448

MD5: 555B5609DB1D4D1B954EBE5868BCCFCF

PID: 2544 ( 584) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

size: 4640000

MD5: 358A9CCA612C68EB2F07DDAD4CE1D8D7

PID: 2800 ( 584) C:\Windows\system32\SearchIndexer.exe

size: 427520

MD5: 236F286E103FD44BD85FDD93097FD5DD

PID: 1484 ( 584) C:\Windows\System32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 2184 ( 584) C:\Program Files\Windows Media Player\wmpnetwk.exe

size: 1121792

MD5: 3B40D3A61AA8C21B88AE57C58AB3122E

PID: 3528 ( 748) C:\Windows\system32\wbem\wmiprvse.exe

size: 257536

MD5: 4FB491AC8D46AAF22BA8BC5C73DABEF7

PID: 3424 ( 584) C:\Windows\System32\svchost.exe

size: 20992

MD5: 54A47F6B5E09A77E61649109C6A08866

PID: 4260 (2996) C:\Program Files\uTorrent\uTorrent.exe

size: 879984

MD5: FA58E5831578D5A2562863396CBD332E

PID: 2120 ( 584) C:\Program Files\Condusiv Technologies\Diskeeper\DkService.exe

size: 2163064

MD5: BED6C434543F09868689D4720EE03C97

PID: 860 ( 584) C:\Windows\system32\taskhost.exe

size: 49152

MD5: 7FA8BA5A780E4757964AC9D4238302B9

PID: 5196 ( 584) C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe

size: 1153368

MD5: 794D4B48DFB6E999537C7C3947863463

PID: 2312 (3248) C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

size: 2260480

MD5: 390679F7A217A5E73D756276C40AE887

PID: 5880 (1800) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe

size: 5365592

MD5: 0477C2F9171599CA5BC3307FDFBA8D89

PID: 3016 (1800) C:\Program Files\Google\Chrome\Application\chrome.exe

size: 1242728

MD5: 2D08AC1443FFA7FBED9A5EA5FD49AEB3

PID: 5784 (3016) C:\Program Files\Google\Chrome\Application\chrome.exe

size: 1242728

MD5: 2D08AC1443FFA7FBED9A5EA5FD49AEB3

PID: 5644 (3016) C:\Program Files\Google\Chrome\Application\chrome.exe

size: 1242728

MD5: 2D08AC1443FFA7FBED9A5EA5FD49AEB3

PID: 4192 (3016) C:\Program Files\Google\Chrome\Application\chrome.exe

size: 1242728

MD5: 2D08AC1443FFA7FBED9A5EA5FD49AEB3

PID: 1092 (3016) C:\Program Files\Google\Chrome\Application\chrome.exe

size: 1242728

MD5: 2D08AC1443FFA7FBED9A5EA5FD49AEB3

PID: 0 ( 0) [system Process]

PID: 4 ( 0) System

PID: 2864 ( 748) C:\Windows\system32\DllHost.exe

size: 7168

MD5: A63DC5C2EA944E6657203E0C8EDEAF61

 

 

--- Browser start & search pages list ---

Spybot - Search & Destroy browser pages report, 27.12.2012 г. 18:49:45

 

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page

C:\Windows\system32\blank.htm

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page

http://go.microsoft.com/fwlink/?LinkId=54896

HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page

C:\Windows\System32\blank.htm

HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page

http://go.microsoft.com/fwlink/?LinkId=54896

HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page

http://go.microsoft.com/fwlink/?LinkId=69157

HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL

http://go.microsoft.com/fwlink/?LinkId=69157

HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL

http://go.microsoft.com/fwlink/?LinkId=54896

 

 

--- Winsock Layered Service Provider list ---

Namespace Provider 1: E-mail Naming Shim Provider

GUID: {964ACBA2-B2BC-40EB-8C6A-A6DB40161CAE}

Filename:

 

Namespace Provider 2: PNRP Cloud Namespace Provider

GUID: {03FE89CE-766D-4976-B9C1-BB9BC42C7B4D}

Filename:

 

Namespace Provider 3: PNRP Name Namespace Provider

GUID: {03FE89CD-766D-4976-B9C1-BB9BC42C7B4D}

Filename:

 

 

 

--- Uninstall list ---

Adobe Flash Player 11 ActiveX 11.5.502.110 (Adobe Flash Player ActiveX)

version (major): 11

version (minor): 5

estimated size: 6144

uninstall cmd: C:\Windows\system32\Macromed\Flash\FlashUtil32_11_5_502_110_ActiveX.exe -maintain activex

publisher: Adobe Systems Incorporated

help link: http://www.adobe.com/go/flashplayer_support/

 

Ashampoo Burning Studio 12 v.12.0.1 12.0.1 (Ashampoo Burning Studio 12_is1)

estimated size: 359950

install date: 20121118

install location: C:\Program Files\Ashampoo\Ashampoo Burning Studio 12\

uninstall cmd: "C:\Program Files\Ashampoo\Ashampoo Burning Studio 12\unins000.exe"

publisher: Ashampoo GmbH & Co. KG

help link: http://www.ashampoo.com/support

 

avast! Free Antivirus 7.0.1474.0 (avast)

version (major): 7

install location: "C:\Program Files\AVAST Software\Avast"

install source: "C:\Program Files\AVAST Software\Avast\setup"

uninstall cmd: C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup

publisher: AVAST Software

 

CCleaner 3.25 (CCleaner)

version (major): 3

version (minor): 25

install date: 20121125

install location: C:\Program Files\CCleaner

uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

publisher: Piriform

 

(Connection Manager)

 

DAEMON Tools Lite 4.45.4.0315 (DAEMON Tools Lite)

uninstall cmd: C:\Program Files\DAEMON Tools Lite\uninst.exe

publisher: DT Soft Ltd

 

DefaultTab 1.2.8.0 (DefaultTab)

install location: "C:\Users\admin\AppData\Roaming\DefaultTab\DefaultTab"

uninstall cmd: "C:\Users\admin\AppData\Roaming\DefaultTab\DefaultTab\uninstalldt.exe"

publisher: Search Results, LLC

comments: Search Results, LLC all rights reserved

contact: Search Results, LLC

 

DefaultTab Chrome 1.1.14 (DefaultTab Chrome)

install location: "C:\Program Files\DefaultTab"

uninstall cmd: "C:\Program Files\DefaultTab\uninstaller.exe"

publisher: Search Results, LLC

 

GOM Player 2.1.47.5133 (GOM Player)

version (major): 2

version (minor): 1

install location: C:\Program Files\GRETECH\GomPlayer

uninstall cmd: "C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"

publisher: Gretech Corporation

help link: http://player.gomlab.com/eng/guide/

 

Google Chrome 23.0.1271.97 (Google Chrome)

version (major): 1271

version (minor): 97

install date: 20121108

install location: C:\Program Files\Google\Chrome\Application

uninstall cmd: "C:\Program Files\Google\Chrome\Application\23.0.1271.97\Installer\setup.exe" --uninstall --multi-install --chrome --system-level

publisher: Google Inc.

 

Malwarebytes Anti-Malware, версия 1.65.1.1000 1.65.1.1000 (Malwarebytes' Anti-Malware_is1)

estimated size: 19893

install date: 20121114

install location: C:\Program Files\Malwarebytes' Anti-Malware\

uninstall cmd: "C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"

publisher: Malwarebytes Corporation

 

NVIDIA Display Control Panel 6.14.11.9713 (NVIDIA Display Control Panel)

install location: C:\Program Files\NVIDIA Corporation

uninstall cmd: C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe DisplayControlPanel

publisher: NVIDIA Corporation

 

NVIDIA Drivers 1.10.62.40 (NVIDIA Drivers)

version (major): 1

version (minor): 10

estimated size: 67840

install location: C:\Program Files\NVIDIA Corporation\Uninstall

uninstall cmd: C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe UninstallGUI

publisher: NVIDIA Corporation

 

Microsoft Office Professional Plus 2010 14.0.4763.1000 (Office14.PROPLUSR)

install location: C:\Program Files\Microsoft Office

uninstall cmd: "C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall PROPLUSR /dll OSETUP.DLL

publisher: Microsoft Corporation

 

Total Uninstall 6.2.0 6.2.0 (Total Uninstall 6_is1)

estimated size: 10983

install date: 20121108

install location: C:\Program Files\Total Uninstall 6\

uninstall cmd: "C:\Program Files\Total Uninstall 6\unins000.exe"

publisher: Gavrila Martau

help link: http://www.martau.com

 

µTorrent 3.1.3 (uTorrent)

version (major): 3

version (minor): 2

install location: C:\Program Files\uTorrent

uninstall cmd: "C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL

publisher: BitTorrent Inc.

 

VLC media player 2.0.4 2.0.4 (VLC media player)

install location: C:\Program Files\VideoLAN\VLC

uninstall cmd: C:\Program Files\VideoLAN\VLC\uninstall.exe

publisher: VideoLAN

 

VueScan (VueScan)

uninstall cmd: C:\VueScan\vuescan.exe /remove

 

(WIC)

 

WinRAR 4.20 (32-битова версия) 4.20.0 (WinRAR archiver)

version (major): 4

version (minor): 20

install location: C:\Program Files\WinRAR\

uninstall cmd: C:\Program Files\WinRAR\uninstall.exe

publisher: win.rar GmbH

 

Google Toolbar for Internet Explorer 1.0.0 ({18455581-E099-4BA8-BC6B-F34B2F06600C})

version: 16777216

version (major): 1

estimated size: 29

install date: 20121108

install source: C:\Program Files\Google\Google Toolbar\

uninstall cmd: MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}

publisher: Google Inc.

 

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 9.0.30729.4148 ({1F1C2DFC-2D24-3E06-BCB8-725134ADF989})

version: 151025673

version (major): 9

estimated size: 596

install date: 20121108

uninstall cmd: MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}

publisher: Microsoft Corporation

 

Google Toolbar for Internet Explorer 7.4.3230.2052 ({2318C2B1-4965-11d4-9B18-009027A5CD4F})

install location: C:\Program Files\Google\Google Toolbar\

uninstall cmd: "C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_E6C807F38EB64284.exe" /uninstall

publisher: Google Inc.

 

Java 7 Update 9 7.0.90 ({26A24AE4-039D-4CA4-87B4-2F83217009FF})

version: 117440602

version (major): 7

estimated size: 131419

install date: 20121119

install location: C:\Program Files\Java\jre7\

install source: C:\Users\admin\AppData\LocalLow\Sun\Java\jre1.7.0_09\

uninstall cmd: MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217009FF}

publisher: Oracle

contact: http://java.com

help link: http://java.com

readme: C:\Program Files\Java\jre7\README.txt

 

ON_OFF Charge B10.0427.1 1.00.0001 ({3DECD372-76A1-4483-BF10-B547790A3261})

version: 16777217

install date: 20121108

install location: C:\Program Files\GIGABYTE\ONOFFCharge

uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3DECD372-76A1-4483-BF10-B547790A3261}\setup.exe" -l0x9 -removeonly

publisher: GIGABYTE

 

Java Auto Updater 2.1.9.0 ({4A03706F-666A-4037-7777-5F2748764D10})

version: 33619977

version (major): 2

version (minor): 1

estimated size: 1202

install date: 20121119

install source: C:\Users\admin\AppData\LocalLow\Sun\Java\AU\

publisher: Sun Microsystems, Inc.

 

IObit Apps Toolbar v6.6 6.6 ({60D42995-DA80-414D-89C9-CEFC66DC8E13})

version: 101056512

version (major): 6

version (minor): 6

estimated size: 3588

install date: 20121219

install location: C:\Program Files\IObit Apps Toolbar\

uninstall cmd: MsiExec.exe /X{60D42995-DA80-414D-89C9-CEFC66DC8E13}

publisher: Spigot, Inc.

