1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Can My PC Be Recovered?

Discussion in 'Windows - Virus and spyware problems' started by victorywp, Mar 6, 2007.

  1. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    Hi,

    My PC running very slow, Excel & Outlook Express not working, MSN logs in itself upon start up, cannot download anything, & IE is not working properly. Is it time to format? Oh no..

    Logfile of HijackThis v1.99.1
    Scan saved at 5:14:34 PM, on 3/2/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\Program Files\Spyware Doctor\sdhelp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
    C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
    C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE
    C:\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll
    O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
    O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k
    O4 - HKLM\..\Run: [PrU Async Service] C:\WINDOWS\system32\pruas.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
    O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
    O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
    O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
    O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
    O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
    O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
    O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
    O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
    O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
    O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1
    O17 - HKLM\System\CCS\Services\Tcpip\..\{8141C4F5-9474-4946-B7DB-218FBCA21BFB}: NameServer = 202.188.0.133,202.188.1.5
    O17 - HKLM\System\CS1\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1
    O17 - HKLM\System\CS2\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
    O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
    O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
     
  2. cmdr

    cmdr Member

    Joined:
    Mar 5, 2007
    Messages:
    58
    Likes Received:
    0
    Trophy Points:
    16
    Well, whenever I have a buttload of errors like that, I just reinstall the whole OS. Back up what you need onto disks and format and reinstall. Its a bitch and a half but its well worth it.

    You just need to look for a recovery disk or some sort of OS disk, also dont forget about your drivers you can prolly find them on the manufactures website.
     
  3. Waymon3X6

    Waymon3X6 Regular member

    Joined:
    Mar 9, 2006
    Messages:
    2,193
    Likes Received:
    0
    Trophy Points:
    46
    Hello, I don't think you should reformat yet, however I looked at your log and found some things that werernt serious, but unecessary. Here they are:

    O4 - HKLM\..\Run: [KernelFaultCheck] C:\WINDOWS\system32\dumprep 0 -k

    O4 - HKLM\..\Run: [PrU Async Service] C:\WINDOWS\system32\pruas.exe

    O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

    O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

    O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm


    Do you have Ad-Aware SE Personel and Spybot Search&Destroy? If not, please download them both, and then run then individually in safe mode. Also, please download CCleaner from this site: www.majorgeeks.com

    Then, run that tool in safe mode too. Post your HJT log when you're done. Thanks
     
  4. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    Hi Waymon3x6,

    I have followed your steps accordingly. Here's the reports.


    Ad-Aware SE Build 1.06r1
    Logfile Created on:Wednesday, March 07, 2007 9:12:37 AM
    Created with Ad-Aware SE Personal, free for private use.
    Using definitions file:SE1R157 05.03.2007
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    References detected during the scan:
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    MRU List(TAC index:0):41 total references
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    Ad-Aware SE Settings
    ===========================
    Set : Search for negligible risk entries
    Set : Safe mode (always request confirmation)
    Set : Scan active processes
    Set : Scan registry
    Set : Deep-scan registry
    Set : Scan my IE Favorites for banned URLs
    Set : Scan my Hosts file

    Extended Ad-Aware SE Settings
    ===========================
    Set : Unload recognized processes & modules during scan
    Set : Scan registry for all users instead of current user only
    Set : Always try to unload modules before deletion
    Set : During removal, unload Explorer and IE if necessary
    Set : Let Windows remove files in use at next reboot
    Set : Delete quarantined objects after restoring
    Set : Include basic Ad-Aware settings in log file
    Set : Include additional Ad-Aware settings in log file
    Set : Include reference summary in log file
    Set : Include alternate data stream details in log file
    Set : Play sound at scan completion if scan locates critical objects


    3-7-2007 9:12:37 AM - Scan started. (Full System Scan)

    MRU List Object Recognized!
    Location: : C:\Documents and Settings\User\Application Data\microsoft\office\recent
    Description : list of recently opened documents using microsoft office


    MRU List Object Recognized!
    Location: : C:\Documents and Settings\User\recent
    Description : list of recently opened documents


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\direct3d\mostrecentapplication
    Description : most recent application to use microsoft direct3d


    MRU List Object Recognized!
    Location: : software\microsoft\direct3d\mostrecentapplication
    Description : most recent application to use microsoft direct3d


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\direct3d\mostrecentapplication
    Description : most recent application to use microsoft direct X


    MRU List Object Recognized!
    Location: : software\microsoft\direct3d\mostrecentapplication
    Description : most recent application to use microsoft direct X


    MRU List Object Recognized!
    Location: : software\microsoft\directdraw\mostrecentapplication
    Description : most recent application to use microsoft directdraw


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\directinput\mostrecentapplication
    Description : most recent application to use microsoft directinput


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\directinput\mostrecentapplication
    Description : most recent application to use microsoft directinput


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\internet explorer
    Description : last download directory used in microsoft internet explorer


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\internet explorer\main
    Description : last save directory used in microsoft internet explorer


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\internet explorer\typedurls
    Description : list of recently entered addresses in microsoft internet explorer


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\medialibraryui
    Description : last selected node in the microsoft windows media player media library


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\player\settings
    Description : last save as directory used in jasc paint shop pro


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\player\settings
    Description : last open directory used in jasc paint shop pro


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\preferences
    Description : last playlist index loaded in microsoft windows media player


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\mediaplayer\preferences
    Description : last playlist loaded in microsoft windows media player


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\microsoft management console\recent file list
    Description : list of recent snap-ins used in the microsoft management console


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\common\general
    Description : list of recently used symbols in microsoft office


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\common\open find\microsoft word\settings\open\file name mru
    Description : list of recent documents opened by microsoft word


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\common\open find\microsoft word\settings\save as\file name mru
    Description : list of recent documents saved by microsoft word


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\excel\recent files
    Description : list of recent files used by microsoft excel


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\excel\recent templates
    Description : list of recent templates used by microsoft excel


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\10.0\word\recent templates
    Description : list of recent templates used by microsoft word


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\office\11.0\powerpoint\recent file list
    Description : list of recent files used by microsoft powerpoint


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\search assistant\acmru
    Description : list of recent search terms used with the search assistant


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\applets\paint\recent file list
    Description : list of files recently opened using microsoft paint


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\applets\regedit
    Description : last key accessed using the microsoft registry editor


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\applets\wordpad\recent file list
    Description : list of recent files opened using wordpad


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru
    Description : list of recent programs opened


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru
    Description : list of recently saved files, stored according to file extension


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\recentdocs
    Description : list of recent documents opened


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows\currentversion\explorer\runmru
    Description : mru list for items opened in start | run


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\nico mak computing\winzip\filemenu
    Description : winzip recently used archives


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\realnetworks\realplayer\6.0\preferences
    Description : list of recent skins in realplayer


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\realnetworks\realplayer\6.0\preferences
    Description : list of recent clips in realplayer


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\realnetworks\realplayer\6.0\preferences
    Description : last login time in realplayer


    MRU List Object Recognized!
    Location: : .DEFAULT\software\microsoft\windows media\wmsdk\general
    Description : windows media sdk


    MRU List Object Recognized!
    Location: : S-1-5-18\software\microsoft\windows media\wmsdk\general
    Description : windows media sdk


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\microsoft\windows media\wmsdk\general
    Description : windows media sdk


    MRU List Object Recognized!
    Location: : S-1-5-21-1292428093-1957994488-1343024091-1003\software\winrar\dialogedithistory\extrpath
    Description : winrar "extract-to" history


    Listing running processes
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    #:1 [smss.exe]
    FilePath : \SystemRoot\System32\
    ProcessID : 136
    ThreadCreationTime : 3-7-2007 1:11:08 AM
    BasePriority : Normal


    #:2 [winlogon.exe]
    FilePath : \??\C:\WINDOWS\system32\
    ProcessID : 212
    ThreadCreationTime : 3-7-2007 1:11:19 AM
    BasePriority : High


    #:3 [services.exe]
    FilePath : C:\WINDOWS\system32\
    ProcessID : 256
    ThreadCreationTime : 3-7-2007 1:11:22 AM
    BasePriority : Normal
    FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    ProductVersion : 5.1.2600.2180
    ProductName : Microsoft® Windows® Operating System
    CompanyName : Microsoft Corporation
    FileDescription : Services and Controller app
    InternalName : services.exe
    LegalCopyright : © Microsoft Corporation. All rights reserved.
    OriginalFilename : services.exe

    #:4 [lsass.exe]
    FilePath : C:\WINDOWS\system32\
    ProcessID : 268
    ThreadCreationTime : 3-7-2007 1:11:22 AM
    BasePriority : Normal
    FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    ProductVersion : 5.1.2600.2180
    ProductName : Microsoft® Windows® Operating System
    CompanyName : Microsoft Corporation
    FileDescription : LSA Shell (Export Version)
    InternalName : lsass.exe
    LegalCopyright : © Microsoft Corporation. All rights reserved.
    OriginalFilename : lsass.exe

    #:5 [svchost.exe]
    FilePath : C:\WINDOWS\system32\
    ProcessID : 416
    ThreadCreationTime : 3-7-2007 1:11:25 AM
    BasePriority : Normal
    FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    ProductVersion : 5.1.2600.2180
    ProductName : Microsoft® Windows® Operating System
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    LegalCopyright : © Microsoft Corporation. All rights reserved.
    OriginalFilename : svchost.exe

    #:6 [svchost.exe]
    FilePath : C:\WINDOWS\system32\
    ProcessID : 524
    ThreadCreationTime : 3-7-2007 1:11:27 AM
    BasePriority : Normal
    FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    ProductVersion : 5.1.2600.2180
    ProductName : Microsoft® Windows® Operating System
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    LegalCopyright : © Microsoft Corporation. All rights reserved.
    OriginalFilename : svchost.exe

    #:7 [explorer.exe]
    FilePath : C:\WINDOWS\
    ProcessID : 744
    ThreadCreationTime : 3-7-2007 1:11:45 AM
    BasePriority : Normal
    FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
    ProductVersion : 6.00.2900.2180
    ProductName : Microsoft® Windows® Operating System
    CompanyName : Microsoft Corporation
    FileDescription : Windows Explorer
    InternalName : explorer
    LegalCopyright : © Microsoft Corporation. All rights reserved.
    OriginalFilename : EXPLORER.EXE

    #:8 [ad-aware.exe]
    FilePath : C:\Program Files\Lavasoft\Ad-Aware SE Personal\
    ProcessID : 844
    ThreadCreationTime : 3-7-2007 1:12:03 AM
    BasePriority : Normal
    FileVersion : 6.2.0.236
    ProductVersion : SE 106
    ProductName : Lavasoft Ad-Aware SE
    CompanyName : Lavasoft Sweden
    FileDescription : Ad-Aware SE Core application
    InternalName : Ad-Aware.exe
    LegalCopyright : Copyright © Lavasoft AB Sweden
    OriginalFilename : Ad-Aware.exe
    Comments : All Rights Reserved

    Memory scan result:
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    New critical objects: 0
    Objects found so far: 41


    Started registry scan
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    Registry Scan result:
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    New critical objects: 0
    Objects found so far: 41


    Started deep registry scan
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    Deep registry scan result:
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    New critical objects: 0
    Objects found so far: 41


    Started Tracking Cookie scan
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»


    Tracking cookie scan result:
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    New critical objects: 0
    Objects found so far: 41



    Deep scanning and examining files (C:)
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    Disk Scan Result for C:\
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    New critical objects: 0
    Objects found so far: 41


    Deep scanning and examining files (D:)
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    Disk Scan Result for D:\
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    New critical objects: 0
    Objects found so far: 41


    Performing conditional scans...
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

    Conditional scan result:
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    New critical objects: 0
    Objects found so far: 41

    9:19:27 AM Scan Complete

    Summary Of This Scan
    »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
    Total scanning time:00:06:49.669
    Objects scanned:105517
    Objects identified:0
    Objects ignored:0
    New critical objects:0

     
  5. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    Spybot - Search & Destroy

    --- Search result list ---
    Nat: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Desktop\host

    WinClean: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\Temp\installer.exe

    Smitfraud-C.: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\WindowsSubVersion

    BraveSentry: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program Files\BraveSentry\BraveSentry.exe

    Win32.Small.dp: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Security\host

    Nurech: User settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\upnp.exe


    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

    2007-03-07 unins000.exe (51.41.0.0)
    2005-05-31 blindman.exe (1.0.0.1)
    2005-05-31 SpybotSD.exe (1.4.0.3)
    2005-05-31 TeaTimer.exe (1.4.0.2)
    2005-05-31 Update.exe (1.4.0.0)
    2005-05-31 aports.dll (2.1.0.0)
    2005-05-31 borlndmm.dll (7.0.4.453)
    2005-05-31 delphimm.dll (7.0.4.453)
    2005-05-31 SDHelper.dll (1.4.0.0)
    2005-05-31 UnzDll.dll (1.73.1.1)
    2005-05-31 ZipDll.dll (1.73.2.0)
    2007-01-15 advcheck.dll (1.2.1.0)
    2007-01-02 Tools.dll (2.0.1.0)
    2006-12-08 Includes\Dialer.sbi (*)
    2007-02-07 Includes\Hijackers.sbi (*)
    2006-10-27 Includes\Keyloggers.sbi (*)
    2007-02-14 Includes\Malware.sbi (*)
    2007-01-19 Includes\PUPS.sbi (*)
    2006-12-08 Includes\Security.sbi (*)
    2007-02-02 Includes\Spybots.sbi (*)
    2007-02-14 Includes\Trojans.sbi (*)
    2007-02-28 Includes\Cookies.sbi (*)
    2007-02-28 Includes\Revision.sbi (*)
    2005-02-17 Includes\Tracks.uti
    2007-02-28 Includes\TrojansC.sbi (*)
    2007-02-28 Includes\SpybotsC.sbi (*)
    2007-02-28 Includes\SecurityC.sbi (*)
    2007-02-28 Includes\PUPSC.sbi (*)
    2007-02-28 Includes\MalwareC.sbi (*)
    2007-02-28 Includes\KeyloggersC.sbi (*)
    2007-02-28 Includes\HijackersC.sbi (*)
    2007-02-28 Includes\DialerC.sbi (*)



    --- System information ---
    Windows XP (Build: 2600) Service Pack 2
    / Windows Media Player 9: Security Update for Windows Media Player 9 (KB917734)


    --- Startup entries list ---
    Located: HK_LM:Run, AVP
    command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
    file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
    size: 155751
    MD5: 250f20c64fd9eaa0f2d7844bca92e741

    Located: HK_LM:Run, RemoteControl
    command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    size: 32768
    MD5: 915a106a2fb87292cef0ad4f36adf313

    Located: HK_CU:Run, ctfmon.exe
    command: C:\WINDOWS\system32\ctfmon.exe
    file: C:\WINDOWS\system32\ctfmon.exe
    size: 15360
    MD5: 24232996a38c0b0cf151c2140ae29fc8

    Located: HK_CU:Run, Spyware Doctor
    command: "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
    file: C:\Program Files\Spyware Doctor\swdoctor.exe
    size: 3375104
    MD5: 53d577860f1b4b0fbb8b8770bad60628

    Located: System.ini, crypt32chain
    command: crypt32.dll
    file: crypt32.dll

    Located: System.ini, cryptnet
    command: cryptnet.dll
    file: cryptnet.dll

    Located: System.ini, cscdll
    command: cscdll.dll
    file: cscdll.dll

    Located: System.ini, klogon
    command: C:\WINDOWS\system32\klogon.dll
    file: C:\WINDOWS\system32\klogon.dll
    size: 94314
    MD5: 3f97f0f4a9a6d21a1a496c1d8fe84e4e

    Located: System.ini, ScCertProp
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, Schedule
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, sclgntfy
    command: sclgntfy.dll
    file: sclgntfy.dll

    Located: System.ini, SensLogn
    command: WlNotify.dll
    file: WlNotify.dll

    Located: System.ini, termsrv
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, WgaLogon
    command:
    file:

    Located: System.ini, wlballoon
    command: wlnotify.dll
    file: wlnotify.dll



    --- Browser helper object list ---
    {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} (BitComet ClickCapture)
    BHO name: BitComet ClickCapture
    CLSID name: BitComet Helper
    Path: C:\Program Files\BitComet\tools\
    Long name: BitCometBHO.dll
    Short name: BITCOM~2.DLL
    Date (created): 1/11/2007 11:05:28 PM
    Date (last access): 3/7/2007
    Date (last write): 1/11/2007 11:05:28 PM
    Filesize: 386624
    Attributes: archive
    MD5: 8B148EFE8B203108FB3064AF38EF8C13
    CRC32: DF87F475

    {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} (Yahoo! IE Services Button)
    BHO name:
    CLSID name: Yahoo! IE Services Button
    Path: C:\Program Files\Yahoo!\Common\
    Long name: yiesrvc.dll
    Short name:
    Date (created): 1/12/2007 9:39:38 AM
    Date (last access): 3/6/2007
    Date (last write): 10/31/2006 3:29:16 PM
    Filesize: 198136
    Attributes: archive
    MD5: F8981F09E8DA4FDB7F6B6E2B5361AEAE
    CRC32: 2CDBBB6C
    Version: 2006.10.31.3



    --- ActiveX list ---


    --- Process list ---
    PID: 0 ( 0) [System]
    PID: 136 ( 4) \SystemRoot\System32\smss.exe
    PID: 212 ( 136) \??\C:\WINDOWS\system32\winlogon.exe
    PID: 256 ( 212) C:\WINDOWS\system32\services.exe
    size: 108032
    MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    PID: 268 ( 212) C:\WINDOWS\system32\lsass.exe
    size: 13312
    MD5: 84885F9B82F4D55C6146EBF6065D75D2
    PID: 416 ( 256) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 524 ( 256) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 744 ( 728) C:\WINDOWS\Explorer.EXE
    size: 1032192
    MD5: A0732187050030AE399B241436565E64
    PID: 1056 ( 744) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
    size: 4393096
    MD5: 09CA174A605B480318731E691DC98539
    PID: 4 ( 0) System
    PID: 188 ( 136) csrss.exe
    PID: 464 ( 256) svchost.exe


    --- Browser start & search pages list ---
    Spybot - Search & Destroy browser pages report, 3/7/2007 9:37:54 AM

    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
    C:\WINDOWS\system32\blank.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
    http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
    http://www.yahoo.com/
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
    http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
    %SystemRoot%\system32\blank.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
    http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
    http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
    about:blank
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
    http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
    http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


    --- Winsock Layered Service Provider list ---


    --- Uninstall list ---
    Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal)
    uninstall cmd: C:\PROGRA~1\LAVASOFT\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\LAVASOFT\AD-AWA~1\INSTALL.LOG
    publisher: Lavasoft
    help link: http://www.lavasoft.com

    (AddressBook)

    BitComet 0.82 0.82 (BitComet)
    uninstall cmd: C:\Program Files\BitComet\uninst.exe
    publisher: ~RnySmile~

    (Branding)

    CCleaner (remove only) (CCleaner)
    uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

    Cdex version 1.30 (CDex_is1)
    uninstall cmd: "C:\Program Files\CDex130\unins000.exe"

    (Connection Manager)

    (DirectAnimation)

    (DirectDrawEx)

    Download Accelerator Plus (DAP) 8000 (Build 135) (Download Accelerator Plus (DAP))
    uninstall cmd: C:\PROGRA~1\DAP\DAPREMOVE.EXE
    publisher: Speedbit Ltd.
    contact: support@downloadaccelerator.com
    help link: http://redir.speedbit.com/redir.asp?ID=7066

    (DXM_Runtime)

    (Fontcore)

    FreeRIP v2.951 2.951 (FreeRIP_is1)
    install location: C:\Program Files\FreeRIP\
    uninstall cmd: "C:\Program Files\FreeRIP\unins000.exe"
    publisher: MGShareware

    HijackThis 1.99.1 1.99.1 (HijackThis)
    uninstall cmd: \\DSP1\My Completed Downloads\HijackThis.exe /uninstall
    publisher: Soeperman Enterprises Ltd.

    (ICW)

    (IE40)

    (IE4Data)

    (IE5BAKEX)

    (IEData)

    5.2.4.2528 (IncrediMail)
    publisher: IncrediMail Ltd.
    help link: http://www.incredimail.com/english/help/index.html

    (InstallShield Uninstall Information)

    iTunes 4.7.1.30 (InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6})
    version: 67567617
    version (major): 4
    version (minor): 7
    estimated size: 13607
    install date: 20051207
    install location: C:\Program Files\iTunes\
    install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\
    uninstall cmd: C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3CB41017-F5CA-4C56-934C-ED02156251E6}
    publisher: Apple Computer, Inc.
    contact: AppleCare Support
    help link: http://www.info.apple.com/
    help telephone: 1-800-275-2273

    Kaspersky Anti-Virus 6.0 6.0.1.411 (InstallWIX_{75193929-9A52-4CA4-98DE-8C7296940920})
    uninstall cmd: MsiExec.exe /I{75193929-9A52-4CA4-98DE-8C7296940920}
    publisher: Kaspersky Lab
    help link: http://www.kaspersky.com/support.asp

    (KB884016)

    (KB893803)

    Macromedia Shockwave Player 10.1.0.11 (Macromedia Shockwave Player)
    uninstall cmd: C:\WINDOWS\system32\MACROMED\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\MACROMED\SHOCKW~1\Install.log
    publisher: Macromedia, Inc.
    help link: http://www.macromedia.com/support/shockwave

    (MobileOptionPack)

    (MPlayer2)

    (MSI30-Beta1)

    (MSI30-Beta2)

    (MSI30-KB884016)

    (MSI30-RC1)

    (MSI30-RC2)

    (MSI30a-KB884016)

    (MSI31-Beta)

    (MSI31-RC1)

    (NetMeeting)

    (OutlookExpress)

    (PCHealth)
    uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

    QuickTime (QuickTime)
    uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log

    (RealJukebox 1.0)
    uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    RealPlayer (RealPlayer 6.0)
    uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    (SchedulingAgent)

    (Shockwave)

    Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
    uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q
    publisher: Adobe Systems
    help link: http://www.adobe.com/go/flashplayer_support/

    NetoDragon 56K Voice Modem (SLAMRNTV)
    uninstall cmd: C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove

    Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
    install location: C:\Program Files\Spybot - Search & Destroy\
    uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
    publisher: Safer Networking Limited

    Spyware Doctor 4.0 4.0 (Spyware Doctor_is1)
    install date: 20070201
    install location: C:\Program Files\Spyware Doctor\
    uninstall cmd: "C:\Program Files\Spyware Doctor\unins000.exe"
    publisher: PC Tools
    help link: http://www.pctools.com/spyware-doctor/support/

    StartUp Manager (StartUp Manager)
    uninstall cmd: C:\Program Files\INAC\StartUp Manager\uninstall.exe

    Windows Genuine Advantage Notifications (KB905474) 1.5.0532.0 (WgaNotify)
    install date: 20060503
    publisher: Microsoft Corporation
    help link: http://support.microsoft.com?kbid=905474

    Winamp (remove only) (Winamp)
    uninstall cmd: "C:\Program Files\Winamp\UninstWA.exe"

    WinRAR archiver (WinRAR archiver)
    uninstall cmd: C:\Program Files\WinRAR\uninstall.exe

    WinZip 8.1 (4331) (WinZip)
    version (major): 8
    version (minor): 1
    install location: C:\PROGRA~1\WINZIP\
    uninstall cmd: "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
    publisher: WinZip Computing, Inc.
    help link: http://www.winzip.com/xsupport.htm

    Yahoo! Browser Services (Yahoo! Customizations)
    uninstall cmd: C:\PROGRA~1\YAHOO!\COMMON\unyext.exe

    Yahoo! Messenger (Yahoo! Messenger)
    uninstall cmd: C:\PROGRA~1\YAHOO!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\YAHOO!\MESSEN~1\INSTALL.LOG

    ZTE ADSL Dialer 1.0j_MY (ZTE ADSL Dialer_is1)
    uninstall cmd: "C:\Program Files\ZTE\ADSLDIAL\unins000.exe"
    publisher: ZTE Inc.
    help link: http://www.ZTE.com.cn

    AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC})
    install location: C:\Program Files\DivX

    AstraPix 450/460 ({26BE3FED-5DEF-40E3-96E5-67A9AC831B7B})
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}\Setup.exe"

    Java(TM) SE Runtime Environment 6 1.6.0.0 ({3248F0A8-6813-11D6-A77B-00B0D0160000})
    version: 17170432
    version (major): 1
    version (minor): 6
    estimated size: 111474
    install date: 20070228
    install source: C:\Documents and Settings\User\Application Data\Sun\Java\jre1.6.0\
    uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
    publisher: Sun Microsystems, Inc.
    contact: http://java.com
    help link: http://java.com
    readme: C:\Program Files\Java\jre1.6.0\README.txt

    WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227})
    version: 154279267
    version (major): 9
    version (minor): 50
    estimated size: 2500
    install date: 20051207
    install source: C:\WINDOWS\system32\
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/windows

    iTunes 4.7.1.30 ({3CB41017-F5CA-4C56-934C-ED02156251E6})
    version: 67567617
    version (major): 4
    version (minor): 7
    estimated size: 13607
    install date: 20051207
    install location: C:\Program Files\iTunes\
    install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\
    publisher: Apple Computer, Inc.
    contact: AppleCare Support
    help link: http://www.info.apple.com/
    help telephone: 1-800-275-2273

    ({62369F2F77534556AEF4C58152E3BDE5})

    PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall

    Kaspersky Anti-Virus 6.0 6.0.1.411 ({75193929-9A52-4CA4-98DE-8C7296940920})
    version: 100663297
    version (major): 6
    estimated size: 27246
    install date: 20070124
    install source: C:\kav\kav6.0\english\
    publisher: Kaspersky Lab
    help link: http://www.kaspersky.com/support.asp

    DivX 6.1.1 ({7B63B2922B174135AFC0E1377DD81EC2})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
    publisher: DivX, Inc.

    DivX Player 6.1.1 ({8ADFC4160D694100B5B8A22DE9DCABD9})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
    publisher: DivXNetworks, Inc.

