Seite 1 von 2 12 LetzteLetzte
Ergebnis 1 bis 10 von 17

Thema: Renos/Trojan Downloader gefunden

  1. #1
    Forenbenutzer
    Registriert seit
    29.03.2008
    Beiträge
    86

    Renos/Trojan Downloader gefunden

    System grad vor ein paar Tagen aufgesetzt und schon wieder Ärger -_- >

    Hijackthislog:

    Code:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 19:58:49, on 24.09.2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18813)
    Boot mode: Normal
    
    Running processes:
    C:\Program Files (x86)\Lexmark X1100 Series\LXBKbmgr.exe
    D:\Steam\Steam.exe
    C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
    C:\Avast\ashDisp.exe
    C:\Windows\SysWOW64\rundll32.exe
    C:\Razer Krait\razerhid.exe
    C:\Program Files (x86)\Lexmark X1100 Series\lxbkbmon.exe
    C:\Razer Krait\razertra.exe
    C:\Razer Krait\razerofa.exe
    C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
    D:\FireFox\firefox.exe
    C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
    
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    F2 - REG:system.ini: UserInit=userinit.exe
    O1 - Hosts: ::1 localhost
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Microsoft Office\Office12\GrooveShellExtensions.dll
    O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
    O4 - HKLM\..\Run: [avast!] C:\Avast\ashDisp.exe
    O4 - HKLM\..\Run: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
    O4 - HKLM\..\Run: [Krait] C:\Razer Krait\razerhid.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\AdobeReader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [GrooveMonitor] "D:\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [Antivirus Pro 2010] "C:\Program Files (x86)\AntivirusPro_2010\AntivirusPro_2010.exe" /hide
    O4 - HKCU\..\Run: [Skype] REM "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [Steam] "d:\steam\steam.exe" -silent
    O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe"
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')
    O4 - HKUS\S-1-5-18\..\Run: [mserv] C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [mserv] C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe (User 'Default user')
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\MICROS~1\Office12\EXCEL.EXE/3000
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\MICROS~1\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\MICROS~1\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\MICROS~1\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix: 
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15108/CTPID.cab
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Microsoft Office\Office12\GrooveSystemServices.dll
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Avast\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Avast\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Avast\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Avast\ashWebSv.exe
    O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
    O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: lxbk_device -   - C:\Windows\system32\lxbkcoms.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
    O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    O23 - Service: TAGuard - Unknown owner - C:\PROGRA~2\aon\aonFlex\Guard.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
    
    --
    End of file - 7856 bytes
    Das ist die Meldung von Avast ("Nur" als Warnung eingestuft):
    24.09.2009 19:50:50 SYSTEM 1360 Sign of "Win32:Lighty [Cryp]" has been found in "C:\Windows\Temp\WER1C98.tmp.hdmp" file.

    Von Windowsdefender:
    TrojanDownloader:Win32/Renos

    Jetzt hab ich Angst - Prophylaktisch einen AntiSpyWare Scan ausgeführt (SpyBot) -----

    Code:
    --- Search result list ---
    CoolWWWSearch.OleHelp: [SBI $F3F8B2C7] Autorun-Einstellungen (svchost) (Registrierungsdatenbank-Wert, fixed)
      HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost
    
    CoolWWWSearch.OleHelp: [SBI $F3F8B2C7]  Programmdatei (Datei, fixed)
      C:\Windows\system32\config\systemprofile\AppData\Roaming\svcst.exe
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    CoolWWWSearch.OleHelp: [SBI $F3F8B2C7] Autorun-Einstellungen (svchost) (Registrierungsdatenbank-Wert, fixing failed)
      HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost
    
    Fraud.XPAntivirus: [SBI $698D395C]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\AVEngn.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $D8C7B9D2]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\pthreadVC2.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $65FA905C]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\wscui.cpl
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $08B76334]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\data\daily.cvd
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $A2EE2FB7]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\Microsoft.VC80.CRT.manifest
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $2C5EB137]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\msvcm80.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $D1488DAC]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\msvcp80.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $1A4F4E11]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\msvcr80.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $4FAD3D51] Programm-Verzeichnis (Verzeichnis, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\data\
    
    Fraud.XPAntivirus: [SBI $10EB6A3C] Uninstall-Einstellung (Registrierungsdatenbank-Schlüssel, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntivirusPro_2010
    
    Fraud.XPAntivirus: [SBI $7A7E9634] Einstellungen (Registrierungsdatenbank-Schlüssel, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\AntivirusPro_2010
    
    Fraud.XPAntivirus: [SBI $1C80BE94]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\htmlayout.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $2646A943] Programm-Verzeichnis (Verzeichnis, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\
    
    Fraud.XPAntivirus: [SBI $C1606B17] Programm-Verzeichnis (Verzeichnis, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\
    
    Win32.Asprox: [SBI $01650482] Einstellungen (Registrierungsdatenbank-Schlüssel, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Sft
    
    Tradedoubler: Verfolgender Cookie (Internet Explorer: Sherkas) (Cookie, fixed)
      
    
    
    --- Spybot - Search & Destroy version: 1.6.2  (build: 20090126) ---
    
    2009-01-26 blindman.exe (1.0.0.8)
    2009-01-26 SDFiles.exe (1.6.1.7)
    2009-01-26 SDMain.exe (1.0.0.6)
    2009-01-26 SDShred.exe (1.0.2.5)
    2009-01-26 SDUpdate.exe (1.6.0.12)
    2009-01-26 SDWinSec.exe (1.0.0.12)
    2009-01-26 SpybotSD.exe (1.6.2.46)
    2009-03-05 TeaTimer.exe (1.6.6.32)
    2009-09-24 unins000.exe (51.49.0.0)
    2009-01-26 Update.exe (1.6.0.7)
    2009-09-07 advcheck.dll (1.6.4.18)
    2007-04-02 aports.dll (2.1.0.0)
    2008-06-14 DelZip179.dll (1.79.11.1)
    2009-01-26 SDHelper.dll (1.6.2.14)
    2008-06-19 sqlite3.dll
    2009-01-26 Tools.dll (2.1.6.10)
    2009-01-16 UninsSrv.dll (1.0.0.0)
    2009-05-19 Includes\Adware.sbi (*)
    2009-09-22 Includes\AdwareC.sbi (*)
    2009-01-22 Includes\Cookies.sbi (*)
    2009-08-10 Includes\Dialer.sbi (*)
    2009-09-22 Includes\DialerC.sbi (*)
    2009-01-22 Includes\HeavyDuty.sbi (*)
    2009-05-26 Includes\Hijackers.sbi (*)
    2009-09-22 Includes\HijackersC.sbi (*)
    2009-09-22 Includes\Keyloggers.sbi (*)
    2009-09-22 Includes\KeyloggersC.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2009-08-19 Includes\Malware.sbi (*)
    2009-09-22 Includes\MalwareC.sbi (*)
    2009-03-25 Includes\PUPS.sbi (*)
    2009-09-22 Includes\PUPSC.sbi (*)
    2009-01-22 Includes\Revision.sbi (*)
    2009-01-13 Includes\Security.sbi (*)
    2009-09-22 Includes\SecurityC.sbi (*)
    2008-06-03 Includes\Spybots.sbi (*)
    2008-06-03 Includes\SpybotsC.sbi (*)
    2009-04-07 Includes\Spyware.sbi (*)
    2009-09-22 Includes\SpywareC.sbi (*)
    2009-06-08 Includes\Tracks.uti
    2009-09-15 Includes\Trojans.sbi (*)
    2009-09-22 Includes\TrojansC.sbi (*)
    2008-03-04 Plugins\Chai.dll
    2008-03-05 Plugins\Fennel.dll
    2008-02-26 Plugins\Mate.dll
    2007-12-24 Plugins\TCPIPAddress.dll
    
    
    
    --- System information ---
    Windows Vista (Build: 6001) Service Pack 1 (6.0.6001)
    
    
    --- Startup entries list ---
    Located: HK_LM:Run, Adobe Reader Speed Launcher
    command: "C:\AdobeReader 9.0\Reader\Reader_sl.exe"
       file: C:\AdobeReader 9.0\Reader\Reader_sl.exe
       size: 35696
        MD5: 452FA961163EF4AEE4815796A13AB2CF
    
    Located: HK_LM:Run, Antivirus Pro 2010
    command: "C:\Program Files (x86)\AntivirusPro_2010\AntivirusPro_2010.exe" /hide
       file: C:\Program Files (x86)\AntivirusPro_2010\AntivirusPro_2010.exe
       size: 0
        MD5: D41D8CD98F00B204E9800998ECF8427E
             Warning: if the file is actually larger than 0 bytes,
             the checksum could not be properly calculated!
    
    Located: HK_LM:Run, avast!
    command: C:\Avast\ashDisp.exe
       file: C:\Avast\ashDisp.exe
       size: 81000
        MD5: 4EADA484E5F7E04CDEEF95030DA4B05C
    
    Located: HK_LM:Run, GrooveMonitor
    command: "D:\Microsoft Office\Office12\GrooveMonitor.exe"
       file: D:\Microsoft Office\Office12\GrooveMonitor.exe
       size: 31072
        MD5: 644795F6985C740F5E36E9336B837D0B
    
    Located: HK_LM:Run, JMB36X IDE Setup
    command: C:\Windows\RaidTool\xInsIDE.exe
       file: C:\Windows\RaidTool\xInsIDE.exe
       size: 36864
        MD5: DB4E2D9C09A5762CB2551222B5E443B2
    
    Located: HK_LM:Run, Krait
    command: C:\Razer Krait\razerhid.exe
       file: C:\Razer Krait\razerhid.exe
       size: 126976
        MD5: 6879C57D495AD84C5AC381B656C85E94
    
    Located: HK_LM:Run, P17RunE
    command: RunDll32 P17RunE.dll,RunDLLEntry
       file: C:\Windows\system32\P17RunE.dll
       size: 14848
        MD5: BC6B92E13EC81DE9C77FA1816CC325D6
    
    Located: HK_LM:RunOnce, SpybotSnD
    command: "C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
       file: C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
       size: 5365592
        MD5: 0477C2F9171599CA5BC3307FDFBA8D89
    
    Located: HK_CU:Run, mserv
      where: .DEFAULT...
    command: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       file: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       size: 13312
        MD5: 25BD3B1E8826F908F856F7C27900380F
    
    Located: HK_CU:Run, Sidebar
      where: S-1-5-19...
    command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
       file: C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
       size: 1233920
        MD5: FD278E51A7D6F52D22FCE6C67E037AD6
    
    Located: HK_CU:Run, WindowsWelcomeCenter
      where: S-1-5-19...
    command: rundll32.exe oobefldr.dll,ShowWelcomeCenter
       file: C:\Windows\system32\oobefldr.dll
       size: 2153472
        MD5: 83E4A5435B0FA6AD0166722621A04725
    
    Located: HK_CU:Run, Sidebar
      where: S-1-5-20...
    command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
       file: C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
       size: 1233920
        MD5: FD278E51A7D6F52D22FCE6C67E037AD6
    
    Located: HK_CU:Run, WindowsWelcomeCenter
      where: S-1-5-20...
    command: rundll32.exe oobefldr.dll,ShowWelcomeCenter
       file: C:\Windows\system32\oobefldr.dll
       size: 2153472
        MD5: 83E4A5435B0FA6AD0166722621A04725
    
    Located: HK_CU:Run, msnmsgr
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
       file: C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
       size: 3883840
        MD5: 8F4CD393FF165E8952D2D0AE3CF25C79
    
    Located: HK_CU:Run, Skype
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: REM "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
       file: REM "C:\Program Files (x86)\Skype\Phone\Skype.exe
       size: 0
        MD5: D41D8CD98F00B204E9800998ECF8427E
             Warning: if the file is actually larger than 0 bytes,
             the checksum could not be properly calculated!
    
    Located: HK_CU:Run, SpybotSD TeaTimer
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
       file: C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
       size: 2260480
        MD5: 390679F7A217A5E73D756276C40AE887
    
    Located: HK_CU:Run, Steam
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: "d:\steam\steam.exe" -silent
       file: d:\steam\steam.exe
       size: 1217784
        MD5: 380D05F01453CC20B02A58B112B3B9B3
    
    Located: HK_CU:Run, uTorrent
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: "C:\Program Files (x86)\uTorrent\uTorrent.exe"
       file: C:\Program Files (x86)\uTorrent\uTorrent.exe
       size: 288560
        MD5: ADD8DDD57B22D624D6A9D3B209A2E485
    
    Located: HK_CU:Run, mserv
      where: S-1-5-18...
    command: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       file: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       size: 13312
        MD5: 25BD3B1E8826F908F856F7C27900380F
    
    
    
    --- Browser helper object list ---
    {18DF081C-E8AD-4283-A596-FA578C2EBDC3} (AcroIEHelperStub)
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: AcroIEHelperStub
            CLSID name: Adobe PDF Link Helper
                  Path: C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\
             Long name: AcroIEHelperShim.dll
            Short name:       ACROIE~2.DLL
        Date (created): 27.02.2009 12:07:26
    Date (last access): 20.09.2009 16:55:00
     Date (last write): 27.02.2009 12:07:26
              Filesize:              75128
            Attributes:           archive 
                   MD5: 5CF6190CD875DA6B35256FEE573E7908
                 CRC32:           764BA81B
               Version:          9.1.0.163
    
    {5C255C8A-E604-49b4-9D64-90988571CECB} ()
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: 
            CLSID name: 
    
    {72853161-30C5-4D22-B7F9-0BBC1D38A37E} (Groove GFS Browser Helper)
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: 
            CLSID name: Groove GFS Browser Helper
                  Path: D:\Microsoft Office\Office12\
             Long name: GrooveShellExtensions.dll
            Short name:       GRA8E1~1.DLL
        Date (created): 12.02.2009 15:19:32
    Date (last access): 23.09.2009 20:01:38
     Date (last write): 12.02.2009 15:19:32
              Filesize:            2217848
            Attributes:           archive 
                   MD5: A6B5A41C0ED007AB6C43CAD899E533D8
                 CRC32:           BA078F79
               Version:     12.0.6421.1000
    
    {9030D464-4C02-4ABF-8ECC-5164760863C6} (Windows Live Anmelde-Hilfsprogramm)
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: 
            CLSID name: Windows Live Anmelde-Hilfsprogramm
                  Path: C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\
             Long name: WindowsLiveLogin.dll
            Short name:       WINDOW~1.DLL
        Date (created): 22.01.2009 15:41:30
    Date (last access): 20.09.2009 18:45:28
     Date (last write): 22.01.2009 15:41:30
              Filesize:             408448
            Attributes:           archive 
                   MD5: B7899C3E21B299D7A3C0DA96CAE340BD
                 CRC32:           288935F8
               Version:          5.0.818.5
    
    
    
    --- ActiveX list ---
    {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
              DPF name: 
            CLSID name: Shockwave Flash Object
             Installer: C:\Windows\Downloaded Program Files\swflash.inf
              Codebase: http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
           description: Macromedia Shockwave Flash Player
        classification: Legitimate
        known filename: 
             info link: 
           info source: Patrick M. Kolla
                  Path: C:\Windows\SysWow64\Macromed\Flash\
             Long name:       Flash10c.ocx
            Short name:                   
        Date (created): 18.07.2009 05:12:12
    Date (last access): 19.09.2009 13:11:32
     Date (last write): 18.07.2009 05:12:12
              Filesize:            3979680
            Attributes:  readonly archive 
                   MD5: 43C6ACDFB92A18C3E516E6BD5F1ACD51
                 CRC32:           D6F40D46
               Version:         10.0.32.18
    
    {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package)
              DPF name: 
            CLSID name: Creative Software AutoUpdate Support Package
             Installer: C:\Windows\Downloaded Program Files\CTPID.inf
              Codebase: http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15108/CTPID.cab
           description: 
        classification: Legitimate
        known filename: CTPID.ocx
             info link: 
           info source: Safer Networking Ltd.
                  Path: C:\PROGRA~2\Creative\SHARED~1\SOFTWA~1\
             Long name:          CTPID.ocx
            Short name:                   
        Date (created): 30.04.2009 17:11:10
    Date (last access): 30.04.2009 17:11:10
     Date (last write): 30.04.2009 17:11:10
              Filesize:              37624
            Attributes:           archive 
                   MD5: D286CCE304342A5E5A728C2971602CC9
                 CRC32:           FF2000BD
               Version:           1.0.51.0
    
    
    
    --- Process list ---
    PID:    0 (   0) [System]
    PID: 1524 (1616) C:\Program Files (x86)\Lexmark X1100 Series\LXBKbmgr.exe
     size: 74408
      MD5: 88729B2B27D9F6867A42653C9E9B00B6
    PID: 1520 (1616) D:\Steam\Steam.exe
     size: 1217784
      MD5: 380D05F01453CC20B02A58B112B3B9B3
    PID: 2128 (1616) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
     size: 3883840
      MD5: 8F4CD393FF165E8952D2D0AE3CF25C79
    PID: 2208 (2136) C:\Avast\ashDisp.exe
     size: 81000
      MD5: 4EADA484E5F7E04CDEEF95030DA4B05C
    PID: 2228 (2136) C:\Windows\SysWOW64\rundll32.exe
     size: 44544
      MD5: 4B555106290BD117334E9A08761C035A
    PID: 2240 (2136) C:\Razer Krait\razerhid.exe
     size: 126976
      MD5: 6879C57D495AD84C5AC381B656C85E94
    PID: 2456 (1524) C:\Program Files (x86)\Lexmark X1100 Series\lxbkbmon.exe
     size: 58024
      MD5: 3ED807BB993D00C38836CCBC4DFE9EA6
    PID: 3040 (2240) C:\Razer Krait\razertra.exe
     size: 114688
      MD5: 20BAB56610E7D97849DA71159886EEBC
    PID: 2612 (2240) C:\Razer Krait\razerofa.exe
     size: 143360
      MD5: C7EE25F458BDE288DE12B33AD4219A4E
    PID: 1180 ( 756) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
     size: 27512
      MD5: 654480EA67078C7B4C6C8BA871B07D5D
    PID: 4556 (3360) C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
     size: 5365592
      MD5: 0477C2F9171599CA5BC3307FDFBA8D89
    PID: 4748 (3396) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
     size: 2260480
      MD5: 390679F7A217A5E73D756276C40AE887
    PID:    4 (   0) System
    PID:  396 (   4) smss.exe
    PID:  464 ( 452) csrss.exe
    PID:  516 ( 452) wininit.exe
     size: 96768
    PID:  536 ( 524) csrss.exe
    PID:  572 ( 516) services.exe
     size: 279040
    PID:  584 ( 516) lsass.exe
    PID:  592 ( 516) lsm.exe
     size: 229888
    PID:  756 ( 572) svchost.exe
     size: 21504
    PID:  788 ( 524) winlogon.exe
     size: 314880
    PID:  860 ( 572) nvvsvc.exe
    PID:  892 ( 572) svchost.exe
     size: 21504
    PID:  944 ( 572) svchost.exe
     size: 21504
    PID: 1020 ( 572) svchost.exe
     size: 21504
    PID:  316 ( 572) svchost.exe
     size: 21504
    PID:  344 ( 572) svchost.exe
     size: 21504
    PID:  540 (1020) audiodg.exe
     size: 88064
    PID:  616 ( 572) svchost.exe
     size: 21504
    PID:  408 ( 572) SLsvc.exe
    PID: 1068 ( 572) svchost.exe
     size: 21504
    PID: 1192 ( 572) svchost.exe
     size: 21504
    PID: 1212 ( 860) nvvsvc.exe
    PID: 1296 ( 572) aswUpdSv.exe
    PID: 1360 ( 572) ashServ.exe
    PID: 1580 ( 316) C:\Windows\System32\dwm.exe
    PID: 1616 (1560) C:\Windows\explorer.exe
     size: 3080704
      MD5: BBD8E74F23D7605CB0CDB57A1B25D826
    PID: 1876 ( 572) spoolsv.exe
    PID: 1900 ( 572) svchost.exe
     size: 21504
    PID: 1908 ( 344) C:\Windows\System32\taskeng.exe
     size: 169472
      MD5: 5F109032CE46B7184ED9E50F9FE8489E
    PID: 1056 ( 344) taskeng.exe
     size: 169472
    PID: 1332 (1616) C:\Program Files\Windows Defender\MSASCui.exe
     size: 1584184
      MD5: 48DD40677817CE1053C2315F5A87E0D3
    PID: 2840 ( 572) lxbkcoms.exe
     size: 537256
    PID: 3012 ( 572) svchost.exe
     size: 21504
    PID: 3028 ( 572) nvSCPAPISvr.exe
    PID: 1040 ( 572) svchost.exe
     size: 21504
    PID: 2176 ( 572) Guard.exe
    PID: 1444 ( 572) usbctl.exe
     size: 64000
    PID: 1164 ( 572) svchost.exe
     size: 21504
    PID: 2372 ( 572) ashMaiSv.exe
    PID: 2408 ( 572) ashWebSv.exe
    PID: 3548 ( 572) SteamService.exe
    PID: 3640 ( 756) WmiPrvSE.exe
    PID: 3684 ( 756) unsecapp.exe
    PID: 3792 ( 756) WmiPrvSE.exe
    PID: 4588 (4564) C:\Windows\splwow64.exe
     size: 39936
      MD5: 3D85663DB8A364B5A20ECD588CF4C870
    PID: 1428 ( 572) VSSVC.exe
    PID: 4068 ( 572) svchost.exe
     size: 21504
    PID: 3948 ( 788) C:\Windows\System32\taskmgr.exe
     size: 163840
      MD5: EF8AE178FAE3C5F97E383753EB1DF3BA
    PID: 3696 ( 572) msiexec.exe
     size: 71680
    PID: 4780 ( 572) SearchIndexer.exe
     size: 439808
    PID: 4224 ( 572) TrustedInstaller.exe
    PID: 3356 (4780) SearchProtocolHost.exe
     size: 184832
    PID: 4864 (4780) C:\Windows\System32\SearchFilterHost.exe
     size: 87552
      MD5: 87889A983C015080FA813D7E32910D1E
    
    
    --- Browser start & search pages list ---
    Spybot - Search & Destroy browser pages report, 24.09.2009 20:16:15
    
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\Windows\system32\blank.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
      http://go.microsoft.com/fwlink/?LinkId=54896
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
      http://go.microsoft.com/fwlink/?LinkId=69157
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\Windows\SysWOW64\blank.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
      http://go.microsoft.com/fwlink/?LinkId=54896
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
      http://go.microsoft.com/fwlink/?LinkId=69157
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
      http://go.microsoft.com/fwlink/?LinkId=69157
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
      http://go.microsoft.com/fwlink/?LinkId=54896
    
    
    --- Winsock Layered Service Provider list ---
    Namespace Provider  1: E-Mail-Namenshimanbieter
            GUID: {964ACBA2-B2BC-40EB-8C6A-A6DB40161CAE}
        Filename: 
    
    Namespace Provider  2: PNRP-Wolken-Namespaceanbieter
            GUID: {03FE89CE-766D-4976-B9C1-BB9BC42C7B4D}
        Filename: 
    
    Namespace Provider  3: PNRP-Namen-Namespaceanbieter
            GUID: {03FE89CD-766D-4976-B9C1-BB9BC42C7B4D}
        Filename: 
    
    
    
    --- Uninstall list ---
      (AddressBook)
    
    Adobe Flash Player 10 ActiveX 10.0.32.18 (Adobe Flash Player ActiveX)
       uninstall cmd: C:\Windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe
           publisher: Adobe Systems Incorporated
           help link: http://www.adobe.com/go/flashplayer_support/
    
    Adobe Flash Player 10 Plugin 10.0.32.18 (Adobe Flash Player Plugin)
       uninstall cmd: C:\Windows\SysWOW64\Macromed\Flash\uninstall_plugin.exe
           publisher: Adobe Systems Incorporated
    
    aonFlex  (aonFlex)
    install location: C:\PROGRA~2\aon\aonFlex
       uninstall cmd: "C:\ProgramData\{400125FA-352E-476D-9501-ECDBDA45C27C}\Setup.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://kundenbereich.aon.at
    
    aonFlex Installation  (aonFlex Installation)
    install location: C:\Program Files (x86)\aon\aonFlex_installer
       uninstall cmd: "C:\ProgramData\{69C172F6-1B92-4438-B0B4-527F81384E8D}\A1_MainInstaller.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://kundenbereich.aon.at
    
    aonUpdate  (aonUpdate)
    install location: C:\Program Files (x86)\aon\aonUpdate
       uninstall cmd: "C:\ProgramData\{C3358ED5-0ADD-4BA0-8F60-B5A7CD34BD14}\setup.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://www.aon.at
    
     1.00 (AudELSvc)
    install location: C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\AudELSvc
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9  /remove
           publisher: Creative Technology Limited
    
    Creative Audio-Systemsteuerung 2.56 (AudioCS)
    install location: C:\Program Files (x86)\Creative\AudioCS
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
    avast! Antivirus 4.8 (avast!)
     version (major): 4
     version (minor): 8
    install location: C:\Avast
      install source: C:\Users\Sherkas\DOWNLO~1
       uninstall cmd: C:\Avast\aswRunDll.exe "C:\Avast\Setup\setiface.dll",RunSetup
           publisher: Alwil Software
           help link: http://www.avast.at
    
     2.30 (CADI)
    install location: C:\Program Files (x86)\Creative\ShareDLL\CADI
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
    CCleaner (remove only)  (CCleaner)
       uninstall cmd: "C:\CCleaner\uninst.exe"
           publisher: Piriform
    
      (Connection Manager)
    
    Controller  (Controller)
    install location: C:\Program Files (x86)\aon\aonController
       uninstall cmd: "C:\ProgramData\{8AF9D3CF-B9B5-4F8E-B47F-D26DF984D190}\Setup.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://kundenbereich.aon.at
    
    Creative Software AutoUpdate 1.40 (Creative Software AutoUpdate)
    install location: C:\Program Files (x86)\Creative\Shared Files\Software Update
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
    Creative Sound Blaster Properties x64 Edition  (Creative Sound Blaster Properties x64 Edition)
       uninstall cmd: "C:\Program Files (x86)\Creative Installation Information\SBCONTROL64\Setup.exe" /remove /l0x0007
    
      (DirectDrawEx)
    
    Microsoft Office Enterprise 2007 12.0.6425.1000 (ENTERPRISE)
    install location: D:\Microsoft Office
       uninstall cmd: "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
           publisher: Microsoft Corporation
    
    EVEREST Ultimate Edition v5.02 5.02 (EVEREST Ultimate Edition_is1)
    install location: C:\EVEREST\
       uninstall cmd: "C:\EVEREST\unins000.exe"
           publisher: Lavalys, Inc.
           help link: http://www.lavalys.com
    
      (Fontcore)
    
    Free PDF to Word Doc Converter v1.1 1.1 (Free PDF to Word Doc Converter_is1)
        install date: 20090920
    install location: D:\PDF to Word\
       uninstall cmd: "D:\PDF to Word\unins000.exe"
           publisher: www.hellopdf.com
           help link: http://www.hellopdf.com/faq.php
    
    Heroes of Might and Magic® III Complete  (Heroes of Might and Magic® III)
       uninstall cmd: C:\Windows\IsUninst.exe -f"D:\Heroes of Might and Magic Complete\Heroes of Might and Magic® III.isu" -c"C:\Program Files (x86)\Common Files\3DO Shared\3DOUnInst.dll
    
    HijackThis 2.0.2 2.0.2 (HijackThis)
       uninstall cmd: "C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe" /uninstall
           publisher: TrendMicro
    
     1.00 (Host OpenAL)
    install location: C:\Windows\system32\
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{AAEF329E-F353-46C9-933D-24A571986093}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
      (IE40)
    
      (IE4Data)
    
      (IE5BAKEX)
    
      (IEData)
    
    Miranda IM 0.8.6  (Miranda IM)
       uninstall cmd: C:\Miranda IM\Uninstall.exe
    
      (MobileOptionPack)
    
    Mozilla Firefox (3.5.3) 3.5.3 (de) (Mozilla Firefox (3.5.3))
    install location: D:\FireFox
       uninstall cmd: D:\FireFox\uninstall\helper.exe
           publisher: Mozilla
            comments: Mozilla Firefox
    
    NVIDIA Stereoscopic 3D Driver 7.16.11.9062 (NVIDIAStereo)
    install location: C:\Program Files (x86)\NVIDIA Corporation\3D Vision
       uninstall cmd: "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
           publisher: NVIDIA Corporation
    
    Microsoft Office Language Pack 2007 - German/Deutsch 12.0.6425.1000 (OMUI.de-de)
    install location: D:\Microsoft Office
       uninstall cmd: "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall OMUI.DE-DE /dll OSETUP.DLL
           publisher: Microsoft Corporation
    
    OpenAL  (OpenAL)
       uninstall cmd: "C:\Program Files (x86)\OpenAL\MSI80A5.tmp" /U
    
      (SchedulingAgent)
    
    Half-Life 2  (Steam App 220)
    install location: d:\steam\steamapps\gerriaut\half-life 2
       uninstall cmd: "D:\Steam\steam.exe" steam://uninstall/220
           publisher: Valve
           help link: http://support.steampowered.com/
    
    Day of Defeat: Source  (Steam App 300)
    install location: d:\steam\steamapps\gerriaut\day of defeat source
       uninstall cmd: "D:\Steam\steam.exe" steam://uninstall/300
           publisher: Valve
           help link: http://support.steampowered.com/
    
    Unlocker 1.8.7 1.8.7 (Unlocker)
       uninstall cmd: C:\Program Files (x86)\Unlocker\uninst.exe
           publisher: Cedrick Collomb
    
    µTorrent 1.8.4 (uTorrent)
    install location: C:\Program Files (x86)\uTorrent
       uninstall cmd: "C:\Program Files (x86)\uTorrent\uTorrent.exe" /UNINSTALL
    
    Venetica  (Venetica_is1)
        install date: 20090920
    install location: D:\Venetica\
       uninstall cmd: "D:\Venetica\unins000.exe"
           publisher: dtp
    
      (WIC)
    
    Windows Live Essentials 14.0.8089.0726 (WinLiveSuite_Wave3)
    install location: C:\Program Files (x86)\Windows Live\
       uninstall cmd: C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
           publisher: Microsoft Corporation
    
    Steam 1.0.0.0 ({048298C9-A4D3-490B-9FF9-AB023A9238F3})
             version: 16777216
     version (major): 1
      estimated size: 1526
        install date: 20090919
      install source: C:\Users\Sherkas\Downloads\
       uninstall cmd: MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
           publisher: Valve Corporation
            comments: Steam
           help link: http://support.steampowered.com/
    
     2.56 ({17E96A7F-AFE3-4171-87B1-583E376319E8})
             version: 37224448
    install location: C:\Program Files (x86)\Creative\AudioCS
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    aonUpdate 1.0 ({1ED31028-6D65-4CFD-AD03-8E484A052FE7})
             version: 16777216
     version (major): 1
      estimated size: 4168
        install date: 20090921
    install location: C:\Program Files (x86)\aon\aonUpdate
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia3\
       uninstall cmd: C:\ProgramData\{C3358ED5-0ADD-4BA0-8F60-B5A7CD34BD14}\setup.exe
           publisher: Telekom Austria TA AG
    
    Windows Live-Uploadtool 14.0.8014.1029 ({205C6BDD-7B73-42DE-8505-9A093F35A238})
             version: 234889038
     version (major): 14
      estimated size: 225
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\687e0b971ca3a11\
       uninstall cmd: MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
           publisher: Microsoft Corporation
           help link: http://go.microsoft.com/fwlink/?LinkId=118310
    
    MSVCRT 14.0.1468.721 ({22B775E7-6C42-4FC5-8E10-9A5E3257BD94})
             version: 234882492
     version (major): 14
      estimated size: 1856
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\5c9a5fe71ca3a11\
       uninstall cmd: MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
           publisher: Microsoft
    
    Gigabyte Raid Configurer 1.00.0000 ({3A1B5D40-41E9-43FA-8C7B-A8667F5586EF})
             version: 16777216
        install date: 20090919
    install location: C:\Program Files (x86)\Gigabyte Technology Corp.\Gigabyte Raid Configurer
      install source: C:\Users\Sherkas\Downloads\GSATA\
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x7  -removeonly
           publisher: Gigabyte Technology Corp.
    
