TechSpot

CHKUPD error messege that wont go away

By zufan
Sep 18, 2014
  1. Hi guys-
    I've been unable to get rid of this annoying chkupd error messege for months, ive tried all the usual suspects like cleaning registry/drive/defrag/cookies/temp files etc etc but nothing has worked, any tried and tested tip is cheerfully accepted.

    attached error messege
     

    Attached Files:

  2. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    Welcome aboard [​IMG]

    Download Autoruns for Windows: http://technet.microsoft.com/en-us/sysinternals/bb963902.aspx
    No installation required.
    Simply unzip Autoruns.zip file, and double click on autoruns.exe file to run the program.
    Go File>Save, and save it as AutoRuns.txt file to know location.
    You must select Text from drop-down menu as a file type:

    [​IMG]

    Attach the file to your next reply.
     
  3. zufan

    zufan TS Rookie Topic Starter

    Hi attaching result of Autoruns as suggested- thanks
     

    Attached Files:

  4. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    I can see some infection there so...

    Please, complete all steps listed here: http://www.techspot.com/vb/topic58138.html
    Make sure, you PASTE all logs. If some log exceeds 50,000 characters post limit, split it between couple of replies.
    Attached logs won't be reviewed.

    Please, observe following rules:
    • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
    • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
    • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
    • Never run more than one scan at a time.
    • Keep updating me regarding your computer behavior, good, or bad.
    • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
    • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
    • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.
     
  5. zufan

    zufan TS Rookie Topic Starter

    Hi I had already run the malwarebyte thing so here are the results- thanks
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" "" "9/17/2014 7:17 PM"
    X "ASUSWebStorage" "AsusWebStorage" "ecareme" "c:\program files (x86)\asus\asus webstorage\3.0.84.161\asuswspanel.exe" "2/23/2011 11:47 AM"
    + "avast" "avast! Antivirus" "AVAST Software" "c:\program files\avast software\avast\avastui.exe" "2/23/2011 4:59 PM"
    X "HControlUser" "HControlUser" "ASUS" "c:\program files (x86)\asus\atk package\atk hotkey\hcontroluser.exe" "4/1/2009 3:05 PM"
    + "{4a421490-9edf-a1e4-2abb-be9925ec0c80}" "" "" "c:\users\k\appdata\local\microsoft\{4a421490-9edf-a1e4-2abb-be9925ec0c80}\{4a421490-9edf-a1e4-2abb-be9925ec0c80}.exe" "8/20/2014 4:10 PM"
    "C:\Users\K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "" "" "" "9/17/2014 7:17 PM"
    + "Wallpaper Calendar.lnk" "Desktop Wallpaper Calendar" "Zepsoft" "c:\program files (x86)\zepsoft\wallpaper calendar\wallcal3.exe" "6/20/1992 12:22 AM"
    "HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" "" "1/24/2013 5:38 PM"
    X "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe" "7/14/2009 1:58 AM"
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" "" "1/24/2013 5:38 PM"
    X "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files (x86)\windows mail\winmail.exe" "7/14/2009 1:42 AM"
    "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" "" "9/17/2014 7:17 PM"
    X "Registry Cleaner Scheduler" "" "" "File not found: C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe" ""
    + "‮tluafed" "" "" "c:\users\k\application data\{0000760b-30df-145b-713d-a15020c974ae}.exe" "9/6/2014 10:48 AM"
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services\AutoStartOnConnect" "" "" "" "1/24/2013 5:37 PM"
    X "NeroMobileAd" "Nero Mobile Advertisment" "Nero AG" "c:\program files (x86)\nero\nero 7\nero mobile\neromobilead.exe" "8/28/2006 11:12 AM"
    "HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" "" "1/24/2013 4:41 PM"
    + "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office14\msoxmlmf.dll" "2/28/2010 11:24 AM"
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" "" "1/24/2013 4:41 PM"
    + "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" "" "1/24/2013 4:44 PM"
    + "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll" "2/23/2011 4:55 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "9/19/2014 10:22 PM"
    + "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    X "BackupContextMenuExtension" "" "" "File not found: :/Program Files (x86)/ASUS/ASUS WebStorage/3.0.84.161/XPClient.DLL" ""
    + "FTShellContext" "ShellContextExt Module" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\shellcontextext.dll" "3/13/2011 4:56 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "9/19/2014 10:22 PM"
    + "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll" "2/23/2011 4:55 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" "" "9/19/2014 10:22 PM"
    X "PropertySheetExtension1" "" "" "File not found: :/Program Files (x86)/ASUS/ASUS WebStorage/3.0.84.161/XPClient.DLL" ""
    "HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" "" "7/16/2011 8:36 PM"
    + "Ath_CopyHook" "AthCopyHook Dynamic Link Library" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\athcopyhook.dll" "3/13/2011 4:56 AM"
    "HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "1/24/2013 4:41 PM"
    + "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files\windows sidebar\sbdrop.dll" "7/14/2009 3:32 AM"
    + "igfxcui" "igfxpph Module" "Intel Corporation" "c:\windows\system32\igfxpph.dll" "1/27/2011 6:24 PM"
    + "NvCplDesktopContext" "" "NVIDIA Corporation" "c:\windows\system32\nvshext.dll" "3/6/2011 2:34 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "1/24/2013 4:41 PM"
    + "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files (x86)\windows sidebar\sbdrop.dll" "7/14/2009 3:09 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers" "" "" "" "10/1/2012 8:39 AM"
    + "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files (x86)\common files\adobe\acrobat\activex\pdfshell.dll" "7/27/2012 9:25 PM"
    "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "9/17/2014 6:49 PM"
    + "Adobe.Acrobat.ContextMenu" "Adobe Acrobat Context Menu" "Adobe Systems Inc." "c:\program files (x86)\adobe\acrobat 10.0\acrobat elements\contextmenu64.dll" "1/30/2011 2:37 PM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    + "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll" "6/19/2008 8:41 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "9/17/2014 6:49 PM"
    + "Adobe.Acrobat.ContextMenu" "Adobe Acrobat Context Menu" "Adobe Systems Inc." "c:\program files (x86)\adobe\acrobat 10.0\acrobat elements\contextmenu.dll" "1/30/2011 2:37 PM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll" "2/23/2011 4:55 PM"
    + "NBShellHook Class" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 11\nero backitup\nbshell.dll" "9/15/2011 1:18 PM"
    + "NBShellHook Class" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 7\nero backitup\nbshell.dll" "11/10/2006 8:18 PM"
    + "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll" "9/16/2008 4:18 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "11/25/2011 4:58 PM"
    + "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll" "6/19/2008 8:41 PM"
    "HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "11/25/2011 4:58 PM"
    + "NBShellHook" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 7\nero backitup\nbshell.dll" "11/10/2006 8:18 PM"
    + "NBShellHook.6.0" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 11\nero backitup\nbshell.dll" "9/15/2011 1:18 PM"
    + "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll" "9/16/2008 4:18 PM"
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "1/24/2013 4:41 PM"
    + "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    + "AsusWSShellExt_B" "AsusWSShellExt64" "eCareme Technologies, Inc." "c:\program files (x86)\asus\asus webstorage\3.0.84.161\asuswsshellext64.dll" "9/2/2010 10:41 AM"
    + "AsusWSShellExt_O" "AsusWSShellExt64" "eCareme Technologies, Inc." "c:\program files (x86)\asus\asus webstorage\3.0.84.161\asuswsshellext64.dll" "9/2/2010 10:41 AM"
    + "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "1/24/2013 4:44 PM"
    + "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "7/11/2014 11:09 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie64.dll" "2/23/2011 5:01 PM"
    + "Google Toolbar Helper" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_64.dll" "3/11/2014 7:28 PM"
    + "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files\microsoft office\office14\urlredir.dll" "2/28/2010 11:23 AM"
    + "Partner BHO Class" "Partner application" "Google Inc." "c:\programdata\partner\partner64.dll" "6/29/2009 8:43 PM"
    + "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll" "9/21/2010 11:47 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "9/19/2014 10:47 PM"
    + "Adobe PDF Conversion Toolbar Helper" "Adobe PDF Toolbar for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiefavclient.dll" "1/30/2011 3:00 PM"
    + "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiehelpershim.dll" "7/27/2012 8:58 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie.dll" "2/23/2011 5:00 PM"
    + "CIESpeechBHO Class" "Bluetooth IE PlugIn" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\ieplugin.dll" "3/13/2011 4:54 AM"
    X "Google Toolbar Helper" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_32.dll" "3/11/2014 7:43 PM"
    + "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    X "myBabylon English Toolbar" "Conduit Toolbar" "Conduit Ltd." "c:\program files (x86)\mybabylon_english\tbmyba.dll" "8/20/2008 10:03 PM"
    + "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\urlredir.dll" "2/28/2010 11:20 AM"
    + "Partner BHO Class" "Partner application" "Google Inc." "c:\programdata\partner\partner.dll" "6/29/2009 8:41 PM"
    + "SmartSelect Class" "Adobe PDF Toolbar for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiefavclient.dll" "1/30/2011 3:00 PM"
    + "SnagIt Toolbar Loader" "SnagIt Browser Helper Object for Internet Explorer" "TechSmith Corporation" "c:\program files (x86)\techsmith\snagit 9\snagitbho.dll" "5/15/2008 10:31 PM"
    + "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll" "9/21/2010 11:01 PM"
    "HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" "" "7/11/2014 11:09 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie64.dll" "2/23/2011 5:01 PM"
    + "Google Toolbar" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_64.dll" "3/11/2014 7:28 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar" "" "" "" "9/19/2014 10:50 PM"
    + "Adobe PDF" "Adobe PDF Toolbar for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiefavclient.dll" "1/30/2011 3:00 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie.dll" "2/23/2011 5:00 PM"
    + "Google Toolbar" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_32.dll" "3/11/2014 7:43 PM"
    X "myBabylon_English Toolbar" "Conduit Toolbar" "Conduit Ltd." "c:\program files (x86)\mybabylon_english\tbmyba.dll" "8/20/2008 10:03 PM"
    + "SnagIt" "SnagIt Add-in for Internet Explorer" "TechSmith Corporation" "c:\program files (x86)\techsmith\snagit 9\snagitieaddin.dll" "5/15/2008 10:38 PM"
    "HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" "" "1/24/2013 4:41 PM"
    + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnielinkednotes.dll" "2/28/2010 4:01 PM"
    + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnie.dll" "2/28/2010 4:01 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" "" "1/24/2013 4:40 PM"
    + "&Blog This in Windows Live Writer" "Windows Live Writer Blog This Extension" "Microsoft Corporation" "c:\program files (x86)\windows live\writer\writerbrowserextension.dll" "11/10/2010 12:03 PM"
    + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnielinkednotes.dll" "2/28/2010 1:35 PM"
    + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnie.dll" "2/28/2010 1:35 PM"
    + "Send by Bluetooth to" "Bluetooth IE PlugIn" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\ieplugin.dll" "3/13/2011 4:54 AM"
    "Task Scheduler" "" "" "" ""
    + "\0" "Internet Explorer" "Microsoft Corporation" "c:\program files\internet explorer\iexplore.exe" "8/16/2014 6:48 AM"
    + "\ATKOSD2" "ATKOSD2" "ASUS" "c:\program files (x86)\asus\atk package\atkosd2\atkosd2.exe" "8/17/2010 8:55 AM"
    + "\DeviceDetector" "MediaEspresso DeviceDetector" "CyberLink" "c:\program files (x86)\cyberlink\mediaespresso\devicedetector\devicedetector.exe" "11/1/2010 8:30 AM"
    + "\GoogleUpdateTaskUserS-1-5-21-2706264185-3534770265-3069475186-1001Core" "Google Installer" "Google Inc." "c:\users\k\appdata\local\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    + "\GoogleUpdateTaskUserS-1-5-21-2706264185-3534770265-3069475186-1001UA" "Google Installer" "Google Inc." "c:\users\k\appdata\local\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    X "\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task" "Windows Live Social Object Extractor Engine" "Microsoft Corporation" "c:\program files (x86)\windows live\soxe\wlsoxe.dll" "11/10/2010 12:02 PM"
    + "\Microsoft\Windows\NetTrace\GatherNetworkInfo" "" "" "c:\windows\system32\gathernetworkinfo.vbs" "6/10/2009 10:36 PM"
    + "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" "Windows Media Player Network Sharing Service Configuration Application" "Microsoft Corporation" "c:\program files\windows media player\wmpnscfg.exe" "7/14/2009 2:24 AM"
    + "\ProgramUpdateCheck" "Find software to open your files" "Trusted Software ApS" "c:\program files (x86)\file type assistant\tsassist.exe" "7/6/2011 11:23 PM"
    + "\SidebarExecute" "Windows Desktop Gadgets" "Microsoft Corporation" "c:\program files\windows sidebar\sidebar.exe" "11/20/2010 12:24 PM"
    + "\{F44E2F46-8957-4547-8142-E94C17C63D06}" "Winamp" "Nullsoft, Inc." "c:\program files (x86)\winamp\winamp.exe" "10/26/2011 8:49 PM"
    "HKLM\System\CurrentControlSet\Services" "" "" "" "9/22/2014 4:36 PM"
    + "AFBAgent" "ASUS FastBoot" "ASUSTeK Computer Inc." "c:\windows\system32\fbagent.exe" "1/25/2011 8:09 AM"
    + "ASLDRService" "ASLDR Service" "ASUS" "c:\program files (x86)\asus\atk package\atk hotkey\asldrsrv.exe" "6/15/2009 11:29 AM"
    + "Atheros Bt&Wlan Coex Agent" "Co-existence Coordinator Service between 11a/b/g/n Wireless LAN and Bluetooth." "Atheros" "c:\program files (x86)\bluetooth suite\ath_coexagent.exe" "12/28/2010 7:13 PM"
    + "AtherosSvc" "Atheros BT Stack Service Agent" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\adminservice.exe" "3/13/2011 4:56 AM"
    + "ATKGFNEXSrv" "GFNEXSrv" "ASUS" "c:\program files (x86)\asus\atk package\atkgfnex\gfnexsrv.exe" "12/15/2009 4:39 AM"
    + "avast! Antivirus" "Manages and implements avast! antivirus services for this computer. This includes the resident protection, the virus chest and the scheduler." "AVAST Software" "c:\program files\avast software\avast\avastsvc.exe" "2/23/2011 4:56 PM"
    + "Bonjour Service" "##Id_String2.6844F930_1628_4223_B5CC_5BB94B879762##" "Apple Computer, Inc." "c:\program files (x86)\bonjour\mdnsresponder.exe" "2/28/2006 10:42 PM"
    + "CLKMSVC10_38F51D56" "CyberLink KM Service" "CyberLink" "c:\program files (x86)\cyberlink\powerdvd10\navfilter\kmsvc.exe" "10/29/2010 12:51 PM"
    + "FLEXnet Licensing Service" "This service performs licensing functions on behalf of FLEXnet enabled products." "Macrovision Europe Ltd." "c:\program files (x86)\common files\macrovision shared\flexnet publisher\fnplicensingservice.exe" "6/27/2006 9:39 AM"
    + "fsssvc" "This service enables Family Safety on the computer. If this service is not running, Family Safety will not work." "Microsoft Corporation" "c:\program files (x86)\windows live\family safety\fsssvc.exe" "9/23/2010 9:16 AM"
    + "gupdate" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    + "gupdatem" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    + "gusvc" "Google Updater keeps your Google software up to date. If Google Updater Service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work." "Google" "c:\program files (x86)\google\common\google updater\googleupdaterservice.exe" "3/2/2012 11:13 PM"
    + "LMS" "Allows applications to access the local Intel(R) Management and Security Application using its locally-available selected network interfaces." "Intel Corporation" "c:\program files (x86)\intel\intel(r) management engine components\lms\lms.exe" "12/21/2010 4:10 AM"
    + "Microsoft SharePoint Workspace Audit Service" "Microsoft SharePoint Workspace" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\groove.exe" "3/25/2010 7:15 PM"
    + "MozillaMaintenance" "" "Mozilla Foundation" "c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe" "4/21/2012 1:47 AM"
    + "NBService" "Nero BackItUp Service is responsible to control all jobs created using Nero BackItUp. These jobs can create backups of selected files/folders/partitions or complete hard disk to hard disk, network drive, CD/DVD or FTP." "Nero AG" "c:\program files (x86)\nero\nero 7\nero backitup\nbservice.exe" "11/10/2006 8:18 PM"
    + "NVSvc" "NVIDIA Driver Helper Service, Version 267.54" "NVIDIA Corporation" "c:\windows\system32\nvvsvc.exe" "3/6/2011 2:34 PM"
    + "nvUpdatusService" "NVIDIA Settings Update Manager service, used to check new updates from NVIDIA server." "NVIDIA Corporation" "c:\program files (x86)\nvidia corporation\nvidia updatus\daemonu.exe" "3/6/2011 1:22 PM"
    + "ose" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\source engine\ose.exe" "1/10/2010 6:16 AM"
    + "osppsvc" "Office Software Protection Platform Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe" "8/12/2009 4:00 AM"
    + "Partner Service" "Partner application" "Google Inc." "c:\programdata\partner\partner.exe" "6/29/2009 8:42 PM"
    + "RichVideo" "RichVideo Module" "" "c:\program files (x86)\cyberlink\shared files\richvideo.exe" "4/7/2008 10:43 AM"
    + "SkypeUpdate" "Enables the detection, download and installation of updates for Skype." "Skype Technologies" "c:\program files (x86)\skype\updater\updater.exe" "4/3/2014 9:16 PM"
    + "TurboBoost" "Intel(R) Turbo Boost Technology Monitor 2.0" "Intel(R) Corporation" "c:\program files\intel\turboboost\turboboost.exe" "11/30/2010 1:02 AM"
    + "UNS" "Intel(R) Management and Security Application User Notification Service - Updates the Windows Event Log with notifications of pre defined events received from the local Intel(R) Management and Security Application Device." "Intel Corporation" "c:\program files (x86)\intel\intel(r) management engine components\uns\uns.exe" "12/21/2010 4:15 AM"
    + "VideAceWindowsService" "" "" "c:\expressgateutil\vawinservice.exe" "8/20/2010 11:44 AM"
    + "WinDefend" "Protection against spyware and potentially unwanted software" "Microsoft Corporation" "c:\program files\windows defender\mpsvc.dll" "5/27/2013 7:51 AM"
    + "wlidsvc" "Enables Windows Live ID authentication." "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidsvc.exe" "9/21/2010 11:46 PM"
    + "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe" "11/20/2010 1:18 PM"
    "HKLM\System\CurrentControlSet\Services" "" "" "" "9/22/2014 4:36 PM"
    + "adp94xx" "Adaptec Windows SAS/SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adp94xx.sys" "12/6/2008 1:54 AM"
    + "adpahci" "Adaptec Windows SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adpahci.sys" "5/1/2007 7:30 PM"
    + "adpu320" "Adaptec StorPort Ultra320 SCSI Driver (X64)" "Adaptec, Inc." "c:\windows\system32\drivers\adpu320.sys" "2/28/2007 2:04 AM"
    + "aliide" "ALi mini IDE Driver" "Acer Laboratories Inc." "c:\windows\system32\drivers\aliide.sys" "7/14/2009 1:19 AM"
    + "amdsata" "AHCI 1.2 Device Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdsata.sys" "3/19/2010 2:45 AM"
    + "amdsbs" "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "AMD Technologies Inc." "c:\windows\system32\drivers\amdsbs.sys" "3/20/2009 8:36 PM"
    + "amdxata" "Storage Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdxata.sys" "3/19/2010 6:18 PM"
    + "AmUStor" "Alocr Micro USB Mass Storage Driver" "Alcor Micro, Corp." "c:\windows\system32\drivers\amustor.sys" "8/21/2009 8:48 AM"
    + "arc" "Adaptec RAID Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arc.sys" "5/24/2007 11:27 PM"
    + "arcsas" "Adaptec SAS RAID WS03 Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arcsas.sys" "1/14/2009 9:27 PM"
    + "ASMMAP64" "Memory mapping Driver" "ASUS" "c:\program files (x86)\asus\atk package\atkgfnex\asmmap64.sys" "7/2/2009 11:13 AM"
    + "aswFsBlk" "avast! mini-filter driver (aswFsBlk)" "AVAST Software" "c:\windows\system32\drivers\aswfsblk.sys" "2/23/2011 4:54 PM"
    + "aswMonFlt" "avast! mini-filter driver (aswMonFlt)" "AVAST Software" "c:\windows\system32\drivers\aswmonflt.sys" "2/23/2011 4:55 PM"
    + "aswRdr" "avast! TDI Redirect driver" "AVAST Software" "c:\windows\system32\drivers\aswrdr.sys" "2/23/2011 4:55 PM"
    + "aswSnx" "avast! virtualization driver (aswSnx)" "AVAST Software" "c:\windows\system32\drivers\aswsnx.sys" "2/23/2011 4:56 PM"
    + "aswSP" "avast! Self Protection" "AVAST Software" "c:\windows\system32\drivers\aswsp.sys" "2/23/2011 4:57 PM"
    + "aswTdi" "avast! Network Shield TDI driver" "AVAST Software" "c:\windows\system32\drivers\aswtdi.sys" "2/23/2011 4:55 PM"
    + "AthBTPort" "Atheros FILTER driver" "Atheros" "c:\windows\system32\drivers\btath_flt.sys" "6/24/2010 8:17 AM"
    + "athr" "Atheros Extensible Wireless LAN device driver" "Atheros Communications, Inc." "c:\windows\system32\drivers\athrx.sys" "10/4/2011 8:49 AM"
    + "ATKWMIACPIIO" "ATK WMIACPI Utility" "ASUS" "c:\program files (x86)\asus\atk package\atk wmiacpi\atkwmiacpi64.sys" "7/26/2010 7:56 AM"
    + "b06bdrv" "Broadcom NetXtreme II GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\bxvbda.sys" "2/14/2009 12:18 AM"
    + "b57nd60a" "Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver." "Broadcom Corporation" "c:\windows\system32\drivers\b57nd60a.sys" "4/26/2009 1:14 PM"
    + "BrFiltLo" "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltlo.sys" "8/7/2006 3:51 AM"
    + "BrFiltUp" "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltup.sys" "8/7/2006 3:51 AM"
    + "Brserid" "Brotehr Serial I/F Driver (WDM)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserid.sys" "8/7/2006 3:51 AM"
    + "BrSerWdm" "Brother Serial driver (WDM version)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserwdm.sys" "8/7/2006 3:51 AM"
    + "BrUsbMdm" "Brother USB MDM Driver " "Brother Industries Ltd." "c:\windows\system32\drivers\brusbmdm.sys" "8/7/2006 3:51 AM"
    + "BrUsbSer" "Brother USB Serial Driver" "Brother Industries Ltd." "c:\windows\system32\drivers\brusbser.sys" "8/9/2006 2:11 PM"
     