    Microsoft Office Professional Edition 2003 11.0.5614.0 ({90110409-6000-11D3-8CFE-0150048383C9})
    version: 184554990
    version (major): 11
    estimated size: 379454
    install date: 20051219
    install location: C:\Program Files\Microsoft Office\
    install source: D:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\
    uninstall cmd: MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/support
    readme: C:\Program Files\Microsoft Office\OFFICE11\1033\OFREADME.HTM

    Microsoft Office XP Small Business 10.0.2627.01 ({91130409-6000-11D3-8CFE-0050048383C9})
    version: 167774787
    version (major): 10
    estimated size: 474490
    install date: 20051207
    install location: INSTALLLOCATION
    install source: E:\
    uninstall cmd: MsiExec.exe /I{91130409-6000-11D3-8CFE-0050048383C9}
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/support
    readme: C:\Program Files\Microsoft Office\Office10\1033\OFREAD10.HTM

    Adobe Reader 7.0 7.0.0 ({AC76BA86-7AD7-1033-7B44-A70000000000})
    version: 117440512
    version (major): 7
    estimated size: 65659
    install date: 20051207
    install location: C:\Program Files\Adobe\Acrobat 7.0\Reader\
    install source: C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\ENU\
    uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
    publisher: Adobe Systems Incorporated
    comments:
    contact:
    help link: http://www.adobe.com/support/main.html
    help telephone:
    readme: C:\Program Files\Adobe\Acrobat 7.0\Reader\Readme.htm

    ACDSee 8 8.0.39 ({AE80641A-0C8D-4670-A518-B4EC154B1027})
    version: 134217767
    version (major): 8
    estimated size: 34108
    install date: 20061213
    install location: C:\Program Files\ACD Systems\
    install source: C:\WINDOWS\Downloaded Installations\{015363C3-0256-4F1B-95E5-304040BF9C4D}\
    uninstall cmd: MsiExec.exe /I{AE80641A-0C8D-4670-A518-B4EC154B1027}
    publisher: ACD Systems Ltd.
    comments: This database contains the necessary files and logic to install ACDSee and additional support programs and plug-ins where appropriate
    contact: Technical Support
    help link: http://go.acdsystems.com/client/en/534017
    help telephone: 250-544-6701

    ({B13A7C41581B411290FBC0395694E2A9})

    DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    publisher: DivX,Inc.

    Nokia Connectivity Cable Driver 1.00.159 ({B7757137-0A71-4A9F-8A82-1AE4A1B73420})
    version: 16777375
    version (major): 1
    estimated size: 400
    install date: 20061215
    install location: C:\Program Files\Nokia\Connectivity Cable Driver\
    install source: C:\Program Files\Nokia\Nokia PC Suite 6\
    uninstall cmd: MsiExec.exe /X{B7757137-0A71-4A9F-8A82-1AE4A1B73420}
    publisher: Nokia
    help link: http://www.nokia.com/nokia/0,8764,75877,00.html

    jetAudio 6.1 ({DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A})
    version: 100728832
    install date: 20060401
    install location: C:\Program Files\JetAudio
    install source: C:\DOCUME~1\User\LOCALS~1\Temp\bye9B.tmp\Disk1\
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -l0x9 -removeonly
    publisher: JetAudio, Inc.

    Windows Live Messenger 8.0.0812.00 ({FCE50DB8-C610-4C42-BE5C-193F46C6F812})
    version: 134218540
    version (major): 8
    estimated size: 33821
    install date: 20070110
    install source: C:\DOCUME~1\User\LOCALS~1\Temp\IXP000.TMP\
    uninstall cmd: MsiExec.exe /I{FCE50DB8-C610-4C42-BE5C-193F46C6F812}
    publisher: Microsoft Corporation

    Nokia PC Suite 6.70.22 ({FF059F2A-62A7-4E6A-B305-559591D2769E})
    version: 105250838
    version (major): 6
    version (minor): 70
    estimated size: 36140
    install date: 20061215
    install location: C:\Program Files\Nokia\
    install source: E:\software\PCSuite\
    uninstall cmd: MsiExec.exe /I{FF059F2A-62A7-4E6A-B305-559591D2769E}
    publisher: Nokia
    help link: http://www.nokia.com/nokia/0,8764,75877,00.html



    --- System Services ---
    Service (registry key): Abiosdsk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): abp480n5
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ac97intc
    Display name: Intel(r) 82801 Audio Driver Install Service (WDM)
    Image path: system32\drivers\ac97intc.sys
    Image size: 96256
    Image MD5: 0F2D66D5F08EBE2F77BB904288DCF6F0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ACPI
    Display name: Microsoft ACPI Driver
    Image path: system32\DRIVERS\ACPI.sys
    Image size: 187776
    Image MD5: A10C7534F7223F4A73A948967D00E69B
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ACPIEC
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): adpu160m
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aec
    Display name: Microsoft Kernel Acoustic Echo Canceller
    Image path: system32\drivers\aec.sys
    Image size: 142464
    Image MD5: 841F385C6CFAF66B58FBD898722BB4F0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): AFD
    Display name: AFD
    Description: AFD Networking Support Environment
    Image path: \SystemRoot\System32\drivers\afd.sys
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Aha154x
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78u2
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Alerter
    Display name: Alerter
    Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): ALG
    Display name: Application Layer Gateway Service
    Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\alg.exe
    Image size: 44544
    Image MD5: F1958FBF86D5C004CF19A5951A9514B7
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): AliIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): amsint
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): AppMgmt
    Display name: Application Management
    Description: Provides software installation services such as Assign, Publish, and Remove.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): asc
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3350p
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3550
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): AsyncMac
    Display name: RAS Asynchronous Media Driver
    Description: RAS Asynchronous Media Driver
    Image path: system32\DRIVERS\asyncmac.sys
    Image size: 14336
    Image MD5: 02000ABF34AF4C218C35D257024807D6
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): atapi
    Display name: Standard IDE/ESDI Hard Disk Controller
    Image path: system32\DRIVERS\atapi.sys
    Image size: 95360
    Image MD5: CDFE4411A69C224BD1D11B2DA92DAC51
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): Atdisk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): Atmarpc
    Display name: ATM ARP Client Protocol
    Description: ATM ARP Client Protocol
    Image path: system32\DRIVERS\atmarpc.sys
    Image size: 59904
    Image MD5: EC88DA854AB7D7752EC8BE11A741BB7F
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): AudioSrv
    Display name: Windows Audio
    Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: PlugPlay,RpcSs

    Service (registry key): audstub
    Display name: Audio Stub Driver
    Image path: system32\DRIVERS\audstub.sys
    Image size: 3072
    Image MD5: D9F724AA26C010A217C97606B160ED68
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): AVP
    Start: 2
    Type: 0
    Error Control: 0

    Service (registry key): AxPsHook11
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): BattC
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Beep
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): BITS
    Display name: Background Intelligent Transfer Service
    Description: Transfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Browser
    Display name: Computer Browser
    Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,LanmanServer

    Service (registry key): cbidf2k
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): cd20xrnt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Cdaudio
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): Cdfs
    Start: 4
    Type: 2
    Error Control: 1
    Depends On group: "SCSI CDROM Class"

    Service (registry key): Cdrom
    Display name: CD-ROM Driver
    Image path: system32\DRIVERS\cdrom.sys
    Image size: 49536
    Image MD5: AF9C19B3100FE010496B1A27181FBF72
    Start: 1
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): Changer
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): CiSvc
    Display name: Indexing Service
    Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\cisvc.exe
    Image size: 5632
    Image MD5: 3192BD04D032A9C4A85A3278C268A13A
    Start: 3
    Type: 288
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): ClipSrv
    Display name: ClipBook
    Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\clipsrv.exe
    Image size: 33280
    Image MD5: C8DEC22C4137D7A90F8BDF41CA4B82AE
    Start: 4
    Type: 16
    Error Control: 1
    Depends On services: NetDDE

    Service (registry key): CmdIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): COMSysApp
    Display name: COM+ System Application
    Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
    Image size: 5120
    Image MD5: DD87DB7387B9EB441C5674888A0D840C
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: rpcss

    Service (registry key): ContentFilter
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): ContentIndex
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Cpqarray
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): CryptSvc
    Display name: Cryptographic Services
    Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): dac2w2k
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): dac960nt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): DcomLaunch
    Display name: DCOM Server Process Launcher
    Description: Provides launch functionality for DCOM services.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost -k DcomLaunch
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): Dhcp
    Display name: DHCP Client
    Description: Manages network configuration by registering and updating IP addresses and DNS names.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip,Afd,NetBT

    Service (registry key): Disk
    Display name: Disk Driver
    Image path: system32\DRIVERS\disk.sys
    Image size: 36352
    Image MD5: 00CA44E4534865F8A3B64F7C0984BFF0
    Start: 0
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): dmadmin
    Display name: Logical Disk Manager Administrative Service
    Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\dmadmin.exe /com
    Image size: 224768
    Image MD5: 554C7CB178FE3BD12450B81AD63ADBC3
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay,DmServer

    Service (registry key): dmboot
    Image path: System32\drivers\dmboot.sys
    Image size: 799744
    Image MD5: C0FBB516E06E243F0CF31F597E7EBF7D
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): dmio
    Display name: Logical Disk Manager Driver
    Image path: system32\DRIVERS\dmio.sys
    Image size: 153344
    Image MD5: F5E7B358A732D09F4BCF2824B88B9E28
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmload
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmserver
    Display name: Logical Disk Manager
    Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay

    Service (registry key): DMusic
    Display name: Microsoft Kernel DLS Syntheiszer
    Image path: system32\drivers\DMusic.sys
    Image size: 52864
    Image MD5: A6F881284AC1150E37D9AE47FF601267
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Dnscache
    Display name: DNS Client
    Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): dpti2o
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): drmkaud
    Display name: Microsoft Kernel DRM Audio Descrambler
    Image path: system32\drivers\drmkaud.sys
    Image size: 2944
    Image MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ERSvc
    Display name: Error Reporting Service
    Description: Allows error reporting for services and applictions running in non-standard environments.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RpcSs

    Service (registry key): Eventlog
    Display name: Event Log
    Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 108032
    Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): EventSystem
    Display name: COM+ Event System
    Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): Fastfat
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): FastUserSwitchingCompatibility
    Display name: Fast User Switching Compatibility
    Description: Provides management for applications that require assistance in a multiple user environment.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: TermService

    Service (registry key): Fdc
    Display name: Floppy Disk Controller Driver
    Image path: system32\DRIVERS\fdc.sys
    Image size: 27392
    Image MD5: CED2E8396A8838E59D8FD529C680E02C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Fips
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Flpydisk
    Display name: Floppy Disk Driver
    Image path: system32\DRIVERS\flpydisk.sys
    Image size: 20480
    Image MD5: 0DD1DE43115B93F4D85E889D7A86F548
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): FltMgr
    Display name: FltMgr
    Description: File System Filter Manager Driver
    Image path: system32\DRIVERS\fltMgr.sys
    Image size: 124800
    Image MD5: 157754F0DF355A9E0A6F54721914F9C6
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): Fs_Rec
    Start: 1
    Type: 8
    Error Control: 0

    Service (registry key): Ftdisk
    Display name: Volume Manager Driver
    Image path: system32\DRIVERS\ftdisk.sys
    Image size: 125056
    Image MD5: 6AC26732762483366C3969C9E4D2259D
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): gameenum
    Display name: Game Port Enumerator
    Image path: system32\DRIVERS\gameenum.sys
    Image size: 10624
    Image MD5: 5F92FD09E5610A5995DA7D775EADCD12
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): GEARAspiWDM
    Display name: GEAR CDRom Filter
    Image path: SYSTEM32\DRIVERS\GEARAspiWDM.sys
    Image size: 13872
    Image MD5: 2FB04DB459C71F416EE8B05448CA4AC3
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Gpc
    Display name: Generic Packet Classifier
    Description: Generic Packet Classifier
    Image path: system32\DRIVERS\msgpc.sys
    Image size: 35072
    Image MD5: C0F1D4A21DE5A415DF8170616703DEBF
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): helpsvc
    Display name: Help and Support
    Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): HidServ
    Display name: Human Interface Device Access
    Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): hpn
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): HSFHWBS2
    Image path: system32\DRIVERS\HSFBS2S2.sys
    Image size: 220032
    Image MD5: 970178E8E003EB1481293830069624B9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): HSF_DP
    Image path: system32\DRIVERS\HSFDPSP2.sys
    Image size: 1041536
    Image MD5: EBB354438A4C5A3327FB97306260714A
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): HTTP
    Display name: HTTP
    Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
    Image path: System32\Drivers\HTTP.sys
    Image size: 263040
    Image MD5: C19B522A9AE0BBC3293397F3055E80A1
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): HTTPFilter
    Display name: HTTP SSL
    Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: HTTP

    Service (registry key): i2omgmt
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): i2omp
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): i8042prt
    Display name: i8042 Keyboard and PS/2 Mouse Port Driver
    Image path: system32\DRIVERS\i8042prt.sys
    Image size: 52736
    Image MD5: 5502B58EEF7486EE6F93F3F164DCB808
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): i81x
    Image path: system32\DRIVERS\i81xnt5.sys
    Image size: 161020
    Image MD5: 06B7EF73BA5F302EECC294CDF7E19702
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP0
    Image path: system32\DRIVERS\wADV01nt.sys
    Image size: 12415
    Image MD5: 7B5B44EFE5EB9DADFB8EE29700885D23
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP1
    Image path: system32\DRIVERS\wADV02NT.sys
    Image size: 12127
    Image MD5: EB1F6BAB6C22EDE0BA551B527475F7E9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP2
    Image path: system32\DRIVERS\wADV05NT.sys
    Image size: 11775
    Image MD5: 03CE989D846C1AA81145CB22FCB86D06
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP3
    Image path: system32\DRIVERS\wSiINTxx.sys
    Image size: 12063
    Image MD5: 525849B4469DE021D5D61B4DB9BE3A9D
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP4
    Image path: system32\DRIVERS\wVchNTxx.sys
    Image size: 19455
    Image MD5: 589C2BCDB5BD602BF7B63D210407EF8C
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP5
    Image path: system32\DRIVERS\wADV07nt.sys
    Image size: 11807
    Image MD5: 0308AEF61941E4AF478FA1A0F83812F5
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP6
    Image path: system32\DRIVERS\wADV08nt.sys
    Image size: 11295
    Image MD5: 714038A8AA5DE08E12062202CD7EAEB5
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP7
    Image path: system32\DRIVERS\wADV09nt.sys
    Image size: 11871
    Image MD5: 7BB3AA595E4507A788DE1CDC63F4C8C4
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV0
    Image path: system32\DRIVERS\wATV01nt.sys
    Image size: 29311
    Image MD5: D83BDD5C059667A2F647A6BE5703A4D2
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV1
    Image path: system32\DRIVERS\wATV02NT.sys
    Image size: 19551
    Image MD5: ED968D23354DAA0D7C621580C012A1F6
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV3
    Image path: system32\DRIVERS\wATV04nt.sys
    Image size: 33599
    Image MD5: D738273F218A224C1DDAC04203F27A84
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV4
    Image path: system32\DRIVERS\wCh7xxNT.sys
    Image size: 23615
    Image MD5: 0052D118995CBAB152DAABE6106D1442
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV5
    Image path: system32\DRIVERS\wATV10nt.sys
    Image size: 25471
    Image MD5: 791CC45DE6E50445BE72E8AD6401FF45
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV6
    Image path: system32\DRIVERS\wATV06nt.sys
    Image size: 22271
    Image MD5: 352FA0E98BC461CE1CE5D41F64DB558D
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): ikhfile
    Display name: File Security Kernel Anti-Spyware Driver
    Description: File Security Kernel Anti-Spyware
    Image path: system32\drivers\ikhfile.sys
    Image size: 30592
    Image MD5: F24866EE5C0819E9B1B58F2C00AF078E
    Start: 1
    Type: 2
    Error Control: 0

    Service (registry key): ikhlayer
    Display name: Kernel Anti-Spyware Driver
    Description: Kernel Anti-Spyware
    Image path: system32\drivers\ikhlayer.sys
    Image size: 51072
    Image MD5: 9A2CFF8E3EF0A35F23F544FAB915C060
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): Imapi
    Display name: CD-Burning Filter Driver
    Image path: system32\DRIVERS\imapi.sys
    Image size: 41856
    Image MD5: F8AA320C6A0409C0380E5D8A99D76EC6
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): ImapiService
    Display name: IMAPI CD-Burning COM Service
    Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\imapi.exe
    Image size: 150016
    Image MD5: FA788520BCAC0F5D9D5CDE5615C0D931
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): inetaccs
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): ini910u
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Inport
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): IntelIde
    Image path: system32\DRIVERS\intelide.sys
    Image size: 5504
    Image MD5: 2D722B2B54AB55B2FA475EB58D7B2AAD
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): Ip6Fw
    Display name: IPv6 Windows Firewall Driver
    Description: Provides intrusion prevention service for a home or small office network.
    Image path: system32\DRIVERS\Ip6Fw.sys
    Image size: 29056
    Image MD5: 4448006B6BC60E6C027932CFC38D6855
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): IpFilterDriver
    Display name: IP Traffic Filter Driver
    Description: IP Traffic Filter Driver
    Image path: system32\DRIVERS\ipfltdrv.sys
    Image size: 32896
    Image MD5: 731F22BA402EE4B62748ADAF6363C182
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): IpInIp
    Display name: IP in IP Tunnel Driver
    Description: IP in IP Tunnel Driver
    Image path: system32\DRIVERS\ipinip.sys
    Image size: 20992
    Image MD5: E1EC7F5DA720B640CD8FB8424F1B14BB
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): IpNat
    Display name: IP Network Address Translator
    Description: IP Network Address Translator
    Image path: system32\DRIVERS\ipnat.sys
    Image size: 134912
    Image MD5: B5A8E215AC29D24D60B4D1250EF05ACE
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): iPodService
    Display name: iPod Service
    Description: iPod hardware management services
    Object name: LocalSystem
    Image path: "C:\Program Files\iPod\bin\iPodService.exe"
    Image size: 327680
    Image MD5: 3AC9F355ECCE7D6BB8FF184E9B2229A9
    Start: 3
    Type: 16
    Error Control: 0

    Service (registry key): IPSec
    Display name: IPSEC driver
    Description: IPSEC driver
    Image path: system32\DRIVERS\ipsec.sys
    Image size: 74752
    Image MD5: 64537AA5C003A6AFEEE1DF819062D0D1
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): IRENUM
    Display name: IR Enumerator Service
    Image path: system32\DRIVERS\irenum.sys
    Image size: 11264
    Image MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ISAPISearch
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): isapnp
    Display name: PnP ISA/EISA Bus Driver
    Image path: system32\DRIVERS\isapnp.sys
    Image size: 35840
    Image MD5: E504F706CCB699C2596E9A3DA1596E87
    Start: 0
    Type: 1
    Error Control: 3

    Service (registry key): Kbdclass
    Display name: Keyboard Class Driver
    Image path: system32\DRIVERS\kbdclass.sys
    Image size: 24576
    Image MD5: EBDEE8A2EE5393890A1ACEE971C4C246
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): kl1
    Display name: Kl1
    Image path: system32\drivers\kl1.sys
    Image size: 104448
    Image MD5: BC02A8E0DD5DC266E5CC3636DD454403
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): klif
    Display name: Klif
    Image path: \??\C:\WINDOWS\system32\drivers\klif.sys
    Image size: 174864
    Image MD5: F0653E5E164123CAD51EDDA22418C2A3
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): kmixer
    Display name: Microsoft Kernel Wave Audio Mixer
    Image path: system32\drivers\kmixer.sys
    Image size: 171776
    Image MD5: D93CAD07C5683DB066B0B2D2D3790EAD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): KSecDD
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): lanmanserver
    Display name: Server
    Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): lanmanworkstation
    Display name: Workstation
    Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): lbrtfdc
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): ldap
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): LicenseService
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): LmHosts
    Display name: TCP/IP NetBIOS Helper
    Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: NetBT,Afd

    Service (registry key): MDM
    Display name: Machine Debug Manager
    Description: Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly.
    Object name: LocalSystem
    Image path: "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"
    Image size: 322120
    Image MD5: 11F714F85530A2BD134074DC30E99FCA
    Start: 2
    Type: 272
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): mdmxsdk
    Image path: system32\DRIVERS\mdmxsdk.sys
    Image size: 11868
    Image MD5: 195741AEE20369980796B557358CD774
    Start: 2
    Type: 1
    Error Control: 0

    Service (registry key): Messenger
    Display name: Messenger
    Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS

    Service (registry key): mnmdd
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): mnmsrvc
    Display name: NetMeeting Remote Desktop Sharing
    Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\mnmsrvc.exe
    Image size: 32768
    Image MD5: F6415361201915B9FE3896B0E4E724FF
    Start: 3
    Type: 272
    Error Control: 1

    Service (registry key): Modem
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): MODEMCSA
    Display name: Unimodem Streaming Filter Device
    Image path: system32\drivers\MODEMCSA.sys
    Image size: 16128
    Image MD5: 1992E0D143B09653AB0F9C5E04B0FD65
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mouclass
    Display name: Mouse Class Driver
    Image path: system32\DRIVERS\mouclass.sys
    Image size: 23040
    Image MD5: 34E1F0031153E491910E12551400192C
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): MountMgr
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): mraid35x
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): MRxDAV
    Display name: WebDav Client Redirector
    Description: WebDav Client Redirector
    Image path: system32\DRIVERS\mrxdav.sys
    Image size: 181248
    Image MD5: 46EDCC8F2DB2F322C24F48785CB46366
    Start: 3
    Type: 2
    Error Control: 1

    Service (registry key): MRxSmb
    Display name: MRXSMB
    Description: MRXSMB
    Image path: system32\DRIVERS\mrxsmb.sys
    Image size: 451456
    Image MD5: 1FD607FC67F7F7C633C3DA65BFC53D18
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): MSDTC
    Display name: Distributed Transaction Coordinator
    Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\NetworkService
    Image path: C:\WINDOWS\system32\msdtc.exe
    Image size: 6144
    Image MD5: C7C3D89EB0A6F3DBA622EA737FA335B1
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS,SamSS

    Service (registry key): Msfs
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): MSIServer
    Display name: Windows Installer
    Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\msiexec.exe /V
    Image size: 77312
    Image MD5: 4236AE241F193F58ADAB141CECCFD5F4
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): MSKSSRV
    Display name: Microsoft Streaming Service Proxy
    Image path: system32\drivers\MSKSSRV.sys
    Image size: 7552
    Image MD5: AE431A8DD3C1D0D0610CDBAC16057AD0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): MSPCLOCK
    Display name: Microsoft Streaming Clock Proxy
    Image path: system32\drivers\MSPCLOCK.sys
    Image size: 5376
    Image MD5: 13E75FEF9DFEB08EEDED9D0246E1F448
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): MSPQM
    Display name: Microsoft Streaming Quality Manager Proxy
    Image path: system32\drivers\MSPQM.sys
    Image size: 4992
    Image MD5: 1988A33FF19242576C3D0EF9CE785DA7
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): mssmbios
    Display name: Microsoft System Management BIOS Driver
    Image path: system32\DRIVERS\mssmbios.sys
    Image size: 15488
    Image MD5: 469541F8BFD2B32659D5D463A6714BCE
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ms_mpu401
    Display name: Microsoft MPU-401 MIDI UART Driver
    Image path: system32\drivers\msmpu401.sys
    Image size: 2944
    Image MD5: CA3E22598F411199ADC2DFEE76CD0AE0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mtlmnt5
    Display name: Mtlmnt5
    Image path: system32\DRIVERS\Mtlmnt5.sys
    Image size: 221736
    Image MD5: 32CE8D0359672BCB720BF82C86A50D71
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mtlstrm
    Display name: Mtlstrm
    Image path: system32\DRIVERS\Mtlstrm.sys
    Image size: 1301128
    Image MD5: 8ADA829D3D7CF2DB7B1C41F3C7BEAA79
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mup
    Display name: Mup
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): NDIS
    Display name: NDIS System Driver
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): NdisTapi
    Display name: Remote Access NDIS TAPI Driver
    Description: Remote Access NDIS TAPI Driver
    Image path: system32\DRIVERS\ndistapi.sys
    Image size: 9600
    Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Ndisuio
    Display name: NDIS Usermode I/O Protocol
    Description: NDIS Usermode I/O Protocol
    Image path: system32\DRIVERS\ndisuio.sys
    Image size: 12928
    Image MD5: 34D6CD56409DA9A7ED573E1C90A308BF
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NdisWan
    Display name: Remote Access NDIS WAN Driver
    Description: Remote Access NDIS WAN Driver
    Image path: system32\DRIVERS\ndiswan.sys
    Image size: 91776
    Image MD5: 0B90E255A9490166AB368CD55A529893
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NDProxy
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NetBIOS
    Display name: NetBIOS Interface
    Description: NetBIOS Interface
    Image path: system32\DRIVERS\netbios.sys
    Image size: 34560
    Image MD5: 3A2ACA8FC1D7786902CA434998D7CEB4
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): NetBT
    Display name: NetBios over Tcpip
    Description: NetBios over Tcpip
    Image path: system32\DRIVERS\netbt.sys
    Image size: 162816
    Image MD5: 0C80E410CD2F47134407EE7DD19CC86B
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): NetDDE
    Display name: Network DDE
    Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 111104
    Image MD5: 05AFB5AD06462257BEA7495283C86D50
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: NetDDEDSDM

    Service (registry key): NetDDEdsdm
    Display name: Network DDE DSDM
    Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 111104
    Image MD5: 05AFB5AD06462257BEA7495283C86D50
    Start: 4
    Type: 32
    Error Control: 1

    Service (registry key): Netlogon
    Display name: Net Logon
    Description: Supports pass-through authentication of account logon events for computers in a domain.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): Netman
    Display name: Network Connections
    Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 288
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Nla
    Display name: Network Location Awareness (NLA)
    Description: Collects and stores network configuration and location information, and notifies applications when this information changes.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: Tcpip,Afd

    Service (registry key): Nokia USB Generic
    Display name: Nokia USB Generic
    Image path: system32\drivers\nmwcdc.sys
    Image size: 8704
    Image MD5: 19CBCC1C8168FD6736DE06F287A1413E
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Nokia USB Modem
    Display name: Nokia USB Modem
    Image path: system32\drivers\nmwcdcm.sys
    Image size: 12800
    Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Nokia USB Phone Parent
    Display name: Nokia USB Phone Parent
    Image path: system32\drivers\nmwcd.sys
    Image size: 124928
    Image MD5: 09899CA1E1DF288BEB768461401D18EE
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Nokia USB Port
    Display name: Nokia USB Port
    Image path: system32\drivers\nmwcdcj.sys
    Image size: 12800
    Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Npfs
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): Ntfs
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): NtLmSsp
    Display name: NT LM Security Support Provider
    Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): NtmsSvc
    Display name: Removable Storage
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): NtMtlFax
    Display name: NtMtlFax
    Image path: system32\DRIVERS\NtMtlFax.sys
    Image size: 167384
    Image MD5: F11E04E2D0034172EB2938D0BBC7B05B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Null
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): NwlnkFlt
    Display name: IPX Traffic Filter Driver
    Description: IPX Traffic Filter Driver
    Image path: system32\DRIVERS\nwlnkflt.sys
    Image size: 12416
    Image MD5: B305F3FAD35083837EF46A0BBCE2FC57
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: NwlnkFwd