    Autostart-Manager 2006 6.00.0000 ({3B11379A-9196-4228-981A-BB255E13109E})
             version: 100663296
     version (major): 6
      estimated size: 784
        install date: 20090922
    install location: C:\Program Files (x86)\Tools&More\Autostart-Manager\
      install source: C:\Windows\Downloaded Installations\{28D12382-C297-42B6-AF6F-039A4D297EBD}\
       uninstall cmd: MsiExec.exe /I{3B11379A-9196-4228-981A-BB255E13109E}
           publisher: Wirth New Media Sarl
    
    Windows Live Communications Platform 14.0.8064.206 ({3B4E636E-9D65-4D67-BA61-189800823F52})
             version: 234889088
     version (major): 14
      estimated size: 1945
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\60effe671ca3a11\
       uninstall cmd: MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
           publisher: Microsoft Corporation
    
    Windows Live Messenger 14.0.8089.0726 ({41E654A9-26D0-4EAC-854B-0FA824FFFABB})
             version: 234889113
     version (major): 14
      estimated size: 40155
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\ac4804c71ca3a11\
       uninstall cmd: MsiExec.exe /X{41E654A9-26D0-4EAC-854B-0FA824FFFABB}
           publisher: Microsoft Corporation
    
    Nation Red 1.05.0000 ({43757761-174D-4835-AB38-0422F5F050C6})
             version: 17104896
     version (major): 1
     version (minor): 5
      estimated size: 493640
        install date: 20090920
    install location: E:\NationRed\
      install source: C:\Users\Sherkas\AppData\Local\Temp\miaD125.tmp\
       uninstall cmd: MsiExec.exe /I{43757761-174D-4835-AB38-0422F5F050C6}
           publisher: KaosKontrol, Inc.
             contact: Technical Support
           help link: www.diezelpower.com
    
    Windows Live Anmelde-Assistent 5.000.818.5 ({52B97218-98CB-4B8B-9283-D213C85E1AA4})
             version: 83886898
     version (major): 5
      estimated size: 1981
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\6ca631771ca3a11\
       uninstall cmd: MsiExec.exe /I{52B97218-98CB-4B8B-9283-D213C85E1AA4}
           publisher: Microsoft Corporation
    
      ({582876EC-A178-44D4-9823-C10D6C62EAFF})
       uninstall cmd: MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
    
    Windows Live Call 14.0.8064.0206 ({5FC68772-6D56-41C6-9DF1-24E868198AE6})
             version: 234889088
     version (major): 14
      estimated size: 1663
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\651f50371ca3a11\
       uninstall cmd: MsiExec.exe /I{5FC68772-6D56-41C6-9DF1-24E868198AE6}
           publisher: Microsoft Corporation
    
     2.30 ({700932B3-A964-4878-82A2-96054622A1F7})
             version: 35520512
    install location: C:\Program Files (x86)\Creative\ShareDLL\CADI
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    Realtek 8136 8168 8169 Ethernet Driver 1.00.0007 ({8833FFB6-5B0C-4764-81AA-06DFEED9A476})
             version: 16777223
        install date: 20090919
    install location: C:\Program Files (x86)\Realtek\VISTA_8169
      install source: C:\Users\Sherkas\Downloads\lan_Vista\
       uninstall cmd: C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
           publisher: Realtek
    
     1.40 ({88B1984E-36F0-47B8-B8DC-728966807A9C})
             version: 19398656
    install location: C:\Program Files (x86)\Creative\Shared Files\Software Update
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    Microsoft Office Access MUI (German) 2007 12.0.6425.1000 ({90120000-0015-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 33096
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0015-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0015-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0015-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0015-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Access MUI (English) 2007 12.0.6425.1000 ({90120000-0015-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 72184
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0117-0409-0000-0000000FF1CE}-D\Access.en-us\
       uninstall cmd: MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Access 2007 Help (KB963663)  ({90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{6B76A18A-AA1E-42AB-A7AD-6C84BBB43987})
       uninstall cmd: msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963663
    
    Microsoft Office Excel MUI (German) 2007 12.0.6425.1000 ({90120000-0016-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 47924
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0016-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0016-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update für Microsoft Office Excel 2007 Help (KB963678)  ({90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF})
       uninstall cmd: msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963678
    
    Microsoft Office Excel MUI (English) 2007 12.0.6425.1000 ({90120000-0016-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 35464
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0016-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office Excel 2007 Help (KB963678)  ({90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{199DF7B6-169C-448C-B511-1054101BE9C9})
       uninstall cmd: msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963678
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office SharePoint Designer MUI (German) 2007 12.0.6425.1000 ({90120000-0017-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 29309
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0017-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0017-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)  ({90120000-0017-0407-0000-0000000FF1CE}_OMUI.de-de_{0B9EAEAC-F271-45DC-BDCB-06ABEEF19825})
       uninstall cmd: msiexec /package {90120000-0017-0407-0000-0000000FF1CE} /uninstall {0B9EAEAC-F271-45DC-BDCB-06ABEEF19825}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office PowerPoint MUI (German) 2007 12.0.6425.1000 ({90120000-0018-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 23233
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0018-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0018-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0018-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update für Microsoft Office Powerpoint 2007 Help (KB963669)  ({90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96})
       uninstall cmd: msiexec /package {90120000-0018-0407-0000-0000000FF1CE} /uninstall {EA160DA3-E9B5-4D03-A518-21D306665B96}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963669
    
    Microsoft Office PowerPoint MUI (English) 2007 12.0.6425.1000 ({90120000-0018-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 30337
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0018-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Powerpoint 2007 Help (KB963669)  ({90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{397B1D4F-ED7B-4ACA-A637-43B670843876})
       uninstall cmd: msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963669
    
    Microsoft Office Publisher MUI (German) 2007 12.0.6425.1000 ({90120000-0019-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 25106
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0019-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0019-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0019-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0019-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Publisher MUI (English) 2007 12.0.6425.1000 ({90120000-0019-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 33742
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0019-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office Publisher 2007 Help (KB963667)  ({90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2E40DE55-B289-4C8B-8901-5D369B16814F})
       uninstall cmd: msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963667
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Outlook MUI (German) 2007 12.0.6425.1000 ({90120000-001A-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 34616
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001A-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001A-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update für Microsoft Office Outlook 2007 Help (KB963677)  ({90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30})
       uninstall cmd: msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {F6828576-6F79-470D-AB50-69D1BBADBD30}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963677
    
    Microsoft Office Outlook MUI (English) 2007 12.0.6425.1000 ({90120000-001A-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 40740
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001A-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office Outlook 2007 Help (KB963677)  ({90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{0451F231-E3E3-4943-AB9F-58EB96171784})
       uninstall cmd: msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963677
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Word MUI (German) 2007 12.0.6425.1000 ({90120000-001B-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 27885
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001B-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001B-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update für Microsoft Office Word 2007 Help (KB963665)  ({90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1})
       uninstall cmd: msiexec /package {90120000-001B-0407-0000-0000000FF1CE} /uninstall {38472199-D7B6-4833-A949-10E4EE6365A1}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963665
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-001B-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Word MUI (English) 2007 12.0.6425.1000 ({90120000-001B-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 33737
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001B-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Word 2007 Help (KB963665)  ({90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{80E762AA-C921-4839-9D7D-DB62A72C0726})
       uninstall cmd: msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963665
    
    Microsoft Office Proof (German) 2007 12.0.6425.1000 ({90120000-001F-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 58985
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0407-0000-0000000FF1CE}-D\Proof.de\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0407-0000-0000000FF1CE}_OMUI.de-de_{A0516415-ED61-419A-981D-93596DA74165})
       uninstall cmd: msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (English) 2007 12.0.6425.1000 ({90120000-001F-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 60887
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\Proof.en\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045})
       uninstall cmd: msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0409-0000-0000000FF1CE}_OMUI.de-de_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045})
       uninstall cmd: msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (French) 2007 12.0.6425.1000 ({90120000-001F-040C-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 24672
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\Proof.fr\
       uninstall cmd: MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787})
       uninstall cmd: msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-040C-0000-0000000FF1CE}_OMUI.de-de_{F580DDD5-8D37-4998-968E-EBB76BB86787})
       uninstall cmd: msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (Italian) 2007 12.0.6425.1000 ({90120000-001F-0410-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 22143
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0407-0000-0000000FF1CE}-D\Proof.it\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0410-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0410-0000-0000000FF1CE}_OMUI.de-de_{322296D4-1EAE-4030-9FBC-D2787EB25FA2})
       uninstall cmd: msiexec /package {90120000-001F-0410-0000-0000000FF1CE} /uninstall {322296D4-1EAE-4030-9FBC-D2787EB25FA2}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (Spanish) 2007 12.0.6425.1000 ({90120000-001F-0C0A-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 45901
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\Proof.es\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9})
       uninstall cmd: msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192})
       uninstall cmd: msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {E64BA721-2310-4B55-BE5A-2925F9706192}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-002A-0407-1000-0000000FF1CE}_OMUI.de-de_{26454C26-D259-4543-AA60-3189E09C5F76})
       uninstall cmd: msiexec /package {90120000-002A-0407-1000-0000000FF1CE} /uninstall {26454C26-D259-4543-AA60-3189E09C5F76}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-002A-0409-1000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-002A-0409-1000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proofing (German) 2007 12.0.4518.1014 ({90120000-002C-0407-0000-0000000FF1CE})
             version: 201331110
     version (major): 12
      estimated size: 498
        install date: 20090920
    install location: D:\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-002C-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing (English) 2007 12.0.4518.1014 ({90120000-002C-0409-0000-0000000FF1CE})
             version: 201331110
     version (major): 12
      estimated size: 506
        install date: 20090920
    install location: D:\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Enterprise 2007 12.0.6425.1000 ({90120000-0030-0000-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 1008231
        install date: 20090924
    install location: D:\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Outlook 2007 Junk Email Filter (kb973514)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{03B11C77-336F-43B4-9B43-79890BA84504})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {03B11C77-336F-43B4-9B43-79890BA84504}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/973514
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Security Update for Microsoft Office system 2007 (KB969613)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969613
    
    Security Update for 2007 Microsoft Office System (KB969559)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969559
    
    Update for Microsoft Office Outlook 2007 (KB969907)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{74F98B24-AFBD-4800-9BD6-87D349B5C462})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {74F98B24-AFBD-4800-9BD6-87D349B5C462}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969907
    
    Security Update for Microsoft Office PowerPoint 2007 (KB957789)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7559E742-FF9F-4FAE-B279-008ED296CB4D})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/957789
    
    Security Update for Microsoft Office Publisher 2007 (KB969693)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7BE67088-1EB3-4569-8E75-DDAFBF61BC4E})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969693
    
    Security Update for Microsoft Office Excel 2007 (KB969682)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C03803BD-745A-46F8-8557-817DED578780})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C03803BD-745A-46F8-8557-817DED578780}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969682
    
    Update for 2007 Microsoft Office System (KB967642)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/967642
    
    Security Update for 2007 Microsoft Office System (KB969679)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C66E4A6C-6E07-4C63-8CCD-2493B5087C73})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C66E4A6C-6E07-4C63-8CCD-2493B5087C73}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969679
    
    Security Update for Microsoft Office Word 2007 (KB969604)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CF3D6499-709C-43D0-8908-BC5652656050})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969604
    
    Microsoft Office InfoPath MUI (German) 2007 12.0.6425.1000 ({90120000-0044-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 8943
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0044-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0044-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0044-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0044-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office InfoPath MUI (English) 2007 12.0.6425.1000 ({90120000-0044-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 18098
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0044-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Infopath 2007 Help (KB963662)  ({90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{716B81B8-B13C-41DF-8EAC-7A2F656CAB63})
       uninstall cmd: msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {716B81B8-B13C-41DF-8EAC-7A2F656CAB63}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963662
    
    Microsoft Office Shared MUI (German) 2007 12.0.6425.1000 ({90120000-006E-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 38718
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-006E-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-006E-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-006E-0407-0000-0000000FF1CE}_OMUI.de-de_{26454C26-D259-4543-AA60-3189E09C5F76})
       uninstall cmd: msiexec /package {90120000-006E-0407-0000-0000000FF1CE} /uninstall {26454C26-D259-4543-AA60-3189E09C5F76}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Shared MUI (English) 2007 12.0.6425.1000 ({90120000-006E-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 42370
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office 2007 Help for Common Features (KB963673)  ({90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{AB365889-0395-4FAD-B702-CA5985D53D42})
       uninstall cmd: msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963673
    
    Update for Microsoft Office Script Editor Help (KB963671)  ({90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{CD11C6A2-FFC6-4271-8EAB-79C3582F505C})
       uninstall cmd: msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963671
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office OneNote MUI (German) 2007 12.0.6425.1000 ({90120000-00A1-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 36114
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-00A1-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-00A1-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00A1-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-00A1-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office OneNote MUI (English) 2007 12.0.6425.1000 ({90120000-00A1-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 39722
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-00A1-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office OneNote 2007 Help (KB963670)  ({90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2744EF05-38E1-4D5D-B333-E021EDAEA245})
       uninstall cmd: msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2744EF05-38E1-4D5D-B333-E021EDAEA245}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963670
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Groove MUI (German) 2007 12.0.6425.1000 ({90120000-00BA-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 4434
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-00BA-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-00BA-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00BA-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-00BA-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Groove MUI (English) 2007 12.0.6425.1000 ({90120000-00BA-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 3566
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0114-0409-0000-0000000FF1CE}-D\Groove.en-us\
       uninstall cmd: MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office O MUI (German) 2007 12.0.6425.1000 ({90120000-0100-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 7053
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0100-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0100-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0100-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office X MUI (German) 2007 12.0.6425.1000 ({90120000-0101-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 506
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0101-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0101-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0101-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0101-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Groove Setup Metadata MUI (English) 2007 12.0.6425.1000 ({90120000-0114-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 502
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0114-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Shared Setup Metadata MUI (English) 2007 12.0.6425.1000 ({90120000-0115-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 502
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0116-0409-1000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-0116-0409-1000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Access Setup Metadata MUI (English) 2007 12.0.6425.1000 ({90120000-0117-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 502
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0117-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Controller 2.7 ({904B64C4-49D8-4941-A2B6-D13D06C5CD8B})
             version: 34013184
     version (major): 2
     version (minor): 7
      estimated size: 35855
        install date: 20090921
    install location: C:\Program Files (x86)\aon\aonController
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia2\
       uninstall cmd: C:\ProgramData\{8AF9D3CF-B9B5-4F8E-B47F-D26DF984D190}\Setup.exe
           publisher: Telekom Austria TA AG
    
     1.00 ({AAEF329E-F353-46C9-933D-24A571986093})
             version: 16777216
    install location: C:\Windows\system32\
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{AAEF329E-F353-46C9-933D-24A571986093}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    Adobe Reader 9.1.3 - Deutsch 9.1.3 ({AC76BA86-7AD7-1031-7B44-A91000000001})
             version: 151060483
     version (major): 9
     version (minor): 1
      estimated size: 246224
        install date: 20090920
      install source: C:\Users\Sherkas\AppData\Local\Adobe\Reader 9.1\Setup Files\
       uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1031-7B44-A91000000001}
           publisher: Adobe Systems Incorporated
            comments:    
             contact: Kundendienst
           help link: http://www.adobe.de/support/main.html
              readme: C:\AdobeReader 9.0\Liesmich.htm
    
    Spybot - Search & Destroy 1.6.2 ({B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1)
        install date: 20090924
    install location: C:\Program Files (x86)\Spybot - Search & Destroy\
       uninstall cmd: "C:\Program Files (x86)\Spybot - Search & Destroy\unins000.exe"
           publisher: Safer Networking Limited
           help link: http://www.safer-networking.org/index.php?page=support
    
    NVIDIA PhysX 9.09.0814 ({C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B})
             version: 151585582
     version (major): 9
     version (minor): 9
      estimated size: 122956
        install date: 20090919
    install location: C:\Windows\TEMP\
      install source: C:\Program Files (x86)\Common Files\Wise Installation Wizard\
       uninstall cmd: MsiExec.exe /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
           publisher: NVIDIA Corporation
            comments: PhysX Driver & Engines: 2.3.1/2/3; 2.4.0/1/4; 2.5.0/1/2/3/4; 2.6.0/1/2/3/4; 2.7.0/1/2/3/4/5/6; 2.8.0/1
           help link: www.NVIDIA.com
    
     1.00 ({CC3D3A93-C433-4329-AC3A-7EFC52A332C2})
             version: 16777216
    install location: C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\AudELSvc
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 
           publisher: Creative Technology Limited
    
      ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB350003)
    
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) 1 ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595)
       uninstall cmd: C:\Windows\SysWOW64\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall  /qb+ REBOOTPROMPT=""
           publisher: Microsoft Corporation
            comments: This hotfix is for Microsoft .NET Framework 3.5 SP1.
    If you later install a more recent service pack, this hotfix will be uninstalled automatically.
    For more information, visit http://support.microsoft.com/kb/953595.
           help link: http://support.microsoft.com/kb/953595
    
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) 1 ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484)
       uninstall cmd: C:\Windows\SysWOW64\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {08155812-0202-4D5F-A7FF-12A2782DC548} /qb+ REBOOTPROMPT=""
           publisher: Microsoft Corporation
            comments: This hotfix is for Microsoft .NET Framework 3.5 SP1.
    If you later install a more recent service pack, this hotfix will be uninstalled automatically.
    For more information, visit http://support.microsoft.com/kb/958484.
           help link: http://support.microsoft.com/kb/958484
    
      ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB960043)
    
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707) 1 ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707)
       uninstall cmd: C:\Windows\SysWOW64\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
           publisher: Microsoft Corporation
            comments: This update is for Microsoft .NET Framework 3.5 SP1.
    If you later install a more recent service pack, this update will be uninstalled automatically.
    For more information, visit http://support.microsoft.com/kb/963707.
           help link: http://support.microsoft.com/kb/963707
    
    aonFlex 1.4 ({E14EF0C8-49F1-436A-8F82-D7E06C73C283})
             version: 17039360
     version (major): 1
     version (minor): 4
      estimated size: 5799
        install date: 20090921
    install location: C:\PROGRA~2\aon\aonFlex
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia2\
       uninstall cmd: C:\ProgramData\{400125FA-352E-476D-9501-ECDBDA45C27C}\Setup.exe
           publisher: Telekom Austria TA AG
    
    Razer Krait 5.01 ({E6DA58C0-4EC5-4F5E-B73E-2F22ED30ACFC})
             version: 83951616
        install date: 20090919
    install location: C:\Razer Krait
      install source: C:\Users\Sherkas\AppData\Local\Temp\Temp1_Krait_20070410_2.zip\Krait_20070410_2\20070410\
       uninstall cmd: C:\Program Files (x86)\InstallShield Installation Information\{E6DA58C0-4EC5-4F5E-B73E-2F22ED30ACFC}\~setup.exe -runfromtemp -l0x0009 -removeonly
           publisher:  Razer USA Ltd.
           help link: www.razerpro.com
    
    aonFlex Installation 1.4 ({E7943C25-4043-41B4-A688-8B1CF691A7F1})
             version: 17039360
     version (major): 1
     version (minor): 4
      estimated size: 13546
        install date: 20090921
    install location: C:\Program Files (x86)\aon\aonFlex_installer
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia2\
       uninstall cmd: C:\ProgramData\{69C172F6-1B92-4438-B0B4-527F81384E8D}\A1_MainInstaller.exe
           publisher: Telekom Austria TA AG
    
    Microsoft Choice Guard 2.0.48.0 ({F0E12BBA-AD66-4022-A453-A1C8A0C4D570})
             version: 33554480
     version (major): 2
      estimated size: 208
        install date: 20090920
    install location: C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Choice Guard\
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\73ecd5671ca3a11\
       uninstall cmd: MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
           publisher: Microsoft Corporation
    
    Windows Live Essentials 14.0.8089.726 ({F8FF18EE-264A-43FD-B2F6-5EAD40798C2F})
             version: 234889113
     version (major): 14
      estimated size: 1259
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\70b48dc71ca3a11\
       uninstall cmd: MsiExec.exe /I{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}
           publisher: Microsoft Corporation
           help link: http://support.live.com/
    
    
    
    --- System Services ---
    Service (registry key): .NET CLR Data
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NET CLR Networking
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NET Data Provider for Oracle
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NET Data Provider for SqlServer
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NETFramework
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): ACPI
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft ACPI-Treiber
        Image path: system32\drivers\acpi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): adp94xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adp94xx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adpahci
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adpahci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adpu160m
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adpu160m.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adpu320
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adpu320.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adsi
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): AeLookupSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\aelupsvc.dll,-1
       Description: @%SystemRoot%\system32\aelupsvc.dll,-2
       Object name: localSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): AFD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Ancilliary Function Driver for Winsock
       Description: Ancilliary Function Driver for Winsock
        Image path: \SystemRoot\system32\drivers\afd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): agp440
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel AGP Bus Filter
        Image path: \SystemRoot\system32\drivers\agp440.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): aic78xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\djsvs.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ALG
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\Alg.exe,-112
       Description: @%SystemRoot%\system32\Alg.exe,-113
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\alg.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): aliide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\aliide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): amdide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\amdide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): AmdK8
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: AMD K8 Processor Driver
        Image path: \SystemRoot\system32\drivers\amdk8.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Appinfo
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\appinfo.dll,-100
       Description: @%systemroot%\system32\appinfo.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,ProfSvc
    
    Service (registry key): arc
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\arc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): arcsas
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\arcsas.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): aswFsBlk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: aswFsBlk
       Description: avast! mini-filter driver (aswFsBlk)
        Image path: system32\DRIVERS\aswFsBlk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): aswMonFlt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: aswMonFlt
       Description: avast! mini-filter driver (aswMonFlt)
        Image path: system32\DRIVERS\aswMonFlt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): aswRdr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: aswRdr
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: tcpip
    
    Service (registry key): aswSP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Self Protection
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): aswTdi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Network Shield Support
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: tcpip
    
    Service (registry key): aswUpdSv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! iAVS4 Control Service
       Description: Bietet das automatische Update für avast! Antivirus.
       Object name: LocalSystem
        Image path: "C:\Avast\aswUpdSv.exe"
        Image size: 18752
         Image MD5: 5E692B54EC3D9C586417F9C5822CBEC9
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
    
    Service (registry key): AsyncMac
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32000
       Description: @%systemroot%\system32\rascfg.dll,-32000
        Image path: system32\DRIVERS\asyncmac.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): atapi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IDE-Kanal
        Image path: system32\drivers\atapi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): AudioEndpointBuilder
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\audiosrv.dll,-204
       Description: @%SystemRoot%\System32\audiosrv.dll,-205
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay
    
    Service (registry key): AudioSrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\audiosrv.dll,-200
       Description: @%SystemRoot%\System32\audiosrv.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: AudioEndpointBuilder,RpcSs,MMCSS
    
    Service (registry key): avast! Antivirus
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Antivirus
       Description: Verwaltet und implementiert avast! Antivirus Dienste für diesen Computer. Dies beinhaltet den residenten Schutz, den Virus-Container und den Timer.
       Object name: LocalSystem
        Image path: "C:\Avast\ashServ.exe"
        Image size: 138680
         Image MD5: 72C4BB55413D2D621BCC1DBF4074EB5D
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
     Depends On services: aswMonFlt,RpcSS
    
    Service (registry key): avast! Mail Scanner
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Mail Scanner
       Description: Implementiert Mailüberprüfung durch avast! antivirus.
       Object name: LocalSystem
        Image path: "C:\Avast\ashMaiSv.exe" /service
        Image size: 254040
         Image MD5: AEF50B1CEA979739EDE53C68556B95E5
       Control Set: CurrentControlSet
             Start: 3
              Type: 272
     Error Control: 1
     Depends On services: "avast! Antivirus"
    
    Service (registry key): avast! Web Scanner
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Web Scanner
       Description: Implementiert Internetüberprüfung (HTTP) durch avast! antivirus.
       Object name: LocalSystem
        Image path: "C:\Avast\ashWebSv.exe" /service
        Image size: 352920
         Image MD5: A62A0418BE5A5B8B0ECF3D8F73325113
       Control Set: CurrentControlSet
             Start: 3
              Type: 272
     Error Control: 1
     Depends On services: "avast! Antivirus"
    
    Service (registry key): BattC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): BFE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\bfe.dll,-1001
       Description: @%SystemRoot%\system32\bfe.dll,-1002
       Object name: NT AUTHORITY\LocalService
        Image path: %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): BITS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\qmgr.dll,-1000
       Description: @%SystemRoot%\system32\qmgr.dll,-1001
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,EventSystem
    
    Service (registry key): blbdrive
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\blbdrive.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): bowser
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Bowser
       Description: Implements the datagram receiver for the computer browser browser service.
        Image path: system32\DRIVERS\bowser.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): BrFiltLo
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother USB Mass-Storage Lower Filter Driver
        Image path: \SystemRoot\system32\drivers\brfiltlo.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): BrFiltUp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother USB Mass-Storage Upper Filter Driver
        Image path: \SystemRoot\system32\drivers\brfiltup.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Browser
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\browser.dll,-100
       Description: @%systemroot%\system32\browser.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: LanmanWorkstation,LanmanServer
    
    Service (registry key): Brserid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother MFC Serial Port Interface Driver (WDM)
        Image path: \SystemRoot\system32\drivers\brserid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): BrSerWdm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother WDM Serial driver
        Image path: \SystemRoot\system32\drivers\brserwdm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): BrUsbMdm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother MFC USB Fax Only Modem
        Image path: \SystemRoot\system32\drivers\brusbmdm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): BrUsbSer
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother MFC USB Serial WDM Driver
        Image path: \SystemRoot\system32\drivers\brusbser.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): BTHMODEM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Bluetooth Serial Communications Driver
        Image path: \SystemRoot\system32\drivers\bthmodem.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): cdfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: CD/DVD File System Reader
       Description: ISO9660/Joliet File System Reader for CD/DVDs. (Core) (All pieces)
        Image path: system32\DRIVERS\cdfs.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 2
     Error Control: 1
     Depends On group: "SCSI CDROM Class"
    
    Service (registry key): cdrom
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: CD-ROM-Laufwerktreiber
        Image path: system32\DRIVERS\cdrom.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): CertPropSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\certprop.dll,-11
       Description: @%SystemRoot%\System32\certprop.dll,-12
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): circlass
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Consumer IR Devices
        Image path: \SystemRoot\system32\drivers\circlass.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): CLFS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Common Log (CLFS)
       Description: Common Log (CLFS)
        Image path: System32\CLFS.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): clr_optimization_v2.0.50727_32
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft .NET Framework NGEN v2.0.50727_X86
       Description: Microsoft .NET Framework NGEN
       Object name: LocalSystem
        Image path: %systemroot%\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
        Image size: 69632
         Image MD5: D87ACAED61E417BBA546CED5E7E36D9C
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
    
    Service (registry key): clr_optimization_v2.0.50727_64
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft .NET Framework NGEN v2.0.50727_X64
       Description: Microsoft .NET Framework NGEN
       Object name: LocalSystem
        Image path: %systemroot%\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
        Image size: 93184
         Image MD5: FA58B51ED71C9133E141164EAA7C54EB
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
    
    Service (registry key): cmdide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\cmdide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): Compbatt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Composite Battery Driver
        Image path: \SystemRoot\system32\drivers\compbatt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): COMSysApp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-947
       Description: @comres.dll,-948
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
        Image size: 7168
         Image MD5: BE01E566D1F569AAB32D0335613E1EEA
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,EventSystem,SENS
    
    Service (registry key): crcdisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Crcdisk Filter Driver
        Image path: system32\drivers\crcdisk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): Creative Audio Engine Licensing Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Creative Audio Engine Licensing Service
       Description: Provides licensing services for Creative Audio Engine.
       Object name: LocalSystem
        Image path: "C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe"
        Image size: 79360
         Image MD5: C0EAD9F8AB83D41FF07303C75589C2B8
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): crypt32
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): CryptSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\cryptsvc.dll,-1001
       Description: @%SystemRoot%\system32\cryptsvc.dll,-1002
       Object name: NT Authority\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): DCLocator
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): DcomLaunch
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @oleres.dll,-5012
       Description: @oleres.dll,-5013
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): DfsC
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\drivers\dfsc.sys,-101
       Description: @%systemroot%\system32\drivers\dfsc.sys,-102
        Image path: System32\Drivers\dfsc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
     Depends On services: Mup
    
    Service (registry key): DFSR
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @dfsrres.dll,-101
       Description: @dfsrres.dll,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\DFSR.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,EventSystem
    
    Service (registry key): Dhcp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\dhcpcsvc.dll,-100
       Description: @%SystemRoot%\system32\dhcpcsvc.dll,-101
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: NSI,Tdx,Afd
    
    Service (registry key): disk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Laufwerktreiber
        Image path: system32\drivers\disk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): Dnscache
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\dnsapi.dll,-101
       Description: @%SystemRoot%\System32\dnsapi.dll,-102
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: Tdx
    
    Service (registry key): dot3svc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\dot3svc.dll,-1102
       Description: @%systemroot%\system32\dot3svc.dll,-1103
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,Ndisuio,Eaphost
    
    Service (registry key): DPS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\dps.dll,-500
       Description: @%systemroot%\system32\dps.dll,-501
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): drmkaud
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Kernel-DRM-Audioentschlüsselung
        Image path: system32\drivers\drmkaud.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): DXGKrnl
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: LDDM Graphics Subsystem
       Description: Controls the underlying video driver stacks to provide fully-featured display capabilities.
        Image path: \SystemRoot\System32\drivers\dxgkrnl.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): E1G60
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel(R) PRO/1000 NDIS 6 Adapter Driver
        Image path: system32\DRIVERS\E1G6032E.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): EapHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\eapsvc.dll,-1
       Description: @%systemroot%\system32\eapsvc.dll,-2
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,KeyIso
    
    Service (registry key): Ecache
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ReadyBoost Caching Driver
       Description: ReadyBoost Caching Driver
        Image path: System32\drivers\ecache.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): ehRecvr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehrecvr.exe,-101
       Description: @%SystemRoot%\ehome\ehrecvr.exe,-102
       Object name: NT AUTHORITY\networkService
        Image path: %systemroot%\ehome\ehRecvr.exe
        Image size: 344064
         Image MD5: 14CE384D2E27B64C256BDA4DC39C312D
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): ehSched
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehsched.exe,-101
       Description: @%SystemRoot%\ehome\ehsched.exe,-102
       Object name: NT AUTHORITY\networkService
        Image path: %systemroot%\ehome\ehsched.exe
        Image size: 153600
         Image MD5: B93159C1313D66FDFBBE876F5189CD52
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): ehstart
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehstart.dll,-101
       Description: @%SystemRoot%\ehome\ehstart.dll,-102
       Object name: NT AUTHORITY\LocalService
        Image path: %windir%\system32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): elxstor
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\elxstor.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): EmdCache
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): EMDMgmt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\emdmgmt.dll,-1000
       Description: @%SystemRoot%\system32\emdmgmt.dll,-1001
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: rpcss,ecache,slsvc,fileinfo
    
    Service (registry key): ErrDev
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Hardware Error Device Driver
        Image path: \SystemRoot\system32\drivers\errdev.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ESENT
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Eventlog
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wevtsvc.dll,-200
       Description: @%SystemRoot%\system32\wevtsvc.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): EventSystem
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-2450
       Description: @comres.dll,-2451
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): exfat
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: exFAT File System Driver
       Description: exFAT File System Driver
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): fastfat
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: FAT12/16/32 File System Driver
       Description: Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): fdc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Floppy Disk Controller Driver
        Image path: system32\DRIVERS\fdc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): fdPHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\fdPHost.dll,-100
       Description: @%systemroot%\system32\fdPHost.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,http
    
    Service (registry key): FDResPub
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\fdrespub.dll,-100
       Description: @%systemroot%\system32\fdrespub.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,http
    
    Service (registry key): FileInfo
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: File Information FS MiniFilter
       Description: Collects information about files in memory to be consumed by other system services.
        Image path: system32\drivers\fileinfo.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 2
     Error Control: 1
     Depends On services: fltmgr
    
    Service (registry key): Filetrace
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: FileTrace
       Description: ETW File Trace Filter
        Image path: system32\drivers\filetrace.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): flpydisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Floppy Disk Driver
        Image path: system32\DRIVERS\flpydisk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): FltMgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: FltMgr
       Description: File System Filter Manager Driver
        Image path: system32\drivers\fltmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 2
     Error Control: 3
    