 

Diskeeper 12 16.0.1017.32 ({6AC5A728-8DEC-4595-8895-DC312781A520})

version: 268436473

version (major): 16

estimated size: 46947

install date: 20121227

install location: C:\Program Files\Condusiv Technologies\Diskeeper\

install source: C:\Users\admin\AppData\Local\Temp\{50A2616B-28EA-413E-AABA-E879FD801D9A}\

uninstall cmd: MsiExec.exe /X{6AC5A728-8DEC-4595-8895-DC312781A520}

publisher: Condusiv Technologies

comments: Disk Defragmenter

contact: Technical Support

help link: http://www.condusiv.com/support/technical/diskeeper/

help telephone: US - 818-771-1600 EU - 44-1342-821300 Japan - 813-3447-7544

 

Auslogics BoostSpeed 5.4 ({7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1)

estimated size: 64161

install date: 20121108

install location: C:\Program Files\Auslogics\Auslogics BoostSpeed\

uninstall cmd: "C:\Program Files\Auslogics\Auslogics BoostSpeed\unins000.exe"

publisher: Auslogics Software Pty Ltd

contact: info@auslogics.com

help link: http://www.auslogics.com/en/support

 

Microsoft Office Access MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-0015-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 35090

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-0015-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-0015-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Excel MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-0016-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 21797

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-0016-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-0016-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office PowerPoint MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-0018-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 43365

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-0018-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-0018-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Publisher MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-0019-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 24778

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-0019-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-0019-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Outlook MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-001A-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 26236

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-001A-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-001A-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Word MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-001B-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 71013

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-001B-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-001B-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Proof (Bulgarian) 2010 14.0.4763.1021 ({90140000-001F-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 2314

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-002C-0402-0000-0000000FF1CE}-C\Proof.bg\

uninstall cmd: MsiExec.exe /X{90140000-001F-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Proof (German) 2010 14.0.4763.1000 ({90140000-001F-0407-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 38635

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-002C-0402-0000-0000000FF1CE}-C\Proof.de\

uninstall cmd: MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Proof (English) 2010 14.0.4763.1000 ({90140000-001F-0409-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 21119

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-002C-0402-0000-0000000FF1CE}-C\Proof.en\

uninstall cmd: MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Proof (Russian) 2010 14.0.4763.1000 ({90140000-001F-0419-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 16968

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-002C-0402-0000-0000000FF1CE}-C\Proof.ru\

uninstall cmd: MsiExec.exe /X{90140000-001F-0419-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Proofing (Bulgarian) 2010 14.0.4763.1021 ({90140000-002C-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 658

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-002C-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-002C-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office InfoPath MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-0044-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 9504

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-0044-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-0044-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Shared MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-006E-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 41001

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-006E-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-006E-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office OneNote MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-00A1-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 12519

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-00A1-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-00A1-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Groove MUI (Bulgarian) 2010 14.0.4763.1021 ({90140000-00BA-0402-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 12186

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{90140000-00BA-0402-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{90140000-00BA-0402-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Microsoft Office Professional Plus 2010 14.0.4763.1000 ({91140000-0011-0000-0000-0000000FF1CE})

version: 234885787

version (major): 14

estimated size: 820699

install date: 20121108

install location: C:\Program Files\Microsoft Office\

install source: C:\MSOCache\All Users\{91140000-0011-0000-0000-0000000FF1CE}-C\

uninstall cmd: MsiExec.exe /X{91140000-0011-0000-0000-0000000FF1CE}

publisher: Microsoft Corporation

 

Update for Microsoft Office 2010 (KB2202188) ({91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{5DD0087F-F8C5-4E8A-AF72-C3A3768D1FA5})

uninstall cmd: "C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{5DD0087F-F8C5-4E8A-AF72-C3A3768D1FA5}" "1026" "0"

publisher: Microsoft

help link: http://support.microsoft.com/kb/2202188

 

Ashampoo Burning Studio 12 v.12.0.3 12.0.3 ({91B33C97-93EB-244C-F687-71D85E45A206}_is1)

estimated size: 364639

install date: 20121217

install location: C:\Program Files\Ashampoo\Ashampoo Burning Studio 12\

uninstall cmd: "C:\Program Files\Ashampoo\Ashampoo Burning Studio 12\unins001.exe"

publisher: Ashampoo GmbH & Co. KG

help link: http://www.ashampoo.com/support

 

Microsoft .NET Framework 4.5 4.5.50709 ({92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033)

estimated size: 39732

install location: C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\

uninstall cmd: C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\\Setup.exe /repair /x86

publisher: Microsoft Corporation

readme: http://go.microsoft.com/fwlink/?LinkId=249107

 

Security Update for Microsoft .NET Framework 4.5 (KB2729460) 1 ({92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2729460)

uninstall cmd: C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\setup.exe /uninstallpatch {D1A70159-3DBA-3290-AE90-90F1387B42C8}

publisher: Microsoft Corporation

comments: This security update is for Microsoft .NET Framework 4.5.

If you later install a more recent service pack, this security update will be uninstalled automatically.

For more information, visit http://support.microsoft.com/kb/2729460.

help link: http://support.microsoft.com/kb/2729460

 

Security Update for Microsoft .NET Framework 4.5 (KB2737083) 1 ({92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2737083)

uninstall cmd: C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\setup.exe /uninstallpatch {C2CC4CC0-255B-307E-A5A3-53B4000F6701}

publisher: Microsoft Corporation

comments: This security update is for Microsoft .NET Framework 4.5.

If you later install a more recent service pack, this security update will be uninstalled automatically.

For more information, visit http://support.microsoft.com/kb/2737083.

help link: http://support.microsoft.com/kb/2737083

 

Microsoft .NET Framework 4.5 4.5.50709 ({9F612429-4A00-3D44-88CF-146DA2EE1F92})

version: 67487253

version (major): 4

version (minor): 5

estimated size: 873042

install date: 20121118

uninstall cmd: MsiExec.exe /X{9F612429-4A00-3D44-88CF-146DA2EE1F92}

publisher: Microsoft Corporation

readme: http://go.microsoft.com/fwlink/?LinkId=249107

 

Browser Configuration Utility 1.1.18.0 ({A2F991E7-DDCD-42B7-AFEC-47789A099FDC})

version: 16842770

version (major): 1

version (minor): 1

estimated size: 2900

install date: 20121108

install location: C:\Program Files\DeviceVM\Browser Configuration Utility\

uninstall cmd: MsiExec.exe /X{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}

publisher: DeviceVM Inc.

comments: This utility optimizes the internet search experience based on your country and language, and adds online games to your system.

 

Google Update Helper 1.3.21.123 ({A92DAB39-4E2C-4304-9AB6-BC44E68B55E2})

version: 16973845

version (major): 1

version (minor): 3

estimated size: 29

install date: 20121108

install source: C:\Program Files\Google\Update\1.3.21.123\

uninstall cmd: MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

publisher: Google Inc.

 

Spybot - Search & Destroy 1.6.2 ({B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1)

install date: 20121227

install location: C:\Program Files\Spybot - Search & Destroy\

uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"

publisher: Safer Networking Limited

help link: http://www.safer-networking.org/index.php?page=support

 

SUPERAntiSpyware 5.6.1014 ({CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA})

estimated size: 47790

install location: C:\Program Files\SUPERAntiSpyware

uninstall cmd: "C:\Program Files\SUPERAntiSpyware\Uninstall.exe"

publisher: SUPERAntiSpyware.com

help link: http://www.superantispyware.com/support.html

 

Skype™ 6.0 6.0.126 ({EA17F4FC-FDBF-4CF8-A529-2D983132D053})

version: 100663422

version (major): 6

estimated size: 20807

install date: 20121126

install location: C:\Program Files\Skype\

install source: C:\ProgramData\Skype\{EA17F4FC-FDBF-4CF8-A529-2D983132D053}\

uninstall cmd: MsiExec.exe /X{EA17F4FC-FDBF-4CF8-A529-2D983132D053}

publisher: Skype Technologies S.A.

help link: http://ui.skype.com/ui/0/6.0.0.126/bg/help

 

Realtek High Definition Audio Driver 6.0.1.6101 ({F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC})

version: 40042496

install date: 20121108

install location: C:\Program Files\Realtek\Audio\HDA

uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\SETUP.EXE" -removeonly

publisher: Realtek Semiconductor Corp.

 

PhoneMyPC 2.0.3 ({FD452361-CF71-40FD-AAC1-40DE562311E8})

version: 33554435

version (major): 2

estimated size: 985

install date: 20121110

install source: D:\Programs\Phone My PC\

uninstall cmd: MsiExec.exe /I{FD452361-CF71-40FD-AAC1-40DE562311E8}

publisher: SoftwareForMe Inc.

contact: SoftwareForMe Inc.

 

 

 

--- System Services ---

Service (registry key): !SASCORE

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SAS Core Service

Description: SUPERAntiSpyware Core Service

Object name: LocalSystem

Image path: "C:\Program Files\SUPERAntiSpyware\SASCORE.EXE"

Image size: 116608

Image MD5: 01E81C84AD1D0ACC61CF3CFD06632210

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

 

Service (registry key): .NET CLR Data

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): .NET CLR Networking

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): .NET CLR Networking 4.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): .NET Data Provider for Oracle

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): .NET Data Provider for SqlServer

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): .NET Memory Cache 4.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): .NETFramework

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): 1394ohci

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: 1394 OHCI Compliant Host Controller

Image path: \SystemRoot\system32\drivers\1394ohci.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ACPI

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft ACPI Driver

Image path: system32\drivers\ACPI.sys

Image size: 274304

Image MD5: CEA80C80BED809AA0DA6FEBC04733349

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): AcpiPmi

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: ACPI Power Meter Driver

Image path: \SystemRoot\system32\drivers\acpipmi.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): adp94xx

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\adp94xx.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): adpahci

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\adpahci.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): adpu320

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\adpu320.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): adsi

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): AeLookupSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\aelupsvc.dll,-1

Description: @%SystemRoot%\system32\aelupsvc.dll,-2

Object name: localSystem

Image path: %systemroot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): AFD

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\afd.sys,-1000

Description: @%systemroot%\system32\drivers\afd.sys,-1000

Image path: \SystemRoot\system32\drivers\afd.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): agp440

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Intel AGP Bus Filter

Image path: \SystemRoot\system32\drivers\agp440.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): aic78xx

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\djsvs.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ALG

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\Alg.exe,-112

Description: @%SystemRoot%\system32\Alg.exe,-113

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\alg.exe

Image size: 59392

Image MD5: 18A54E132947CD98FEA9ACCC57F98F13

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): aliide

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\aliide.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): amdagp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: AMD AGP Bus Filter Driver

Image path: \SystemRoot\system32\drivers\amdagp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): amdide

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\amdide.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): AmdK8

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: AMD K8 Processor Driver

Image path: \SystemRoot\system32\drivers\amdk8.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): AmdPPM

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: AMD Processor Driver

Image path: system32\DRIVERS\amdppm.sys

Image size: 52736

Image MD5: 3CBF30F5370FDA40DD3E87DF38EA53B6

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): amdsata

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\amdsata.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): amdsbs

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\amdsbs.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): amdxata

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\drivers\amdxata.sys

Image size: 22400

Image MD5: 46387FB17B086D16DEA267D5BE23A2F2

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): AppID

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\appidsvc.dll,-102

Description: @%systemroot%\system32\appidsvc.dll,-103

Image path: \SystemRoot\system32\drivers\appid.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

Depends On services: FltMgr,DisCache

 

Service (registry key): AppIDSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\appidsvc.dll,-100

Description: @%systemroot%\system32\appidsvc.dll,-101

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,AppID,CryptSvc

 

Service (registry key): Appinfo

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\appinfo.dll,-100

Description: @%systemroot%\system32\appinfo.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,ProfSvc

 

Service (registry key): AppleCharger

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: AppleCharger

Description: Apple mobile devices charging program

Image path: system32\DRIVERS\AppleCharger.sys

Image size: 19496

Image MD5: 75A8B998EB259DD512F01EA25BEC7F3B

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): AppleChargerSrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: AppleChargerSrv

Description: Apple mobile devices charging service

Object name: localSystem

Image path: system32\AppleChargerSrv.exe

Image size: 31272

Image MD5: 95EF7247C50C7241FDAE39A9B3AFF4AE

Control Set: CurrentControlSet

Start: 3

Type: 272

Error Control: 1

 

Service (registry key): Application Updater

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Application Updater

Description: Automatically downloads and installs application updates.

Object name: LocalSystem

Image path: "C:\Program Files\Application Updater\ApplicationUpdater.exe"

Image size: 799624

Image MD5: C07F7708ADB2BC2BE53B9B1E055F1955

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 0

 

Service (registry key): AppMgmt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @appmgmts.dll,-3250

Description: @appmgmts.dll,-3251

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): arc

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\arc.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): arcsas

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\arcsas.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ASP.NET

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): ASP.NET_4.0.30319

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): aspnet_state

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: ASP.NET State Service

Description: Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start.

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe

Image size: 46528

Image MD5: 2FE0D5DB69014980A970D3BF9A85D2B1

Control Set: CurrentControlSet

Start: 4

Type: 16

Error Control: 1

 

Service (registry key): aswFsBlk

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: aswFsBlk

Description: avast! mini-filter driver (aswFsBlk)

Control Set: CurrentControlSet

Start: 2

Type: 2

Error Control: 1

Depends On services: FltMgr

 

Service (registry key): aswKbd

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: aswKbd

Description: avast! keyboard filter driver (aswKbd)

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): aswMonFlt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: aswMonFlt

Description: avast! mini-filter driver (aswMonFlt)

Image path: \??\C:\Windows\system32\drivers\aswMonFlt.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 2

Type: 2

Error Control: 1

Depends On services: FltMgr

 

Service (registry key): aswRdr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: aswRdr

Description: avast! WFP Redirect driver

Image path: \SystemRoot\System32\Drivers\aswrdr2.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

Depends On services: tcpip

 

Service (registry key): aswSnx

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: aswSnx

Description: avast! virtualization driver (aswSnx)

Control Set: CurrentControlSet

Start: 1

Type: 2

Error Control: 1

Depends On services: FltMgr

 

Service (registry key): aswSP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: aswSP

Description: avast! Self Protection

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): aswTdi

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: avast! Network Shield Support

Description: avast! Network Shield TDI driver

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

Depends On services: tcpip

 

Service (registry key): AsyncMac

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32000

Description: @%systemroot%\system32\rascfg.dll,-32000

Image path: system32\DRIVERS\asyncmac.sys

Image size: 17920

Image MD5: ADD2ADE1C2B285AB8378D2DAAF991481

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): atapi

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\atapi.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): AudioEndpointBuilder

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\audiosrv.dll,-204

Description: @%SystemRoot%\System32\audiosrv.dll,-205

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: PlugPlay

 

Service (registry key): Audiosrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\audiosrv.dll,-200

Description: @%SystemRoot%\System32\audiosrv.dll,-201

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: AudioEndpointBuilder,RpcSs,MMCSS

 

Service (registry key): avast! Antivirus

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: avast! Antivirus

Description: Управлява и изпълнява антивирусните услуги на avast! на този компютър. Това включва резидентна защита, клетката за вируси и планировчика.