    Service (registry key): NwlnkFwd
    Display name: IPX Traffic Forwarder Driver
    Description: IPX Traffic Forwarder Driver
    Image path: system32\DRIVERS\nwlnkfwd.sys
    Image size: 32512
    Image MD5: C99B3415198D1AAB7227F2C88FD664B9
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ose
    Display name: Office Source Engine
    Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports.
    Object name: LocalSystem
    Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
    Image size: 89136
    Image MD5: 7A56CF3E3F12E8AF599963B16F50FB6A
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): P3
    Display name: Intel PentiumIII Processor Driver
    Image path: system32\DRIVERS\p3.sys
    Image size: 42496
    Image MD5: 3E16EFF2A6FED2D8D7F5A66DFE65D183
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Parport
    Display name: Parallel port driver
    Image path: system32\DRIVERS\parport.sys
    Image size: 80128
    Image MD5: 29744EB4CE659DFE3B4122DEB45BC478
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): PartMgr
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ParVdm
    Start: 2
    Type: 1
    Error Control: 0
    Depends On services: Parport
    Depends On group: "Parallel arbitrator"

    Service (registry key): PCI
    Display name: PCI Bus Driver
    Image path: system32\DRIVERS\pci.sys
    Image size: 68224
    Image MD5: 8086D9979234B603AD5BC2F5D890B234
    Start: 0
    Type: 1
    Error Control: 3

    Service (registry key): PCIDump
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): PCIIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Pcmcia
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): PDCOMP
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDFRAME
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDRELI
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDRFRAME
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): perc2
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): perc2hib
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): PerfDisk
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfNet
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfOS
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfProc
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PlugPlay
    Display name: Plug and Play
    Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 108032
    Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): PolicyAgent
    Display name: IPSEC Services
    Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS,Tcpip,IPSec

    Service (registry key): PptpMiniport
    Display name: WAN Miniport (PPTP)
    Description: WAN Miniport (PPTP)
    Image path: system32\DRIVERS\raspptp.sys
    Image size: 48384
    Image MD5: 1C5CC65AAC0783C344F16353E60B72AC
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ProtectedStorage
    Display name: Protected Storage
    Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 288
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): PSched
    Display name: QoS Packet Scheduler
    Description: QoS Packet Scheduler
    Image path: system32\DRIVERS\psched.sys
    Image size: 69120
    Image MD5: 48671F327553DCF1D27F6197F622A668
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Gpc

    Service (registry key): Ptilink
    Display name: Direct Parallel Link Driver
    Description: Direct Parallel Link Driver
    Image path: system32\DRIVERS\ptilink.sys
    Image size: 17792
    Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): PxHelp20
    Display name: PxHelp20
    Image path: System32\Drivers\PxHelp20.sys
    Image size: 20640
    Image MD5: 86724469CD077901706854974CD13C3E
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ql1080
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Ql10wnt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql12160
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql1240
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql1280
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): RasAcd
    Display name: Remote Access Auto Connection Driver
    Description: Remote Access Auto Connection Driver
    Image path: system32\DRIVERS\rasacd.sys
    Image size: 8832
    Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): RasAuto
    Display name: Remote Access Auto Connection Manager
    Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RasMan,Tapisrv

    Service (registry key): Rasl2tp
    Display name: WAN Miniport (L2TP)
    Description: WAN Miniport (L2TP)
    Image path: system32\DRIVERS\rasl2tp.sys
    Image size: 51328
    Image MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): RasMan
    Display name: Remote Access Connection Manager
    Description: Creates a network connection.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: Tapisrv

    Service (registry key): RasPppoe
    Display name: Remote Access PPPOE Driver
    Description: Remote Access PPPOE Driver
    Image path: system32\DRIVERS\raspppoe.sys
    Image size: 41472
    Image MD5: 7306EEED8895454CBED4669BE9F79FAA
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Raspti
    Display name: Direct Parallel
    Description: Direct Parallel
    Image path: system32\DRIVERS\raspti.sys
    Image size: 16512
    Image MD5: FDBB1D60066FCFBB7452FD8F9829B242
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Rdbss
    Display name: Rdbss
    Description: Rdbss
    Image path: system32\DRIVERS\rdbss.sys
    Image size: 176512
    Image MD5: 29D66245ADBA878FFF574CD66ABD2884
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): RDPCDD
    Image path: System32\DRIVERS\RDPCDD.sys
    Image size: 4224
    Image MD5: 4912D5B403614CE99C28420F75353332
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): RDPDD
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): rdpdr
    Display name: Terminal Server Device Redirector Driver
    Image path: system32\DRIVERS\rdpdr.sys
    Image size: 196864
    Image MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): RDPNP
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): RDPWD
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): RDSessMgr
    Display name: Remote Desktop Help Session Manager
    Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\sessmgr.exe
    Image size: 140800
    Image MD5: 729798E0933076B8FCFCD9934698F164
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): RecAgent
    Display name: recagent
    Image path: \??\C:\WINDOWS\system32\DRIVERS\RecAgent.sys
    Image size: 13776
    Image MD5: E9AAA0092D74A9D371659C4C38882E12
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): redbook
    Display name: Digital CD Audio Playback Filter Driver
    Image path: system32\DRIVERS\redbook.sys
    Image size: 57472
    Image MD5: B31B4588E4086D8D84ADBF9845C2402B
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): RemoteAccess
    Display name: Routing and Remote Access
    Description: Offers routing services to businesses in local area and wide area network environments.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: RpcSS
    Depends On group: NetBIOSGroup

    Service (registry key): RemoteRegistry
    Display name: Remote Registry
    Description: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): RpcLocator
    Display name: Remote Procedure Call (RPC) Locator
    Description: Manages the RPC name service database.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\locator.exe
    Image size: 75264
    Image MD5: 793F04A09B15E7C6C11DBDFFAF06C0AB
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): RpcSs
    Display name: Remote Procedure Call (RPC)
    Description: Provides the endpoint mapper and other miscellaneous RPC services.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\svchost -k rpcss
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): RSVP
    Display name: QoS RSVP
    Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\rsvp.exe
    Image size: 132608
    Image MD5: 471B3F9741D762ABE75E9DEEA4787E47
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: TcpIp,Afd,RpcSs

    Service (registry key): rtl8139
    Display name: Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver
    Image path: system32\DRIVERS\RTL8139.SYS
    Image size: 20992
    Image MD5: D507C1400284176573224903819FFDA3
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SamSs
    Display name: Security Accounts Manager
    Description: Stores security information for local user accounts.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): SCardSvr
    Display name: Smart Card
    Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\SCardSvr.exe
    Image size: 95744
    Image MD5: 25D8DE134DF108E3DBC8D7D23B1AA58E
    Start: 3
    Type: 32
    Error Control: 0
    Depends On services: PlugPlay

    Service (registry key): Schedule
    Display name: Task Scheduler
    Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): SDhelper
    Display name: PC Tools Spyware Doctor
    Description: Provides spyware and malware protection for the system. If this service is disabled spyware protection will be reduced.
    Object name: LocalSystem
    Image path: C:\Program Files\Spyware Doctor\sdhelp.exe
    Image size: 895088
    Image MD5: D8CA03BE0F6DC8C8D71009795028006A
    Start: 2
    Type: 16
    Error Control: 1

    Service (registry key): Secdrv
    Display name: Secdrv
    Description: SafeDisc driver
    Image path: system32\DRIVERS\secdrv.sys
    Image size: 27440
    Image MD5: D26E26EA516450AF9D072635C60387F4
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): seclogon
    Display name: Secondary Logon
    Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 288
    Error Control: 0

    Service (registry key): SENS
    Display name: System Event Notification
    Description: Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: EventSystem

    Service (registry key): serenum
    Display name: Serenum Filter Driver
    Image path: system32\DRIVERS\serenum.sys
    Image size: 15488
    Image MD5: A2D868AEEFF612E70E213C451A70CAFB
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Serial
    Display name: Serial port driver
    Image path: system32\DRIVERS\serial.sys
    Image size: 64896
    Image MD5: CD9404D115A00D249F70A371B46D5A26
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): sermouse
    Display name: Serial Mouse Driver
    Image path: system32\DRIVERS\sermouse.sys
    Image size: 17664
    Image MD5: 1F16931C722C69E4A7866244796C66A0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Sfloppy
    Start: 1
    Type: 1
    Error Control: 0
    Depends On group: "SCSI miniport"

    Service (registry key): SharedAccess
    Display name: Windows Firewall/Internet Connection Sharing (ICS)
    Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Netman,WinMgmt

    Service (registry key): ShellHWDetection
    Display name: Shell Hardware Detection
    Description: Provides notifications for AutoPlay hardware events.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RpcSs

    Service (registry key): Simbad
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Slntamr
    Display name: NetoDragon AMR_PCI Driver
    Image path: system32\DRIVERS\slntamr.sys
    Image size: 545528
    Image MD5: 2EE2E5AA1B0FEB8E32D615BC8AAE6D14
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): SlNtHal
    Display name: SlNtHal
    Image path: system32\DRIVERS\Slnthal.sys
    Image size: 86128
    Image MD5: D84CE5182F7D9F3E7E4FF0C36B16A466
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SlWdmSup
    Display name: SlWdmSup
    Image path: system32\DRIVERS\SlWdmSup.sys
    Image size: 39348
    Image MD5: 4A35904E8EE6C103C815EE269CC7A7B9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Sparrow
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): splitter
    Display name: Microsoft Kernel Audio Splitter
    Image path: system32\drivers\splitter.sys
    Image size: 6400
    Image MD5: 8E186B8F23295D1E42C573B82B80D548
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Spooler
    Display name: Print Spooler
    Description: Loads files to memory for later printing.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\spoolsv.exe
    Image size: 57856
    Image MD5: 7435B108B935E42EA92CA94F59C8E717
    Start: 2
    Type: 272
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): sp_rsdrv2
    Display name: Spyware Terminator Driver 2
    Image path: \??\C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): sr
    Display name: System Restore Filter Driver
    Image path: system32\DRIVERS\sr.sys
    Image size: 73472
    Image MD5: E41B6D037D6CD08461470AF04500DC24
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): srservice
    Display name: System Restore Service
    Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Srv
    Display name: Srv
    Description: Srv
    Image path: system32\DRIVERS\srv.sys
    Image size: 336256
    Image MD5: 20B7E396720353E4117D64D9DCB926CA
    Start: 3
    Type: 2
    Error Control: 1

    Service (registry key): SSDPSRV
    Display name: SSDP Discovery Service
    Description: Enables discovery of UPnP devices on your home network.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: HTTP

    Service (registry key): stisvc
    Display name: Windows Image Acquisition (WIA)
    Description: Provides image acquisition services for scanners and cameras.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): swenum
    Display name: Software Bus Driver
    Image path: system32\DRIVERS\swenum.sys
    Image size: 4352
    Image MD5: 03C1BAE4766E2450219D20B993D6E046
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): swmidi
    Display name: Microsoft Kernel GS Wavetable Synthesizer
    Image path: system32\drivers\swmidi.sys
    Image size: 54272
    Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SwPrv
    Display name: MS Software Shadow Copy Provider
    Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{56859176-B9E9-4E77-B6D9-37C208D2F4BE}
    Image size: 5120
    Image MD5: DD87DB7387B9EB441C5674888A0D840C
    Start: 3
    Type: 16
    Error Control: 0
    Depends On services: rpcss

    Service (registry key): symc810
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): symc8xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sym_hi
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sym_u3
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sysaudio
    Display name: Microsoft Kernel System Audio Device
    Image path: system32\drivers\sysaudio.sys
    Image size: 60800
    Image MD5: 650AD082D46BAC0E64C9C0E0928492FD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SysmonLog
    Display name: Performance Logs and Alerts
    Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT Authority\NetworkService
    Image path: %SystemRoot%\system32\smlogsvc.exe
    Image size: 89600
    Image MD5: 8B54AA346D1B1B113FFAA75501B8B1B2
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): TapiSrv
    Display name: Telephony
    Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: PlugPlay,RpcSs

    Service (registry key): Tcpip
    Display name: TCP/IP Protocol Driver
    Description: TCP/IP Protocol Driver
    Image path: system32\DRIVERS\tcpip.sys
    Image size: 359040
    Image MD5: 9F4B36614A0FC234525BA224957DE55C
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: IPSec

    Service (registry key): TDPIPE
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TDTCP
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TermDD
    Display name: Terminal Device Driver
    Image path: system32\DRIVERS\termdd.sys
    Image size: 40840
    Image MD5: A540A99C281D933F3D69D55E48727F47
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): TermService
    Display name: Terminal Services
    Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost -k DComLaunch
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): Themes
    Display name: Themes
    Description: Provides user experience theme management.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): TlntSvr
    Display name: Telnet
    Description: Enables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\tlntsvr.exe
    Image size: 73216
    Image MD5: 37DB0A7D097310E8B4DE803FC3119C78
    Start: 4
    Type: 16
    Error Control: 1
    Depends On services: RPCSS,TCPIP,NTLMSSP

    Service (registry key): TosIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): trid3d
    Image path: system32\DRIVERS\trid3dm.sys
    Image size: 222336
    Image MD5: 8DFD837A98A4A6C581214FA358430837
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TrkWks
    Display name: Distributed Link Tracking Client
    Description: Maintains links between NTFS files within a computer or across computers in a network domain.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): TSDDD
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Udfs
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): ultra
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Update
    Display name: Microcode Update Driver
    Image path: system32\DRIVERS\update.sys
    Image size: 209408
    Image MD5: AFF2E5045961BBC0A602BB6F95EB1345
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): upnphost
    Display name: Universal Plug and Play Device Host
    Description: Provides support to host Universal Plug and Play devices.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: SSDPSRV,HTTP

    Service (registry key): UPS
    Display name: Uninterruptible Power Supply
    Description: Manages an uninterruptible power supply (UPS) connected to the computer.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\ups.exe
    Image size: 18432
    Image MD5: 3F5DF65B0758675F95A2D43918A740A3
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): usbhub
    Display name: USB2 Enabled Hub
    Image path: system32\DRIVERS\usbhub.sys
    Image size: 57600
    Image MD5: C72F40947F92CEA56A8FB532EDF025F1
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbprint
    Display name: Microsoft USB PRINTER Class
    Image path: system32\DRIVERS\usbprint.sys
    Image size: 25856
    Image MD5: A42369B7CD8886CD7C70F33DA6FCBCF5
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbscan
    Display name: USB Scanner Driver
    Image path: system32\DRIVERS\usbscan.sys
    Image size: 15104
    Image MD5: A6BC71402F4F7DD5B77FD7F4A8DDBA85
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): USBSTOR
    Display name: USB Mass Storage Driver
    Image path: system32\DRIVERS\USBSTOR.SYS
    Image size: 26496
    Image MD5: 6CD7B22193718F1D17A47A1CD6D37E75
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbuhci
    Display name: Microsoft USB Universal Host Controller Miniport Driver
    Image path: system32\DRIVERS\usbuhci.sys
    Image size: 20480
    Image MD5: F8FD1400092E23C8F2F31406EF06167B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usnsvc
    Display name: Messenger Sharing USN Journal Reader service
    Description: Service installed by Messenger to enable sharing scenarios
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\svchost.exe -k usnsvc
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: rpcss,eventlog

    Service (registry key): VgaSave
    Image path: \SystemRoot\System32\drivers\vga.sys
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): viaagp
    Display name: VIA AGP Bus Filter
    Image path: system32\DRIVERS\viaagp.sys
    Image size: 42240
    Image MD5: D92E7C8A30CFD14D8E15B5F7F032151B
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ViaIde
    Image path: system32\DRIVERS\viaide.sys
    Image size: 5376
    Image MD5: 59CB1338AD3654417BEA49636457F65D
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): VIAudio
    Display name: VIA AC'97 Audio Controller (WDM)
    Image path: system32\drivers\ac97via.sys
    Image size: 84480
    Image MD5: 819BF44085104BE6527B86A88ACF856B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): VolSnap
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): VSS
    Display name: Volume Shadow Copy
    Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\vssvc.exe
    Image size: 289792
    Image MD5: 3EE00364AE0FD8D604F46CBAF512838A
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): W32Time
    Display name: Windows Time
    Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.

    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): W3SVC
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Wanarp
    Display name: Remote Access IP ARP Driver
    Description: Remote Access IP ARP Driver
    Image path: system32\DRIVERS\wanarp.sys
    Image size: 34560
    Image MD5: 984EF0B9788ABF89974CFED4BFBAACBC
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): WDICA
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): wdmaud
    Display name: Microsoft WINMM WDM Audio Compatibility Driver
    Image path: system32\drivers\wdmaud.sys
    Image size: 82944
    Image MD5: 2797F33EBF50466020C430EE4F037933
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): WebClient
    Display name: WebClient
    Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: MRxDAV

    Service (registry key): winachsf
    Image path: system32\DRIVERS\HSFCXTS2.sys
    Image size: 685056
    Image MD5: 1225EBEA76AAC3C84DF6C54FE5E5D8BE
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): winmgmt
    Display name: Windows Management Instrumentation
    Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %systemroot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RPCSS

    Service (registry key): Winsock
    Start: 3
    Type: 4
    Error Control: 1

    Service (registry key): WinSock2
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WinTrust
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WmdmPmSN
    Display name: Portable Media Serial Number Service
    Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): Wmi
    Display name: Windows Management Instrumentation Driver Extensions
    Description: Provides systems management information to and from drivers.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): WmiApRpl
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WmiApSrv
    Display name: WMI Performance Adapter
    Description: Provides performance library information from WMI HiPerf providers.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe
    Image size: 126464
    Image MD5: BA8CECC3E813E1F7C441B20393D4F86C
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): WS2IFSL
    Start: 1
    Type: 0
    Error Control: 0

    Service (registry key): wuauserv
    Display name: Automatic Updates
    Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site.
    Object name: LocalSystem
    Image path: %systemroot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): WZCSVC
    Display name: Wireless Zero Configuration
    Description: Provides automatic configuration for the 802.11 adapters
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,Ndisuio

    Service (registry key): xmlprov
    Display name: Network Provisioning Service
    Description: Manages XML configuration files on a domain basis for automatic network provisioning.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): ZTPPPOE
    Display name: WAN Miniport (PPP over Ethernet Protocol)
    Image path: system32\DRIVERS\ztpppoe.sys
    Image size: 18238
    Image MD5: EF41F47D21761FF125E615E175984521
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): {3A5367D3-6621-4321-86BA-FBF1DC8E8A32}
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): {8141C4F5-9474-4946-B7DB-218FBCA21BFB}
    Start: 0
    Type: 0
    Error Control: 0


     
  6. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    Spybot - Search & Destroy

    --- Search result list ---
    Nat: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Desktop\host

    WinClean: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\Temp\installer.exe

    Smitfraud-C.: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\WindowsSubVersion

    BraveSentry: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program Files\BraveSentry\BraveSentry.exe

    Win32.Small.dp: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Security\host

    Nurech: User settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\upnp.exe


    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

    2007-03-07 unins000.exe (51.41.0.0)
    2005-05-31 blindman.exe (1.0.0.1)
    2005-05-31 SpybotSD.exe (1.4.0.3)
    2005-05-31 TeaTimer.exe (1.4.0.2)
    2005-05-31 Update.exe (1.4.0.0)
    2005-05-31 aports.dll (2.1.0.0)
    2005-05-31 borlndmm.dll (7.0.4.453)
    2005-05-31 delphimm.dll (7.0.4.453)
    2005-05-31 SDHelper.dll (1.4.0.0)
    2005-05-31 UnzDll.dll (1.73.1.1)
    2005-05-31 ZipDll.dll (1.73.2.0)
    2007-01-15 advcheck.dll (1.2.1.0)
    2007-01-02 Tools.dll (2.0.1.0)
    2006-12-08 Includes\Dialer.sbi (*)
    2007-02-07 Includes\Hijackers.sbi (*)
    2006-10-27 Includes\Keyloggers.sbi (*)
    2007-02-14 Includes\Malware.sbi (*)
    2007-01-19 Includes\PUPS.sbi (*)
    2006-12-08 Includes\Security.sbi (*)
    2007-02-02 Includes\Spybots.sbi (*)
    2007-02-14 Includes\Trojans.sbi (*)
    2007-02-28 Includes\Cookies.sbi (*)
    2007-02-28 Includes\Revision.sbi (*)
    2005-02-17 Includes\Tracks.uti
    2007-02-28 Includes\TrojansC.sbi (*)
    2007-02-28 Includes\SpybotsC.sbi (*)
    2007-02-28 Includes\SecurityC.sbi (*)
    2007-02-28 Includes\PUPSC.sbi (*)
    2007-02-28 Includes\MalwareC.sbi (*)
    2007-02-28 Includes\KeyloggersC.sbi (*)
    2007-02-28 Includes\HijackersC.sbi (*)
    2007-02-28 Includes\DialerC.sbi (*)



    --- System information ---
    Windows XP (Build: 2600) Service Pack 2
    / Windows Media Player 9: Security Update for Windows Media Player 9 (KB917734)


    --- Startup entries list ---
    Located: HK_LM:Run, AVP
    command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
    file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
    size: 155751
    MD5: 250f20c64fd9eaa0f2d7844bca92e741

    Located: HK_LM:Run, RemoteControl
    command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    size: 32768
    MD5: 915a106a2fb87292cef0ad4f36adf313

    Located: HK_CU:Run, ctfmon.exe
    command: C:\WINDOWS\system32\ctfmon.exe
    file: C:\WINDOWS\system32\ctfmon.exe
    size: 15360
    MD5: 24232996a38c0b0cf151c2140ae29fc8

    Located: HK_CU:Run, Spyware Doctor
    command: "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
    file: C:\Program Files\Spyware Doctor\swdoctor.exe
    size: 3375104
    MD5: 53d577860f1b4b0fbb8b8770bad60628

    Located: System.ini, crypt32chain
    command: crypt32.dll
    file: crypt32.dll

    Located: System.ini, cryptnet
    command: cryptnet.dll
    file: cryptnet.dll

    Located: System.ini, cscdll
    command: cscdll.dll
    file: cscdll.dll

    Located: System.ini, klogon
    command: C:\WINDOWS\system32\klogon.dll
    file: C:\WINDOWS\system32\klogon.dll
    size: 94314
    MD5: 3f97f0f4a9a6d21a1a496c1d8fe84e4e

    Located: System.ini, ScCertProp
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, Schedule
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, sclgntfy
    command: sclgntfy.dll
    file: sclgntfy.dll

    Located: System.ini, SensLogn
    command: WlNotify.dll
    file: WlNotify.dll

    Located: System.ini, termsrv
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, WgaLogon
    command:
    file:

    Located: System.ini, wlballoon
    command: wlnotify.dll
    file: wlnotify.dll



    --- Browser helper object list ---
    {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} (BitComet ClickCapture)
    BHO name: BitComet ClickCapture
    CLSID name: BitComet Helper
    Path: C:\Program Files\BitComet\tools\
    Long name: BitCometBHO.dll
    Short name: BITCOM~2.DLL
    Date (created): 1/11/2007 11:05:28 PM
    Date (last access): 3/7/2007
    Date (last write): 1/11/2007 11:05:28 PM
    Filesize: 386624
    Attributes: archive
    MD5: 8B148EFE8B203108FB3064AF38EF8C13
    CRC32: DF87F475

    {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} (Yahoo! IE Services Button)
    BHO name:
    CLSID name: Yahoo! IE Services Button
    Path: C:\Program Files\Yahoo!\Common\
    Long name: yiesrvc.dll
    Short name:
    Date (created): 1/12/2007 9:39:38 AM
    Date (last access): 3/6/2007
    Date (last write): 10/31/2006 3:29:16 PM
    Filesize: 198136
    Attributes: archive
    MD5: F8981F09E8DA4FDB7F6B6E2B5361AEAE
    CRC32: 2CDBBB6C
    Version: 2006.10.31.3



    --- ActiveX list ---


    --- Process list ---
    PID: 0 ( 0) [System]
    PID: 136 ( 4) \SystemRoot\System32\smss.exe
    PID: 212 ( 136) \??\C:\WINDOWS\system32\winlogon.exe
    PID: 256 ( 212) C:\WINDOWS\system32\services.exe
    size: 108032
    MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    PID: 268 ( 212) C:\WINDOWS\system32\lsass.exe
    size: 13312
    MD5: 84885F9B82F4D55C6146EBF6065D75D2
    PID: 416 ( 256) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 524 ( 256) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 744 ( 728) C:\WINDOWS\Explorer.EXE
    size: 1032192
    MD5: A0732187050030AE399B241436565E64
    PID: 1056 ( 744) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
    size: 4393096
    MD5: 09CA174A605B480318731E691DC98539
    PID: 4 ( 0) System
    PID: 188 ( 136) csrss.exe
    PID: 464 ( 256) svchost.exe


    --- Browser start & search pages list ---
    Spybot - Search & Destroy browser pages report, 3/7/2007 9:37:54 AM

    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
    C:\WINDOWS\system32\blank.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
    http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
    http://www.yahoo.com/
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
    http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
    %SystemRoot%\system32\blank.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
    http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
    http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
    about:blank
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
    http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
    http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


    --- Winsock Layered Service Provider list ---


    --- Uninstall list ---
    Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal)
    uninstall cmd: C:\PROGRA~1\LAVASOFT\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\LAVASOFT\AD-AWA~1\INSTALL.LOG
    publisher: Lavasoft
    help link: http://www.lavasoft.com

    (AddressBook)

    BitComet 0.82 0.82 (BitComet)
    uninstall cmd: C:\Program Files\BitComet\uninst.exe
    publisher: ~RnySmile~

    (Branding)

    CCleaner (remove only) (CCleaner)
    uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

    Cdex version 1.30 (CDex_is1)
    uninstall cmd: "C:\Program Files\CDex130\unins000.exe"

    (Connection Manager)

    (DirectAnimation)

    (DirectDrawEx)

    Download Accelerator Plus (DAP) 8000 (Build 135) (Download Accelerator Plus (DAP))
    uninstall cmd: C:\PROGRA~1\DAP\DAPREMOVE.EXE
    publisher: Speedbit Ltd.
    contact: support@downloadaccelerator.com
    help link: http://redir.speedbit.com/redir.asp?ID=7066

    (DXM_Runtime)

    (Fontcore)

    FreeRIP v2.951 2.951 (FreeRIP_is1)
    install location: C:\Program Files\FreeRIP\
    uninstall cmd: "C:\Program Files\FreeRIP\unins000.exe"
    publisher: MGShareware

    HijackThis 1.99.1 1.99.1 (HijackThis)
    uninstall cmd: \\DSP1\My Completed Downloads\HijackThis.exe /uninstall
    publisher: Soeperman Enterprises Ltd.