  6. zufan

    zufan TS Rookie Topic Starter

    Sorry I am reseinding it again because I messed up when cutting and pasting log

    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run" "" "" "" "9/17/2014 7:17 PM"
    X "ASUSWebStorage" "AsusWebStorage" "ecareme" "c:\program files (x86)\asus\asus webstorage\3.0.84.161\asuswspanel.exe" "2/23/2011 11:47 AM"
    + "avast" "avast! Antivirus" "AVAST Software" "c:\program files\avast software\avast\avastui.exe" "2/23/2011 4:59 PM"
    X "HControlUser" "HControlUser" "ASUS" "c:\program files (x86)\asus\atk package\atk hotkey\hcontroluser.exe" "4/1/2009 3:05 PM"
    + "{4a421490-9edf-a1e4-2abb-be9925ec0c80}" "" "" "c:\users\k\appdata\local\microsoft\{4a421490-9edf-a1e4-2abb-be9925ec0c80}\{4a421490-9edf-a1e4-2abb-be9925ec0c80}.exe" "8/20/2014 4:10 PM"
    "C:\Users\K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup" "" "" "" "9/17/2014 7:17 PM"
    + "Wallpaper Calendar.lnk" "Desktop Wallpaper Calendar" "Zepsoft" "c:\program files (x86)\zepsoft\wallpaper calendar\wallcal3.exe" "6/20/1992 12:22 AM"
    "HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" "" "1/24/2013 5:38 PM"
    X "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files\windows mail\winmail.exe" "7/14/2009 1:58 AM"
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components" "" "" "" "1/24/2013 5:38 PM"
    X "Microsoft Windows" "Windows Mail" "Microsoft Corporation" "c:\program files (x86)\windows mail\winmail.exe" "7/14/2009 1:42 AM"
    "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" "" "9/17/2014 7:17 PM"
    X "Registry Cleaner Scheduler" "" "" "File not found: C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe" ""
    + "‮tluafed" "" "" "c:\users\k\application data\{0000760b-30df-145b-713d-a15020c974ae}.exe" "9/6/2014 10:48 AM"
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows CE Services\AutoStartOnConnect" "" "" "" "1/24/2013 5:37 PM"
    X "NeroMobileAd" "Nero Mobile Advertisment" "Nero AG" "c:\program files (x86)\nero\nero 7\nero mobile\neromobilead.exe" "8/28/2006 11:12 AM"
    "HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" "" "1/24/2013 4:41 PM"
    + "text/xml" "Microsoft Office XML MIME Filter" "Microsoft Corporation" "c:\program files\common files\microsoft shared\office14\msoxmlmf.dll" "2/28/2010 11:24 AM"
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" "" "1/24/2013 4:41 PM"
    + "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks" "" "" "" "1/24/2013 4:44 PM"
    + "Groove GFS Stub Execution Hook" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\*\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll" "2/23/2011 4:55 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "9/19/2014 10:22 PM"
    + "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    X "BackupContextMenuExtension" "" "" "File not found: :/Program Files (x86)/ASUS/ASUS WebStorage/3.0.84.161/XPClient.DLL" ""
    + "FTShellContext" "ShellContextExt Module" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\shellcontextext.dll" "3/13/2011 4:56 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers" "" "" "" "9/19/2014 10:22 PM"
    + "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll" "2/23/2011 4:55 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\PropertySheetHandlers" "" "" "" "9/19/2014 10:22 PM"
    X "PropertySheetExtension1" "" "" "File not found: :/Program Files (x86)/ASUS/ASUS WebStorage/3.0.84.161/XPClient.DLL" ""
    "HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" "" "5/17/2013 11:27 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\Directory\Shellex\CopyHookHandlers" "" "" "" "7/16/2011 8:36 PM"
    + "Ath_CopyHook" "AthCopyHook Dynamic Link Library" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\athcopyhook.dll" "3/13/2011 4:56 AM"
    "HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "1/24/2013 4:41 PM"
    + "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files\windows sidebar\sbdrop.dll" "7/14/2009 3:32 AM"
    + "igfxcui" "igfxpph Module" "Intel Corporation" "c:\windows\system32\igfxpph.dll" "1/27/2011 6:24 PM"
    + "NvCplDesktopContext" "" "NVIDIA Corporation" "c:\windows\system32\nvshext.dll" "3/6/2011 2:34 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\Directory\Background\ShellEx\ContextMenuHandlers" "" "" "" "1/24/2013 4:41 PM"
    + "Gadgets" "Sidebar droptarget" "Microsoft Corporation" "c:\program files (x86)\windows sidebar\sbdrop.dll" "7/14/2009 3:09 AM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Wow6432Node\Classes\Folder\Shellex\ColumnHandlers" "" "" "" "10/1/2012 8:39 AM"
    + "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files (x86)\common files\adobe\acrobat\activex\pdfshell.dll" "7/27/2012 9:25 PM"
    "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "9/17/2014 6:49 PM"
    + "Adobe.Acrobat.ContextMenu" "Adobe Acrobat Context Menu" "Adobe Systems Inc." "c:\program files (x86)\adobe\acrobat 10.0\acrobat elements\contextmenu64.dll" "1/30/2011 2:37 PM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    + "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll" "6/19/2008 8:41 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" "" "9/17/2014 6:49 PM"
    + "Adobe.Acrobat.ContextMenu" "Adobe Acrobat Context Menu" "Adobe Systems Inc." "c:\program files (x86)\adobe\acrobat 10.0\acrobat elements\contextmenu.dll" "1/30/2011 2:37 PM"
    + "avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashshell.dll" "2/23/2011 4:55 PM"
    + "NBShellHook Class" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 11\nero backitup\nbshell.dll" "9/15/2011 1:18 PM"
    + "NBShellHook Class" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 7\nero backitup\nbshell.dll" "11/10/2006 8:18 PM"
    + "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll" "9/16/2008 4:18 PM"
    + "XXX Groove GFS Context Menu Handler XXX" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "11/25/2011 4:58 PM"
    + "WinRAR" "" "" "c:\program files (x86)\winrar\rarext64.dll" "6/19/2008 8:41 PM"
    "HKLM\Software\Wow6432Node\Classes\Folder\ShellEx\DragDropHandlers" "" "" "" "11/25/2011 4:58 PM"
    + "NBShellHook" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 7\nero backitup\nbshell.dll" "11/10/2006 8:18 PM"
    + "NBShellHook.6.0" "Nero BackItUp" "Nero AG" "c:\program files (x86)\nero\nero 11\nero backitup\nbshell.dll" "9/15/2011 1:18 PM"
    + "WinRAR32" "" "" "c:\program files (x86)\winrar\rarext.dll" "9/16/2008 4:18 PM"
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "1/24/2013 4:41 PM"
    + "00avast" "avast! Shell Extension" "AVAST Software" "c:\program files\avast software\avast\ashsha64.dll" "2/23/2011 4:59 PM"
    + "AsusWSShellExt_B" "AsusWSShellExt64" "eCareme Technologies, Inc." "c:\program files (x86)\asus\asus webstorage\3.0.84.161\asuswsshellext64.dll" "9/2/2010 10:41 AM"
    + "AsusWSShellExt_O" "AsusWSShellExt64" "eCareme Technologies, Inc." "c:\program files (x86)\asus\asus webstorage\3.0.84.161\asuswsshellext64.dll" "9/2/2010 10:41 AM"
    + "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers" "" "" "" "1/24/2013 4:44 PM"
    + "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    + "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "7/11/2014 11:09 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie64.dll" "2/23/2011 5:01 PM"
    + "Google Toolbar Helper" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_64.dll" "3/11/2014 7:28 PM"
    + "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files\microsoft office\office14\grooveex.dll" "3/25/2010 7:39 PM"
    + "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files\microsoft office\office14\urlredir.dll" "2/28/2010 11:23 AM"
    + "Partner BHO Class" "Partner application" "Google Inc." "c:\programdata\partner\partner64.dll" "6/29/2009 8:43 PM"
    + "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll" "9/21/2010 11:47 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" "" "9/19/2014 10:47 PM"
    + "Adobe PDF Conversion Toolbar Helper" "Adobe PDF Toolbar for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiefavclient.dll" "1/30/2011 3:00 PM"
    + "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiehelpershim.dll" "7/27/2012 8:58 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie.dll" "2/23/2011 5:00 PM"
    + "CIESpeechBHO Class" "Bluetooth IE PlugIn" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\ieplugin.dll" "3/13/2011 4:54 AM"
    X "Google Toolbar Helper" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_32.dll" "3/11/2014 7:43 PM"
    + "Groove GFS Browser Helper" "Microsoft SharePoint Workspace Extensions" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\grooveex.dll" "3/25/2010 7:20 PM"
    X "myBabylon English Toolbar" "Conduit Toolbar" "Conduit Ltd." "c:\program files (x86)\mybabylon_english\tbmyba.dll" "8/20/2008 10:03 PM"
    + "Office Document Cache Handler" "Microsoft Office Document Cache Handler" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\urlredir.dll" "2/28/2010 11:20 AM"
    + "Partner BHO Class" "Partner application" "Google Inc." "c:\programdata\partner\partner.dll" "6/29/2009 8:41 PM"
    + "SmartSelect Class" "Adobe PDF Toolbar for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiefavclient.dll" "1/30/2011 3:00 PM"
    + "SnagIt Toolbar Loader" "SnagIt Browser Helper Object for Internet Explorer" "TechSmith Corporation" "c:\program files (x86)\techsmith\snagit 9\snagitbho.dll" "5/15/2008 10:31 PM"
    + "Windows Live ID Sign-in Helper" "Microsoft® Windows Live ID Login Helper" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\windowslivelogin.dll" "9/21/2010 11:01 PM"
    "HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" "" "7/11/2014 11:09 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie64.dll" "2/23/2011 5:01 PM"
    + "Google Toolbar" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_64.dll" "3/11/2014 7:28 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar" "" "" "" "9/19/2014 10:50 PM"
    + "Adobe PDF" "Adobe PDF Toolbar for Internet Explorer" "Adobe Systems Incorporated" "c:\program files (x86)\common files\adobe\acrobat\activex\acroiefavclient.dll" "1/30/2011 3:00 PM"
    + "avast! WebRep" "avast! WebRep Plugin" "" "c:\program files\avast software\avast\aswwebrepie.dll" "2/23/2011 5:00 PM"
    + "Google Toolbar" "Google Toolbar" "Google Inc." "c:\program files (x86)\google\google toolbar\googletoolbar_32.dll" "3/11/2014 7:43 PM"
    X "myBabylon_English Toolbar" "Conduit Toolbar" "Conduit Ltd." "c:\program files (x86)\mybabylon_english\tbmyba.dll" "8/20/2008 10:03 PM"
    + "SnagIt" "SnagIt Add-in for Internet Explorer" "TechSmith Corporation" "c:\program files (x86)\techsmith\snagit 9\snagitieaddin.dll" "5/15/2008 10:38 PM"
    "HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" "" "1/24/2013 4:41 PM"
    + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnielinkednotes.dll" "2/28/2010 4:01 PM"
    + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files\microsoft office\office14\onbttnie.dll" "2/28/2010 4:01 PM"
    "HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Extensions" "" "" "" "1/24/2013 4:40 PM"
    + "&Blog This in Windows Live Writer" "Windows Live Writer Blog This Extension" "Microsoft Corporation" "c:\program files (x86)\windows live\writer\writerbrowserextension.dll" "11/10/2010 12:03 PM"
    + "OneNote Lin&ked Notes" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnielinkednotes.dll" "2/28/2010 1:35 PM"
    + "Se&nd to OneNote" "Microsoft OneNote Internet Explorer Add-in" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\onbttnie.dll" "2/28/2010 1:35 PM"
    + "Send by Bluetooth to" "Bluetooth IE PlugIn" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\ieplugin.dll" "3/13/2011 4:54 AM"
    "Task Scheduler" "" "" "" ""
    + "\0" "Internet Explorer" "Microsoft Corporation" "c:\program files\internet explorer\iexplore.exe" "8/16/2014 6:48 AM"
    + "\ATKOSD2" "ATKOSD2" "ASUS" "c:\program files (x86)\asus\atk package\atkosd2\atkosd2.exe" "8/17/2010 8:55 AM"
    + "\DeviceDetector" "MediaEspresso DeviceDetector" "CyberLink" "c:\program files (x86)\cyberlink\mediaespresso\devicedetector\devicedetector.exe" "11/1/2010 8:30 AM"
    + "\GoogleUpdateTaskUserS-1-5-21-2706264185-3534770265-3069475186-1001Core" "Google Installer" "Google Inc." "c:\users\k\appdata\local\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    + "\GoogleUpdateTaskUserS-1-5-21-2706264185-3534770265-3069475186-1001UA" "Google Installer" "Google Inc." "c:\users\k\appdata\local\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    X "\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task" "Windows Live Social Object Extractor Engine" "Microsoft Corporation" "c:\program files (x86)\windows live\soxe\wlsoxe.dll" "11/10/2010 12:02 PM"
    + "\Microsoft\Windows\NetTrace\GatherNetworkInfo" "" "" "c:\windows\system32\gathernetworkinfo.vbs" "6/10/2009 10:36 PM"
    + "\Microsoft\Windows\Windows Media Sharing\UpdateLibrary" "Windows Media Player Network Sharing Service Configuration Application" "Microsoft Corporation" "c:\program files\windows media player\wmpnscfg.exe" "7/14/2009 2:24 AM"
    + "\ProgramUpdateCheck" "Find software to open your files" "Trusted Software ApS" "c:\program files (x86)\file type assistant\tsassist.exe" "7/6/2011 11:23 PM"
    + "\SidebarExecute" "Windows Desktop Gadgets" "Microsoft Corporation" "c:\program files\windows sidebar\sidebar.exe" "11/20/2010 12:24 PM"
    + "\{F44E2F46-8957-4547-8142-E94C17C63D06}" "Winamp" "Nullsoft, Inc." "c:\program files (x86)\winamp\winamp.exe" "10/26/2011 8:49 PM"
    "HKLM\System\CurrentControlSet\Services" "" "" "" "9/22/2014 4:36 PM"
    + "AFBAgent" "ASUS FastBoot" "ASUSTeK Computer Inc." "c:\windows\system32\fbagent.exe" "1/25/2011 8:09 AM"