Object name: LocalSystem

Image path: "C:\Program Files\AVAST Software\Avast\AvastSvc.exe"

Image size: 44808

Image MD5: 8FA553E9AE69808D99C164733A0F9590

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: aswMonFlt,RpcSS

 

Service (registry key): avast! Firewall

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: avast! Firewall

Description: Implements main functionality for avast! Firewall

Object name: LocalSystem

Image path: "C:\Program Files\AVAST Software\Avast\afwServ.exe"

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

 

Service (registry key): AxInstSV

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\AxInstSV.dll,-103

Description: @%SystemRoot%\system32\AxInstSV.dll,-104

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k AxInstSVGroup

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: rpcss

 

Service (registry key): b06bdrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Broadcom NetXtreme II VBD

Image path: \SystemRoot\system32\drivers\bxvbdx.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): b57nd60x

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0

Image path: system32\DRIVERS\b57nd60x.sys

Image size: 229888

Image MD5: BD8869EB9CDE6BBE4508D869929869EE

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): BattC

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): BCUService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Browser Configuration Utility Service

Description: This service performs auto-recovery for Browser Configuration Utility.

Object name: LocalSystem

Image path: C:\Program Files\DeviceVM\Browser Configuration Utility\BCUService.exe

Image size: 223464

Image MD5: 382B151DAFFE4A9CE9DA9F564B66761E

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 0

 

Service (registry key): BDESVC

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\bdesvc.dll,-100

Description: @%SystemRoot%\system32\bdesvc.dll,-101

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): Beep

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Beep

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): BFE

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\bfe.dll,-1001

Description: @%SystemRoot%\system32\bfe.dll,-1002

Object name: NT AUTHORITY\LocalService

Image path: %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): BITS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\qmgr.dll,-1000

Description: @%SystemRoot%\system32\qmgr.dll,-1001

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs,EventSystem

 

Service (registry key): blbdrive

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\DRIVERS\blbdrive.sys

Image size: 35328

Image MD5: 2287078ED48FCFC477B05B20CF38F36F

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): bowser

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\browser.dll,-102

Description: @%systemroot%\system32\browser.dll,-103

Image path: system32\DRIVERS\bowser.sys

Image size: 69632

Image MD5: 8F2DA3028D5FCBD1A060A3DE64CD6506

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

 

Service (registry key): BrFiltLo

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Brother USB Mass-Storage Lower Filter Driver

Image path: \SystemRoot\system32\drivers\BrFiltLo.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): BrFiltUp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Brother USB Mass-Storage Upper Filter Driver

Image path: \SystemRoot\system32\drivers\BrFiltUp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Browser

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\browser.dll,-100

Description: @%systemroot%\system32\browser.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: LanmanWorkstation,LanmanServer

 

Service (registry key): Brserid

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Brother MFC Serial Port Interface Driver (WDM)

Image path: \SystemRoot\System32\Drivers\Brserid.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): BrSerWdm

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Brother WDM Serial driver

Image path: \SystemRoot\System32\Drivers\BrSerWdm.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): BrUsbMdm

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Brother MFC USB Fax Only Modem

Image path: \SystemRoot\System32\Drivers\BrUsbMdm.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): BrUsbSer

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Brother MFC USB Serial WDM Driver

Image path: \SystemRoot\System32\Drivers\BrUsbSer.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): BTHMODEM

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Bluetooth Serial Communications Driver

Image path: \SystemRoot\system32\drivers\bthmodem.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): BTHPORT

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): bthserv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\bthserv.dll,-101

Description: @%SystemRoot%\System32\bthserv.dll,-102

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k bthsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): cdfs

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: CD/DVD File System Reader

Description: ISO9660/Joliet File System Reader for CD/DVDs. (Core) (All pieces)

Image path: system32\DRIVERS\cdfs.sys

Image size: 70656

Image MD5: 77EA11B065E0A8AB902D78145CA51E10

Control Set: CurrentControlSet

Start: 4

Type: 2

Error Control: 1

Depends On group: "SCSI CDROM Class"

 

Service (registry key): cdrom

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: CD-ROM Driver

Image path: system32\DRIVERS\cdrom.sys

Image size: 108544

Image MD5: BE167ED0FDB9C1FA1133953C18D5A6C9

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): CertPropSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\certprop.dll,-11

Description: @%SystemRoot%\System32\certprop.dll,-12

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): circlass

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Consumer IR Devices

Image path: \SystemRoot\system32\drivers\circlass.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): CLFS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\clfs.sys,-100

Description: @%SystemRoot%\system32\clfs.sys,-101

Image path: System32\CLFS.sys

Image size: 249408

Image MD5: 635181E0E9BBF16871BF5380D71DB02D

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): clr_optimization_v2.0.50727_32

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft .NET Framework NGEN v2.0.50727_X86

Description: Microsoft .NET Framework NGEN

Object name: LocalSystem

Image path: %systemroot%\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

Image size: 66384

Image MD5: D88040F816FDA31C3B466F0FA0918F29

Control Set: CurrentControlSet

Start: 4

Type: 16

Error Control: 0

 

Service (registry key): clr_optimization_v4.0.30319_32

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft .NET Framework NGEN v4.0.30319_X86

Description: Microsoft .NET Framework NGEN

Object name: LocalSystem

Image path: C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

Image size: 104912

Image MD5: 6D7C8A951AF6AD6835C029B3CB88D333

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 0

 

Service (registry key): CmBatt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft ACPI Control Method Battery Driver

Image path: \SystemRoot\system32\drivers\CmBatt.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): cmdide

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\cmdide.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): CNG

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: System32\Drivers\cng.sys

Image size: 369856

Image MD5: 42F158036BD4C2FF3122BF142E60E6FD

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): Compbatt

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\compbatt.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): CompositeBus

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Composite Bus Enumerator Driver

Image path: system32\DRIVERS\CompositeBus.sys

Image size: 31232

Image MD5: CBE8C58A8579CFE5FCCF809E6F114E89

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): COMSysApp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @comres.dll,-947

Description: @comres.dll,-948

Object name: LocalSystem

Image path: %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}

Image size: 7168

Image MD5: A63DC5C2EA944E6657203E0C8EDEAF61

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RpcSs,EventSystem,SENS

 

Service (registry key): crcdisk

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Crcdisk Filter Driver

Image path: \SystemRoot\system32\drivers\crcdisk.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 4

Type: 1

Error Control: 1

 

Service (registry key): crypt32

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): CryptSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\cryptsvc.dll,-1001

Description: @%SystemRoot%\system32\cryptsvc.dll,-1002

Object name: NT Authority\NetworkService

Image path: %SystemRoot%\system32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): CSC

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\cscsvc.dll,-202

Description: @%systemroot%\system32\cscsvc.dll,-203

Image path: system32\drivers\csc.sys

Image size: 388096

Image MD5: 3C2177A897B4CA2788C6FB0C3FD81D4B

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

Depends On services: rdbss

 

Service (registry key): CscService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\cscsvc.dll,-200

Description: @%systemroot%\system32\cscsvc.dll,-201

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): DCLocator

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): DcomLaunch

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @oleres.dll,-5012

Description: @oleres.dll,-5013

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): DefaultTabSearch

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: DefaultTabSearch

Object name: LocalSystem

Image path: C:\Program Files\DefaultTab\DefaultTabSearch.exe

Image size: 568832

Image MD5: D0B322012EBAB1F29E3AD4A8568B2DBA

Control Set: CurrentControlSet

Start: 2

Type: 272

Error Control: 1

 

Service (registry key): DefaultTabUpdate

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: DefaultTabUpdate

Description: DefaultTab Update Service

Object name: LocalSystem

Image path: "C:\Users\admin\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe"

Image size: 107520

Image MD5: 34AE0DFA3EE3B5B9975042D87332D0B7

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): defragsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\defragsvc.dll,-101

Description: @%SystemRoot%\system32\defragsvc.dll,-102

Object name: localSystem

Image path: %SystemRoot%\system32\svchost.exe -k defragsvc

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): DfsC

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\dfsc.sys,-101

Description: @%systemroot%\system32\drivers\dfsc.sys,-102

Image path: System32\Drivers\dfsc.sys

Image size: 78336

Image MD5: F024449C97EC1E464AAFFDA18593DB88

Control Set: CurrentControlSet

Start: 1

Type: 2

Error Control: 1

Depends On services: Mup

 

Service (registry key): Dhcp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\dhcpcore.dll,-100

Description: @%SystemRoot%\system32\dhcpcore.dll,-101

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: NSI,Tdx,Afd

 

Service (registry key): discache

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\discache.sys,-102

Description: @%systemroot%\system32\drivers\discache.sys,-101

Image path: System32\drivers\discache.sys

Image size: 32256

Image MD5: 1A050B0274BFB3890703D490F330C0DA

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): Disk

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Disk Driver

Image path: system32\drivers\disk.sys

Image size: 57424

Image MD5: 565003F326F99802E68CA78F2A68E9FF

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): Diskeeper

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Diskeeper

Description: Allows Diskeeper to run on this computer and improve file system performance.

Object name: LocalSystem

Image path: "C:\Program Files\Condusiv Technologies\Diskeeper\DkService.exe"

Image size: 2163064

Image MD5: BED6C434543F09868689D4720EE03C97

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): DKDFM

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Device Filter Manager Driver

Image path: system32\drivers\DKDFM.sys

Image size: 35120

Image MD5: 15919F538DA1C44DE65C7E079F968806

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 0

 

Service (registry key): DKRtWrt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: DKRtWrt

Description: Diskeeper FileSystem Mini-Filter Driver

Image path: system32\DRIVERS\DKRtWrt.sys

Image size: 44496

Image MD5: 9DEA328E413CDA9680A50DD1047F7E07

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: FltMgr

 

Service (registry key): DKTLFSMF

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Telemetry File System Mini Filter Driver

Image path: system32\drivers\DKTLFSMF.sys

Image size: 85328

Image MD5: 67F57907F48861A5B26A236A110A426E

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 0

Depends On services: FltMgr

 

Service (registry key): dmvsc

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\dmvsc.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): Dnscache

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\dnsapi.dll,-101

Description: @%SystemRoot%\System32\dnsapi.dll,-102

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\system32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: Tdx,nsi

 

Service (registry key): dot3svc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\dot3svc.dll,-1102

Description: @%systemroot%\system32\dot3svc.dll,-1103

Object name: localSystem

Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,Ndisuio,Eaphost

 

Service (registry key): DPS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\dps.dll,-500

Description: @%systemroot%\system32\dps.dll,-501

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): drmkaud

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Trusted Audio Drivers

Image path: system32\drivers\drmkaud.sys

Image size: 5120

Image MD5: B918E7C5F9BF77202F89E1A9539F2EB4

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): dtsoftbus01

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: DAEMON Tools Virtual Bus Driver

Image path: system32\DRIVERS\dtsoftbus01.sys

Image size: 242240

Image MD5: 687AF6BB383885FF6A64071B189A7F3E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): DXGKrnl

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: LDDM Graphics Subsystem

Description: Controls the underlying video driver stacks to provide fully-featured display capabilities.