    (ICW)

    (IE40)

    (IE4Data)

    (IE5BAKEX)

    (IEData)

    5.2.4.2528 (IncrediMail)
    publisher: IncrediMail Ltd.
    help link: http://www.incredimail.com/english/help/index.html

    (InstallShield Uninstall Information)

    iTunes 4.7.1.30 (InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6})
    version: 67567617
    version (major): 4
    version (minor): 7
    estimated size: 13607
    install date: 20051207
    install location: C:\Program Files\iTunes\
    install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\
    uninstall cmd: C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3CB41017-F5CA-4C56-934C-ED02156251E6}
    publisher: Apple Computer, Inc.
    contact: AppleCare Support
    help link: http://www.info.apple.com/
    help telephone: 1-800-275-2273

    Kaspersky Anti-Virus 6.0 6.0.1.411 (InstallWIX_{75193929-9A52-4CA4-98DE-8C7296940920})
    uninstall cmd: MsiExec.exe /I{75193929-9A52-4CA4-98DE-8C7296940920}
    publisher: Kaspersky Lab
    help link: http://www.kaspersky.com/support.asp

    (KB884016)

    (KB893803)

    Macromedia Shockwave Player 10.1.0.11 (Macromedia Shockwave Player)
    uninstall cmd: C:\WINDOWS\system32\MACROMED\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\MACROMED\SHOCKW~1\Install.log
    publisher: Macromedia, Inc.
    help link: http://www.macromedia.com/support/shockwave

    (MobileOptionPack)

    (MPlayer2)

    (MSI30-Beta1)

    (MSI30-Beta2)

    (MSI30-KB884016)

    (MSI30-RC1)

    (MSI30-RC2)

    (MSI30a-KB884016)

    (MSI31-Beta)

    (MSI31-RC1)

    (NetMeeting)

    (OutlookExpress)

    (PCHealth)
    uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

    QuickTime (QuickTime)
    uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log

    (RealJukebox 1.0)
    uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    RealPlayer (RealPlayer 6.0)
    uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    (SchedulingAgent)

    (Shockwave)

    Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
    uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q
    publisher: Adobe Systems
    help link: http://www.adobe.com/go/flashplayer_support/

    NetoDragon 56K Voice Modem (SLAMRNTV)
    uninstall cmd: C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove

    Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
    install location: C:\Program Files\Spybot - Search & Destroy\
    uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
    publisher: Safer Networking Limited

    Spyware Doctor 4.0 4.0 (Spyware Doctor_is1)
    install date: 20070201
    install location: C:\Program Files\Spyware Doctor\
    uninstall cmd: "C:\Program Files\Spyware Doctor\unins000.exe"
    publisher: PC Tools
    help link: http://www.pctools.com/spyware-doctor/support/

    StartUp Manager (StartUp Manager)
    uninstall cmd: C:\Program Files\INAC\StartUp Manager\uninstall.exe

    Windows Genuine Advantage Notifications (KB905474) 1.5.0532.0 (WgaNotify)
    install date: 20060503
    publisher: Microsoft Corporation
    help link: http://support.microsoft.com?kbid=905474

    Winamp (remove only) (Winamp)
    uninstall cmd: "C:\Program Files\Winamp\UninstWA.exe"

    WinRAR archiver (WinRAR archiver)
    uninstall cmd: C:\Program Files\WinRAR\uninstall.exe

    WinZip 8.1 (4331) (WinZip)
    version (major): 8
    version (minor): 1
    install location: C:\PROGRA~1\WINZIP\
    uninstall cmd: "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
    publisher: WinZip Computing, Inc.
    help link: http://www.winzip.com/xsupport.htm

    Yahoo! Browser Services (Yahoo! Customizations)
    uninstall cmd: C:\PROGRA~1\YAHOO!\COMMON\unyext.exe

    Yahoo! Messenger (Yahoo! Messenger)
    uninstall cmd: C:\PROGRA~1\YAHOO!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\YAHOO!\MESSEN~1\INSTALL.LOG

    ZTE ADSL Dialer 1.0j_MY (ZTE ADSL Dialer_is1)
    uninstall cmd: "C:\Program Files\ZTE\ADSLDIAL\unins000.exe"
    publisher: ZTE Inc.
    help link: http://www.ZTE.com.cn

    AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC})
    install location: C:\Program Files\DivX

    AstraPix 450/460 ({26BE3FED-5DEF-40E3-96E5-67A9AC831B7B})
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}\Setup.exe"

    Java(TM) SE Runtime Environment 6 1.6.0.0 ({3248F0A8-6813-11D6-A77B-00B0D0160000})
    version: 17170432
    version (major): 1
    version (minor): 6
    estimated size: 111474
    install date: 20070228
    install source: C:\Documents and Settings\User\Application Data\Sun\Java\jre1.6.0\
    uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
    publisher: Sun Microsystems, Inc.
    contact: http://java.com
    help link: http://java.com
    readme: C:\Program Files\Java\jre1.6.0\README.txt

    WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227})
    version: 154279267
    version (major): 9
    version (minor): 50
    estimated size: 2500
    install date: 20051207
    install source: C:\WINDOWS\system32\
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/windows

    iTunes 4.7.1.30 ({3CB41017-F5CA-4C56-934C-ED02156251E6})
    version: 67567617
    version (major): 4
    version (minor): 7
    estimated size: 13607
    install date: 20051207
    install location: C:\Program Files\iTunes\
    install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\
    publisher: Apple Computer, Inc.
    contact: AppleCare Support
    help link: http://www.info.apple.com/
    help telephone: 1-800-275-2273

    ({62369F2F77534556AEF4C58152E3BDE5})

    PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall

    Kaspersky Anti-Virus 6.0 6.0.1.411 ({75193929-9A52-4CA4-98DE-8C7296940920})
    version: 100663297
    version (major): 6
    estimated size: 27246
    install date: 20070124
    install source: C:\kav\kav6.0\english\
    publisher: Kaspersky Lab
    help link: http://www.kaspersky.com/support.asp

    DivX 6.1.1 ({7B63B2922B174135AFC0E1377DD81EC2})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
    publisher: DivX, Inc.

    DivX Player 6.1.1 ({8ADFC4160D694100B5B8A22DE9DCABD9})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
    publisher: DivXNetworks, Inc.

    Microsoft Office Professional Edition 2003 11.0.5614.0 ({90110409-6000-11D3-8CFE-0150048383C9})
    version: 184554990
    version (major): 11
    estimated size: 379454
    install date: 20051219
    install location: C:\Program Files\Microsoft Office\
    install source: D:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\
    uninstall cmd: MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/support
    readme: C:\Program Files\Microsoft Office\OFFICE11\1033\OFREADME.HTM

    Microsoft Office XP Small Business 10.0.2627.01 ({91130409-6000-11D3-8CFE-0050048383C9})
    version: 167774787
    version (major): 10
    estimated size: 474490
    install date: 20051207
    install location: INSTALLLOCATION
    install source: E:\
    uninstall cmd: MsiExec.exe /I{91130409-6000-11D3-8CFE-0050048383C9}
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/support
    readme: C:\Program Files\Microsoft Office\Office10\1033\OFREAD10.HTM

    Adobe Reader 7.0 7.0.0 ({AC76BA86-7AD7-1033-7B44-A70000000000})
    version: 117440512
    version (major): 7
    estimated size: 65659
    install date: 20051207
    install location: C:\Program Files\Adobe\Acrobat 7.0\Reader\
    install source: C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\ENU\
    uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
    publisher: Adobe Systems Incorporated
    comments:
    contact:
    help link: http://www.adobe.com/support/main.html
    help telephone:
    readme: C:\Program Files\Adobe\Acrobat 7.0\Reader\Readme.htm

    ACDSee 8 8.0.39 ({AE80641A-0C8D-4670-A518-B4EC154B1027})
    version: 134217767
    version (major): 8
    estimated size: 34108
    install date: 20061213
    install location: C:\Program Files\ACD Systems\
    install source: C:\WINDOWS\Downloaded Installations\{015363C3-0256-4F1B-95E5-304040BF9C4D}\
    uninstall cmd: MsiExec.exe /I{AE80641A-0C8D-4670-A518-B4EC154B1027}
    publisher: ACD Systems Ltd.
    comments: This database contains the necessary files and logic to install ACDSee and additional support programs and plug-ins where appropriate
    contact: Technical Support
    help link: http://go.acdsystems.com/client/en/534017
    help telephone: 250-544-6701

    ({B13A7C41581B411290FBC0395694E2A9})

    DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    publisher: DivX,Inc.

    Nokia Connectivity Cable Driver 1.00.159 ({B7757137-0A71-4A9F-8A82-1AE4A1B73420})
    version: 16777375
    version (major): 1
    estimated size: 400
    install date: 20061215
    install location: C:\Program Files\Nokia\Connectivity Cable Driver\
    install source: C:\Program Files\Nokia\Nokia PC Suite 6\
    uninstall cmd: MsiExec.exe /X{B7757137-0A71-4A9F-8A82-1AE4A1B73420}
    publisher: Nokia
    help link: http://www.nokia.com/nokia/0,8764,75877,00.html

    jetAudio 6.1 ({DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A})
    version: 100728832
    install date: 20060401
    install location: C:\Program Files\JetAudio
    install source: C:\DOCUME~1\User\LOCALS~1\Temp\bye9B.tmp\Disk1\
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -l0x9 -removeonly
    publisher: JetAudio, Inc.

    Windows Live Messenger 8.0.0812.00 ({FCE50DB8-C610-4C42-BE5C-193F46C6F812})
    version: 134218540
    version (major): 8
    estimated size: 33821
    install date: 20070110
    install source: C:\DOCUME~1\User\LOCALS~1\Temp\IXP000.TMP\
    uninstall cmd: MsiExec.exe /I{FCE50DB8-C610-4C42-BE5C-193F46C6F812}
    publisher: Microsoft Corporation

    Nokia PC Suite 6.70.22 ({FF059F2A-62A7-4E6A-B305-559591D2769E})
    version: 105250838
    version (major): 6
    version (minor): 70
    estimated size: 36140
    install date: 20061215
    install location: C:\Program Files\Nokia\
    install source: E:\software\PCSuite\
    uninstall cmd: MsiExec.exe /I{FF059F2A-62A7-4E6A-B305-559591D2769E}
    publisher: Nokia
    help link: http://www.nokia.com/nokia/0,8764,75877,00.html



    --- System Services ---
    Service (registry key): Abiosdsk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): abp480n5
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ac97intc
    Display name: Intel(r) 82801 Audio Driver Install Service (WDM)
    Image path: system32\drivers\ac97intc.sys
    Image size: 96256
    Image MD5: 0F2D66D5F08EBE2F77BB904288DCF6F0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ACPI
    Display name: Microsoft ACPI Driver
    Image path: system32\DRIVERS\ACPI.sys
    Image size: 187776
    Image MD5: A10C7534F7223F4A73A948967D00E69B
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ACPIEC
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): adpu160m
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aec
    Display name: Microsoft Kernel Acoustic Echo Canceller
    Image path: system32\drivers\aec.sys
    Image size: 142464
    Image MD5: 841F385C6CFAF66B58FBD898722BB4F0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): AFD
    Display name: AFD
    Description: AFD Networking Support Environment
    Image path: \SystemRoot\System32\drivers\afd.sys
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Aha154x
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78u2
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Alerter
    Display name: Alerter
    Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): ALG
    Display name: Application Layer Gateway Service
    Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\alg.exe
    Image size: 44544
    Image MD5: F1958FBF86D5C004CF19A5951A9514B7
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): AliIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): amsint
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): AppMgmt
    Display name: Application Management
    Description: Provides software installation services such as Assign, Publish, and Remove.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): asc
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3350p
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3550
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): AsyncMac
    Display name: RAS Asynchronous Media Driver
    Description: RAS Asynchronous Media Driver
    Image path: system32\DRIVERS\asyncmac.sys
    Image size: 14336
    Image MD5: 02000ABF34AF4C218C35D257024807D6
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): atapi
    Display name: Standard IDE/ESDI Hard Disk Controller
    Image path: system32\DRIVERS\atapi.sys
    Image size: 95360
    Image MD5: CDFE4411A69C224BD1D11B2DA92DAC51
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): Atdisk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): Atmarpc
    Display name: ATM ARP Client Protocol
    Description: ATM ARP Client Protocol
    Image path: system32\DRIVERS\atmarpc.sys
    Image size: 59904
    Image MD5: EC88DA854AB7D7752EC8BE11A741BB7F
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): AudioSrv
    Display name: Windows Audio
    Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: PlugPlay,RpcSs

    Service (registry key): audstub
    Display name: Audio Stub Driver
    Image path: system32\DRIVERS\audstub.sys
    Image size: 3072
    Image MD5: D9F724AA26C010A217C97606B160ED68
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): AVP
    Start: 2
    Type: 0
    Error Control: 0

    Service (registry key): AxPsHook11
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): BattC
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Beep
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): BITS
    Display name: Background Intelligent Transfer Service
    Description: Transfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Browser
    Display name: Computer Browser
    Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,LanmanServer

    Service (registry key): cbidf2k
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): cd20xrnt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Cdaudio
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): Cdfs
    Start: 4
    Type: 2
    Error Control: 1
    Depends On group: "SCSI CDROM Class"

    Service (registry key): Cdrom
    Display name: CD-ROM Driver
    Image path: system32\DRIVERS\cdrom.sys
    Image size: 49536
    Image MD5: AF9C19B3100FE010496B1A27181FBF72
    Start: 1
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): Changer
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): CiSvc
    Display name: Indexing Service
    Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\cisvc.exe
    Image size: 5632
    Image MD5: 3192BD04D032A9C4A85A3278C268A13A
    Start: 3
    Type: 288
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): ClipSrv
    Display name: ClipBook
    Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\clipsrv.exe
    Image size: 33280
    Image MD5: C8DEC22C4137D7A90F8BDF41CA4B82AE
    Start: 4
    Type: 16
    Error Control: 1
    Depends On services: NetDDE

    Service (registry key): CmdIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): COMSysApp
    Display name: COM+ System Application
    Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
    Image size: 5120
    Image MD5: DD87DB7387B9EB441C5674888A0D840C
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: rpcss

    Service (registry key): ContentFilter
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): ContentIndex
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Cpqarray
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): CryptSvc
    Display name: Cryptographic Services
    Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): dac2w2k
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): dac960nt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): DcomLaunch
    Display name: DCOM Server Process Launcher
    Description: Provides launch functionality for DCOM services.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost -k DcomLaunch
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): Dhcp
    Display name: DHCP Client
    Description: Manages network configuration by registering and updating IP addresses and DNS names.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip,Afd,NetBT

    Service (registry key): Disk
    Display name: Disk Driver
    Image path: system32\DRIVERS\disk.sys
    Image size: 36352
    Image MD5: 00CA44E4534865F8A3B64F7C0984BFF0
    Start: 0
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): dmadmin
    Display name: Logical Disk Manager Administrative Service
    Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\dmadmin.exe /com
    Image size: 224768
    Image MD5: 554C7CB178FE3BD12450B81AD63ADBC3
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay,DmServer

    Service (registry key): dmboot
    Image path: System32\drivers\dmboot.sys
    Image size: 799744
    Image MD5: C0FBB516E06E243F0CF31F597E7EBF7D
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): dmio
    Display name: Logical Disk Manager Driver
    Image path: system32\DRIVERS\dmio.sys
    Image size: 153344
    Image MD5: F5E7B358A732D09F4BCF2824B88B9E28
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmload
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmserver
    Display name: Logical Disk Manager
    Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay

    Service (registry key): DMusic
    Display name: Microsoft Kernel DLS Syntheiszer
    Image path: system32\drivers\DMusic.sys
    Image size: 52864
    Image MD5: A6F881284AC1150E37D9AE47FF601267
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Dnscache
    Display name: DNS Client
    Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): dpti2o
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): drmkaud
    Display name: Microsoft Kernel DRM Audio Descrambler
    Image path: system32\drivers\drmkaud.sys
    Image size: 2944
    Image MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ERSvc
    Display name: Error Reporting Service
    Description: Allows error reporting for services and applictions running in non-standard environments.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RpcSs

    Service (registry key): Eventlog
    Display name: Event Log
    Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 108032
    Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): EventSystem
    Display name: COM+ Event System
    Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): Fastfat
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): FastUserSwitchingCompatibility
    Display name: Fast User Switching Compatibility
    Description: Provides management for applications that require assistance in a multiple user environment.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: TermService

    Service (registry key): Fdc
    Display name: Floppy Disk Controller Driver
    Image path: system32\DRIVERS\fdc.sys
    Image size: 27392
    Image MD5: CED2E8396A8838E59D8FD529C680E02C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Fips
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Flpydisk
    Display name: Floppy Disk Driver
    Image path: system32\DRIVERS\flpydisk.sys
    Image size: 20480
    Image MD5: 0DD1DE43115B93F4D85E889D7A86F548
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): FltMgr
    Display name: FltMgr
    Description: File System Filter Manager Driver
    Image path: system32\DRIVERS\fltMgr.sys
    Image size: 124800
    Image MD5: 157754F0DF355A9E0A6F54721914F9C6
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): Fs_Rec
    Start: 1
    Type: 8
    Error Control: 0

    Service (registry key): Ftdisk
    Display name: Volume Manager Driver
    Image path: system32\DRIVERS\ftdisk.sys
    Image size: 125056
    Image MD5: 6AC26732762483366C3969C9E4D2259D
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): gameenum
    Display name: Game Port Enumerator
    Image path: system32\DRIVERS\gameenum.sys
    Image size: 10624
    Image MD5: 5F92FD09E5610A5995DA7D775EADCD12
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): GEARAspiWDM
    Display name: GEAR CDRom Filter
    Image path: SYSTEM32\DRIVERS\GEARAspiWDM.sys
    Image size: 13872
    Image MD5: 2FB04DB459C71F416EE8B05448CA4AC3
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Gpc
    Display name: Generic Packet Classifier
    Description: Generic Packet Classifier
    Image path: system32\DRIVERS\msgpc.sys
    Image size: 35072
    Image MD5: C0F1D4A21DE5A415DF8170616703DEBF
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): helpsvc
    Display name: Help and Support
    Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): HidServ
    Display name: Human Interface Device Access
    Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): hpn
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): HSFHWBS2
    Image path: system32\DRIVERS\HSFBS2S2.sys
    Image size: 220032
    Image MD5: 970178E8E003EB1481293830069624B9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): HSF_DP
    Image path: system32\DRIVERS\HSFDPSP2.sys
    Image size: 1041536
    Image MD5: EBB354438A4C5A3327FB97306260714A
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): HTTP
    Display name: HTTP
    Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
    Image path: System32\Drivers\HTTP.sys
    Image size: 263040
    Image MD5: C19B522A9AE0BBC3293397F3055E80A1
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): HTTPFilter
    Display name: HTTP SSL
    Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: HTTP

    Service (registry key): i2omgmt
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): i2omp
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): i8042prt
    Display name: i8042 Keyboard and PS/2 Mouse Port Driver
    Image path: system32\DRIVERS\i8042prt.sys
    Image size: 52736
    Image MD5: 5502B58EEF7486EE6F93F3F164DCB808
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): i81x
    Image path: system32\DRIVERS\i81xnt5.sys
    Image size: 161020
    Image MD5: 06B7EF73BA5F302EECC294CDF7E19702
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP0
    Image path: system32\DRIVERS\wADV01nt.sys
    Image size: 12415
    Image MD5: 7B5B44EFE5EB9DADFB8EE29700885D23
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP1
    Image path: system32\DRIVERS\wADV02NT.sys
    Image size: 12127
    Image MD5: EB1F6BAB6C22EDE0BA551B527475F7E9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP2
    Image path: system32\DRIVERS\wADV05NT.sys
    Image size: 11775
    Image MD5: 03CE989D846C1AA81145CB22FCB86D06
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP3
    Image path: system32\DRIVERS\wSiINTxx.sys
    Image size: 12063
    Image MD5: 525849B4469DE021D5D61B4DB9BE3A9D
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP4
    Image path: system32\DRIVERS\wVchNTxx.sys
    Image size: 19455
    Image MD5: 589C2BCDB5BD602BF7B63D210407EF8C
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP5
    Image path: system32\DRIVERS\wADV07nt.sys
    Image size: 11807
    Image MD5: 0308AEF61941E4AF478FA1A0F83812F5
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP6
    Image path: system32\DRIVERS\wADV08nt.sys
    Image size: 11295
    Image MD5: 714038A8AA5DE08E12062202CD7EAEB5
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP7
    Image path: system32\DRIVERS\wADV09nt.sys
    Image size: 11871
    Image MD5: 7BB3AA595E4507A788DE1CDC63F4C8C4
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV0
    Image path: system32\DRIVERS\wATV01nt.sys
    Image size: 29311
    Image MD5: D83BDD5C059667A2F647A6BE5703A4D2
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV1
    Image path: system32\DRIVERS\wATV02NT.sys
    Image size: 19551
    Image MD5: ED968D23354DAA0D7C621580C012A1F6
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV3
    Image path: system32\DRIVERS\wATV04nt.sys
    Image size: 33599
    Image MD5: D738273F218A224C1DDAC04203F27A84
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV4
    Image path: system32\DRIVERS\wCh7xxNT.sys
    Image size: 23615
    Image MD5: 0052D118995CBAB152DAABE6106D1442
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV5
    Image path: system32\DRIVERS\wATV10nt.sys
    Image size: 25471
    Image MD5: 791CC45DE6E50445BE72E8AD6401FF45
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV6
    Image path: system32\DRIVERS\wATV06nt.sys
    Image size: 22271
    Image MD5: 352FA0E98BC461CE1CE5D41F64DB558D
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): ikhfile
    Display name: File Security Kernel Anti-Spyware Driver
    Description: File Security Kernel Anti-Spyware
    Image path: system32\drivers\ikhfile.sys
    Image size: 30592
    Image MD5: F24866EE5C0819E9B1B58F2C00AF078E
    Start: 1
    Type: 2
    Error Control: 0

    Service (registry key): ikhlayer
    Display name: Kernel Anti-Spyware Driver
    Description: Kernel Anti-Spyware
    Image path: system32\drivers\ikhlayer.sys
    Image size: 51072
    Image MD5: 9A2CFF8E3EF0A35F23F544FAB915C060
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): Imapi
    Display name: CD-Burning Filter Driver
    Image path: system32\DRIVERS\imapi.sys
    Image size: 41856
    Image MD5: F8AA320C6A0409C0380E5D8A99D76EC6
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): ImapiService
    Display name: IMAPI CD-Burning COM Service
    Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\imapi.exe
    Image size: 150016
    Image MD5: FA788520BCAC0F5D9D5CDE5615C0D931
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): inetaccs
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): ini910u
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Inport
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): IntelIde
    Image path: system32\DRIVERS\intelide.sys
    Image size: 5504
    Image MD5: 2D722B2B54AB55B2FA475EB58D7B2AAD
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): Ip6Fw
    Display name: IPv6 Windows Firewall Driver
    Description: Provides intrusion prevention service for a home or small office network.
    Image path: system32\DRIVERS\Ip6Fw.sys
    Image size: 29056
    Image MD5: 4448006B6BC60E6C027932CFC38D6855
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): IpFilterDriver
    Display name: IP Traffic Filter Driver
    Description: IP Traffic Filter Driver
    Image path: system32\DRIVERS\ipfltdrv.sys
    Image size: 32896
    Image MD5: 731F22BA402EE4B62748ADAF6363C182
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): IpInIp
    Display name: IP in IP Tunnel Driver
    Description: IP in IP Tunnel Driver
    Image path: system32\DRIVERS\ipinip.sys
    Image size: 20992
    Image MD5: E1EC7F5DA720B640CD8FB8424F1B14BB
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): IpNat
    Display name: IP Network Address Translator
    Description: IP Network Address Translator
    Image path: system32\DRIVERS\ipnat.sys
    Image size: 134912
    Image MD5: B5A8E215AC29D24D60B4D1250EF05ACE
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): iPodService
    Display name: iPod Service
    Description: iPod hardware management services
    Object name: LocalSystem
    Image path: "C:\Program Files\iPod\bin\iPodService.exe"
    Image size: 327680
    Image MD5: 3AC9F355ECCE7D6BB8FF184E9B2229A9
    Start: 3
    Type: 16
    Error Control: 0

    Service (registry key): IPSec
    Display name: IPSEC driver
    Description: IPSEC driver
    Image path: system32\DRIVERS\ipsec.sys
    Image size: 74752
    Image MD5: 64537AA5C003A6AFEEE1DF819062D0D1
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): IRENUM
    Display name: IR Enumerator Service
    Image path: system32\DRIVERS\irenum.sys
    Image size: 11264
    Image MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ISAPISearch
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): isapnp
    Display name: PnP ISA/EISA Bus Driver
    Image path: system32\DRIVERS\isapnp.sys
    Image size: 35840
    Image MD5: E504F706CCB699C2596E9A3DA1596E87
    Start: 0
    Type: 1
    Error Control: 3

    Service (registry key): Kbdclass
    Display name: Keyboard Class Driver
    Image path: system32\DRIVERS\kbdclass.sys
    Image size: 24576
    Image MD5: EBDEE8A2EE5393890A1ACEE971C4C246
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): kl1
    Display name: Kl1
    Image path: system32\drivers\kl1.sys
    Image size: 104448
    Image MD5: BC02A8E0DD5DC266E5CC3636DD454403
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): klif
    Display name: Klif
    Image path: \??\C:\WINDOWS\system32\drivers\klif.sys
    Image size: 174864
    Image MD5: F0653E5E164123CAD51EDDA22418C2A3
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): kmixer
    Display name: Microsoft Kernel Wave Audio Mixer
    Image path: system32\drivers\kmixer.sys
    Image size: 171776
    Image MD5: D93CAD07C5683DB066B0B2D2D3790EAD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): KSecDD
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): lanmanserver
    Display name: Server
    Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): lanmanworkstation
    Display name: Workstation
    Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): lbrtfdc
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): ldap
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): LicenseService
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): LmHosts
    Display name: TCP/IP NetBIOS Helper
    Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: NetBT,Afd

