~[Filtered]~
("C:\Program Files (x86)\Dell DataSafe Local
Backup\Components\DSUpdate\DSUpdate.exe")("C:\Program Files (x86)\Dell
DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe") [Dell]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
(shell)(Explorer.exe) [(Verified)Microsoft Windows]
(Userinit)(C:\Windows\system32\userinit.exe,) [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
(WebCheck)(%Systemroot%\SysWow64\webcheck.dll) [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\){22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
(Microsoft Windows Media Player)(%SystemRoot%\system32\unregmp2.exe /ShowWMP) [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\){26923b43-4d38-484f-9b9e-de460746276c}]
(Internet Explorer)(C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig) [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\){60B49E34-C7CC-11D0-8953-00A0C90347FF}]
(Browser Customizations)("C:\Windows\SysWOW64\rundll32.exe"
"C:\Windows\SysWOW64\iedkcs32.dll",BrandIEActiveSetup SIGNUP)
[(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
(Themes Setup)(%SystemRoot%\system32\regsvr32.exe /s /n
/i:/UserInstall %SystemRoot%\system32\themeui.dll) [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
(Microsoft Windows)("%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE) [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
(Microsoft Windows Media Player)(%SystemRoot%\system32\unregmp2.exe
/FirstLogon /Shortcuts /RegBrowsers /ResetMUI) [(Verified)Microsoft
Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
(Windows Desktop Update)(regsvr32.exe /s /n /i:U shell32.dll) [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
(Web Platform Customizations)(C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings) [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
(N/A)(C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install) [(Verified)Microsoft Corporation]
Startup Folders
N/A
Services
[Application Experience / AeLookupSvc][Running/Manual Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%SystemRoot%\System32\aelupsvc.dll)(Microsoft Corporation)
[ASP.NET State Service / aspnet_state][Stopped/Manual Start]
(C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe)((File is missing))
[Windows Audio Endpoint Builder / AudioEndpointBuilder][Running/Auto Start]
(C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\System32\Audiosrv.dll)(Microsoft Corporation)
[Windows Audio / AudioSrv][Running/Auto Start]
(C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted--)%SystemRoot%\System32\Audiosrv.dll)(Microsoft Corporation)
[ActiveX Installer (AxInstSV) / AxInstSV][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k AxInstSVGroup--)%SystemRoot%\System32\AxInstSV.dll)(Microsoft Corporation)
[BitLocker Drive Encryption Service / BDESVC][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k netsvcs--)%SystemRoot%\System32\bdesvc.dll)(Microsoft Corporation)
[Base Filtering Engine / BFE][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork--)%SystemRoot%\System32\bfe.dll)(Microsoft Corporation)
[Background Intelligent Transfer Service / BITS][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%systemroot%\system32\qmgr.dll)(Microsoft Corporation)
[Computer Browser / Browser][Running/Manual Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%SystemRoot%\System32\browser.dll)(Microsoft Corporation)
[Bluetooth Support Service / bthserv][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k bthsvcs--)%SystemRoot%\system32\bthserv.dll)(Microsoft Corporation)
[Certificate Propagation / CertPropSvc][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%SystemRoot%\System32\certprop.dll)(Microsoft Corporation)
[DCOM Server Process Launcher / DcomLaunch][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k DcomLaunch--)%SystemRoot%\system32\rpcss.dll)(Microsoft Corporation)
[Disk Defragmenter / defragsvc][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k defragsvc--)%Systemroot%\System32\defragsvc.dll)(Microsoft Corporation)
[DNS Client / Dnscache][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k NetworkService--)%SystemRoot%\System32\dnsrslvr.dll)(Microsoft Corporation)
[Dock Login Service / DockLoginService][Running/Auto Start]
(C:\Program Files\Dell\DellDock\DockLogin.exe)(Stardock Corporation)
[Wired AutoConfig / dot3svc][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\System32\dot3svc.dll)(Microsoft Corporation)
[Diagnostic Policy Service / DPS][Running/Auto Start]
(C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork--)%SystemRoot%\system32\dps.dll)(Microsoft Corporation)
[Extensible Authentication Protocol / EapHost][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k netsvcs--)%SystemRoot%\System32\eapsvc.dll)(Microsoft Corporation)
[GamesAppService / GamesAppService][Stopped/Manual Start]
("C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe")(WildTangent, Inc.)
[GoToAssist / GoToAssist][Stopped/Manual Start]
("C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe"
Start=service)(Citrix Online, a division of Citrix Systems, Inc.)
[Group Policy Client / gpsvc][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%SystemRoot%\System32\gpsvc.dll)(Microsoft Corporation)
[Health Key and Certificate Management / hkmsvc][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k netsvcs--)%SystemRoot%\system32\kmsvc.dll)(Microsoft Corporation)
[HomeGroup Listener / HomeGroupListener][Running/Manual Start]
(C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\system32\ListSvc.dll)(Microsoft Corporation)
[Intel(R) Rapid Storage Technology / IAStorDataMgrSvc][Running/Auto Start]
("C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe")(Intel Corporation)
[IKE and AuthIP IPsec Keying Modules / IKEEXT][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%SystemRoot%\System32\ikeext.dll)(Microsoft Corporation)
[PnP-X IP Bus Enumerator / IPBusEnum][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\system32\ipbusenum.dll)(Microsoft Corporation)
[IP Helper / iphlpsvc][Running/Auto Start]
(C:\Windows\System32\svchost.exe -k NetSvcs--)%SystemRoot%\System32\iphlpsvc.dll)(Microsoft Corporation)
[McAfee SiteAdvisor Service / McAfee SiteAdvisor Service][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc)(McAfee, Inc.)
[McAfee Personal Firewall Service / McMPFSvc][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc)(McAfee, Inc.)
[McAfee Services / mcmscsvc][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc)(McAfee, Inc.)
[McAfee VirusScan Announcer / McNaiAnn][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc)(McAfee, Inc.)
[McAfee Network Agent / McNASvc][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc)(McAfee, Inc.)
[McAfee Scanner / McODS][Stopped/Manual Start]
("C:\Program Files\McAfee\VirusScan\mcods.exe")(McAfee, Inc.)
[McAfee Proxy Service / McProxy][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc)(McAfee, Inc.)
[McShield / McShield][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe")(McAfee, Inc.)
[Media Center Extender Service / Mcx2Svc][Stopped/Disabled]
(C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation--)%SystemRoot%\system32\Mcx2Svc.dll)(Microsoft Corporation)
[McAfee Firewall Core Service / mfefire][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe")(McAfee, Inc.)