Image path: \SystemRoot\System32\drivers\dxgkrnl.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): EapHost

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\eapsvc.dll,-1

Description: @%systemroot%\system32\eapsvc.dll,-2

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS,KeyIso

 

Service (registry key): ebdrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Broadcom NetXtreme II 10 GigE VBD

Image path: \SystemRoot\system32\drivers\evbdx.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): EFS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\efssvc.dll,-100

Description: @%SystemRoot%\system32\efssvc.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\System32\lsass.exe

Image size: 22528

Image MD5: 81951F51E318AECC2D68559E47485CC4

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): ehRecvr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\ehome\ehrecvr.exe,-101

Description: @%SystemRoot%\ehome\ehrecvr.exe,-102

Object name: NT AUTHORITY\networkService

Image path: %systemroot%\ehome\ehRecvr.exe

Image size: 556544

Image MD5: A8C362018EFC87BEB013EE28F29C0863

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 0

Depends On services: RPCSS

 

Service (registry key): ehSched

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\ehome\ehsched.exe,-101

Description: @%SystemRoot%\ehome\ehsched.exe,-102

Object name: NT AUTHORITY\networkService

Image path: %systemroot%\ehome\ehsched.exe

Image size: 94720

Image MD5: D389BFF34F80CAEDE417BF9D1507996A

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 0

Depends On services: RPCSS

 

Service (registry key): elxstor

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\elxstor.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ErrDev

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Hardware Error Device Driver

Image path: \SystemRoot\system32\drivers\errdev.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ESENT

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): eventlog

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\wevtsvc.dll,-200

Description: @%SystemRoot%\system32\wevtsvc.dll,-201

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): EventSystem

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @comres.dll,-2450

Description: @comres.dll,-2451

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: rpcss

 

Service (registry key): exfat

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: exFAT File System Driver

Description: exFAT File System Driver

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

 

Service (registry key): fastfat

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: FAT12/16/32 File System Driver

Description: Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

 

Service (registry key): Fax

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\fxsresm.dll,-118

Description: @%systemroot%\system32\fxsresm.dll,-122

Object name: NT AUTHORITY\NetworkService

Image path: %systemroot%\system32\fxssvc.exe

Image size: 523264

Image MD5: 967EA5B213E9984CBE270205DF37755B

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: TapiSrv,RpcSs,PlugPlay,Spooler

 

Service (registry key): fdc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Floppy Disk Controller Driver

Image path: \SystemRoot\system32\drivers\fdc.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): fdPHost

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\fdPHost.dll,-100

Description: @%systemroot%\system32\fdPHost.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,http

 

Service (registry key): FDResPub

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\fdrespub.dll,-100

Description: @%systemroot%\system32\fdrespub.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs,http

 

Service (registry key): FileInfo

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\fileinfo.sys,-100

Description: @%SystemRoot%\system32\drivers\fileinfo.sys,-101

Image path: system32\drivers\fileinfo.sys

Image size: 58448

Image MD5: 6CF00369C97F3CF563BE99BE983D13D8

Control Set: CurrentControlSet

Start: 0

Type: 2

Error Control: 1

Depends On services: fltmgr

 

Service (registry key): Filetrace

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\filetrace.sys,-10001

Description: @%SystemRoot%\system32\drivers\filetrace.sys,-10000

Image path: system32\drivers\filetrace.sys

Image size: 28160

Image MD5: 42C51DC94C91DA21CB9196EB64C45DB9

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: FltMgr

 

Service (registry key): flpydisk

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Floppy Disk Driver

Image path: \SystemRoot\system32\drivers\flpydisk.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): FltMgr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\fltmgr.sys,-10001

Description: @%SystemRoot%\system32\drivers\fltmgr.sys,-10000

Image path: system32\drivers\fltmgr.sys

Image size: 198208

Image MD5: 7520EC808E0C35E0EE6F841294316653

Control Set: CurrentControlSet

Start: 0

Type: 2

Error Control: 3

 

Service (registry key): FontCache

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\FntCache.dll,-100

Description: @%systemroot%\system32\FntCache.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): FontCache3.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\PresentationHost.exe,-3309

Description: @%SystemRoot%\system32\PresentationHost.exe,-3310

Object name: NT Authority\LocalService

Image path: %systemroot%\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe

Image size: 42856

Image MD5: E56F39F6B7FDA0AC77A79B0FD3DE1A2F

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): FsDepends

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\fsdepends.sys,-10001

Description: @%SystemRoot%\system32\drivers\fsdepends.sys,-10000

Image path: System32\drivers\FsDepends.sys

Image size: 46160

Image MD5: 1A16B57943853E598CFF37FE2B8CBF1D

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 3

Depends On services: fltmgr

 

Service (registry key): Fs_Rec

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 8

Error Control: 0

 

Service (registry key): fvevol

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\fvevol.sys,-100

Description: @%SystemRoot%\system32\drivers\fvevol.sys,-100

Image path: System32\DRIVERS\fvevol.sys

Image size: 194800

Image MD5: 8A73E79089B282100B9393B644CB853B

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): gagp30kx

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms

Image path: \SystemRoot\system32\drivers\gagp30kx.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): gdrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: gdrv

Image path: \??\C:\Windows\gdrv.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): gpsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @gpapi.dll,-112

Description: @gpapi.dll,-113

Object name: LocalSystem

Image path: %windir%\system32\svchost.exe -k GPSvcGroup

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: RPCSS,Mup

 

Service (registry key): gupdate

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Услуга на Google Актуализация (gupdate)

Description: Поддържа актуален софтуера ви от Google. Ако тази услуга е деактивирана или спряна, софтуерът ви от Google няма да е актуален, което означава, че ако в сигурността възникне уязвимост, тя няма да бъде коригирана и е възможно някои функции да не работят. Тази услуга се деинсталира сама, когато няма софтуер от Google, който да я използва.

Object name: LocalSystem

Image path: "C:\Program Files\Google\Update\GoogleUpdate.exe" /svc

Image size: 136176

Image MD5: F02A533F517EB38333CB12A9E8963773

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): gupdatem

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Услуга на Google Актуализация (gupdatem)

Description: Поддържа актуален софтуера ви от Google. Ако тази услуга е деактивирана или спряна, софтуерът ви от Google няма да е актуален, което означава, че ако в сигурността възникне уязвимост, тя няма да бъде коригирана и е възможно някои функции да не работят. Тази услуга се деинсталира сама, когато няма софтуер от Google, който да я използва.

Object name: LocalSystem

Image path: "C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc

Image size: 136176

Image MD5: F02A533F517EB38333CB12A9E8963773

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): gusvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Google Software Updater

Description: Актуализиращата програма на Google поддържа използвания от вас софтуер от Google винаги актуален. Ако тази услуга е деактивирана или спряна, използваният от вас софтуер на Google няма да бъде актуализиран, което означава, че ако в сигурността възникне уязвимост, тя няма да бъде коригирана и е възможно някои функции да не работят.

Object name: LocalSystem

Image path: "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"

Image size: 194032

Image MD5: 5D4BC124FAAE6730AC002CDB67BF1A1C

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 0

Depends On services: RPCSS

 

Service (registry key): hcw85cir

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Hauppauge Consumer Infrared Receiver

Image path: \SystemRoot\system32\drivers\hcw85cir.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): HdAudAddService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft 1.1 UAA Function Driver for High Definition Audio Service

Image path: system32\drivers\HdAudio.sys

Image size: 304128

Image MD5: A5EF29D5315111C80A5C1ABAD14C8972

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): HDAudBus

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft UAA Bus Driver for High Definition Audio

Image path: system32\DRIVERS\HDAudBus.sys

Image size: 108544

Image MD5: 9036377B8A6C15DC2EEC53E489D159B5

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): HidBatt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: HID UPS Battery Driver

Image path: \SystemRoot\system32\drivers\HidBatt.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): HidBth

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Bluetooth HID Miniport

Image path: \SystemRoot\system32\drivers\hidbth.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): HidIr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Infrared HID Driver

Image path: \SystemRoot\system32\drivers\hidir.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): hidserv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\hidserv.dll,-101

Description: @%SystemRoot%\System32\hidserv.dll,-102

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): HidUsb

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft HID Class Driver

Image path: system32\DRIVERS\hidusb.sys

Image size: 24064

Image MD5: 10C19F8290891AF023EAEC0832E1EB4D

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): hkmsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\kmsvc.dll,-6

Description: @%SystemRoot%\system32\kmsvc.dll,-7

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): HomeGroupListener

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\ListSvc.dll,-100

Description: @%SystemRoot%\System32\ListSvc.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: LanmanServer

 

Service (registry key): HomeGroupProvider

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\provsvc.dll,-100

Description: @%SystemRoot%\System32\provsvc.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: netprofm,fdrespub,fdphost

 

Service (registry key): HpSAMD

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\HpSAMD.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): HTTP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\http.sys,-1

Description: @%SystemRoot%\system32\drivers\http.sys,-2

Image path: system32\drivers\HTTP.sys

Image size: 513536

Image MD5: 871917B07A141BFF43D76D8844D48106

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): hwpolicy

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\hwpolicy.sys,-101

Description: @%systemroot%\system32\drivers\hwpolicy.sys,-102

Image path: System32\drivers\hwpolicy.sys

Image size: 14208

Image MD5: 0C4E035C7F105F1299258C90886C64C5

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): i8042prt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: i8042 Keyboard and PS/2 Mouse Port Driver

Image path: system32\DRIVERS\i8042prt.sys

Image size: 80896

Image MD5: F151F0BDC47F4A28B1B20A0818EA36D6

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): iaStorV

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\iaStorV.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): idsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193

Description: @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8192

Object name: LocalSystem

Image path: "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"

Image size: 878416

Image MD5: C521D7EB6497BB1AF6AFA89E322FB43C

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): iirsp

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\iirsp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): IKEEXT

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\ikeext.dll,-501

Description: @%SystemRoot%\system32\ikeext.dll,-502

Object name: LocalSystem

Image path: %systemroot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: BFE

 

Service (registry key): inetaccs

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): IntcAzAudAddService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Service for Realtek HD Audio (WDM)

Image path: system32\drivers\RTKVHDA.sys

Image size: 3086752

Image MD5: F42F2F88017A2E2B6F783ACEF6C2C149

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): intelide

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\intelide.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): intelppm

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Intel Processor Driver

Image path: \SystemRoot\system32\drivers\intelppm.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): IPBusEnum

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\IPBusEnum.dll,-102

Description: @%systemroot%\system32\IPBusEnum.dll,-103

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,fdPHost

 

Service (registry key): IpFilterDriver

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32013

Description: @%systemroot%\system32\rascfg.dll,-32013

Image path: system32\DRIVERS\ipfltdrv.sys

Image size: 58880

Image MD5: 709D1761D3B19A932FF0238EA6D50200

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

Depends On services: Tcpip

 

Service (registry key): iphlpsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\iphlpsvc.dll,-500

Description: @%SystemRoot%\system32\iphlpsvc.dll,-501

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k NetSvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

Depends On services: RpcSS,Tdx,winmgmt,tcpip,nsi

 

Service (registry key): IPMIDRV

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\IPMIDrv.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): IPNAT

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: IP Network Address Translator

Image path: System32\drivers\ipnat.sys

Image size: 101888

Image MD5: A5FA468D67ABCDAA36264E463A7BB0CD

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

Depends On services: Tcpip

 

Service (registry key): IRENUM

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\irenum.sys,-100

Description: @%SystemRoot%\system32\drivers\irenum.sys,-101

Image path: system32\drivers\irenum.sys

Image size: 13824

Image MD5: 42996CFF20A3084A56017B7902307E9F

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): isapnp

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\isapnp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): iScsiPrt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: iScsiPort Driver

Image path: \SystemRoot\system32\drivers\msiscsi.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): kbdclass

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Keyboard Class Driver

Image path: system32\DRIVERS\kbdclass.sys

Image size: 42576

Image MD5: ADEF52CA1AEAE82B50DF86B56413107E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): kbdhid

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Keyboard HID Driver

Image path: system32\DRIVERS\kbdhid.sys

Image size: 28160

Image MD5: 9E3CED91863E6EE98C24794D05E27A71

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): KeyIso

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @keyiso.dll,-100

Description: @keyiso.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\lsass.exe

Image size: 22528

Image MD5: 81951F51E318AECC2D68559E47485CC4

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): KSecDD

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: System32\Drivers\ksecdd.sys

Image size: 67440

Image MD5: B7895B4182C0D16F6EFADEB8081E8D36

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): KSecPkg

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: System32\Drivers\ksecpkg.sys

Image size: 136560

Image MD5: 5FE1ABF1AF591A3458C9CF24ED9A4D35

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): KtmRm

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @comres.dll,-2946

Description: @comres.dll,-2947

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k NetworkServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS,SamSS

 

Service (registry key): LanmanServer

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\srvsvc.dll,-100

Description: @%systemroot%\system32\srvsvc.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: SamSS,Srv

 

Service (registry key): LanmanWorkstation

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wkssvc.dll,-100

Description: @%systemroot%\system32\wkssvc.dll,-101

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: Bowser,MRxSmb10,MRxSmb20,NSI

 

Service (registry key): ldap

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): lltdio

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Link-Layer Topology Discovery Mapper I/O Driver

Image path: system32\DRIVERS\lltdio.sys

Image size: 48128

Image MD5: F7611EC07349979DA9B0AE1F18CCC7A6

Control Set: CurrentControlSet

Start: 2

Type: 1

Error Control: 1

 

Service (registry key): lltdsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\lltdres.dll,-1

Description: @%SystemRoot%\system32\lltdres.dll,-2

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: rpcss,lltdio

 

Service (registry key): lmhosts

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\lmhsvc.dll,-101

Description: @%SystemRoot%\system32\lmhsvc.dll,-102

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: NetBT,Afd

 

Service (registry key): Lsa

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): LSI_FC

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\lsi_fc.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): LSI_SAS

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\lsi_sas.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): LSI_SAS2

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\lsi_sas2.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): LSI_SCSI

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\lsi_scsi.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): luafv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\luafv.sys,-100

Description: @%systemroot%\system32\drivers\luafv.sys,-101

Image path: \SystemRoot\system32\drivers\luafv.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 2

Type: 2

Error Control: 1

Depends On services: FltMgr

 

Service (registry key): MBAMProtector

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \??\C:\Windows\system32\drivers\mbam.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: FltMgr

 

Service (registry key): MBAMScheduler

Registry path: \SYSTEM\CurrentControlSet\Services\

Description: Malwarebytes Anti-Malware scheduler

Object name: LocalSystem

Image path: "C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe"

Image size: 399432

Image MD5: 85B16A92B117A5A800032ECD904B86DB

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

 

Service (registry key): MBAMService

Registry path: \SYSTEM\CurrentControlSet\Services\

Description: Malwarebytes Anti-Malware service

Object name: LocalSystem

Image path: "C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe"

Image size: 676936

Image MD5: 20E2469DB709FC675E655CEAA11BE312

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: MBAMProtector

 

Service (registry key): Mcx2Svc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\ehome\ehres.dll,-15501

Description: @%SystemRoot%\ehome\ehres.dll,-15502

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

Depends On services: SSDPSRV,IPBusEnum,TermService,fdphost

 