    Service (registry key): MDM
    Display name: Machine Debug Manager
    Description: Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly.
    Object name: LocalSystem
    Image path: "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"
    Image size: 322120
    Image MD5: 11F714F85530A2BD134074DC30E99FCA
    Start: 2
    Type: 272
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): mdmxsdk
    Image path: system32\DRIVERS\mdmxsdk.sys
    Image size: 11868
    Image MD5: 195741AEE20369980796B557358CD774
    Start: 2
    Type: 1
    Error Control: 0

    Service (registry key): Messenger
    Display name: Messenger
    Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS

    Service (registry key): mnmdd
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): mnmsrvc
    Display name: NetMeeting Remote Desktop Sharing
    Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\mnmsrvc.exe
    Image size: 32768
    Image MD5: F6415361201915B9FE3896B0E4E724FF
    Start: 3
    Type: 272
    Error Control: 1

    Service (registry key): Modem
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): MODEMCSA
    Display name: Unimodem Streaming Filter Device
    Image path: system32\drivers\MODEMCSA.sys
    Image size: 16128
    Image MD5: 1992E0D143B09653AB0F9C5E04B0FD65
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mouclass
    Display name: Mouse Class Driver
    Image path: system32\DRIVERS\mouclass.sys
    Image size: 23040
    Image MD5: 34E1F0031153E491910E12551400192C
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): MountMgr
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): mraid35x
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): MRxDAV
    Display name: WebDav Client Redirector
    Description: WebDav Client Redirector
    Image path: system32\DRIVERS\mrxdav.sys
    Image size: 181248
    Image MD5: 46EDCC8F2DB2F322C24F48785CB46366
    Start: 3
    Type: 2
    Error Control: 1

    Service (registry key): MRxSmb
    Display name: MRXSMB
    Description: MRXSMB
    Image path: system32\DRIVERS\mrxsmb.sys
    Image size: 451456
    Image MD5: 1FD607FC67F7F7C633C3DA65BFC53D18
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): MSDTC
    Display name: Distributed Transaction Coordinator
    Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\NetworkService
    Image path: C:\WINDOWS\system32\msdtc.exe
    Image size: 6144
    Image MD5: C7C3D89EB0A6F3DBA622EA737FA335B1
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS,SamSS

    Service (registry key): Msfs
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): MSIServer
    Display name: Windows Installer
    Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\msiexec.exe /V
    Image size: 77312
    Image MD5: 4236AE241F193F58ADAB141CECCFD5F4
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): MSKSSRV
    Display name: Microsoft Streaming Service Proxy
    Image path: system32\drivers\MSKSSRV.sys
    Image size: 7552
    Image MD5: AE431A8DD3C1D0D0610CDBAC16057AD0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): MSPCLOCK
    Display name: Microsoft Streaming Clock Proxy
    Image path: system32\drivers\MSPCLOCK.sys
    Image size: 5376
    Image MD5: 13E75FEF9DFEB08EEDED9D0246E1F448
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): MSPQM
    Display name: Microsoft Streaming Quality Manager Proxy
    Image path: system32\drivers\MSPQM.sys
    Image size: 4992
    Image MD5: 1988A33FF19242576C3D0EF9CE785DA7
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): mssmbios
    Display name: Microsoft System Management BIOS Driver
    Image path: system32\DRIVERS\mssmbios.sys
    Image size: 15488
    Image MD5: 469541F8BFD2B32659D5D463A6714BCE
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ms_mpu401
    Display name: Microsoft MPU-401 MIDI UART Driver
    Image path: system32\drivers\msmpu401.sys
    Image size: 2944
    Image MD5: CA3E22598F411199ADC2DFEE76CD0AE0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mtlmnt5
    Display name: Mtlmnt5
    Image path: system32\DRIVERS\Mtlmnt5.sys
    Image size: 221736
    Image MD5: 32CE8D0359672BCB720BF82C86A50D71
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mtlstrm
    Display name: Mtlstrm
    Image path: system32\DRIVERS\Mtlstrm.sys
    Image size: 1301128
    Image MD5: 8ADA829D3D7CF2DB7B1C41F3C7BEAA79
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mup
    Display name: Mup
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): NDIS
    Display name: NDIS System Driver
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): NdisTapi
    Display name: Remote Access NDIS TAPI Driver
    Description: Remote Access NDIS TAPI Driver
    Image path: system32\DRIVERS\ndistapi.sys
    Image size: 9600
    Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Ndisuio
    Display name: NDIS Usermode I/O Protocol
    Description: NDIS Usermode I/O Protocol
    Image path: system32\DRIVERS\ndisuio.sys
    Image size: 12928
    Image MD5: 34D6CD56409DA9A7ED573E1C90A308BF
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NdisWan
    Display name: Remote Access NDIS WAN Driver
    Description: Remote Access NDIS WAN Driver
    Image path: system32\DRIVERS\ndiswan.sys
    Image size: 91776
    Image MD5: 0B90E255A9490166AB368CD55A529893
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NDProxy
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NetBIOS
    Display name: NetBIOS Interface
    Description: NetBIOS Interface
    Image path: system32\DRIVERS\netbios.sys
    Image size: 34560
    Image MD5: 3A2ACA8FC1D7786902CA434998D7CEB4
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): NetBT
    Display name: NetBios over Tcpip
    Description: NetBios over Tcpip
    Image path: system32\DRIVERS\netbt.sys
    Image size: 162816
    Image MD5: 0C80E410CD2F47134407EE7DD19CC86B
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): NetDDE
    Display name: Network DDE
    Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 111104
    Image MD5: 05AFB5AD06462257BEA7495283C86D50
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: NetDDEDSDM

    Service (registry key): NetDDEdsdm
    Display name: Network DDE DSDM
    Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 111104
    Image MD5: 05AFB5AD06462257BEA7495283C86D50
    Start: 4
    Type: 32
    Error Control: 1

    Service (registry key): Netlogon
    Display name: Net Logon
    Description: Supports pass-through authentication of account logon events for computers in a domain.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): Netman
    Display name: Network Connections
    Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 288
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Nla
    Display name: Network Location Awareness (NLA)
    Description: Collects and stores network configuration and location information, and notifies applications when this information changes.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: Tcpip,Afd

    Service (registry key): Nokia USB Generic
    Display name: Nokia USB Generic
    Image path: system32\drivers\nmwcdc.sys
    Image size: 8704
    Image MD5: 19CBCC1C8168FD6736DE06F287A1413E
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Nokia USB Modem
    Display name: Nokia USB Modem
    Image path: system32\drivers\nmwcdcm.sys
    Image size: 12800
    Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Nokia USB Phone Parent
    Display name: Nokia USB Phone Parent
    Image path: system32\drivers\nmwcd.sys
    Image size: 124928
    Image MD5: 09899CA1E1DF288BEB768461401D18EE
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Nokia USB Port
    Display name: Nokia USB Port
    Image path: system32\drivers\nmwcdcj.sys
    Image size: 12800
    Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Npfs
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): Ntfs
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): NtLmSsp
    Display name: NT LM Security Support Provider
    Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): NtmsSvc
    Display name: Removable Storage
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): NtMtlFax
    Display name: NtMtlFax
    Image path: system32\DRIVERS\NtMtlFax.sys
    Image size: 167384
    Image MD5: F11E04E2D0034172EB2938D0BBC7B05B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Null
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): NwlnkFlt
    Display name: IPX Traffic Filter Driver
    Description: IPX Traffic Filter Driver
    Image path: system32\DRIVERS\nwlnkflt.sys
    Image size: 12416
    Image MD5: B305F3FAD35083837EF46A0BBCE2FC57
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: NwlnkFwd

    Service (registry key): NwlnkFwd
    Display name: IPX Traffic Forwarder Driver
    Description: IPX Traffic Forwarder Driver
    Image path: system32\DRIVERS\nwlnkfwd.sys
    Image size: 32512
    Image MD5: C99B3415198D1AAB7227F2C88FD664B9
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ose
    Display name: Office Source Engine
    Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports.
    Object name: LocalSystem
    Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
    Image size: 89136
    Image MD5: 7A56CF3E3F12E8AF599963B16F50FB6A
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): P3
    Display name: Intel PentiumIII Processor Driver
    Image path: system32\DRIVERS\p3.sys
    Image size: 42496
    Image MD5: 3E16EFF2A6FED2D8D7F5A66DFE65D183
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Parport
    Display name: Parallel port driver
    Image path: system32\DRIVERS\parport.sys
    Image size: 80128
    Image MD5: 29744EB4CE659DFE3B4122DEB45BC478
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): PartMgr
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ParVdm
    Start: 2
    Type: 1
    Error Control: 0
    Depends On services: Parport
    Depends On group: "Parallel arbitrator"

    Service (registry key): PCI
    Display name: PCI Bus Driver
    Image path: system32\DRIVERS\pci.sys
    Image size: 68224
    Image MD5: 8086D9979234B603AD5BC2F5D890B234
    Start: 0
    Type: 1
    Error Control: 3

    Service (registry key): PCIDump
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): PCIIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Pcmcia
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): PDCOMP
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDFRAME
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDRELI
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDRFRAME
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): perc2
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): perc2hib
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): PerfDisk
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfNet
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfOS
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfProc
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PlugPlay
    Display name: Plug and Play
    Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 108032
    Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): PolicyAgent
    Display name: IPSEC Services
    Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS,Tcpip,IPSec

    Service (registry key): PptpMiniport
    Display name: WAN Miniport (PPTP)
    Description: WAN Miniport (PPTP)
    Image path: system32\DRIVERS\raspptp.sys
    Image size: 48384
    Image MD5: 1C5CC65AAC0783C344F16353E60B72AC
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ProtectedStorage
    Display name: Protected Storage
    Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 288
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): PSched
    Display name: QoS Packet Scheduler
    Description: QoS Packet Scheduler
    Image path: system32\DRIVERS\psched.sys
    Image size: 69120
    Image MD5: 48671F327553DCF1D27F6197F622A668
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Gpc

    Service (registry key): Ptilink
    Display name: Direct Parallel Link Driver
    Description: Direct Parallel Link Driver
    Image path: system32\DRIVERS\ptilink.sys
    Image size: 17792
    Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): PxHelp20
    Display name: PxHelp20
    Image path: System32\Drivers\PxHelp20.sys
    Image size: 20640
    Image MD5: 86724469CD077901706854974CD13C3E
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ql1080
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Ql10wnt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql12160
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql1240
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql1280
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): RasAcd
    Display name: Remote Access Auto Connection Driver
    Description: Remote Access Auto Connection Driver
    Image path: system32\DRIVERS\rasacd.sys
    Image size: 8832
    Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): RasAuto
    Display name: Remote Access Auto Connection Manager
    Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RasMan,Tapisrv

    Service (registry key): Rasl2tp
    Display name: WAN Miniport (L2TP)
    Description: WAN Miniport (L2TP)
    Image path: system32\DRIVERS\rasl2tp.sys
    Image size: 51328
    Image MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): RasMan
    Display name: Remote Access Connection Manager
    Description: Creates a network connection.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: Tapisrv

    Service (registry key): RasPppoe
    Display name: Remote Access PPPOE Driver
    Description: Remote Access PPPOE Driver
    Image path: system32\DRIVERS\raspppoe.sys
    Image size: 41472
    Image MD5: 7306EEED8895454CBED4669BE9F79FAA
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Raspti
    Display name: Direct Parallel
    Description: Direct Parallel
    Image path: system32\DRIVERS\raspti.sys
    Image size: 16512
    Image MD5: FDBB1D60066FCFBB7452FD8F9829B242
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Rdbss
    Display name: Rdbss
    Description: Rdbss
    Image path: system32\DRIVERS\rdbss.sys
    Image size: 176512
    Image MD5: 29D66245ADBA878FFF574CD66ABD2884
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): RDPCDD
    Image path: System32\DRIVERS\RDPCDD.sys
    Image size: 4224
    Image MD5: 4912D5B403614CE99C28420F75353332
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): RDPDD
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): rdpdr
    Display name: Terminal Server Device Redirector Driver
    Image path: system32\DRIVERS\rdpdr.sys
    Image size: 196864
    Image MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): RDPNP
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): RDPWD
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): RDSessMgr
    Display name: Remote Desktop Help Session Manager
    Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\sessmgr.exe
    Image size: 140800
    Image MD5: 729798E0933076B8FCFCD9934698F164
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): RecAgent
    Display name: recagent
    Image path: \??\C:\WINDOWS\system32\DRIVERS\RecAgent.sys
    Image size: 13776
    Image MD5: E9AAA0092D74A9D371659C4C38882E12
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): redbook
    Display name: Digital CD Audio Playback Filter Driver
    Image path: system32\DRIVERS\redbook.sys
    Image size: 57472
    Image MD5: B31B4588E4086D8D84ADBF9845C2402B
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): RemoteAccess
    Display name: Routing and Remote Access
    Description: Offers routing services to businesses in local area and wide area network environments.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: RpcSS
    Depends On group: NetBIOSGroup

    Service (registry key): RemoteRegistry
    Display name: Remote Registry
    Description: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): RpcLocator
    Display name: Remote Procedure Call (RPC) Locator
    Description: Manages the RPC name service database.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\locator.exe
    Image size: 75264
    Image MD5: 793F04A09B15E7C6C11DBDFFAF06C0AB
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): RpcSs
    Display name: Remote Procedure Call (RPC)
    Description: Provides the endpoint mapper and other miscellaneous RPC services.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\svchost -k rpcss
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): RSVP
    Display name: QoS RSVP
    Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\rsvp.exe
    Image size: 132608
    Image MD5: 471B3F9741D762ABE75E9DEEA4787E47
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: TcpIp,Afd,RpcSs

    Service (registry key): rtl8139
    Display name: Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver
    Image path: system32\DRIVERS\RTL8139.SYS
    Image size: 20992
    Image MD5: D507C1400284176573224903819FFDA3
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SamSs
    Display name: Security Accounts Manager
    Description: Stores security information for local user accounts.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): SCardSvr
    Display name: Smart Card
    Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\SCardSvr.exe
    Image size: 95744
    Image MD5: 25D8DE134DF108E3DBC8D7D23B1AA58E
    Start: 3
    Type: 32
    Error Control: 0
    Depends On services: PlugPlay

    Service (registry key): Schedule
    Display name: Task Scheduler
    Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): SDhelper
    Display name: PC Tools Spyware Doctor
    Description: Provides spyware and malware protection for the system. If this service is disabled spyware protection will be reduced.
    Object name: LocalSystem
    Image path: C:\Program Files\Spyware Doctor\sdhelp.exe
    Image size: 895088
    Image MD5: D8CA03BE0F6DC8C8D71009795028006A
    Start: 2
    Type: 16
    Error Control: 1

    Service (registry key): Secdrv
    Display name: Secdrv
    Description: SafeDisc driver
    Image path: system32\DRIVERS\secdrv.sys
    Image size: 27440
    Image MD5: D26E26EA516450AF9D072635C60387F4
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): seclogon
    Display name: Secondary Logon
    Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 288
    Error Control: 0

    Service (registry key): SENS
    Display name: System Event Notification
    Description: Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: EventSystem

    Service (registry key): serenum
    Display name: Serenum Filter Driver
    Image path: system32\DRIVERS\serenum.sys
    Image size: 15488
    Image MD5: A2D868AEEFF612E70E213C451A70CAFB
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Serial
    Display name: Serial port driver
    Image path: system32\DRIVERS\serial.sys
    Image size: 64896
    Image MD5: CD9404D115A00D249F70A371B46D5A26
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): sermouse
    Display name: Serial Mouse Driver
    Image path: system32\DRIVERS\sermouse.sys
    Image size: 17664
    Image MD5: 1F16931C722C69E4A7866244796C66A0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Sfloppy
    Start: 1
    Type: 1
    Error Control: 0
    Depends On group: "SCSI miniport"

    Service (registry key): SharedAccess
    Display name: Windows Firewall/Internet Connection Sharing (ICS)
    Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Netman,WinMgmt

    Service (registry key): ShellHWDetection
    Display name: Shell Hardware Detection
    Description: Provides notifications for AutoPlay hardware events.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RpcSs

    Service (registry key): Simbad
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Slntamr
    Display name: NetoDragon AMR_PCI Driver
    Image path: system32\DRIVERS\slntamr.sys
    Image size: 545528
    Image MD5: 2EE2E5AA1B0FEB8E32D615BC8AAE6D14
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): SlNtHal
    Display name: SlNtHal
    Image path: system32\DRIVERS\Slnthal.sys
    Image size: 86128
    Image MD5: D84CE5182F7D9F3E7E4FF0C36B16A466
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SlWdmSup
    Display name: SlWdmSup
    Image path: system32\DRIVERS\SlWdmSup.sys
    Image size: 39348
    Image MD5: 4A35904E8EE6C103C815EE269CC7A7B9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Sparrow
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): splitter
    Display name: Microsoft Kernel Audio Splitter
    Image path: system32\drivers\splitter.sys
    Image size: 6400
    Image MD5: 8E186B8F23295D1E42C573B82B80D548
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Spooler
    Display name: Print Spooler
    Description: Loads files to memory for later printing.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\spoolsv.exe
    Image size: 57856
    Image MD5: 7435B108B935E42EA92CA94F59C8E717
    Start: 2
    Type: 272
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): sp_rsdrv2
    Display name: Spyware Terminator Driver 2
    Image path: \??\C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): sr
    Display name: System Restore Filter Driver
    Image path: system32\DRIVERS\sr.sys
    Image size: 73472
    Image MD5: E41B6D037D6CD08461470AF04500DC24
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): srservice
    Display name: System Restore Service
    Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Srv
    Display name: Srv
    Description: Srv
    Image path: system32\DRIVERS\srv.sys
    Image size: 336256
    Image MD5: 20B7E396720353E4117D64D9DCB926CA
    Start: 3
    Type: 2
    Error Control: 1

    Service (registry key): SSDPSRV
    Display name: SSDP Discovery Service
    Description: Enables discovery of UPnP devices on your home network.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: HTTP

    Service (registry key): stisvc
    Display name: Windows Image Acquisition (WIA)
    Description: Provides image acquisition services for scanners and cameras.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): swenum
    Display name: Software Bus Driver
    Image path: system32\DRIVERS\swenum.sys
    Image size: 4352
    Image MD5: 03C1BAE4766E2450219D20B993D6E046
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): swmidi
    Display name: Microsoft Kernel GS Wavetable Synthesizer
    Image path: system32\drivers\swmidi.sys
    Image size: 54272
    Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SwPrv
    Display name: MS Software Shadow Copy Provider
    Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{56859176-B9E9-4E77-B6D9-37C208D2F4BE}
    Image size: 5120
    Image MD5: DD87DB7387B9EB441C5674888A0D840C
    Start: 3
    Type: 16
    Error Control: 0
    Depends On services: rpcss

    Service (registry key): symc810
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): symc8xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sym_hi
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sym_u3
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sysaudio
    Display name: Microsoft Kernel System Audio Device
    Image path: system32\drivers\sysaudio.sys
    Image size: 60800
    Image MD5: 650AD082D46BAC0E64C9C0E0928492FD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SysmonLog
    Display name: Performance Logs and Alerts
    Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT Authority\NetworkService
    Image path: %SystemRoot%\system32\smlogsvc.exe
    Image size: 89600
    Image MD5: 8B54AA346D1B1B113FFAA75501B8B1B2
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): TapiSrv
    Display name: Telephony
    Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: PlugPlay,RpcSs

    Service (registry key): Tcpip
    Display name: TCP/IP Protocol Driver
    Description: TCP/IP Protocol Driver
    Image path: system32\DRIVERS\tcpip.sys
    Image size: 359040
    Image MD5: 9F4B36614A0FC234525BA224957DE55C
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: IPSec

    Service (registry key): TDPIPE
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TDTCP
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TermDD
    Display name: Terminal Device Driver
    Image path: system32\DRIVERS\termdd.sys
    Image size: 40840
    Image MD5: A540A99C281D933F3D69D55E48727F47
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): TermService
    Display name: Terminal Services
    Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost -k DComLaunch
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): Themes
    Display name: Themes
    Description: Provides user experience theme management.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): TlntSvr
    Display name: Telnet
    Description: Enables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\tlntsvr.exe
    Image size: 73216
    Image MD5: 37DB0A7D097310E8B4DE803FC3119C78
    Start: 4
    Type: 16
    Error Control: 1
    Depends On services: RPCSS,TCPIP,NTLMSSP

    Service (registry key): TosIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): trid3d
    Image path: system32\DRIVERS\trid3dm.sys
    Image size: 222336
    Image MD5: 8DFD837A98A4A6C581214FA358430837
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TrkWks
    Display name: Distributed Link Tracking Client
    Description: Maintains links between NTFS files within a computer or across computers in a network domain.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): TSDDD
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Udfs
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): ultra
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Update
    Display name: Microcode Update Driver
    Image path: system32\DRIVERS\update.sys
    Image size: 209408
    Image MD5: AFF2E5045961BBC0A602BB6F95EB1345
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): upnphost
    Display name: Universal Plug and Play Device Host
    Description: Provides support to host Universal Plug and Play devices.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: SSDPSRV,HTTP

    Service (registry key): UPS
    Display name: Uninterruptible Power Supply
    Description: Manages an uninterruptible power supply (UPS) connected to the computer.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\ups.exe
    Image size: 18432
    Image MD5: 3F5DF65B0758675F95A2D43918A740A3
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): usbhub
    Display name: USB2 Enabled Hub
    Image path: system32\DRIVERS\usbhub.sys
    Image size: 57600
    Image MD5: C72F40947F92CEA56A8FB532EDF025F1
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbprint
    Display name: Microsoft USB PRINTER Class
    Image path: system32\DRIVERS\usbprint.sys
    Image size: 25856
    Image MD5: A42369B7CD8886CD7C70F33DA6FCBCF5
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbscan
    Display name: USB Scanner Driver
    Image path: system32\DRIVERS\usbscan.sys
    Image size: 15104
    Image MD5: A6BC71402F4F7DD5B77FD7F4A8DDBA85
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): USBSTOR
    Display name: USB Mass Storage Driver
    Image path: system32\DRIVERS\USBSTOR.SYS
    Image size: 26496
    Image MD5: 6CD7B22193718F1D17A47A1CD6D37E75
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbuhci
    Display name: Microsoft USB Universal Host Controller Miniport Driver
    Image path: system32\DRIVERS\usbuhci.sys
    Image size: 20480
    Image MD5: F8FD1400092E23C8F2F31406EF06167B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usnsvc
    Display name: Messenger Sharing USN Journal Reader service
    Description: Service installed by Messenger to enable sharing scenarios
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\svchost.exe -k usnsvc
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: rpcss,eventlog

    Service (registry key): VgaSave
    Image path: \SystemRoot\System32\drivers\vga.sys
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): viaagp
    Display name: VIA AGP Bus Filter
    Image path: system32\DRIVERS\viaagp.sys
    Image size: 42240
    Image MD5: D92E7C8A30CFD14D8E15B5F7F032151B
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ViaIde
    Image path: system32\DRIVERS\viaide.sys
    Image size: 5376
    Image MD5: 59CB1338AD3654417BEA49636457F65D
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): VIAudio
    Display name: VIA AC'97 Audio Controller (WDM)
    Image path: system32\drivers\ac97via.sys
    Image size: 84480
    Image MD5: 819BF44085104BE6527B86A88ACF856B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): VolSnap
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): VSS
    Display name: Volume Shadow Copy
    Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\vssvc.exe
    Image size: 289792
    Image MD5: 3EE00364AE0FD8D604F46CBAF512838A
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): W32Time
    Display name: Windows Time
    Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.