    + "ASLDRService" "ASLDR Service" "ASUS" "c:\program files (x86)\asus\atk package\atk hotkey\asldrsrv.exe" "6/15/2009 11:29 AM"
    + "Atheros Bt&Wlan Coex Agent" "Co-existence Coordinator Service between 11a/b/g/n Wireless LAN and Bluetooth." "Atheros" "c:\program files (x86)\bluetooth suite\ath_coexagent.exe" "12/28/2010 7:13 PM"
    + "AtherosSvc" "Atheros BT Stack Service Agent" "Atheros Commnucations" "c:\program files (x86)\bluetooth suite\adminservice.exe" "3/13/2011 4:56 AM"
    + "ATKGFNEXSrv" "GFNEXSrv" "ASUS" "c:\program files (x86)\asus\atk package\atkgfnex\gfnexsrv.exe" "12/15/2009 4:39 AM"
    + "avast! Antivirus" "Manages and implements avast! antivirus services for this computer. This includes the resident protection, the virus chest and the scheduler." "AVAST Software" "c:\program files\avast software\avast\avastsvc.exe" "2/23/2011 4:56 PM"
    + "Bonjour Service" "##Id_String2.6844F930_1628_4223_B5CC_5BB94B879762##" "Apple Computer, Inc." "c:\program files (x86)\bonjour\mdnsresponder.exe" "2/28/2006 10:42 PM"
    + "CLKMSVC10_38F51D56" "CyberLink KM Service" "CyberLink" "c:\program files (x86)\cyberlink\powerdvd10\navfilter\kmsvc.exe" "10/29/2010 12:51 PM"
    + "FLEXnet Licensing Service" "This service performs licensing functions on behalf of FLEXnet enabled products." "Macrovision Europe Ltd." "c:\program files (x86)\common files\macrovision shared\flexnet publisher\fnplicensingservice.exe" "6/27/2006 9:39 AM"
    + "fsssvc" "This service enables Family Safety on the computer. If this service is not running, Family Safety will not work." "Microsoft Corporation" "c:\program files (x86)\windows live\family safety\fsssvc.exe" "9/23/2010 9:16 AM"
    + "gupdate" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    + "gupdatem" "Keeps your Google software up to date. If this service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work. This service uninstalls itself when there is no Google software using it." "Google Inc." "c:\program files (x86)\google\update\googleupdate.exe" "2/16/2012 4:43 AM"
    + "gusvc" "Google Updater keeps your Google software up to date. If Google Updater Service is disabled or stopped, your Google software will not be kept up to date, meaning security vulnerabilities that may arise cannot be fixed and features may not work." "Google" "c:\program files (x86)\google\common\google updater\googleupdaterservice.exe" "3/2/2012 11:13 PM"
    + "LMS" "Allows applications to access the local Intel(R) Management and Security Application using its locally-available selected network interfaces." "Intel Corporation" "c:\program files (x86)\intel\intel(r) management engine components\lms\lms.exe" "12/21/2010 4:10 AM"
    + "Microsoft SharePoint Workspace Audit Service" "Microsoft SharePoint Workspace" "Microsoft Corporation" "c:\program files (x86)\microsoft office\office14\groove.exe" "3/25/2010 7:15 PM"
    + "MozillaMaintenance" "" "Mozilla Foundation" "c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe" "4/21/2012 1:47 AM"
    + "NBService" "Nero BackItUp Service is responsible to control all jobs created using Nero BackItUp. These jobs can create backups of selected files/folders/partitions or complete hard disk to hard disk, network drive, CD/DVD or FTP." "Nero AG" "c:\program files (x86)\nero\nero 7\nero backitup\nbservice.exe" "11/10/2006 8:18 PM"
    + "NVSvc" "NVIDIA Driver Helper Service, Version 267.54" "NVIDIA Corporation" "c:\windows\system32\nvvsvc.exe" "3/6/2011 2:34 PM"
    + "nvUpdatusService" "NVIDIA Settings Update Manager service, used to check new updates from NVIDIA server." "NVIDIA Corporation" "c:\program files (x86)\nvidia corporation\nvidia updatus\daemonu.exe" "3/6/2011 1:22 PM"
    + "ose" "Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports." "Microsoft Corporation" "c:\program files (x86)\common files\microsoft shared\source engine\ose.exe" "1/10/2010 6:16 AM"
    + "osppsvc" "Office Software Protection Platform Service (unlocalized description)" "Microsoft Corporation" "c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe" "8/12/2009 4:00 AM"
    + "Partner Service" "Partner application" "Google Inc." "c:\programdata\partner\partner.exe" "6/29/2009 8:42 PM"
    + "RichVideo" "RichVideo Module" "" "c:\program files (x86)\cyberlink\shared files\richvideo.exe" "4/7/2008 10:43 AM"
    + "SkypeUpdate" "Enables the detection, download and installation of updates for Skype." "Skype Technologies" "c:\program files (x86)\skype\updater\updater.exe" "4/3/2014 9:16 PM"
    + "TurboBoost" "Intel(R) Turbo Boost Technology Monitor 2.0" "Intel(R) Corporation" "c:\program files\intel\turboboost\turboboost.exe" "11/30/2010 1:02 AM"
    + "UNS" "Intel(R) Management and Security Application User Notification Service - Updates the Windows Event Log with notifications of pre defined events received from the local Intel(R) Management and Security Application Device." "Intel Corporation" "c:\program files (x86)\intel\intel(r) management engine components\uns\uns.exe" "12/21/2010 4:15 AM"
    + "VideAceWindowsService" "" "" "c:\expressgateutil\vawinservice.exe" "8/20/2010 11:44 AM"
    + "WinDefend" "Protection against spyware and potentially unwanted software" "Microsoft Corporation" "c:\program files\windows defender\mpsvc.dll" "5/27/2013 7:51 AM"
    + "wlidsvc" "Enables Windows Live ID authentication." "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidsvc.exe" "9/21/2010 11:46 PM"
    + "WMPNetworkSvc" "Shares Windows Media Player libraries to other networked players and media devices using Universal Plug and Play" "Microsoft Corporation" "c:\program files\windows media player\wmpnetwk.exe" "11/20/2010 1:18 PM"
    "HKLM\System\CurrentControlSet\Services" "" "" "" "9/22/2014 4:36 PM"
    + "adp94xx" "Adaptec Windows SAS/SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adp94xx.sys" "12/6/2008 1:54 AM"
    + "adpahci" "Adaptec Windows SATA Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\adpahci.sys" "5/1/2007 7:30 PM"
    + "adpu320" "Adaptec StorPort Ultra320 SCSI Driver (X64)" "Adaptec, Inc." "c:\windows\system32\drivers\adpu320.sys" "2/28/2007 2:04 AM"
    + "aliide" "ALi mini IDE Driver" "Acer Laboratories Inc." "c:\windows\system32\drivers\aliide.sys" "7/14/2009 1:19 AM"
    + "amdsata" "AHCI 1.2 Device Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdsata.sys" "3/19/2010 2:45 AM"
    + "amdsbs" "AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform" "AMD Technologies Inc." "c:\windows\system32\drivers\amdsbs.sys" "3/20/2009 8:36 PM"
    + "amdxata" "Storage Filter Driver" "Advanced Micro Devices" "c:\windows\system32\drivers\amdxata.sys" "3/19/2010 6:18 PM"
    + "AmUStor" "Alocr Micro USB Mass Storage Driver" "Alcor Micro, Corp." "c:\windows\system32\drivers\amustor.sys" "8/21/2009 8:48 AM"
    + "arc" "Adaptec RAID Storport Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arc.sys" "5/24/2007 11:27 PM"
    + "arcsas" "Adaptec SAS RAID WS03 Driver" "Adaptec, Inc." "c:\windows\system32\drivers\arcsas.sys" "1/14/2009 9:27 PM"
    + "ASMMAP64" "Memory mapping Driver" "ASUS" "c:\program files (x86)\asus\atk package\atkgfnex\asmmap64.sys" "7/2/2009 11:13 AM"
    + "aswFsBlk" "avast! mini-filter driver (aswFsBlk)" "AVAST Software" "c:\windows\system32\drivers\aswfsblk.sys" "2/23/2011 4:54 PM"
    + "aswMonFlt" "avast! mini-filter driver (aswMonFlt)" "AVAST Software" "c:\windows\system32\drivers\aswmonflt.sys" "2/23/2011 4:55 PM"
    + "aswRdr" "avast! TDI Redirect driver" "AVAST Software" "c:\windows\system32\drivers\aswrdr.sys" "2/23/2011 4:55 PM"
    + "aswSnx" "avast! virtualization driver (aswSnx)" "AVAST Software" "c:\windows\system32\drivers\aswsnx.sys" "2/23/2011 4:56 PM"
    + "aswSP" "avast! Self Protection" "AVAST Software" "c:\windows\system32\drivers\aswsp.sys" "2/23/2011 4:57 PM"
    + "aswTdi" "avast! Network Shield TDI driver" "AVAST Software" "c:\windows\system32\drivers\aswtdi.sys" "2/23/2011 4:55 PM"
    + "AthBTPort" "Atheros FILTER driver" "Atheros" "c:\windows\system32\drivers\btath_flt.sys" "6/24/2010 8:17 AM"
    + "athr" "Atheros Extensible Wireless LAN device driver" "Atheros Communications, Inc." "c:\windows\system32\drivers\athrx.sys" "10/4/2011 8:49 AM"
    + "ATKWMIACPIIO" "ATK WMIACPI Utility" "ASUS" "c:\program files (x86)\asus\atk package\atk wmiacpi\atkwmiacpi64.sys" "7/26/2010 7:56 AM"
    + "b06bdrv" "Broadcom NetXtreme II GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\bxvbda.sys" "2/14/2009 12:18 AM"
    + "b57nd60a" "Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver." "Broadcom Corporation" "c:\windows\system32\drivers\b57nd60a.sys" "4/26/2009 1:14 PM"
    + "BrFiltLo" "Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltlo.sys" "8/7/2006 3:51 AM"
    + "BrFiltUp" "Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver" "Brother Industries, Ltd." "c:\windows\system32\drivers\brfiltup.sys" "8/7/2006 3:51 AM"
    + "Brserid" "Brotehr Serial I/F Driver (WDM)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserid.sys" "8/7/2006 3:51 AM"
    + "BrSerWdm" "Brother Serial driver (WDM version)" "Brother Industries Ltd." "c:\windows\system32\drivers\brserwdm.sys" "8/7/2006 3:51 AM"
    + "BrUsbMdm" "Brother USB MDM Driver " "Brother Industries Ltd." "c:\windows\system32\drivers\brusbmdm.sys" "8/7/2006 3:51 AM"
    + "BrUsbSer" "Brother USB Serial Driver" "Brother Industries Ltd." "c:\windows\system32\drivers\brusbser.sys" "8/9/2006 2:11 PM"
    + "BTATH_A2DP" "Atheros A2DP driver" "Atheros" "c:\windows\system32\drivers\btath_a2dp.sys" "2/15/2011 3:47 AM"
    + "BTATH_BUS" "Atheros BUS driver" "Atheros" "c:\windows\system32\drivers\btath_bus.sys" "6/24/2010 8:17 AM"
    + "BTATH_HCRP" "Atheros HCRP driver" "Atheros" "c:\windows\system32\drivers\btath_hcrp.sys" "6/29/2010 11:30 AM"
    + "BTATH_LWFLT" "Atheros FILTER driver" "Atheros" "c:\windows\system32\drivers\btath_lwflt.sys" "9/13/2010 10:26 AM"
    + "BTATH_RCP" "Atheros AVRCP driver" "Atheros" "c:\windows\system32\drivers\btath_rcp.sys" "6/24/2010 8:17 AM"
    + "BtFilter" "BtFilter Driver" "Atheros" "c:\windows\system32\drivers\btfilter.sys" "3/8/2011 8:15 AM"
    + "cmdide" "CMD PCI IDE Bus Driver" "CMD Technology, Inc." "c:\windows\system32\drivers\cmdide.sys" "7/14/2009 1:19 AM"
    + "cpuz135" "CPUID Driver" "CPUID" "c:\windows\system32\drivers\cpuz135_x64.sys" "1/19/2011 6:42 PM"
    + "ebdrv" "Broadcom NetXtreme II 10 GigE VBD" "Broadcom Corporation" "c:\windows\system32\drivers\evbda.sys" "12/31/2008 6:29 PM"
    + "elxstor" "Storport Miniport Driver for LightPulse HBAs" "Emulex" "c:\windows\system32\drivers\elxstor.sys" "2/4/2009 12:52 AM"
    + "ETD" "ETD Control Center" "ELAN Microelectronic Corp." "c:\windows\system32\drivers\etd.sys" "9/8/2010 1:39 PM"
    + "FLxHCIc" "xHCI Bus Driver" "Fresco Logic" "c:\windows\system32\drivers\flxhcic.sys" "2/24/2011 10:59 AM"
    + "FLxHCIh" "xHCI Hub Driver" "Fresco Logic" "c:\windows\system32\drivers\flxhcih.sys" "2/24/2011 11:00 AM"
    + "hcw85cir" "Hauppauge WinTV 885 Consumer IR Driver for eHome" "Hauppauge Computer Works, Inc." "c:\windows\system32\drivers\hcw85cir.sys" "5/11/2009 10:26 AM"
    + "HpSAMD" "Smart Array SAS/SATA Controller Media Driver" "Hewlett-Packard Company" "c:\windows\system32\drivers\hpsamd.sys" "4/20/2010 8:32 PM"
    + "iaStor" "Intel Rapid Storage Technology driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastor.sys" "11/6/2010 9:44 AM"
    + "iaStorV" "Intel Matrix Storage Manager driver - x64" "Intel Corporation" "c:\windows\system32\drivers\iastorv.sys" "6/11/2010 2:46 AM"
    + "igfx" "Intel Graphics Kernel Mode Driver" "Intel Corporation" "c:\windows\system32\drivers\igdkmd64.sys" "1/27/2011 6:57 PM"
    + "iirsp" "Intel/ICP Raid Storport Driver" "Intel Corp./ICP vortex GmbH" "c:\windows\system32\drivers\iirsp.sys" "12/13/2005 11:47 PM"
    + "IntcAzAudAddService" "Realtek(r) High Definition Audio Function Driver" "Realtek Semiconductor Corp." "c:\windows\system32\drivers\rtkvhd64.sys" "3/22/2011 12:19 PM"
    + "IntcDAud" "Intel(R) Display Audio Driver" "Intel(R) Corporation" "c:\windows\system32\drivers\intcdaud.sys" "10/15/2010 10:28 AM"
    + "kbfiltr" "Keyboard Filter Driver" " " "c:\windows\system32\drivers\kbfiltr.sys" "7/20/2009 11:21 AM"
    + "L1C" "Atheros L1c PCI-E Gigabit Ethernet Controller" "Atheros Communications, Inc." "c:\windows\system32\drivers\l1c62x64.sys" "4/1/2009 7:09 AM"
    + "LSI_FC" "LSI Fusion-MPT FC Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_fc.sys" "12/10/2008 12:46 AM"
    + "LSI_SAS" "LSI Fusion-MPT SAS Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas.sys" "5/19/2009 2:20 AM"
    + "LSI_SAS2" "LSI SAS Gen2 Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_sas2.sys" "5/19/2009 2:31 AM"
    + "LSI_SCSI" "LSI Fusion-MPT SCSI Driver (StorPort)" "LSI Corporation" "c:\windows\system32\drivers\lsi_scsi.sys" "4/17/2009 12:13 AM"
    + "megasas" "MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for x64" "LSI Corporation" "c:\windows\system32\drivers\megasas.sys" "5/19/2009 3:09 AM"
    + "MegaSR" "LSI MegaRAID Software RAID Driver" "LSI Corporation, Inc." "c:\windows\system32\drivers\megasr.sys" "5/19/2009 3:25 AM"
    + "MEIx64" "Intel(R) Management Engine Interface" "Intel Corporation" "c:\windows\system32\drivers\hecix64.sys" "10/20/2010 1:33 AM"
    + "nfrd960" "IBM ServeRAID Controller Driver" "IBM Corporation" "c:\windows\system32\drivers\nfrd960.sys" "6/6/2006 11:11 PM"
    + "nvlddmkm" "NVIDIA Windows Kernel Mode Driver, Version 267.54 " "NVIDIA Corporation" "c:\windows\system32\drivers\nvlddmkm.sys" "3/6/2011 1:58 PM"
    + "nvpciflt" "NVIDIA Windows Kernel Mode Driver, Version 267.54 " "NVIDIA Corporation" "c:\windows\system32\drivers\nvpciflt.sys" "3/6/2011 1:58 PM"
    + "nvraid" "NVIDIA® nForce(TM) RAID Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvraid.sys" "3/19/2010 10:59 PM"
     