    Service (registry key): FontCache3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\PresentationHost.exe,-3309
       Description: @%SystemRoot%\system32\PresentationHost.exe,-3310
       Object name: NT Authority\LocalService
        Image path: %systemroot%\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
        Image size: 46104
         Image MD5: 73D0F1D32EDAE3DCC4E84468BF910ADD
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): Fs_Rec
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 8
     Error Control: 0
    
    Service (registry key): gagp30kx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms
        Image path: \SystemRoot\system32\drivers\gagp30kx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): gdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: gdrv
        Image path: \??\C:\Windows\gdrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): gpsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @gpapi.dll,-112
       Description: @gpapi.dll,-113
       Object name: LocalSystem
        Image path: %windir%\system32\svchost.exe -k GPSvcGroup
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RPCSS,Mup
    
    Service (registry key): HdAudAddService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft 1.1 UAA-Funktionstreiber für High Definition Audio-Dienst
        Image path: system32\drivers\HdAudio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): HDAudBus
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft-UAA-Bustreiber für High Definition Audio
        Image path: system32\DRIVERS\HDAudBus.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): HidBth
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Bluetooth HID Miniport
        Image path: \SystemRoot\system32\drivers\hidbth.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 0
    
    Service (registry key): HidIr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Infrared HID Driver
        Image path: \SystemRoot\system32\drivers\hidir.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 0
    
    Service (registry key): hidserv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\hidserv.dll,-101
       Description: @%SystemRoot%\System32\hidserv.dll,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): HidUsb
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft HID Class-Treiber
        Image path: system32\DRIVERS\hidusb.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): hkmsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\kmsvc.dll,-6
       Description: @%SystemRoot%\system32\kmsvc.dll,-7
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): HpCISSs
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\hpcisss.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): HTTP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: HTTP
       Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
        Image path: system32\drivers\HTTP.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): hwdatacard
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Huawei DataCard USB Modem and USB Serial
        Image path: system32\DRIVERS\ewusbmdm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): i2omp
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\i2omp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): i8042prt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: i8042-Tastatur- und PS/2-Mausanschluss-Treiber
        Image path: system32\DRIVERS\i8042prt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): iaStorV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel RAID Controller Vista
        Image path: \SystemRoot\system32\drivers\iastorv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): idsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193
       Description: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8192
       Object name: LocalSystem
        Image path: "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe"
        Image size: 859648
         Image MD5: 76EA63CDB2D88DAE7209691D089BEF1D
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): iirsp
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\iirsp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): IKEEXT
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\ikeext.dll,-501
       Description: @%SystemRoot%\system32\ikeext.dll,-502
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: BFE
    
    Service (registry key): inetaccs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): intelide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\intelide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): intelppm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel-Prozessortreiber
        Image path: system32\DRIVERS\intelppm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): IPBusEnum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\IPBusEnum.dll,-102
       Description: @%systemroot%\system32\IPBusEnum.dll,-103
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,fdPHost
    
    Service (registry key): IpFilterDriver
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32013
       Description: @%systemroot%\system32\rascfg.dll,-32013
        Image path: system32\DRIVERS\ipfltdrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): iphlpsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\iphlpsvc.dll,-200
       Description: @%SystemRoot%\system32\iphlpsvc.dll,-201
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k NetSvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSS,Tdx,winmgmt,tcpip,nsi
    
    Service (registry key): IpInIp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IP in IP Tunnel Driver
       Description: IP in IP Tunnel Driver
        Image path: system32\DRIVERS\ipinip.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): IPMIDRV
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\ipmidrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): IPNAT
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IP Network Address Translator
       Description: IP Network Address Translator
        Image path: system32\DRIVERS\ipnat.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): IRENUM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IR Bus Enumerator
       Description: IR Bus Enumerator
        Image path: system32\drivers\irenum.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): isapnp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: PnP ISA/EISA Bus Driver
        Image path: \SystemRoot\system32\drivers\isapnp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): iScsiPrt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: iScsiPort-Treiber
        Image path: system32\DRIVERS\msiscsi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): iteatapi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ITEATAPI_Service_Install
        Image path: \SystemRoot\system32\drivers\iteatapi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): iteraid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ITERAID_Service_Install
        Image path: \SystemRoot\system32\drivers\iteraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): JRAID
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\jraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): kbdclass
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Tastaturklassentreiber
        Image path: system32\DRIVERS\kbdclass.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): kbdhid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Keyboard HID Driver
        Image path: system32\DRIVERS\kbdhid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 0
    
    Service (registry key): KeyIso
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @keyiso.dll,-100
       Description: @keyiso.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): krait03
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Razer krait USB Filter Driver
        Image path: System32\Drivers\krait.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): KSecDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: System32\Drivers\ksecdd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): ksthunk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Kernel Streaming Thunks
        Image path: \SystemRoot\system32\drivers\ksthunk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): KtmRm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-2946
       Description: @comres.dll,-2947
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,SamSS
    
    Service (registry key): LanmanServer
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\srvsvc.dll,-100
       Description: @%systemroot%\system32\srvsvc.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: SamSS,Srv
    
    Service (registry key): LanmanWorkstation
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wkssvc.dll,-100
       Description: @%systemroot%\system32\wkssvc.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: Bowser,MRxSmb10,MRxSmb20,NSI
    
    Service (registry key): ldap
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): lltdio
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Link-Layer Topology Discovery Mapper I/O Driver
        Image path: system32\DRIVERS\lltdio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): lltdsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\lltdres.dll,-1
       Description: @%SystemRoot%\system32\lltdres.dll,-2
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: rpcss,lltdio
    
    Service (registry key): lmhosts
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\lmhsvc.dll,-101
       Description: @%SystemRoot%\system32\lmhsvc.dll,-102
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: NetBT,Afd
    
    Service (registry key): Lsa
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): LSI_FC
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\lsi_fc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): LSI_SAS
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\lsi_sas.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): LSI_SCSI
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\lsi_scsi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): luafv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: UAC File Virtualization
       Description: Virtualizes file write failures to per-user locations.
        Image path: \SystemRoot\system32\drivers\luafv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): lxbk_device
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: lxbk_device
       Object name: LocalSystem
        Image path: C:\Windows\system32\lxbkcoms.exe -service
        Image size: 537256
         Image MD5: 6185EDA97BC01EB913ED6FBB1E4748AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
    
    Service (registry key): Mcx2Svc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehres.dll,-15501
       Description: @%SystemRoot%\ehome\ehres.dll,-15502
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 4
              Type: 32
     Error Control: 1
     Depends On services: SSDPSRV,IPBusEnum,TermService,fdphost
    
    Service (registry key): megasas
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\megasas.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): MegaSR
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\megasr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Microsoft Office Groove Audit Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Office Groove Audit Service
       Object name: NT AUTHORITY\LocalService
        Image path: "D:\Microsoft Office\Office12\GrooveAuditService.exe"
        Image size: 65888
         Image MD5: 7C4C76B39D5525C4A465E0BE32528E19
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): MMCSS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\mmcss.dll,-100
       Description: @%systemroot%\system32\mmcss.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): Modem
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\drivers\modem.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): monitor
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Monitor-Klassenfunktionstreiber-Dienst
        Image path: system32\DRIVERS\monitor.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): mouclass
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Mausklassentreiber
        Image path: system32\DRIVERS\mouclass.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): mouhid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Maus-HID-Treiber
        Image path: system32\DRIVERS\mouhid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): MountMgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Mount Point Manager
       Description: Driver responsible with maintaining persistent drive letters and names for volumes
        Image path: System32\drivers\mountmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): mpio
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Multi-Path Bus Driver
        Image path: \SystemRoot\system32\drivers\mpio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): mpsdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23092
       Description: @%SystemRoot%\system32\FirewallAPI.dll,-23093
        Image path: System32\drivers\mpsdrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MpsSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23090
       Description: @%SystemRoot%\system32\FirewallAPI.dll,-23091
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: mpsdrv,bfe
    
    Service (registry key): Mraid35x
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\mraid35x.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): MRxDAV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: WebDav Client Redirector Driver
       Description: WebDav Client Redirector Driver
        Image path: \SystemRoot\system32\drivers\mrxdav.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: rdbss
    
    Service (registry key): mrxsmb
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SMB MiniRedirector Wrapper and Engine
       Description: Implements the framework for the SMB filesystem redirector
        Image path: system32\DRIVERS\mrxsmb.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: rdbss
    
    Service (registry key): mrxsmb10
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SMB 1.x MiniRedirector
       Description: Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers
        Image path: system32\DRIVERS\mrxsmb10.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: mrxsmb
    
    Service (registry key): mrxsmb20
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SMB 2.0 MiniRedirector
       Description: Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers
        Image path: system32\DRIVERS\mrxsmb20.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: mrxsmb
    
    Service (registry key): msahci
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\msahci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): msdsm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Multi-Path Device Specific Module
        Image path: \SystemRoot\system32\drivers\msdsm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): MSDTC
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-2797
       Description: @comres.dll,-2798
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\msdtc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS,SamSS
    
    Service (registry key): MSDTC Bridge 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Msfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
    
    Service (registry key): msisadrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ISA/EISA-Klassentreiber
        Image path: system32\drivers\msisadrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): MSiSCSI
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\iscsidsc.dll,-5000
       Description: @%SystemRoot%\system32\iscsidsc.dll,-5001
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): msiserver
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\msimsg.dll,-27
       Description: @%SystemRoot%\system32\msimsg.dll,-32
       Object name: LocalSystem
        Image path: %systemroot%\system32\msiexec /V
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): MSKSSRV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Streaming Service Proxy
        Image path: system32\drivers\MSKSSRV.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSPCLOCK
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Proxy für Streaming Clock
        Image path: system32\drivers\MSPCLOCK.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSPQM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Proxy für Streaming Quality Manager
        Image path: system32\drivers\MSPQM.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MsRPC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSSCNTRS
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): mssmbios
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft-Systemverwaltungs-BIOS-Treiber
        Image path: system32\DRIVERS\mssmbios.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSTEE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Streaming Tee/Sink-to-Sink-Konvertierung
        Image path: system32\drivers\MSTEE.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Mup
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Mup
       Description: Multiple UNC Provider
        Image path: System32\Drivers\mup.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 2
     Error Control: 1
    
    Service (registry key): napagent
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\qagentrt.dll,-6
       Description: @%SystemRoot%\system32\qagentrt.dll,-7
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): NativeWifiP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NativeWiFi-Filter
        Image path: system32\DRIVERS\nwifi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NDIS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NDIS System Driver
       Description: NDIS System Driver
        Image path: system32\drivers\ndis.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): NdisTapi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32001
       Description: @%systemroot%\system32\rascfg.dll,-32001
        Image path: system32\DRIVERS\ndistapi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Ndisuio
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NDIS Usermode I/O Protocol
        Image path: system32\DRIVERS\ndisuio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NdisWan
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32002
       Description: @%systemroot%\system32\rascfg.dll,-32002
        Image path: system32\DRIVERS\ndiswan.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NDProxy
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NetBIOS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NetBIOS Interface
       Description: NetBIOS Interface
        Image path: system32\DRIVERS\netbios.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
    
    Service (registry key): netbt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NETBT
       Description: This service implements NetBios over TCP/IP.
        Image path: System32\DRIVERS\netbt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: Tdx,tcpip
    
    Service (registry key): Netlogon
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\netlogon.dll,-102
       Description: @%SystemRoot%\System32\netlogon.dll,-103
       Object name: LocalSystem
        Image path: %systemroot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: LanmanWorkstation
    
    Service (registry key): Netman
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\netman.dll,-109
       Description: @%SystemRoot%\system32\netman.dll,-110
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,nsi
    
    Service (registry key): netprofm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\netprof.dll,-246
       Description: @%SystemRoot%\system32\netprof.dll,-247
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,nlasvc
    
    Service (registry key): NetTcpPortSharing
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
       Description: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
       Object name: NT AUTHORITY\LocalService
        Image path: "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe"
        Image size: 119808
         Image MD5: B84613B469B98E09F50A748C1D02E132
       Control Set: CurrentControlSet
             Start: 4
              Type: 32
     Error Control: 1
    
    Service (registry key): nfrd960
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\nfrd960.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): NlaSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\nlasvc.dll,-1
       Description: @%SystemRoot%\System32\nlasvc.dll,-2
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: NSI,RpcSs,TcpIp
    
    Service (registry key): Npfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
    
    Service (registry key): nsi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\nsisvc.dll,-200
       Description: @%SystemRoot%\system32\nsisvc.dll,-201
       Object name: NT Authority\LocalService
        Image path: %systemroot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: nsiproxy
    
    Service (registry key): nsiproxy
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NSI proxy service
       Description: NSI proxy service
        Image path: system32\drivers\nsiproxy.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): NTDS
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Ntfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): Null
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): nvlddmkm
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\nvlddmkm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): nvraid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA nForce RAID Driver   
        Image path: \SystemRoot\system32\drivers\nvraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): nvstor
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\nvstor.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): nvsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA Display Driver Service
       Description: Provides system and desktop level support to the NVIDIA display driver
       Object name: LocalSystem
        Image path: C:\Windows\system32\nvvsvc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 0
     Depends On services: nvlddmkm
    
    Service (registry key): nv_agp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA nForce AGP Bus Filter
        Image path: \SystemRoot\system32\drivers\nv_agp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NwlnkFlt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IPX Traffic Filter Driver
       Description: IPX Traffic Filter Driver
        Image path: system32\DRIVERS\nwlnkflt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: NwlnkFwd
    
    Service (registry key): NwlnkFwd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IPX Traffic Forwarder Driver
       Description: IPX Traffic Forwarder Driver
        Image path: system32\DRIVERS\nwlnkfwd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): odserv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Office Diagnostics Service
       Description: Run portions of Microsoft Office Diagnostics.
       Object name: LocalSystem
        Image path: "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE"
        Image size: 441712
         Image MD5: 1F0E05DFF4F5A833168E49BE1256F002
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): ohci1394
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Texas Instruments OHCI-konformer IEEE 1394-Hostcontroller
        Image path: system32\DRIVERS\ohci1394.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): ose
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Office Source Engine
       Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports.
       Object name: LocalSystem
        Image path: "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
        Image size: 145184
         Image MD5: 5A432A042DAE460ABE7199B758E8606C
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): Outlook
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): P17
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SB Audigy
        Image path: system32\drivers\P17.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): p2pimsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8004
       Description: @%SystemRoot%\system32\p2psvc.dll,-8005
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): p2psvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8006
       Description: @%SystemRoot%\system32\p2psvc.dll,-8007
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: p2pimsvc,PNRPSvc
    
    Service (registry key): Parport
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Treiber für parallelen Anschluss
        Image path: system32\DRIVERS\parport.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): partmgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Partition Manager
       Description: Disk class filter driver that auctions out partitions to volume managers
        Image path: System32\drivers\partmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): PcaSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\pcasvc.dll,-1
       Description: @%SystemRoot%\system32\pcasvc.dll,-2
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): pci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: PCI-Bus-Treiber
        Image path: system32\drivers\pci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): pciide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\drivers\pciide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): pcmcia
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\pcmcia.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): PEAUTH
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: PEAUTH
        Image path: system32\drivers\peauth.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): PerfDisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PerfHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\sysWow64\perfhost.exe,-2
       Description: @%systemroot%\SysWow64\perfhost.exe,-1
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\SysWow64\perfhost.exe
        Image size: 19968
         Image MD5: 0ED8727EA0172860F47258456C06CAEA
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): PerfNet
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PerfOS
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PerfProc
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): pla
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\pla.dll,-500
       Description: @%systemroot%\system32\pla.dll,-501
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): PlugPlay
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\umpnpmgr.dll,-100
       Description: @%SystemRoot%\system32\umpnpmgr.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): PNRPAutoReg
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8002
       Description: @%SystemRoot%\system32\p2psvc.dll,-8003
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: pnrpsvc
    
    Service (registry key): PNRPsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8000
       Description: @%SystemRoot%\system32\p2psvc.dll,-8001
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: p2pimsvc
    
    Service (registry key): PolicyAgent
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\polstore.dll,-5010
       Description: @%SystemRoot%\system32\polstore.dll,-5011
       Object name: NT Authority\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: Tcpip,bfe
    
    Service (registry key): PortProxy
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PptpMiniport
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32006
       Description: @%systemroot%\system32\rascfg.dll,-32006
        Image path: system32\DRIVERS\raspptp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Processor
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Processor Driver
        Image path: \SystemRoot\system32\drivers\processr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ProfSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\profsvc.dll,-300
       Description: @%systemroot%\system32\profsvc.dll,-301
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): ProtectedStorage
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\psbase.dll,-300
       Description: @%systemroot%\system32\psbase.dll,-301
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): PSched
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\drivers\pacer.sys,-101
       Description: @%SystemRoot%\System32\drivers\pacer.sys,-101
        Image path: system32\DRIVERS\pacer.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): ql2300
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: QLogic Fibre Channel Miniport Driver
        Image path: \SystemRoot\system32\drivers\ql2300.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ql40xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: QLogic iSCSI Miniport Driver
        Image path: \SystemRoot\system32\drivers\ql40xx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): QWAVE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\qwave.dll,-1
       Description: @%SystemRoot%\system32\qwave.dll,-2
       Object name: NT AUTHORITY\LocalService
        Image path: %windir%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: rpcss,psched,QWAVEdrv,LLTDIO
    
    Service (registry key): QWAVEdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
       Description: @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
        Image path: \SystemRoot\system32\drivers\qwavedrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): RasAcd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Remote Access Auto Connection Driver
       Description: Remote Access Auto Connection Driver
        Image path: System32\DRIVERS\rasacd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): RasAuto
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\rasauto.dll,-200
       Description: @%Systemroot%\system32\rasauto.dll,-201
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RasMan,Tapisrv
    
    Service (registry key): Rasl2tp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32005
       Description: @%systemroot%\system32\rascfg.dll,-32005
        Image path: system32\DRIVERS\rasl2tp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): RasMan
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\rasmans.dll,-200
       Description: @%Systemroot%\system32\rasmans.dll,-201
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: Tapisrv,SstpSvc
    
    Service (registry key): RasPppoe
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32007
       Description: @%systemroot%\system32\rascfg.dll,-32007
        Image path: system32\DRIVERS\raspppoe.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): RasSstp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\sstpsvc.dll,-202
       Description: @%systemroot%\system32\sstpsvc.dll,-202
        Image path: system32\DRIVERS\rassstp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): rdbss
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Redirected Buffering Sub Sysytem
       Description: Provides the framework for network mini-redirectors
        Image path: system32\DRIVERS\rdbss.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
     Depends On services: Mup
    
    Service (registry key): RDPCDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: RDPCDD
       Description: RDPDD Chained DD
        Image path: System32\DRIVERS\RDPCDD.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): RDPDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): rdpdr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Terminal Server Device Redirector Driver
        Image path: \SystemRoot\system32\drivers\rdpdr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): RDPENCDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: RDP Encoder Mirror Driver
       Description: RDP Encoder Mirror Driver
        Image path: system32\drivers\rdpencdd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): RDPNP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\drprov.dll,-100
       Description: @%systemroot%\system32\drprov.dll,-101
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): RDPWD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: RDP Winstation Driver
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): RemoteAccess
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\mprdim.dll,-200
       Description: @%Systemroot%\system32\mprdim.dll,-201
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 4
              Type: 32
     Error Control: 1
     Depends On services: RpcSS,RasMan,bfe
     Depends On group: NetBIOSGroup
    
    Service (registry key): RemoteRegistry
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @regsvc.dll,-1
       Description: @regsvc.dll,-2
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k regsvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): RpcLocator
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\Locator.exe,-2
       Description: @%systemroot%\system32\Locator.exe,-3
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\locator.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): RpcSs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @oleres.dll,-5010
       Description: @oleres.dll,-5011
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k rpcss
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: DcomLaunch
    
    Service (registry key): rspndr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Link-Layer Topology Discovery Responder
        Image path: system32\DRIVERS\rspndr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): RTL8169
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Realtek 8169 NT Driver
        Image path: system32\DRIVERS\Rtlh64.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): SamSs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\samsrv.dll,-1
       Description: @%SystemRoot%\system32\samsrv.dll,-2
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): sbp2port
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SBP-2 Transport/Protocol Bus Driver
        Image path: \SystemRoot\system32\drivers\sbp2port.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SBSDWSCService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SBSD Security Center Service
       Object name: LocalSystem
        Image path: C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
        Image size: 1153368
         Image MD5: 794D4B48DFB6E999537C7C3947863463
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: wscsvc
    
    Service (registry key): SCardSvr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\SCardSvr.dll,-1
       Description: @%SystemRoot%\System32\SCardSvr.dll,-5
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay
    
    Service (registry key): Schedule
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\schedsvc.dll,-100
       Description: @%SystemRoot%\system32\schedsvc.dll,-101
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,EventLog
    
    Service (registry key): SCPolicySvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\certprop.dll,-13
       Description: @%SystemRoot%\System32\certprop.dll,-14
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): SDRSVC
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\sdrsvc.dll,-107
       Description: @%SystemRoot%\system32\sdrsvc.dll,-102
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k SDRSVC
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): secdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Security Driver
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): seclogon
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\seclogon.dll,-7001
       Description: @%SystemRoot%\system32\seclogon.dll,-7000
       Object name: LocalSystem
        Image path: %windir%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): SENS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\Sens.dll,-200
       Description: @%SystemRoot%\system32\Sens.dll,-201
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: EventSystem
    
    Service (registry key): Serenum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Serenum-Filtertreiber
        Image path: system32\DRIVERS\serenum.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Serial
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Treiber für seriellen Anschluss
        Image path: system32\DRIVERS\serial.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): sermouse
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Serial Mouse Driver
        Image path: \SystemRoot\system32\drivers\sermouse.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ServiceModelEndpoint 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): ServiceModelOperation 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): ServiceModelService 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): SessionEnv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\SessEnv.dll,-1026
       Description: @%SystemRoot%\System32\SessEnv.dll,-1027
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,LanmanWorkstation
    
    Service (registry key): sffdisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SFF Storage Class Driver
        Image path: \SystemRoot\system32\drivers\sffdisk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): sffp_mmc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SFF Storage Protocol Driver for MMC
        Image path: \SystemRoot\system32\drivers\sffp_mmc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): sffp_sd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SFF Storage Protocol Driver for SDBus
        Image path: \SystemRoot\system32\drivers\sffp_sd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): sfloppy
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: High-Capacity Floppy Disk Drive
        Image path: \SystemRoot\system32\drivers\sfloppy.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SharedAccess
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\ipnathlp.dll,-106
       Description: @%SystemRoot%\system32\ipnathlp.dll,-107
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: Netman,WinMgmt,RasMan,BFE
    
    Service (registry key): ShellHWDetection
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\shsvcs.dll,-12288
       Description: @%SystemRoot%\System32\shsvcs.dll,-12289
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: RpcSs
    
    Service (registry key): SiSRaid2
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sisraid2.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SiSRaid4
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sisraid4.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): slsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\SLsvc.exe,-101
       Description: @%SystemRoot%\system32\SLsvc.exe,-100
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\SLsvc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): SLUINotify
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\SLUINotify.dll,-103
       Description: @%SystemRoot%\system32\SLUINotify.dll,-102
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: SLSvc,netprofm,EventSystem
    
    Service (registry key): Smb
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50005
       Description: @%SystemRoot%\system32\tcpipcfg.dll,-50006
        Image path: system32\DRIVERS\smb.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): SMSvcHost 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): SNMPTRAP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\snmptrap.exe,-3
       Description: @%SystemRoot%\system32\snmptrap.exe,-4
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\snmptrap.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): spldr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Security Processor Loader Driver
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): Spooler
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\spoolsv.exe,-1
       Description: @%systemroot%\system32\spoolsv.exe,-2
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\spoolsv.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
     Depends On services: RPCSS,http
    
    Service (registry key): srv
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: System32\DRIVERS\srv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: srv2
    
    Service (registry key): srv2
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: srv2
       Description: Default SDDL for Windows Resource Protected file
        Image path: System32\DRIVERS\srv2.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: srvnet
    
    Service (registry key): srvnet
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: System32\DRIVERS\srvnet.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): SSDPSRV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\ssdpsrv.dll,-100
       Description: @%systemroot%\system32\ssdpsrv.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: HTTP
    
    Service (registry key): SstpSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\sstpsvc.dll,-200
       Description: @%SystemRoot%\system32\sstpsvc.dll,-201
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): Steam Client Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Steam Client Service
       Description: Steam Client Service monitors and updates Steam content
       Object name: LocalSystem
        Image path: C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService
        Image size: 316664
         Image MD5: 0502E729C9B15748F9927C316FECE9F6
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): Stereo Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA Stereoscopic 3D Driver Service
       Description: Provides system support for NVIDIA Stereoscopic 3D driver
       Object name: LocalSystem
        Image path: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
        Image size: 239648
         Image MD5: 8BDDCE5A798B1150CDC5AB61D480B267
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
    
    Service (registry key): stisvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wiaservc.dll,-9
       Description: @%SystemRoot%\system32\wiaservc.dll,-10
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,ShellHWDetection
    
    Service (registry key): swenum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Software-Bus-Treiber
        Image path: system32\DRIVERS\swenum.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): swprv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\swprv.dll,-103
       Description: @%SystemRoot%\System32\swprv.dll,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k swprv
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): Symc8xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\symc8xx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Sym_hi
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sym_hi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Sym_u3
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sym_u3.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SysMain
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\sysmain.dll,-1000
       Description: @%SystemRoot%\system32\sysmain.dll,-1001
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: rpcss,fileinfo
    
    Service (registry key): TabletInputService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\TabSvc.dll,-100
       Description: @%SystemRoot%\system32\TabSvc.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay,RpcSs
    
    Service (registry key): TAGuard
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TAGuard
       Description: TAGuard
       Object name: LocalSystem
        Image path: C:\PROGRA~2\aon\aonFlex\Guard.exe 
        Image size: 1359200
         Image MD5: 73D5A39E4322D2FC76B784627830CE1A
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 0
    
    Service (registry key): TapiSrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tapisrv.dll,-10100
       Description: @%SystemRoot%\system32\tapisrv.dll,-10101
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay,RpcSs
    
    Service (registry key): TBS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tbssvc.dll,-100
       Description: @%SystemRoot%\system32\tbssvc.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): Tcpip
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50003
       Description: @%SystemRoot%\system32\tcpipcfg.dll,-50003
        Image path: System32\drivers\tcpip.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): Tcpip6
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft IPv6 Protocol Driver
       Description: Microsoft IPv6 Protocol Driver
        Image path: system32\DRIVERS\tcpip.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): tcpipreg
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TCP/IP Registry Compatibility
       Description: Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality.
        Image path: System32\drivers\tcpipreg.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
     Depends On services: tcpip
    
    Service (registry key): TDPIPE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TDPIPE
        Image path: system32\drivers\tdpipe.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): TDTCP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TDTCP
        Image path: system32\drivers\tdtcp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): tdx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50004
       Description: @%SystemRoot%\system32\tcpipcfg.dll,-50004
        Image path: system32\DRIVERS\tdx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): TermDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Terminal-Gerätetreiber
        Image path: system32\DRIVERS\termdd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): TermService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\termsrv.dll,-268
       Description: @%SystemRoot%\System32\termsrv.dll,-267
       Object name: NT Authority\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,TermDD
    
    Service (registry key): Themes
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\shsvcs.dll,-8192
       Description: @%SystemRoot%\System32\shsvcs.dll,-8193
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): THREADORDER
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\mmcss.dll,-102
       Description: @%systemroot%\system32\mmcss.dll,-103
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): TrkWks
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\trkwks.dll,-1
       Description: @%SystemRoot%\system32\trkwks.dll,-2
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): TrustedInstaller
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\servicing\TrustedInstaller.exe,-100
       Description: @%SystemRoot%\servicing\TrustedInstaller.exe,-101
       Object name: localSystem
        Image path: %SystemRoot%\servicing\TrustedInstaller.exe
        Image size: 42496
         Image MD5: AC6FF1DF22ED90BAD6417EE5A4C6E2F0
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): TSDDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): tssecsrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Terminal Services Security Filter Driver
       Description: Terminal Services Security Filter Driver
        Image path: System32\DRIVERS\tssecsrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): tunmp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Tun-Miniportadaptertreiber
        Image path: system32\DRIVERS\tunmp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): tunnel
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft-IPv6-Tunnelminiport-Adaptertreiber
        Image path: system32\DRIVERS\tunnel.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): uagp35
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft AGPv3.5 Filter
        Image path: \SystemRoot\system32\drivers\uagp35.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): udfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: udfs
       Description: Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)
        Image path: system32\DRIVERS\udfs.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 2
     Error Control: 1
    
    Service (registry key): UGatherer
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): UGTHRSVC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): UI0Detect
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\ui0detect.exe,-101
       Description: @%SystemRoot%\system32\ui0detect.exe,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\UI0Detect.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 272
     Error Control: 1
    
    Service (registry key): uliagpkx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Uli AGP Bus Filter
        Image path: \SystemRoot\system32\drivers\uliagpkx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): uliahci
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\uliahci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): UlSata
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\ulsata.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ulsata2
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\ulsata2.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): umbus
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: UMBus-Enumerator-Treiber
        Image path: system32\DRIVERS\umbus.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): UnlockerDriver5
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \??\C:\Program Files (x86)\Unlocker\UnlockerDriver5.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 0
    
    Service (registry key): upnphost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\upnphost.dll,-213
       Description: @%systemroot%\system32\upnphost.dll,-214
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: SSDPSRV,HTTP
    
    Service (registry key): usb
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): usbccgp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Standard-USB-Haupttreiber
        Image path: system32\DRIVERS\usbccgp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbcir
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: eHome Infrared Receiver (USBCIR)
        Image path: \SystemRoot\system32\drivers\usbcir.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): usbctl
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB Bus Controller
       Object name: LocalSystem
        Image path: C:\Windows\system32\usbctl.exe
        Image size: 64000
         Image MD5: D2501967B47D3CB3121E80FD4661375E
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
    
    Service (registry key): usbehci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller
        Image path: system32\DRIVERS\usbehci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbhub
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB-Standardhubtreiber
        Image path: system32\DRIVERS\usbhub.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbohci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB Open Host Controller Miniport Driver
        Image path: \SystemRoot\system32\drivers\usbohci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): usbprint
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB-Druckerklasse
        Image path: system32\DRIVERS\usbprint.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbscan
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: USB-Scannertreiber
        Image path: system32\DRIVERS\usbscan.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): USBSTOR
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: USB-Massenspeichertreiber
        Image path: system32\DRIVERS\USBSTOR.SYS
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbuhci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Miniporttreiber für universellen Microsoft USB-Hostcontroller
        Image path: system32\DRIVERS\usbuhci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): UxSms
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\dwm.exe,-2000
       Description: @%SystemRoot%\system32\dwm.exe,-2001
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): vds
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\vds.exe,-100
       Description: @%SystemRoot%\system32\vds.exe,-112
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\vds.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,PlugPlay
    
    Service (registry key): vga
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\vgapnp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): VgaSave
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\System32\drivers\vga.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): viaide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\viaide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): volmgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Treiber für Volume-Manager
        Image path: system32\drivers\volmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): volmgrx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Dynamic Volume Manager
       Description: Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks
        Image path: System32\drivers\volmgrx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): volsnap
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Speichervolumes
        Image path: system32\drivers\volsnap.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): vsmraid
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\vsmraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): VSS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\vssvc.exe,-102
       Description: @%systemroot%\system32\vssvc.exe,-101
       Object name: LocalSystem
        Image path: %systemroot%\system32\vssvc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): W32Time
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\w32time.dll,-200
       Description: @%SystemRoot%\system32\w32time.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): W3SVC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): WacomPen
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Wacom Serial Pen HID Driver
        Image path: \SystemRoot\system32\drivers\wacompen.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Wanarp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Remote Access IP ARP Driver
       Description: Remote Access IP ARP Driver
        Image path: system32\DRIVERS\wanarp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Wanarpv6
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Remote Access IPv6 ARP Driver
       Description: Remote Access IPv6 ARP Driver
        Image path: system32\DRIVERS\wanarp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): wcncsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wcncsvc.dll,-3
       Description: @%SystemRoot%\system32\wcncsvc.dll,-4
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): WcsPlugInService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\WcsPlugInService.dll,-200
       Description: @%SystemRoot%\system32\WcsPlugInService.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k wcssvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): Wd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Watchdog Timer Driver
        Image path: \SystemRoot\system32\drivers\wd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Wdf01000
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Kernel Mode Driver Frameworks service
        Image path: system32\drivers\Wdf01000.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): WdiServiceHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wdi.dll,-502
       Description: @%systemroot%\system32\wdi.dll,-503
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k wdisvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): WdiSystemHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wdi.dll,-500
       Description: @%systemroot%\system32\wdi.dll,-501
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): WebClient
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\webclnt.dll,-100
       Description: @%systemroot%\system32\webclnt.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: MRxDAV
    