Service (registry key): megasas

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\megasas.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MegaSR

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\MegaSR.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Microsoft SharePoint Workspace Audit Service

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft SharePoint Workspace Audit Service

Object name: NT AUTHORITY\LocalService

Image path: "C:\Program Files\Microsoft Office\Office14\GROOVE.EXE" /auditservice

Image size: 30969208

Image MD5: 334A6B52049C0A30A89369785E05027A

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): MMCSS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\mmcss.dll,-100

Description: @%systemroot%\system32\mmcss.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): Modem

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\drivers\modem.sys

Image size: 31744

Image MD5: F001861E5700EE84E2D4E52C712F4964

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): monitor

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Monitor Class Function Driver Service

Image path: system32\DRIVERS\monitor.sys

Image size: 23552

Image MD5: 79D10964DE86B292320E9DFE02282A23

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): mouclass

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Mouse Class Driver

Image path: system32\DRIVERS\mouclass.sys

Image size: 41552

Image MD5: FB18CC1D4C2E716B6B903B0AC0CC0609

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): mouhid

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Mouse HID Driver

Image path: system32\DRIVERS\mouhid.sys

Image size: 26112

Image MD5: 2C388D2CD01C9042596CF3C8F3C7B24D

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): mountmgr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\mountmgr.sys,-100

Description: @%SystemRoot%\system32\drivers\mountmgr.sys,-101

Image path: System32\drivers\mountmgr.sys

Image size: 78208

Image MD5: FC8771F45ECCCFD89684E38842539B9B

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): mpio

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\mpio.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): mpsdrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23092

Description: @%SystemRoot%\system32\FirewallAPI.dll,-23093

Image path: System32\drivers\mpsdrv.sys

Image size: 60416

Image MD5: AD2723A7B53DD1AACAE6AD8C0BFBF4D0

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MpsSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23090

Description: @%SystemRoot%\system32\FirewallAPI.dll,-23091

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: mpsdrv,bfe

 

Service (registry key): MRxDAV

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\webclnt.dll,-104

Description: @%systemroot%\system32\webclnt.dll,-105

Image path: \SystemRoot\system32\drivers\mrxdav.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: rdbss

 

Service (registry key): mrxsmb

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wkssvc.dll,-1002

Description: @%systemroot%\system32\wkssvc.dll,-1003

Image path: system32\DRIVERS\mrxsmb.sys

Image size: 123904

Image MD5: 5D16C921E3671636C0EBA3BBAAC5FD25

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: rdbss

 

Service (registry key): mrxsmb10

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wkssvc.dll,-1004

Description: @%systemroot%\system32\wkssvc.dll,-1005

Image path: system32\DRIVERS\mrxsmb10.sys

Image size: 223744

Image MD5: 6D17A4791ACA19328C685D256349FEFC

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: mrxsmb

 

Service (registry key): mrxsmb20

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wkssvc.dll,-1006

Description: @%systemroot%\system32\wkssvc.dll,-1007

Image path: system32\DRIVERS\mrxsmb20.sys

Image size: 96768

Image MD5: B81F204D146000BE76651A50670A5E9E

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: mrxsmb

 

Service (registry key): msahci

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\msahci.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): msdsm

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\msdsm.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MSDTC

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @comres.dll,-2797

Description: @comres.dll,-2798

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\msdtc.exe

Image size: 134144

Image MD5: E1BCE74A3BD9902B72599C0192A07E27

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RPCSS,SamSS

 

Service (registry key): MSDTC Bridge 3.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): MSDTC Bridge 4.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): Msfs

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 1

Type: 2

Error Control: 1

 

Service (registry key): mshidkmdf

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\mshidkmdf.sys,-100

Description: @%SystemRoot%\system32\drivers\mshidkmdf.sys,-101

Image path: \SystemRoot\System32\drivers\mshidkmdf.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): msisadrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\drivers\msisadrv.sys

Image size: 13888

Image MD5: 0A4E5757AE09FA9622E3158CC1AEF114

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): MSiSCSI

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\iscsidsc.dll,-5000

Description: @%SystemRoot%\system32\iscsidsc.dll,-5001

Object name: LocalSystem

Image path: %systemroot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): msiserver

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\msimsg.dll,-27

Description: @%SystemRoot%\system32\msimsg.dll,-32

Object name: LocalSystem

Image path: %systemroot%\system32\msiexec.exe /V

Image size: 73216

Image MD5: EEE470F2A771FC0B543BDEEF74FCECA0

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: rpcss

 

Service (registry key): MSKSSRV

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Streaming Service Proxy

Image path: system32\drivers\MSKSSRV.sys

Image size: 8320

Image MD5: 8C0860D6366AAFFB6C5BB9DF9448E631

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MSPCLOCK

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Streaming Clock Proxy

Image path: system32\drivers\MSPCLOCK.sys

Image size: 5888

Image MD5: 3EA8B949F963562CEDBB549EAC0C11CE

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MSPQM

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Streaming Quality Manager Proxy

Image path: system32\drivers\MSPQM.sys

Image size: 5504

Image MD5: F456E973590D663B1073E9C463B40932

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MsRPC

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MSSCNTRS

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): mssmbios

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft System Management BIOS Driver

Image path: system32\DRIVERS\mssmbios.sys

Image size: 28240

Image MD5: FC6B9FF600CC585EA38B12589BD4E246

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): MSTEE

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Streaming Tee/Sink-to-Sink Converter

Image path: system32\drivers\MSTEE.sys

Image size: 6144

Image MD5: B42C6B921F61A6E55159B8BE6CD54A36

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): MTConfig

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Input Configuration Driver

Image path: \SystemRoot\system32\drivers\MTConfig.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Mup

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\mup.sys,-101

Description: @%systemroot%\system32\drivers\mup.sys,-102

Image path: System32\Drivers\mup.sys

Image size: 49728

Image MD5: 159FAD02F64E6381758C990F753BCC80

Control Set: CurrentControlSet

Start: 0

Type: 2

Error Control: 1

 

Service (registry key): napagent

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\qagentrt.dll,-6

Description: @%SystemRoot%\system32\qagentrt.dll,-7

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): NativeWifiP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NativeWiFi Filter

Image path: system32\DRIVERS\nwifi.sys

Image size: 267264

Image MD5: 26384429FCD85D83746F63E798AB1480

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): NDIS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\ndis.sys,-200

Description: @%SystemRoot%\system32\drivers\ndis.sys,-201

Image path: system32\drivers\ndis.sys

Image size: 712048

Image MD5: 8C9C922D71F1CD4DEF73F186416B7896

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): NdisCap

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NDIS Capture LightWeight Filter

Description: NDIS Capture LightWeight Filter

Image path: system32\DRIVERS\ndiscap.sys

Image size: 27136

Image MD5: 0E1787AA6C9191D3D319E8BAFE86F80C

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): NdisTapi

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32001

Description: @%systemroot%\system32\rascfg.dll,-32001

Image path: system32\DRIVERS\ndistapi.sys

Image size: 20992

Image MD5: E4A8AEC125A2E43A9E32AFEEA7C9C888

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Ndisuio

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NDIS Usermode I/O Protocol

Image path: system32\DRIVERS\ndisuio.sys

Image size: 46080

Image MD5: D8A65DAFB3EB41CBB622745676FCD072

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): NdisWan

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32002

Description: @%systemroot%\system32\rascfg.dll,-32002

Image path: system32\DRIVERS\ndiswan.sys

Image size: 118784

Image MD5: 38FBE267E7E6983311179230FACB1017

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): NDProxy

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): NetBIOS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NetBIOS Interface

Description: NetBIOS Interface

Image path: system32\DRIVERS\netbios.sys

Image size: 36352

Image MD5: 80B275B1CE3B0E79909DB7B39AF74D51

Control Set: CurrentControlSet

Start: 1

Type: 2

Error Control: 1

 

Service (registry key): NetBT

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\netbt.sys,-2

Description: @%SystemRoot%\system32\drivers\netbt.sys,-1

Image path: System32\DRIVERS\netbt.sys

Image size: 187904

Image MD5: 280122DDCF04B378EDD1AD54D71C1E54

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

Depends On services: Tdx,tcpip

 

Service (registry key): Netlogon

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\netlogon.dll,-102

Description: @%SystemRoot%\System32\netlogon.dll,-103

Object name: LocalSystem

Image path: %systemroot%\system32\lsass.exe

Image size: 22528

Image MD5: 81951F51E318AECC2D68559E47485CC4

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: LanmanWorkstation

 

Service (registry key): Netman

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\netman.dll,-109

Description: @%SystemRoot%\system32\netman.dll,-110

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,nsi

 

Service (registry key): NetMsmqActivator

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195

Description: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8194

Object name: NT AUTHORITY\NetworkService

Image path: "C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator

Image size: 139680

Image MD5: E8B9164DA7701C1E595647C3A3AFA766

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

Depends On services: was,msmq

 

Service (registry key): NetPipeActivator

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197

Description: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8196

Object name: NT AUTHORITY\LocalService

Image path: C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

Image size: 139680

Image MD5: E8B9164DA7701C1E595647C3A3AFA766

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

Depends On services: was

 

Service (registry key): netprofm

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\netprofm.dll,-202

Description: @%SystemRoot%\system32\netprofm.dll,-203

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,nlasvc

 

Service (registry key): NetTcpActivator

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199

Description: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8198

Object name: NT AUTHORITY\LocalService

Image path: C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

Image size: 139680

Image MD5: E8B9164DA7701C1E595647C3A3AFA766

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

Depends On services: was,NetTcpPortSharing

 

Service (registry key): NetTcpPortSharing

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8201

Description: @C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8200

Object name: NT AUTHORITY\LocalService

Image path: C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

Image size: 139680

Image MD5: E8B9164DA7701C1E595647C3A3AFA766

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

 

Service (registry key): nfrd960

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\nfrd960.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): NlaSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\nlasvc.dll,-1

Description: @%SystemRoot%\System32\nlasvc.dll,-2

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: NSI,RpcSs,TcpIp

 

Service (registry key): Npfs

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 1

Type: 2

Error Control: 1

 

Service (registry key): nsi

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\nsisvc.dll,-200

Description: @%SystemRoot%\system32\nsisvc.dll,-201

Object name: NT Authority\LocalService

Image path: %systemroot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: nsiproxy

 

Service (registry key): nsiproxy

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\nsiproxy.sys,-2

Description: @%SystemRoot%\system32\drivers\nsiproxy.sys,-1

Image path: system32\drivers\nsiproxy.sys

Image size: 16896

Image MD5: E9A0A4D07E53D8FEA2BB8387A3293C58

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): NTDS

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): Ntfs

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

 

Service (registry key): Null

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): NVENETFD

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NVIDIA nForce Networking Controller Driver

Image path: system32\DRIVERS\nvm62x32.sys

Image size: 347264

Image MD5: B5E37E31C053BC9950455A257526514B

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): nvlddmkm

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\DRIVERS\nvlddmkm.sys

Image size: 11573768

Image MD5: DBC71CB5F25EAAC174A54E8C4C648AA1

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): NVNET

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NVIDIA nForce Ethernet Driver

Image path: system32\DRIVERS\nvmf6232.sys

Image size: 298216

Image MD5: 1DE923088878B495CD4219E47BA34EB8

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): nvraid

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\nvraid.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): nvstor

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\drivers\nvstor.sys

Image size: 143744

Image MD5: 4380E59A170D88C4F1022EFF6719A8A4

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): nvstor32

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\DRIVERS\nvstor32.sys

Image size: 215656

Image MD5: 97778C3CB3AF6B2243648D0DCD4D8916

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): nvsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NVIDIA Display Driver Service

Description: Provides system and desktop level support to the NVIDIA display driver

Object name: LocalSystem

Image path: C:\Windows\system32\nvvsvc.exe

Image size: 129640

Image MD5: 618F9989657CA50AA68F337BC1D8960A

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 0

 

Service (registry key): nv_agp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: NVIDIA nForce AGP Bus Filter

Image path: \SystemRoot\system32\drivers\nv_agp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ohci1394

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: 1394 OHCI Compliant Host Controller (Legacy)

Image path: \SystemRoot\system32\drivers\ohci1394.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ose

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Office Source Engine

Description: Записва инсталационните файлове, използвани за актуализации и поправки, и се изисква за изтеглянето на актуализации на инсталационната програма и отчети за грешки на Watson.