[McAfee Validation Trust Protection Service / mfevtp][Running/Auto Start]
("C:\Windows\system32\mfevtps.exe")(McAfee, Inc.)
[Multimedia Class Scheduler / MMCSS][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%SystemRoot%\system32\mmcss.dll)(Microsoft Corporation)
[Windows Firewall / MpsSvc][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork--)%SystemRoot%\system32\mpssvc.dll)(Microsoft Corporation)
[McAfee Anti-Spam Service / MSK80Service][Running/Auto Start]
("C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc)(McAfee, Inc.)
[Network Access Protection Agent / napagent][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k NetworkService--)%SystemRoot%\system32\qagentRT.dll)(Microsoft Corporation)
[Dell DataSafe Online / NOBU][Running/Auto Start]
("C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe" SERVICE)(Dell, Inc.)
[nProtect GameGuard Service / npggsvc][Stopped/Manual Start]
(C:\Windows\system32\GameMon.des -service)(INCA Internet Co., Ltd.)
[Network Store Interface Service / nsi][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k LocalService--)%systemroot%\system32\nsisvc.dll)(Microsoft Corporation)
[NVIDIA Display Driver Service / nvsvc][Running/Auto Start]
(C:\Windows\system32\nvvsvc.exe)(NVIDIA Corporation)
[Peer Networking Identity Manager / p2pimsvc][Running/Manual Start]
(C:\Windows\System32\svchost.exe -k LocalServicePeerNet--)%SystemRoot%\system32\pnrpsvc.dll)(Microsoft Corporation)
[Peer Networking Grouping / p2psvc][Running/Manual Start]
(C:\Windows\System32\svchost.exe -k LocalServicePeerNet--)%SystemRoot%\system32\p2psvc.dll)(Microsoft Corporation)
[Program Compatibility Assistant Service / PcaSvc][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\System32\pcasvc.dll)(Microsoft Corporation)
[Plug and Play / PlugPlay][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k DcomLaunch--)%SystemRoot%\system32\umpnpmgr.dll)(Microsoft Corporation)
[PnkBstrA / PnkBstrA][Running/Auto Start]
(C:\Windows\system32\PnkBstrA.exe)(N/A)
[PNRP Machine Name Publication Service / PNRPAutoReg][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k LocalServicePeerNet--)%SystemRoot%\system32\pnrpauto.dll)(Microsoft Corporation)
[Peer Name Resolution Protocol / PNRPsvc][Running/Manual Start]
(C:\Windows\System32\svchost.exe -k LocalServicePeerNet--)%SystemRoot%\system32\pnrpsvc.dll)(Microsoft Corporation)
[IPsec Policy Agent / PolicyAgent][Running/Manual Start]
(C:\Windows\system32\svchost.exe -k
NetworkServiceNetworkRestricted--)%SystemRoot%\System32\ipsecsvc.dll)(Microsoft
Corporation)
[Power / Power][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k DcomLaunch--)%SystemRoot%\system32\umpo.dll)(Microsoft Corporation)
[User Profile Service / ProfSvc][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%systemroot%\system32\profsvc.dll)(Microsoft Corporation)
[RoxMediaDB12OEM / RoxMediaDB12OEM][Stopped/Manual Start]
("C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe")(Sonic Solutions)
[Roxio Hard Drive Watcher 12 / RoxWatch12][Stopped/Auto Start]
("C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe")(Sonic Solutions)
[RPC Endpoint Mapper / RpcEptMapper][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k RPCSS--)%SystemRoot%\System32\RpcEpMap.dll)(Microsoft Corporation)
[SoftThinks Agent Service / SftService][Running/Auto Start]
("C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE")(SoftThinks SAS)
[Internet Connection Sharing (ICS) / SharedAccess][Stopped/Auto Start]
(C:\Windows\System32\svchost.exe -k netsvcs--)%SystemRoot%\System32\ipnathlp.dll)(Microsoft Corporation)
[stllssvr / stllssvr][Stopped/Manual Start]
("C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe")(MicroVision Development, Inc.)
[Microsoft Software Shadow Copy Provider / swprv][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k swprv--)%Systemroot%\System32\swprv.dll)(Microsoft Corporation)
[Superfetch / SysMain][Running/Auto Start]
(C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted--)%systemroot%\system32\sysmain.dll)(Microsoft Corporation)
[Tablet PC Input Service / TabletInputService][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\System32\TabSvc.dll)(Microsoft Corporation)
[TPM Base Services / TBS][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation--)%SystemRoot%\System32\tbssvc.dll)(Microsoft Corporation)
[Remote Desktop Services / TermService][Stopped/Manual Start]
(C:\Windows\System32\svchost.exe -k NetworkService--)%SystemRoot%\System32\termsrv.dll)(Microsoft Corporation)
[Themes / Themes][Running/Auto Start]
(C:\Windows\System32\svchost.exe -k netsvcs--)%SystemRoot%\system32\themeservice.dll)(Microsoft Corporation)
[Thread Ordering Server / THREADORDER][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k LocalService--)%SystemRoot%\system32\mmcss.dll)(Microsoft Corporation)
[Distributed Link Tracking Client / TrkWks][Running/Auto Start]
(C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\System32\trkwks.dll)(Microsoft Corporation)
[Windows Defender / WinDefend][Running/Auto Start]
(C:\Windows\System32\svchost.exe -k secsvcs--)%ProgramFiles%\Windows Defender\mpsvc.dll)(N/A)
[Windows Management Instrumentation / Winmgmt][Running/Manual Start]
(C:\Windows\system32\svchost.exe -k netsvcs--)%SystemRoot%\system32\wbem\WMIsvc.dll)(Microsoft Corporation)
[WLAN AutoConfig / Wlansvc][Stopped/Manual Start]
(C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted--)%SystemRoot%\System32\wlansvc.dll)(Microsoft Corporation)
Drivers
[adp94xx / adp94xx][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\adp94xx.sys)(Adaptec, Inc.)
[adpahci / adpahci][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\adpahci.sys)(Adaptec, Inc.)
[adpu320 / adpu320][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\adpu320.sys)(Adaptec, Inc.)
[aliide / aliide][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\aliide.sys)(Acer Laboratories Inc.)
[amdsata / amdsata][Stopped/Manual Start]
(\SystemRoot\system32\drivers\amdsata.sys)(Advanced Micro Devices)
[amdsbs / amdsbs][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\amdsbs.sys)(AMD Technologies Inc.)
[amdxata / amdxata][Running/Boot Start]
(\SystemRoot\system32\drivers\amdxata.sys)(Advanced Micro Devices)
[arc / arc][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\arc.sys)(Adaptec, Inc.)