    Service (registry key): Wecsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wecsvc.dll,-200
       Description: @%SystemRoot%\system32\wecsvc.dll,-201
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: HTTP,Eventlog,mpssvc
    
    Service (registry key): wercplsupport
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wercplsupport.dll,-101
       Description: @%SystemRoot%\System32\wercplsupport.dll,-100
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): WerSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wersvc.dll,-100
       Description: @%SystemRoot%\System32\wersvc.dll,-101
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k WerSvcGroup
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
    
    Service (registry key): WinDefend
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103
       Description: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-3068
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k secsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): Windows Workflow Foundation 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): WinHttpAutoProxySvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\winhttp.dll,-100
       Description: @%SystemRoot%\system32\winhttp.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: Dhcp
    
    Service (registry key): Winmgmt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\wbem\wmisvc.dll,-205
       Description: @%Systemroot%\system32\wbem\wmisvc.dll,-204
       Object name: localSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): WinRM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\wsmsvc.dll,-101
       Description: @%Systemroot%\system32\wsmsvc.dll,-102
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,HTTP
    
    Service (registry key): Winsock
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 4
     Error Control: 1
    
    Service (registry key): WinSock2
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Wlansvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wlansvc.dll,-257
       Description: @%SystemRoot%\System32\wlansvc.dll,-258
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: nativewifip,RpcSs,Ndisuio,Eaphost
    
    Service (registry key): WmiAcpi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Windows Management Interface for ACPI
        Image path: \SystemRoot\system32\drivers\wmiacpi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): WmiApRpl
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): wmiApSrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110
       Description: @%Systemroot%\system32\wbem\wmiapsrv.exe,-111
       Object name: localSystem
        Image path: %systemroot%\system32\wbem\WmiApSrv.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): WMPNetworkSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101
       Description: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-102
       Object name: NT AUTHORITY\NetworkService
        Image path: "%ProgramFiles%\Windows Media Player\wmpnetwk.exe"
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: UPnPHost,http
    
    Service (registry key): WPCSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wpcsvc.dll,-100
       Description: @%SystemRoot%\system32\wpcsvc.dll,-101
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): WPDBusEnum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wpdbusenum.dll,-100
       Description: @%SystemRoot%\system32\wpdbusenum.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): ws2ifsl
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Winsock IFS driver
       Description: Winsock IFS driver
        Image path: \SystemRoot\system32\drivers\ws2ifsl.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): wscsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wscsvc.dll,-200
       Description: @%SystemRoot%\System32\wscsvc.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,WinMgmt
    
    Service (registry key): WSearch
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\SearchIndexer.exe,-103
       Description: @%systemroot%\system32\SearchIndexer.exe,-104
       Object name: LocalSystem
        Image path: %systemroot%\system32\SearchIndexer.exe /Embedding
        Image size: 439808
         Image MD5: 7778BDFA3F6F6FBA0E75B9594098F737
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): WSearchIdxPi
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): wuauserv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wuaueng.dll,-105
       Description: @%systemroot%\system32\wuaueng.dll,-106
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): WUDFRd
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\WUDFRd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): wudfsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wudfsvc.dll,-1000
       Description: @%SystemRoot%\system32\wudfsvc.dll,-1001
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay
    
    Service (registry key): xmlprov
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): {64F59AB0-539B-495A-8A6A-E36B2AF35CF1}
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    
    
    --- Search result list ---
    CoolWWWSearch.OleHelp: [SBI $F3F8B2C7] Autorun-Einstellungen (svchost) (Registrierungsdatenbank-Wert, fixed)
      HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost
    
    CoolWWWSearch.OleHelp: [SBI $F3F8B2C7]  Programmdatei (Datei, fixed)
      C:\Windows\system32\config\systemprofile\AppData\Roaming\svcst.exe
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    CoolWWWSearch.OleHelp: [SBI $F3F8B2C7] Autorun-Einstellungen (svchost) (Registrierungsdatenbank-Wert, fixing failed)
      HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost
    
    Fraud.XPAntivirus: [SBI $698D395C]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\AVEngn.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $D8C7B9D2]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\pthreadVC2.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $65FA905C]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\wscui.cpl
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $08B76334]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\data\daily.cvd
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $A2EE2FB7]  Daten (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\Microsoft.VC80.CRT.manifest
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $2C5EB137]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\msvcm80.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $D1488DAC]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\msvcp80.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $1A4F4E11]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\msvcr80.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $4FAD3D51] Programm-Verzeichnis (Verzeichnis, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\data\
    
    Fraud.XPAntivirus: [SBI $10EB6A3C] Uninstall-Einstellung (Registrierungsdatenbank-Schlüssel, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntivirusPro_2010
    
    Fraud.XPAntivirus: [SBI $7A7E9634] Einstellungen (Registrierungsdatenbank-Schlüssel, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\AntivirusPro_2010
    
    Fraud.XPAntivirus: [SBI $1C80BE94]  Bibliothek (Datei, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\htmlayout.dll
      Properties.size=0
      Properties.md5=D41D8CD98F00B204E9800998ECF8427E
    
    Fraud.XPAntivirus: [SBI $2646A943] Programm-Verzeichnis (Verzeichnis, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\Microsoft.VC80.CRT\
    
    Fraud.XPAntivirus: [SBI $C1606B17] Programm-Verzeichnis (Verzeichnis, fixed)
      C:\Program Files (x86)\AntivirusPro_2010\
    
    Win32.Asprox: [SBI $01650482] Einstellungen (Registrierungsdatenbank-Schlüssel, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Sft
    
    Tradedoubler: Verfolgender Cookie (Internet Explorer: Sherkas) (Cookie, fixed)
      
    
    
    --- Spybot - Search & Destroy version: 1.6.2  (build: 20090126) ---
    
    2009-01-26 blindman.exe (1.0.0.8)
    2009-01-26 SDFiles.exe (1.6.1.7)
    2009-01-26 SDMain.exe (1.0.0.6)
    2009-01-26 SDShred.exe (1.0.2.5)
    2009-01-26 SDUpdate.exe (1.6.0.12)
    2009-01-26 SDWinSec.exe (1.0.0.12)
    2009-01-26 SpybotSD.exe (1.6.2.46)
    2009-03-05 TeaTimer.exe (1.6.6.32)
    2009-09-24 unins000.exe (51.49.0.0)
    2009-01-26 Update.exe (1.6.0.7)
    2009-09-07 advcheck.dll (1.6.4.18)
    2007-04-02 aports.dll (2.1.0.0)
    2008-06-14 DelZip179.dll (1.79.11.1)
    2009-01-26 SDHelper.dll (1.6.2.14)
    2008-06-19 sqlite3.dll
    2009-01-26 Tools.dll (2.1.6.10)
    2009-01-16 UninsSrv.dll (1.0.0.0)
    2009-05-19 Includes\Adware.sbi (*)
    2009-09-22 Includes\AdwareC.sbi (*)
    2009-01-22 Includes\Cookies.sbi (*)
    2009-08-10 Includes\Dialer.sbi (*)
    2009-09-22 Includes\DialerC.sbi (*)
    2009-01-22 Includes\HeavyDuty.sbi (*)
    2009-05-26 Includes\Hijackers.sbi (*)
    2009-09-22 Includes\HijackersC.sbi (*)
    2009-09-22 Includes\Keyloggers.sbi (*)
    2009-09-22 Includes\KeyloggersC.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2009-08-19 Includes\Malware.sbi (*)
    2009-09-22 Includes\MalwareC.sbi (*)
    2009-03-25 Includes\PUPS.sbi (*)
    2009-09-22 Includes\PUPSC.sbi (*)
    2009-01-22 Includes\Revision.sbi (*)
    2009-01-13 Includes\Security.sbi (*)
    2009-09-22 Includes\SecurityC.sbi (*)
    2008-06-03 Includes\Spybots.sbi (*)
    2008-06-03 Includes\SpybotsC.sbi (*)
    2009-04-07 Includes\Spyware.sbi (*)
    2009-09-22 Includes\SpywareC.sbi (*)
    2009-06-08 Includes\Tracks.uti
    2009-09-15 Includes\Trojans.sbi (*)
    2009-09-22 Includes\TrojansC.sbi (*)
    2008-03-04 Plugins\Chai.dll
    2008-03-05 Plugins\Fennel.dll
    2008-02-26 Plugins\Mate.dll
    2007-12-24 Plugins\TCPIPAddress.dll
    
    
    
    --- System information ---
    Windows Vista (Build: 6001) Service Pack 1 (6.0.6001)
    
    
    --- Startup entries list ---
    Located: HK_LM:Run, Adobe Reader Speed Launcher
    command: "C:\AdobeReader 9.0\Reader\Reader_sl.exe"
       file: C:\AdobeReader 9.0\Reader\Reader_sl.exe
       size: 35696
        MD5: 452FA961163EF4AEE4815796A13AB2CF
    
    Located: HK_LM:Run, Antivirus Pro 2010
    command: "C:\Program Files (x86)\AntivirusPro_2010\AntivirusPro_2010.exe" /hide
       file: C:\Program Files (x86)\AntivirusPro_2010\AntivirusPro_2010.exe
       size: 0
        MD5: D41D8CD98F00B204E9800998ECF8427E
             Warning: if the file is actually larger than 0 bytes,
             the checksum could not be properly calculated!
    
    Located: HK_LM:Run, avast!
    command: C:\Avast\ashDisp.exe
       file: C:\Avast\ashDisp.exe
       size: 81000
        MD5: 4EADA484E5F7E04CDEEF95030DA4B05C
    
    Located: HK_LM:Run, GrooveMonitor
    command: "D:\Microsoft Office\Office12\GrooveMonitor.exe"
       file: D:\Microsoft Office\Office12\GrooveMonitor.exe
       size: 31072
        MD5: 644795F6985C740F5E36E9336B837D0B
    
    Located: HK_LM:Run, JMB36X IDE Setup
    command: C:\Windows\RaidTool\xInsIDE.exe
       file: C:\Windows\RaidTool\xInsIDE.exe
       size: 36864
        MD5: DB4E2D9C09A5762CB2551222B5E443B2
    
    Located: HK_LM:Run, Krait
    command: C:\Razer Krait\razerhid.exe
       file: C:\Razer Krait\razerhid.exe
       size: 126976
        MD5: 6879C57D495AD84C5AC381B656C85E94
    
    Located: HK_LM:Run, P17RunE
    command: RunDll32 P17RunE.dll,RunDLLEntry
       file: C:\Windows\system32\P17RunE.dll
       size: 14848
        MD5: BC6B92E13EC81DE9C77FA1816CC325D6
    
    Located: HK_LM:RunOnce, SpybotSnD
    command: "C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
       file: C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
       size: 5365592
        MD5: 0477C2F9171599CA5BC3307FDFBA8D89
    
    Located: HK_CU:Run, mserv
      where: .DEFAULT...
    command: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       file: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       size: 13312
        MD5: 25BD3B1E8826F908F856F7C27900380F
    
    Located: HK_CU:Run, Sidebar
      where: S-1-5-19...
    command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
       file: C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
       size: 1233920
        MD5: FD278E51A7D6F52D22FCE6C67E037AD6
    
    Located: HK_CU:Run, WindowsWelcomeCenter
      where: S-1-5-19...
    command: rundll32.exe oobefldr.dll,ShowWelcomeCenter
       file: C:\Windows\system32\oobefldr.dll
       size: 2153472
        MD5: 83E4A5435B0FA6AD0166722621A04725
    
    Located: HK_CU:Run, Sidebar
      where: S-1-5-20...
    command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
       file: C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
       size: 1233920
        MD5: FD278E51A7D6F52D22FCE6C67E037AD6
    
    Located: HK_CU:Run, WindowsWelcomeCenter
      where: S-1-5-20...
    command: rundll32.exe oobefldr.dll,ShowWelcomeCenter
       file: C:\Windows\system32\oobefldr.dll
       size: 2153472
        MD5: 83E4A5435B0FA6AD0166722621A04725
    
    Located: HK_CU:Run, msnmsgr
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
       file: C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
       size: 3883840
        MD5: 8F4CD393FF165E8952D2D0AE3CF25C79
    
    Located: HK_CU:Run, Skype
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: REM "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
       file: REM "C:\Program Files (x86)\Skype\Phone\Skype.exe
       size: 0
        MD5: D41D8CD98F00B204E9800998ECF8427E
             Warning: if the file is actually larger than 0 bytes,
             the checksum could not be properly calculated!
    
    Located: HK_CU:Run, SpybotSD TeaTimer
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
       file: C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
       size: 2260480
        MD5: 390679F7A217A5E73D756276C40AE887
    
    Located: HK_CU:Run, Steam
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: "d:\steam\steam.exe" -silent
       file: d:\steam\steam.exe
       size: 1217784
        MD5: 380D05F01453CC20B02A58B112B3B9B3
    
    Located: HK_CU:Run, uTorrent
      where: S-1-5-21-3898667909-3651217668-2660801619-1000...
    command: "C:\Program Files (x86)\uTorrent\uTorrent.exe"
       file: C:\Program Files (x86)\uTorrent\uTorrent.exe
       size: 288560
        MD5: ADD8DDD57B22D624D6A9D3B209A2E485
    
    Located: HK_CU:Run, mserv
      where: S-1-5-18...
    command: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       file: C:\Windows\system32\config\systemprofile\AppData\Roaming\seres.exe
       size: 13312
        MD5: 25BD3B1E8826F908F856F7C27900380F
    
    
    
    --- Browser helper object list ---
    {18DF081C-E8AD-4283-A596-FA578C2EBDC3} (AcroIEHelperStub)
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: AcroIEHelperStub
            CLSID name: Adobe PDF Link Helper
                  Path: C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\
             Long name: AcroIEHelperShim.dll
            Short name:       ACROIE~2.DLL
        Date (created): 27.02.2009 12:07:26
    Date (last access): 20.09.2009 16:55:00
     Date (last write): 27.02.2009 12:07:26
              Filesize:              75128
            Attributes:           archive 
                   MD5: 5CF6190CD875DA6B35256FEE573E7908
                 CRC32:           764BA81B
               Version:          9.1.0.163
    
    {5C255C8A-E604-49b4-9D64-90988571CECB} ()
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: 
            CLSID name: 
    
    {72853161-30C5-4D22-B7F9-0BBC1D38A37E} (Groove GFS Browser Helper)
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: 
            CLSID name: Groove GFS Browser Helper
                  Path: D:\Microsoft Office\Office12\
             Long name: GrooveShellExtensions.dll
            Short name:       GRA8E1~1.DLL
        Date (created): 12.02.2009 15:19:32
    Date (last access): 23.09.2009 20:01:38
     Date (last write): 12.02.2009 15:19:32
              Filesize:            2217848
            Attributes:           archive 
                   MD5: A6B5A41C0ED007AB6C43CAD899E533D8
                 CRC32:           BA078F79
               Version:     12.0.6421.1000
    
    {9030D464-4C02-4ABF-8ECC-5164760863C6} (Windows Live Anmelde-Hilfsprogramm)
              location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
              BHO name: 
            CLSID name: Windows Live Anmelde-Hilfsprogramm
                  Path: C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\
             Long name: WindowsLiveLogin.dll
            Short name:       WINDOW~1.DLL
        Date (created): 22.01.2009 15:41:30
    Date (last access): 20.09.2009 18:45:28
     Date (last write): 22.01.2009 15:41:30
              Filesize:             408448
            Attributes:           archive 
                   MD5: B7899C3E21B299D7A3C0DA96CAE340BD
                 CRC32:           288935F8
               Version:          5.0.818.5
    
    
    
    --- ActiveX list ---
    {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
              DPF name: 
            CLSID name: Shockwave Flash Object
             Installer: C:\Windows\Downloaded Program Files\swflash.inf
              Codebase: http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
           description: Macromedia Shockwave Flash Player
        classification: Legitimate
        known filename: 
             info link: 
           info source: Patrick M. Kolla
                  Path: C:\Windows\SysWow64\Macromed\Flash\
             Long name:       Flash10c.ocx
            Short name:                   
        Date (created): 18.07.2009 05:12:12
    Date (last access): 19.09.2009 13:11:32
     Date (last write): 18.07.2009 05:12:12
              Filesize:            3979680
            Attributes:  readonly archive 
                   MD5: 43C6ACDFB92A18C3E516E6BD5F1ACD51
                 CRC32:           D6F40D46
               Version:         10.0.32.18
    
    {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package)
              DPF name: 
            CLSID name: Creative Software AutoUpdate Support Package
             Installer: C:\Windows\Downloaded Program Files\CTPID.inf
              Codebase: http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15108/CTPID.cab
           description: 
        classification: Legitimate
        known filename: CTPID.ocx
             info link: 
           info source: Safer Networking Ltd.
                  Path: C:\PROGRA~2\Creative\SHARED~1\SOFTWA~1\
             Long name:          CTPID.ocx
            Short name:                   
        Date (created): 30.04.2009 17:11:10
    Date (last access): 30.04.2009 17:11:10
     Date (last write): 30.04.2009 17:11:10
              Filesize:              37624
            Attributes:           archive 
                   MD5: D286CCE304342A5E5A728C2971602CC9
                 CRC32:           FF2000BD
               Version:           1.0.51.0
    
    
    
    --- Process list ---
    PID:    0 (   0) [System]
    PID: 1524 (1616) C:\Program Files (x86)\Lexmark X1100 Series\LXBKbmgr.exe
     size: 74408
      MD5: 88729B2B27D9F6867A42653C9E9B00B6
    PID: 1520 (1616) D:\Steam\Steam.exe
     size: 1217784
      MD5: 380D05F01453CC20B02A58B112B3B9B3
    PID: 2128 (1616) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
     size: 3883840
      MD5: 8F4CD393FF165E8952D2D0AE3CF25C79
    PID: 2208 (2136) C:\Avast\ashDisp.exe
     size: 81000
      MD5: 4EADA484E5F7E04CDEEF95030DA4B05C
    PID: 2228 (2136) C:\Windows\SysWOW64\rundll32.exe
     size: 44544
      MD5: 4B555106290BD117334E9A08761C035A
    PID: 2240 (2136) C:\Razer Krait\razerhid.exe
     size: 126976
      MD5: 6879C57D495AD84C5AC381B656C85E94
    PID: 2456 (1524) C:\Program Files (x86)\Lexmark X1100 Series\lxbkbmon.exe
     size: 58024
      MD5: 3ED807BB993D00C38836CCBC4DFE9EA6
    PID: 3040 (2240) C:\Razer Krait\razertra.exe
     size: 114688
      MD5: 20BAB56610E7D97849DA71159886EEBC
    PID: 2612 (2240) C:\Razer Krait\razerofa.exe
     size: 143360
      MD5: C7EE25F458BDE288DE12B33AD4219A4E
    PID: 1180 ( 756) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
     size: 27512
      MD5: 654480EA67078C7B4C6C8BA871B07D5D
    PID: 4556 (3360) C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
     size: 5365592
      MD5: 0477C2F9171599CA5BC3307FDFBA8D89
    PID: 4748 (3396) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
     size: 2260480
      MD5: 390679F7A217A5E73D756276C40AE887
    PID:    4 (   0) System
    PID:  396 (   4) smss.exe
    PID:  464 ( 452) csrss.exe
    PID:  516 ( 452) wininit.exe
     size: 96768
    PID:  536 ( 524) csrss.exe
    PID:  572 ( 516) services.exe
     size: 279040
    PID:  584 ( 516) lsass.exe
    PID:  592 ( 516) lsm.exe
     size: 229888
    PID:  756 ( 572) svchost.exe
     size: 21504
    PID:  788 ( 524) winlogon.exe
     size: 314880
    PID:  860 ( 572) nvvsvc.exe
    PID:  892 ( 572) svchost.exe
     size: 21504
    PID:  944 ( 572) svchost.exe
     size: 21504
    PID: 1020 ( 572) svchost.exe
     size: 21504
    PID:  316 ( 572) svchost.exe
     size: 21504
    PID:  344 ( 572) svchost.exe
     size: 21504
    PID:  540 (1020) audiodg.exe
     size: 88064
    PID:  616 ( 572) svchost.exe
     size: 21504
    PID:  408 ( 572) SLsvc.exe
    PID: 1068 ( 572) svchost.exe
     size: 21504
    PID: 1192 ( 572) svchost.exe
     size: 21504
    PID: 1212 ( 860) nvvsvc.exe
    PID: 1296 ( 572) aswUpdSv.exe
    PID: 1360 ( 572) ashServ.exe
    PID: 1580 ( 316) C:\Windows\System32\dwm.exe
    PID: 1616 (1560) C:\Windows\explorer.exe
     size: 3080704
      MD5: BBD8E74F23D7605CB0CDB57A1B25D826
    PID: 1876 ( 572) spoolsv.exe
    PID: 1900 ( 572) svchost.exe
     size: 21504
    PID: 1908 ( 344) C:\Windows\System32\taskeng.exe
     size: 169472
      MD5: 5F109032CE46B7184ED9E50F9FE8489E
    PID: 1056 ( 344) taskeng.exe
     size: 169472
    PID: 1332 (1616) C:\Program Files\Windows Defender\MSASCui.exe
     size: 1584184
      MD5: 48DD40677817CE1053C2315F5A87E0D3
    PID: 2840 ( 572) lxbkcoms.exe
     size: 537256
    PID: 3012 ( 572) svchost.exe
     size: 21504
    PID: 3028 ( 572) nvSCPAPISvr.exe
    PID: 1040 ( 572) svchost.exe
     size: 21504
    PID: 2176 ( 572) Guard.exe
    PID: 1444 ( 572) usbctl.exe
     size: 64000
    PID: 1164 ( 572) svchost.exe
     size: 21504
    PID: 2372 ( 572) ashMaiSv.exe
    PID: 2408 ( 572) ashWebSv.exe
    PID: 3548 ( 572) SteamService.exe
    PID: 3640 ( 756) WmiPrvSE.exe
    PID: 3684 ( 756) unsecapp.exe
    PID: 3792 ( 756) WmiPrvSE.exe
    PID: 4588 (4564) C:\Windows\splwow64.exe
     size: 39936
      MD5: 3D85663DB8A364B5A20ECD588CF4C870
    PID: 1428 ( 572) VSSVC.exe
    PID: 4068 ( 572) svchost.exe
     size: 21504
    PID: 3948 ( 788) C:\Windows\System32\taskmgr.exe
     size: 163840
      MD5: EF8AE178FAE3C5F97E383753EB1DF3BA
    PID: 3696 ( 572) msiexec.exe
     size: 71680
    PID: 4780 ( 572) SearchIndexer.exe
     size: 439808
    PID: 4224 ( 572) TrustedInstaller.exe
    PID: 3356 (4780) SearchProtocolHost.exe
     size: 184832
    PID: 4864 (4780) C:\Windows\System32\SearchFilterHost.exe
     size: 87552
      MD5: 87889A983C015080FA813D7E32910D1E
    
    
    --- Browser start & search pages list ---
    Spybot - Search & Destroy browser pages report, 24.09.2009 20:16:15
    
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\Windows\system32\blank.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
      http://go.microsoft.com/fwlink/?LinkId=54896
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
      http://go.microsoft.com/fwlink/?LinkId=69157
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\Windows\SysWOW64\blank.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
      http://go.microsoft.com/fwlink/?LinkId=54896
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
      http://go.microsoft.com/fwlink/?LinkId=69157
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
      http://go.microsoft.com/fwlink/?LinkId=69157
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
      http://go.microsoft.com/fwlink/?LinkId=54896
    
    
    --- Winsock Layered Service Provider list ---
    Namespace Provider  1: E-Mail-Namenshimanbieter
            GUID: {964ACBA2-B2BC-40EB-8C6A-A6DB40161CAE}
        Filename: 
    
    Namespace Provider  2: PNRP-Wolken-Namespaceanbieter
            GUID: {03FE89CE-766D-4976-B9C1-BB9BC42C7B4D}
        Filename: 
    
    Namespace Provider  3: PNRP-Namen-Namespaceanbieter
            GUID: {03FE89CD-766D-4976-B9C1-BB9BC42C7B4D}
        Filename: 
    
    
    
    --- Uninstall list ---
      (AddressBook)
    
    Adobe Flash Player 10 ActiveX 10.0.32.18 (Adobe Flash Player ActiveX)
       uninstall cmd: C:\Windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe
           publisher: Adobe Systems Incorporated
           help link: http://www.adobe.com/go/flashplayer_support/
    
    Adobe Flash Player 10 Plugin 10.0.32.18 (Adobe Flash Player Plugin)
       uninstall cmd: C:\Windows\SysWOW64\Macromed\Flash\uninstall_plugin.exe
           publisher: Adobe Systems Incorporated
    
    aonFlex  (aonFlex)
    install location: C:\PROGRA~2\aon\aonFlex
       uninstall cmd: "C:\ProgramData\{400125FA-352E-476D-9501-ECDBDA45C27C}\Setup.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://kundenbereich.aon.at
    
    aonFlex Installation  (aonFlex Installation)
    install location: C:\Program Files (x86)\aon\aonFlex_installer
       uninstall cmd: "C:\ProgramData\{69C172F6-1B92-4438-B0B4-527F81384E8D}\A1_MainInstaller.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://kundenbereich.aon.at
    
    aonUpdate  (aonUpdate)
    install location: C:\Program Files (x86)\aon\aonUpdate
       uninstall cmd: "C:\ProgramData\{C3358ED5-0ADD-4BA0-8F60-B5A7CD34BD14}\setup.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://www.aon.at
    
     1.00 (AudELSvc)
    install location: C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\AudELSvc
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9  /remove
           publisher: Creative Technology Limited
    
    Creative Audio-Systemsteuerung 2.56 (AudioCS)
    install location: C:\Program Files (x86)\Creative\AudioCS
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
    avast! Antivirus 4.8 (avast!)
     version (major): 4
     version (minor): 8
    install location: C:\Avast
      install source: C:\Users\Sherkas\DOWNLO~1
       uninstall cmd: C:\Avast\aswRunDll.exe "C:\Avast\Setup\setiface.dll",RunSetup
           publisher: Alwil Software
           help link: http://www.avast.at
    
     2.30 (CADI)
    install location: C:\Program Files (x86)\Creative\ShareDLL\CADI
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
    CCleaner (remove only)  (CCleaner)
       uninstall cmd: "C:\CCleaner\uninst.exe"
           publisher: Piriform
    
      (Connection Manager)
    
    Controller  (Controller)
    install location: C:\Program Files (x86)\aon\aonController
       uninstall cmd: "C:\ProgramData\{8AF9D3CF-B9B5-4F8E-B47F-D26DF984D190}\Setup.exe" REMOVE=TRUE MODIFY=FALSE
           publisher: Telekom Austria TA AG
            comments: Alle Rechte vorbehalten.
           help link: http://kundenbereich.aon.at
    
    Creative Software AutoUpdate 1.40 (Creative Software AutoUpdate)
    install location: C:\Program Files (x86)\Creative\Shared Files\Software Update
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
    Creative Sound Blaster Properties x64 Edition  (Creative Sound Blaster Properties x64 Edition)
       uninstall cmd: "C:\Program Files (x86)\Creative Installation Information\SBCONTROL64\Setup.exe" /remove /l0x0007
    
      (DirectDrawEx)
    
    Microsoft Office Enterprise 2007 12.0.6425.1000 (ENTERPRISE)
    install location: D:\Microsoft Office
       uninstall cmd: "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
           publisher: Microsoft Corporation
    
    EVEREST Ultimate Edition v5.02 5.02 (EVEREST Ultimate Edition_is1)
    install location: C:\EVEREST\
       uninstall cmd: "C:\EVEREST\unins000.exe"
           publisher: Lavalys, Inc.
           help link: http://www.lavalys.com
    
      (Fontcore)
    
    Free PDF to Word Doc Converter v1.1 1.1 (Free PDF to Word Doc Converter_is1)
        install date: 20090920
    install location: D:\PDF to Word\
       uninstall cmd: "D:\PDF to Word\unins000.exe"
           publisher: www.hellopdf.com
           help link: http://www.hellopdf.com/faq.php
    
    Heroes of Might and Magic® III Complete  (Heroes of Might and Magic® III)
       uninstall cmd: C:\Windows\IsUninst.exe -f"D:\Heroes of Might and Magic Complete\Heroes of Might and Magic® III.isu" -c"C:\Program Files (x86)\Common Files\3DO Shared\3DOUnInst.dll
    
    HijackThis 2.0.2 2.0.2 (HijackThis)
       uninstall cmd: "C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe" /uninstall
           publisher: TrendMicro
    
     1.00 (Host OpenAL)
    install location: C:\Windows\system32\
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{AAEF329E-F353-46C9-933D-24A571986093}\setup.exe" -l0x7  /remove
           publisher: Creative Technology Limited
    
      (IE40)
    
      (IE4Data)
    
      (IE5BAKEX)
    
      (IEData)
    
    Miranda IM 0.8.6  (Miranda IM)
       uninstall cmd: C:\Miranda IM\Uninstall.exe
    
      (MobileOptionPack)
    
    Mozilla Firefox (3.5.3) 3.5.3 (de) (Mozilla Firefox (3.5.3))
    install location: D:\FireFox
       uninstall cmd: D:\FireFox\uninstall\helper.exe
           publisher: Mozilla
            comments: Mozilla Firefox
    
    NVIDIA Stereoscopic 3D Driver 7.16.11.9062 (NVIDIAStereo)
    install location: C:\Program Files (x86)\NVIDIA Corporation\3D Vision
       uninstall cmd: "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
           publisher: NVIDIA Corporation
    
    Microsoft Office Language Pack 2007 - German/Deutsch 12.0.6425.1000 (OMUI.de-de)
    install location: D:\Microsoft Office
       uninstall cmd: "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall OMUI.DE-DE /dll OSETUP.DLL
           publisher: Microsoft Corporation
    
    OpenAL  (OpenAL)
       uninstall cmd: "C:\Program Files (x86)\OpenAL\MSI80A5.tmp" /U
    
      (SchedulingAgent)
    
    Half-Life 2  (Steam App 220)
    install location: d:\steam\steamapps\gerriaut\half-life 2
       uninstall cmd: "D:\Steam\steam.exe" steam://uninstall/220
           publisher: Valve
           help link: http://support.steampowered.com/
    
    Day of Defeat: Source  (Steam App 300)
    install location: d:\steam\steamapps\gerriaut\day of defeat source
       uninstall cmd: "D:\Steam\steam.exe" steam://uninstall/300
           publisher: Valve
           help link: http://support.steampowered.com/
    
    Unlocker 1.8.7 1.8.7 (Unlocker)
       uninstall cmd: C:\Program Files (x86)\Unlocker\uninst.exe
           publisher: Cedrick Collomb
    
    µTorrent 1.8.4 (uTorrent)
    install location: C:\Program Files (x86)\uTorrent
       uninstall cmd: "C:\Program Files (x86)\uTorrent\uTorrent.exe" /UNINSTALL
    
    Venetica  (Venetica_is1)
        install date: 20090920
    install location: D:\Venetica\
       uninstall cmd: "D:\Venetica\unins000.exe"
           publisher: dtp
    
      (WIC)
    
    Windows Live Essentials 14.0.8089.0726 (WinLiveSuite_Wave3)
    install location: C:\Program Files (x86)\Windows Live\
       uninstall cmd: C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
           publisher: Microsoft Corporation
    
    Steam 1.0.0.0 ({048298C9-A4D3-490B-9FF9-AB023A9238F3})
             version: 16777216
     version (major): 1
      estimated size: 1526
        install date: 20090919
      install source: C:\Users\Sherkas\Downloads\
       uninstall cmd: MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
           publisher: Valve Corporation
            comments: Steam
           help link: http://support.steampowered.com/
    
     2.56 ({17E96A7F-AFE3-4171-87B1-583E376319E8})
             version: 37224448
    install location: C:\Program Files (x86)\Creative\AudioCS
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    aonUpdate 1.0 ({1ED31028-6D65-4CFD-AD03-8E484A052FE7})
             version: 16777216
     version (major): 1
      estimated size: 4168
        install date: 20090921
    install location: C:\Program Files (x86)\aon\aonUpdate
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia3\
       uninstall cmd: C:\ProgramData\{C3358ED5-0ADD-4BA0-8F60-B5A7CD34BD14}\setup.exe
           publisher: Telekom Austria TA AG
    
    Windows Live-Uploadtool 14.0.8014.1029 ({205C6BDD-7B73-42DE-8505-9A093F35A238})
             version: 234889038
     version (major): 14
      estimated size: 225
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\687e0b971ca3a11\
       uninstall cmd: MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
           publisher: Microsoft Corporation
           help link: http://go.microsoft.com/fwlink/?LinkId=118310
    
    MSVCRT 14.0.1468.721 ({22B775E7-6C42-4FC5-8E10-9A5E3257BD94})
             version: 234882492
     version (major): 14
      estimated size: 1856
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\5c9a5fe71ca3a11\
       uninstall cmd: MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
           publisher: Microsoft
    
    Gigabyte Raid Configurer 1.00.0000 ({3A1B5D40-41E9-43FA-8C7B-A8667F5586EF})
             version: 16777216
        install date: 20090919
    install location: C:\Program Files (x86)\Gigabyte Technology Corp.\Gigabyte Raid Configurer
      install source: C:\Users\Sherkas\Downloads\GSATA\
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x7  -removeonly
           publisher: Gigabyte Technology Corp.
    