    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): W3SVC
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Wanarp
    Display name: Remote Access IP ARP Driver
    Description: Remote Access IP ARP Driver
    Image path: system32\DRIVERS\wanarp.sys
    Image size: 34560
    Image MD5: 984EF0B9788ABF89974CFED4BFBAACBC
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): WDICA
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): wdmaud
    Display name: Microsoft WINMM WDM Audio Compatibility Driver
    Image path: system32\drivers\wdmaud.sys
    Image size: 82944
    Image MD5: 2797F33EBF50466020C430EE4F037933
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): WebClient
    Display name: WebClient
    Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: MRxDAV

    Service (registry key): winachsf
    Image path: system32\DRIVERS\HSFCXTS2.sys
    Image size: 685056
    Image MD5: 1225EBEA76AAC3C84DF6C54FE5E5D8BE
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): winmgmt
    Display name: Windows Management Instrumentation
    Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %systemroot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RPCSS

    Service (registry key): Winsock
    Start: 3
    Type: 4
    Error Control: 1

    Service (registry key): WinSock2
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WinTrust
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WmdmPmSN
    Display name: Portable Media Serial Number Service
    Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): Wmi
    Display name: Windows Management Instrumentation Driver Extensions
    Description: Provides systems management information to and from drivers.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): WmiApRpl
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WmiApSrv
    Display name: WMI Performance Adapter
    Description: Provides performance library information from WMI HiPerf providers.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe
    Image size: 126464
    Image MD5: BA8CECC3E813E1F7C441B20393D4F86C
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): WS2IFSL
    Start: 1
    Type: 0
    Error Control: 0

    Service (registry key): wuauserv
    Display name: Automatic Updates
    Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site.
    Object name: LocalSystem
    Image path: %systemroot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): WZCSVC
    Display name: Wireless Zero Configuration
    Description: Provides automatic configuration for the 802.11 adapters
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,Ndisuio

    Service (registry key): xmlprov
    Display name: Network Provisioning Service
    Description: Manages XML configuration files on a domain basis for automatic network provisioning.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): ZTPPPOE
    Display name: WAN Miniport (PPP over Ethernet Protocol)
    Image path: system32\DRIVERS\ztpppoe.sys
    Image size: 18238
    Image MD5: EF41F47D21761FF125E615E175984521
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): {3A5367D3-6621-4321-86BA-FBF1DC8E8A32}
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): {8141C4F5-9474-4946-B7DB-218FBCA21BFB}
    Start: 0
    Type: 0
    Error Control: 0


     
  7. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    Spybot - Search & Destroy

    --- Search result list ---
    Nat: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Desktop\host

    WinClean: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\Temp\installer.exe

    Smitfraud-C.: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\WindowsSubVersion

    BraveSentry: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\Program Files\BraveSentry\BraveSentry.exe

    Win32.Small.dp: Settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Internet Explorer\Security\host

    Nurech: User settings (Registry value, nothing done)
    HKEY_USERS\S-1-5-21-1292428093-1957994488-1343024091-1003\Software\Microsoft\Windows\ShellNoRoam\MUICache\*\upnp.exe


    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

    2007-03-07 unins000.exe (51.41.0.0)
    2005-05-31 blindman.exe (1.0.0.1)
    2005-05-31 SpybotSD.exe (1.4.0.3)
    2005-05-31 TeaTimer.exe (1.4.0.2)
    2005-05-31 Update.exe (1.4.0.0)
    2005-05-31 aports.dll (2.1.0.0)
    2005-05-31 borlndmm.dll (7.0.4.453)
    2005-05-31 delphimm.dll (7.0.4.453)
    2005-05-31 SDHelper.dll (1.4.0.0)
    2005-05-31 UnzDll.dll (1.73.1.1)
    2005-05-31 ZipDll.dll (1.73.2.0)
    2007-01-15 advcheck.dll (1.2.1.0)
    2007-01-02 Tools.dll (2.0.1.0)
    2006-12-08 Includes\Dialer.sbi (*)
    2007-02-07 Includes\Hijackers.sbi (*)
    2006-10-27 Includes\Keyloggers.sbi (*)
    2007-02-14 Includes\Malware.sbi (*)
    2007-01-19 Includes\PUPS.sbi (*)
    2006-12-08 Includes\Security.sbi (*)
    2007-02-02 Includes\Spybots.sbi (*)
    2007-02-14 Includes\Trojans.sbi (*)
    2007-02-28 Includes\Cookies.sbi (*)
    2007-02-28 Includes\Revision.sbi (*)
    2005-02-17 Includes\Tracks.uti
    2007-02-28 Includes\TrojansC.sbi (*)
    2007-02-28 Includes\SpybotsC.sbi (*)
    2007-02-28 Includes\SecurityC.sbi (*)
    2007-02-28 Includes\PUPSC.sbi (*)
    2007-02-28 Includes\MalwareC.sbi (*)
    2007-02-28 Includes\KeyloggersC.sbi (*)
    2007-02-28 Includes\HijackersC.sbi (*)
    2007-02-28 Includes\DialerC.sbi (*)



    --- System information ---
    Windows XP (Build: 2600) Service Pack 2
    / Windows Media Player 9: Security Update for Windows Media Player 9 (KB917734)


    --- Startup entries list ---
    Located: HK_LM:Run, AVP
    command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
    file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
    size: 155751
    MD5: 250f20c64fd9eaa0f2d7844bca92e741

    Located: HK_LM:Run, RemoteControl
    command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    size: 32768
    MD5: 915a106a2fb87292cef0ad4f36adf313

    Located: HK_CU:Run, ctfmon.exe
    command: C:\WINDOWS\system32\ctfmon.exe
    file: C:\WINDOWS\system32\ctfmon.exe
    size: 15360
    MD5: 24232996a38c0b0cf151c2140ae29fc8

    Located: HK_CU:Run, Spyware Doctor
    command: "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
    file: C:\Program Files\Spyware Doctor\swdoctor.exe
    size: 3375104
    MD5: 53d577860f1b4b0fbb8b8770bad60628

    Located: System.ini, crypt32chain
    command: crypt32.dll
    file: crypt32.dll

    Located: System.ini, cryptnet
    command: cryptnet.dll
    file: cryptnet.dll

    Located: System.ini, cscdll
    command: cscdll.dll
    file: cscdll.dll

    Located: System.ini, klogon
    command: C:\WINDOWS\system32\klogon.dll
    file: C:\WINDOWS\system32\klogon.dll
    size: 94314
    MD5: 3f97f0f4a9a6d21a1a496c1d8fe84e4e

    Located: System.ini, ScCertProp
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, Schedule
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, sclgntfy
    command: sclgntfy.dll
    file: sclgntfy.dll

    Located: System.ini, SensLogn
    command: WlNotify.dll
    file: WlNotify.dll

    Located: System.ini, termsrv
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, WgaLogon
    command:
    file:

    Located: System.ini, wlballoon
    command: wlnotify.dll
    file: wlnotify.dll



    --- Browser helper object list ---
    {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} (BitComet ClickCapture)
    BHO name: BitComet ClickCapture
    CLSID name: BitComet Helper
    Path: C:\Program Files\BitComet\tools\
    Long name: BitCometBHO.dll
    Short name: BITCOM~2.DLL
    Date (created): 1/11/2007 11:05:28 PM
    Date (last access): 3/7/2007
    Date (last write): 1/11/2007 11:05:28 PM
    Filesize: 386624
    Attributes: archive
    MD5: 8B148EFE8B203108FB3064AF38EF8C13
    CRC32: DF87F475

    {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} (Yahoo! IE Services Button)
    BHO name:
    CLSID name: Yahoo! IE Services Button
    Path: C:\Program Files\Yahoo!\Common\
    Long name: yiesrvc.dll
    Short name:
    Date (created): 1/12/2007 9:39:38 AM
    Date (last access): 3/6/2007
    Date (last write): 10/31/2006 3:29:16 PM
    Filesize: 198136
    Attributes: archive
    MD5: F8981F09E8DA4FDB7F6B6E2B5361AEAE
    CRC32: 2CDBBB6C
    Version: 2006.10.31.3



    --- ActiveX list ---


    --- Process list ---
    PID: 0 ( 0) [System]
    PID: 136 ( 4) \SystemRoot\System32\smss.exe
    PID: 212 ( 136) \??\C:\WINDOWS\system32\winlogon.exe
    PID: 256 ( 212) C:\WINDOWS\system32\services.exe
    size: 108032
    MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    PID: 268 ( 212) C:\WINDOWS\system32\lsass.exe
    size: 13312
    MD5: 84885F9B82F4D55C6146EBF6065D75D2
    PID: 416 ( 256) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 524 ( 256) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 744 ( 728) C:\WINDOWS\Explorer.EXE
    size: 1032192
    MD5: A0732187050030AE399B241436565E64
    PID: 1056 ( 744) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
    size: 4393096
    MD5: 09CA174A605B480318731E691DC98539
    PID: 4 ( 0) System
    PID: 188 ( 136) csrss.exe
    PID: 464 ( 256) svchost.exe


    --- Browser start & search pages list ---
    Spybot - Search & Destroy browser pages report, 3/7/2007 9:37:54 AM

    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
    C:\WINDOWS\system32\blank.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
    http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
    http://www.yahoo.com/
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
    http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
    %SystemRoot%\system32\blank.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
    http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
    http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
    about:blank
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
    http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
    http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


    --- Winsock Layered Service Provider list ---


    --- Uninstall list ---
    Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal)
    uninstall cmd: C:\PROGRA~1\LAVASOFT\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\LAVASOFT\AD-AWA~1\INSTALL.LOG
    publisher: Lavasoft
    help link: http://www.lavasoft.com

    (AddressBook)

    BitComet 0.82 0.82 (BitComet)
    uninstall cmd: C:\Program Files\BitComet\uninst.exe
    publisher: ~RnySmile~

    (Branding)

    CCleaner (remove only) (CCleaner)
    uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

    Cdex version 1.30 (CDex_is1)
    uninstall cmd: "C:\Program Files\CDex130\unins000.exe"

    (Connection Manager)

    (DirectAnimation)

    (DirectDrawEx)

    Download Accelerator Plus (DAP) 8000 (Build 135) (Download Accelerator Plus (DAP))
    uninstall cmd: C:\PROGRA~1\DAP\DAPREMOVE.EXE
    publisher: Speedbit Ltd.
    contact: support@downloadaccelerator.com
    help link: http://redir.speedbit.com/redir.asp?ID=7066

    (DXM_Runtime)

    (Fontcore)

    FreeRIP v2.951 2.951 (FreeRIP_is1)
    install location: C:\Program Files\FreeRIP\
    uninstall cmd: "C:\Program Files\FreeRIP\unins000.exe"
    publisher: MGShareware

    HijackThis 1.99.1 1.99.1 (HijackThis)
    uninstall cmd: \\DSP1\My Completed Downloads\HijackThis.exe /uninstall
    publisher: Soeperman Enterprises Ltd.

    (ICW)

    (IE40)

    (IE4Data)

    (IE5BAKEX)

    (IEData)

    5.2.4.2528 (IncrediMail)
    publisher: IncrediMail Ltd.
    help link: http://www.incredimail.com/english/help/index.html

    (InstallShield Uninstall Information)

    iTunes 4.7.1.30 (InstallShield_{3CB41017-F5CA-4C56-934C-ED02156251E6})
    version: 67567617
    version (major): 4
    version (minor): 7
    estimated size: 13607
    install date: 20051207
    install location: C:\Program Files\iTunes\
    install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\
    uninstall cmd: C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3CB41017-F5CA-4C56-934C-ED02156251E6}
    publisher: Apple Computer, Inc.
    contact: AppleCare Support
    help link: http://www.info.apple.com/
    help telephone: 1-800-275-2273

    Kaspersky Anti-Virus 6.0 6.0.1.411 (InstallWIX_{75193929-9A52-4CA4-98DE-8C7296940920})
    uninstall cmd: MsiExec.exe /I{75193929-9A52-4CA4-98DE-8C7296940920}
    publisher: Kaspersky Lab
    help link: http://www.kaspersky.com/support.asp

    (KB884016)

    (KB893803)

    Macromedia Shockwave Player 10.1.0.11 (Macromedia Shockwave Player)
    uninstall cmd: C:\WINDOWS\system32\MACROMED\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\MACROMED\SHOCKW~1\Install.log
    publisher: Macromedia, Inc.
    help link: http://www.macromedia.com/support/shockwave

    (MobileOptionPack)

    (MPlayer2)

    (MSI30-Beta1)

    (MSI30-Beta2)

    (MSI30-KB884016)

    (MSI30-RC1)

    (MSI30-RC2)

    (MSI30a-KB884016)

    (MSI31-Beta)

    (MSI31-RC1)

    (NetMeeting)

    (OutlookExpress)

    (PCHealth)
    uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

    QuickTime (QuickTime)
    uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log

    (RealJukebox 1.0)
    uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    RealPlayer (RealPlayer 6.0)
    uninstall cmd: C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    (SchedulingAgent)

    (Shockwave)

    Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
    uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q
    publisher: Adobe Systems
    help link: http://www.adobe.com/go/flashplayer_support/

    NetoDragon 56K Voice Modem (SLAMRNTV)
    uninstall cmd: C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove

    Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
    install location: C:\Program Files\Spybot - Search & Destroy\
    uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
    publisher: Safer Networking Limited

    Spyware Doctor 4.0 4.0 (Spyware Doctor_is1)
    install date: 20070201
    install location: C:\Program Files\Spyware Doctor\
    uninstall cmd: "C:\Program Files\Spyware Doctor\unins000.exe"
    publisher: PC Tools
    help link: http://www.pctools.com/spyware-doctor/support/

    StartUp Manager (StartUp Manager)
    uninstall cmd: C:\Program Files\INAC\StartUp Manager\uninstall.exe

    Windows Genuine Advantage Notifications (KB905474) 1.5.0532.0 (WgaNotify)
    install date: 20060503
    publisher: Microsoft Corporation
    help link: http://support.microsoft.com?kbid=905474

    Winamp (remove only) (Winamp)
    uninstall cmd: "C:\Program Files\Winamp\UninstWA.exe"

    WinRAR archiver (WinRAR archiver)
    uninstall cmd: C:\Program Files\WinRAR\uninstall.exe

    WinZip 8.1 (4331) (WinZip)
    version (major): 8
    version (minor): 1
    install location: C:\PROGRA~1\WINZIP\
    uninstall cmd: "C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
    publisher: WinZip Computing, Inc.
    help link: http://www.winzip.com/xsupport.htm

    Yahoo! Browser Services (Yahoo! Customizations)
    uninstall cmd: C:\PROGRA~1\YAHOO!\COMMON\unyext.exe

    Yahoo! Messenger (Yahoo! Messenger)
    uninstall cmd: C:\PROGRA~1\YAHOO!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\YAHOO!\MESSEN~1\INSTALL.LOG

    ZTE ADSL Dialer 1.0j_MY (ZTE ADSL Dialer_is1)
    uninstall cmd: "C:\Program Files\ZTE\ADSLDIAL\unins000.exe"
    publisher: ZTE Inc.
    help link: http://www.ZTE.com.cn

    AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC})
    install location: C:\Program Files\DivX

    AstraPix 450/460 ({26BE3FED-5DEF-40E3-96E5-67A9AC831B7B})
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{26BE3FED-5DEF-40E3-96E5-67A9AC831B7B}\Setup.exe"

    Java(TM) SE Runtime Environment 6 1.6.0.0 ({3248F0A8-6813-11D6-A77B-00B0D0160000})
    version: 17170432
    version (major): 1
    version (minor): 6
    estimated size: 111474
    install date: 20070228
    install source: C:\Documents and Settings\User\Application Data\Sun\Java\jre1.6.0\
    uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
    publisher: Sun Microsystems, Inc.
    contact: http://java.com
    help link: http://java.com
    readme: C:\Program Files\Java\jre1.6.0\README.txt

    WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227})
    version: 154279267
    version (major): 9
    version (minor): 50
    estimated size: 2500
    install date: 20051207
    install source: C:\WINDOWS\system32\
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/windows

    iTunes 4.7.1.30 ({3CB41017-F5CA-4C56-934C-ED02156251E6})
    version: 67567617
    version (major): 4
    version (minor): 7
    estimated size: 13607
    install date: 20051207
    install location: C:\Program Files\iTunes\
    install source: C:\WINDOWS\Downloaded Installations\{628E8630-7947-49EA-BE90-7F8BFF77A79C}\
    publisher: Apple Computer, Inc.
    contact: AppleCare Support
    help link: http://www.info.apple.com/
    help telephone: 1-800-275-2273

    ({62369F2F77534556AEF4C58152E3BDE5})

    PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall

    Kaspersky Anti-Virus 6.0 6.0.1.411 ({75193929-9A52-4CA4-98DE-8C7296940920})
    version: 100663297
    version (major): 6
    estimated size: 27246
    install date: 20070124
    install source: C:\kav\kav6.0\english\
    publisher: Kaspersky Lab
    help link: http://www.kaspersky.com/support.asp

    DivX 6.1.1 ({7B63B2922B174135AFC0E1377DD81EC2})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
    publisher: DivX, Inc.

    DivX Player 6.1.1 ({8ADFC4160D694100B5B8A22DE9DCABD9})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
    publisher: DivXNetworks, Inc.

    Microsoft Office Professional Edition 2003 11.0.5614.0 ({90110409-6000-11D3-8CFE-0150048383C9})
    version: 184554990
    version (major): 11
    estimated size: 379454
    install date: 20051219
    install location: C:\Program Files\Microsoft Office\
    install source: D:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\
    uninstall cmd: MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/support
    readme: C:\Program Files\Microsoft Office\OFFICE11\1033\OFREADME.HTM

    Microsoft Office XP Small Business 10.0.2627.01 ({91130409-6000-11D3-8CFE-0050048383C9})
    version: 167774787
    version (major): 10
    estimated size: 474490
    install date: 20051207
    install location: INSTALLLOCATION
    install source: E:\
    uninstall cmd: MsiExec.exe /I{91130409-6000-11D3-8CFE-0050048383C9}
    publisher: Microsoft Corporation
    help link: http://www.microsoft.com/support
    readme: C:\Program Files\Microsoft Office\Office10\1033\OFREAD10.HTM

    Adobe Reader 7.0 7.0.0 ({AC76BA86-7AD7-1033-7B44-A70000000000})
    version: 117440512
    version (major): 7
    estimated size: 65659
    install date: 20051207
    install location: C:\Program Files\Adobe\Acrobat 7.0\Reader\
    install source: C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig\ENU\
    uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
    publisher: Adobe Systems Incorporated
    comments:
    contact:
    help link: http://www.adobe.com/support/main.html
    help telephone:
    readme: C:\Program Files\Adobe\Acrobat 7.0\Reader\Readme.htm

    ACDSee 8 8.0.39 ({AE80641A-0C8D-4670-A518-B4EC154B1027})
    version: 134217767
    version (major): 8
    estimated size: 34108
    install date: 20061213
    install location: C:\Program Files\ACD Systems\
    install source: C:\WINDOWS\Downloaded Installations\{015363C3-0256-4F1B-95E5-304040BF9C4D}\
    uninstall cmd: MsiExec.exe /I{AE80641A-0C8D-4670-A518-B4EC154B1027}
    publisher: ACD Systems Ltd.
    comments: This database contains the necessary files and logic to install ACDSee and additional support programs and plug-ins where appropriate
    contact: Technical Support
    help link: http://go.acdsystems.com/client/en/534017
    help telephone: 250-544-6701

    ({B13A7C41581B411290FBC0395694E2A9})

    DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29})
    install location: C:\Program Files\DivX
    uninstall cmd: C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
    publisher: DivX,Inc.

    Nokia Connectivity Cable Driver 1.00.159 ({B7757137-0A71-4A9F-8A82-1AE4A1B73420})
    version: 16777375
    version (major): 1
    estimated size: 400
    install date: 20061215
    install location: C:\Program Files\Nokia\Connectivity Cable Driver\
    install source: C:\Program Files\Nokia\Nokia PC Suite 6\
    uninstall cmd: MsiExec.exe /X{B7757137-0A71-4A9F-8A82-1AE4A1B73420}
    publisher: Nokia
    help link: http://www.nokia.com/nokia/0,8764,75877,00.html

    jetAudio 6.1 ({DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A})
    version: 100728832
    install date: 20060401
    install location: C:\Program Files\JetAudio
    install source: C:\DOCUME~1\User\LOCALS~1\Temp\bye9B.tmp\Disk1\
    uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -l0x9 -removeonly
    publisher: JetAudio, Inc.

    Windows Live Messenger 8.0.0812.00 ({FCE50DB8-C610-4C42-BE5C-193F46C6F812})
    version: 134218540
    version (major): 8
    estimated size: 33821
    install date: 20070110
    install source: C:\DOCUME~1\User\LOCALS~1\Temp\IXP000.TMP\
    uninstall cmd: MsiExec.exe /I{FCE50DB8-C610-4C42-BE5C-193F46C6F812}
    publisher: Microsoft Corporation

    Nokia PC Suite 6.70.22 ({FF059F2A-62A7-4E6A-B305-559591D2769E})
    version: 105250838
    version (major): 6
    version (minor): 70
    estimated size: 36140
    install date: 20061215
    install location: C:\Program Files\Nokia\
    install source: E:\software\PCSuite\
    uninstall cmd: MsiExec.exe /I{FF059F2A-62A7-4E6A-B305-559591D2769E}
    publisher: Nokia
    help link: http://www.nokia.com/nokia/0,8764,75877,00.html



    --- System Services ---
    Service (registry key): Abiosdsk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): abp480n5
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ac97intc
    Display name: Intel(r) 82801 Audio Driver Install Service (WDM)
    Image path: system32\drivers\ac97intc.sys
    Image size: 96256
    Image MD5: 0F2D66D5F08EBE2F77BB904288DCF6F0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ACPI
    Display name: Microsoft ACPI Driver
    Image path: system32\DRIVERS\ACPI.sys
    Image size: 187776
    Image MD5: A10C7534F7223F4A73A948967D00E69B
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ACPIEC
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): adpu160m
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aec
    Display name: Microsoft Kernel Acoustic Echo Canceller
    Image path: system32\drivers\aec.sys
    Image size: 142464
    Image MD5: 841F385C6CFAF66B58FBD898722BB4F0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): AFD
    Display name: AFD
    Description: AFD Networking Support Environment
    Image path: \SystemRoot\System32\drivers\afd.sys
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Aha154x
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78u2
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Alerter
    Display name: Alerter
    Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): ALG
    Display name: Application Layer Gateway Service
    Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\alg.exe
    Image size: 44544
    Image MD5: F1958FBF86D5C004CF19A5951A9514B7
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): AliIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): amsint
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): AppMgmt
    Display name: Application Management
    Description: Provides software installation services such as Assign, Publish, and Remove.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): asc
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3350p
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3550
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): AsyncMac
    Display name: RAS Asynchronous Media Driver
    Description: RAS Asynchronous Media Driver
    Image path: system32\DRIVERS\asyncmac.sys
    Image size: 14336
    Image MD5: 02000ABF34AF4C218C35D257024807D6
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): atapi
    Display name: Standard IDE/ESDI Hard Disk Controller
    Image path: system32\DRIVERS\atapi.sys
    Image size: 95360
    Image MD5: CDFE4411A69C224BD1D11B2DA92DAC51
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): Atdisk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): Atmarpc
    Display name: ATM ARP Client Protocol
    Description: ATM ARP Client Protocol
    Image path: system32\DRIVERS\atmarpc.sys
    Image size: 59904
    Image MD5: EC88DA854AB7D7752EC8BE11A741BB7F
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): AudioSrv
    Display name: Windows Audio
    Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: PlugPlay,RpcSs

    Service (registry key): audstub
    Display name: Audio Stub Driver
    Image path: system32\DRIVERS\audstub.sys
    Image size: 3072
    Image MD5: D9F724AA26C010A217C97606B160ED68
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): AVP
    Start: 2
    Type: 0
    Error Control: 0

    Service (registry key): AxPsHook11
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): BattC
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Beep
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): BITS
    Display name: Background Intelligent Transfer Service
    Description: Transfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Browser
    Display name: Computer Browser
    Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,LanmanServer

    Service (registry key): cbidf2k
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): cd20xrnt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Cdaudio
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): Cdfs
    Start: 4
    Type: 2
    Error Control: 1
    Depends On group: "SCSI CDROM Class"

    Service (registry key): Cdrom
    Display name: CD-ROM Driver
    Image path: system32\DRIVERS\cdrom.sys
    Image size: 49536
    Image MD5: AF9C19B3100FE010496B1A27181FBF72
    Start: 1
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): Changer
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): CiSvc
    Display name: Indexing Service
    Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\cisvc.exe
    Image size: 5632
    Image MD5: 3192BD04D032A9C4A85A3278C268A13A
    Start: 3
    Type: 288
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): ClipSrv
    Display name: ClipBook
    Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\clipsrv.exe
    Image size: 33280
    Image MD5: C8DEC22C4137D7A90F8BDF41CA4B82AE
    Start: 4
    Type: 16
    Error Control: 1
    Depends On services: NetDDE

    Service (registry key): CmdIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): COMSysApp
    Display name: COM+ System Application
    Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
    Image size: 5120
    Image MD5: DD87DB7387B9EB441C5674888A0D840C
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: rpcss

    Service (registry key): ContentFilter
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): ContentIndex
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Cpqarray
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): CryptSvc
    Display name: Cryptographic Services
    Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): dac2w2k
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): dac960nt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): DcomLaunch
    Display name: DCOM Server Process Launcher
    Description: Provides launch functionality for DCOM services.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost -k DcomLaunch
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): Dhcp
    Display name: DHCP Client
    Description: Manages network configuration by registering and updating IP addresses and DNS names.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip,Afd,NetBT

    Service (registry key): Disk
    Display name: Disk Driver
    Image path: system32\DRIVERS\disk.sys
    Image size: 36352
    Image MD5: 00CA44E4534865F8A3B64F7C0984BFF0
    Start: 0
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): dmadmin
    Display name: Logical Disk Manager Administrative Service
    Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\dmadmin.exe /com
    Image size: 224768
    Image MD5: 554C7CB178FE3BD12450B81AD63ADBC3
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay,DmServer

    Service (registry key): dmboot
    Image path: System32\drivers\dmboot.sys
    Image size: 799744
    Image MD5: C0FBB516E06E243F0CF31F597E7EBF7D
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): dmio
    Display name: Logical Disk Manager Driver
    Image path: system32\DRIVERS\dmio.sys
    Image size: 153344
    Image MD5: F5E7B358A732D09F4BCF2824B88B9E28
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmload
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmserver
    Display name: Logical Disk Manager
    Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay

    Service (registry key): DMusic
    Display name: Microsoft Kernel DLS Syntheiszer
    Image path: system32\drivers\DMusic.sys
    Image size: 52864
    Image MD5: A6F881284AC1150E37D9AE47FF601267
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Dnscache
    Display name: DNS Client
    Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): dpti2o
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): drmkaud
    Display name: Microsoft Kernel DRM Audio Descrambler
    Image path: system32\drivers\drmkaud.sys
    Image size: 2944
    Image MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ERSvc
    Display name: Error Reporting Service
    Description: Allows error reporting for services and applictions running in non-standard environments.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RpcSs

    Service (registry key): Eventlog
    Display name: Event Log
    Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 108032
    Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): EventSystem
    Display name: COM+ Event System
    Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): Fastfat
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): FastUserSwitchingCompatibility
    Display name: Fast User Switching Compatibility
    Description: Provides management for applications that require assistance in a multiple user environment.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: TermService

    Service (registry key): Fdc
    Display name: Floppy Disk Controller Driver
    Image path: system32\DRIVERS\fdc.sys
    Image size: 27392
    Image MD5: CED2E8396A8838E59D8FD529C680E02C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Fips
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Flpydisk
    Display name: Floppy Disk Driver
    Image path: system32\DRIVERS\flpydisk.sys
    Image size: 20480
    Image MD5: 0DD1DE43115B93F4D85E889D7A86F548
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): FltMgr
    Display name: FltMgr
    Description: File System Filter Manager Driver
    Image path: system32\DRIVERS\fltMgr.sys
    Image size: 124800
    Image MD5: 157754F0DF355A9E0A6F54721914F9C6
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): Fs_Rec
    Start: 1
    Type: 8
    Error Control: 0

    Service (registry key): Ftdisk
    Display name: Volume Manager Driver
    Image path: system32\DRIVERS\ftdisk.sys
    Image size: 125056
    Image MD5: 6AC26732762483366C3969C9E4D2259D
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): gameenum
    Display name: Game Port Enumerator
    Image path: system32\DRIVERS\gameenum.sys
    Image size: 10624
    Image MD5: 5F92FD09E5610A5995DA7D775EADCD12
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): GEARAspiWDM
    Display name: GEAR CDRom Filter
    Image path: SYSTEM32\DRIVERS\GEARAspiWDM.sys
    Image size: 13872
    Image MD5: 2FB04DB459C71F416EE8B05448CA4AC3
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Gpc
    Display name: Generic Packet Classifier
    Description: Generic Packet Classifier
    Image path: system32\DRIVERS\msgpc.sys
    Image size: 35072
    Image MD5: C0F1D4A21DE5A415DF8170616703DEBF
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): helpsvc
    Display name: Help and Support
    Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): HidServ
    Display name: Human Interface Device Access
    Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): hpn
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): HSFHWBS2
    Image path: system32\DRIVERS\HSFBS2S2.sys
    Image size: 220032
    Image MD5: 970178E8E003EB1481293830069624B9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): HSF_DP
    Image path: system32\DRIVERS\HSFDPSP2.sys
    Image size: 1041536
    Image MD5: EBB354438A4C5A3327FB97306260714A
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): HTTP
    Display name: HTTP
    Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
    Image path: System32\Drivers\HTTP.sys
    Image size: 263040
    Image MD5: C19B522A9AE0BBC3293397F3055E80A1
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): HTTPFilter
    Display name: HTTP SSL
    Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: HTTP