[arcsas / arcsas][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\arcsas.sys)(Adaptec, Inc.)
[Broadcom NetXtreme II VBD / b06bdrv][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\bxvbda.sys)(Broadcom Corporation)
[Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 / b57nd60a][Stopped/Manual Start]
(system32\DRIVERS\b57nd60a.sys)(Broadcom Corporation)
[Brother USB Mass-Storage Lower Filter Driver / BrFiltLo][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\BrFiltLo.sys)(Brother Industries, Ltd.)
[Brother USB Mass-Storage Upper Filter Driver / BrFiltUp][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\BrFiltUp.sys)(Brother Industries, Ltd.)
[Brother MFC Serial Port Interface Driver (WDM) / Brserid][Stopped/Manual Start]
(\SystemRoot\System32\Drivers\Brserid.sys)(Brother Industries Ltd.)
[Brother WDM Serial driver / BrSerWdm][Stopped/Manual Start]
(\SystemRoot\System32\Drivers\BrSerWdm.sys)(Brother Industries Ltd.)
[Brother MFC USB Fax Only Modem / BrUsbMdm][Stopped/Manual Start]
(\SystemRoot\System32\Drivers\BrUsbMdm.sys)(Brother Industries Ltd.)
[Brother MFC USB Serial WDM Driver / BrUsbSer][Stopped/Manual Start]
(\SystemRoot\System32\Drivers\BrUsbSer.sys)(Brother Industries Ltd.)
[catchme / catchme][Stopped/Manual Start]
(\??\C:\ComboFix\catchme.sys)(N/A)
[McAfee Inc. cfwids / cfwids][Running/Manual Start]
(system32\drivers\cfwids.sys)(McAfee, Inc.)
[cmdide / cmdide][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\cmdide.sys)(CMD Technology, Inc.)
[dump_wmimmc / dump_wmimmc][Stopped/Manual Start]
(\??\C:\ijji\ENGLISH\AVA\Binaries\GameGuard\dump_wmimmc.sys)(N/A)
[EagleX64 / EagleX64][Stopped/Manual Start]
(\??\C:\Windows\system32\drivers\EagleX64.sys)(N/A)
[Broadcom NetXtreme II 10 GigE VBD / ebdrv][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\evbda.sys)(Broadcom Corporation)
[elxstor / elxstor][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\elxstor.sys)(Emulex)
[Hauppauge Consumer Infrared Receiver / hcw85cir][Stopped/Manual Start]
(\SystemRoot\system32\drivers\hcw85cir.sys)(Hauppauge Computer Works, Inc.)
[HpSAMD / HpSAMD][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\HpSAMD.sys)(Hewlett-Packard Company)
[iaStor / iaStor][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\iaStor.sys)(Intel Corporation)
[Intel RAID Controller Windows 7 / iaStorV][Stopped/Manual Start]
(\SystemRoot\system32\drivers\iaStorV.sys)(Intel Corporation)
[iirsp / iirsp][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\iirsp.sys)(Intel Corp./ICP vortex GmbH)
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
(system32\drivers\RTKVHD64.sys)(Realtek Semiconductor Corp.)
[LSI_FC / LSI_FC][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\lsi_fc.sys)(LSI Corporation)
[LSI_SAS / LSI_SAS][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\lsi_sas.sys)(LSI Corporation)
[LSI_SAS2 / LSI_SAS2][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\lsi_sas2.sys)(LSI Corporation)
[LSI_SCSI / LSI_SCSI][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\lsi_scsi.sys)(LSI Corporation)
[megasas / megasas][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\megasas.sys)(LSI Corporation)
[MegaSR / MegaSR][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\MegaSR.sys)(LSI Corporation, Inc.)
[McAfee Inc. mfeapfk / mfeapfk][Running/Manual Start]
(system32\drivers\mfeapfk.sys)(McAfee, Inc.)
[McAfee Inc. mfeavfk / mfeavfk][Running/Manual Start]
(system32\drivers\mfeavfk.sys)(McAfee, Inc.)
[McAfee Inc. mfefirek / mfefirek][Running/Manual Start]
(system32\drivers\mfefirek.sys)(McAfee, Inc.)
[McAfee Inc. mfehidk / mfehidk][Running/Boot Start]
(\SystemRoot\system32\drivers\mfehidk.sys)(McAfee, Inc.)
[McAfee NDIS Light Filter / mfenlfk][Running/System Start]
(system32\DRIVERS\mfenlfk.sys)(McAfee, Inc.)
[McAfee Inc. mferkdet / mferkdet][Stopped/Manual Start]
(system32\drivers\mferkdet.sys)(McAfee, Inc.)
[McAfee Inc. mfewfpk / mfewfpk][Running/Boot Start]
(\SystemRoot\system32\drivers\mfewfpk.sys)(McAfee, Inc.)
[nfrd960 / nfrd960][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\nfrd960.sys)(IBM Corporation)
[NPPTNT2 / NPPTNT2][Stopped/Manual Start]
(\??\C:\Windows\system32\npptNT2.sys)(INCA Internet Co., Ltd.)
[Service for NVIDIA High Definition Audio Driver / NVHDA][Running/Manual Start]
(system32\drivers\nvhda64v.sys)(NVIDIA Corporation)
[nvlddmkm / nvlddmkm][Running/Manual Start]
(system32\DRIVERS\nvlddmkm.sys)(NVIDIA Corporation)
[nvraid / nvraid][Stopped/Manual Start]
(\SystemRoot\system32\drivers\nvraid.sys)(NVIDIA Corporation)
[nvstor / nvstor][Stopped/Manual Start]
(\SystemRoot\system32\drivers\nvstor.sys)(NVIDIA Corporation)
[PxHlpa64 / PxHlpa64][Running/Boot Start]
(\SystemRoot\System32\Drivers\PxHlpa64.sys)(Sonic Solutions)
[ql2300 / ql2300][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\ql2300.sys)(QLogic Corporation)
[ql40xx / ql40xx][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\ql40xx.sys)(QLogic Corporation)
[rspSanity / rspSanity][Stopped/Manual Start]
(system32\DRIVERS\rspSanity64.sys)(Resplendence Software Projects Sp.)
[Realtek 8167 NT Driver / RTL8167][Running/Manual Start]
(system32\DRIVERS\Rt64win7.sys)(Realtek)
[SiSRaid2 / SiSRaid2][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\SiSRaid2.sys)(Silicon Integrated Systems Corp.)
[SiSRaid4 / SiSRaid4][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\sisraid4.sys)(Silicon Integrated Systems)
[stexstor / stexstor][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\stexstor.sys)(Promise Technology)
[viaide / viaide][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\viaide.sys)(VIA Technologies, Inc.)