  7. zufan

    zufan TS Rookie Topic Starter

    PART 2 of Log..


    + "nvstor" "NVIDIA® nForce(TM) Sata Performance Driver" "NVIDIA Corporation" "c:\windows\system32\drivers\nvstor.sys" "3/19/2010 10:45 PM"
    + "pcouffin" "low level access layer for CD/DVD/BD devices" "VSO Software" "c:\windows\system32\drivers\pcouffin.sys" "12/5/2006 4:39 PM"
    + "ql2300" "QLogic Fibre Channel Stor Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql2300.sys" "1/23/2009 1:05 AM"
    + "ql40xx" "QLogic iSCSI Storport Miniport Driver" "QLogic Corporation" "c:\windows\system32\drivers\ql40xx.sys" "5/19/2009 3:18 AM"
    + "RTL8167" "Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver " "Realtek " "c:\windows\system32\drivers\rt64win7.sys" "2/16/2011 11:03 AM"
    + "s0016bus" "Sony Ericsson Device 0016 Driver" "MCCI Corporation" "c:\windows\system32\drivers\s0016bus.sys" "4/24/2008 3:46 PM"
    + "s0016mdfl" "Sony Ericsson Device 0016 USB WMC Modem Filter" "MCCI Corporation" "c:\windows\system32\drivers\s0016mdfl.sys" "4/24/2008 3:49 PM"
    + "s0016mdm" "Sony Ericsson Device 0016 USB WMC Modem Driver" "MCCI Corporation" "c:\windows\system32\drivers\s0016mdm.sys" "4/24/2008 3:49 PM"
    + "s0016mgmt" "Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM)" "MCCI Corporation" "c:\windows\system32\drivers\s0016mgmt.sys" "4/24/2008 3:51 PM"
    + "s0016nd5" "Sony Ericsson Device 0016 USB Ethernet Emulation (NDIS 5 Miniport)" "MCCI Corporation" "c:\windows\system32\drivers\s0016nd5.sys" "4/24/2008 3:44 PM"
    + "s0016obex" "Sony Ericsson Device 0016 USB WMC OBEX Interface" "MCCI Corporation" "c:\windows\system32\drivers\s0016obex.sys" "4/24/2008 3:54 PM"
    + "s0016unic" "Sony Ericsson Device 0016 USB Ethernet Emulation" "MCCI Corporation" "c:\windows\system32\drivers\s0016unic.sys" "4/24/2008 3:43 PM"
    + "S6000KNT" "AVStream Simulated Hardware Sample" "Windows (R) Win 7 DDK provider" "c:\windows\system32\drivers\s6000knt.sys" "7/23/2010 9:04 AM"
    + "SBRE" "Anti-Rootkit Engine" "Sunbelt Software" "c:\windows\system32\drivers\sbredrv.sys" "4/23/2009 4:44 AM"
    + "secdrv" "Macrovision SECURITY Driver" "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." "c:\windows\system32\drivers\secdrv.sys" "9/13/2006 3:18 PM"
    + "Serial" "Brotehr Serial I/F Driver (WDM)" "Brother Industries Ltd." "c:\windows\system32\drivers\serial.sys" "7/14/2009 2:00 AM"
    + "SiSGbeLH" "NDIS 6.0 Miniport Driver for SiS191/SiS190 Ethernet Device" "Silicon Integrated Systems Corp." "c:\windows\system32\drivers\sisg664.sys" "2/26/2009 11:42 AM"
    + "SiSRaid2" "SiS RAID Stor Miniport Driver" "Silicon Integrated Systems Corp." "c:\windows\system32\drivers\sisraid2.sys" "9/24/2008 8:28 PM"
    + "SiSRaid4" "SiS AHCI Stor-Miniport Driver" "Silicon Integrated Systems" "c:\windows\system32\drivers\sisraid4.sys" "10/1/2008 11:56 PM"
    + "speedfan" "SpeedFan x64 Driver" "Almico Software" "c:\windows\syswow64\speedfan.sys" "3/18/2011 6:08 PM"
    + "stexstor" "Promise SuperTrak EX Series Driver for Windows " "Promise Technology" "c:\windows\system32\drivers\stexstor.sys" "2/18/2009 1:03 AM"
    + "taphss" "TAP-Win32 Virtual Network Driver" "AnchorFree Inc" "c:\windows\system32\drivers\taphss.sys" "9/15/2009 9:58 PM"
    + "taphss6" "Anchorfree HSS VPN Adapter" "Anchorfree Inc." "c:\windows\system32\drivers\taphss6.sys" "5/7/2014 4:59 AM"
    + "TurboB" "Turbo Boost UI Monitor driver" "Intel(R) Corporation" "c:\windows\system32\drivers\turbob.sys" "11/30/2010 1:02 AM"
    + "viaide" "VIA Generic PCI IDE Bus Driver" "VIA Technologies, Inc." "c:\windows\system32\drivers\viaide.sys" "7/14/2009 1:19 AM"
    + "vsmraid" "VIA RAID DRIVER FOR AMD-X86-64" "VIA Technologies Inc.,Ltd" "c:\windows\system32\drivers\vsmraid.sys" "1/31/2009 3:18 AM"
    + "WDC_SAM" "Manages WD external storage products." "Western Digital Technologies" "c:\windows\system32\drivers\wdcsam64.sys" "4/16/2008 10:39 AM"
    "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "10/9/2013 12:22 PM"
    + "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm" "7/14/2009 3:28 AM"
    "HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" "" "1/24/2013 5:35 PM"
    + "mixer" "Wave sound driver for the Total Recorder (Professional Edition)" "High Criteria inc." "c:\windows\syswow64\drvtrntm.dll" "4/12/2008 11:29 AM"
    + "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\syswow64\l3codeca.acm" "7/14/2009 3:06 AM"
    + "msacm.l3codecp" "MPEG Audio Layer-3 Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\syswow64\l3codecp.acm" "7/14/2009 3:06 AM"
    + "msacm.lameacm" "Lame MP3 codec engine" "http://www.mp3dev.org/" "c:\windows\syswow64\lameacm.acm" "3/23/2010 1:52 PM"
    + "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\syswow64\iccvid.dll" "11/20/2010 1:59 PM"
    + "wave" "Wave sound driver for the Total Recorder (Professional Edition)" "High Criteria inc." "c:\windows\syswow64\drvtrntm.dll" "4/12/2008 11:29 AM"
    "HKLM\Software\Classes\Filter" "" "" "" "9/24/2012 7:53 AM"
    + "LAME Audio Encoder" "LAME Audio Encoder" "" "c:\program files (x86)\common files\visioforge shared\formats\mp3\lame.ax" "1/14/2007 5:19 PM"
    "HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "7/16/2011 8:39 PM"
    + "ASUS Color Preview Filter" "ASUS Color Preview Filter" "ASUSTek" "c:\program files (x86)\asus\splendid\rgbtran.ax" "10/9/2006 1:19 PM"
    + "Color Convert" "ASUS Color Preview Filter" "ASUSTek" "c:\program files (x86)\asus\splendid\rgbtran.ax" "10/9/2006 1:19 PM"
    "HKLM\Software\Wow6432Node\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" "" "9/19/2014 10:48 PM"
    + "_ VSO Preview Filter" "Video preview filter" "VSO Software SARL" "c:\program files (x86)\vso\common\vsovprev.ax" "6/20/1992 12:22 AM"
    + "ASUS SplitVCam Pump" "" "" "c:\program files (x86)\asus\virtualcamera\virtualcamera.ax" "1/18/2011 7:21 AM"
    + "ASUS SplitVCam Relayer" "" "" "c:\program files (x86)\asus\virtualcamera\virtualcamera.ax" "1/18/2011 7:21 AM"
    + "ASUS SplitVCam Renderer" "" "" "c:\program files (x86)\asus\virtualcamera\splitvcamrenderer.ax" "1/18/2011 7:21 AM"
    + "ASUS Virtual Camera" "" "" "c:\program files (x86)\asus\virtualcamera\virtualcamera.ax" "1/18/2011 7:21 AM"
    + "Capture File Writer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    + "CyberLink Audio Decoder (PDVD10)" "CyberLink Audio Decoder Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claud.ax" "10/20/2010 8:41 AM"
    + "CyberLink Audio Decoder(PDVD10 UPnP)" "CyberLink Audio Decoder Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\upnp\claud.ax" "2/16/2007 10:17 AM"
    + "CyberLink Audio Effect (PDVD10)" "CyberLink Audio Effect Filter" "CyberLink Corporation" "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claudfx.ax" "12/25/2009 10:54 AM"
    + "CyberLink Audio Noise Reduction" "CLAuNR" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gaunrwrapper.ax" "10/17/2005 4:34 AM"
    + "CyberLink Audio Resampler" "CLAuRsmpl.ax" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gaursmpl.ax" "2/25/2005 4:41 AM"
    + "CyberLink Audio Spectrum Analyzer(PDVD10 UPnP)" "CLAudSpa.ax" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\upnp\claudspa.ax" "9/24/2004 1:08 PM"
    + "CyberLink Audio VolumeBooster" "CyberLink Audio Volume Booster Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gvb.ax" "10/8/2004 10:36 AM"
    + "CyberLink Audio Wizard" "CyberLink Audio Wizard Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claudwizard.ax" "8/14/2009 3:26 PM"
    + "CyberLink AudioCD Filter" "CyberLink AudioCD Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gaudiocd.ax" "1/21/2008 12:35 PM"
    + "CyberLink AudioCD Filter (PDVD10)" "CyberLink AudioCD Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\claudiocd.ax" "6/23/2009 4:00 PM"
    + "CyberLink AVCHD Navigator" "CLBDROMNav" "cyberlink" "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clavchdnav.ax" "9/16/2010 9:27 AM"
    + "CyberLink Demultiplexer(PDVD10 UPnP)" "MPEG-2 Dempltiplexer" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\upnp\cldemuxer.ax" "9/13/2006 2:50 PM"
    + "Cyberlink Demuxer 2.0" "CLDemuxer2" "Cyberlink" "c:\program files (x86)\cyberlink\powerdvd10\navfilter\cldemuxer2.ax" "9/23/2010 6:30 AM"
    + "CyberLink Digest Filter (PDVD10)" "DigestFilter Dynamic Link Library" "" "c:\program files (x86)\cyberlink\powerdvd10\digestfilter.dll" "4/28/2010 2:54 PM"
    + "Cyberlink Dump Dispatch Filter" "Cyberlink File Dump Dispatch Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gdumpdispatch.ax" "12/12/2003 9:01 AM"
    + "Cyberlink Dump Filter" "Cyberlink File Dump Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gdump.ax" "11/22/2006 2:15 PM"
    + "CyberLink DVD Navigator (PDVD10)" "CyberLink DVD Navigation Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clnavx.ax" "9/29/2010 8:03 AM"
    + "CyberLink Editing Service 3.0 (Source)" "CES Kernel" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gedtkrn.dll" "5/3/2007 8:18 AM"
    + "Cyberlink File Reader (Async.)" "Cyberlink MPEG File Reader" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2greader.ax" "6/16/2003 5:35 AM"
    + "CyberLink FLV Splitter(PDVD10)" "CyberLink FLV Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clflvsplitter.ax" "8/27/2010 9:06 AM"
    + "CyberLink HAM Decoder" "CyberLink 264 Decoder Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clcvd.ax" "10/29/2010 9:28 AM"
    + "CyberLink HD/BD Mixer (PDVD10)" "CLHBMixer" " " "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\clhbmixer.ax" "10/7/2010 9:16 AM"
    + "CyberLink Line21 Decoder (PDVD10)" "CyberLink Line21 Decoder Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clline21.ax" "7/24/2009 4:21 AM"
    + "CyberLink Load Image Filter" "CLImage" "CyberLink" "c:\program files (x86)\cyberlink\shared files\climage.ax" "11/7/2006 6:16 AM"
    + "CyberLink M2V Writer" "CLM2VWriter" "CyberLink" "c:\program files (x86)\cyberlink\power2go\p2gm2vwriter.ax" "8/17/2005 4:45 PM"
    + "CyberLink Matroska Splitter(PDVD10)" "CyberLink Matroska Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clmkvsplter.ax" "7/2/2010 11:20 AM"
    + "CyberLink MP3/WAV Wrapper" "CyberLink MP3 Wrapper" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gmp3wrap.ax" "1/14/2008 4:30 AM"
    + "CyberLink MPEG Decoder" "CyberLink Video/SP Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gmvd.ax" "9/29/2003 3:50 PM"
    + "CyberLink MPEG Muxer" "MpgMux" "CyberLink" "c:\program files (x86)\cyberlink\power2go\p2gmpgmux.ax" "5/23/2008 9:27 AM"
    + "CyberLink MPEG Splitter" "CyberLink MPEG Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\upnp\clsplter.ax" "6/22/2007 5:18 PM"
    + "CyberLink MPEG Splitter" "CyberLink MPEG Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clsplter.ax" "10/8/2010 10:23 AM"
    + "CyberLink MPEG Video Encoder" "CyberLink MPEG Video Encoder " "CyberLink Corp. " "c:\program files (x86)\cyberlink\power2go\p2gvidenc.ax" "10/26/2005 1:41 PM"
    + "CyberLink MPEG-1 Splitter" "CyberLink MPEG Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gm1spliter.ax" "12/4/2007 5:11 AM"
    + "CyberLink MPEG-2 Splitter" "CyberLink MPEG Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gm2spliter.ax" "12/4/2007 5:10 AM"
    + "CyberLink MPEG-4 Splitter (PDVD10)" "CyberLink MPEG-4 Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clm4splt.ax" "5/6/2010 12:39 PM"
    + "CyberLink PCM Wrapper" "CyberLink PCM Wrapper" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gpcmenc.ax" "3/21/2002 7:54 AM"
    + "CyberLink Push-Mode CLStream(PDVD10)" "CLStream" "CyberLink" "c:\program files (x86)\cyberlink\powerdvd10\upnp\clstream(pushmode).ax" "4/27/2006 3:05 PM"
    + "CyberLink RealAudio Decoder(PDVD10)" "CyberLink RealMedia Audio Decoder" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\clrmaud.ax" "12/25/2009 5:44 AM"
    + "CyberLink RealMedia Splitter(PDVD10)" "CyberLink RealMedia Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\navfilter\clrmsplitter.ax" "5/6/2010 11:42 AM"
    + "CyberLink RealVideo Decoder(PDVD10)" "CyberLink RealMedia Video Decoder" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clrmvd.ax" "12/25/2009 5:42 AM"
    + "CyberLink Streamming Filter(PDVD10)" "Cyberlink Streaming Source Filter(Scramble)" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\upnp\clstream.ax" "5/2/2007 8:12 AM"
    + "Cyberlink SubTitle Importor (PDVD10)" "CLSubTitle.ax" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clsubtitle.ax" "10/21/2010 11:34 AM"
    + "Cyberlink SubTitle Importor 2.0 (PDVD10)" "CLSubTitle.ax" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clsubtitle.ax" "10/21/2010 11:34 AM"
    + "CyberLink TimeStretch Filter (CES)" "CLAuTS.ax" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gauts.ax" "10/12/2004 4:32 PM"
    + "CyberLink TimeStretch Filter (PDVD10)" "CLAuTS.ax" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\audiofilter\clauts.ax" "10/4/2010 5:39 AM"
    + "CyberLink TL MPEG Splitter" "CyberLink MPEG Splitter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gtlmsplter.ax" "10/19/2006 7:33 AM"
    + "CyberLink Tzan Filter (PDVD10)" "Cyberlink Tzan Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\cltzan.ax" "10/26/2010 2:22 PM"
    + "CyberLink Video Decoder (PDVD10)" "CyberLink 264 Decoder Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clcvd.ax" "10/29/2010 9:28 AM"
    + "CyberLink Video Effect" "CLVidFx" "CyberLink" "c:\program files (x86)\cyberlink\power2go\p2gvidfx.ax" "8/30/2005 6:01 AM"
    + "CyberLink Video Regulator" "CLRGL" "Cyberlink" "c:\program files (x86)\cyberlink\power2go\p2grgl.ax" "9/28/2005 12:42 PM"
    + "CyberLink Video Stabilizer" "CLVideoDeShaking" "CyberLink" "c:\program files (x86)\cyberlink\power2go\p2gvideostabilizer.ax" "10/17/2005 8:28 AM"
    + "CyberLink Video/SP Decoder (PDVD10)" "CyberLink Video/SP Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\videofilter\clvsd.ax" "7/13/2010 12:17 PM"
    + "CyberLink Video/SP Decoder(PDVD10 UPnP)" "CyberLink Video/SP Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\powerdvd10\upnp\clvsd.ax" "9/13/2006 7:50 AM"
    + "CyberLink WMV/WMA Demux(PDVD10)" "WMV/WMA Demux" "CyberLink" "c:\program files (x86)\cyberlink\powerdvd10\upnp\clwmfdemux.ax" "1/2/2006 2:16 PM"
    + "DV Scenes" "DV-Timecode based Scenechange Detection" "Nero AG" "c:\program files (x86)\nero\nero 7\nero vision\nvdv.dll" "6/9/2006 1:13 PM"
    + "DV Source Filter" "DV-Timecode based Scenechange Detection" "Nero AG" "c:\program files (x86)\nero\nero 7\nero vision\nvdv.dll" "6/9/2006 1:13 PM"
    + "ffdshow Audio Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\essentials codec pack\ffdshow\ffdshow.ax" "12/8/2009 7:50 PM"
    + "ffdshow Audio Processor" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\essentials codec pack\ffdshow\ffdshow.ax" "12/8/2009 7:50 PM"
    + "ffdshow raw video filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\essentials codec pack\ffdshow\ffdshow.ax" "12/8/2009 7:50 PM"