    Autostart-Manager 2006 6.00.0000 ({3B11379A-9196-4228-981A-BB255E13109E})
             version: 100663296
     version (major): 6
      estimated size: 784
        install date: 20090922
    install location: C:\Program Files (x86)\Tools&More\Autostart-Manager\
      install source: C:\Windows\Downloaded Installations\{28D12382-C297-42B6-AF6F-039A4D297EBD}\
       uninstall cmd: MsiExec.exe /I{3B11379A-9196-4228-981A-BB255E13109E}
           publisher: Wirth New Media Sarl
    
    Windows Live Communications Platform 14.0.8064.206 ({3B4E636E-9D65-4D67-BA61-189800823F52})
             version: 234889088
     version (major): 14
      estimated size: 1945
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\60effe671ca3a11\
       uninstall cmd: MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
           publisher: Microsoft Corporation
    
    Windows Live Messenger 14.0.8089.0726 ({41E654A9-26D0-4EAC-854B-0FA824FFFABB})
             version: 234889113
     version (major): 14
      estimated size: 40155
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\ac4804c71ca3a11\
       uninstall cmd: MsiExec.exe /X{41E654A9-26D0-4EAC-854B-0FA824FFFABB}
           publisher: Microsoft Corporation
    
    Nation Red 1.05.0000 ({43757761-174D-4835-AB38-0422F5F050C6})
             version: 17104896
     version (major): 1
     version (minor): 5
      estimated size: 493640
        install date: 20090920
    install location: E:\NationRed\
      install source: C:\Users\Sherkas\AppData\Local\Temp\miaD125.tmp\
       uninstall cmd: MsiExec.exe /I{43757761-174D-4835-AB38-0422F5F050C6}
           publisher: KaosKontrol, Inc.
             contact: Technical Support
           help link: www.diezelpower.com
    
    Windows Live Anmelde-Assistent 5.000.818.5 ({52B97218-98CB-4B8B-9283-D213C85E1AA4})
             version: 83886898
     version (major): 5
      estimated size: 1981
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\6ca631771ca3a11\
       uninstall cmd: MsiExec.exe /I{52B97218-98CB-4B8B-9283-D213C85E1AA4}
           publisher: Microsoft Corporation
    
      ({582876EC-A178-44D4-9823-C10D6C62EAFF})
       uninstall cmd: MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
    
    Windows Live Call 14.0.8064.0206 ({5FC68772-6D56-41C6-9DF1-24E868198AE6})
             version: 234889088
     version (major): 14
      estimated size: 1663
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\651f50371ca3a11\
       uninstall cmd: MsiExec.exe /I{5FC68772-6D56-41C6-9DF1-24E868198AE6}
           publisher: Microsoft Corporation
    
     2.30 ({700932B3-A964-4878-82A2-96054622A1F7})
             version: 35520512
    install location: C:\Program Files (x86)\Creative\ShareDLL\CADI
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    Realtek 8136 8168 8169 Ethernet Driver 1.00.0007 ({8833FFB6-5B0C-4764-81AA-06DFEED9A476})
             version: 16777223
        install date: 20090919
    install location: C:\Program Files (x86)\Realtek\VISTA_8169
      install source: C:\Users\Sherkas\Downloads\lan_Vista\
       uninstall cmd: C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
           publisher: Realtek
    
     1.40 ({88B1984E-36F0-47B8-B8DC-728966807A9C})
             version: 19398656
    install location: C:\Program Files (x86)\Creative\Shared Files\Software Update
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    Microsoft Office Access MUI (German) 2007 12.0.6425.1000 ({90120000-0015-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 33096
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0015-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0015-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0015-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0015-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Access MUI (English) 2007 12.0.6425.1000 ({90120000-0015-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 72184
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0117-0409-0000-0000000FF1CE}-D\Access.en-us\
       uninstall cmd: MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Access 2007 Help (KB963663)  ({90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{6B76A18A-AA1E-42AB-A7AD-6C84BBB43987})
       uninstall cmd: msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963663
    
    Microsoft Office Excel MUI (German) 2007 12.0.6425.1000 ({90120000-0016-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 47924
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0016-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0016-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update für Microsoft Office Excel 2007 Help (KB963678)  ({90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF})
       uninstall cmd: msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963678
    
    Microsoft Office Excel MUI (English) 2007 12.0.6425.1000 ({90120000-0016-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 35464
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0016-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office Excel 2007 Help (KB963678)  ({90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{199DF7B6-169C-448C-B511-1054101BE9C9})
       uninstall cmd: msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963678
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office SharePoint Designer MUI (German) 2007 12.0.6425.1000 ({90120000-0017-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 29309
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0017-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0017-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)  ({90120000-0017-0407-0000-0000000FF1CE}_OMUI.de-de_{0B9EAEAC-F271-45DC-BDCB-06ABEEF19825})
       uninstall cmd: msiexec /package {90120000-0017-0407-0000-0000000FF1CE} /uninstall {0B9EAEAC-F271-45DC-BDCB-06ABEEF19825}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office PowerPoint MUI (German) 2007 12.0.6425.1000 ({90120000-0018-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 23233
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0018-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0018-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0018-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update für Microsoft Office Powerpoint 2007 Help (KB963669)  ({90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96})
       uninstall cmd: msiexec /package {90120000-0018-0407-0000-0000000FF1CE} /uninstall {EA160DA3-E9B5-4D03-A518-21D306665B96}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963669
    
    Microsoft Office PowerPoint MUI (English) 2007 12.0.6425.1000 ({90120000-0018-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 30337
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0018-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Powerpoint 2007 Help (KB963669)  ({90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{397B1D4F-ED7B-4ACA-A637-43B670843876})
       uninstall cmd: msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963669
    
    Microsoft Office Publisher MUI (German) 2007 12.0.6425.1000 ({90120000-0019-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 25106
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0019-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0019-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0019-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0019-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Publisher MUI (English) 2007 12.0.6425.1000 ({90120000-0019-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 33742
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0019-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office Publisher 2007 Help (KB963667)  ({90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2E40DE55-B289-4C8B-8901-5D369B16814F})
       uninstall cmd: msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963667
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Outlook MUI (German) 2007 12.0.6425.1000 ({90120000-001A-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 34616
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001A-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001A-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update für Microsoft Office Outlook 2007 Help (KB963677)  ({90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30})
       uninstall cmd: msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {F6828576-6F79-470D-AB50-69D1BBADBD30}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963677
    
    Microsoft Office Outlook MUI (English) 2007 12.0.6425.1000 ({90120000-001A-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 40740
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001A-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office Outlook 2007 Help (KB963677)  ({90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{0451F231-E3E3-4943-AB9F-58EB96171784})
       uninstall cmd: msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963677
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Word MUI (German) 2007 12.0.6425.1000 ({90120000-001B-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 27885
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001B-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001B-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update für Microsoft Office Word 2007 Help (KB963665)  ({90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1})
       uninstall cmd: msiexec /package {90120000-001B-0407-0000-0000000FF1CE} /uninstall {38472199-D7B6-4833-A949-10E4EE6365A1}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963665
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-001B-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Word MUI (English) 2007 12.0.6425.1000 ({90120000-001B-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 33737
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-001B-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Word 2007 Help (KB963665)  ({90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{80E762AA-C921-4839-9D7D-DB62A72C0726})
       uninstall cmd: msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963665
    
    Microsoft Office Proof (German) 2007 12.0.6425.1000 ({90120000-001F-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 58985
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0407-0000-0000000FF1CE}-D\Proof.de\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0407-0000-0000000FF1CE}_OMUI.de-de_{A0516415-ED61-419A-981D-93596DA74165})
       uninstall cmd: msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (English) 2007 12.0.6425.1000 ({90120000-001F-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 60887
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\Proof.en\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045})
       uninstall cmd: msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0409-0000-0000000FF1CE}_OMUI.de-de_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045})
       uninstall cmd: msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (French) 2007 12.0.6425.1000 ({90120000-001F-040C-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 24672
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\Proof.fr\
       uninstall cmd: MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787})
       uninstall cmd: msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-040C-0000-0000000FF1CE}_OMUI.de-de_{F580DDD5-8D37-4998-968E-EBB76BB86787})
       uninstall cmd: msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (Italian) 2007 12.0.6425.1000 ({90120000-001F-0410-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 22143
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0407-0000-0000000FF1CE}-D\Proof.it\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0410-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0410-0000-0000000FF1CE}_OMUI.de-de_{322296D4-1EAE-4030-9FBC-D2787EB25FA2})
       uninstall cmd: msiexec /package {90120000-001F-0410-0000-0000000FF1CE} /uninstall {322296D4-1EAE-4030-9FBC-D2787EB25FA2}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proof (Spanish) 2007 12.0.6425.1000 ({90120000-001F-0C0A-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 45901
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\Proof.es\
       uninstall cmd: MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)  ({90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9})
       uninstall cmd: msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192})
       uninstall cmd: msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {E64BA721-2310-4B55-BE5A-2925F9706192}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-002A-0407-1000-0000000FF1CE}_OMUI.de-de_{26454C26-D259-4543-AA60-3189E09C5F76})
       uninstall cmd: msiexec /package {90120000-002A-0407-1000-0000000FF1CE} /uninstall {26454C26-D259-4543-AA60-3189E09C5F76}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-002A-0409-1000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-002A-0409-1000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Proofing (German) 2007 12.0.4518.1014 ({90120000-002C-0407-0000-0000000FF1CE})
             version: 201331110
     version (major): 12
      estimated size: 498
        install date: 20090920
    install location: D:\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-002C-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Proofing (English) 2007 12.0.4518.1014 ({90120000-002C-0409-0000-0000000FF1CE})
             version: 201331110
     version (major): 12
      estimated size: 506
        install date: 20090920
    install location: D:\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-002C-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office Enterprise 2007 12.0.6425.1000 ({90120000-0030-0000-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 1008231
        install date: 20090924
    install location: D:\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Outlook 2007 Junk Email Filter (kb973514)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{03B11C77-336F-43B4-9B43-79890BA84504})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {03B11C77-336F-43B4-9B43-79890BA84504}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/973514
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Security Update for Microsoft Office system 2007 (KB969613)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969613
    
    Security Update for 2007 Microsoft Office System (KB969559)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969559
    
    Update for Microsoft Office Outlook 2007 (KB969907)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{74F98B24-AFBD-4800-9BD6-87D349B5C462})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {74F98B24-AFBD-4800-9BD6-87D349B5C462}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969907
    
    Security Update for Microsoft Office PowerPoint 2007 (KB957789)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7559E742-FF9F-4FAE-B279-008ED296CB4D})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/957789
    
    Security Update for Microsoft Office Publisher 2007 (KB969693)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7BE67088-1EB3-4569-8E75-DDAFBF61BC4E})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969693
    
    Security Update for Microsoft Office Excel 2007 (KB969682)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C03803BD-745A-46F8-8557-817DED578780})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C03803BD-745A-46F8-8557-817DED578780}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969682
    
    Update for 2007 Microsoft Office System (KB967642)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/967642
    
    Security Update for 2007 Microsoft Office System (KB969679)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C66E4A6C-6E07-4C63-8CCD-2493B5087C73})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C66E4A6C-6E07-4C63-8CCD-2493B5087C73}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969679
    
    Security Update for Microsoft Office Word 2007 (KB969604)  ({90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CF3D6499-709C-43D0-8908-BC5652656050})
       uninstall cmd: msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/969604
    
    Microsoft Office InfoPath MUI (German) 2007 12.0.6425.1000 ({90120000-0044-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 8943
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0044-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0044-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0044-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0044-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office InfoPath MUI (English) 2007 12.0.6425.1000 ({90120000-0044-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 18098
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0044-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Update for Microsoft Office Infopath 2007 Help (KB963662)  ({90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{716B81B8-B13C-41DF-8EAC-7A2F656CAB63})
       uninstall cmd: msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {716B81B8-B13C-41DF-8EAC-7A2F656CAB63}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963662
    
    Microsoft Office Shared MUI (German) 2007 12.0.6425.1000 ({90120000-006E-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 38718
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-006E-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-006E-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-006E-0407-0000-0000000FF1CE}_OMUI.de-de_{26454C26-D259-4543-AA60-3189E09C5F76})
       uninstall cmd: msiexec /package {90120000-006E-0407-0000-0000000FF1CE} /uninstall {26454C26-D259-4543-AA60-3189E09C5F76}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Shared MUI (English) 2007 12.0.6425.1000 ({90120000-006E-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 42370
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office 2007 Help for Common Features (KB963673)  ({90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{AB365889-0395-4FAD-B702-CA5985D53D42})
       uninstall cmd: msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963673
    
    Update for Microsoft Office Script Editor Help (KB963671)  ({90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{CD11C6A2-FFC6-4271-8EAB-79C3582F505C})
       uninstall cmd: msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963671
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office OneNote MUI (German) 2007 12.0.6425.1000 ({90120000-00A1-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 36114
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-00A1-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-00A1-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00A1-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-00A1-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office OneNote MUI (English) 2007 12.0.6425.1000 ({90120000-00A1-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 39722
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-00A1-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Update for Microsoft Office OneNote 2007 Help (KB963670)  ({90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2744EF05-38E1-4D5D-B333-E021EDAEA245})
       uninstall cmd: msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2744EF05-38E1-4D5D-B333-E021EDAEA245}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/963670
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Groove MUI (German) 2007 12.0.6425.1000 ({90120000-00BA-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 4434
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-00BA-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-00BA-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00BA-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-00BA-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Groove MUI (English) 2007 12.0.6425.1000 ({90120000-00BA-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 3566
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0114-0409-0000-0000000FF1CE}-D\Groove.en-us\
       uninstall cmd: MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office O MUI (German) 2007 12.0.6425.1000 ({90120000-0100-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 7053
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0100-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0100-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0100-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office X MUI (German) 2007 12.0.6425.1000 ({90120000-0101-0407-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 506
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0101-0407-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0101-0407-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0101-0407-0000-0000000FF1CE}_OMUI.de-de_{9BD40163-B95D-4B07-8991-0AB775B6D88B})
       uninstall cmd: msiexec /package {90120000-0101-0407-0000-0000000FF1CE} /uninstall {9BD40163-B95D-4B07-8991-0AB775B6D88B}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Groove Setup Metadata MUI (English) 2007 12.0.6425.1000 ({90120000-0114-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 502
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0114-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Shared Setup Metadata MUI (English) 2007 12.0.6425.1000 ({90120000-0115-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 502
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0115-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0116-0409-1000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E})
       uninstall cmd: msiexec /package {90120000-0116-0409-1000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Microsoft Office Access Setup Metadata MUI (English) 2007 12.0.6425.1000 ({90120000-0117-0409-0000-0000000FF1CE})
             version: 201333017
     version (major): 12
      estimated size: 502
        install date: 20090923
    install location: C:\Program Files (x86)\Microsoft Office\
      install source: D:\MSOCache\All Users\{90120000-0117-0409-0000-0000000FF1CE}-D\
       uninstall cmd: MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
           publisher: Microsoft Corporation
    
    Microsoft Office 2007 Service Pack 2 (SP2)  ({90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E})
       uninstall cmd: msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
           publisher: Microsoft
           help link: http://support.microsoft.com/kb/954711
    
    Controller 2.7 ({904B64C4-49D8-4941-A2B6-D13D06C5CD8B})
             version: 34013184
     version (major): 2
     version (minor): 7
      estimated size: 35855
        install date: 20090921
    install location: C:\Program Files (x86)\aon\aonController
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia2\
       uninstall cmd: C:\ProgramData\{8AF9D3CF-B9B5-4F8E-B47F-D26DF984D190}\Setup.exe
           publisher: Telekom Austria TA AG
    
     1.00 ({AAEF329E-F353-46C9-933D-24A571986093})
             version: 16777216
    install location: C:\Windows\system32\
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{AAEF329E-F353-46C9-933D-24A571986093}\setup.exe" -l0x7 
           publisher: Creative Technology Limited
    
    Adobe Reader 9.1.3 - Deutsch 9.1.3 ({AC76BA86-7AD7-1031-7B44-A91000000001})
             version: 151060483
     version (major): 9
     version (minor): 1
      estimated size: 246224
        install date: 20090920
      install source: C:\Users\Sherkas\AppData\Local\Adobe\Reader 9.1\Setup Files\
       uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1031-7B44-A91000000001}
           publisher: Adobe Systems Incorporated
            comments:    
             contact: Kundendienst
           help link: http://www.adobe.de/support/main.html
              readme: C:\AdobeReader 9.0\Liesmich.htm
    
    Spybot - Search & Destroy 1.6.2 ({B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1)
        install date: 20090924
    install location: C:\Program Files (x86)\Spybot - Search & Destroy\
       uninstall cmd: "C:\Program Files (x86)\Spybot - Search & Destroy\unins000.exe"
           publisher: Safer Networking Limited
           help link: http://www.safer-networking.org/index.php?page=support
    
    NVIDIA PhysX 9.09.0814 ({C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B})
             version: 151585582
     version (major): 9
     version (minor): 9
      estimated size: 122956
        install date: 20090919
    install location: C:\Windows\TEMP\
      install source: C:\Program Files (x86)\Common Files\Wise Installation Wizard\
       uninstall cmd: MsiExec.exe /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
           publisher: NVIDIA Corporation
            comments: PhysX Driver & Engines: 2.3.1/2/3; 2.4.0/1/4; 2.5.0/1/2/3/4; 2.6.0/1/2/3/4; 2.7.0/1/2/3/4/5/6; 2.8.0/1
           help link: www.NVIDIA.com
    
     1.00 ({CC3D3A93-C433-4329-AC3A-7EFC52A332C2})
             version: 16777216
    install location: C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\AudELSvc
       uninstall cmd: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 
           publisher: Creative Technology Limited
    
      ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB350003)
    
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) 1 ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595)
       uninstall cmd: C:\Windows\SysWOW64\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall  /qb+ REBOOTPROMPT=""
           publisher: Microsoft Corporation
            comments: This hotfix is for Microsoft .NET Framework 3.5 SP1.
    If you later install a more recent service pack, this hotfix will be uninstalled automatically.
    For more information, visit http://support.microsoft.com/kb/953595.
           help link: http://support.microsoft.com/kb/953595
    
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) 1 ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484)
       uninstall cmd: C:\Windows\SysWOW64\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {08155812-0202-4D5F-A7FF-12A2782DC548} /qb+ REBOOTPROMPT=""
           publisher: Microsoft Corporation
            comments: This hotfix is for Microsoft .NET Framework 3.5 SP1.
    If you later install a more recent service pack, this hotfix will be uninstalled automatically.
    For more information, visit http://support.microsoft.com/kb/958484.
           help link: http://support.microsoft.com/kb/958484
    
      ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB960043)
    
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707) 1 ({CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707)
       uninstall cmd: C:\Windows\SysWOW64\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
           publisher: Microsoft Corporation
            comments: This update is for Microsoft .NET Framework 3.5 SP1.
    If you later install a more recent service pack, this update will be uninstalled automatically.
    For more information, visit http://support.microsoft.com/kb/963707.
           help link: http://support.microsoft.com/kb/963707
    
    aonFlex 1.4 ({E14EF0C8-49F1-436A-8F82-D7E06C73C283})
             version: 17039360
     version (major): 1
     version (minor): 4
      estimated size: 5799
        install date: 20090921
    install location: C:\PROGRA~2\aon\aonFlex
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia2\
       uninstall cmd: C:\ProgramData\{400125FA-352E-476D-9501-ECDBDA45C27C}\Setup.exe
           publisher: Telekom Austria TA AG
    
    Razer Krait 5.01 ({E6DA58C0-4EC5-4F5E-B73E-2F22ED30ACFC})
             version: 83951616
        install date: 20090919
    install location: C:\Razer Krait
      install source: C:\Users\Sherkas\AppData\Local\Temp\Temp1_Krait_20070410_2.zip\Krait_20070410_2\20070410\
       uninstall cmd: C:\Program Files (x86)\InstallShield Installation Information\{E6DA58C0-4EC5-4F5E-B73E-2F22ED30ACFC}\~setup.exe -runfromtemp -l0x0009 -removeonly
           publisher:  Razer USA Ltd.
           help link: www.razerpro.com
    
    aonFlex Installation 1.4 ({E7943C25-4043-41B4-A688-8B1CF691A7F1})
             version: 17039360
     version (major): 1
     version (minor): 4
      estimated size: 13546
        install date: 20090921
    install location: C:\Program Files (x86)\aon\aonFlex_installer
      install source: C:\Users\Sherkas\AppData\Local\Temp\mia2\
       uninstall cmd: C:\ProgramData\{69C172F6-1B92-4438-B0B4-527F81384E8D}\A1_MainInstaller.exe
           publisher: Telekom Austria TA AG
    
    Microsoft Choice Guard 2.0.48.0 ({F0E12BBA-AD66-4022-A453-A1C8A0C4D570})
             version: 33554480
     version (major): 2
      estimated size: 208
        install date: 20090920
    install location: C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Choice Guard\
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\73ecd5671ca3a11\
       uninstall cmd: MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
           publisher: Microsoft Corporation
    
    Windows Live Essentials 14.0.8089.726 ({F8FF18EE-264A-43FD-B2F6-5EAD40798C2F})
             version: 234889113
     version (major): 14
      estimated size: 1259
        install date: 20090920
      install source: C:\Program Files (x86)\Common Files\Windows Live\.cache\70b48dc71ca3a11\
       uninstall cmd: MsiExec.exe /I{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}
           publisher: Microsoft Corporation
           help link: http://support.live.com/
    
    
    
    --- System Services ---
    Service (registry key): .NET CLR Data
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NET CLR Networking
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NET Data Provider for Oracle
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NET Data Provider for SqlServer
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): .NETFramework
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): ACPI
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft ACPI-Treiber
        Image path: system32\drivers\acpi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): adp94xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adp94xx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adpahci
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adpahci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adpu160m
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adpu160m.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adpu320
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\adpu320.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): adsi
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): AeLookupSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\aelupsvc.dll,-1
       Description: @%SystemRoot%\system32\aelupsvc.dll,-2
       Object name: localSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): AFD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Ancilliary Function Driver for Winsock
       Description: Ancilliary Function Driver for Winsock
        Image path: \SystemRoot\system32\drivers\afd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): agp440
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel AGP Bus Filter
        Image path: \SystemRoot\system32\drivers\agp440.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): aic78xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\djsvs.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ALG
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\Alg.exe,-112
       Description: @%SystemRoot%\system32\Alg.exe,-113
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\alg.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): aliide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\aliide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): amdide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\amdide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): AmdK8
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: AMD K8 Processor Driver
        Image path: \SystemRoot\system32\drivers\amdk8.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Appinfo
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\appinfo.dll,-100
       Description: @%systemroot%\system32\appinfo.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,ProfSvc
    
    Service (registry key): arc
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\arc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): arcsas
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\arcsas.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): aswFsBlk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: aswFsBlk
       Description: avast! mini-filter driver (aswFsBlk)
        Image path: system32\DRIVERS\aswFsBlk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): aswMonFlt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: aswMonFlt
       Description: avast! mini-filter driver (aswMonFlt)
        Image path: system32\DRIVERS\aswMonFlt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): aswRdr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: aswRdr
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: tcpip
    
    Service (registry key): aswSP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Self Protection
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): aswTdi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Network Shield Support
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: tcpip
    
    Service (registry key): aswUpdSv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! iAVS4 Control Service
       Description: Bietet das automatische Update für avast! Antivirus.
       Object name: LocalSystem
        Image path: "C:\Avast\aswUpdSv.exe"
        Image size: 18752
         Image MD5: 5E692B54EC3D9C586417F9C5822CBEC9
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
    
    Service (registry key): AsyncMac
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32000
       Description: @%systemroot%\system32\rascfg.dll,-32000
        Image path: system32\DRIVERS\asyncmac.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): atapi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IDE-Kanal
        Image path: system32\drivers\atapi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): AudioEndpointBuilder
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\audiosrv.dll,-204
       Description: @%SystemRoot%\System32\audiosrv.dll,-205
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay
    
    Service (registry key): AudioSrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\audiosrv.dll,-200
       Description: @%SystemRoot%\System32\audiosrv.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: AudioEndpointBuilder,RpcSs,MMCSS
    
    Service (registry key): avast! Antivirus
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Antivirus
       Description: Verwaltet und implementiert avast! Antivirus Dienste für diesen Computer. Dies beinhaltet den residenten Schutz, den Virus-Container und den Timer.
       Object name: LocalSystem
        Image path: "C:\Avast\ashServ.exe"
        Image size: 138680
         Image MD5: 72C4BB55413D2D621BCC1DBF4074EB5D
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
     Depends On services: aswMonFlt,RpcSS
    
    Service (registry key): avast! Mail Scanner
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Mail Scanner
       Description: Implementiert Mailüberprüfung durch avast! antivirus.
       Object name: LocalSystem
        Image path: "C:\Avast\ashMaiSv.exe" /service
        Image size: 254040
         Image MD5: AEF50B1CEA979739EDE53C68556B95E5
       Control Set: CurrentControlSet
             Start: 3
              Type: 272
     Error Control: 1
     Depends On services: "avast! Antivirus"
    
    Service (registry key): avast! Web Scanner
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: avast! Web Scanner
       Description: Implementiert Internetüberprüfung (HTTP) durch avast! antivirus.
       Object name: LocalSystem
        Image path: "C:\Avast\ashWebSv.exe" /service
        Image size: 352920
         Image MD5: A62A0418BE5A5B8B0ECF3D8F73325113
       Control Set: CurrentControlSet
             Start: 3
              Type: 272
     Error Control: 1
     Depends On services: "avast! Antivirus"
    
    Service (registry key): BattC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): BFE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\bfe.dll,-1001
       Description: @%SystemRoot%\system32\bfe.dll,-1002
       Object name: NT AUTHORITY\LocalService
        Image path: %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): BITS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\qmgr.dll,-1000
       Description: @%SystemRoot%\system32\qmgr.dll,-1001
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,EventSystem
    
    Service (registry key): blbdrive
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\blbdrive.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): bowser
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Bowser
       Description: Implements the datagram receiver for the computer browser browser service.
        Image path: system32\DRIVERS\bowser.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): BrFiltLo
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother USB Mass-Storage Lower Filter Driver
        Image path: \SystemRoot\system32\drivers\brfiltlo.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): BrFiltUp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother USB Mass-Storage Upper Filter Driver
        Image path: \SystemRoot\system32\drivers\brfiltup.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Browser
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\browser.dll,-100
       Description: @%systemroot%\system32\browser.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: LanmanWorkstation,LanmanServer
    
    Service (registry key): Brserid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother MFC Serial Port Interface Driver (WDM)
        Image path: \SystemRoot\system32\drivers\brserid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): BrSerWdm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother WDM Serial driver
        Image path: \SystemRoot\system32\drivers\brserwdm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): BrUsbMdm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother MFC USB Fax Only Modem
        Image path: \SystemRoot\system32\drivers\brusbmdm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): BrUsbSer
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Brother MFC USB Serial WDM Driver
        Image path: \SystemRoot\system32\drivers\brusbser.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): BTHMODEM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Bluetooth Serial Communications Driver
        Image path: \SystemRoot\system32\drivers\bthmodem.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): cdfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: CD/DVD File System Reader
       Description: ISO9660/Joliet File System Reader for CD/DVDs. (Core) (All pieces)
        Image path: system32\DRIVERS\cdfs.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 2
     Error Control: 1
     Depends On group: "SCSI CDROM Class"
    
    Service (registry key): cdrom
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: CD-ROM-Laufwerktreiber
        Image path: system32\DRIVERS\cdrom.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): CertPropSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\certprop.dll,-11
       Description: @%SystemRoot%\System32\certprop.dll,-12
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): circlass
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Consumer IR Devices
        Image path: \SystemRoot\system32\drivers\circlass.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): CLFS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Common Log (CLFS)
       Description: Common Log (CLFS)
        Image path: System32\CLFS.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): clr_optimization_v2.0.50727_32
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft .NET Framework NGEN v2.0.50727_X86
       Description: Microsoft .NET Framework NGEN
       Object name: LocalSystem
        Image path: %systemroot%\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
        Image size: 69632
         Image MD5: D87ACAED61E417BBA546CED5E7E36D9C
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
    
    Service (registry key): clr_optimization_v2.0.50727_64
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft .NET Framework NGEN v2.0.50727_X64
       Description: Microsoft .NET Framework NGEN
       Object name: LocalSystem
        Image path: %systemroot%\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
        Image size: 93184
         Image MD5: FA58B51ED71C9133E141164EAA7C54EB
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
    
    Service (registry key): cmdide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\cmdide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): Compbatt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Composite Battery Driver
        Image path: \SystemRoot\system32\drivers\compbatt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): COMSysApp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-947
       Description: @comres.dll,-948
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
        Image size: 7168
         Image MD5: BE01E566D1F569AAB32D0335613E1EEA
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,EventSystem,SENS
    
    Service (registry key): crcdisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Crcdisk Filter Driver
        Image path: system32\drivers\crcdisk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): Creative Audio Engine Licensing Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Creative Audio Engine Licensing Service
       Description: Provides licensing services for Creative Audio Engine.
       Object name: LocalSystem
        Image path: "C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe"
        Image size: 79360
         Image MD5: C0EAD9F8AB83D41FF07303C75589C2B8
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): crypt32
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): CryptSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\cryptsvc.dll,-1001
       Description: @%SystemRoot%\system32\cryptsvc.dll,-1002
       Object name: NT Authority\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): DCLocator
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): DcomLaunch
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @oleres.dll,-5012
       Description: @oleres.dll,-5013
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): DfsC
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\drivers\dfsc.sys,-101
       Description: @%systemroot%\system32\drivers\dfsc.sys,-102
        Image path: System32\Drivers\dfsc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
     Depends On services: Mup
    
    Service (registry key): DFSR
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @dfsrres.dll,-101
       Description: @dfsrres.dll,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\DFSR.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,EventSystem
    
    Service (registry key): Dhcp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\dhcpcsvc.dll,-100
       Description: @%SystemRoot%\system32\dhcpcsvc.dll,-101
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: NSI,Tdx,Afd
    
    Service (registry key): disk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Laufwerktreiber
        Image path: system32\drivers\disk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): Dnscache
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\dnsapi.dll,-101
       Description: @%SystemRoot%\System32\dnsapi.dll,-102
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: Tdx
    
    Service (registry key): dot3svc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\dot3svc.dll,-1102
       Description: @%systemroot%\system32\dot3svc.dll,-1103
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,Ndisuio,Eaphost
    