[vsmraid / vsmraid][Stopped/Manual Start]
(\SystemRoot\system32\DRIVERS\vsmraid.sys)(VIA Technologies Inc.,Ltd)
[X6va001 / X6va001][Stopped/Manual Start]
(\??\C:\Users\YOUNGW~1\AppData\Local\Temp\0011CE2.tmp)(N/A)
Browser Add-ons
[Adobe PDF Link Helper]
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} (C:\Program Files (x86)\Common
Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll, (Signed) Adobe Systems
Incorporated)
[McAfee Phishing Filter]
{27B4851A-3207-45A2-B947-BE8AFE6163AB} (c:\progra~1\mcafee\msk\mskapbho.dll, (Signed) )
[scriptproxy]
{7DB2D5A0-7241-4E79-B68D-6309F01C5231} (C:\Program Files (x86)\Common
Files\McAfee\SystemCore\ScriptSn.20110509203531.dll, (Signed) McAfee,
Inc.)
[Windows Live ID Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} (C:\Program Files (x86)\Common
Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, (Signed)
Microsoft Corp.)
[Windows Live Messenger Companion Helper]
{9FDDE16B-836F-4806-AB1F-1455CBEFF289} (C:\Program Files (x86)\Windows
Live\Companion\companioncore.dll, (Signed) Microsoft Corporation)
[Skype add-on for Internet Explorer]
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} (C:\Program Files
(x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll, (Signed) Skype
Technologies S.A.)
[McAfee SiteAdvisor BHO]
{B164E929-A1B6-4A06-B104-2CD0E90A88FF} (c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll, (Signed) McAfee, Inc.)
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435b-BC74-9C25C1C588A9} (C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems, Inc.)
[Windows Live Messenger Companion Command Bar Button]
{0000036B-C524-4050-81A0-243669A86B9F} (C:\Program Files (x86)\Windows
Live\Companion\companioncore.dll, (Signed) Microsoft Corporation)
[BlogThisToolbarButton Class]
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} (C:\Program Files (x86)\Windows
Live\Writer\WriterBrowserExtension.dll, (Signed) Microsoft Corporation)
[Skype add-on for Internet Explorer (toolbar button)]
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} (C:\Program Files
(x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll, (Signed) Skype
Technologies S.A.)
[Java Plug-in 1.6.0_24]
{8AD9C840-044E-11D1-B3E9-00805F499D93} (C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll, (Signed) )
[Java Plug-in 1.6.0_24]
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} (C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll, (Signed) )
[Java Plug-in 1.6.0_24]
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (C:\Program Files (x86)\Java\jre6\bin\npjpi160_24.dll, (Signed) Sun Microsystems, Inc.)
[]
{0000036B-C524-4050-81A0-243669A86B9F} (, )
[McAfee SiteAdvisor Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} (c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll, (Signed) McAfee, Inc.)
[Adobe PDF Link Helper]
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} (C:\Program Files (x86)\Common
Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll, (Signed) Adobe Systems
Incorporated)
[]
{219C3416-8CB2-491A-A3C7-D9FCDDC9D600} (, )
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} (C:\Windows\SysWOW64\mshtml.dll, (Signed) Microsoft Corporation)
[McAfee Phishing Filter]
{27B4851A-3207-45A2-B947-BE8AFE6163AB} (c:\progra~1\mcafee\msk\mskapbho.dll, (Signed) )
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} (%SystemRoot%\System32\msxml3.dll, (Signed) N/A)
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} (%SystemRoot%\system32\wmp.dll, (Signed) N/A)
[]
{6EBF7485-159F-4BFF-A14F-B9E3AAC4465B} (, )
[scriptproxy]
{7DB2D5A0-7241-4E79-B68D-6309F01C5231} (C:\Program Files (x86)\Common
Files\McAfee\SystemCore\ScriptSn.20110509203531.dll, (Signed) McAfee,
Inc.)
[Skype add-on for Internet Explorer (toolbar button)]
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} (C:\Program Files
(x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll, (Signed) Skype
Technologies S.A.)
[]
{8DCB7100-DF86-4384-8842-8FA844297B3F} (, )
[Windows Live ID Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} (C:\Program Files (x86)\Common
Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, (Signed)
Microsoft Corp.)
[Windows Live Messenger Companion Helper]
{9FDDE16B-836F-4806-AB1F-1455CBEFF289} (C:\Program Files (x86)\Windows
Live\Companion\companioncore.dll, (Signed) Microsoft Corporation)
[Skype add-on for Internet Explorer]
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} (C:\Program Files
(x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll, (Signed) Skype
Technologies S.A.)
[McAfee SiteAdvisor BHO]
{B164E929-A1B6-4A06-B104-2CD0E90A88FF} (c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll, (Signed) McAfee, Inc.)
[Google Update Plugin]
{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} (C:\Users\Young Won
Lee\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll, (Signed)
Google Inc.)
[Google Update Plugin]
{C442AC41-9200-4770-8CC0-7CDB4F245C55} (C:\Users\Young Won
Lee\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll, (Signed)
Google Inc.)
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} (C:\Windows\SysWOW64\Macromed\Flash\Flash10l.ocx, (Signed) Adobe Systems, Inc.)
[]
{D2CE3E00-F94A-4740-988E-03DC2F38C34F} (, )
[OGPIEPlugin Control]
{D5556D62-F743-4F9B-BD99-0330930E4F69} (C:\Windows\SysWow64\OGPIEP~1.OCX, (Signed) OGPlanet)
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435B-BC74-9C25C1C588A9} (C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems, Inc.)
[Microsoft Silverlight]
{DFEAF541-F3E1-4C24-ACAC-99C30715084A} (c:\Program Files
(x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll, (Signed) Microsoft
Corporation)
[&Convert with ImageConverter Plus...]