    + "ffdshow subtitles filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\essentials codec pack\ffdshow\ffdshow.ax" "12/8/2009 7:50 PM"
    + "ffdshow Video Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "c:\program files (x86)\essentials codec pack\ffdshow\ffdshow.ax" "12/8/2009 7:50 PM"
    + "Gargle" "Gargle Filter (Sample)" "Microsoft Corporation" "c:\program files (x86)\asus\asus lifeframe3\lifeframeaudio.ax" "8/7/2006 10:44 AM"
    + "Haali Matroska Muxer" "Haali Media Splitter" "" "c:\program files (x86)\essentials codec pack\haali\splitter.ax" "8/14/2010 10:44 AM"
    + "Haali Media Splitter" "Haali Media Splitter" "" "c:\program files (x86)\essentials codec pack\haali\splitter.ax" "8/14/2010 10:44 AM"
    + "Haali Media Splitter (AR)" "Haali Media Splitter" "" "c:\program files (x86)\essentials codec pack\haali\splitter.ax" "8/14/2010 10:44 AM"
    + "Haali Simple Media Splitter" "Haali Media Splitter" "" "c:\program files (x86)\essentials codec pack\haali\splitter.ax" "8/14/2010 10:44 AM"
    + "Haali Video Renderer" "" "" "c:\program files (x86)\essentials codec pack\haali\dxr.dll" "8/14/2010 10:45 AM"
    + "Haali Video Sink" "Haali Media Splitter" "" "c:\program files (x86)\essentials codec pack\haali\splitter.ax" "8/14/2010 10:44 AM"
    + "HighMAT and MPV Navigator Filter" "MPV Playback Filter" "" "c:\program files (x86)\common files\ahead\dsfilter\hmnavigator.ax" "5/5/2006 1:39 PM"
    + "HighMAT/MPV Navigation Client Filter" "MPV Playback Filter" "" "c:\program files (x86)\common files\ahead\dsfilter\hmnavigator.ax" "5/5/2006 1:39 PM"
    + "LAME Audio Encoder" "LAME Audio Encoder" "" "c:\program files (x86)\common files\visioforge shared\formats\mp3\lame.ax" "1/14/2007 5:19 PM"
    + "LifeFrame Image Effects" "Camera Filter" "ASUS" "c:\program files (x86)\asus\asus lifeframe3\camera_effect.ax" "9/28/2010 2:23 PM"
    + "Logon Effects" "SmartLogon Filter" "ASUS" "c:\program files (x86)\asus\smartlogon\face_filter.ax" "6/17/2008 3:23 PM"
    + "Matroska Muxer" "Matroska Muxer" "Gabest" "c:\program files (x86)\common files\visioforge shared\formats\matroska\matroskamuxer.ax" "8/16/2004 3:41 PM"
    + "MotionDetect" "" "" "c:\program files (x86)\asus\asus lifeframe3\motiondetect.ax" "3/7/2006 7:50 AM"
    + "MPEG Video Decoder (Gabest)" "MPEG-1/2 Decoder Filter for DirectShow" "Gabest" "c:\program files (x86)\essentials codec pack\mpeg2decfilter.ax" "9/18/2007 4:31 PM"
    + "Nero Audible Decoder" "Nero Audible Decoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudible.ax" "11/9/2006 5:01 PM"
    + "Nero Audio CD Filter" "Nero Audio CD Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudcd.ax" "11/9/2006 4:36 PM"
    + "Nero Audio CD Navigator" "Nero Audio CD Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudcd.ax" "11/9/2006 4:36 PM"
    + "Nero Audio Processor" "Nero Audio Processor" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neaudioconv.ax" "11/9/2006 4:33 PM"
    X "Nero Audio Source" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax" "11/9/2006 4:22 PM"
    X "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax" "11/9/2006 4:22 PM"
    X "Nero Audio Stream Renderer" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax" "11/9/2006 4:22 PM"
    + "Nero AV Synchronizer" "Audio/Video Synchronizer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neavsync.ax" "11/9/2006 4:25 PM"
    + "Nero Deinterlace" "Deinterlacing Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nedeinterlace.ax" "11/9/2006 4:34 PM"
    + "Nero Digital AVC Audio Encoder" "AAC LC/HE Audio Encoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendaud.ax" "11/9/2006 4:35 PM"
    + "Nero Digital AVC File Writer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax" "11/9/2006 4:35 PM"
    + "Nero Digital AVC Muxer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax" "11/9/2006 4:35 PM"
    + "Nero Digital AVC Null Renderer" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax" "11/9/2006 4:35 PM"
    + "Nero Digital AVC Subpicture Enc" "NeroDigital File Format Muxer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendmux.ax" "11/9/2006 4:35 PM"
    + "Nero Digital AVC Video Enc" "MPEG4 and H.264 (AVC) Video Encoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nendvid.ax" "11/9/2006 4:36 PM"
    + "Nero Digital Parser" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\ndparser.ax" "11/9/2006 4:28 PM"
    + "Nero DV Splitter" "DV Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nedvsplitter.ax" "11/9/2006 4:45 PM"
    + "Nero ES Video Reader" "NeroDigital / mp4 / avi / mov parser" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\ndparser.ax" "11/9/2006 4:28 PM"
    + "Nero File Source" "Nero SVCD source filter" "Nero AG " "c:\program files (x86)\common files\ahead\dsfilter\nefilesrc.ax" "11/9/2006 4:19 PM"
    + "Nero File Source (Async.)" "Nero Home" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nefilesourceasync.ax" "11/3/2006 9:47 AM"
    + "Nero File Source / Splitter" "Push Mode VOB Source Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nefsource.ax" "11/9/2006 4:46 PM"
    + "Nero Format Converter" "Frame rate / Color space converter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neroformatconv.ax" "11/9/2006 4:29 PM"
    + "Nero Frame Capture" "Direct Show frame grabber filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\necapture.ax" "11/9/2006 4:29 PM"
    + "Nero FTC" "Frame Time Corrector Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neftc.ax" "3/24/2006 5:28 PM"
    + "Nero InteractiveGraphics Decoder" "Graphics Decoder Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nebdgraphic.ax" "11/9/2006 4:47 PM"
    + "Nero MP4 Splitter" "MP4 Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nemp4splitter.ax" "11/9/2006 4:48 PM"
    + "Nero Mpeg2 Encoder" "MPEG 1/2 encoder filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevcr.ax" "11/9/2006 4:20 PM"
    + "Nero Ogg Splitter" "Ogg Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neoggsplitter.ax" "11/9/2006 4:48 PM"
    + "Nero Overlay Mixer" "Overlay Mixer Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neoverlaymixer.ax" "11/9/2006 4:47 PM"
    + "Nero Photo Source" "Nero Home" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nephotosource.ax" "11/3/2006 9:45 AM"
    + "Nero PresentationGraphics Decoder" "Graphics Decoder Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nebdgraphic.ax" "11/9/2006 4:47 PM"
    + "Nero PS Muxer" "" "" "c:\program files (x86)\common files\ahead\dsfilter\nepsmuxer.ax" "11/9/2006 4:46 PM"
    + "Nero QuickTime(tm) Audio Decoder" "QuickTime(tm) Decoder Wrapper" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neqtdec.ax" "11/9/2006 4:33 PM"
    + "Nero QuickTime(tm) Video Decoder" "QuickTime(tm) Decoder Wrapper" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neqtdec.ax" "11/9/2006 4:33 PM"
    + "Nero Resize" "Resizing Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\neresize.ax" "11/9/2006 4:34 PM"
    + "Nero Sample Queue" "Sample Queue Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesamplequeue.ax" "5/5/2006 4:10 PM"
    + "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nescenedetector.ax" "11/9/2006 4:20 PM"
    + "Nero Scene Change Detector" "Scene Change Detector" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nescenedetector.ax" "11/9/2006 4:20 PM"
    + "Nero Sound Processor" "Nero Sound Processor" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesoundproc.ax" "11/9/2006 5:02 PM"
    + "Nero Splitter" "Splitter Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesplitter.ax" "11/9/2006 4:46 PM"
    + "Nero Stream Buffer Sink" "Nero Stream Buffer Engine" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesbe.ax" "11/9/2006 4:47 PM"
    + "Nero Stream Buffer Source" "Nero Stream Buffer Engine" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesbe.ax" "11/9/2006 4:47 PM"
    + "Nero Stream Control" "Transport Stream Controller Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nestreamcontrol.ax" "2/24/2006 12:09 PM"
    + "Nero Subpicture Decoder" "Nero Subpicture Decoder" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesubpicture.ax" "11/9/2006 4:32 PM"
    + "Nero Subtitle" "Subtitle Mixer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesubtitle.ax" "11/9/2006 4:34 PM"
    + "Nero Thumbnail Decoder" "Thumbnail Decoder Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nebdthumbnail.ax" "11/9/2006 4:48 PM"
    + "Nero Vcd Navigator" "Nero Vcd Navigator Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevcd.ax" "11/9/2006 4:47 PM"
    + "Nero Video Analyzer" "Nero Video Analyzer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideoanalyzer.ax" "11/9/2006 4:34 PM"
    + "Nero Video Processor" "Resize / Deinterlace / Color Correction / Film Effect / Frame Capture Filter" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerovideoproc.ax" "11/9/2006 4:30 PM"
    + "Nero Video Renderer" "Nero Video Renderer" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nevideorenderer.ax" "11/9/2006 4:32 PM"
    + "Nero Video Source" "Nero Library" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nerender.ax" "11/9/2006 4:22 PM"
    + "Nero3D Text Effect" "Nero 3D DirectShow Filter" "Nero AG" "c:\program files (x86)\common files\ahead\lib\nsg_dxfilter.dll" "10/11/2006 3:27 PM"
    + "Nero3D Transition" "Nero 3D DirectShow Filter" "Nero AG" "c:\program files (x86)\common files\ahead\lib\nsg_dxfilter.dll" "10/11/2006 3:27 PM"
    + "Nero3D Video Filter" "Nero 3D DirectShow Filter" "Nero AG" "c:\program files (x86)\common files\ahead\lib\nsg_dxfilter.dll" "10/11/2006 3:27 PM"
    + "NeSoundSwitch" "Nero Sound Switcher" "Nero AG" "c:\program files (x86)\common files\ahead\dsfilter\nesoundswitch.ax" "11/9/2006 4:28 PM"
    + "P2G Audio Decoder" "CyberLink Audio Decoder Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gaud.ax" "12/1/2006 7:59 AM"
    + "P2G Audio Encoder" "CyberLink Audio Encoder Filter" "Cyberlink Corp." "c:\program files (x86)\cyberlink\power2go\p2gaudenc.ax" "12/20/2006 11:20 AM"
    + "P2G Video Decoder" "CyberLink Video/SP Filter" "CyberLink Corp." "c:\program files (x86)\cyberlink\power2go\p2gvsd.ax" "11/10/2005 2:36 PM"
    + "P2G Video Regulator" "CyberLink Video Regulator" "CyberLink" "c:\program files (x86)\cyberlink\power2go\p2gresample.ax" "6/18/2002 5:32 AM"
    + "RealAudio Decoder" "RealMedia Splitter" "Gabest" "c:\program files (x86)\essentials codec pack\realmediasplitter.ax" "9/18/2007 4:27 PM"
    + "RealMedia Source" "RealMedia Splitter" "Gabest" "c:\program files (x86)\essentials codec pack\realmediasplitter.ax" "9/18/2007 4:27 PM"
    + "RealMedia Splitter" "RealMedia Splitter" "Gabest" "c:\program files (x86)\essentials codec pack\realmediasplitter.ax" "9/18/2007 4:27 PM"
    + "RealVideo Decoder" "RealMedia Splitter" "Gabest" "c:\program files (x86)\essentials codec pack\realmediasplitter.ax" "9/18/2007 4:27 PM"
    + "Record Queue" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    + "Special Effects" "VisioForge Video Effects Filter" "VisioForge" "c:\program files (x86)\common files\visioforge shared\main\visioforge_videoeffects_4.ax" "5/1/2009 2:16 PM"
    + "Standard MPEG Encoder v6" "DirectShow MPEG Encoding and Multiplexing DirectShow Filter" "Standard MPEG" "c:\program files (x86)\common files\visioforge shared\standard mpeg\directencode.dll" "10/16/2008 6:55 PM"
    + "VHFLVWriter" "DirectShow Flash Video Writer filter" "" "c:\program files (x86)\common files\visioforge shared\formats\flv\vhflvwriter.ax" "4/10/2007 7:11 PM"
    + "VisioForge Audio Effects" "Audio Effects" "VisioForge" "c:\program files (x86)\common files\visioforge shared\main\visioforge_audio_effects_4.ax" "6/20/1992 12:22 AM"
    + "VisioForge Dump 4" "VisioForge Dump" "VisioForge" "c:\program files (x86)\common files\visioforge shared\main\visioforge_dump.ax" "11/23/2008 7:12 PM"
    + "VisioForge WAV Dest" "VisioForge WAV Dest" "VisioForge" "c:\program files (x86)\common files\visioforge shared\main\visioforge_wavdest.ax" "11/23/2008 4:45 PM"
    + "WM VIH2 Fix" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    + "WMT DV Extract Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    + "WMT Sample Info Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    + "WMT Switch Filter" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    + "WMT Virtual Renderer" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    + "WMT Virtual Source" "Windows Live Video Acquisition Filters" "Microsoft Corporation" "c:\program files (x86)\windows live\photo gallery\wlxvafilt.dll" "11/10/2010 12:21 PM"
    "HKLM\SOFTWARE\Classes\Htmlfile\Shell\Open\Command\(Default)" "" "" "" "4/7/2013 10:35 PM"
    + "C:\Program Files\Internet Explorer\iexplore.exe" "Internet Explorer" "Microsoft Corporation" "c:\program files\internet explorer\iexplore.exe" "8/16/2014 6:48 AM"
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls" "" "" "" "6/3/2014 5:53 PM"
    + "C:\Windows\system32\nvinitx.dll" "NVIDIA Compatible NVIDIA shim initialization dll, Version 267.54 " "NVIDIA Corporation" "c:\windows\system32\nvinitx.dll" "3/6/2011 1:42 PM"
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls" "" "" "" "6/3/2014 5:53 PM"
    + "C:\Windows\SysWOW64\nvinit.dll" "NVIDIA Compatible NVIDIA shim initialization dll, Version 267.54 " "NVIDIA Corporation" "c:\windows\syswow64\nvinit.dll" "3/6/2011 1:41 PM"
    "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers" "" "" "" "7/16/2011 8:39 PM"
    + "FaceCredentialProvider64" "SmartLogon Dynamic Link Library" "ASUS" "c:\program files (x86)\asus\smartlogon\system\facecredentialprovider64.dll" "1/10/2011 4:15 AM"
    + "WLIDCredentialProvider" "Microsoft® Windows Live ID Credential Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidcredprov.dll" "9/21/2010 11:47 PM"
    "HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries" "" "" "" "12/26/2011 5:57 PM"
    X "mdnsNSP" "Bonjour Namespace Provider" "Apple Computer, Inc." "c:\program files (x86)\bonjour\mdnsnsp.dll" "2/28/2006 10:42 PM"
    + "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll" "9/21/2010 11:00 PM"
    + "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll" "9/21/2010 11:00 PM"
    "HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64" "" "" "" "7/16/2011 8:37 PM"
    + "WindowsLive Local NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll" "9/21/2010 11:45 PM"
    + "WindowsLive NSP" "Microsoft® Windows Live ID Namespace Provider" "Microsoft Corp." "c:\program files\common files\microsoft shared\windows live\wlidnsp.dll" "9/21/2010 11:45 PM"
    "HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors" "" "" "" "10/28/2011 8:51 AM"
    + "Adobe PDF Port Monitor" "Adobe PDF Port Monitor DLL" "Adobe Systems Inc" "c:\windows\system32\adobepdf.dll" "8/19/2010 2:53 AM"
    "C:\Users\K\AppData\Local\Microsoft\Windows Sidebar\Settings.ini" "" "" "" "5/20/2014 12:39 PM"
    + "Avast! antivirus monitor" "Avast! antivirus sidebar gadget." "AVAST Software" "C:\Program Files\Windows Sidebar\Shared Gadgets\aswSidebar.gadget\Gadget.xml" "2/23/2011 3:38 PM"
     