    Service (registry key): i2omgmt
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): i2omp
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): i8042prt
    Display name: i8042 Keyboard and PS/2 Mouse Port Driver
    Image path: system32\DRIVERS\i8042prt.sys
    Image size: 52736
    Image MD5: 5502B58EEF7486EE6F93F3F164DCB808
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): i81x
    Image path: system32\DRIVERS\i81xnt5.sys
    Image size: 161020
    Image MD5: 06B7EF73BA5F302EECC294CDF7E19702
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP0
    Image path: system32\DRIVERS\wADV01nt.sys
    Image size: 12415
    Image MD5: 7B5B44EFE5EB9DADFB8EE29700885D23
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP1
    Image path: system32\DRIVERS\wADV02NT.sys
    Image size: 12127
    Image MD5: EB1F6BAB6C22EDE0BA551B527475F7E9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP2
    Image path: system32\DRIVERS\wADV05NT.sys
    Image size: 11775
    Image MD5: 03CE989D846C1AA81145CB22FCB86D06
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP3
    Image path: system32\DRIVERS\wSiINTxx.sys
    Image size: 12063
    Image MD5: 525849B4469DE021D5D61B4DB9BE3A9D
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP4
    Image path: system32\DRIVERS\wVchNTxx.sys
    Image size: 19455
    Image MD5: 589C2BCDB5BD602BF7B63D210407EF8C
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP5
    Image path: system32\DRIVERS\wADV07nt.sys
    Image size: 11807
    Image MD5: 0308AEF61941E4AF478FA1A0F83812F5
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP6
    Image path: system32\DRIVERS\wADV08nt.sys
    Image size: 11295
    Image MD5: 714038A8AA5DE08E12062202CD7EAEB5
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimFP7
    Image path: system32\DRIVERS\wADV09nt.sys
    Image size: 11871
    Image MD5: 7BB3AA595E4507A788DE1CDC63F4C8C4
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV0
    Image path: system32\DRIVERS\wATV01nt.sys
    Image size: 29311
    Image MD5: D83BDD5C059667A2F647A6BE5703A4D2
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV1
    Image path: system32\DRIVERS\wATV02NT.sys
    Image size: 19551
    Image MD5: ED968D23354DAA0D7C621580C012A1F6
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV3
    Image path: system32\DRIVERS\wATV04nt.sys
    Image size: 33599
    Image MD5: D738273F218A224C1DDAC04203F27A84
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV4
    Image path: system32\DRIVERS\wCh7xxNT.sys
    Image size: 23615
    Image MD5: 0052D118995CBAB152DAABE6106D1442
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV5
    Image path: system32\DRIVERS\wATV10nt.sys
    Image size: 25471
    Image MD5: 791CC45DE6E50445BE72E8AD6401FF45
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): iAimTV6
    Image path: system32\DRIVERS\wATV06nt.sys
    Image size: 22271
    Image MD5: 352FA0E98BC461CE1CE5D41F64DB558D
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): ikhfile
    Display name: File Security Kernel Anti-Spyware Driver
    Description: File Security Kernel Anti-Spyware
    Image path: system32\drivers\ikhfile.sys
    Image size: 30592
    Image MD5: F24866EE5C0819E9B1B58F2C00AF078E
    Start: 1
    Type: 2
    Error Control: 0

    Service (registry key): ikhlayer
    Display name: Kernel Anti-Spyware Driver
    Description: Kernel Anti-Spyware
    Image path: system32\drivers\ikhlayer.sys
    Image size: 51072
    Image MD5: 9A2CFF8E3EF0A35F23F544FAB915C060
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): Imapi
    Display name: CD-Burning Filter Driver
    Image path: system32\DRIVERS\imapi.sys
    Image size: 41856
    Image MD5: F8AA320C6A0409C0380E5D8A99D76EC6
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): ImapiService
    Display name: IMAPI CD-Burning COM Service
    Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\imapi.exe
    Image size: 150016
    Image MD5: FA788520BCAC0F5D9D5CDE5615C0D931
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): inetaccs
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): ini910u
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Inport
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): IntelIde
    Image path: system32\DRIVERS\intelide.sys
    Image size: 5504
    Image MD5: 2D722B2B54AB55B2FA475EB58D7B2AAD
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): Ip6Fw
    Display name: IPv6 Windows Firewall Driver
    Description: Provides intrusion prevention service for a home or small office network.
    Image path: system32\DRIVERS\Ip6Fw.sys
    Image size: 29056
    Image MD5: 4448006B6BC60E6C027932CFC38D6855
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): IpFilterDriver
    Display name: IP Traffic Filter Driver
    Description: IP Traffic Filter Driver
    Image path: system32\DRIVERS\ipfltdrv.sys
    Image size: 32896
    Image MD5: 731F22BA402EE4B62748ADAF6363C182
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): IpInIp
    Display name: IP in IP Tunnel Driver
    Description: IP in IP Tunnel Driver
    Image path: system32\DRIVERS\ipinip.sys
    Image size: 20992
    Image MD5: E1EC7F5DA720B640CD8FB8424F1B14BB
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): IpNat
    Display name: IP Network Address Translator
    Description: IP Network Address Translator
    Image path: system32\DRIVERS\ipnat.sys
    Image size: 134912
    Image MD5: B5A8E215AC29D24D60B4D1250EF05ACE
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): iPodService
    Display name: iPod Service
    Description: iPod hardware management services
    Object name: LocalSystem
    Image path: "C:\Program Files\iPod\bin\iPodService.exe"
    Image size: 327680
    Image MD5: 3AC9F355ECCE7D6BB8FF184E9B2229A9
    Start: 3
    Type: 16
    Error Control: 0

    Service (registry key): IPSec
    Display name: IPSEC driver
    Description: IPSEC driver
    Image path: system32\DRIVERS\ipsec.sys
    Image size: 74752
    Image MD5: 64537AA5C003A6AFEEE1DF819062D0D1
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): IRENUM
    Display name: IR Enumerator Service
    Image path: system32\DRIVERS\irenum.sys
    Image size: 11264
    Image MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ISAPISearch
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): isapnp
    Display name: PnP ISA/EISA Bus Driver
    Image path: system32\DRIVERS\isapnp.sys
    Image size: 35840
    Image MD5: E504F706CCB699C2596E9A3DA1596E87
    Start: 0
    Type: 1
    Error Control: 3

    Service (registry key): Kbdclass
    Display name: Keyboard Class Driver
    Image path: system32\DRIVERS\kbdclass.sys
    Image size: 24576
    Image MD5: EBDEE8A2EE5393890A1ACEE971C4C246
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): kl1
    Display name: Kl1
    Image path: system32\drivers\kl1.sys
    Image size: 104448
    Image MD5: BC02A8E0DD5DC266E5CC3636DD454403
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): klif
    Display name: Klif
    Image path: \??\C:\WINDOWS\system32\drivers\klif.sys
    Image size: 174864
    Image MD5: F0653E5E164123CAD51EDDA22418C2A3
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): kmixer
    Display name: Microsoft Kernel Wave Audio Mixer
    Image path: system32\drivers\kmixer.sys
    Image size: 171776
    Image MD5: D93CAD07C5683DB066B0B2D2D3790EAD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): KSecDD
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): lanmanserver
    Display name: Server
    Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): lanmanworkstation
    Display name: Workstation
    Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): lbrtfdc
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): ldap
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): LicenseService
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): LmHosts
    Display name: TCP/IP NetBIOS Helper
    Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: NetBT,Afd

    Service (registry key): MDM
    Display name: Machine Debug Manager
    Description: Supports local and remote debugging for Visual Studio and script debuggers. If this service is stopped, the debuggers will not function properly.
    Object name: LocalSystem
    Image path: "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"
    Image size: 322120
    Image MD5: 11F714F85530A2BD134074DC30E99FCA
    Start: 2
    Type: 272
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): mdmxsdk
    Image path: system32\DRIVERS\mdmxsdk.sys
    Image size: 11868
    Image MD5: 195741AEE20369980796B557358CD774
    Start: 2
    Type: 1
    Error Control: 0

    Service (registry key): Messenger
    Display name: Messenger
    Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS

    Service (registry key): mnmdd
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): mnmsrvc
    Display name: NetMeeting Remote Desktop Sharing
    Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\mnmsrvc.exe
    Image size: 32768
    Image MD5: F6415361201915B9FE3896B0E4E724FF
    Start: 3
    Type: 272
    Error Control: 1

    Service (registry key): Modem
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): MODEMCSA
    Display name: Unimodem Streaming Filter Device
    Image path: system32\drivers\MODEMCSA.sys
    Image size: 16128
    Image MD5: 1992E0D143B09653AB0F9C5E04B0FD65
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mouclass
    Display name: Mouse Class Driver
    Image path: system32\DRIVERS\mouclass.sys
    Image size: 23040
    Image MD5: 34E1F0031153E491910E12551400192C
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): MountMgr
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): mraid35x
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): MRxDAV
    Display name: WebDav Client Redirector
    Description: WebDav Client Redirector
    Image path: system32\DRIVERS\mrxdav.sys
    Image size: 181248
    Image MD5: 46EDCC8F2DB2F322C24F48785CB46366
    Start: 3
    Type: 2
    Error Control: 1

    Service (registry key): MRxSmb
    Display name: MRXSMB
    Description: MRXSMB
    Image path: system32\DRIVERS\mrxsmb.sys
    Image size: 451456
    Image MD5: 1FD607FC67F7F7C633C3DA65BFC53D18
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): MSDTC
    Display name: Distributed Transaction Coordinator
    Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\NetworkService
    Image path: C:\WINDOWS\system32\msdtc.exe
    Image size: 6144
    Image MD5: C7C3D89EB0A6F3DBA622EA737FA335B1
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS,SamSS

    Service (registry key): Msfs
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): MSIServer
    Display name: Windows Installer
    Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\msiexec.exe /V
    Image size: 77312
    Image MD5: 4236AE241F193F58ADAB141CECCFD5F4
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): MSKSSRV
    Display name: Microsoft Streaming Service Proxy
    Image path: system32\drivers\MSKSSRV.sys
    Image size: 7552
    Image MD5: AE431A8DD3C1D0D0610CDBAC16057AD0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): MSPCLOCK
    Display name: Microsoft Streaming Clock Proxy
    Image path: system32\drivers\MSPCLOCK.sys
    Image size: 5376
    Image MD5: 13E75FEF9DFEB08EEDED9D0246E1F448
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): MSPQM
    Display name: Microsoft Streaming Quality Manager Proxy
    Image path: system32\drivers\MSPQM.sys
    Image size: 4992
    Image MD5: 1988A33FF19242576C3D0EF9CE785DA7
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): mssmbios
    Display name: Microsoft System Management BIOS Driver
    Image path: system32\DRIVERS\mssmbios.sys
    Image size: 15488
    Image MD5: 469541F8BFD2B32659D5D463A6714BCE
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ms_mpu401
    Display name: Microsoft MPU-401 MIDI UART Driver
    Image path: system32\drivers\msmpu401.sys
    Image size: 2944
    Image MD5: CA3E22598F411199ADC2DFEE76CD0AE0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mtlmnt5
    Display name: Mtlmnt5
    Image path: system32\DRIVERS\Mtlmnt5.sys
    Image size: 221736
    Image MD5: 32CE8D0359672BCB720BF82C86A50D71
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mtlstrm
    Display name: Mtlstrm
    Image path: system32\DRIVERS\Mtlstrm.sys
    Image size: 1301128
    Image MD5: 8ADA829D3D7CF2DB7B1C41F3C7BEAA79
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Mup
    Display name: Mup
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): NDIS
    Display name: NDIS System Driver
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): NdisTapi
    Display name: Remote Access NDIS TAPI Driver
    Description: Remote Access NDIS TAPI Driver
    Image path: system32\DRIVERS\ndistapi.sys
    Image size: 9600
    Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Ndisuio
    Display name: NDIS Usermode I/O Protocol
    Description: NDIS Usermode I/O Protocol
    Image path: system32\DRIVERS\ndisuio.sys
    Image size: 12928
    Image MD5: 34D6CD56409DA9A7ED573E1C90A308BF
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NdisWan
    Display name: Remote Access NDIS WAN Driver
    Description: Remote Access NDIS WAN Driver
    Image path: system32\DRIVERS\ndiswan.sys
    Image size: 91776
    Image MD5: 0B90E255A9490166AB368CD55A529893
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NDProxy
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): NetBIOS
    Display name: NetBIOS Interface
    Description: NetBIOS Interface
    Image path: system32\DRIVERS\netbios.sys
    Image size: 34560
    Image MD5: 3A2ACA8FC1D7786902CA434998D7CEB4
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): NetBT
    Display name: NetBios over Tcpip
    Description: NetBios over Tcpip
    Image path: system32\DRIVERS\netbt.sys
    Image size: 162816
    Image MD5: 0C80E410CD2F47134407EE7DD19CC86B
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): NetDDE
    Display name: Network DDE
    Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 111104
    Image MD5: 05AFB5AD06462257BEA7495283C86D50
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: NetDDEDSDM

    Service (registry key): NetDDEdsdm
    Display name: Network DDE DSDM
    Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 111104
    Image MD5: 05AFB5AD06462257BEA7495283C86D50
    Start: 4
    Type: 32
    Error Control: 1

    Service (registry key): Netlogon
    Display name: Net Logon
    Description: Supports pass-through authentication of account logon events for computers in a domain.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): Netman
    Display name: Network Connections
    Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 288
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Nla
    Display name: Network Location Awareness (NLA)
    Description: Collects and stores network configuration and location information, and notifies applications when this information changes.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: Tcpip,Afd

    Service (registry key): Nokia USB Generic
    Display name: Nokia USB Generic
    Image path: system32\drivers\nmwcdc.sys
    Image size: 8704
    Image MD5: 19CBCC1C8168FD6736DE06F287A1413E
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Nokia USB Modem
    Display name: Nokia USB Modem
    Image path: system32\drivers\nmwcdcm.sys
    Image size: 12800
    Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Nokia USB Phone Parent
    Display name: Nokia USB Phone Parent
    Image path: system32\drivers\nmwcd.sys
    Image size: 124928
    Image MD5: 09899CA1E1DF288BEB768461401D18EE
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Nokia USB Port
    Display name: Nokia USB Port
    Image path: system32\drivers\nmwcdcj.sys
    Image size: 12800
    Image MD5: D65E4CAF56881EC52D9EA4FC11C5153F
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Npfs
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): Ntfs
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): NtLmSsp
    Display name: NT LM Security Support Provider
    Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): NtmsSvc
    Display name: Removable Storage
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): NtMtlFax
    Display name: NtMtlFax
    Image path: system32\DRIVERS\NtMtlFax.sys
    Image size: 167384
    Image MD5: F11E04E2D0034172EB2938D0BBC7B05B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Null
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): NwlnkFlt
    Display name: IPX Traffic Filter Driver
    Description: IPX Traffic Filter Driver
    Image path: system32\DRIVERS\nwlnkflt.sys
    Image size: 12416
    Image MD5: B305F3FAD35083837EF46A0BBCE2FC57
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: NwlnkFwd

    Service (registry key): NwlnkFwd
    Display name: IPX Traffic Forwarder Driver
    Description: IPX Traffic Forwarder Driver
    Image path: system32\DRIVERS\nwlnkfwd.sys
    Image size: 32512
    Image MD5: C99B3415198D1AAB7227F2C88FD664B9
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ose
    Display name: Office Source Engine
    Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports.
    Object name: LocalSystem
    Image path: "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
    Image size: 89136
    Image MD5: 7A56CF3E3F12E8AF599963B16F50FB6A
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): P3
    Display name: Intel PentiumIII Processor Driver
    Image path: system32\DRIVERS\p3.sys
    Image size: 42496
    Image MD5: 3E16EFF2A6FED2D8D7F5A66DFE65D183
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Parport
    Display name: Parallel port driver
    Image path: system32\DRIVERS\parport.sys
    Image size: 80128
    Image MD5: 29744EB4CE659DFE3B4122DEB45BC478
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): PartMgr
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ParVdm
    Start: 2
    Type: 1
    Error Control: 0
    Depends On services: Parport
    Depends On group: "Parallel arbitrator"

    Service (registry key): PCI
    Display name: PCI Bus Driver
    Image path: system32\DRIVERS\pci.sys
    Image size: 68224
    Image MD5: 8086D9979234B603AD5BC2F5D890B234
    Start: 0
    Type: 1
    Error Control: 3

    Service (registry key): PCIDump
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): PCIIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Pcmcia
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): PDCOMP
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDFRAME
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDRELI
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): PDRFRAME
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): perc2
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): perc2hib
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): PerfDisk
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfNet
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfOS
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PerfProc
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): PlugPlay
    Display name: Plug and Play
    Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 108032
    Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): PolicyAgent
    Display name: IPSEC Services
    Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS,Tcpip,IPSec

    Service (registry key): PptpMiniport
    Display name: WAN Miniport (PPTP)
    Description: WAN Miniport (PPTP)
    Image path: system32\DRIVERS\raspptp.sys
    Image size: 48384
    Image MD5: 1C5CC65AAC0783C344F16353E60B72AC
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ProtectedStorage
    Display name: Protected Storage
    Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 288
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): PSched
    Display name: QoS Packet Scheduler
    Description: QoS Packet Scheduler
    Image path: system32\DRIVERS\psched.sys
    Image size: 69120
    Image MD5: 48671F327553DCF1D27F6197F622A668
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Gpc

    Service (registry key): Ptilink
    Display name: Direct Parallel Link Driver
    Description: Direct Parallel Link Driver
    Image path: system32\DRIVERS\ptilink.sys
    Image size: 17792
    Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): PxHelp20
    Display name: PxHelp20
    Image path: System32\Drivers\PxHelp20.sys
    Image size: 20640
    Image MD5: 86724469CD077901706854974CD13C3E
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ql1080
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Ql10wnt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql12160
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql1240
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ql1280
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): RasAcd
    Display name: Remote Access Auto Connection Driver
    Description: Remote Access Auto Connection Driver
    Image path: system32\DRIVERS\rasacd.sys
    Image size: 8832
    Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): RasAuto
    Display name: Remote Access Auto Connection Manager
    Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RasMan,Tapisrv

    Service (registry key): Rasl2tp
    Display name: WAN Miniport (L2TP)
    Description: WAN Miniport (L2TP)
    Image path: system32\DRIVERS\rasl2tp.sys
    Image size: 51328
    Image MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): RasMan
    Display name: Remote Access Connection Manager
    Description: Creates a network connection.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: Tapisrv

    Service (registry key): RasPppoe
    Display name: Remote Access PPPOE Driver
    Description: Remote Access PPPOE Driver
    Image path: system32\DRIVERS\raspppoe.sys
    Image size: 41472
    Image MD5: 7306EEED8895454CBED4669BE9F79FAA
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Raspti
    Display name: Direct Parallel
    Description: Direct Parallel
    Image path: system32\DRIVERS\raspti.sys
    Image size: 16512
    Image MD5: FDBB1D60066FCFBB7452FD8F9829B242
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Rdbss
    Display name: Rdbss
    Description: Rdbss
    Image path: system32\DRIVERS\rdbss.sys
    Image size: 176512
    Image MD5: 29D66245ADBA878FFF574CD66ABD2884
    Start: 1
    Type: 2
    Error Control: 1

    Service (registry key): RDPCDD
    Image path: System32\DRIVERS\RDPCDD.sys
    Image size: 4224
    Image MD5: 4912D5B403614CE99C28420F75353332
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): RDPDD
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): rdpdr
    Display name: Terminal Server Device Redirector Driver
    Image path: system32\DRIVERS\rdpdr.sys
    Image size: 196864
    Image MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): RDPNP
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): RDPWD
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): RDSessMgr
    Display name: Remote Desktop Help Session Manager
    Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\sessmgr.exe
    Image size: 140800
    Image MD5: 729798E0933076B8FCFCD9934698F164
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): RecAgent
    Display name: recagent
    Image path: \??\C:\WINDOWS\system32\DRIVERS\RecAgent.sys
    Image size: 13776
    Image MD5: E9AAA0092D74A9D371659C4C38882E12
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): redbook
    Display name: Digital CD Audio Playback Filter Driver
    Image path: system32\DRIVERS\redbook.sys
    Image size: 57472
    Image MD5: B31B4588E4086D8D84ADBF9845C2402B
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): RemoteAccess
    Display name: Routing and Remote Access
    Description: Offers routing services to businesses in local area and wide area network environments.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: RpcSS
    Depends On group: NetBIOSGroup

    Service (registry key): RemoteRegistry
    Display name: Remote Registry
    Description: Enables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): RpcLocator
    Display name: Remote Procedure Call (RPC) Locator
    Description: Manages the RPC name service database.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\locator.exe
    Image size: 75264
    Image MD5: 793F04A09B15E7C6C11DBDFFAF06C0AB
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): RpcSs
    Display name: Remote Procedure Call (RPC)
    Description: Provides the endpoint mapper and other miscellaneous RPC services.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\system32\svchost -k rpcss
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): RSVP
    Display name: QoS RSVP
    Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\rsvp.exe
    Image size: 132608
    Image MD5: 471B3F9741D762ABE75E9DEEA4787E47
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: TcpIp,Afd,RpcSs

    Service (registry key): rtl8139
    Display name: Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver
    Image path: system32\DRIVERS\RTL8139.SYS
    Image size: 20992
    Image MD5: D507C1400284176573224903819FFDA3
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SamSs
    Display name: Security Accounts Manager
    Description: Stores security information for local user accounts.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 13312
    Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): SCardSvr
    Display name: Smart Card
    Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\SCardSvr.exe
    Image size: 95744
    Image MD5: 25D8DE134DF108E3DBC8D7D23B1AA58E
    Start: 3
    Type: 32
    Error Control: 0
    Depends On services: PlugPlay

    Service (registry key): Schedule
    Display name: Task Scheduler
    Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): SDhelper
    Display name: PC Tools Spyware Doctor
    Description: Provides spyware and malware protection for the system. If this service is disabled spyware protection will be reduced.
    Object name: LocalSystem
    Image path: C:\Program Files\Spyware Doctor\sdhelp.exe
    Image size: 895088
    Image MD5: D8CA03BE0F6DC8C8D71009795028006A
    Start: 2
    Type: 16
    Error Control: 1

    Service (registry key): Secdrv
    Display name: Secdrv
    Description: SafeDisc driver
    Image path: system32\DRIVERS\secdrv.sys
    Image size: 27440
    Image MD5: D26E26EA516450AF9D072635C60387F4
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): seclogon
    Display name: Secondary Logon
    Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 288
    Error Control: 0

    Service (registry key): SENS
    Display name: System Event Notification
    Description: Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: EventSystem

    Service (registry key): serenum
    Display name: Serenum Filter Driver
    Image path: system32\DRIVERS\serenum.sys
    Image size: 15488
    Image MD5: A2D868AEEFF612E70E213C451A70CAFB
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Serial
    Display name: Serial port driver
    Image path: system32\DRIVERS\serial.sys
    Image size: 64896
    Image MD5: CD9404D115A00D249F70A371B46D5A26
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): sermouse
    Display name: Serial Mouse Driver
    Image path: system32\DRIVERS\sermouse.sys
    Image size: 17664
    Image MD5: 1F16931C722C69E4A7866244796C66A0
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Sfloppy
    Start: 1
    Type: 1
    Error Control: 0
    Depends On group: "SCSI miniport"

    Service (registry key): SharedAccess
    Display name: Windows Firewall/Internet Connection Sharing (ICS)
    Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Netman,WinMgmt

    Service (registry key): ShellHWDetection
    Display name: Shell Hardware Detection
    Description: Provides notifications for AutoPlay hardware events.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RpcSs

    Service (registry key): Simbad
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Slntamr
    Display name: NetoDragon AMR_PCI Driver
    Image path: system32\DRIVERS\slntamr.sys
    Image size: 545528
    Image MD5: 2EE2E5AA1B0FEB8E32D615BC8AAE6D14
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): SlNtHal
    Display name: SlNtHal
    Image path: system32\DRIVERS\Slnthal.sys
    Image size: 86128
    Image MD5: D84CE5182F7D9F3E7E4FF0C36B16A466
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SlWdmSup
    Display name: SlWdmSup
    Image path: system32\DRIVERS\SlWdmSup.sys
    Image size: 39348
    Image MD5: 4A35904E8EE6C103C815EE269CC7A7B9
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Sparrow
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): splitter
    Display name: Microsoft Kernel Audio Splitter
    Image path: system32\drivers\splitter.sys
    Image size: 6400
    Image MD5: 8E186B8F23295D1E42C573B82B80D548
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Spooler
    Display name: Print Spooler
    Description: Loads files to memory for later printing.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\spoolsv.exe
    Image size: 57856
    Image MD5: 7435B108B935E42EA92CA94F59C8E717
    Start: 2
    Type: 272
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): sp_rsdrv2
    Display name: Spyware Terminator Driver 2
    Image path: \??\C:\Documents and Settings\All Users\Application Data\Spyware Terminator\sp_rsdrv2.sys
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): sr
    Display name: System Restore Filter Driver
    Image path: system32\DRIVERS\sr.sys
    Image size: 73472
    Image MD5: E41B6D037D6CD08461470AF04500DC24
    Start: 0
    Type: 2
    Error Control: 1

    Service (registry key): srservice
    Display name: System Restore Service
    Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): Srv
    Display name: Srv
    Description: Srv
    Image path: system32\DRIVERS\srv.sys
    Image size: 336256
    Image MD5: 20B7E396720353E4117D64D9DCB926CA
    Start: 3
    Type: 2
    Error Control: 1

    Service (registry key): SSDPSRV
    Display name: SSDP Discovery Service
    Description: Enables discovery of UPnP devices on your home network.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: HTTP

    Service (registry key): stisvc
    Display name: Windows Image Acquisition (WIA)
    Description: Provides image acquisition services for scanners and cameras.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): swenum
    Display name: Software Bus Driver
    Image path: system32\DRIVERS\swenum.sys
    Image size: 4352
    Image MD5: 03C1BAE4766E2450219D20B993D6E046
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): swmidi
    Display name: Microsoft Kernel GS Wavetable Synthesizer
    Image path: system32\drivers\swmidi.sys
    Image size: 54272
    Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SwPrv
    Display name: MS Software Shadow Copy Provider
    Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{56859176-B9E9-4E77-B6D9-37C208D2F4BE}
    Image size: 5120
    Image MD5: DD87DB7387B9EB441C5674888A0D840C
    Start: 3
    Type: 16
    Error Control: 0
    Depends On services: rpcss