(res://C:\Program Files (x86)\ImageConverter Plus\icpwebintegration.exe/200, N/A)
Running Processes
[PID: 1076 / SYSTEM][C:\Program Files\Dell\DellDock\DockLogin.exe] [Stardock Corporation, 6.1]
[PID: 1520 / SYSTEM][C:\Windows\SysWOW64\svchost.exe] [(Verified) Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
[c:\program files (x86)\common files\akamai\netsession_win_8832f4b.dll] [N/A, ]
[PID: 1804 / SYSTEM][C:\Windows\SysWOW64\rundll32.exe] [Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[PID: 1932 / SYSTEM][C:\Windows\SysWOW64\PnkBstrA.exe] [N/A, ]
[PID: 1716 / SYSTEM][C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE] [SoftThinks SAS, 1, 0, 82, 66]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STCoreXml.dll] [, 1, 2, 0, 1]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STDisks.dll] [SoftThinks, 4, 0, 6001, 28]
[C:\Program Files (x86)\Dell DataSafe Local Backup\CSTError.dll] [SOFTTHINKS, 1, 0, 0, 3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STString.dll] [SoftThinks, 1, 1, 0, 5]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STSystems.dll] [SoftThinks, 4, 0, 1, 1]
[C:\Program Files (x86)\Dell DataSafe Local Backup\PSTVdsDisk.dll] [, 1, 0, 1, 2]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll] [, 1, 2, 0, 0]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STMsXml.dll] [, 1, 2, 0, 1]
[PID:
1332 / SYSTEM][C:\Program Files (x86)\Microsoft Application
Virtualization Client\sftvsa.exe] [Microsoft Corporation, 4.6.0.10191]
[PID:
2356 / SYSTEM][C:\Program Files (x86)\Microsoft Application
Virtualization Client\sftlist.exe] [Microsoft Corporation, 4.6.0.10191]
[PID:
2148 / SYSTEM][C:\Program Files (x86)\Common Files\Microsoft
Shared\Virtualization Handler\CVHSVC.EXE] [Microsoft Corporation,
14.0.4750.1000]
[PID: 3596 / Young Won Lee][C:\Program Files (x86)\Uniblue\SpeedUpMyPC\spmonitor.exe] [Uniblue Systems Limited, 5.1.1.3]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[C:\Program Files (x86)\Uniblue\SpeedUpMyPC\cache.dll] [Uniblue Systems Limited, 5.1.1.3]
[PID:
1852 / Young Won Lee][C:\Program Files (x86)\Dell DataSafe Local
Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE] [, 1, 0, 0, 71]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STString.dll] [SoftThinks, 1, 1, 0, 5]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STXml.dll] [SoftThinks, 1.6.0.5]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STStringArray.dll] [SoftThinks, 1, 4, 0, 0]
[C:\Program Files (x86)\Dell DataSafe Local Backup\CSTError.dll] [SOFTTHINKS, 1, 0, 0, 3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll] [, 1, 2, 0, 0]
[C:\Program Files (x86)\Dell DataSafe Local Backup\LibXml2.dll] [, 2, 6, 29, 0]
[C:\Program Files (x86)\Dell DataSafe Local Backup\zlib1.dll] [, 1.2.3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STFiles.dll] [, 1, 7, 0, 11]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STRegistry.dll] [, 1, 1, 0, 2]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STPE.dll] [, 1, 2, 0, 11]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STNLS.dll] [, 1, 2, 0, 3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STSystems.dll] [SoftThinks, 4, 0, 1, 1]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSCheduler.dll] [SoftThinks, 1, 0, 0, 59]
[PID:
564 / Young Won Lee][C:\Program Files (x86)\Intel\Intel(R) Rapid
Storage Technology\IAStorIcon.exe] [Intel Corporation, 9.6.0.1014]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ebdaeaeb9f66c9035b5f11431f10cda4\mscorlib.ni.dll]
[Microsoft Corporation, 2.0.50727.4959 (win7RTMGDR.050727-4900)]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System\50c67f851ae3df2d0ab7d86fd1c5c7e0\System.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\e8762d3d294416e0ccf88fdf102681e4\IAStorUtil.ni.dll]
[Intel Corporation, 9.6.0.1014]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\2a34e74599686e7383ae90670a994cdf\System.Drawing.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\e4ea95056046fdf87f06ae807308b627\System.Windows.Forms.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\9d054fc9618b81d5703af1662cd11135\System.Configuration.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\167c8c3817ba1f48fe7396cc56f557e3\System.Xml.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IntelVisualDesign.dll] [Intel Corporation, 0.0.0.0]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\adc8998d96ca331d17cef00b1ef95a5f\System.Runtime.Remoting.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[PID: 300 / Young Won Lee][C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe] [Sun Microsystems, Inc., 2.0.3.1]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[PID:
4184 / Young Won Lee][C:\Program Files (x86)\Dell DataSafe Local
Backup\Components\DSUpdate\DSUpd.exe] [SoftThinks - Dell, 2.0.1.3]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ebdaeaeb9f66c9035b5f11431f10cda4\mscorlib.ni.dll]
[Microsoft Corporation, 2.0.50727.4959 (win7RTMGDR.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System\50c67f851ae3df2d0ab7d86fd1c5c7e0\System.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\167c8c3817ba1f48fe7396cc56f557e3\System.Xml.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\9d054fc9618b81d5703af1662cd11135\System.Configuration.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[PID: 4420 / Young Won Lee][C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe] [SoftThinks - Dell, 1.0.3.31]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ebdaeaeb9f66c9035b5f11431f10cda4\mscorlib.ni.dll]
[Microsoft Corporation, 2.0.50727.4959 (win7RTMGDR.050727-4900)]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System\50c67f851ae3df2d0ab7d86fd1c5c7e0\System.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\caa9d8bca3092573cdbb67c8e81bf0f3\WindowsBase.ni.dll]
[Microsoft Corporation, 3.0.6920.5001 built by: Win7RTMGDR]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\03dd2b7701ca5cfe696d4ca5a0f7b8bb\PresentationCore.ni.dll]
[Microsoft Corporation, 3.0.6920.5001 built by: Win7RTMGDR]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d7827588b8043e8be3184c8a64a867fc\PresentationFramework.ni.dll]
[Microsoft Corporation, 3.0.6920.5001 built by: Win7RTMGDR]