  8. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    This is not what I asked for.
    Please re-read my previous reply.
     
  9. zufan

    zufan TS Rookie Topic Starter

    You asked me to attach the results of autoruns in text file right ? I had actually already done that in my first response to this request...unless I am missing something else..

    rgrds
     
  10. zufan

    zufan TS Rookie Topic Starter

    ..you actually ask to attach the results and on another section, to paste them. I have done both.
     
  11. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    Did you read my reply #4?
     
  12. zufan

    zufan TS Rookie Topic Starter

    Yes and I still dont understand what I am doing wrong..I have run the programmes you suggest and posted the results..as an attachment and a paste..what am I doing wrong ? Can you not just tell me ?
     
  13. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    I'm not sure how to explain better...

    Please, complete all steps listed here: http://www.techspot.com/vb/topic58138.html
    Make sure, you PASTE all logs. If some log exceeds 50,000 characters post limit, split it between couple of replies.
    Attached logs won't be reviewed.
     
  14. zufan

    zufan TS Rookie Topic Starter

    Sorry..now I see that I had not sent you the DDS log..ok here is the ATTACH TXT version- thanks

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2012-11-20.01)
    .
    Microsoft Windows 7 Home Premium
    Boot Device: \Device\HarddiskVolume2
    Install Date: 9/20/2011 2:05:36 PM
    System Uptime: 9/25/2014 10:29:37 AM (2 hours ago)
    .
    Motherboard: ASUSTeK Computer Inc. | | N53SV
    Processor: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz | CPU 1 | 2001/100mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 279 GiB total, 199.547 GiB free.
    D: is FIXED (NTFS) - 394 GiB total, 71.723 GiB free.
    E: is CDROM ()
    H: is Removable
    .
    ==== Disabled Device Manager Items =============
    .
    Class GUID: {4d36e96f-e325-11ce-bfc1-08002be10318}
    Description: Microsoft PS/2 Mouse
    Device ID: ACPI\SYN0A06\4&16CFE3E0&0
    Manufacturer: Microsoft
    Name: Microsoft PS/2 Mouse
    PNP Device ID: ACPI\SYN0A06\4&16CFE3E0&0
    Service: i8042prt
    .
    Class GUID:
    Description:
    Device ID: ROOT\MEDIA\0000
    Manufacturer:
    Name:
    PNP Device ID: ROOT\MEDIA\0000
    Service:
    .
    ==== System Restore Points ===================
    .
    RP270: 9/4/2014 5:39:08 AM - Scheduled Checkpoint
    RP271: 9/12/2014 4:57:30 AM - Scheduled Checkpoint
    RP272: 9/17/2014 6:04:34 PM - Auslogics Regisry Defrag - before defragmentation
    RP273: 9/19/2014 10:36:05 PM - Removed Ask Toolbar.
    RP274: 9/19/2014 10:37:24 PM - Removed Ask Toolbar.
    RP275: 9/19/2014 10:56:30 PM - Removed Ask Toolbar.
    RP276: 9/20/2014 8:35:11 AM - Windows Update
    .
    ==== Installed Programs ======================
    .
    ??????? Windows Live Mesh ActiveX ??(????)
    ??????? Windows Live Mesh ActiveX ???
    µTorrent
    Add or Remove Adobe Creative Suite 3 Master Collection
    Adobe Acrobat X Pro - English, Français, Deutsch
    Adobe After Effects CS3 Presets
    Adobe Anchor Service CS3
    Adobe Asset Services CS3
    Adobe Bridge CS3
    Adobe Bridge Start Meeting
    Adobe BridgeTalk Plugin CS3
    Adobe Camera Raw 4.0
    Adobe CMaps
    Adobe Color - Photoshop Specific
    Adobe Color Common Settings
    Adobe Color EU Extra Settings
    Adobe Color JA Extra Settings
    Adobe Color NA Recommended Settings
    Adobe Creative Suite 3 Master Collection
    Adobe Default Language CS3
    Adobe Device Central CS3
    Adobe ExtendScript Toolkit 2
    Adobe Extension Manager CS3
    Adobe Flash Player 10 Plugin
    Adobe Flash Player 11 ActiveX
    Adobe Fonts All
    Adobe Help Viewer CS3
    Adobe Illustrator CS3
    Adobe InDesign CS3 Icon Handler
    Adobe Linguistics CS3
    Adobe MotionPicture Color Files
    Adobe PDF Library Files
    Adobe Photoshop CS3
    Adobe Setup
    Adobe SING CS3
    Adobe Stock Photos CS3
    Adobe Type Support
    Adobe Update Manager CS3
    Adobe Version Cue CS3 Client
    Adobe Video Profiles
    Adobe WAS CS3
    Adobe WinSoft Linguistics Plugin
    Adobe XMP DVA Panels CS3
    Adobe XMP Panels CS3
    Advanced Audio Compressor 2012
    AHV content for Acrobat and Flash
    Alcor Micro USB Card Reader
    Any Video Converter Professional 3.0.7
    ASUS AI Recovery
    ASUS FancyStart
    ASUS LifeFrame3
    ASUS Live Update
    ASUS Power4Gear Hybrid
    ASUS SmartLogon
    ASUS Splendid Video Enhancement Technology
    ASUS Video Magic
    ASUS Virtual Camera
    ASUS WebStorage
    ASUS_Screensaver
    AsusVibe2.0
    Atheros Client Installation Program
    ATK Package
    Auslogics BoostSpeed
    avast! Pro Antivirus
    Babylon toolbar on IE
    Bluetooth Win7 Suite (64)
    Business Plan Pro 15th Anniversary Edition
    CCleaner
    Continuous Silence
    Contrôle ActiveX Windows Live Mesh pour connexions à distance
    Control ActiveX de Windows Live Mesh para conexiones remotas
    Controlo ActiveX do Windows Live Mesh para Ligações Remotas
    ConvertXtoDVD 2.1.14.223
    Cool MPEG To MP3 Converter 1.0
    CPUID CPU-Z 1.57
    CyberLink LabelPrint
    CyberLink MediaEspresso
    CyberLink Power2Go
    CyberLink PowerDirector
    CyberLink PowerDVD 10
    D3DX10
    ETDWare PS/2-x64 7.0.5.16_WHQL
    ExpressGate Cloud
    Fast Boot
    File Type Assistant
    FlashFXP v4.0
    Free M4a to MP3 Converter 8.2
    Fresco Logic USB3.0 Host Controller
    Galeria de Fotografias do Windows Live
    Galerie de photos Windows Live
    Galería fotográfica de Windows Live
    Google Talk Plugin
    Google Toolbar for Internet Explorer
    Google Update Helper
    Intel(R) Control Center
    Intel(R) Management Engine Components
    Intel(R) Processor Graphics
    Intel(R) Turbo Boost Technology Monitor 2.0
    Junk Mail filter update
    MediaMonkey 3.2
    Mesh Runtime
    Microsoft .NET Framework 4 Client Profile
    Microsoft .NET Framework 4 Extended
    Microsoft Application Error Reporting
    Microsoft Office Access MUI (English) 2010
    Microsoft Office Access Setup Metadata MUI (English) 2010
    Microsoft Office Excel MUI (English) 2010
    Microsoft Office Groove MUI (English) 2010
    Microsoft Office InfoPath MUI (English) 2010
    Microsoft Office Korrekturhilfen 2013 - Deutsch
    Microsoft Office Office 64-bit Components 2010
    Microsoft Office OneNote MUI (English) 2010
    Microsoft Office Outlook MUI (English) 2010
    Microsoft Office PowerPoint MUI (English) 2010
    Microsoft Office Professional Plus 2010
    Microsoft Office Proof (English) 2010
    Microsoft Office Proof (French) 2010
    Microsoft Office Proof (Spanish) 2010
    Microsoft Office Proofing (English) 2010
    Microsoft Office Publisher MUI (English) 2010
    Microsoft Office Shared 64-bit MUI (English) 2010
    Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010
    Microsoft Office Shared MUI (English) 2010
    Microsoft Office Shared Setup Metadata MUI (English) 2010
    Microsoft Office Word MUI (English) 2010
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2005 Redistributable (x64)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    Minus Desktop Tool 1.8
    Mobile Partner
    Mozilla Firefox 12.0 (x86 en-US)
    Mozilla Maintenance Service
    Mp3 Audio Editor v6.9.6
    MP4 Cutter 1.0
    MSVCRT
    MSVCRT_amd64
    MSXML 4.0 SP2 (KB973688)
    myBabylon_English Toolbar
    Nero 11 Mini Repack
    Nero 7 Ultra Edition
    Nuance PDF Reader
    NVIDIA Control Panel 267.54
    NVIDIA Graphics Driver 267.54
    NVIDIA Install Application
    NVIDIA Optimus 1.0.21
    NVIDIA Update Components
    PDF Settings
    Realtek Ethernet Controller Driver
    Realtek High Definition Audio Driver
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2894842v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2898855v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2901110v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2931365)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2972215)
    Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
    Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
    Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
    Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
    Security Update for Microsoft .NET Framework 4 Extended (KB2858302v2)
    Security Update for Microsoft .NET Framework 4 Extended (KB2894842v2)
    Security Update for Microsoft .NET Framework 4 Extended (KB2901110v2)
    SES Driver
    Skype™ 6.18
    SnagIt 9
    SonicMaster
    SpeedFan (remove only)
    syncables desktop SE
    TELL ME MORE
    The KMPlayer (remove only)
    Total Recorder 7.0
    USB2.0 2.0M UVC WebCam
    VLC media player 1.1.11
    Wallpaper Calendar
    Winamp
    Winamp Color Themes Pack 2.2
    Winamp Detector Plug-in
    Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0)
    Windows Essentials Media Codec Pack 3.6 [64-Bit]
    Windows Live
    Windows Live ???
    Windows Live ????
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Family Safety
    Windows Live ID Sign-in Assistant
    Windows Live Installer
    Windows Live Language Selector
    Windows Live Mail
    Windows Live Mesh
    Windows Live Mesh ActiveX Control for Remote Connections
    Windows Live Messenger
    Windows Live MIME IFilter
    Windows Live Movie Maker
    Windows Live Photo Common
    Windows Live Photo Gallery
    Windows Live PIMT Platform
    Windows Live Remote Client
    Windows Live Remote Client Resources
    Windows Live Remote Service
    Windows Live Remote Service Resources
    Windows Live SOXE
    Windows Live SOXE Definitions
    Windows Live UX Platform
    Windows Live UX Platform Language Pack
    Windows Live Writer
    Windows Live Writer Resources
    WinFlash
    WinRAR archiver
    WinZip 12.0
    Wireless Console 3
    WM Recorder 14
    YouTube Downloader Pro YTD 4.8.1.0 Final
    YTD Video Downloader 4.8.3
    .
    ==== Event Viewer Messages From Past Week ========
    .
    9/25/2014 10:19:56 AM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: SBRE
    9/25/2014 10:19:52 AM, Error: Service Control Manager [7023] - The Power service terminated with the following error: The WMI request could not be completed and should be retried.
    9/25/2014 10:18:25 AM, Error: Application Popup [1060] - \??\C:\Windows\system32\drivers\SBREdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
    9/24/2014 4:16:03 PM, Error: Microsoft-Windows-WMPNSS-Service [14332] - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.
    9/24/2014 2:35:10 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Live ID Sign-in Assistant service to connect.
    9/24/2014 2:35:10 PM, Error: Service Control Manager [7000] - The Windows Live ID Sign-in Assistant service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    9/24/2014 1:35:17 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.
    .
    ==== End Of File ===========================
     
  15. zufan

    zufan TS Rookie Topic Starter

    And the DDS txt version...