    Service (registry key): DPS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\dps.dll,-500
       Description: @%systemroot%\system32\dps.dll,-501
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): drmkaud
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Kernel-DRM-Audioentschlüsselung
        Image path: system32\drivers\drmkaud.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): DXGKrnl
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: LDDM Graphics Subsystem
       Description: Controls the underlying video driver stacks to provide fully-featured display capabilities.
        Image path: \SystemRoot\System32\drivers\dxgkrnl.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): E1G60
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel(R) PRO/1000 NDIS 6 Adapter Driver
        Image path: system32\DRIVERS\E1G6032E.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): EapHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\eapsvc.dll,-1
       Description: @%systemroot%\system32\eapsvc.dll,-2
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,KeyIso
    
    Service (registry key): Ecache
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ReadyBoost Caching Driver
       Description: ReadyBoost Caching Driver
        Image path: System32\drivers\ecache.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): ehRecvr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehrecvr.exe,-101
       Description: @%SystemRoot%\ehome\ehrecvr.exe,-102
       Object name: NT AUTHORITY\networkService
        Image path: %systemroot%\ehome\ehRecvr.exe
        Image size: 344064
         Image MD5: 14CE384D2E27B64C256BDA4DC39C312D
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): ehSched
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehsched.exe,-101
       Description: @%SystemRoot%\ehome\ehsched.exe,-102
       Object name: NT AUTHORITY\networkService
        Image path: %systemroot%\ehome\ehsched.exe
        Image size: 153600
         Image MD5: B93159C1313D66FDFBBE876F5189CD52
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): ehstart
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehstart.dll,-101
       Description: @%SystemRoot%\ehome\ehstart.dll,-102
       Object name: NT AUTHORITY\LocalService
        Image path: %windir%\system32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): elxstor
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\elxstor.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): EmdCache
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): EMDMgmt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\emdmgmt.dll,-1000
       Description: @%SystemRoot%\system32\emdmgmt.dll,-1001
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: rpcss,ecache,slsvc,fileinfo
    
    Service (registry key): ErrDev
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Hardware Error Device Driver
        Image path: \SystemRoot\system32\drivers\errdev.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ESENT
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Eventlog
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wevtsvc.dll,-200
       Description: @%SystemRoot%\system32\wevtsvc.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): EventSystem
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-2450
       Description: @comres.dll,-2451
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): exfat
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: exFAT File System Driver
       Description: exFAT File System Driver
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): fastfat
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: FAT12/16/32 File System Driver
       Description: Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): fdc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Floppy Disk Controller Driver
        Image path: system32\DRIVERS\fdc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): fdPHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\fdPHost.dll,-100
       Description: @%systemroot%\system32\fdPHost.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,http
    
    Service (registry key): FDResPub
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\fdrespub.dll,-100
       Description: @%systemroot%\system32\fdrespub.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,http
    
    Service (registry key): FileInfo
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: File Information FS MiniFilter
       Description: Collects information about files in memory to be consumed by other system services.
        Image path: system32\drivers\fileinfo.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 2
     Error Control: 1
     Depends On services: fltmgr
    
    Service (registry key): Filetrace
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: FileTrace
       Description: ETW File Trace Filter
        Image path: system32\drivers\filetrace.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): flpydisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Floppy Disk Driver
        Image path: system32\DRIVERS\flpydisk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): FltMgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: FltMgr
       Description: File System Filter Manager Driver
        Image path: system32\drivers\fltmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 2
     Error Control: 3
    
    Service (registry key): FontCache3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\PresentationHost.exe,-3309
       Description: @%SystemRoot%\system32\PresentationHost.exe,-3310
       Object name: NT Authority\LocalService
        Image path: %systemroot%\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
        Image size: 46104
         Image MD5: 73D0F1D32EDAE3DCC4E84468BF910ADD
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): Fs_Rec
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 8
     Error Control: 0
    
    Service (registry key): gagp30kx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms
        Image path: \SystemRoot\system32\drivers\gagp30kx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): gdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: gdrv
        Image path: \??\C:\Windows\gdrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): gpsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @gpapi.dll,-112
       Description: @gpapi.dll,-113
       Object name: LocalSystem
        Image path: %windir%\system32\svchost.exe -k GPSvcGroup
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RPCSS,Mup
    
    Service (registry key): HdAudAddService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft 1.1 UAA-Funktionstreiber für High Definition Audio-Dienst
        Image path: system32\drivers\HdAudio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): HDAudBus
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft-UAA-Bustreiber für High Definition Audio
        Image path: system32\DRIVERS\HDAudBus.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): HidBth
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Bluetooth HID Miniport
        Image path: \SystemRoot\system32\drivers\hidbth.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 0
    
    Service (registry key): HidIr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Infrared HID Driver
        Image path: \SystemRoot\system32\drivers\hidir.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 0
    
    Service (registry key): hidserv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\hidserv.dll,-101
       Description: @%SystemRoot%\System32\hidserv.dll,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): HidUsb
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft HID Class-Treiber
        Image path: system32\DRIVERS\hidusb.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): hkmsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\kmsvc.dll,-6
       Description: @%SystemRoot%\system32\kmsvc.dll,-7
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): HpCISSs
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\hpcisss.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): HTTP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: HTTP
       Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
        Image path: system32\drivers\HTTP.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): hwdatacard
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Huawei DataCard USB Modem and USB Serial
        Image path: system32\DRIVERS\ewusbmdm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): i2omp
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\i2omp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): i8042prt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: i8042-Tastatur- und PS/2-Mausanschluss-Treiber
        Image path: system32\DRIVERS\i8042prt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): iaStorV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel RAID Controller Vista
        Image path: \SystemRoot\system32\drivers\iastorv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): idsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193
       Description: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8192
       Object name: LocalSystem
        Image path: "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe"
        Image size: 859648
         Image MD5: 76EA63CDB2D88DAE7209691D089BEF1D
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): iirsp
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\iirsp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): IKEEXT
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\ikeext.dll,-501
       Description: @%SystemRoot%\system32\ikeext.dll,-502
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: BFE
    
    Service (registry key): inetaccs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): intelide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\intelide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): intelppm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Intel-Prozessortreiber
        Image path: system32\DRIVERS\intelppm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): IPBusEnum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\IPBusEnum.dll,-102
       Description: @%systemroot%\system32\IPBusEnum.dll,-103
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,fdPHost
    
    Service (registry key): IpFilterDriver
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32013
       Description: @%systemroot%\system32\rascfg.dll,-32013
        Image path: system32\DRIVERS\ipfltdrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): iphlpsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\iphlpsvc.dll,-200
       Description: @%SystemRoot%\system32\iphlpsvc.dll,-201
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k NetSvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSS,Tdx,winmgmt,tcpip,nsi
    
    Service (registry key): IpInIp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IP in IP Tunnel Driver
       Description: IP in IP Tunnel Driver
        Image path: system32\DRIVERS\ipinip.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): IPMIDRV
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\ipmidrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): IPNAT
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IP Network Address Translator
       Description: IP Network Address Translator
        Image path: system32\DRIVERS\ipnat.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): IRENUM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IR Bus Enumerator
       Description: IR Bus Enumerator
        Image path: system32\drivers\irenum.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): isapnp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: PnP ISA/EISA Bus Driver
        Image path: \SystemRoot\system32\drivers\isapnp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): iScsiPrt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: iScsiPort-Treiber
        Image path: system32\DRIVERS\msiscsi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): iteatapi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ITEATAPI_Service_Install
        Image path: \SystemRoot\system32\drivers\iteatapi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): iteraid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ITERAID_Service_Install
        Image path: \SystemRoot\system32\drivers\iteraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): JRAID
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\jraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): kbdclass
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Tastaturklassentreiber
        Image path: system32\DRIVERS\kbdclass.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): kbdhid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Keyboard HID Driver
        Image path: system32\DRIVERS\kbdhid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 0
    
    Service (registry key): KeyIso
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @keyiso.dll,-100
       Description: @keyiso.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): krait03
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Razer krait USB Filter Driver
        Image path: System32\Drivers\krait.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): KSecDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: System32\Drivers\ksecdd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): ksthunk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Kernel Streaming Thunks
        Image path: \SystemRoot\system32\drivers\ksthunk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): KtmRm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-2946
       Description: @comres.dll,-2947
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,SamSS
    
    Service (registry key): LanmanServer
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\srvsvc.dll,-100
       Description: @%systemroot%\system32\srvsvc.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: SamSS,Srv
    
    Service (registry key): LanmanWorkstation
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wkssvc.dll,-100
       Description: @%systemroot%\system32\wkssvc.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: Bowser,MRxSmb10,MRxSmb20,NSI
    
    Service (registry key): ldap
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): lltdio
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Link-Layer Topology Discovery Mapper I/O Driver
        Image path: system32\DRIVERS\lltdio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): lltdsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\lltdres.dll,-1
       Description: @%SystemRoot%\system32\lltdres.dll,-2
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: rpcss,lltdio
    
    Service (registry key): lmhosts
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\lmhsvc.dll,-101
       Description: @%SystemRoot%\system32\lmhsvc.dll,-102
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: NetBT,Afd
    
    Service (registry key): Lsa
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): LSI_FC
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\lsi_fc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): LSI_SAS
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\lsi_sas.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): LSI_SCSI
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\lsi_scsi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): luafv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: UAC File Virtualization
       Description: Virtualizes file write failures to per-user locations.
        Image path: \SystemRoot\system32\drivers\luafv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 2
     Error Control: 1
     Depends On services: FltMgr
    
    Service (registry key): lxbk_device
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: lxbk_device
       Object name: LocalSystem
        Image path: C:\Windows\system32\lxbkcoms.exe -service
        Image size: 537256
         Image MD5: 6185EDA97BC01EB913ED6FBB1E4748AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
    
    Service (registry key): Mcx2Svc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\ehome\ehres.dll,-15501
       Description: @%SystemRoot%\ehome\ehres.dll,-15502
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 4
              Type: 32
     Error Control: 1
     Depends On services: SSDPSRV,IPBusEnum,TermService,fdphost
    
    Service (registry key): megasas
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\megasas.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): MegaSR
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\megasr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Microsoft Office Groove Audit Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Office Groove Audit Service
       Object name: NT AUTHORITY\LocalService
        Image path: "D:\Microsoft Office\Office12\GrooveAuditService.exe"
        Image size: 65888
         Image MD5: 7C4C76B39D5525C4A465E0BE32528E19
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): MMCSS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\mmcss.dll,-100
       Description: @%systemroot%\system32\mmcss.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): Modem
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\drivers\modem.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): monitor
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Monitor-Klassenfunktionstreiber-Dienst
        Image path: system32\DRIVERS\monitor.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): mouclass
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Mausklassentreiber
        Image path: system32\DRIVERS\mouclass.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): mouhid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Maus-HID-Treiber
        Image path: system32\DRIVERS\mouhid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): MountMgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Mount Point Manager
       Description: Driver responsible with maintaining persistent drive letters and names for volumes
        Image path: System32\drivers\mountmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): mpio
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Multi-Path Bus Driver
        Image path: \SystemRoot\system32\drivers\mpio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): mpsdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23092
       Description: @%SystemRoot%\system32\FirewallAPI.dll,-23093
        Image path: System32\drivers\mpsdrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MpsSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23090
       Description: @%SystemRoot%\system32\FirewallAPI.dll,-23091
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: mpsdrv,bfe
    
    Service (registry key): Mraid35x
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\mraid35x.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): MRxDAV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: WebDav Client Redirector Driver
       Description: WebDav Client Redirector Driver
        Image path: \SystemRoot\system32\drivers\mrxdav.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: rdbss
    
    Service (registry key): mrxsmb
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SMB MiniRedirector Wrapper and Engine
       Description: Implements the framework for the SMB filesystem redirector
        Image path: system32\DRIVERS\mrxsmb.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: rdbss
    
    Service (registry key): mrxsmb10
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SMB 1.x MiniRedirector
       Description: Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers
        Image path: system32\DRIVERS\mrxsmb10.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: mrxsmb
    
    Service (registry key): mrxsmb20
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SMB 2.0 MiniRedirector
       Description: Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers
        Image path: system32\DRIVERS\mrxsmb20.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: mrxsmb
    
    Service (registry key): msahci
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\msahci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): msdsm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Multi-Path Device Specific Module
        Image path: \SystemRoot\system32\drivers\msdsm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): MSDTC
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @comres.dll,-2797
       Description: @comres.dll,-2798
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\msdtc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS,SamSS
    
    Service (registry key): MSDTC Bridge 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Msfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
    
    Service (registry key): msisadrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: ISA/EISA-Klassentreiber
        Image path: system32\drivers\msisadrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): MSiSCSI
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\iscsidsc.dll,-5000
       Description: @%SystemRoot%\system32\iscsidsc.dll,-5001
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): msiserver
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\msimsg.dll,-27
       Description: @%SystemRoot%\system32\msimsg.dll,-32
       Object name: LocalSystem
        Image path: %systemroot%\system32\msiexec /V
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): MSKSSRV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Streaming Service Proxy
        Image path: system32\drivers\MSKSSRV.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSPCLOCK
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Proxy für Streaming Clock
        Image path: system32\drivers\MSPCLOCK.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSPQM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Proxy für Streaming Quality Manager
        Image path: system32\drivers\MSPQM.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MsRPC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSSCNTRS
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): mssmbios
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft-Systemverwaltungs-BIOS-Treiber
        Image path: system32\DRIVERS\mssmbios.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): MSTEE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Streaming Tee/Sink-to-Sink-Konvertierung
        Image path: system32\drivers\MSTEE.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Mup
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Mup
       Description: Multiple UNC Provider
        Image path: System32\Drivers\mup.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 2
     Error Control: 1
    
    Service (registry key): napagent
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\qagentrt.dll,-6
       Description: @%SystemRoot%\system32\qagentrt.dll,-7
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): NativeWifiP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NativeWiFi-Filter
        Image path: system32\DRIVERS\nwifi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NDIS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NDIS System Driver
       Description: NDIS System Driver
        Image path: system32\drivers\ndis.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): NdisTapi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32001
       Description: @%systemroot%\system32\rascfg.dll,-32001
        Image path: system32\DRIVERS\ndistapi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Ndisuio
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NDIS Usermode I/O Protocol
        Image path: system32\DRIVERS\ndisuio.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NdisWan
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32002
       Description: @%systemroot%\system32\rascfg.dll,-32002
        Image path: system32\DRIVERS\ndiswan.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NDProxy
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NetBIOS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NetBIOS Interface
       Description: NetBIOS Interface
        Image path: system32\DRIVERS\netbios.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
    
    Service (registry key): netbt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NETBT
       Description: This service implements NetBios over TCP/IP.
        Image path: System32\DRIVERS\netbt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: Tdx,tcpip
    
    Service (registry key): Netlogon
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\netlogon.dll,-102
       Description: @%SystemRoot%\System32\netlogon.dll,-103
       Object name: LocalSystem
        Image path: %systemroot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: LanmanWorkstation
    
    Service (registry key): Netman
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\netman.dll,-109
       Description: @%SystemRoot%\system32\netman.dll,-110
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,nsi
    
    Service (registry key): netprofm
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\netprof.dll,-246
       Description: @%SystemRoot%\system32\netprof.dll,-247
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,nlasvc
    
    Service (registry key): NetTcpPortSharing
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
       Description: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
       Object name: NT AUTHORITY\LocalService
        Image path: "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe"
        Image size: 119808
         Image MD5: B84613B469B98E09F50A748C1D02E132
       Control Set: CurrentControlSet
             Start: 4
              Type: 32
     Error Control: 1
    
    Service (registry key): nfrd960
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\nfrd960.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): NlaSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\nlasvc.dll,-1
       Description: @%SystemRoot%\System32\nlasvc.dll,-2
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: NSI,RpcSs,TcpIp
    
    Service (registry key): Npfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
    
    Service (registry key): nsi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\nsisvc.dll,-200
       Description: @%SystemRoot%\system32\nsisvc.dll,-201
       Object name: NT Authority\LocalService
        Image path: %systemroot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: nsiproxy
    
    Service (registry key): nsiproxy
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NSI proxy service
       Description: NSI proxy service
        Image path: system32\drivers\nsiproxy.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): NTDS
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Ntfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): Null
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): nvlddmkm
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\nvlddmkm.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): nvraid
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA nForce RAID Driver   
        Image path: \SystemRoot\system32\drivers\nvraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): nvstor
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\nvstor.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): nvsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA Display Driver Service
       Description: Provides system and desktop level support to the NVIDIA display driver
       Object name: LocalSystem
        Image path: C:\Windows\system32\nvvsvc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 0
     Depends On services: nvlddmkm
    
    Service (registry key): nv_agp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA nForce AGP Bus Filter
        Image path: \SystemRoot\system32\drivers\nv_agp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): NwlnkFlt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IPX Traffic Filter Driver
       Description: IPX Traffic Filter Driver
        Image path: system32\DRIVERS\nwlnkflt.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: NwlnkFwd
    
    Service (registry key): NwlnkFwd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: IPX Traffic Forwarder Driver
       Description: IPX Traffic Forwarder Driver
        Image path: system32\DRIVERS\nwlnkfwd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): odserv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Office Diagnostics Service
       Description: Run portions of Microsoft Office Diagnostics.
       Object name: LocalSystem
        Image path: "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE"
        Image size: 441712
         Image MD5: 1F0E05DFF4F5A833168E49BE1256F002
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): ohci1394
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Texas Instruments OHCI-konformer IEEE 1394-Hostcontroller
        Image path: system32\DRIVERS\ohci1394.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): ose
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Office Source Engine
       Description: Saves installation files used for updates and repairs and is required for the downloading of Setup updates and Watson error reports.
       Object name: LocalSystem
        Image path: "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
        Image size: 145184
         Image MD5: 5A432A042DAE460ABE7199B758E8606C
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): Outlook
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): P17
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SB Audigy
        Image path: system32\drivers\P17.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): p2pimsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8004
       Description: @%SystemRoot%\system32\p2psvc.dll,-8005
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): p2psvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8006
       Description: @%SystemRoot%\system32\p2psvc.dll,-8007
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: p2pimsvc,PNRPSvc
    
    Service (registry key): Parport
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Treiber für parallelen Anschluss
        Image path: system32\DRIVERS\parport.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): partmgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Partition Manager
       Description: Disk class filter driver that auctions out partitions to volume managers
        Image path: System32\drivers\partmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): PcaSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\pcasvc.dll,-1
       Description: @%SystemRoot%\system32\pcasvc.dll,-2
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): pci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: PCI-Bus-Treiber
        Image path: system32\drivers\pci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): pciide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\drivers\pciide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): pcmcia
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\pcmcia.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): PEAUTH
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: PEAUTH
        Image path: system32\drivers\peauth.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): PerfDisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PerfHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\sysWow64\perfhost.exe,-2
       Description: @%systemroot%\SysWow64\perfhost.exe,-1
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\SysWow64\perfhost.exe
        Image size: 19968
         Image MD5: 0ED8727EA0172860F47258456C06CAEA
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): PerfNet
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PerfOS
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PerfProc
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): pla
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\pla.dll,-500
       Description: @%systemroot%\system32\pla.dll,-501
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): PlugPlay
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\umpnpmgr.dll,-100
       Description: @%SystemRoot%\system32\umpnpmgr.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k DcomLaunch
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): PNRPAutoReg
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8002
       Description: @%SystemRoot%\system32\p2psvc.dll,-8003
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: pnrpsvc
    
    Service (registry key): PNRPsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\p2psvc.dll,-8000
       Description: @%SystemRoot%\system32\p2psvc.dll,-8001
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: p2pimsvc
    
    Service (registry key): PolicyAgent
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\polstore.dll,-5010
       Description: @%SystemRoot%\system32\polstore.dll,-5011
       Object name: NT Authority\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: Tcpip,bfe
    
    Service (registry key): PortProxy
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): PptpMiniport
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32006
       Description: @%systemroot%\system32\rascfg.dll,-32006
        Image path: system32\DRIVERS\raspptp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Processor
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Processor Driver
        Image path: \SystemRoot\system32\drivers\processr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ProfSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\profsvc.dll,-300
       Description: @%systemroot%\system32\profsvc.dll,-301
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): ProtectedStorage
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\psbase.dll,-300
       Description: @%systemroot%\system32\psbase.dll,-301
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): PSched
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\drivers\pacer.sys,-101
       Description: @%SystemRoot%\System32\drivers\pacer.sys,-101
        Image path: system32\DRIVERS\pacer.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): ql2300
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: QLogic Fibre Channel Miniport Driver
        Image path: \SystemRoot\system32\drivers\ql2300.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ql40xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: QLogic iSCSI Miniport Driver
        Image path: \SystemRoot\system32\drivers\ql40xx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): QWAVE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\qwave.dll,-1
       Description: @%SystemRoot%\system32\qwave.dll,-2
       Object name: NT AUTHORITY\LocalService
        Image path: %windir%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: rpcss,psched,QWAVEdrv,LLTDIO
    
    Service (registry key): QWAVEdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
       Description: @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
        Image path: \SystemRoot\system32\drivers\qwavedrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): RasAcd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Remote Access Auto Connection Driver
       Description: Remote Access Auto Connection Driver
        Image path: System32\DRIVERS\rasacd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): RasAuto
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\rasauto.dll,-200
       Description: @%Systemroot%\system32\rasauto.dll,-201
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RasMan,Tapisrv
    
    Service (registry key): Rasl2tp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32005
       Description: @%systemroot%\system32\rascfg.dll,-32005
        Image path: system32\DRIVERS\rasl2tp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): RasMan
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\rasmans.dll,-200
       Description: @%Systemroot%\system32\rasmans.dll,-201
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: Tapisrv,SstpSvc
    
    Service (registry key): RasPppoe
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\rascfg.dll,-32007
       Description: @%systemroot%\system32\rascfg.dll,-32007
        Image path: system32\DRIVERS\raspppoe.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): RasSstp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\sstpsvc.dll,-202
       Description: @%systemroot%\system32\sstpsvc.dll,-202
        Image path: system32\DRIVERS\rassstp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): rdbss
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Redirected Buffering Sub Sysytem
       Description: Provides the framework for network mini-redirectors
        Image path: system32\DRIVERS\rdbss.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 2
     Error Control: 1
     Depends On services: Mup
    
    Service (registry key): RDPCDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: RDPCDD
       Description: RDPDD Chained DD
        Image path: System32\DRIVERS\RDPCDD.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): RDPDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): rdpdr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Terminal Server Device Redirector Driver
        Image path: \SystemRoot\system32\drivers\rdpdr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): RDPENCDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: RDP Encoder Mirror Driver
       Description: RDP Encoder Mirror Driver
        Image path: system32\drivers\rdpencdd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): RDPNP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\drprov.dll,-100
       Description: @%systemroot%\system32\drprov.dll,-101
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): RDPWD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: RDP Winstation Driver
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): RemoteAccess
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\mprdim.dll,-200
       Description: @%Systemroot%\system32\mprdim.dll,-201
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 4
              Type: 32
     Error Control: 1
     Depends On services: RpcSS,RasMan,bfe
     Depends On group: NetBIOSGroup
    
    Service (registry key): RemoteRegistry
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @regsvc.dll,-1
       Description: @regsvc.dll,-2
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k regsvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): RpcLocator
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\Locator.exe,-2
       Description: @%systemroot%\system32\Locator.exe,-3
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\locator.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): RpcSs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @oleres.dll,-5010
       Description: @oleres.dll,-5011
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k rpcss
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: DcomLaunch
    
    Service (registry key): rspndr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Link-Layer Topology Discovery Responder
        Image path: system32\DRIVERS\rspndr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): RTL8169
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Realtek 8169 NT Driver
        Image path: system32\DRIVERS\Rtlh64.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): SamSs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\samsrv.dll,-1
       Description: @%SystemRoot%\system32\samsrv.dll,-2
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\lsass.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): sbp2port
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SBP-2 Transport/Protocol Bus Driver
        Image path: \SystemRoot\system32\drivers\sbp2port.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SBSDWSCService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SBSD Security Center Service
       Object name: LocalSystem
        Image path: C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
        Image size: 1153368
         Image MD5: 794D4B48DFB6E999537C7C3947863463
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: wscsvc
    
    Service (registry key): SCardSvr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\SCardSvr.dll,-1
       Description: @%SystemRoot%\System32\SCardSvr.dll,-5
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay
    
    Service (registry key): Schedule
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\schedsvc.dll,-100
       Description: @%SystemRoot%\system32\schedsvc.dll,-101
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,EventLog
    
    Service (registry key): SCPolicySvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\certprop.dll,-13
       Description: @%SystemRoot%\System32\certprop.dll,-14
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): SDRSVC
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\sdrsvc.dll,-107
       Description: @%SystemRoot%\system32\sdrsvc.dll,-102
       Object name: localSystem
        Image path: %SystemRoot%\system32\svchost.exe -k SDRSVC
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): secdrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Security Driver
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
    
    Service (registry key): seclogon
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\seclogon.dll,-7001
       Description: @%SystemRoot%\system32\seclogon.dll,-7000
       Object name: LocalSystem
        Image path: %windir%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): SENS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\Sens.dll,-200
       Description: @%SystemRoot%\system32\Sens.dll,-201
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: EventSystem
    
    Service (registry key): Serenum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Serenum-Filtertreiber
        Image path: system32\DRIVERS\serenum.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Serial
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Treiber für seriellen Anschluss
        Image path: system32\DRIVERS\serial.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): sermouse
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Serial Mouse Driver
        Image path: \SystemRoot\system32\drivers\sermouse.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ServiceModelEndpoint 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): ServiceModelOperation 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): ServiceModelService 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): SessionEnv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\SessEnv.dll,-1026
       Description: @%SystemRoot%\System32\SessEnv.dll,-1027
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,LanmanWorkstation
    
    Service (registry key): sffdisk
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SFF Storage Class Driver
        Image path: \SystemRoot\system32\drivers\sffdisk.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): sffp_mmc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SFF Storage Protocol Driver for MMC
        Image path: \SystemRoot\system32\drivers\sffp_mmc.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): sffp_sd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: SFF Storage Protocol Driver for SDBus
        Image path: \SystemRoot\system32\drivers\sffp_sd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): sfloppy
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: High-Capacity Floppy Disk Drive
        Image path: \SystemRoot\system32\drivers\sfloppy.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SharedAccess
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\ipnathlp.dll,-106
       Description: @%SystemRoot%\system32\ipnathlp.dll,-107
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: Netman,WinMgmt,RasMan,BFE
    
    Service (registry key): ShellHWDetection
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\shsvcs.dll,-12288
       Description: @%SystemRoot%\System32\shsvcs.dll,-12289
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: RpcSs
    
    Service (registry key): SiSRaid2
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sisraid2.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SiSRaid4
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sisraid4.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): slsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\SLsvc.exe,-101
       Description: @%SystemRoot%\system32\SLsvc.exe,-100
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\SLsvc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): SLUINotify
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\SLUINotify.dll,-103
       Description: @%SystemRoot%\system32\SLUINotify.dll,-102
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: SLSvc,netprofm,EventSystem
    
    Service (registry key): Smb
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50005
       Description: @%SystemRoot%\system32\tcpipcfg.dll,-50006
        Image path: system32\DRIVERS\smb.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): SMSvcHost 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): SNMPTRAP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\snmptrap.exe,-3
       Description: @%SystemRoot%\system32\snmptrap.exe,-4
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\snmptrap.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): spldr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Security Processor Loader Driver
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): Spooler
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\spoolsv.exe,-1
       Description: @%systemroot%\system32\spoolsv.exe,-2
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\spoolsv.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 272
     Error Control: 1
     Depends On services: RPCSS,http
    
    Service (registry key): srv
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: System32\DRIVERS\srv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: srv2
    
    Service (registry key): srv2
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: srv2
       Description: Default SDDL for Windows Resource Protected file
        Image path: System32\DRIVERS\srv2.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
     Depends On services: srvnet
    
    Service (registry key): srvnet
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: System32\DRIVERS\srvnet.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 2
     Error Control: 1
    
    Service (registry key): SSDPSRV
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\ssdpsrv.dll,-100
       Description: @%systemroot%\system32\ssdpsrv.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: HTTP
    
    Service (registry key): SstpSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\sstpsvc.dll,-200
       Description: @%SystemRoot%\system32\sstpsvc.dll,-201
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): Steam Client Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Steam Client Service
       Description: Steam Client Service monitors and updates Steam content
       Object name: LocalSystem
        Image path: C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService
        Image size: 316664
         Image MD5: 0502E729C9B15748F9927C316FECE9F6
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): Stereo Service
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: NVIDIA Stereoscopic 3D Driver Service
       Description: Provides system support for NVIDIA Stereoscopic 3D driver
       Object name: LocalSystem
        Image path: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
        Image size: 239648
         Image MD5: 8BDDCE5A798B1150CDC5AB61D480B267
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
    
    Service (registry key): stisvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wiaservc.dll,-9
       Description: @%SystemRoot%\system32\wiaservc.dll,-10
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,ShellHWDetection
    
    Service (registry key): swenum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Software-Bus-Treiber
        Image path: system32\DRIVERS\swenum.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): swprv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\swprv.dll,-103
       Description: @%SystemRoot%\System32\swprv.dll,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k swprv
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): Symc8xx
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\symc8xx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Sym_hi
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sym_hi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Sym_u3
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\sym_u3.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): SysMain
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\sysmain.dll,-1000
       Description: @%SystemRoot%\system32\sysmain.dll,-1001
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: rpcss,fileinfo
    
    Service (registry key): TabletInputService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\TabSvc.dll,-100
       Description: @%SystemRoot%\system32\TabSvc.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay,RpcSs
    
    Service (registry key): TAGuard
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TAGuard
       Description: TAGuard
       Object name: LocalSystem
        Image path: C:\PROGRA~2\aon\aonFlex\Guard.exe 
        Image size: 1359200
         Image MD5: 73D5A39E4322D2FC76B784627830CE1A
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 0
    
    Service (registry key): TapiSrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tapisrv.dll,-10100
       Description: @%SystemRoot%\system32\tapisrv.dll,-10101
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay,RpcSs
    
    Service (registry key): TBS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tbssvc.dll,-100
       Description: @%SystemRoot%\system32\tbssvc.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): Tcpip
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50003
       Description: @%SystemRoot%\system32\tcpipcfg.dll,-50003
        Image path: System32\drivers\tcpip.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): Tcpip6
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft IPv6 Protocol Driver
       Description: Microsoft IPv6 Protocol Driver
        Image path: system32\DRIVERS\tcpip.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): tcpipreg
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TCP/IP Registry Compatibility
       Description: Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality.
        Image path: System32\drivers\tcpipreg.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 2
              Type: 1
     Error Control: 1
     Depends On services: tcpip
    
    Service (registry key): TDPIPE
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TDPIPE
        Image path: system32\drivers\tdpipe.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): TDTCP
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: TDTCP
        Image path: system32\drivers\tdtcp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): tdx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50004
       Description: @%SystemRoot%\system32\tcpipcfg.dll,-50004
        Image path: system32\DRIVERS\tdx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
     Depends On services: Tcpip
    
    Service (registry key): TermDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Terminal-Gerätetreiber
        Image path: system32\DRIVERS\termdd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): TermService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\termsrv.dll,-268
       Description: @%SystemRoot%\System32\termsrv.dll,-267
       Object name: NT Authority\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,TermDD
    
    Service (registry key): Themes
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\shsvcs.dll,-8192
       Description: @%SystemRoot%\System32\shsvcs.dll,-8193
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): THREADORDER
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\mmcss.dll,-102
       Description: @%systemroot%\system32\mmcss.dll,-103
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): TrkWks
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\trkwks.dll,-1
       Description: @%SystemRoot%\system32\trkwks.dll,-2
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): TrustedInstaller
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\servicing\TrustedInstaller.exe,-100
       Description: @%SystemRoot%\servicing\TrustedInstaller.exe,-101
       Object name: localSystem
        Image path: %SystemRoot%\servicing\TrustedInstaller.exe
        Image size: 42496
         Image MD5: AC6FF1DF22ED90BAD6417EE5A4C6E2F0
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): TSDDD
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): tssecsrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Terminal Services Security Filter Driver
       Description: Terminal Services Security Filter Driver
        Image path: System32\DRIVERS\tssecsrv.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): tunmp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Tun-Miniportadaptertreiber
        Image path: system32\DRIVERS\tunmp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): tunnel
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft-IPv6-Tunnelminiport-Adaptertreiber
        Image path: system32\DRIVERS\tunnel.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): uagp35
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft AGPv3.5 Filter
        Image path: \SystemRoot\system32\drivers\uagp35.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): udfs
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: udfs
       Description: Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)
        Image path: system32\DRIVERS\udfs.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 2
     Error Control: 1
    