[C:\Program Files (x86)\Dell DataSafe Local Backup\SftBRCC.dll] [SoftThinks, 1.0.0.10]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\9d054fc9618b81d5703af1662cd11135\System.Configuration.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Program Files (x86)\Dell DataSafe Local Backup\SftBRCCPiped.dll] [, 1.0.0.2]
[C:\Program Files (x86)\Dell DataSafe Local Backup\MiddleLayerCLRLib.dll] [SoftThinks, 1, 0, 0, 8]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STBRCCServCLR.dll] [, 1.0.0.1]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\2a34e74599686e7383ae90670a994cdf\System.Drawing.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\e4ea95056046fdf87f06ae807308b627\System.Windows.Forms.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STBRCCServices.dll] [SoftThinks, 1, 0, 0, 3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STXml.dll] [SoftThinks, 1.6.0.5]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STStringArray.dll] [SoftThinks, 1, 4, 0, 0]
[C:\Program Files (x86)\Dell DataSafe Local Backup\CSTError.dll] [SOFTTHINKS, 1, 0, 0, 3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STString.dll] [SoftThinks, 1, 1, 0, 5]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll] [, 1, 2, 0, 0]
[C:\Program Files (x86)\Dell DataSafe Local Backup\LibXml2.dll] [, 2, 6, 29, 0]
[C:\Program Files (x86)\Dell DataSafe Local Backup\zlib1.dll] [, 1.2.3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STNLS.dll] [, 1, 2, 0, 3]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STFiles.dll] [, 1, 7, 0, 11]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STRegistry.dll] [, 1, 1, 0, 2]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STPE.dll] [, 1, 2, 0, 11]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STSystems.dll] [SoftThinks, 4, 0, 1, 1]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\167c8c3817ba1f48fe7396cc56f557e3\System.Xml.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Program Files (x86)\Dell DataSafe Local Backup\DsProtectionIndex.dll] [SoftThinks - Dell, 1.0.0.5]
[C:\Windows\system32\nvd3dum.dll] [NVIDIA Corporation, 8.16.11.9133]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8e1f199a523bdc014cd19072d583e7cc\PresentationFramework.Aero.ni.dll]
[Microsoft Corporation, 3.0.6920.4902 built by: NetFXw7]
[C:\Program Files (x86)\Dell DataSafe Local Backup\STUICore.dll] [SoftThinks - Dell, 1.0.0.100]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\bf0286e181064f9ded08895c7f23967d\System.Core.ni.dll]
[Microsoft Corporation, 3.5.30729.4926 built by: NetFXw7]
[PID: 924
/ SYSTEM][C:\Program Files (x86)\Intel\Intel(R) Rapid Storage
Technology\IAStorDataMgrSvc.exe] [Intel Corporation, 9.6.0.1014]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ebdaeaeb9f66c9035b5f11431f10cda4\mscorlib.ni.dll]
[Microsoft Corporation, 2.0.50727.4959 (win7RTMGDR.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System\50c67f851ae3df2d0ab7d86fd1c5c7e0\System.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgrSvc\81a92aab375ab4634d7c1545286d609b\IAStorDataMgrSvc.ni.exe]
[Intel Corporation, 9.6.0.1014]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\b6d66d3c48e430796c17d0497ce37972\System.ServiceProcess.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgr\a04c29d54a285eeb6cebd35038673bca\IAStorDataMgr.ni.dll]
[Intel Corporation, 9.6.0.1014]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\e8762d3d294416e0ccf88fdf102681e4\IAStorUtil.ni.dll]
[Intel Corporation, 9.6.0.1014]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\9d054fc9618b81d5703af1662cd11135\System.Configuration.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\167c8c3817ba1f48fe7396cc56f557e3\System.Xml.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\adc8998d96ca331d17cef00b1ef95a5f\System.Runtime.Remoting.ni.dll]
[Microsoft Corporation, 2.0.50727.4927 (NetFXspW7.050727-4900)]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\8413f8bc83065b2aa4534739bee0d829\IsdiInterop.ni.dll] [N/A, ]
[C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll] [N/A, ]
[C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ISDI.dll] [Intel Corporation, 9.6.0.1014]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\caa9d8bca3092573cdbb67c8e81bf0f3\WindowsBase.ni.dll]
[Microsoft Corporation, 3.0.6920.5001 built by: Win7RTMGDR]
[C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\b867fbc0d573ac5e5fe71143d9caf43b\System.Web.ni.dll]
[Microsoft Corporation, 2.0.50727.4955 (win7RTMGDR.050727-4900)]
[PID: 2508 / Young Won Lee][C:\Program Files (x86)\Mozilla Firefox\firefox.exe] [Mozilla Corporation, 2.0.1]
[C:\Program Files (x86)\Mozilla Firefox\xul.dll] [Mozilla Foundation, 2.0.1]
[C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll] [sqlite.org, 3.7.4]
[C:\Program Files (x86)\Mozilla Firefox\MOZCRT19.dll] [Mozilla Foundation, 8.00.0000]
[C:\Program Files (x86)\Mozilla Firefox\mozjs.dll] [N/A, ]
[C:\Program Files (x86)\Mozilla Firefox\nspr4.dll] [Mozilla Foundation, 4.8.7]
[C:\Program Files (x86)\Mozilla Firefox\smime3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nss3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll] [Mozilla Foundation, 3.12.9.0]
[C:\Program Files (x86)\Mozilla Firefox\plc4.dll] [Mozilla Foundation, 4.8.7]
[C:\Program Files (x86)\Mozilla Firefox\plds4.dll] [Mozilla Foundation, 4.8.7]
[C:\Program Files (x86)\Mozilla Firefox\ssl3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll] [Mozilla Foundation, 2.0.1]
[C:\Program Files (x86)\Mozilla Firefox\MOZCPP19.dll] [Mozilla Foundation, 8.00.0000]
[C:\Program Files (x86)\Mozilla Firefox\xpcom.dll] [Mozilla Foundation, 2.0.1]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll] [Mozilla Foundation, 2.0.1]
[C:\Program Files (x86)\McAfee\SiteAdvisor\components\McFFPlg.dll] [McAfee, Inc., 3,3,1,137]
[c:\PROGRA~2\mcafee\SITEAD~1\mcbrwctl.dll] [McAfee, Inc., 3,3,1,133]
[c:\PROGRA~2\mcafee\SITEAD~1\MCSACO~1.DLL] [McAfee, Inc., 3,3,1,102]
[C:\Program Files (x86)\Mozilla Firefox\softokn3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\freebl3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll] [Mozilla Foundation, 1.81]
[C:\Windows\system32\icm32.dll] [Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
[PID: 5216 / Young Won Lee][C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe] [Mozilla Corporation, 2.0.1]