    DDS (Ver_2012-11-20.01) - NTFS_AMD64
    Internet Explorer: 10.0.9200.17088
    Run by K at 12:12:56 on 2014-09-25
    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6055.3379 [GMT 2:00]
    .
    AV: avast! Antivirus *Enabled/Outdated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
    SP: avast! Antivirus *Enabled/Outdated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
    SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe -k RPCSS
    svchost.exe
    svchost.exe
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
    C:\Windows\system32\FBAgent.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
    C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
    C:\Program Files (x86)\zepsoft\Wallpaper Calendar\WallCal3.exe
    C:\Program Files\AVAST Software\Avast\AvastUI.exe
    C:\Program Files (x86)\Winamp\winampa.exe
    "svchost.exe"
    "C:\Windows\SysWOW64\svchost.exe"
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
    C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files\P4G\BatteryLife.exe
    C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
    C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
    C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
    C:\Windows\system32\svchost.exe -k imgsvc
    C:\ExpressGateUtil\VAWinService.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
    C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
    C:\Windows\system32\svchost.exe -k bthsvcs
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Windows\system32\WUDFHost.exe
    C:\Windows\SysWOW64\ctfmon.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Windows\SysWOW64\ACEngSvr.exe
    C:\Windows\System32\svchost.exe -k LocalServicePeerNet
    C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
    C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    C:\Users\K\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
    C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    C:\Program Files (x86)\uTorrent\uTorrent.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\System32\cscript.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxps://www.google.com/?hl=en&gws_rd=ssl
    uDefault_Page_URL = hxxp://asus.msn.com
    uURLSearchHooks: myBabylon English Toolbar: {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll
    mURLSearchHooks: myBabylon English Toolbar: {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll
    mWinlogon: Userinit = userinit.exe,
    BHO: AutorunsDisabled - <orphaned>
    BHO: SnagIt Toolbar Loader: {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\SnagIt 9\SnagItBHO.dll
    BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
    BHO: Partner BHO Class: {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll
    BHO: CIESpeechBHO Class: {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
    BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
    BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
    BHO: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    TB: myBabylon English Toolbar: {B2E293EE-FD7E-4C71-A714-5F4750D8D7B7} - C:\Program Files (x86)\myBabylon_English\tbmyBa.dll
    TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    TB: SnagIt: {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\SnagIt 9\SnagItIEAddin.dll
    TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
    TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
    mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
    mRun: [{4a421490-9edf-a1e4-2abb-be9925ec0c80}] "C:\Users\K\AppData\Local\Microsoft\{4a421490-9edf-a1e4-2abb-be9925ec0c80}\{4a421490-9edf-a1e4-2abb-be9925ec0c80}.exe"
    mRun: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
    StartupFolder: C:\Users\K\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\WALLPA~1.LNK - C:\Program Files (x86)\zepsoft\Wallpaper Calendar\WallCal3.exe
    uPolicies-Explorer: NoDriveAutoRun = dword:0
    uPolicies-Explorer: NoDriveTypeAutoRun = dword:255
    mPolicies-Explorer: NoActiveDesktop = dword:1
    mPolicies-Explorer: NoActiveDesktopChanges = dword:1
    mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
    mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
    mPolicies-System: ConsentPromptBehaviorUser = dword:3
    mPolicies-System: EnableUIADesktopToggle = dword:0
    IE: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    IE: Append to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
    IE: Convert Link Target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    IE: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
    IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
    IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
    IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-00107-0002-0007-ABCDEFFEDCBC} - <orphaned>
    IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    IE: {7815BE26-237D-41A8-A98F-F7BD75F71086} - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
    IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - hxxp://support.asus.com/select/asusTek_sys_ctrl3.cab
    TCP: NameServer = 195.34.133.21 212.186.211.21
    TCP: Interfaces\{10AC4D21-495A-4FBF-A7A3-B05EB0E00631} : DHCPNameServer = 195.34.133.21 212.186.211.21
    TCP: Interfaces\{9FEAAA6F-5B7C-430C-B277-1095512F7B6A} : DHCPNameServer = 195.34.133.21 212.186.211.21
    TCP: Interfaces\{9FEAAA6F-5B7C-430C-B277-1095512F7B6A}\34C445E45445 : DHCPNameServer = 50.17.236.35 201.152.132.23 205.152.37.23
    TCP: Interfaces\{9FEAAA6F-5B7C-430C-B277-1095512F7B6A}\36963736F6 : DHCPNameServer = 75.75.75.75 75.75.76.76
    TCP: Interfaces\{9FEAAA6F-5B7C-430C-B277-1095512F7B6A}\36963736F6D27657563747 : DHCPNameServer = 68.94.156.1 68.94.157.1
    TCP: Interfaces\{9FEAAA6F-5B7C-430C-B277-1095512F7B6A}\550534031303538363 : DHCPNameServer = 212.186.211.21 195.34.133.21
    Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    AppInit_DLLs= C:\Windows\SysWOW64\nvinit.dll
    SSODL: WebCheck - <orphaned>
    SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
    x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
    x64-BHO: {3706EE7C-3CAD-445D-8A43-03EBC3B75908} - <orphaned>
    x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
    x64-BHO: Partner BHO Class: {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner64.dll
    x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
    x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
    x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
    x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
    x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
    x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
    x64-Notify: igfxcui - igfxdev.dll
    x64-SSODL: WebCheck - <orphaned>
    x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - C:\Users\K\AppData\Roaming\Mozilla\Firefox\Profiles\cskj3f5u.default\
    FF - prefs.js: browser.startup.homepage - www.google.com/ncr
    FF - prefs.js: network.proxy.ftp - 91.196.230.66
    FF - prefs.js: network.proxy.ftp_port - 3128
    FF - prefs.js: network.proxy.http - 91.196.230.66
    FF - prefs.js: network.proxy.http_port - 3128
    FF - prefs.js: network.proxy.socks - 91.196.230.66
    FF - prefs.js: network.proxy.socks_port - 3128
    FF - prefs.js: network.proxy.ssl - 91.196.230.66
    FF - prefs.js: network.proxy.ssl_port - 3128
    FF - prefs.js: network.proxy.type - 0
    FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
    FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll
    FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
    FF - plugin: C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll
    FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
    FF - plugin: C:\Users\K\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll
    FF - plugin: C:\Users\K\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
    FF - plugin: C:\Users\K\AppData\Roaming\Mozilla\plugins\npo1d.dll
    FF - plugin: C:\Windows\System32\Macromed\Flash\NPSWF32_11_9_900_170.dll
    FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
    FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
    FF - plugin: C:\Windows\SysWOW64\NPSWF32.dll
    .
    ---- FIREFOX POLICIES ----
    FF - user.js: extensions.BabylonToolbar_i.id - a6f0b0c500000000000000ff65d9c4f8
    FF - user.js: extensions.BabylonToolbar_i.hardId - a6f0b0c500000000000000ff65d9c4f8
    FF - user.js: extensions.BabylonToolbar_i.instlDay - 15450
    FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
    FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
    FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1716:10:08
    FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
    FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
    FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
    FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
    FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9
    FF - user.js: extensions.BabylonToolbar_i.newTab - false
    FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=110788
    FF - user.js: extensions.BabylonToolbar_i.babExt -
    FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
    FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
    FF - user.js: extensions.delta.tlbrSrchUrl -
    FF - user.js: extensions.delta.id - a6f0b0c500000000000000ff65d9c4f8
    FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
    FF - user.js: extensions.delta.instlDay - 15900
    FF - user.js: extensions.delta.vrsn - 1.8.21.5
    FF - user.js: extensions.delta.vrsni - 1.8.21.5
    FF - user.js: extensions.delta.vrsnTs - 1.8.21.50:16:23
    FF - user.js: extensions.delta.prtnrId - delta
    FF - user.js: extensions.delta.prdct - delta
    FF - user.js: extensions.delta.aflt - babsst
    FF - user.js: extensions.delta.smplGrp - none
    FF - user.js: extensions.delta.tlbrId - base
    FF - user.js: extensions.delta.instlRef - sst
    FF - user.js: extensions.delta.dfltLng - en
    FF - user.js: extensions.delta.excTlbr - false
    FF - user.js: extensions.delta.ffxUnstlRst - true
    FF - user.js: extensions.delta.admin - false
    FF - user.js: extensions.delta_i.babTrack - affID=119351&tsp=4943
    FF - user.js: extensions.delta_i.babExt -
    FF - user.js: extensions.delta_i.srcExt - ss
    FF - user.js: extensions.delta.autoRvrt - false
    FF - user.js: extensions.delta.rvrt - false
    FF - user.js: extensions.delta.newTab - false
    .
    .
    .
    .
    .
    .
    ============= SERVICES / DRIVERS ===============
    .
    R0 nvpciflt;nvpciflt;C:\Windows\System32\drivers\nvpciflt.sys [2011-7-16 25960]
    R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2013-1-6 505176]
    R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2013-1-6 280408]
    R1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2010-7-26 17024]
    R2 AFBAgent;AFBAgent;C:\Windows\System32\FBAgent.exe [2011-7-16 379520]
    R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-3 15416]
    R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2013-1-6 22360]
    R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2013-1-6 64344]
    R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-3-13 138400]
    R2 AtherosSvc;AtherosSvc;C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [2011-3-13 74912]
    R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-1-6 42184]
    R2 cpuz135;cpuz135;C:\Windows\System32\drivers\cpuz135_x64.sys [2011-10-28 21992]
    R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\System32\drivers\TurboB.sys [2010-11-30 16120]
    R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-7-16 2656280]
    R2 VideAceWindowsService;VideAceWindowsService;C:\ExpressGateUtil\VAWinService.exe [2010-8-21 77312]
    R3 AthBTPort;Atheros Virtual Bluetooth Class;C:\Windows\System32\drivers\btath_flt.sys [2011-3-13 36000]
    R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;C:\Windows\System32\drivers\btath_a2dp.sys [2011-3-13 298656]
    R3 BTATH_BUS;Atheros Bluetooth Bus;C:\Windows\System32\drivers\btath_bus.sys [2011-3-13 28832]
    R3 BTATH_HCRP;Bluetooth HCRP Server driver;C:\Windows\System32\drivers\btath_hcrp.sys [2011-3-13 201376]
    R3 BTATH_LWFLT;Bluetooth LWFLT Device;C:\Windows\System32\drivers\btath_lwflt.sys [2011-3-13 55456]
    R3 BTATH_RCP;Bluetooth AVRCP Device;C:\Windows\System32\drivers\btath_rcp.sys [2011-3-13 154272]
    R3 BtFilter;BtFilter;C:\Windows\System32\drivers\btfilter.sys [2011-3-13 280224]
    R3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver;C:\Windows\System32\drivers\FLxHCIc.sys [2011-2-25 302592]
    R3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver;C:\Windows\System32\drivers\FLxHCIh.sys [2011-2-25 81920]
    R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2011-4-12 317440]
    R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-7-16 428136]
    R3 S6000KNT;S6000KNT_WebCam Driver;C:\Windows\System32\drivers\S6000KNT.sys [2011-4-12 190232]
    S1 SBRE;SBRE;C:\Windows\System32\drivers\SBREDrv.sys [2011-11-9 93360]
    S2 CLKMSVC10_38F51D56;CyberLink Product - 2011/07/16 11:49:09;C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [2010-11-13 241648]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-4-4 315008]
    S3 AmUStor;AM USB Stroage Driver;C:\Windows\System32\drivers\AmUStor.sys [2010-8-11 44032]
    S3 ETD;ELAN PS/2 Port Input Device;C:\Windows\System32\drivers\ETD.sys [2011-4-12 129024]
    S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2011-4-2 48488]
    S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-9-23 1493352]
    S3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);C:\Windows\System32\drivers\L1C62x64.sys [2009-6-10 57344]
    S3 Partner Service;Partner Service;C:\ProgramData\Partner\Partner.exe [2011-4-2 332272]
    S3 s0016bus;Sony Ericsson Device 0016 driver (WDM);C:\Windows\System32\drivers\s0016bus.sys [2008-5-16 115240]
    S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;C:\Windows\System32\drivers\s0016mdfl.sys [2008-5-16 19496]
    S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;C:\Windows\System32\drivers\s0016mdm.sys [2008-5-16 158760]
    S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);C:\Windows\System32\drivers\s0016mgmt.sys [2008-5-16 137256]
    S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);C:\Windows\System32\drivers\s0016nd5.sys [2008-5-16 34344]
    S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;C:\Windows\System32\drivers\s0016obex.sys [2008-5-16 136744]
    S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);C:\Windows\System32\drivers\s0016unic.sys [2008-5-16 151592]
    S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:\Windows\System32\drivers\SiSG664.sys [2009-6-10 56832]
    S3 taphss6;Anchorfree HSS VPN Adapter;C:\Windows\System32\drivers\taphss6.sys [2014-5-7 42184]
    S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-2-18 59392]
    S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2011-2-18 31232]
    S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2010-11-30 149504]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-9-23 1255736]
    S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\System32\drivers\wdcsam64.sys [2011-2-16 14464]
    S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-23 57184]
    .
    =============== Created Last 30 ================
    .
    2014-09-24 14:31:40 -------- d-----w- C:\Program Files (x86)\Winamp Detect
    2014-09-24 13:52:21 133616 ------w- C:\Windows\SysWow64\pxafs.dll
    2014-09-20 06:36:01 99480 ----a-w- C:\Windows\SysWow64\infocardapi.dll
    2014-09-20 06:36:01 619672 ----a-w- C:\Windows\SysWow64\icardagt.exe
    2014-09-20 06:36:01 171160 ----a-w- C:\Windows\System32\infocardapi.dll
    2014-09-20 06:36:01 1389208 ----a-w- C:\Windows\System32\icardagt.exe
    2014-09-20 06:36:00 8856 ----a-w- C:\Windows\SysWow64\icardres.dll
    2014-09-20 06:36:00 8856 ----a-w- C:\Windows\System32\icardres.dll
    2014-09-20 06:35:48 35480 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe
    2014-09-20 06:35:48 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe
    2014-09-20 06:34:36 728064 ----a-w- C:\Windows\System32\kerberos.dll
    2014-09-20 06:34:35 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
    2014-09-20 06:34:35 550912 ----a-w- C:\Windows\SysWow64\kerberos.dll
    2014-09-20 06:34:35 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
    2014-09-20 06:34:35 1460736 ----a-w- C:\Windows\System32\lsasrv.dll
    2014-09-20 06:33:53 404480 ----a-w- C:\Windows\System32\gdi32.dll
    2014-09-20 06:33:53 3163648 ----a-w- C:\Windows\System32\win32k.sys
    2014-09-20 06:33:53 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
    2014-09-14 20:34:03 7168 --sh--r- C:\Users\K\AppData\Roaming\{0000760B-30DF-145B-713D-A15020C974AE}.exe
    2014-09-07 02:21:04 133632 --sha-r- C:\Users\K\AppData\Roaming\Microsoft\Windows\IEUpdate\trz6E2E.tmp
    2014-09-05 19:21:16 -------- d-----w- C:\ProgramData\OclatFilun
    2014-09-04 16:42:04 133632 --sha-r- C:\Users\K\AppData\Roaming\Microsoft\Windows\IEUpdate\trz27B3.tmp
    2014-09-04 16:42:02 -------- d-----w- C:\Users\K\AppData\Roaming\Uwniw
    2014-08-26 19:01:35 -------- d-----w- C:\Program Files (x86)\AVG Security Toolbar
    2014-08-26 19:01:33 -------- d-----w- C:\ProgramData\Avg_Update_0814tb
    .
    ==================== Find3M ====================
    .
    2014-09-20 08:22:29 45056 ----a-w- C:\Windows\System32\acovcnt.exe
    2014-08-17 04:00:04 2239488 ----a-w- C:\Windows\System32\wininet.dll
    2014-08-17 03:58:51 3959296 ----a-w- C:\Windows\System32\jscript9.dll
    2014-08-17 03:58:48 67072 ----a-w- C:\Windows\System32\iesetup.dll
    2014-08-17 03:58:48 136704 ----a-w- C:\Windows\System32\iesysprep.dll
    2014-08-17 03:58:18 1508864 ----a-w- C:\Windows\System32\inetcpl.cpl
    2014-08-17 03:57:51 1766400 ----a-w- C:\Windows\SysWow64\wininet.dll
    2014-08-17 03:57:32 2861568 ----a-w- C:\Windows\SysWow64\jscript9.dll
    2014-08-17 03:57:30 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
    2014-08-17 03:57:30 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
    2014-08-17 03:57:18 1440768 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
    2014-08-16 07:25:09 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
    2014-08-16 06:43:24 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
    2014-08-16 06:34:34 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe
    2014-08-16 05:53:37 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
    2014-07-16 03:23:41 2048 ----a-w- C:\Windows\System32\tzres.dll
    2014-07-16 02:46:02 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
    2014-07-14 02:02:45 1216000 ----a-w- C:\Windows\System32\rpcrt4.dll
    2014-07-14 01:40:58 664064 ----a-w- C:\Windows\SysWow64\rpcrt4.dll
    .
    ============= FINISH: 12:14:09.28 ===============
     
  16. zufan

    zufan TS Rookie Topic Starter

    Me again.. I did a HIGHJACKTHIS scan as well..heres the log file:

    [HJT log removed by Broni]
     
    Last edited by a moderator: Sep 25, 2014
  17. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    One of my rules says:

    I didn't ask for HJT.

    You didn't follow all steps form my link either.
    I need Malwarebytes log.
     
  18. zufan

    zufan TS Rookie Topic Starter

    Response 6 & 7 were malwarebyte logs..
     
  19. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    It wasn't.
    It was Autoruns log.
    I still need MBAM log.

    [​IMG]
     
  20. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    Still with me?
     
  21. Broni

    Broni Malware Annihilator Posts: 52,897   +344

    This topic is marked as abandoned and closed due to inactivity.

    This member will NOT be eligible to receive any more help in malware removal forum.
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...