Object name: LocalSystem

Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"

Image size: 149352

Image MD5: 9D10F99A6712E28F8ACD5641E3A7EA6B

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): osppsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Office Software Protection Platform

Description: Office Software Protection Platform Service (unlocalized description)

Object name: NT AUTHORITY\NetworkService

Image path: "C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"

Image size: 4640000

Image MD5: 358A9CCA612C68EB2F07DDAD4CE1D8D7

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): Outlook

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): p2pimsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\pnrpsvc.dll,-8004

Description: @%SystemRoot%\system32\pnrpsvc.dll,-8005

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): p2psvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\p2psvc.dll,-8006

Description: @%SystemRoot%\system32\p2psvc.dll,-8007

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: p2pimsvc,PNRPSvc

 

Service (registry key): Parport

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Parallel port driver

Image path: system32\DRIVERS\parport.sys

Image size: 79360

Image MD5: 2EA877ED5DD9713C5AC74E8EA7348D14

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): partmgr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\partmgr.sys,-100

Description: @%SystemRoot%\system32\drivers\partmgr.sys,-101

Image path: System32\drivers\partmgr.sys

Image size: 56176

Image MD5: 3F34A1B4C5F6475F320C275E63AFCE9B

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): Parvdm

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\DRIVERS\parvdm.sys

Image size: 8704

Image MD5: EB0A59F29C19B86479D36B35983DAADC

Control Set: CurrentControlSet

Start: 2

Type: 1

Error Control: 0

Depends On services: Parport

Depends On group: "Parallel arbitrator"

 

Service (registry key): PcaSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\pcasvc.dll,-1

Description: @%SystemRoot%\system32\pcasvc.dll,-2

Object name: LocalSystem

Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): pci

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: PCI Bus Driver

Image path: system32\drivers\pci.sys

Image size: 153984

Image MD5: 673E55C3498EB970088E812EA820AA8F

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): pciide

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\pciide.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): pcmcia

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\pcmcia.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): pcw

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Performance Counters for Windows Driver

Image path: System32\drivers\pcw.sys

Image size: 43088

Image MD5: 250F6B43D2B613172035C6747AEEB19F

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): PEAUTH

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: PEAUTH

Image path: system32\drivers\peauth.sys

Image size: 586752

Image MD5: 9E0104BA49F4E6973749A02BF41344ED

Control Set: CurrentControlSet

Start: 2

Type: 1

Error Control: 1

 

Service (registry key): PeerDistSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\peerdistsvc.dll,-9000

Description: @%SystemRoot%\system32\peerdistsvc.dll,-9001

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k PeerDist

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: http

 

Service (registry key): PerfDisk

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): PerfNet

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): PerfOS

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): PerfProc

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): PhoneMyPC_Helper

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: PhoneMyPC_Helper

Description: Provides core remote control services for PhoneMyPC.

Object name: LocalSystem

Image path: "C:\Program Files\SoftwareForMe Inc\PhoneMyPC\PhoneMyPC_Helper.exe"

Image size: 31232

Image MD5: 25367AFF274D7DF637B7D5336246773E

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

 

Service (registry key): pla

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\pla.dll,-500

Description: @%systemroot%\system32\pla.dll,-501

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): PlugPlay

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\umpnpmgr.dll,-100

Description: @%SystemRoot%\system32\umpnpmgr.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): PNRPAutoReg

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\pnrpauto.dll,-8002

Description: @%SystemRoot%\system32\pnrpauto.dll,-8003

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: pnrpsvc

 

Service (registry key): PNRPsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\pnrpsvc.dll,-8000

Description: @%SystemRoot%\system32\pnrpsvc.dll,-8001

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServicePeerNet

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: p2pimsvc

 

Service (registry key): PolicyAgent

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\polstore.dll,-5010

Description: @%SystemRoot%\system32\polstore.dll,-5011

Object name: NT Authority\NetworkService

Image path: %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: Tcpip,bfe

 

Service (registry key): PortProxy

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): Power

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\umpo.dll,-100

Description: @%SystemRoot%\system32\umpo.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): PptpMiniport

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32006

Description: @%systemroot%\system32\rascfg.dll,-32006

Image path: system32\DRIVERS\raspptp.sys

Image size: 73728

Image MD5: 631E3E205AD6D86F2AED6A4A8E69F2DB

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Processor

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Processor Driver

Image path: \SystemRoot\system32\drivers\processr.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ProfSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\profsvc.dll,-300

Description: @%systemroot%\system32\profsvc.dll,-301

Object name: LocalSystem

Image path: %systemroot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): ProtectedStorage

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\psbase.dll,-300

Description: @%systemroot%\system32\psbase.dll,-301

Object name: LocalSystem

Image path: %SystemRoot%\system32\lsass.exe

Image size: 22528

Image MD5: 81951F51E318AECC2D68559E47485CC4

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): Psched

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\drivers\pacer.sys,-101

Description: @%SystemRoot%\System32\drivers\pacer.sys,-101

Image path: system32\DRIVERS\pacer.sys

Image size: 104448

Image MD5: 6270CCAE2A86DE6D146529FE55B3246A

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): ql2300

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\ql2300.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ql40xx

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\ql40xx.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): QWAVE

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\qwave.dll,-1

Description: @%SystemRoot%\system32\qwave.dll,-2

Object name: NT AUTHORITY\LocalService

Image path: %windir%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: rpcss,psched,QWAVEdrv,LLTDIO

 

Service (registry key): QWAVEdrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\qwavedrv.sys,-1

Description: @%SystemRoot%\system32\drivers\qwavedrv.sys,-2

Image path: \SystemRoot\system32\drivers\qwavedrv.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): RasAcd

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Remote Access Auto Connection Driver

Description: Remote Access Auto Connection Driver

Image path: System32\DRIVERS\rasacd.sys

Image size: 11776

Image MD5: 30A81B53C766D0133BB86D234E5556AB

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): RasAgileVpn

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: WAN Miniport (IKEv2)

Description: WAN Miniport (IKEv2)

Image path: system32\DRIVERS\AgileVpn.sys

Image size: 49152

Image MD5: 57EC4AEF73660166074D8F7F31C0D4FD

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): RasAuto

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%Systemroot%\system32\rasauto.dll,-200

Description: @%Systemroot%\system32\rasauto.dll,-201

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RasMan,TapiSrv,RasAcd

 

Service (registry key): Rasl2tp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32005

Description: @%systemroot%\system32\rascfg.dll,-32005

Image path: system32\DRIVERS\rasl2tp.sys

Image size: 78848

Image MD5: D9F91EAFEC2815365CBE6D167E4E332A

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): RasMan

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%Systemroot%\system32\rasmans.dll,-200

Description: @%Systemroot%\system32\rasmans.dll,-201

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: Tapisrv,SstpSvc

 

Service (registry key): RasPppoe

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32007

Description: @%systemroot%\system32\rascfg.dll,-32007

Image path: system32\DRIVERS\raspppoe.sys

Image size: 77824

Image MD5: 0FE8B15916307A6AC12BFB6A63E45507

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): RasSstp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\sstpsvc.dll,-202

Description: @%systemroot%\system32\sstpsvc.dll,-202

Image path: system32\DRIVERS\rassstp.sys

Image size: 75264

Image MD5: 44101F495A83EA6401D886E7FD70096B

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): rdbss

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wkssvc.dll,-1000

Description: @%systemroot%\system32\wkssvc.dll,-1001

Image path: system32\DRIVERS\rdbss.sys

Image size: 242688

Image MD5: D528BC58A489409BA40334EBF96A311B

Control Set: CurrentControlSet

Start: 1

Type: 2

Error Control: 1

Depends On services: Mup

 

Service (registry key): rdpbus

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Remote Desktop Device Redirector Bus Driver

Image path: system32\DRIVERS\rdpbus.sys

Image size: 18944

Image MD5: 0D8F05481CB76E70E1DA06EE9F0DA9DF

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): RDPCDD

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\DRIVERS\RDPCDD.sys,-100

Description: @%systemroot%\system32\DRIVERS\RDPCDD.sys,-101

Image path: System32\DRIVERS\RDPCDD.sys

Image size: 6656

Image MD5: 23DAE03F29D253AE74C44F99E515F9A1

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 0

 

Service (registry key): RDPDD

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): RDPDR

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Terminal Server Device Redirector Driver

Image path: System32\drivers\rdpdr.sys

Image size: 133632

Image MD5: B973FCFC50DC1434E1970A146F7E3885

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

Depends On services: RDBSS

 

Service (registry key): RDPENCDD

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\RDPENCDD.sys,-101

Description: @%systemroot%\system32\drivers\RDPENCDD.sys,-100

Image path: system32\drivers\rdpencdd.sys

Image size: 6656

Image MD5: 5A53CA1598DD4156D44196D200C94B8A

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 0

 

Service (registry key): RDPNP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drprov.dll,-100

Description: @%systemroot%\system32\drprov.dll,-101

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): RDPREFMP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\drivers\RdpRefMp.sys,-101

Description: @%systemroot%\system32\drivers\RdpRefMp.sys,-100

Image path: system32\drivers\rdprefmp.sys

Image size: 7168

Image MD5: 44B0A53CD4F27D50ED461DAE0C0B4E1F

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 0

 

Service (registry key): RDPUDD

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): RdpVideoMiniport

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Remote Desktop Video Miniport Driver

Image path: System32\drivers\rdpvideominiport.sys

Image size: 14848

Image MD5: 65375DF758CA1872AB7EBBBA457FD5E6

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): RDPWD

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: RDP Winstation Driver

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): rdyboost

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: ReadyBoost

Description: ReadyBoost

Image path: System32\drivers\rdyboost.sys

Image size: 173440

Image MD5: 518395321DC96FE2C9F0E96AC743B656

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): RemoteAccess

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%Systemroot%\system32\mprdim.dll,-200

Description: @%Systemroot%\system32\mprdim.dll,-201

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

Depends On services: RpcSS,Bfe,RasMan,Http

Depends On group: NetBIOSGroup

 

Service (registry key): RemoteRegistry

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @regsvc.dll,-1

Description: @regsvc.dll,-2

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k regsvc

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): RpcEptMapper

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%windir%\system32\RpcEpMap.dll,-1001

Description: @%windir%\system32\RpcEpMap.dll,-1002

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\system32\svchost.exe -k RPCSS

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): RpcLocator

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\Locator.exe,-2

Description: @%systemroot%\system32\Locator.exe,-3

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\system32\locator.exe

Image size: 9216

Image MD5: 94D36C0E44677DD26981D2BFEEF2A29D

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): RpcSs

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @oleres.dll,-5010

Description: @oleres.dll,-5011

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\system32\svchost.exe -k rpcss

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcEptMapper,DcomLaunch

 

Service (registry key): rspndr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Link-Layer Topology Discovery Responder

Image path: system32\DRIVERS\rspndr.sys

Image size: 60928

Image MD5: 032B0D36AD92B582D869879F5AF5B928

Control Set: CurrentControlSet

Start: 2

Type: 1

Error Control: 1

 

Service (registry key): s3cap

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\vms3cap.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): SamSs

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\samsrv.dll,-1

Description: @%SystemRoot%\system32\samsrv.dll,-2

Object name: LocalSystem

Image path: %SystemRoot%\system32\lsass.exe

Image size: 22528

Image MD5: 81951F51E318AECC2D68559E47485CC4

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): SASDIFSV

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SASDIFSV

Image path: \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): SASKUTIL

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SASKUTIL

Image path: \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): sbp2port

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\sbp2port.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): SBSDWSCService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SBSD Security Center Service

Object name: LocalSystem

Image path: C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe

Image size: 1153368

Image MD5: 794D4B48DFB6E999537C7C3947863463

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: wscsvc

 

Service (registry key): SCardSvr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\SCardSvr.dll,-1

Description: @%SystemRoot%\System32\SCardSvr.dll,-5

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: PlugPlay

 

Service (registry key): scfilter

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\drivers\scfilter.sys,-11

Description: @%SystemRoot%\System32\drivers\scfilter.sys,-12

Image path: System32\DRIVERS\scfilter.sys

Image size: 26624

Image MD5: 0693B5EC673E34DC147E195779A4DCF6

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Schedule

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\schedsvc.dll,-100

Description: @%SystemRoot%\system32\schedsvc.dll,-101

Object name: LocalSystem

Image path: %systemroot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RPCSS,EventLog

 

Service (registry key): SCPolicySvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\certprop.dll,-13

Description: @%SystemRoot%\System32\certprop.dll,-14

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): SDRSVC

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\sdrsvc.dll,-107

Description: @%SystemRoot%\system32\sdrsvc.dll,-102

Object name: localSystem

Image path: %SystemRoot%\system32\svchost.exe -k SDRSVC

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): secdrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Security Driver

Control Set: CurrentControlSet

Start: 2

Type: 1

Error Control: 1

 

Service (registry key): seclogon

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\seclogon.dll,-7001

Description: @%SystemRoot%\system32\seclogon.dll,-7000

Object name: LocalSystem

Image path: %windir%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): SENS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\Sens.dll,-200

Description: @%SystemRoot%\system32\Sens.dll,-201

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: EventSystem

 

Service (registry key): SensrSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\sensrsvc.dll,-1000

Description: @%SystemRoot%\System32\sensrsvc.dll,-1001

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): Serenum

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Serenum Filter Driver

Image path: system32\DRIVERS\serenum.sys

Image size: 17920

Image MD5: 9AD8B8B515E3DF6ACD4212EF465DE2D1

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Serial

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Serial port driver

Image path: system32\DRIVERS\serial.sys

Image size: 83456

Image MD5: 5FB7FCEA0490D821F26F39CC5EA3D1E2

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 0

 

Service (registry key): sermouse

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Serial Mouse Driver

Image path: \SystemRoot\system32\drivers\sermouse.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ServiceModelEndpoint 3.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): ServiceModelOperation 3.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): ServiceModelService 3.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): SessionEnv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\SessEnv.dll,-1026

Description: @%SystemRoot%\System32\SessEnv.dll,-1027

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS,LanmanWorkstation

 

Service (registry key): sffdisk

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SFF Storage Class Driver

Image path: \SystemRoot\system32\drivers\sffdisk.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): sffp_mmc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SFF Storage Protocol Driver for MMC

Image path: \SystemRoot\system32\drivers\sffp_mmc.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): sffp_sd

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SFF Storage Protocol Driver for SDBus

Image path: \SystemRoot\system32\drivers\sffp_sd.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): sfloppy

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: High-Capacity Floppy Disk Drive

Image path: \SystemRoot\system32\drivers\sfloppy.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): SharedAccess

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\ipnathlp.dll,-106

Description: @%SystemRoot%\system32\ipnathlp.dll,-107

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 4

Type: 32

Error Control: 1

Depends On services: Netman,WinMgmt,RasMan,BFE

 

Service (registry key): ShellHWDetection

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\shsvcs.dll,-12288

Description: @%SystemRoot%\System32\shsvcs.dll,-12289

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 0

Depends On services: RpcSs

 

Service (registry key): sisagp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: SIS AGP Bus Filter

Image path: \SystemRoot\system32\drivers\sisagp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): SiSRaid2

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\SiSRaid2.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): SiSRaid4

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\sisraid4.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): SkypeUpdate

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Skype Updater

Description: Enables the detection, download and installation of updates for Skype.