    Service (registry key): symc810
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): symc8xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sym_hi
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sym_u3
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): sysaudio
    Display name: Microsoft Kernel System Audio Device
    Image path: system32\drivers\sysaudio.sys
    Image size: 60800
    Image MD5: 650AD082D46BAC0E64C9C0E0928492FD
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): SysmonLog
    Display name: Performance Logs and Alerts
    Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT Authority\NetworkService
    Image path: %SystemRoot%\system32\smlogsvc.exe
    Image size: 89600
    Image MD5: 8B54AA346D1B1B113FFAA75501B8B1B2
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): TapiSrv
    Display name: Telephony
    Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: PlugPlay,RpcSs

    Service (registry key): Tcpip
    Display name: TCP/IP Protocol Driver
    Description: TCP/IP Protocol Driver
    Image path: system32\DRIVERS\tcpip.sys
    Image size: 359040
    Image MD5: 9F4B36614A0FC234525BA224957DE55C
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: IPSec

    Service (registry key): TDPIPE
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TDTCP
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TermDD
    Display name: Terminal Device Driver
    Image path: system32\DRIVERS\termdd.sys
    Image size: 40840
    Image MD5: A540A99C281D933F3D69D55E48727F47
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): TermService
    Display name: Terminal Services
    Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost -k DComLaunch
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): Themes
    Display name: Themes
    Description: Provides user experience theme management.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): TlntSvr
    Display name: Telnet
    Description: Enables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\tlntsvr.exe
    Image size: 73216
    Image MD5: 37DB0A7D097310E8B4DE803FC3119C78
    Start: 4
    Type: 16
    Error Control: 1
    Depends On services: RPCSS,TCPIP,NTLMSSP

    Service (registry key): TosIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): trid3d
    Image path: system32\DRIVERS\trid3dm.sys
    Image size: 222336
    Image MD5: 8DFD837A98A4A6C581214FA358430837
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): TrkWks
    Display name: Distributed Link Tracking Client
    Description: Maintains links between NTFS files within a computer or across computers in a network domain.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): TSDDD
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Udfs
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): ultra
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Update
    Display name: Microcode Update Driver
    Image path: system32\DRIVERS\update.sys
    Image size: 209408
    Image MD5: AFF2E5045961BBC0A602BB6F95EB1345
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): upnphost
    Display name: Universal Plug and Play Device Host
    Description: Provides support to host Universal Plug and Play devices.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: SSDPSRV,HTTP

    Service (registry key): UPS
    Display name: Uninterruptible Power Supply
    Description: Manages an uninterruptible power supply (UPS) connected to the computer.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\ups.exe
    Image size: 18432
    Image MD5: 3F5DF65B0758675F95A2D43918A740A3
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): usbhub
    Display name: USB2 Enabled Hub
    Image path: system32\DRIVERS\usbhub.sys
    Image size: 57600
    Image MD5: C72F40947F92CEA56A8FB532EDF025F1
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbprint
    Display name: Microsoft USB PRINTER Class
    Image path: system32\DRIVERS\usbprint.sys
    Image size: 25856
    Image MD5: A42369B7CD8886CD7C70F33DA6FCBCF5
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbscan
    Display name: USB Scanner Driver
    Image path: system32\DRIVERS\usbscan.sys
    Image size: 15104
    Image MD5: A6BC71402F4F7DD5B77FD7F4A8DDBA85
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): USBSTOR
    Display name: USB Mass Storage Driver
    Image path: system32\DRIVERS\USBSTOR.SYS
    Image size: 26496
    Image MD5: 6CD7B22193718F1D17A47A1CD6D37E75
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usbuhci
    Display name: Microsoft USB Universal Host Controller Miniport Driver
    Image path: system32\DRIVERS\usbuhci.sys
    Image size: 20480
    Image MD5: F8FD1400092E23C8F2F31406EF06167B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): usnsvc
    Display name: Messenger Sharing USN Journal Reader service
    Description: Service installed by Messenger to enable sharing scenarios
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\svchost.exe -k usnsvc
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: rpcss,eventlog

    Service (registry key): VgaSave
    Image path: \SystemRoot\System32\drivers\vga.sys
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): viaagp
    Display name: VIA AGP Bus Filter
    Image path: system32\DRIVERS\viaagp.sys
    Image size: 42240
    Image MD5: D92E7C8A30CFD14D8E15B5F7F032151B
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ViaIde
    Image path: system32\DRIVERS\viaide.sys
    Image size: 5376
    Image MD5: 59CB1338AD3654417BEA49636457F65D
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): VIAudio
    Display name: VIA AC'97 Audio Controller (WDM)
    Image path: system32\drivers\ac97via.sys
    Image size: 84480
    Image MD5: 819BF44085104BE6527B86A88ACF856B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): VolSnap
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): VSS
    Display name: Volume Shadow Copy
    Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\vssvc.exe
    Image size: 289792
    Image MD5: 3EE00364AE0FD8D604F46CBAF512838A
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): W32Time
    Display name: Windows Time
    Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.

    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): W3SVC
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Wanarp
    Display name: Remote Access IP ARP Driver
    Description: Remote Access IP ARP Driver
    Image path: system32\DRIVERS\wanarp.sys
    Image size: 34560
    Image MD5: 984EF0B9788ABF89974CFED4BFBAACBC
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): WDICA
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): wdmaud
    Display name: Microsoft WINMM WDM Audio Compatibility Driver
    Image path: system32\drivers\wdmaud.sys
    Image size: 82944
    Image MD5: 2797F33EBF50466020C430EE4F037933
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): WebClient
    Display name: WebClient
    Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\system32\svchost.exe -k LocalService
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: MRxDAV

    Service (registry key): winachsf
    Image path: system32\DRIVERS\HSFCXTS2.sys
    Image size: 685056
    Image MD5: 1225EBEA76AAC3C84DF6C54FE5E5D8BE
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): winmgmt
    Display name: Windows Management Instrumentation
    Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
    Object name: LocalSystem
    Image path: %systemroot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RPCSS

    Service (registry key): Winsock
    Start: 3
    Type: 4
    Error Control: 1

    Service (registry key): WinSock2
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WinTrust
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WmdmPmSN
    Display name: Portable Media Serial Number Service
    Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): Wmi
    Display name: Windows Management Instrumentation Driver Extensions
    Description: Provides systems management information to and from drivers.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): WmiApRpl
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): WmiApSrv
    Display name: WMI Performance Adapter
    Description: Provides performance library information from WMI HiPerf providers.
    Object name: LocalSystem
    Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe
    Image size: 126464
    Image MD5: BA8CECC3E813E1F7C441B20393D4F86C
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): WS2IFSL
    Start: 1
    Type: 0
    Error Control: 0

    Service (registry key): wuauserv
    Display name: Automatic Updates
    Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site.
    Object name: LocalSystem
    Image path: %systemroot%\system32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): WZCSVC
    Display name: Wireless Zero Configuration
    Description: Provides automatic configuration for the 802.11 adapters
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,Ndisuio

    Service (registry key): xmlprov
    Display name: Network Provisioning Service
    Description: Manages XML configuration files on a domain basis for automatic network provisioning.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 14336
    Image MD5: 8F078AE4ED187AAABC0A305146DE6716
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): ZTPPPOE
    Display name: WAN Miniport (PPP over Ethernet Protocol)
    Image path: system32\DRIVERS\ztpppoe.sys
    Image size: 18238
    Image MD5: EF41F47D21761FF125E615E175984521
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): {3A5367D3-6621-4321-86BA-FBF1DC8E8A32}
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): {8141C4F5-9474-4946-B7DB-218FBCA21BFB}
    Start: 0
    Type: 0
    Error Control: 0


     
  8. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    CCleaner

    CLEANING COMPLETE - (5.762 secs)
    ------------------------------------------------------------------------------------------
    274.3MB removed.
    ------------------------------------------------------------------------------------------

    Details of files deleted
    ------------------------------------------------------------------------------------------
    IE Temporary Internet Files (161 files) 1.38MB
    C:\Documents and Settings\User\Cookies\user@yahoo[1].txt 82 bytes
    C:\Documents and Settings\User\Cookies\user@rad.msn[2].txt 690 bytes
    C:\Documents and Settings\User\Local Settings\History\History.IE5\desktop.ini 113 bytes
    C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006100220061003\index.dat 0.22MB
    C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006110920061110\index.dat 96.00KB
    C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012007021420070215\index.dat 80.00KB
    C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012005123020051231\index.dat 48.00KB
    C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006020120060202\index.dat 0.23MB
    C:\Documents and Settings\User\Local Settings\History\History.IE5\MSHist012006031820060319\index.dat 32.00KB
    Marked for deletion: C:\Documents and Settings\User\Local Settings\Temporary Internet Files\Content.IE5\index.dat
    Marked for deletion: C:\Documents and Settings\User\Cookies\index.dat
    Marked for deletion: C:\Documents and Settings\User\Local Settings\History\History.IE5\index.dat
    Marked for deletion: C:\Documents and Settings\User\Local Settings\History\History.IE5\mshist012007030720070308\index.dat
    Emptied Recycle Bin (3 files) 10.1MB
    C:\WINDOWS\MEMORY.DMP 254.6MB
    C:\WINDOWS\MiniDump\Mini050806-01.dmp 92.00KB
    C:\WINDOWS\MiniDump\Mini112406-01.dmp 92.00KB
    C:\WINDOWS\MiniDump\Mini012407-01.dmp 64.00KB
    C:\WINDOWS\system32\wbem\Logs\setup.log 10.37KB
    C:\WINDOWS\system32\wbem\Logs\mofcomp.log 22.35KB
    C:\WINDOWS\system32\wbem\Logs\replog.log 550 bytes
    C:\WINDOWS\system32\wbem\Logs\wbemcore.log 285 bytes
    C:\WINDOWS\system32\wbem\Logs\wmiprov.log 33.67KB
    C:\WINDOWS\system32\wbem\Logs\wbemprox.log 2.10KB
    C:\WINDOWS\system32\wbem\Logs\wmiadap.log 3.99KB
    C:\WINDOWS\system32\wbem\Logs\FrameWork.log 28.66KB
    C:\WINDOWS\system32\wbem\Logs\wbemess.log 55.85KB
    C:\WINDOWS\system32\wbem\Logs\FrameWork.lo_ 64.01KB
    C:\WINDOWS\system32\wbem\Logs\wbemess.lo_ 64.08KB
    C:\WINDOWS\imsins.log 1.85KB
    C:\WINDOWS\setupapi.log 0.34MB
    C:\WINDOWS\setupact.log 0.22MB
    C:\WINDOWS\setuperr.log 316 bytes
    C:\WINDOWS\KB914389.log 13.99KB
    C:\WINDOWS\nsw.log 350 bytes
    C:\WINDOWS\COM+.log 1.42KB
    C:\WINDOWS\EventSystem.log 1.29KB
    C:\WINDOWS\MININU.LOG 732 bytes
    C:\WINDOWS\SYMEVENT.LOG 4.31KB
    C:\WINDOWS\regopt.log 2.99KB
    C:\WINDOWS\ocgen.log 0.27MB
    C:\WINDOWS\FaxSetup.log 0.53MB
    C:\WINDOWS\iis6.log 0.65MB
    C:\WINDOWS\comsetup.log 0.20MB
    C:\WINDOWS\ntdtcsetup.log 0.12MB
    C:\WINDOWS\tsoc.log 0.25MB
    C:\WINDOWS\msmqinst.log 0.17MB
    C:\WINDOWS\msgsocm.log 27.83KB
    C:\WINDOWS\tabletoc.log 27.96KB
    C:\WINDOWS\MedCtrOC.log 38.36KB
    C:\WINDOWS\netfxocm.log 94.72KB
    C:\WINDOWS\ocmsn.log 29.82KB
    C:\WINDOWS\Sti_Trace.log 0 bytes
    C:\WINDOWS\wiaservc.log 48 bytes
    C:\WINDOWS\wiadebug.log 275 bytes
    C:\WINDOWS\cmsetacl.log 373 bytes
    C:\WINDOWS\KB905915.log 16.00KB
    C:\WINDOWS\KB912919.log 10.73KB
    C:\WINDOWS\KB908519.log 9.84KB
    C:\WINDOWS\KB910437.log 9.20KB
    C:\WINDOWS\KB901190.log 9.58KB
    C:\WINDOWS\KB911567.log 10.50KB
    C:\WINDOWS\KB911927.log 10.47KB
    C:\WINDOWS\KB913446.log 6.56KB
    C:\WINDOWS\KB911565.log 7.37KB
    C:\WINDOWS\KB911564.log 7.16KB
    C:\WINDOWS\spupdsvc.log 3.16KB
    C:\WINDOWS\KB912812.log 16.76KB
    C:\WINDOWS\wmsetup.log 86.68KB
    C:\WINDOWS\DtcInstall.log 253 bytes
    C:\WINDOWS\sessmgr.setup.log 2.01KB
    C:\WINDOWS\KB911562.log 13.85KB
    C:\WINDOWS\KB908531.log 14.60KB
    C:\WINDOWS\KB900485.log 10.93KB
    C:\WINDOWS\KB913580.log 11.74KB
    C:\WINDOWS\WindowsUpdate.log 0.51MB
    C:\WINDOWS\0.log 0 bytes
    C:\WINDOWS\KB898461.log 8.17KB
    C:\WINDOWS\KB893803v2.log 7.36KB
    C:\WINDOWS\KB896423.log 25.29KB
    C:\WINDOWS\WgaNotify.log 16.41KB
    C:\WINDOWS\KB890859.log 16.34KB
    C:\WINDOWS\KB894391.log 16.28KB
    C:\WINDOWS\KB896428.log 15.65KB
    C:\WINDOWS\KB905749.log 16.83KB
    C:\WINDOWS\KB904706.log 16.54KB
    C:\WINDOWS\KB900725.log 19.29KB
    C:\WINDOWS\KB888302.log 17.48KB
    C:\WINDOWS\KB901214.log 18.21KB
    C:\WINDOWS\KB905414.log 19.20KB
    C:\WINDOWS\KB899589.log 18.89KB
    C:\WINDOWS\KB893066.log 18.86KB
    C:\WINDOWS\KB890046.log 22.43KB
    C:\WINDOWS\KB902400.log 31.31KB
    C:\WINDOWS\KB891781.log 25.21KB
    C:\WINDOWS\KB896358.log 26.45KB
    C:\WINDOWS\KB887472.log 25.11KB
    C:\WINDOWS\KB887742.log 25.70KB
    C:\WINDOWS\KB888113.log 25.17KB
    C:\WINDOWS\KB873339.log 25.10KB
    C:\WINDOWS\KB893756.log 26.73KB
    C:\WINDOWS\KB896424.log 27.63KB
    C:\WINDOWS\KB899591.log 27.36KB
    C:\WINDOWS\KB901017.log 27.05KB
    C:\WINDOWS\KB885250.log 26.83KB
    C:\WINDOWS\KB885836.log 26.04KB
    C:\WINDOWS\KB885835.log 27.12KB
    C:\WINDOWS\KB896422.log 27.35KB
    C:\WINDOWS\KB899587.log 28.21KB
    C:\WINDOWS\updspapi.log 32.48KB
    C:\WINDOWS\KB916281.log 19.60KB
    C:\WINDOWS\KB917953.log 15.95KB
    C:\WINDOWS\KB917344.log 16.18KB
    C:\WINDOWS\KB885884.log 8.90KB
    C:\WINDOWS\KB918439.log 15.80KB
    C:\WINDOWS\KB917734.log 13.34KB
    C:\WINDOWS\KB886185.log 11.59KB
    C:\WINDOWS\KB896688.log 20.37KB
    C:\WINDOWS\KB911280.log 11.80KB
    C:\WINDOWS\KB916595.log 10.13KB
    C:\WINDOWS\KB914388.log 11.96KB
    C:\WINDOWS\KB917159.log 11.49KB
    C:\WINDOWS\yacs.log 12.39KB
    C:\WINDOWS\KB921883.log 10.80KB
    C:\WINDOWS\KB917422.log 11.62KB
    C:\WINDOWS\KB920670.log 11.39KB
    C:\WINDOWS\KB918899.log 19.25KB
    C:\WINDOWS\KB921398.log 16.53KB
    C:\WINDOWS\KB922616.log 15.99KB
    C:\WINDOWS\KB920214.log 15.94KB
    C:\WINDOWS\KB920683.log 12.39KB
    C:\WINDOWS\KB919007.log 10.41KB
    C:\WINDOWS\KB920872.log 11.64KB
    C:\WINDOWS\KB920685.log 9.85KB
    C:\WINDOWS\KB922582.log 7.67KB
    C:\WINDOWS\KB925486.log 10.26KB
    C:\WINDOWS\KB923191.log 19.43KB
    C:\WINDOWS\KB924496.log 14.98KB
    C:\WINDOWS\KB923414.log 11.33KB
    C:\WINDOWS\KB922819.log 13.08KB
    C:\WINDOWS\KB924191.log 13.42KB
    C:\WINDOWS\KB922760.log 16.66KB
    C:\WINDOWS\KB920213.log 14.67KB
    C:\WINDOWS\KB924270.log 15.22KB
    C:\WINDOWS\KB923980.log 15.55KB
    C:\WINDOWS\imsins.BAK 1.87KB
    C:\WINDOWS\setuplog.txt 478 bytes
    C:\WINDOWS\IE4 Error Log.txt 1.52KB
    C:\WINDOWS\ntbtlog.txt 0.26MB
    C:\WINDOWS\OEWABLog.txt 1.25KB
    C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\drwtsn32.log 0.62MB
    C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp 14.49KB
    C:\WINDOWS\Debug\NetSetup.LOG 11.86KB
    C:\WINDOWS\Debug\blastcln.log 572 bytes
    C:\WINDOWS\Debug\mrt.log 9.33KB
    C:\WINDOWS\Debug\UserMode\userenv.log 9.40KB
    C:\WINDOWS\Debug\UserMode\userenv.bak 0.30MB
    C:\WINDOWS\SchedLgU.Txt 31.88KB
    C:\WINDOWS\security\logs\scesetup.log 0.17MB
    C:\WINDOWS\security\logs\SceRoot.log 440 bytes
    C:\WINDOWS\security\logs\backup.log 2.76KB
    C:\WINDOWS\security\logs\scecomp.old 29.80KB
    C:\Documents and Settings\User\Application Data\Real\RealPlayer\cookies.txt 480 bytes
    C:\Documents and Settings\User\Application Data\Real\RealPlayer\realplayer.ste 1.22KB
    C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\ringin.lnk 1.73KB
    C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\±¦±´¼Æ»®BÃæ.lnk 1.78KB
    C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\±¦±´¼Æ»®.lnk 1.79KB
    C:\Documents and Settings\User\Application Data\Real\RealPlayer\History\27012007031.lnk 1.79KB
    C:\Program Files\Common Files\Real\Update_OB\RealPlayer-log.txt 76.80KB
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#local\settings.sol 75 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com\settings.sol 86 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chat1.hk1.outblaze.com\settings.sol 92 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#amd.com\settings.sol 77 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dspindustry.com\settings.sol 89 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dynodownloads.com\settings.sol 87 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#g.akamai.net\settings.sol 82 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cosmos.bcst.yahoo.com\settings.sol 91 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#go.com\settings.sol 76 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#i-dac.com\settings.sol 79 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#123greetings.com\settings.sol 86 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.rcade.com\settings.sol 83 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\settings.sol 85 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.lacoste-essential.com\settings.sol 95 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#miniclip.com\settings.sol 82 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.2.joyourself.com\settings.sol 90 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#us.i1.yimg.com\settings.sol 84 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#discovery.com\settings.sol 83 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#health.discovery.com\settings.sol 90 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nokia.com\settings.sol 79 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mymesra.com.my\settings.sol 84 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#youtube.com\settings.sol 81 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pagead2.googlesyndication.com\settings.sol 99 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nseries.com\settings.sol 85 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.metacafe.com\settings.sol 86 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nst.com.my\settings.sol 80 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#munchys.com\settings.sol 81 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#rocherusa.com\settings.sol 83 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aolcdn.com\settings.sol 80 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#oddcast.com\settings.sol 81 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#disney.co.jp\settings.sol 82 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.motorola.com\settings.sol 86 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.tudou.com\settings.sol 83 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.2.livejasmin.com\settings.sol 90 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#naiadsystems.com\settings.sol 86 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dailymotion.com\settings.sol 89 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dv.ouou.com\settings.sol 81 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.userplane.com\settings.sol 90 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#stat.radioblogclub.com\settings.sol 92 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.blastro.com\settings.sol 85 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tv.mofile.com\settings.sol 83 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zone.msn.com\settings.sol 82 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol 1.14KB
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\localhost\core.sol 53 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\localhost\core.sol 53 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\localhost\AVPrefs.sol 69 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\video.google.com\googleplayer.swf\mediaPlayerUserSettings.sol 94 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\video.google.com\datastore.swf\videoPlayerSettings.sol 145 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\chat1.hk1.outblaze.com\chatui.swf\chat_settings_6628.sol 2.13KB
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\chat1.hk1.outblaze.com\chatui.swf\chat_settings_6629.sol 2.13KB
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\dynodownloads.com\games1\files\sudoku-original.swf\defaultPack.sol 15.71KB
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\dynodownloads.com\games1\files\sudoku-original.swf\sudokuPacks.sol 93 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\g.akamai.net\falckbanner.sol 68 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\cosmos.bcst.yahoo.com\vidPlayer.sol 898 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\go.com\disneypictures\main.swf\revisitor.sol 75 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.rcade.com\games\sushisudoku\rcade\rcsumain.swf\easystat.sol 432 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.youtube.com\soundData.sol 58 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.lacoste-essential.com\site.swf\green_profile.sol 54 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\miniclip.com\swfcontent\push\gamepages.swf\MiniclipFeaturedGame.sol 64 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.2.joyourself.com\flash\freechat037.swf\jasminmember01.sol 84 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\us.i1.yimg.com\vidPlayer.sol 1.15KB
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\us.i1.yimg.com\cosmos.bcst.yahoo.com\player\embed-2-0-2006-10-25-1634\swf\yup_embed_module.swf\TestMovie_Config_Info.sol 341 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\us.i1.yimg.com\LCOMMENGINEMGR.sol 53 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\discovery.com\fpv.sol 44 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\discovery.com\common\smedia\netnav.swf\healthnetnav.sol 52 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\health.discovery.com\age_verification.sol 195 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\nokia.com\NOKIA_COM_1\Home\Landing_Page_Common_Items\wayfinderfinal.swf\userVisits1.sol 59 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\nokia.com\NOKIA_COM_1\Home\Landing_Page_Common_Items\wayfinderfinal01.swf\userVisits1.sol 59 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\mymesra.com.my\images\primax3_side_menu_prod.swf\user_click.sol 47 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\youtube.com\soundData.sol 58 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\pagead2.googlesyndication.com\pagead\googleadplayer.swf\mediaPlayerUserSettings.sol 94 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.nseries.com\nseries\nokiaLanguage.sol 70 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.metacafe.com\f\fp_site.swf\user_data.sol 55 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\nst.com.my\Current_News\NST\sudoku\uc_sudoc.swf\sudoku.sol 110 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\munchys.com\XXmain.swf\database.sol 46 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\aolcdn.com\_media\aolvideo30\rootmovie351.swf\videoSO.sol 57 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\oddcast.com\vhsssecure.php\oddcast_vhss.sol 58 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\disney.co.jp\dtopfile\swf\dtop_base.swf\disneyjpoverlays2.sol 104 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.motorola.com\50Msettop_brandstory.sol 59 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.tudou.com\TudouLogEndEvent.sol 142 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.tudou.com\TudouLog.sol 256 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.2.livejasmin.com\flash\freechat042.swf\jasminmember01.sol 84 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\naiadsystems.com\naiad.sol 72 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.dailymotion.com\flash\flvplayer.swf\userPreferences.sol 66 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\dv.ouou.com\swf\player.swf\ououplayer.sol 66 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\static.userplane.com\presence\presence.swf\presence_1.sol 103 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\stat.radioblogclub.com\RbRestoSave.sol 137 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\www.blastro.com\flashplayer\flvPlayer.swf\Lightningcast.sol 56 bytes
    C:\Documents and Settings\User\Application Data\Macromedia\Flash Player\#SharedObjects\R5B38TQ3\tv.mofile.com\cn\xplayer.swf\moxso.sol 43 bytes
    C:\Program Files\Ahead\Nero\NeroHistory.log 14.69KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Update downloads.log 6.45KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1340.log 833 bytes
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1353.txt 1.63KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Fixes.060925-1619.txt 1.58KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1619.log 242 bytes
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.060925-1640.txt 1.01KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0921.log 546 bytes
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0935.txt 2.26KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0938.log 546 bytes
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Checks.070307-0950.txt 2.26KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Fixes.070307-0952.txt 2.22KB
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Statistics.ini 1.17KB
    C:\Program Files\Lavasoft\Ad-Aware SE Personal\defs.ref.old 0.45MB
    C:\Documents and Settings\User\Application Data\Lavasoft\Ad-Aware\Logs\Ad-Aware log2007-03-07 09-19-27.txt 15.85KB
    C:\Program Files\DAP\Temp\ADS48.tmp 233 bytes
    C:\Program Files\DAP\Temp\SRCFB.tmp.dap 0 bytes
    C:\Program Files\DAP\Temp\ADSD1.tmp.dap 0 bytes
    C:\Program Files\DAP\Log\DAP_WIZARD.LOG 52.32KB
    C:\Program Files\DAP\Log\DAP_REPORT.LOG 0 bytes
    C:\Program Files\DAP\Log\DAP.LOG 709 bytes
    ------------------------------------------------------------------------------------------
     
  9. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    Logfile of HijackThis v1.99.1
    Scan saved at 10:00:08 AM, on 3/7/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\Program Files\Spyware Doctor\sdhelp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Spyware Doctor\swdoctor.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\HijackThis\HijackThis.exe
    C:\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
    O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
    O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
    O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
    O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
    O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
    O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
    O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
    O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1
    O17 - HKLM\System\CCS\Services\Tcpip\..\{8141C4F5-9474-4946-B7DB-218FBCA21BFB}: NameServer = 202.188.0.133,202.188.1.5
    O17 - HKLM\System\CS1\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1
    O17 - HKLM\System\CS2\Services\Tcpip\..\{3A5367D3-6621-4321-86BA-FBF1DC8E8A32}: NameServer = 192.168.1.1
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe

     
  10. victorywp

    victorywp Member

    Joined:
    Mar 6, 2007
    Messages:
    8
    Likes Received:
    0
    Trophy Points:
    11
    The same problems still exist..
    What to do next?
     

Share This Page