    Service (registry key): UGatherer
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): UGTHRSVC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): UI0Detect
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\ui0detect.exe,-101
       Description: @%SystemRoot%\system32\ui0detect.exe,-102
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\UI0Detect.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 272
     Error Control: 1
    
    Service (registry key): uliagpkx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Uli AGP Bus Filter
        Image path: \SystemRoot\system32\drivers\uliagpkx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): uliahci
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\uliahci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): UlSata
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\ulsata.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): ulsata2
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\ulsata2.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): umbus
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: UMBus-Enumerator-Treiber
        Image path: system32\DRIVERS\umbus.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): UnlockerDriver5
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \??\C:\Program Files (x86)\Unlocker\UnlockerDriver5.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 0
    
    Service (registry key): upnphost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\upnphost.dll,-213
       Description: @%systemroot%\system32\upnphost.dll,-214
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: SSDPSRV,HTTP
    
    Service (registry key): usb
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): usbccgp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Standard-USB-Haupttreiber
        Image path: system32\DRIVERS\usbccgp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbcir
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: eHome Infrared Receiver (USBCIR)
        Image path: \SystemRoot\system32\drivers\usbcir.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): usbctl
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB Bus Controller
       Object name: LocalSystem
        Image path: C:\Windows\system32\usbctl.exe
        Image size: 64000
         Image MD5: D2501967B47D3CB3121E80FD4661375E
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
    
    Service (registry key): usbehci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller
        Image path: system32\DRIVERS\usbehci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbhub
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB-Standardhubtreiber
        Image path: system32\DRIVERS\usbhub.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbohci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB Open Host Controller Miniport Driver
        Image path: \SystemRoot\system32\drivers\usbohci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): usbprint
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft USB-Druckerklasse
        Image path: system32\DRIVERS\usbprint.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbscan
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: USB-Scannertreiber
        Image path: system32\DRIVERS\usbscan.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): USBSTOR
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: USB-Massenspeichertreiber
        Image path: system32\DRIVERS\USBSTOR.SYS
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): usbuhci
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Miniporttreiber für universellen Microsoft USB-Hostcontroller
        Image path: system32\DRIVERS\usbuhci.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): UxSms
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\dwm.exe,-2000
       Description: @%SystemRoot%\system32\dwm.exe,-2001
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): vds
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\vds.exe,-100
       Description: @%SystemRoot%\system32\vds.exe,-112
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\vds.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RpcSs,PlugPlay
    
    Service (registry key): vga
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\vgapnp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 0
    
    Service (registry key): VgaSave
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\System32\drivers\vga.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 0
    
    Service (registry key): viaide
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\viaide.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 3
    
    Service (registry key): volmgr
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Treiber für Volume-Manager
        Image path: system32\drivers\volmgr.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): volmgrx
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Dynamic Volume Manager
       Description: Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks
        Image path: System32\drivers\volmgrx.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): volsnap
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Speichervolumes
        Image path: system32\drivers\volsnap.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 3
    
    Service (registry key): vsmraid
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: \SystemRoot\system32\drivers\vsmraid.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): VSS
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\vssvc.exe,-102
       Description: @%systemroot%\system32\vssvc.exe,-101
       Object name: LocalSystem
        Image path: %systemroot%\system32\vssvc.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): W32Time
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\w32time.dll,-200
       Description: @%SystemRoot%\system32\w32time.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
    
    Service (registry key): W3SVC
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): WacomPen
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Wacom Serial Pen HID Driver
        Image path: \SystemRoot\system32\drivers\wacompen.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Wanarp
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Remote Access IP ARP Driver
       Description: Remote Access IP ARP Driver
        Image path: system32\DRIVERS\wanarp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): Wanarpv6
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Remote Access IPv6 ARP Driver
       Description: Remote Access IPv6 ARP Driver
        Image path: system32\DRIVERS\wanarp.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 1
              Type: 1
     Error Control: 1
    
    Service (registry key): wcncsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wcncsvc.dll,-3
       Description: @%SystemRoot%\system32\wcncsvc.dll,-4
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): WcsPlugInService
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\WcsPlugInService.dll,-200
       Description: @%SystemRoot%\system32\WcsPlugInService.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k wcssvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): Wd
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Watchdog Timer Driver
        Image path: \SystemRoot\system32\drivers\wd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): Wdf01000
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Kernel Mode Driver Frameworks service
        Image path: system32\drivers\Wdf01000.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 0
              Type: 1
     Error Control: 1
    
    Service (registry key): WdiServiceHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wdi.dll,-502
       Description: @%systemroot%\system32\wdi.dll,-503
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k wdisvc
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): WdiSystemHost
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wdi.dll,-500
       Description: @%systemroot%\system32\wdi.dll,-501
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): WebClient
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\webclnt.dll,-100
       Description: @%systemroot%\system32\webclnt.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: MRxDAV
    
    Service (registry key): Wecsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wecsvc.dll,-200
       Description: @%SystemRoot%\system32\wecsvc.dll,-201
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: HTTP,Eventlog,mpssvc
    
    Service (registry key): wercplsupport
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wercplsupport.dll,-101
       Description: @%SystemRoot%\System32\wercplsupport.dll,-100
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
    
    Service (registry key): WerSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wersvc.dll,-100
       Description: @%SystemRoot%\System32\wersvc.dll,-101
       Object name: localSystem
        Image path: %SystemRoot%\System32\svchost.exe -k WerSvcGroup
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
    
    Service (registry key): WinDefend
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103
       Description: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-3068
       Object name: LocalSystem
        Image path: %SystemRoot%\System32\svchost.exe -k secsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): Windows Workflow Foundation 3.0.0.0
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): WinHttpAutoProxySvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\winhttp.dll,-100
       Description: @%SystemRoot%\system32\winhttp.dll,-101
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: Dhcp
    
    Service (registry key): Winmgmt
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\wbem\wmisvc.dll,-205
       Description: @%Systemroot%\system32\wbem\wmisvc.dll,-204
       Object name: localSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 0
     Depends On services: RPCSS
    
    Service (registry key): WinRM
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\wsmsvc.dll,-101
       Description: @%Systemroot%\system32\wsmsvc.dll,-102
       Object name: NT AUTHORITY\NetworkService
        Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RPCSS,HTTP
    
    Service (registry key): Winsock
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 3
              Type: 4
     Error Control: 1
    
    Service (registry key): WinSock2
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): Wlansvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wlansvc.dll,-257
       Description: @%SystemRoot%\System32\wlansvc.dll,-258
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: nativewifip,RpcSs,Ndisuio,Eaphost
    
    Service (registry key): WmiAcpi
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Microsoft Windows Management Interface for ACPI
        Image path: \SystemRoot\system32\drivers\wmiacpi.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): WmiApRpl
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): wmiApSrv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110
       Description: @%Systemroot%\system32\wbem\wmiapsrv.exe,-111
       Object name: localSystem
        Image path: %systemroot%\system32\wbem\WmiApSrv.exe
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
    
    Service (registry key): WMPNetworkSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101
       Description: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-102
       Object name: NT AUTHORITY\NetworkService
        Image path: "%ProgramFiles%\Windows Media Player\wmpnetwk.exe"
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 16
     Error Control: 1
     Depends On services: UPnPHost,http
    
    Service (registry key): WPCSvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wpcsvc.dll,-100
       Description: @%SystemRoot%\system32\wpcsvc.dll,-101
       Object name: NT Authority\LocalService
        Image path: %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 3
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): WPDBusEnum
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wpdbusenum.dll,-100
       Description: @%SystemRoot%\system32\wpdbusenum.dll,-101
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs
    
    Service (registry key): ws2ifsl
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: Winsock IFS driver
       Description: Winsock IFS driver
        Image path: \SystemRoot\system32\drivers\ws2ifsl.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 4
              Type: 1
     Error Control: 1
    
    Service (registry key): wscsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\System32\wscsvc.dll,-200
       Description: @%SystemRoot%\System32\wscsvc.dll,-201
       Object name: NT AUTHORITY\LocalService
        Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: RpcSs,WinMgmt
    
    Service (registry key): WSearch
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\SearchIndexer.exe,-103
       Description: @%systemroot%\system32\SearchIndexer.exe,-104
       Object name: LocalSystem
        Image path: %systemroot%\system32\SearchIndexer.exe /Embedding
        Image size: 439808
         Image MD5: 7778BDFA3F6F6FBA0E75B9594098F737
       Control Set: CurrentControlSet
             Start: 2
              Type: 16
     Error Control: 1
     Depends On services: RPCSS
    
    Service (registry key): WSearchIdxPi
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): wuauserv
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%systemroot%\system32\wuaueng.dll,-105
       Description: @%systemroot%\system32\wuaueng.dll,-106
       Object name: LocalSystem
        Image path: %systemroot%\system32\svchost.exe -k netsvcs
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: rpcss
    
    Service (registry key): WUDFRd
     Registry path: \SYSTEM\CurrentControlSet\Services\
        Image path: system32\DRIVERS\WUDFRd.sys
        Image size: 0
         Image MD5: D41D8CD98F00B204E9800998ECF8427E
       Control Set: CurrentControlSet
             Start: 3
              Type: 1
     Error Control: 1
    
    Service (registry key): wudfsvc
     Registry path: \SYSTEM\CurrentControlSet\Services\
      Display name: @%SystemRoot%\system32\wudfsvc.dll,-1000
       Description: @%SystemRoot%\system32\wudfsvc.dll,-1001
       Object name: LocalSystem
        Image path: %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted
        Image size: 21504
         Image MD5: 3794B461C45882E06856F282EEF025AF
       Control Set: CurrentControlSet
             Start: 2
              Type: 32
     Error Control: 1
     Depends On services: PlugPlay
    
    Service (registry key): xmlprov
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    
    Service (registry key): {64F59AB0-539B-495A-8A6A-E36B2AF35CF1}
     Registry path: \SYSTEM\CurrentControlSet\Services\
       Control Set: CurrentControlSet
             Start: 0
              Type: 0
     Error Control: 0
    HJScanlist

    Code:
     
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
                            º                                    º 
                                        hjtscanlist v2.0              
                            º                                    º 
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
    
    Microsoft Windows [Version 6.0.6001]
     
     
    C:
    
           C:\pagefile.sys ---------    
      24.09.2009 20:15     C:\Program Files (x86) --------- 12288   
      24.09.2009 20:06     C:\System Volume Information --------- 20480   
      24.09.2009 20:00     C:\ProgramData --------- 8192   
      23.09.2009 21:35     C:\Windows --------- 24576   
      22.09.2009 22:50     C:\temp --------- 0   
      22.09.2009 21:49     C:\Program Files --------- 8192   
      20.09.2009 18:39     C:\Miranda IM --------- 4096   
      20.09.2009 17:37     C:\lxbk.log --------- 178   
      20.09.2009 16:55     C:\AdobeReader 9.0 --------- 4096   
      19.09.2009 16:10     C:\NVIDIA --------- 0   
      19.09.2009 15:09     C:\WinRAR --------- 4096   
      19.09.2009 15:05     C:\EVEREST --------- 8192   
      19.09.2009 14:48     C:\Razer Krait --------- 4096   
      19.09.2009 14:22     C:\Avast --------- 16384   
      19.09.2009 13:39     C:\BOOTSECT.BAK --------- 8192   
      19.09.2009 13:39     C:\Boot --------- 4096   
      19.09.2009 13:29     C:\drivers --------- 0   
      19.09.2009 13:18     C:\Paint.NET --------- 12288   
      19.09.2009 13:15     C:\CCleaner --------- 0   
      19.09.2009 13:04     C:\csb.log --------- 237   
      19.09.2009 13:00     C:\RaidTool --------- 0   
      19.09.2009 12:56     C:\Intel --------- 0   
      19.09.2009 12:53     C:\$Recycle.Bin --------- 0   
      19.09.2009 12:52     C:\Users --------- 4096   
      19.09.2009 12:50     C:\Programme --------- 0   
      19.09.2009 12:50     C:\Dokumente und Einstellungen --------- 0   
      21.01.2008 05:04     C:\PerfLogs --------- 0   
      21.01.2008 04:50     C:\bootmgr --------- 333203   
      02.11.2006 17:42     C:\Documents and Settings --------- 0   
    ----------------------------------------
    
     
    C:\Windows
    
      24.09.2009 20:23     C:\Windows\WindowsUpdate.log --------- 1775210   
      24.09.2009 20:20     C:\Windows\bootstat.dat --------- 67584   
      23.09.2009 20:00     C:\Windows\win.ini --------- 219   
      21.09.2009 22:41     C:\Windows\DPINST.LOG --------- 42204   
      21.09.2009 22:13     C:\Windows\setupact.log --------- 90245   
      21.09.2009 22:06     C:\Windows\PFRO.log --------- 9592   
      20.09.2009 22:18     C:\Windows\dd_ATL90SP1_KB973924UI47A0.txt --------- 11696   
      20.09.2009 22:18     C:\Windows\dd_ATL90SP1_KB973924MSI47A0.txt --------- 219502   
      20.09.2009 20:03     C:\Windows\Lexstat.ini --------- 101   
      20.09.2009 18:30     C:\Windows\dd_dotnetfx35install_lp.txt --------- 86224   
      20.09.2009 18:30     C:\Windows\uxeventlog.txt --------- 11102   
      20.09.2009 18:30     C:\Windows\dd_NET_Framework35_LangPack_MSI1902.txt --------- 810300   
      20.09.2009 18:29     C:\Windows\dd_depcheck_NETFX_EXP_35.txt --------- 36060   
      20.09.2009 18:29     C:\Windows\dd_dotnetfx35error_lp.txt --------- 2   
      20.09.2009 11:53     C:\Windows\DirectX.log --------- 10085   
      19.09.2009 18:19     C:\Windows\ctfile.rfc --------- 159   
      19.09.2009 15:26     C:\Windows\gdrv.sys --------- 24072   
      19.09.2009 15:26     C:\Windows\GSetup.ini --------- 10   
      19.09.2009 14:18     C:\Windows\ie8_main.log --------- 2084   
      19.09.2009 12:44     C:\Windows\DtcInstall.log --------- 3257   
      19.09.2009 12:44     C:\Windows\TSSysprep.log --------- 1355   
      13.11.2008 06:07     C:\Windows\P17EP.ini --------- 2177   
      29.10.2008 08:49     C:\Windows\explorer.exe --------- 3080704   
      26.08.2008 08:30     C:\Windows\ResDefE.exe --------- 8704   
      21.01.2008 05:21     C:\Windows\WindowsShell.Manifest --------- 749   
      21.01.2008 04:50     C:\Windows\HelpPane.exe --------- 734720   
      21.01.2008 04:49     C:\Windows\regedit.exe --------- 161792   
      21.01.2008 04:49     C:\Windows\bfsvc.exe --------- 65536   
      21.01.2008 04:49     C:\Windows\splwow64.exe --------- 39936   
      21.01.2008 04:48     C:\Windows\fveupdate.exe --------- 14848   
      21.01.2008 04:47     C:\Windows\notepad.exe --------- 169472   
      04.12.2007 05:20     C:\Windows\P17EP51.ini --------- 1489   
      21.06.2007 08:34     C:\Windows\GSetup.exe --------- 203328   
      07.06.2007 05:25     C:\Windows\P17EPLS.ini --------- 1578   
      02.11.2006 17:27     C:\Windows\setuperr.log --------- 0   
      02.11.2006 17:21     C:\Windows\SETUPAPI.LOG --------- 94   
      02.11.2006 17:04     C:\Windows\WMSysPr9.prx --------- 316640   
      02.11.2006 17:02     C:\Windows\twunk_32.exe --------- 31232   
      02.11.2006 17:02     C:\Windows\twunk_16.exe --------- 49680   
      02.11.2006 17:02     C:\Windows\twain_32.dll --------- 50688   
      02.11.2006 17:02     C:\Windows\twain.dll --------- 94784   
      02.11.2006 13:15     C:\Windows\hh.exe --------- 15872   
      02.11.2006 11:45     C:\Windows\winhlp32.exe --------- 9216   
      02.11.2006 10:26     C:\Windows\mib.bin --------- 43131   
      19.09.2006 13:41     C:\Windows\HomePremium.xml --------- 8328   
      18.09.2006 23:44     C:\Windows\system.ini --------- 219   
      18.09.2006 23:30     C:\Windows\msdfmap.ini --------- 1405   
      18.08.2004 18:00     C:\Windows\nod_x32.txt --------- 29   
      29.10.1998 16:45     C:\Windows\IsUninst.exe --------- 306688   
    ----------------------------------------
    
     
    C:\Windows\System
    
    ----------------------------------------
    
     
    C:\Windows\System32
    
     24.09.2009 20:26     C:\Windows\system32\perfh009.dat --------- 586448  
     24.09.2009 20:26     C:\Windows\system32\perfc009.dat --------- 100520  
     24.09.2009 20:26     C:\Windows\system32\perfh007.dat --------- 618204  
     24.09.2009 20:26     C:\Windows\system32\perfc007.dat --------- 122636  
     24.09.2009 20:26     C:\Windows\system32\PerfStringBackup.INI --------- 1418806  
     24.09.2009 20:20     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 --------- 3712  
     24.09.2009 20:20     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 --------- 3712  
     24.09.2009 20:19     C:\Windows\system32\LogFiles --------- 0  
     24.09.2009 18:13     C:\Windows\system32\FNTCACHE.DAT --------- 371016  
     23.09.2009 19:38     C:\Windows\system32\catroot --------- 4096  
     22.09.2009 23:30     C:\Windows\system32\catroot2 --------- 8192  
     22.09.2009 21:51     C:\Windows\system32\LexFiles.ulf --------- 14750  
     21.09.2009 22:43     C:\Windows\system32\drivers --------- 65536  
     21.09.2009 22:37     C:\Windows\system32\spool --------- 4096  
     20.09.2009 21:19     C:\Windows\system32\wrap_oal.dll --------- 419840  
     20.09.2009 21:19     C:\Windows\system32\OpenAL32.dll --------- 133632  
     19.09.2009 18:58     C:\Windows\system32\WDI --------- 4096  
     19.09.2009 14:25     C:\Windows\system32\migration --------- 4096  
     19.09.2009 14:25     C:\Windows\system32\de-DE --------- 262144  
     19.09.2009 14:25     C:\Windows\system32\en-US --------- 8192  
     19.09.2009 14:09     C:\Windows\system32\DATA --------- 0  
     19.09.2009 14:02     C:\Windows\system32\Boot --------- 0  
     19.09.2009 14:02     C:\Windows\system32\manifeststore --------- 0  
     19.09.2009 14:02     C:\Windows\system32\wbem --------- 65536  
     19.09.2009 13:17     C:\Windows\system32\Tasks --------- 0  
     19.09.2009 12:56     C:\Windows\system32\restore --------- 0  
     19.09.2009 12:44     C:\Windows\system32\license.rtf --------- 60826  
     04.09.2009 17:44     C:\Windows\system32\XAPOFX1_3.dll --------- 73544  
     04.09.2009 17:44     C:\Windows\system32\xactengine3_5.dll --------- 176968  
     04.09.2009 17:44     C:\Windows\system32\XAudio2_5.dll --------- 517960  
     04.09.2009 17:29     C:\Windows\system32\d3dx11_42.dll --------- 285024  
     04.09.2009 17:29     C:\Windows\system32\d3dx10_42.dll --------- 523088  
     04.09.2009 17:29     C:\Windows\system32\d3dcsx_42.dll --------- 5554512  
     04.09.2009 17:29     C:\Windows\system32\D3DCompiler_42.dll --------- 2582888  
     04.09.2009 17:29     C:\Windows\system32\D3DX9_42.dll --------- 2475352  
     28.08.2009 15:10     C:\Windows\system32\mrt.exe --------- 26035144  
     28.08.2009 14:51     C:\Windows\system32\Apphlpdm.dll --------- 32256  
     28.08.2009 12:39     C:\Windows\system32\GameUXLegacyGDFs.dll --------- 4240384  
     17.08.2009 18:02     C:\Windows\system32\AvastSS.scr --------- 97480  
     17.08.2009 02:39     C:\Windows\system32\nvcplui.exe --------- 3778080  
     17.08.2009 02:39     C:\Windows\system32\nvcpluir.dll --------- 2497056  
     17.08.2009 02:39     C:\Windows\system32\nvcpl.cpl --------- 410656  
     17.08.2009 02:39     C:\Windows\system32\nvsvs.dll --------- 1685024  
     17.08.2009 02:39     C:\Windows\system32\nvsvsr.dll --------- 1401888  
     17.08.2009 02:39     C:\Windows\system32\nvvitvs.dll --------- 4548128  
     17.08.2009 02:39     C:\Windows\system32\nvwss.dll --------- 3747360  
     17.08.2009 02:39     C:\Windows\system32\nvwssr.dll --------- 3672096  
     17.08.2009 02:39     C:\Windows\system32\nvmoblsr.dll --------- 2852384  
     17.08.2009 02:39     C:\Windows\system32\nvmobls.dll --------- 1649184  
     17.08.2009 02:39     C:\Windows\system32\nvvitvsr.dll --------- 4615200  
     17.08.2009 02:39     C:\Windows\system32\nvmccss.dll --------- 289824  
     17.08.2009 02:39     C:\Windows\system32\NvApps.xml --------- 249312  
     17.08.2009 02:39     C:\Windows\system32\nvmctray.dll --------- 82464  
     17.08.2009 02:39     C:\Windows\system32\nvcpl.dll --------- 16561184  
     17.08.2009 02:39     C:\Windows\system32\nvsvc64.dll --------- 882208  
     17.08.2009 02:39     C:\Windows\system32\nvgames.dll --------- 5209632  
     17.08.2009 02:39     C:\Windows\system32\nvsvcr.dll --------- 1160192  
     17.08.2009 02:39     C:\Windows\system32\NvwsApps.xml --------- 66834  
     17.08.2009 02:39     C:\Windows\system32\nvgamesr.dll --------- 4639264  
     17.08.2009 02:39     C:\Windows\system32\nvdisps.dll --------- 5412384  
     17.08.2009 02:39     C:\Windows\system32\nvmccssr.dll --------- 455712  
     17.08.2009 02:39     C:\Windows\system32\nvvsvc.exe --------- 383008  
     17.08.2009 02:39     C:\Windows\system32\nvdispsr.dll --------- 8084000  
     17.08.2009 00:57     C:\Windows\system32\nvwgf2umx.dll --------- 4583936  
     17.08.2009 00:57     C:\Windows\system32\nvoglv64.dll --------- 15007744  
     17.08.2009 00:57     C:\Windows\system32\nvd3dumx.dll --------- 9380352  
     17.08.2009 00:57     C:\Windows\system32\nvcuvid.dll --------- 2258976  
     17.08.2009 00:57     C:\Windows\system32\nvcuvenc.dll --------- 1723424  
     17.08.2009 00:57     C:\Windows\system32\nvudisp.exe --------- 541216  
     17.08.2009 00:57     C:\Windows\system32\nvcod162.dll --------- 173568  
     17.08.2009 00:57     C:\Windows\system32\nvapi64.dll --------- 1292800  
     17.08.2009 00:57     C:\Windows\system32\nvcuda.dll --------- 2619392  
     17.08.2009 00:57     C:\Windows\system32\nvcod.dll --------- 173568  
     17.08.2009 00:57     C:\Windows\system32\nvdisp.nvu --------- 10744  
     14.08.2009 19:29     C:\Windows\system32\netiohlp.dll --------- 141312  
     14.08.2009 19:29     C:\Windows\system32\netevent.dll --------- 17920  
     14.08.2009 17:13     C:\Windows\system32\TCPSVCS.EXE --------- 10752  
     14.08.2009 17:13     C:\Windows\system32\ROUTE.EXE --------- 21504  
     14.08.2009 17:13     C:\Windows\system32\MRINFO.EXE --------- 12800  
     14.08.2009 17:12     C:\Windows\system32\NETSTAT.EXE --------- 32256  
     14.08.2009 17:12     C:\Windows\system32\ARP.EXE --------- 23040  
     14.08.2009 17:12     C:\Windows\system32\HOSTNAME.EXE --------- 10240  
     14.08.2009 17:12     C:\Windows\system32\finger.exe --------- 11264  
     11.08.2009 12:35     C:\Windows\system32\nvuninst.exe --------- 541216  
     28.07.2009 14:38     C:\Windows\system32\ctcoins1.dll --------- 73728  
     28.07.2009 14:38     C:\Windows\system32\ctdvins1.dll --------- 217600  
     22.07.2009 00:11     C:\Windows\system32\wininet.dll --------- 1146880  
     22.07.2009 00:11     C:\Windows\system32\urlmon.dll --------- 1484288  
     22.07.2009 00:09     C:\Windows\system32\occache.dll --------- 243712  
     22.07.2009 00:07     C:\Windows\system32\mshtml.dll --------- 9233408  
     22.07.2009 00:07     C:\Windows\system32\msfeeds.dll --------- 700928  
     22.07.2009 00:07     C:\Windows\system32\msfeedsbs.dll --------- 71680  
     22.07.2009 00:06     C:\Windows\system32\jsproxy.dll --------- 31744  
     22.07.2009 00:06     C:\Windows\system32\inetcpl.cpl --------- 1538560  
     22.07.2009 00:06     C:\Windows\system32\ieui.dll --------- 219136  
     22.07.2009 00:06     C:\Windows\system32\iesysprep.dll --------- 132096  
     22.07.2009 00:06     C:\Windows\system32\iertutil.dll --------- 2334208  
     22.07.2009 00:06     C:\Windows\system32\iesetup.dll --------- 77312  
     22.07.2009 00:06     C:\Windows\system32\iernonce.dll --------- 72192  
     22.07.2009 00:06     C:\Windows\system32\iepeers.dll --------- 252416  
    ----------------------------------------
    
     
    C:\Windows\Prefetch
    
    ----------------------------------------
    
     
    C:\Windows\Tasks
    
     24.09.2009 20:20     C:\Windows\Tasks\SA.DAT --------- 6  
     24.09.2009 20:19     C:\Windows\Tasks\SCHEDLGU.TXT --------- 11666  
    ----------------------------------------
    
     
    C:\Windows\Temp
    
    ----------------------------------------
    
     
    C:\Users\Sherkas\AppData\Local\Temp
    
     24.09.2009 21:56     C:\Users\Sherkas\AppData\Local\Temp\Low --------- 4096  
     24.09.2009 21:56     C:\Users\Sherkas\AppData\Local\Temp\Rar$DI00.263 --------- 0  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DFD595.tmp --------- 512  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DFD586.tmp --------- 32768  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DFD53F.tmp --------- 16384  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DFD54F.tmp --------- 512  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DFD4D9.tmp --------- 512  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DFD4CA.tmp --------- 32768  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DF6AD1.tmp --------- 16384  
     24.09.2009 21:32     C:\Users\Sherkas\AppData\Local\Temp\~DF9559.tmp --------- 16384  
     24.09.2009 21:28     C:\Users\Sherkas\AppData\Local\Temp\WPDNSE --------- 0  
     24.09.2009 21:28     C:\Users\Sherkas\AppData\Local\Temp\rtdrvmon.exe --------- 40960  
     24.09.2009 21:28     C:\Users\Sherkas\AppData\Local\Temp\Sherkas.bmp --------- 31832  
     24.09.2009 20:06     C:\Users\Sherkas\AppData\Local\Temp\MessengerCache --------- 8192  
     24.09.2009 20:03     C:\Users\Sherkas\AppData\Local\Temp\{E35BCCAA-B5A8-4647-89E1-9F3E17DBAC19} --------- 0  
     24.09.2009 20:03     C:\Users\Sherkas\AppData\Local\Temp\Temp1_Paint.NET.3.36.zip --------- 0  
     24.09.2009 19:58     C:\Users\Sherkas\AppData\Local\Temp\{47237095-247c-4254-8dc9-b970ccf55e06} --------- 0  
     24.09.2009 19:50     C:\Users\Sherkas\AppData\Local\Temp\~DF2CA2.tmp --------- 49152  
     24.09.2009 20:03     C:\Users\Sherkas\AppData\Local\Temp\tmp60410.WMC --------- 0  
     22.09.2009 22:43     C:\Users\Sherkas\AppData\Local\Temp\msohtmlclip1 --------- 0  
     22.09.2009 21:47     C:\Users\Sherkas\AppData\Local\Temp\{93e020b9-cd26-48e9-b57c-8bafa8167d28} --------- 0  
     21.09.2009 23:10     C:\Users\Sherkas\AppData\Local\Temp\{ea77882c-83b1-48d2-aacb-ff10e79c88d5} --------- 0  
     21.09.2009 22:50     C:\Users\Sherkas\AppData\Local\Temp\{3320902f-6ff5-4ed1-a4c4-ce0ab94807a2} --------- 0  
     21.09.2009 22:44     C:\Users\Sherkas\AppData\Local\Temp\{5cecd84e-0130-4954-9091-b6baf3aab4f4} --------- 0  
     21.09.2009 22:41     C:\Users\Sherkas\AppData\Local\Temp\mia2 --------- 0  
     21.09.2009 22:37     C:\Users\Sherkas\AppData\Local\Temp\mia3 --------- 0  
     21.09.2009 22:11     C:\Users\Sherkas\AppData\Local\Temp\{423bb62a-c2f7-4840-b599-f339253d5c7d} --------- 0  
     21.09.2009 22:11     C:\Users\Sherkas\AppData\Local\Temp\{da5b3931-758b-4643-bea4-8f3cb3289428} --------- 0  
     21.09.2009 20:03     C:\Users\Sherkas\AppData\Local\Temp\mia1 --------- 0  
     20.09.2009 21:17     C:\Users\Sherkas\AppData\Local\Temp\_avast4_ --------- 0  
     20.09.2009 21:07     C:\Users\Sherkas\AppData\Local\Temp\msohtmlclip --------- 0  
     20.09.2009 12:18     C:\Users\Sherkas\AppData\Local\Temp\Venetica_Data_DFE --------- 0  
     20.09.2009 11:23     C:\Users\Sherkas\AppData\Local\Temp\{43946053-1d8a-4a70-b09d-da43080f7ce9} --------- 0  
     20.09.2009 11:04     C:\Users\Sherkas\AppData\Local\Temp\{8486B327-48F1-44CA-BEB4-6AA8DED2BDBA} --------- 0  
     20.09.2009 11:04     C:\Users\Sherkas\AppData\Local\Temp\{610F63E3-07F6-4B84-AA9C-CEC8C26839E8} --------- 0  
     19.09.2009 18:47     C:\Users\Sherkas\AppData\Local\Temp\{853899ef-09ef-4225-adb3-781a537cefe5} --------- 0  
     19.09.2009 16:12     C:\Users\Sherkas\AppData\Local\Temp\{1E3A283B-3B03-4A8F-A8A3-0D221116379A} --------- 4096  
     19.09.2009 16:12     C:\Users\Sherkas\AppData\Local\Temp\{C5DB726F-43D1-4ECD-AB80-439C376F36F3} --------- 0  
     19.09.2009 14:50     C:\Users\Sherkas\AppData\Local\Temp\{89950C42-8CAF-4D0B-BA11-B9A14D8A6076} --------- 0  
     19.09.2009 14:47     C:\Users\Sherkas\AppData\Local\Temp\Temp1_Krait_20070410_2.zip --------- 0  
     19.09.2009 13:34     C:\Users\Sherkas\AppData\Local\Temp\{579acd3c-f4e7-499b-9fbd-301bacdd26fe} --------- 0  
     19.09.2009 13:33     C:\Users\Sherkas\AppData\Local\Temp\{F7FB0B97-182F-424C-9CE4-B29B48325323} --------- 0  
     19.09.2009 13:29     C:\Users\Sherkas\AppData\Local\Temp\LZ --------- 0  
     19.09.2009 13:29     C:\Users\Sherkas\AppData\Local\Temp\lxbk --------- 0  
     19.09.2009 13:19     C:\Users\Sherkas\AppData\Local\Temp\PdnSetup2 --------- 0  
     19.09.2009 13:19     C:\Users\Sherkas\AppData\Local\Temp\PdnSetup --------- 0  
     24.09.2009 20:03     C:\Users\Sherkas\AppData\Local\Temp\ispC341.tmp --------- 0  
     17.09.2008 22:30     C:\Users\Sherkas\AppData\Local\Temp\ose00000.exe --------- 145184  
     19.01.2007 21:46     C:\Users\Sherkas\AppData\Local\Temp\_isC689.exe --------- 455600  
     07.04.2005 01:39     C:\Users\Sherkas\AppData\Local\Temp\SETC1E7.tmp --------- 121064  
    ----------------------------------------
    
     
    C:\Program Files
    
     22.09.2009 21:49     C:\Program Files\Lexmark X1100 Series --------- 0  
     20.09.2009 17:09     C:\Program Files\Microsoft Office --------- 0  
     20.09.2009 11:04     C:\Program Files\Creative --------- 0  
     19.09.2009 14:25     C:\Program Files\Internet Explorer --------- 4096  
     19.09.2009 14:02     C:\Program Files\Windows Mail --------- 4096  
     19.09.2009 14:02     C:\Program Files\Windows Media Player --------- 4096  
     19.09.2009 12:50     C:\Program Files\Gemeinsame Dateien --------- 0  
     19.09.2009 12:50     C:\Program Files\Windows NT --------- 4096  
     21.01.2008 05:21     C:\Program Files\desktop.ini --------- 174  
     21.01.2008 05:09     C:\Program Files\Windows Calendar --------- 0  
     21.01.2008 05:09     C:\Program Files\Movie Maker --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Sidebar --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Collaboration --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Journal --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Photo Gallery --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Defender --------- 4096  
     02.11.2006 17:44     C:\Program Files\Uninstall Information --------- 0  
     02.11.2006 17:07     C:\Program Files\Microsoft Games --------- 4096  
     02.11.2006 17:07     C:\Program Files\Reference Assemblies --------- 0  
     02.11.2006 17:07     C:\Program Files\MSBuild --------- 0  
     02.11.2006 15:33     C:\Program Files\Common Files --------- 4096  
    ----------------------------------------
    
     
    C:\ProgramData\.. 
    