Object name: LocalSystem

Image path: "C:\Program Files\Skype\Updater\Updater.exe"

Image size: 160944

Image MD5: B866E8C5ED1DCBEA72285BA4107892C2

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 0

Depends On services: RpcSs

 

Service (registry key): Smb

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50005

Description: @%SystemRoot%\system32\tcpipcfg.dll,-50006

Image path: system32\DRIVERS\smb.sys

Image size: 71168

Image MD5: 3E21C083B8A01CB70BA1F09303010FCE

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

Depends On services: Tcpip

 

Service (registry key): SMSvcHost 3.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): SMSvcHost 4.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): SNMPTRAP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\snmptrap.exe,-3

Description: @%SystemRoot%\system32\snmptrap.exe,-4

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\snmptrap.exe

Image size: 12800

Image MD5: 6A984831644ECA1A33FFEAE4126F4F37

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): spldr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Security Processor Loader Driver

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): Spooler

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\spoolsv.exe,-1

Description: @%systemroot%\system32\spoolsv.exe,-2

Object name: LocalSystem

Image path: %SystemRoot%\System32\spoolsv.exe

Image size: 317440

Image MD5: 9AEA093B8F9C37CF45538382CABA2475

Control Set: CurrentControlSet

Start: 2

Type: 272

Error Control: 1

Depends On services: RPCSS,http

 

Service (registry key): sppsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\sppsvc.exe,-101

Description: @%SystemRoot%\system32\sppsvc.exe,-100

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\system32\sppsvc.exe

Image size: 3179520

Image MD5: CF87A1DE791347E75B98885214CED2B8

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): sppuinotify

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\sppuinotify.dll,-103

Description: @%SystemRoot%\system32\sppuinotify.dll,-102

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: EventSystem

 

Service (registry key): srv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\srvsvc.dll,-102

Description: @%systemroot%\system32\srvsvc.dll,-103

Image path: System32\DRIVERS\srv.sys

Image size: 311808

Image MD5: E4C2764065D66EA1D2D3EBC28FE99C46

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: srv2

 

Service (registry key): srv2

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\srvsvc.dll,-104

Description: @%systemroot%\system32\srvsvc.dll,-105

Image path: System32\DRIVERS\srv2.sys

Image size: 310272

Image MD5: 03F0545BD8D4C77FA0AE1CEEDFCC71AB

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

Depends On services: srvnet

 

Service (registry key): srvnet

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: System32\DRIVERS\srvnet.sys

Image size: 114688

Image MD5: BE6BD660CAA6F291AE06A718A4FA8ABC

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

 

Service (registry key): SSDPSRV

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\ssdpsrv.dll,-100

Description: @%systemroot%\system32\ssdpsrv.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: HTTP

 

Service (registry key): SstpSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\sstpsvc.dll,-200

Description: @%SystemRoot%\system32\sstpsvc.dll,-201

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): stexstor

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\stexstor.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): StiSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\wiaservc.dll,-9

Description: @%SystemRoot%\system32\wiaservc.dll,-10

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k imgsvc

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: RpcSs,ShellHWDetection

 

Service (registry key): storflt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\vmstorfltres.dll,-1000

Image path: system32\drivers\vmstorfl.sys

Image size: 40704

Image MD5: 472AF0311073DCECEAA8FA18BA2BDF89

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): storvsc

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\storvsc.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): swenum

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Software Bus Driver

Image path: system32\DRIVERS\swenum.sys

Image size: 12240

Image MD5: E58C78A848ADD9610A4DB6D214AF5224

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): swprv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\swprv.dll,-103

Description: @%SystemRoot%\System32\swprv.dll,-102

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k swprv

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): Synth3dVsc

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: System32\drivers\synth3dvsc.sys

Image size: 77184

Image MD5: F2AD8960812FD111E20E84659EF19D43

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): SysMain

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\sysmain.dll,-1000

Description: @%SystemRoot%\system32\sysmain.dll,-1001

Object name: LocalSystem

Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 0

Depends On services: rpcss,fileinfo

 

Service (registry key): TabletInputService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\TabSvc.dll,-100

Description: @%SystemRoot%\system32\TabSvc.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: PlugPlay,RpcSs

 

Service (registry key): TapiSrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\tapisrv.dll,-10100

Description: @%SystemRoot%\system32\tapisrv.dll,-10101

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: PlugPlay,RpcSs

 

Service (registry key): TBS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\tbssvc.dll,-100

Description: @%SystemRoot%\system32\tbssvc.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): Tcpip

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50003

Description: @%SystemRoot%\system32\tcpipcfg.dll,-50003

Image path: System32\drivers\tcpip.sys

Image size: 1292144

Image MD5: A5EBB8F648000E88B7D9390B514976BF

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): TCPIP6

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft IPv6 Protocol Driver

Description: Microsoft IPv6 Protocol Driver

Image path: system32\DRIVERS\tcpip.sys

Image size: 1292144

Image MD5: A5EBB8F648000E88B7D9390B514976BF

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

Depends On services: Tcpip

 

Service (registry key): TCPIP6TUNNEL

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): tcpipreg

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: TCP/IP Registry Compatibility

Description: Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality.

Image path: System32\drivers\tcpipreg.sys

Image size: 35328

Image MD5: CCA24162E055C3714CE5A88B100C64ED

Control Set: CurrentControlSet

Start: 2

Type: 1

Error Control: 1

Depends On services: tcpip

 

Service (registry key): TCPIPTUNNEL

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): TDPIPE

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: TDPIPE

Image path: system32\drivers\tdpipe.sys

Image size: 18432

Image MD5: 1CB91B2BD8F6DD367DFC2EF26FD751B2

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): TDTCP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: TDTCP

Image path: system32\drivers\tdtcp.sys

Image size: 24576

Image MD5: 2C2C5AFE7EE4F620D69C23C0617651A8

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): tdx

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50004

Description: @%SystemRoot%\system32\tcpipcfg.dll,-50004

Image path: system32\DRIVERS\tdx.sys

Image size: 74752

Image MD5: B459575348C20E8121D6039DA063C704

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

Depends On services: Tcpip

 

Service (registry key): TermDD

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Terminal Device Driver

Image path: system32\DRIVERS\termdd.sys

Image size: 53120

Image MD5: 04DBF4B01EA4BF25A9A3E84AFFAC9B20

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): terminpt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Remote Desktop Input Driver

Image path: \SystemRoot\system32\drivers\terminpt.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): TermService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\termsrv.dll,-268

Description: @%SystemRoot%\System32\termsrv.dll,-267

Object name: NT Authority\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS,TermDD

 

Service (registry key): Themes

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\themeservice.dll,-8192

Description: @%SystemRoot%\System32\themeservice.dll,-8193

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): THREADORDER

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\mmcss.dll,-102

Description: @%systemroot%\system32\mmcss.dll,-103

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): TrkWks

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\trkwks.dll,-1

Description: @%SystemRoot%\system32\trkwks.dll,-2

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): TrustedInstaller

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\servicing\TrustedInstaller.exe,-100

Description: @%SystemRoot%\servicing\TrustedInstaller.exe,-101

Object name: localSystem

Image path: %SystemRoot%\servicing\TrustedInstaller.exe

Image size: 204800

Image MD5: 2C49B175AEE1D4364B91B531417FE583

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): TSDDD

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): tssecsrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101

Description: @%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-102

Image path: System32\DRIVERS\tssecsrv.sys

Image size: 31232

Image MD5: 254BB140EEE3C59D6114C1A86B636877

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): TsUsbFlt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\tsusbflt.sys,-1

Description: @%SystemRoot%\system32\drivers\tsusbflt.sys,-2

Image path: System32\drivers\tsusbflt.sys

Image size: 49664

Image MD5: 9CE253214ACAA5A7D323327D2055EFAA

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): TsUsbGD

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Remote Desktop Generic USB Device

Image path: \SystemRoot\system32\drivers\TsUsbGD.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): tsusbhub

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\tsusbhub.sys,-1

Description: @%SystemRoot%\system32\drivers\tsusbhub.sys,-2

Image path: system32\drivers\tsusbhub.sys

Image size: 112640

Image MD5: 045ACB987C650D8186C6B4A692223860

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): tunnel

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Tunnel Miniport Adapter Driver

Image path: system32\DRIVERS\tunnel.sys

Image size: 108544

Image MD5: B2FA25D9B17A68BB93D58B0556E8C90D

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): uagp35

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft AGPv3.5 Filter

Image path: \SystemRoot\system32\drivers\uagp35.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): udfs

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: udfs

Description: Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)

Image path: system32\DRIVERS\udfs.sys

Image size: 246784

Image MD5: EE43346C7E4B5E63E54F927BABBB32FF

Control Set: CurrentControlSet

Start: 4

Type: 2

Error Control: 1

 

Service (registry key): UGatherer

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): UGTHRSVC

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): UI0Detect

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\ui0detect.exe,-101

Description: @%SystemRoot%\system32\ui0detect.exe,-102

Object name: LocalSystem

Image path: %SystemRoot%\system32\UI0Detect.exe

Image size: 35840

Image MD5: 8344FD4FCE927880AA1AA7681D4927E5

Control Set: CurrentControlSet

Start: 3

Type: 272

Error Control: 1

 

Service (registry key): uliagpkx

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Uli AGP Bus Filter

Image path: \SystemRoot\system32\drivers\uliagpkx.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): umbus

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: UMBus Enumerator Driver

Image path: system32\DRIVERS\umbus.sys

Image size: 39936

Image MD5: D295BED4B898F0FD999FCFA9B32B071B

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): UmPass

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft UMPass Driver

Image path: \SystemRoot\system32\drivers\umpass.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): UmRdpService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\umrdp.dll,-1000

Description: @%SystemRoot%\system32\umrdp.dll,-1001

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: TermService,RDPDR

 

Service (registry key): upnphost

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\upnphost.dll,-213

Description: @%systemroot%\system32\upnphost.dll,-214

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: SSDPSRV,HTTP

 

Service (registry key): usb

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): usbccgp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft USB Generic Parent Driver

Image path: system32\DRIVERS\usbccgp.sys

Image size: 75776

Image MD5: BD9C55D7023C5DE374507ACC7A14E2AC

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): usbcir

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: eHome Infrared Receiver (USBCIR)

Image path: \SystemRoot\system32\drivers\usbcir.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): usbehci

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft USB 2.0 Enhanced Host Controller Miniport Driver

Image path: system32\DRIVERS\usbehci.sys

Image size: 43008

Image MD5: F92DE757E4B7CE9C07C5E65423F3AE3B

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): usbhub

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft USB Standard Hub Driver

Image path: system32\DRIVERS\usbhub.sys

Image size: 258560

Image MD5: 8DC94AEC6A7E644A06135AE7506DC2E9

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): usbohci

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft USB Open Host Controller Miniport Driver

Image path: system32\DRIVERS\usbohci.sys

Image size: 20480

Image MD5: E185D44FAC515A18D9DEDDC23C2CDF44

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): usbprint

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft USB PRINTER Class

Image path: system32\DRIVERS\usbprint.sys

Image size: 19968

Image MD5: 797D862FE0875E75C7CC4C1AD7B30252

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): usbscan

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: USB Scanner Driver

Image path: system32\DRIVERS\usbscan.sys

Image size: 35840

Image MD5: 576096CCBC07E7C4EA4F5E6686D6888F

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): USBSTOR

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: USB Mass Storage Driver

Image path: system32\DRIVERS\USBSTOR.SYS

Image size: 76288

Image MD5: F991AB9CC6B908DB552166768176896A

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): usbuhci

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft USB Universal Host Controller Miniport Driver

Image path: \SystemRoot\system32\drivers\usbuhci.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): UxSms

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\dwm.exe,-2000

Description: @%SystemRoot%\system32\dwm.exe,-2001

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

 

Service (registry key): VaultSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\vaultsvc.dll,-1003

Description: @%SystemRoot%\system32\vaultsvc.dll,-1004

Object name: LocalSystem

Image path: %SystemRoot%\system32\lsass.exe

Image size: 22528

Image MD5: 81951F51E318AECC2D68559E47485CC4

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: rpcss

 

Service (registry key): vdrvroot

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Virtual Drive Enumerator Driver