[C:\Program Files (x86)\Mozilla Firefox\xul.dll] [Mozilla Foundation, 2.0.1]
[C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll] [sqlite.org, 3.7.4]
[C:\Program Files (x86)\Mozilla Firefox\MOZCRT19.dll] [Mozilla Foundation, 8.00.0000]
[C:\Program Files (x86)\Mozilla Firefox\mozjs.dll] [N/A, ]
[C:\Program Files (x86)\Mozilla Firefox\nspr4.dll] [Mozilla Foundation, 4.8.7]
[C:\Program Files (x86)\Mozilla Firefox\smime3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nss3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll] [Mozilla Foundation, 3.12.9.0]
[C:\Program Files (x86)\Mozilla Firefox\plc4.dll] [Mozilla Foundation, 4.8.7]
[C:\Program Files (x86)\Mozilla Firefox\plds4.dll] [Mozilla Foundation, 4.8.7]
[C:\Program Files (x86)\Mozilla Firefox\ssl3.dll] [Mozilla Foundation, 3.12.9.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll] [Mozilla Foundation, 2.0.1]
[C:\Program Files (x86)\Mozilla Firefox\MOZCPP19.dll] [Mozilla Foundation, 8.00.0000]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll] [, ]
[C:\Windows\system32\icm32.dll] [Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
[C:\Windows\system32\nvapi.dll] [NVIDIA Corporation, 8.16.11.9133]
[PID: 5972 / Young Won Lee][C:\Program Files (x86)\WinRAR\WinRAR.exe] [, ]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
[PID: 4408 / Young Won Lee][C:\Users\YOUNGW~1\AppData\Local\Temp\Rar$EX77.928\SREngLdr.EXE] [Smallfrogs Studio, 2.8.4.1331]
[PID: 5940 / Young Won Lee][C:\Users\YOUNGW~1\AppData\Local\Temp\Rar$EX77.928\SRE8736cb99.EXE] [Smallfrogs Studio, 2.8.4.1331]
[c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll] [McAfee, Inc., 3,3,1,133]
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["%SystemRoot%\hh.exe" %1]
.HLP OK. [%SystemRoot%\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS Error. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
Winsock Provider
N/A
Autorun.Inf
N/A
HOSTS File
127.0.0.1 localhost
Process Privileges Scan
N/A
Scheduled Tasks
[Enabled] \\GoogleUpdateTaskUserS-1-5-21-3217754418-4166246980-2470070227-1001Core
C:\Users\Young Won Lee\AppData\Local\Google\Update\GoogleUpdate.exe /c
[Enabled] \\GoogleUpdateTaskUserS-1-5-21-3217754418-4166246980-2470070227-1001UA
C:\Users\Young Won Lee\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
[Enabled] \\GoogleUpdateTaskUserS-1-5-21-3217754418-4166246980-2470070227-1003Core
C:\Users\John Lee\AppData\Local\Google\Update\GoogleUpdate.exe /c
[Enabled] \\GoogleUpdateTaskUserS-1-5-21-3217754418-4166246980-2470070227-1003UA
C:\Users\John Lee\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
[Enabled] \\SpeedUpMyPC
C:\Program Files (x86)\Uniblue\SpeedUpMyPC\spmonitor.exe /ua /installsource scheduler
[Enabled] \\{018B5990-184E-4012-8E2F-2A16BE1FAF1F}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Downloads\HijackThis.exe" -d "C:\Program Files (x86)\Mozilla
Firefox"
[Enabled] \\{06F1F351-A84F-4694-871E-2A30DC1E38C7}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Downloads\AA3DeployInstaller(1).exe" -d "C:\Program Files
(x86)\Mozilla Firefox"
[Enabled] \\{10C8AB01-1B1A-450F-94A3-D986B0BB08BA}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Downloads\FreePSPPlayer.exe" -d "C:\Program Files (x86)\Mozilla
Firefox"
[Enabled] \\{1991416E-5C2F-474E-B515-E90D325DCB0A}
C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c
"C:\Program Files (x86)\Abdio\Abdio Free PSP Player\UNWISE.EXE"
[Enabled] \\{2239E72F-D6EE-44D3-9702-931E0D5F59ED}
C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Turbine\The Lord of the Rings Online\unins000.exe"
[Enabled] \\{27CAA671-05A2-4F7B-9A07-6E88D6779219}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Downloads\3gp-converter-0-33\3GP_Converter033\Setup.exe" -d
"C:\Users\Young Won Lee\Downloads\3gp-converter-0-33\3GP_Converter033"
[Enabled] \\{3CC57823-3ABD-4C26-90A1-EE02F92410B7}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Downloads\IDS30_Installer0809a.exe" -d "C:\Program Files
(x86)\Mozilla Firefox"
[Enabled] \\{84B602CB-74E7-4A4F-BA8D-2DE071798FA0}
C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Xfire\uninst.exe"
[Enabled] \\{B0E3DD3C-BF1A-4FE9-84AB-A5083BAF5FD6}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Downloads\AA3DeployInstaller.exe" -d "C:\Program Files (x86)\Mozilla
Firefox"
[Enabled] \\{BADD09DF-AA3A-47C8-B449-54FB585EF171}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Desktop\LeagueOfLegends.NA.04_12_2011_RADS\setup.exe" -d
"C:\Users\Young Won Lee\Desktop\LeagueOfLegends.NA.04_12_2011_RADS"
[Enabled] \\{CC3CBEB9-AB5D-42F3-961A-C757C2849EDA}
C:\Windows\system32\pcalua.exe -a "C:\Users\Young Won
Lee\Downloads\INST_IC3100_CDUPD.EXE" -d "C:\Program Files (x86)\Mozilla
Firefox"
[Enabled] \\{D17CF740-5E6C-4FF2-BF49-526812E0CCD6}
C:\Program Files (x86)\Abdio\Abdio Free PSP Player\UNWISE.EXE -a
"C:\Users\Young Won Lee\Downloads\INST_IC3100_CDUPD.EXE" -d "C:\Program
Files (x86)\Mozilla Firefox"
[Disabled] \Microsoft\Windows\Active
Directory Rights Management Services Client\AD RMS Rights Policy
Template Management (Automated)
N/A
[Enabled]
\Microsoft\Windows\Active Directory Rights Management Services Client\AD
RMS Rights Policy Template Management (Manual)
N/A
[Disabled] \Microsoft\Windows\AppID\PolicyConverter
%windir%\system32\appidpolicyconverter.exe
[Disabled] \Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck
%windir%\system32\appidcertstorecheck.exe
[Enabled] \Microsoft\Windows\Application Experience\AitAgent
aitagent
[Enabled] \Microsoft\Windows\Application Experience\ProgramDataUpdater
%windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate
[Enabled] \Microsoft\Windows\Autochk\Proxy
%windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
[Enabled] \Microsoft\Windows\Bluetooth\UninstallDeviceTask
BthUdTask.exe $(Arg0)
[Enabled] \Microsoft\Windows\CertificateServicesClient\SystemTask
N/A
[Enabled] \Microsoft\Windows\CertificateServicesClient\UserTask
N/A
[Disabled] \Microsoft\Windows\CertificateServicesClient\UserTask-Roam
N/A
[Enabled] \Microsoft\Windows\Customer Experience Improvement Program\Consolidator
%SystemRoot%\System32\wsqmcons.exe
[Enabled] \Microsoft\Windows\Customer Experience Improvement Program\Uploader
%windir%\system32\WSqmCons.exe -u
[Enabled] \Microsoft\Windows\Defrag\ScheduledDefrag
%windir%\system32\defrag.exe -c
[Enabled] \Microsoft\Windows\Location\Notifications
%windir%\System32\LocationNotifications.exe
[Enabled] \Microsoft\Windows\Maintenance\WinSAT
N/A
[Enabled] \Microsoft\Windows\Media Center\ActivateWindowsSearch
%SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
[Enabled] \Microsoft\Windows\Media Center\ConfigureInternetTimeService
%SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
[Enabled] \Microsoft\Windows\Media Center\DispatchRecoveryTasks
%SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
[Enabled] \Microsoft\Windows\Media Center\ehDRMInit
%SystemRoot%\ehome\ehPrivJob.exe /DRMInit
[Enabled] \Microsoft\Windows\Media Center\InstallPlayReady
%SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
[Enabled] \Microsoft\Windows\Media Center\mcupdate
%SystemRoot%\ehome\mcupdate $(Arg0)
[Enabled] \Microsoft\Windows\Media Center\MediaCenterRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\MediaCenterRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\OCURActivate
%SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
[Enabled] \Microsoft\Windows\Media Center\OCURDiscovery
%SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
[Enabled] \Microsoft\Windows\Media Center\PBDADiscovery
%SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
[Enabled] \Microsoft\Windows\Media Center\PBDADiscoveryW1
%SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
[Enabled] \Microsoft\Windows\Media Center\PBDADiscoveryW2
%SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
[Disabled] \Microsoft\Windows\Media Center\PeriodicScanRetry
%windir%\ehome\MCUpdate.exe -pscn 0
[Enabled] \Microsoft\Windows\Media Center\PvrRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\PvrRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\PvrScheduleTask
%SystemRoot%\ehome\mcupdate.exe -PvrSchedule
[Enabled] \Microsoft\Windows\Media Center\PvrScheduleTask
%SystemRoot%\ehome\mcupdate.exe -PvrSchedule
[Disabled] \Microsoft\Windows\Media Center\RecordingRestart
%SystemRoot%\ehome\ehrec /RestartRecording
[Enabled] \Microsoft\Windows\Media Center\RegisterSearch
%SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
[Enabled] \Microsoft\Windows\Media Center\ReindexSearchRoot
%SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
[Enabled] \Microsoft\Windows\Media Center\SqlLiteRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\SqlLiteRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
[Enabled] \Microsoft\Windows\Media Center\UpdateRecordPath
%SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
[Enabled] \Microsoft\Windows\MobilePC\HotStart
N/A
[Enabled] \Microsoft\Windows\MUI\LPRemove
%windir%\system32\lpremove.exe
[Enabled] \Microsoft\Windows\Multimedia\SystemSoundsService
N/A
[Enabled] \Microsoft\Windows\NetTrace\GatherNetworkInfo
%windir%\system32\gatherNetworkInfo.vbs
[Enabled] \Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem
%SystemRoot%\System32\powercfg.exe -energy -auto
[Enabled] \Microsoft\Windows\Ras\MobilityManager
N/A
[Disabled] \Microsoft\Windows\SideShow\AutoWake
N/A
[Enabled] \Microsoft\Windows\SideShow\GadgetManager
N/A
[Disabled] \Microsoft\Windows\SideShow\SessionAgent
N/A
[Disabled] \Microsoft\Windows\SideShow\SystemDataProviders
N/A
[Enabled] \Microsoft\Windows\SystemRestore\SR
%windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
[Enabled] \Microsoft\Windows\Tcpip\IpAddressConflict1
%windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
[Enabled] \Microsoft\Windows\Tcpip\IpAddressConflict2
%windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
[Enabled] \Microsoft\Windows\Time Synchronization\SynchronizeTime
%windir%\system32\sc.exe start w32time task_started
[Enabled] \Microsoft\Windows\UPnP\UPnPHostConfig
sc.exe config upnphost start= auto
[Disabled] \Microsoft\Windows\User Profile Service\HiveUploadTask
N/A
[Enabled] \Microsoft\Windows\Windows Error Reporting\QueueReporting
%windir%\system32\wermgr.exe -queuereporting
[Enabled] \Microsoft\Windows\Windows Media Sharing\UpdateLibrary
"%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
[Enabled] \Microsoft\Windows\WindowsBackup\AutomaticBackup
%systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
[Disabled] \Microsoft\Windows\WindowsBackup\ConfigNotification
%systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
[Enabled] \Microsoft\Windows\WindowsBackup\Windows Backup Monitor
%systemroot%\system32\sdclt.exe /CHECKSKIPPED
[Disabled] \Microsoft\Windows\WindowsColorSystem\Calibration Loader
N/A
[Enabled] \Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
N/A
Windows Security Update Check
KB976932, Windows 7 Service Pack 1 for x64-based Systems (KB976932)
KB982861, Windows Internet Explorer 9 for Windows 7 for x64-based Systems
KB2544893, Security Update for Windows 7 for x64-based Systems (KB2544893) MS11-037
KB2536276, Security Update for Windows 7 for x64-based Systems (KB2536276) MS11-043
KB2476490, Security Update for Windows 7 for x64-based Systems (KB2476490) MS11-038
KB2503665, Security Update for Windows 7 for x64-based Systems (KB2503665) MS11-046
KB2535512, Security Update for Windows 7 for x64-based Systems (KB2535512) MS11-042
KB2536275, Security Update for Windows 7 for x64-based Systems (KB2536275) MS11-048
KB2544521, Security Update for Internet Explorer 8 for Windows 7 for x64-based Systems (KB2544521) MS11-052
KB2530548, Cumulative Security Update for Internet Explorer 8 for Windows 7 for x64-based Systems (KB2530548) MS11-050
KB2488113, Update for Windows 7 for x64-based Systems (KB2488113)
KB2538242, Security Update for Microsoft Visual C++ 2005 Service Pack 1 Redistributable Package (KB2538242) MS11-025
KB2538243, Security Update for Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2538243) MS11-025
KB890830, Windows Malicious Software Removal Tool x64 - June 2011 (KB890830)
KB2525694, Security Update for Windows 7 for x64-based Systems (KB2525694) MS11-041
KB2512827, Security Update for Microsoft Silverlight (KB2512827) MS11-039
KB915597, Definition Update for Windows Defender - KB915597 (Definition 1.105.1913.0)
API HOOK
Entrypoint Error: FindFirstFileW (Dangerous Level: High, Hooked by Module: 0xB9271FB8)
Hidden Process
N/A