Image path: system32\drivers\vdrvroot.sys

Image size: 32832

Image MD5: A059C4C3EDB09E07D21A8E5C0AABD3CB

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): vds

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\vds.exe,-100

Description: @%SystemRoot%\system32\vds.exe,-112

Object name: LocalSystem

Image path: %SystemRoot%\System32\vds.exe

Image size: 453632

Image MD5: C3CD30495687C2A2F66A65CA6FD89BE9

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RpcSs,PlugPlay

 

Service (registry key): vga

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\DRIVERS\vgapnp.sys

Image size: 26112

Image MD5: 17C408214EA61696CEC9C66E388B14F3

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): VgaSave

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\System32\drivers\vga.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 0

 

Service (registry key): VGPU

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: System32\drivers\rdvgkmd.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): vhdmp

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\vhdmp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): viaagp

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: VIA AGP Bus Filter

Image path: \SystemRoot\system32\drivers\viaagp.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): ViaC7

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: VIA C7 Processor Driver

Image path: \SystemRoot\system32\drivers\viac7.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): viaide

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\viaide.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 3

 

Service (registry key): vmbus

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\vmbus.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): VMBusHID

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\VMBusHID.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): volmgr

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Volume Manager Driver

Image path: system32\drivers\volmgr.sys

Image size: 53120

Image MD5: 4C63E00F2F4B5F86AB48A58CD990F212

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): volmgrx

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\drivers\volmgrx.sys,-100

Description: @%SystemRoot%\system32\drivers\volmgrx.sys,-101

Image path: System32\drivers\volmgrx.sys

Image size: 297040

Image MD5: B5BB72067DDDDBBFB04B2F89FF8C3C87

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): volsnap

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Storage volumes

Image path: system32\drivers\volsnap.sys

Image size: 245632

Image MD5: F497F67932C6FA693D7DE2780631CFE7

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 3

 

Service (registry key): vsmraid

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\vsmraid.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): VSS

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\vssvc.exe,-102

Description: @%systemroot%\system32\vssvc.exe,-101

Object name: LocalSystem

Image path: %systemroot%\system32\vssvc.exe

Image size: 1025536

Image MD5: 209A3B1901B83AEB8527ED211CCE9E4C

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): vwifibus

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\drivers\vwifibus.sys,-257

Description: @%SystemRoot%\System32\drivers\vwifibus.sys,-258

Image path: \SystemRoot\System32\drivers\vwifibus.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 0

 

Service (registry key): W32Time

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\w32time.dll,-200

Description: @%SystemRoot%\system32\w32time.dll,-201

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): W3SVC

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): WacomPen

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Wacom Serial Pen HID Driver

Image path: \SystemRoot\system32\drivers\wacompen.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): WANARP

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32011

Description: @%systemroot%\system32\rascfg.dll,-32011

Image path: system32\DRIVERS\wanarp.sys

Image size: 63488

Image MD5: 3C3C78515F5AB448B022BDF5B8FFDD2E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Wanarpv6

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\rascfg.dll,-32012

Description: @%systemroot%\system32\rascfg.dll,-32012

Image path: system32\DRIVERS\wanarp.sys

Image size: 63488

Image MD5: 3C3C78515F5AB448B022BDF5B8FFDD2E

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): wbengine

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wbengine.exe,-104

Description: @%systemroot%\system32\wbengine.exe,-105

Object name: localSystem

Image path: "%systemroot%\system32\wbengine.exe"

Image size: 1203200

Image MD5: 691E3285E53DCA558E1A84667F13E15A

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): WbioSrvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wbiosrvc.dll,-100

Description: @%systemroot%\system32\wbiosrvc.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k WbioSvcGroup

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs,VaultSvc,WUDFSvc

 

Service (registry key): wcncsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\wcncsvc.dll,-3

Description: @%SystemRoot%\system32\wcncsvc.dll,-4

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceAndNoImpersonation

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: rpcss

 

Service (registry key): WcsPlugInService

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\WcsPlugInService.dll,-200

Description: @%SystemRoot%\system32\WcsPlugInService.dll,-201

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k wcssvc

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): Wd

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: \SystemRoot\system32\drivers\wd.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): Wdf01000

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Kernel Mode Driver Frameworks service

Image path: system32\drivers\Wdf01000.sys

Image size: 445008

Image MD5: 9950E3D0F08141C7E89E64456AE7DC73

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): WdiServiceHost

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wdi.dll,-502

Description: @%systemroot%\system32\wdi.dll,-503

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): WdiSystemHost

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wdi.dll,-500

Description: @%systemroot%\system32\wdi.dll,-501

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): WebClient

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\webclnt.dll,-100

Description: @%systemroot%\system32\webclnt.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: MRxDAV

 

Service (registry key): Wecsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\wecsvc.dll,-200

Description: @%SystemRoot%\system32\wecsvc.dll,-201

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\system32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: HTTP,Eventlog

 

Service (registry key): wercplsupport

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\wercplsupport.dll,-101

Description: @%SystemRoot%\System32\wercplsupport.dll,-100

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

 

Service (registry key): WerSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\wersvc.dll,-100

Description: @%SystemRoot%\System32\wersvc.dll,-101

Object name: localSystem

Image path: %SystemRoot%\System32\svchost.exe -k WerSvcGroup

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 0

 

Service (registry key): WfpLwf

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: WFP Lightweight Filter

Description: WFP Lightweight Filter

Image path: system32\DRIVERS\wfplwf.sys

Image size: 9728

Image MD5: 8B9A943F3B53861F2BFAF6C186168F79

Control Set: CurrentControlSet

Start: 1

Type: 1

Error Control: 1

 

Service (registry key): whdg

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: System32\drivers\tiwyjhnb.sys

Image size: 54016

Image MD5: E6D35F3AA51A65EB35C1F2340154A25E

Control Set: CurrentControlSet

Start: 0

Type: 1

Error Control: 1

 

Service (registry key): WIMMount

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: WIMMount

Description: WIM Image mount service driver

Image path: system32\drivers\wimmount.sys

Image size: 19008

Image MD5: 5CF95B35E59E2A38023836FFF31BE64C

Control Set: CurrentControlSet

Start: 3

Type: 2

Error Control: 1

 

Service (registry key): WinDefend

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103

Description: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-1176

Object name: LocalSystem

Image path: %SystemRoot%\System32\svchost.exe -k secsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): Windows Workflow Foundation 3.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): Windows Workflow Foundation 4.0.0.0

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): WinHttpAutoProxySvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\winhttp.dll,-100

Description: @%SystemRoot%\system32\winhttp.dll,-101

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: Dhcp

 

Service (registry key): Winmgmt

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%Systemroot%\system32\wbem\wmisvc.dll,-205

Description: @%Systemroot%\system32\wbem\wmisvc.dll,-204

Object name: localSystem

Image path: %systemroot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 0

Depends On services: RPCSS

 

Service (registry key): WinRM

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%Systemroot%\system32\wsmsvc.dll,-101

Description: @%Systemroot%\system32\wsmsvc.dll,-102

Object name: NT AUTHORITY\NetworkService

Image path: %SystemRoot%\System32\svchost.exe -k NetworkService

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RPCSS,HTTP

 

Service (registry key): Winsock

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 3

Type: 4

Error Control: 1

 

Service (registry key): WinSock2

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): Wlansvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\wlansvc.dll,-257

Description: @%SystemRoot%\System32\wlansvc.dll,-258

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: nativewifip,RpcSs,Ndisuio,Eaphost

 

Service (registry key): WmiAcpi

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: Microsoft Windows Management Interface for ACPI

Image path: \SystemRoot\system32\drivers\wmiacpi.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): WmiApRpl

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): wmiApSrv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110

Description: @%Systemroot%\system32\wbem\wmiapsrv.exe,-111

Object name: localSystem

Image path: %systemroot%\system32\wbem\WmiApSrv.exe

Image size: 136192

Image MD5: 6EB6B66517B048D87DC1856DDF1F4C3F

Control Set: CurrentControlSet

Start: 3

Type: 16

Error Control: 1

 

Service (registry key): WMPNetworkSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101

Description: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-102

Object name: NT AUTHORITY\NetworkService

Image path: "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe"

Image size: 1121792

Image MD5: 3B40D3A61AA8C21B88AE57C58AB3122E

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: http

 

Service (registry key): WPCSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\wpcsvc.dll,-100

Description: @%SystemRoot%\system32\wpcsvc.dll,-101

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): WPDBusEnum

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\wpdbusenum.dll,-100

Description: @%SystemRoot%\system32\wpdbusenum.dll,-101

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: RpcSs

 

Service (registry key): ws2ifsl

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\System32\drivers\ws2ifsl.sys,-1000

Description: @%systemroot%\System32\drivers\ws2ifsl.sys,-1000

Image path: \SystemRoot\system32\drivers\ws2ifsl.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 4

Type: 1

Error Control: 1

 

Service (registry key): wscsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\wscsvc.dll,-200

Description: @%SystemRoot%\System32\wscsvc.dll,-201

Object name: NT AUTHORITY\LocalService

Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: RpcSs,WinMgmt

 

Service (registry key): WSearch

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\SearchIndexer.exe,-103

Description: @%systemroot%\system32\SearchIndexer.exe,-104

Object name: LocalSystem

Image path: %systemroot%\system32\SearchIndexer.exe /Embedding

Image size: 427520

Image MD5: 236F286E103FD44BD85FDD93097FD5DD

Control Set: CurrentControlSet

Start: 2

Type: 16

Error Control: 1

Depends On services: RPCSS

 

Service (registry key): WSearchIdxPi

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): wuauserv

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%systemroot%\system32\wuaueng.dll,-105

Description: @%systemroot%\system32\wuaueng.dll,-106

Object name: LocalSystem

Image path: %systemroot%\system32\svchost.exe -k netsvcs

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: rpcss

 

Service (registry key): WudfPf

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: User Mode Driver Frameworks Platform Driver

Image path: system32\drivers\WudfPf.sys

Image size: 92672

Image MD5: E714A1C0354636837E20CCBF00888EE7

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): WUDFRd

Registry path: \SYSTEM\CurrentControlSet\Services\

Image path: system32\DRIVERS\WUDFRd.sys

Image size: 132224

Image MD5: 1023EE888C9B47178C5293ED5336AB69

Control Set: CurrentControlSet

Start: 3

Type: 1

Error Control: 1

 

Service (registry key): wudfsvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\system32\wudfsvc.dll,-1000

Description: @%SystemRoot%\system32\wudfsvc.dll,-1001

Object name: LocalSystem

Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 2

Type: 32

Error Control: 1

Depends On services: PlugPlay,WudfPf

 

Service (registry key): WwanSvc

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: @%SystemRoot%\System32\wwansvc.dll,-257

Description: @%SystemRoot%\System32\wwansvc.dll,-258

Object name: NT Authority\LocalService

Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork

Image size: 20992

Image MD5: 54A47F6B5E09A77E61649109C6A08866

Control Set: CurrentControlSet

Start: 3

Type: 32

Error Control: 1

Depends On services: PlugPlay,RpcSs,NdisUio,NlaSvc

 

Service (registry key): xmlprov

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Service (registry key): zntport

Registry path: \SYSTEM\CurrentControlSet\Services\

Display name: ioctrl driver

Image path: \??\C:\Windows\system32\zntport.sys

Image size: 0

Image MD5: D41D8CD98F00B204E9800998ECF8427E

Control Set: CurrentControlSet

Start: 2

Type: 1

Error Control: 1

 

Service (registry key): {8CEC8AA9-29CB-4AF0-A57D-B4CA73B99C4D}

Registry path: \SYSTEM\CurrentControlSet\Services\

Control Set: CurrentControlSet

Start: 0

Type: 0

Error Control: 0

 

Какво да правя.Да дам ли "поправка на проблемите "или не?

Link to comment
Сподели другаде

П.П.Съжалявам,че целият лог файл го публикувах така,а не го прикрепих.Не знам дали има разлика,ми се е случвало да не мога да "дръпна " някой така прикрепен файл и затова действах по този начин
Link to comment
Сподели другаде

Здравейте!

 

Има някои неща, които е добре да премахнем от системата.

 

Изтеглете AdwCleaner

  • Запазете файла на Вашия десктоп.
  • Спрете работата на всички програми и браузъри.
  • Стартирайте инструмента.
  • Изберете бутон Delete.
  • Вашата система ще се рестартира автоматично.

Моля, прикачете log-файла, създаден от инструмента, в следващия Ви коментар.

 

Log-файлът е наименован AdwCleaner[s1].txt и се намира в следната директория:

C:\

Link to comment
Сподели другаде

Здравейте!

 

Изтеглете JRT

  • Запазете файла на Вашия десктоп.

Спрете временно работата на всички приложения, включително и на защитните програми, които са инсталирани на системата.

  • Стартирайте JRT.exe.
  • При новопоявилия се прозорец, натиснете който и да е клавиш от клавиатурата.
  • Инструментът ще сканира системата.
  • След края на процеса, ще се създаде log-файл с наименования JRT.txt

Моля, прикачете този файл към следващия Ви коментар.

Link to comment
Сподели другаде

Проблеми не съм изпитвал.Създадох темата,защото и друг път съм сканирал с SpyBot и не е изписвал нищо,а сега наизкачаха тези работи и не бях сигурен дали трябва да правя нещо или да не давам на програмата да ги трие.
Link to comment
Сподели другаде

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Гост
Отговори на тази тема

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   Не можете да качите директно снимка. Качете или добавете изображението от линк (URL)

Loading...
×
×
  • Създай ново...