    Sherkas    
    Default    
    desktop.ini    
    Default User    
    All Users    
    Public    
    ----------------------------------------
    
     
    C:\Windows\system32\drivers\etc\hosts
    
    127.0.0.1       localhost
    ::1             localhost
    
    ----------------------------------------
    
     
    
    Abbildname                     PID Sitzungsname       Sitz.-Nr. Speichernutzung
    ========================= ======== ================ =========== ===============
    System Idle Process              0 Services                   0            24 K
    System                           4 Services                   0         3.612 K
    smss.exe                       396 Services                   0         1.072 K
    csrss.exe                      464 Services                   0         7.308 K
    wininit.exe                    516 Services                   0         5.304 K
    csrss.exe                      536 Console                    1        14.524 K
    services.exe                   572 Services                   0         8.312 K
    lsass.exe                      584 Services                   0         3.384 K
    lsm.exe                        592 Services                   0         5.656 K
    svchost.exe                    748 Services                   0         7.684 K
    nvvsvc.exe                     812 Services                   0         4.652 K
    svchost.exe                    840 Services                   0         9.108 K
    svchost.exe                    900 Services                   0        51.256 K
    svchost.exe                    936 Services                   0        16.960 K
    svchost.exe                    968 Services                   0       212.540 K
    svchost.exe                    988 Services                   0        40.760 K
    winlogon.exe                   280 Console                    1         7.720 K
    audiodg.exe                    436 Services                   0        18.688 K
    svchost.exe                    452 Services                   0         6.280 K
    SLsvc.exe                      388 Services                   0        12.620 K
    svchost.exe                   1016 Services                   0        14.292 K
    svchost.exe                   1112 Services                   0        20.420 K
    aswUpdSv.exe                  1188 Services                   0           496 K
    ashServ.exe                   1224 Services                   0        28.004 K
    nvvsvc.exe                    1312 Console                    1         8.736 K
    dwm.exe                       1504 Console                    1         7.044 K
    explorer.exe                  1564 Console                    1        40.364 K
    spoolsv.exe                   1836 Services                   0        14.004 K
    taskeng.exe                   1856 Console                    1        13.192 K
    svchost.exe                   1868 Services                   0        22.076 K
    taskeng.exe                   1984 Services                   0         7.856 K
    lxbkcoms.exe                  2084 Services                   0         6.540 K
    svchost.exe                   2192 Services                   0         6.976 K
    nvSCPAPISvr.exe               2208 Services                   0         6.396 K
    svchost.exe                   2288 Services                   0         9.880 K
    Guard.exe                     2308 Services                   0        14.252 K
    svchost.exe                   2396 Services                   0         4.440 K
    SearchIndexer.exe             2440 Services                   0        31.924 K
    SDWinSec.exe                  2544 Services                   0         9.972 K
    ashMaiSv.exe                  2700 Services                   0         2.880 K
    ashWebSv.exe                  2724 Services                   0        65.948 K
    WmiPrvSE.exe                  2948 Services                   0        11.612 K
    unsecapp.exe                  1696 Services                   0         5.808 K
    WmiPrvSE.exe                  2624 Services                   0         9.104 K
    MSASCui.exe                   2944 Console                    1        20.188 K
    LXBKbmgr.exe                  1252 Console                    1         5.064 K
    LXBKbmon.exe                  4032 Console                    1         4.344 K
    ashDisp.exe                   3696 Console                    1         2.400 K
    rundll32.exe                  2720 Console                    1         9.124 K
    razerhid.exe                  1852 Console                    1         6.696 K
    razertra.exe                  3136 Console                    1         6.400 K
    razerofa.exe                  3816 Console                    1         4.384 K
    iexplore.exe                  3356 Console                    1        29.012 K
    iexplore.exe                  2556 Console                    1       229.700 K
    firefox.exe                   3396 Console                    1        67.680 K
    SearchProtocolHost.exe        3080 Services                   0        11.400 K
    SearchFilterHost.exe          3376 Services                   0         8.636 K
    WinRAR.exe                    3884 Console                    1        18.408 K
    cmd.exe                       1480 Console                    1         3.420 K
    tasklist.exe                  3652 Console                    1         6.160 K
    
     
    ***** Ende des Scans 24.09.2009 um 21:56:11,87 ***
    Scanne gerade mit dem Kaspersky Online Scanner - RTIS folgt.
    Geändert von sherkas (24.09.2009 um 20:59 Uhr)

  2. #2
    Moderator Team-Mitglied Avatar von kira
    Registriert seit
    28.03.2006
    Ort
    Wien/Sprachen: Deutsch-Ungarisch
    Beiträge
    28.352

    AW: Renos/Trojan Downloader gefunden

    Herzlich Willkommen "wieder mal" hier bei uns am HijackThis Supportboard!

    Zitat Zitat von sherkas Beitrag anzeigen
    System grad vor ein paar Tagen aufgesetzt und schon wieder Ärger -_- >
    selbst Schuld wahrscheinlich:
    Code:
     [Antivirus Pro 2010] "C:\Program Files (x86)\AntivirusPro_2010\AntivirusPro_2010.exe" /hide
    dieses Programm installiert sich nicht nur "so" von selbst! wo hast Du gesurft? oder mal etwas herunterladet? verseuchte Sachen zurückgespielt von externer Festplatte, USB etc?

    Unglücklich ist auch, dass Du Vista 64 Bit hast..nämlich meiste Programme funktionieren nicht auf 64 Bit
    man kann nicht mal nach Rootkit suchen, da ein solches "Fake" Programm fast immer mit Rootkit und Backdoor zu verbunden...
    was willst machen?
    Da eine hundertprozentige Erkennung von Rootkits unmöglich ist, ist die beste Methode zur Entfernung die komplette Neuinstallation.

    -----------------------
    Bitte den Rechner vom Netz trennen, wenn er unbeaufsichtigt ist.
    Bis zu einer eventuellen Reinigung oder dem Formatieren deines Systems
    kein Online-Banking, File-sharing, Mailing, Messaging betreiben.
    Keine Up und Downloads, ausser auf Security Seiten.
    ****Ehemöglichst nicht ins internet gehen nicht ins internet gehen
    Mehr Information hierzu unter System-Sicherheit

    -----------------------
    Geändert von kira (24.09.2009 um 21:30 Uhr)
    Warnung!:
    Vorsicht beim Rechnungen per Email mit ZIP-Datei als Anhang! Kann mit einen Verschlüsselungs-Trojaner infiziert sein!
    Anhang nicht öffnen, in unserem Forum erst nachfragen!

    Bitte diese Warnung weitergeben, wo Du nur kannst!
    Sichere regelmäßig deine Daten, auf CD/DVD, USB-Sticks oder externe Festplatten, am besten 2x an verschiedenen Orten!
    Bitte diese Warnung weitergeben, wo Du nur kannst!

  3. #3
    Forenbenutzer
    Registriert seit
    29.03.2008
    Beiträge
    86

    AW: Renos/Trojan Downloader gefunden

    Na super...
    Anleitung, damit dies nicht nochmals passiert? :-/

    Hatte auch einen USB am PC - Was soll ich mit dem nun machen ?
    Geändert von sherkas (24.09.2009 um 21:38 Uhr)

  4. #4
    Moderator Team-Mitglied Avatar von kira
    Registriert seit
    28.03.2006
    Ort
    Wien/Sprachen: Deutsch-Ungarisch
    Beiträge
    28.352

    AW: Renos/Trojan Downloader gefunden

    Zitat Zitat von sherkas Beitrag anzeigen
    Na super...
    Anleitung, damit dies nicht nochmals passiert? :-/
    "Man sollte eigentlich im Leben die gleiche Dummheit nicht zweimal machen, denn die Auswahl ist so groß..."
    Zitat Zitat von sherkas Beitrag anzeigen
    Hatte auch einen USB am PC - Was soll ich mit dem nun machen ?
    1.
    Externe Medien desinfizieren und absichern

    Schalte Antiviren-Programm und Firewall ab, da der Flash_Disinfector irrtümlich von manchen Anti-Virus-Programmen als Schädling erkannt wird, was er aber nicht ist. Lade Flash Disinfector von sUBs herunter und speichere die Datei auf Deinem Desktop.
    • Bitte trenne den Rechner vom Netz (WLAN nicht vergessen).
    • Alle vorhandenen USB-Sticks, externen Festplatten und sonstige externe Medien anschließen.
    • Starte die Flash_Disinfector.exe durch Doppelklick. Folge ggfs. den Anweisungen.
    • Dein Desktop wird kurzfristig verschwinden und dann wiederkommen, das ist normal.
    • Warte, bis das Programm den Scan beendet hat, dann schließe das Programm.
    • Starte den Rechner neu.

    Lasse die externen Medien noch am Rechner angeschlossen und mache nun zur Kontrolle einen Onlinescan mit Nod32 und Panda-Online-Scanner nach dieser Anleitung Vergesse nicht, bevor Du wieder online gehst, Antiviren-Programm und Firewall wieder einzuschalten!

    Was Flash_Disinfector tun wird: Flash_Disinfector wird Deine Laufwerke von schädlichen autorun.inf-Dateien befreien und zum Schutz vor Neuinfektion an ihre Stelle einen versteckten Ordner mit diesem Namen anlegen. Bitte diese Ordner nicht löschen! Sie schützen davor, dass die sich die Autorun-Infektion erneut installieren und andere schädliche Software laufen lassen kann

    Ändere deine Passworte und Zugangsdaten (überall)! - von einem sauberen System aus

    Hall!... ich bin ein `Link` mich an --> *Nachsorge* - von unserer Moderatorin Petra

    Informationen, Tipps und Wissenswertes zum Schluss:
    Um die PC-Sicherheit zu erhöhen, Tipps-Rat und Hilfe:
    • Ein Antivirenprogramm und Firewall (aber richtig konfiguriert Jedes Programm ist nur so gut, wie der Benutzer, das davor sitzt
    • Nicht mit vollen Zugriffsrechten als Administrator ins Internet gehen-->eingeschränkten Benutzerkonto
    • Die sichere Passwort-Wahl - (sollte man eigentlich regelmäßigen Abständen ca. alle 2-3 Monate ändern)
    • Regelmäßige Update für Windows und alle installierte Software (Adobe und Java nicht vergessen!),Treiber(vom Hersteller) etc
    • Du kannst mehrere emailadresse verwenden z.B. gmx etc. Deine `haupt-E-Mail-Adresse` sollst du nur bekannte bzw vertrauliche Seite angeben/eintragen. Für andere nutze dann die gratis Webmails.
    • Nimm keine Mails von unbekannt an und öffne niemals Datei-Anhänge, wenn sie Dir nicht vorher von deinen Bekannten u. Freunden angekündigt worden sind.
    • Sichere eMail Clients z.B. Thunderbird-->Erweiterungen für Mozilla Thunderbird
    • Achte auf die Basiskonfiguration des Internet Explorer: Aktive Inhalte prinzipiell auszuschalten. - Sicherheitscheck beim Internet Explorer
    • Es gibt gute und sichere Browser z.B. Firefox - (Browser wechsel dich) - FirefoxWiki/Einstellungen - Erweiterungen für Firefox - `Kommen sich der IE und Firefox jetzt nicht dauernd in den Weg...` - Standardbrowser
    • Achte darauf, dass du nicht zuviele Prozesse in den System Startup und Dienste nimmst, unnötige Toolbars, sie verlangsamen und belasten nur dein System.
    • "Never accept software from strangers" - Installiere grundsätzlich immer nur Programme, die Du auch wirklich benötigst und von denen Du überzeugt bist, dass sie seriös sind.
      NICHT irgendwelche Programme aus dem Netz laden, wenn nicht zu 100% fest steht, dass es sich dabei um saubere Software handelt. Nette Versprechen der Hersteller garantieren noch lange keine einwandfreie Funktionsweise, also vorher blättere die Seiten bei GOOGLE, da kannst Du Dir wertvolle Informationen holen!!!
      also Immer brav aufpassen,nur das NÖTIGSTE installieren,weniger ist oft mehr
    • Besonders empfehlenswert (sysinternals - (Windows Sysinternals):
    • Autoruns
    • Process Explorer
    • TcpView
    • Mach ein Backup deines Systems - Kostenlose Anwendungsprogramme, falls mal was schiefgeht, damit du mit eigenen Mitteln schnell und einfach formatieren und neu aufsetzen kannst - Sichern von System, Programmen und Nutzdaten
    • Surfverhalten überdenken, "unsichere" Seiten vermeiden,verzichte auf Downloads von unsicheren Seiten, nicht alles anklicken und herunterladen was bunt und glänzt und bei Installationen hinschauen, was "mit"-installiert wird ...
    • Vorsicht bei der Nutzung fremder Computer und anschliessbare Externe Speichermedien wie Festplatte, USB Sticks, Speicherkarten usw! - IT-Betrüger machen keinen Urlaub!/bsi-fuer-buerger.de - auch zeitweise anschließen und scannen lassen (sehe unter `kostenlose Online-Viren-Scanner`)


    Lesestoff:
    Da der Bestand der Datenbank wird täglich ergänzt und erweitert bzw werden mit der aktuellen Virendefinition die Informationen über den betroffenen Virus aufgenommen, empfehle ich dir mindestens einmal pro Woche (später genügt es sicherlich einmal im Monat) dein System Online Scannen lassen (immer mit einen anderen Scanner), um eine zweite Meinung einzuholen
    (benutzen meist ActiveX und/oder Java): Kostenlose Online Scanner - Anleitungen
    ich wünsche dir alles Gute
    Wir möchten unser Forum kostenlos weiter für euch anbieten, daher freuen wir uns sehr über jede auch noch so kleine Spende! Wenn Du es möchtest, kannst du das hier tun: *klick*
    gruß
    argos
    Geändert von kira (24.09.2009 um 21:54 Uhr)
    Warnung!:
    Vorsicht beim Rechnungen per Email mit ZIP-Datei als Anhang! Kann mit einen Verschlüsselungs-Trojaner infiziert sein!
    Anhang nicht öffnen, in unserem Forum erst nachfragen!

    Bitte diese Warnung weitergeben, wo Du nur kannst!
    Sichere regelmäßig deine Daten, auf CD/DVD, USB-Sticks oder externe Festplatten, am besten 2x an verschiedenen Orten!
    Bitte diese Warnung weitergeben, wo Du nur kannst!

  5. #5
    Forenbenutzer
    Registriert seit
    29.03.2008
    Beiträge
    86

    AW: Renos/Trojan Downloader gefunden

    Hmm.. Wie hab ich mich infiziert? Zu lange ohne Virenschutz rumgesurft? :-/
    Ich hasse mich für meine Dummheit - [Paranoia Modus: AN]
    Geändert von sherkas (24.09.2009 um 22:01 Uhr)

  6. #6
    Forenbenutzer
    Registriert seit
    29.03.2008
    Beiträge
    86

    AW: Renos/Trojan Downloader gefunden

    Soo.. PC neuaufgesetzt, nun gleich eine HJScanlist + Hijackthis Log durchgeführt:

    Hijackthislog:
    Code:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 21:27:07, on 25.09.2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18813)
    Boot mode: Normal
    
    Running processes:
    C:\Program Files (x86)\Creative\Shared Files\CTSched.exe
    D:\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Alwil Software\Avast4\ashDisp.exe
    C:\Program Files (x86)\Creative\SBAudigy\Volume Panel\VolPanlu.exe
    C:\Windows\SysWOW64\rundll32.exe
    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    C:\Users\Sherkas\Downloads\HijackThis.exe
    
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    F2 - REG:system.ini: UserInit=userinit.exe
    O1 - Hosts: ::1 localhost
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\SPYBOT~1\SDHelper.dll
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
    O4 - HKLM\..\Run: [VolPanel] "C:\Program Files (x86)\Creative\SBAudigy\Volume Panel\VolPanlu.exe" /r
    O4 - HKLM\..\Run: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
    O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
    O4 - HKCU\..\Run: [CreativeTaskScheduler] "C:\Program Files (x86)\Creative\Shared Files\CTSched.exe" /logon
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETZWERKDIENST')
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\SPYBOT~1\SDHelper.dll
    O13 - Gopher Prefix: 
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
    O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - D:\Spybot - Search & Destroy\SDWinSec.exe
    O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
    
    --
    End of file - 5801 bytes

    Code:
     
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
                            º                                    º 
                                        hjtscanlist v2.0              
                            º                                    º 
                            $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
    
    Microsoft Windows [Version 6.0.6001]
     
     
    C:
    
      25.09.2009 21:16     C:\Program Files (x86) --------- 8192   
      25.09.2009 21:12     C:\service.log --------- 125   
           C:\pagefile.sys ---------    
      25.09.2009 21:07     C:\Windows --------- 24576   
      25.09.2009 21:06     C:\System Volume Information --------- 20480   
      25.09.2009 19:58     C:\ProgramData --------- 4096   
      25.09.2009 18:42     C:\Program Files --------- 8192   
      25.09.2009 18:38     C:\csb.log --------- 197   
      25.09.2009 18:38     C:\RaidTool --------- 0   
      25.09.2009 18:36     C:\RHDSetup.log --------- 473   
      25.09.2009 18:33     C:\Intel --------- 0   
      25.09.2009 18:23     C:\$Recycle.Bin --------- 0   
      25.09.2009 18:23     C:\Users --------- 4096   
      25.09.2009 18:22     C:\Programme --------- 0   
      25.09.2009 18:22     C:\Dokumente und Einstellungen --------- 0   
      21.01.2008 05:04     C:\PerfLogs --------- 0   
      02.11.2006 17:42     C:\Documents and Settings --------- 0   
    ----------------------------------------
    
     
    C:\Windows
    
      25.09.2009 21:14     C:\Windows\WindowsUpdate.log --------- 1933188   
      25.09.2009 21:12     C:\Windows\gdrv.sys --------- 24072   
      25.09.2009 21:12     C:\Windows\bootstat.dat --------- 67584   
      25.09.2009 21:07     C:\Windows\dd_dotnetfx35install_lp.txt --------- 76344   
      25.09.2009 21:07     C:\Windows\uxeventlog.txt --------- 1538   
      25.09.2009 21:07     C:\Windows\dd_NET_Framework35_LangPack_MSI180D.txt --------- 810704   
      25.09.2009 21:07     C:\Windows\dd_depcheck_NETFX_EXP_35.txt --------- 36116   
      25.09.2009 21:06     C:\Windows\dd_dotnetfx35error_lp.txt --------- 2   
      25.09.2009 20:17     C:\Windows\ie8_main.log --------- 2084   
      25.09.2009 19:56     C:\Windows\PFRO.log --------- 6562   
      25.09.2009 19:55     C:\Windows\setupact.log --------- 88786   
      25.09.2009 18:40     C:\Windows\DirectX.log --------- 1603   
      25.09.2009 18:37     C:\Windows\GSetup.ini --------- 10   
      25.09.2009 18:36     C:\Windows\DIFxAPI.dll --------- 525792   
      25.09.2009 18:36     C:\Windows\HideWin.exe --------- 319488   
      25.09.2009 18:29     C:\Windows\SPInstall.etl --------- 196608   
      25.09.2009 18:19     C:\Windows\DtcInstall.log --------- 3257   
      25.09.2009 18:19     C:\Windows\TSSysprep.log --------- 1355   
      29.10.2008 08:49     C:\Windows\explorer.exe --------- 3080704   
      24.07.2008 12:18     C:\Windows\SkyTel.exe --------- 1833504   
      24.07.2008 12:18     C:\Windows\RtlUpd64.exe --------- 1371168   
      24.07.2008 12:18     C:\Windows\RAVCpl64.exe --------- 6452256   
      15.07.2008 07:58     C:\Windows\RtlExUpd.dll --------- 524288   
      21.01.2008 05:21     C:\Windows\WindowsShell.Manifest --------- 749   
      21.01.2008 04:50     C:\Windows\HelpPane.exe --------- 734720   
      21.01.2008 04:49     C:\Windows\regedit.exe --------- 161792   
      21.01.2008 04:49     C:\Windows\bfsvc.exe --------- 65536   
      21.01.2008 04:49     C:\Windows\splwow64.exe --------- 39936   
      21.01.2008 04:48     C:\Windows\fveupdate.exe --------- 14848   
      21.01.2008 04:47     C:\Windows\notepad.exe --------- 169472   
      13.11.2007 18:18     C:\Windows\USetup.iss --------- 553   
      21.06.2007 08:34     C:\Windows\GSetup.exe --------- 203328   
      20.03.2007 11:23     C:\Windows\P17EP.ini --------- 1669   
      15.12.2006 04:41     C:\Windows\ResDefE.exe --------- 8192   
      02.11.2006 17:44     C:\Windows\win.ini --------- 144   
      02.11.2006 17:27     C:\Windows\setuperr.log --------- 0   
      02.11.2006 17:21     C:\Windows\SETUPAPI.LOG --------- 94   
      02.11.2006 17:04     C:\Windows\WMSysPr9.prx --------- 316640   
      02.11.2006 17:02     C:\Windows\twunk_16.exe --------- 49680   
      02.11.2006 17:02     C:\Windows\twunk_32.exe --------- 31232   
      02.11.2006 17:02     C:\Windows\twain_32.dll --------- 50688   
      02.11.2006 17:02     C:\Windows\twain.dll --------- 94784   
      02.11.2006 13:15     C:\Windows\hh.exe --------- 15872   
      02.11.2006 11:45     C:\Windows\winhlp32.exe --------- 9216   
      02.11.2006 10:26     C:\Windows\mib.bin --------- 43131   
      06.10.2006 08:17     C:\Windows\Ctregrun.exe --------- 53248   
      19.09.2006 13:41     C:\Windows\HomePremium.xml --------- 8328   
      18.09.2006 23:44     C:\Windows\system.ini --------- 219   
      18.09.2006 23:30     C:\Windows\msdfmap.ini --------- 1405   
      11.05.2000 01:00     C:\Windows\Updreg.EXE --------- 90112   
    ----------------------------------------
    
     
    C:\Windows\System
    
    ----------------------------------------
    
     
    C:\Windows\System32
    
     25.09.2009 21:25     C:\Windows\system32\hjtscanlist.txt --------- 4922  
     25.09.2009 21:22     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 --------- 3712  
     25.09.2009 21:22     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 --------- 3712  
     25.09.2009 21:19     C:\Windows\system32\perfh009.dat --------- 586980  
     25.09.2009 21:19     C:\Windows\system32\perfh007.dat --------- 618204  
     25.09.2009 21:19     C:\Windows\system32\perfc009.dat --------- 101052  
     25.09.2009 21:19     C:\Windows\system32\perfc007.dat --------- 122636  
     25.09.2009 21:19     C:\Windows\system32\PerfStringBackup.INI --------- 1418806  
     25.09.2009 20:51     C:\Windows\system32\catroot --------- 4096  
     25.09.2009 20:51     C:\Windows\system32\catroot2 --------- 8192  
     25.09.2009 20:19     C:\Windows\system32\migration --------- 4096  
     25.09.2009 20:19     C:\Windows\system32\de-DE --------- 262144  
     25.09.2009 20:19     C:\Windows\system32\en-US --------- 8192  
     25.09.2009 19:57     C:\Windows\system32\FNTCACHE.DAT --------- 229784  
     25.09.2009 19:55     C:\Windows\system32\drivers --------- 65536  
     25.09.2009 19:55     C:\Windows\system32\Boot --------- 0  
     25.09.2009 19:55     C:\Windows\system32\manifeststore --------- 0  
     25.09.2009 19:55     C:\Windows\system32\wbem --------- 65536  
     25.09.2009 19:53     C:\Windows\system32\Tasks --------- 4096  
     25.09.2009 19:02     C:\Windows\system32\WDI --------- 4096  
     25.09.2009 18:42     C:\Windows\system32\Data --------- 0  
     25.09.2009 18:42     C:\Windows\system32\wrap_oal.dll --------- 431104  
     25.09.2009 18:42     C:\Windows\system32\OpenAL32.dll --------- 136192  
     25.09.2009 18:32     C:\Windows\system32\restore --------- 0  
     25.09.2009 18:19     C:\Windows\system32\license.rtf --------- 60826  
     15.09.2009 12:53     C:\Windows\system32\AvastSS.scr --------- 97480  
     28.08.2009 15:10     C:\Windows\system32\mrt.exe --------- 26035144  
     28.08.2009 14:51     C:\Windows\system32\Apphlpdm.dll --------- 32256  
     28.08.2009 12:39     C:\Windows\system32\GameUXLegacyGDFs.dll --------- 4240384  
     14.08.2009 19:29     C:\Windows\system32\netiohlp.dll --------- 141312  
     14.08.2009 19:29     C:\Windows\system32\netevent.dll --------- 17920  
     14.08.2009 17:13     C:\Windows\system32\TCPSVCS.EXE --------- 10752  
     14.08.2009 17:13     C:\Windows\system32\ROUTE.EXE --------- 21504  
     14.08.2009 17:13     C:\Windows\system32\MRINFO.EXE --------- 12800  
     14.08.2009 17:12     C:\Windows\system32\NETSTAT.EXE --------- 32256  
     14.08.2009 17:12     C:\Windows\system32\ARP.EXE --------- 23040  
     14.08.2009 17:12     C:\Windows\system32\HOSTNAME.EXE --------- 10240  
     14.08.2009 17:12     C:\Windows\system32\finger.exe --------- 11264  
     22.07.2009 00:11     C:\Windows\system32\wininet.dll --------- 1146880  
     22.07.2009 00:11     C:\Windows\system32\urlmon.dll --------- 1484288  
     22.07.2009 00:09     C:\Windows\system32\occache.dll --------- 243712  
     22.07.2009 00:07     C:\Windows\system32\mshtml.dll --------- 9233408  
     22.07.2009 00:07     C:\Windows\system32\msfeeds.dll --------- 700928  
     22.07.2009 00:07     C:\Windows\system32\msfeedsbs.dll --------- 71680  
     22.07.2009 00:06     C:\Windows\system32\jsproxy.dll --------- 31744  
     22.07.2009 00:06     C:\Windows\system32\inetcpl.cpl --------- 1538560  
     22.07.2009 00:06     C:\Windows\system32\ieui.dll --------- 219136  
     22.07.2009 00:06     C:\Windows\system32\iesysprep.dll --------- 132096  
     22.07.2009 00:06     C:\Windows\system32\iertutil.dll --------- 2334208  
     22.07.2009 00:06     C:\Windows\system32\iesetup.dll --------- 77312  
     22.07.2009 00:06     C:\Windows\system32\iernonce.dll --------- 72192  
     22.07.2009 00:06     C:\Windows\system32\iepeers.dll --------- 252416  
     22.07.2009 00:06     C:\Windows\system32\ieframe.dll --------- 12458496  
     22.07.2009 00:06     C:\Windows\system32\iedkcs32.dll --------- 458240  
     21.07.2009 22:34     C:\Windows\system32\ieUnatt.exe --------- 162816  
     21.07.2009 22:34     C:\Windows\system32\ie4uinit.exe --------- 70656  
     21.07.2009 22:34     C:\Windows\system32\msfeedssync.exe --------- 12288  
     21.07.2009 22:34     C:\Windows\system32\mshtml.tlb --------- 1638912  
     21.07.2009 21:09     C:\Windows\system32\ieuinit.inf --------- 57667  
     21.07.2009 17:52     C:\Windows\system32\ntoskrnl.exe --------- 4691032  
     17.07.2009 17:00     C:\Windows\system32\atl.dll --------- 88576  
     15.07.2009 01:54     C:\Windows\system32\nvcuvenc.dll --------- 1723424  
     15.07.2009 01:54     C:\Windows\system32\nvcod157.dll --------- 167936  
     15.07.2009 01:54     C:\Windows\system32\nvcuda.dll --------- 2617856  
     15.07.2009 01:54     C:\Windows\system32\nvcuvid.dll --------- 2258976  
     15.07.2009 01:54     C:\Windows\system32\nvuninst.exe --------- 539168  
     15.07.2009 01:54     C:\Windows\system32\dpinst.exe --------- 930272  
     15.07.2009 01:54     C:\Windows\system32\nvwgf2umx.dll --------- 4570624  
     15.07.2009 01:54     C:\Windows\system32\nvudisp.exe --------- 539168  
     15.07.2009 01:54     C:\Windows\system32\nvoglv64.dll --------- 15005696  
     15.07.2009 01:54     C:\Windows\system32\nvapi64.dll --------- 1291776  
     15.07.2009 01:54     C:\Windows\system32\nvdisp.nvu --------- 10161  
     15.07.2009 01:54     C:\Windows\system32\nvcod.dll --------- 167936  
     15.07.2009 01:54     C:\Windows\system32\nvd3dumx.dll --------- 9375232  
     14.07.2009 15:21     C:\Windows\system32\wmpdxm.dll --------- 368128  
     14.07.2009 15:21     C:\Windows\system32\wmp.dll --------- 13426176  
     14.07.2009 15:20     C:\Windows\system32\dxmasf.dll --------- 5120  
     14.07.2009 15:20     C:\Windows\system32\msdxm.ocx --------- 5120  
     14.07.2009 15:20     C:\Windows\system32\spwmp.dll --------- 9216  
     14.07.2009 14:09     C:\Windows\system32\nvcplui.exe --------- 3778080  
     14.07.2009 14:09     C:\Windows\system32\nvcpl.cpl --------- 410656  
     14.07.2009 14:09     C:\Windows\system32\nvsvs.dll --------- 1685024  
     14.07.2009 14:09     C:\Windows\system32\nvwss.dll --------- 3747360  
     14.07.2009 14:09     C:\Windows\system32\nvvitvs.dll --------- 4548128  
     14.07.2009 14:09     C:\Windows\system32\nvmccss.dll --------- 289824  
     14.07.2009 14:09     C:\Windows\system32\nvmobls.dll --------- 1649184  
     14.07.2009 14:09     C:\Windows\system32\nvgames.dll --------- 5209632  
     14.07.2009 14:08     C:\Windows\system32\nvdisps.dll --------- 5412384  
     14.07.2009 14:08     C:\Windows\system32\nvmctray.dll --------- 82464  
     14.07.2009 14:08     C:\Windows\system32\NvApps.xml --------- 243445  
     14.07.2009 14:08     C:\Windows\system32\nvshext.dll --------- 238080  
     14.07.2009 14:08     C:\Windows\system32\nvcpl.dll --------- 16561184  
     14.07.2009 14:08     C:\Windows\system32\nvvsvc.exe --------- 383008  
     14.07.2009 14:08     C:\Windows\system32\NvwsApps.xml --------- 66834  
     14.07.2009 14:08     C:\Windows\system32\nvsvc64.dll --------- 882720  
     14.07.2009 13:31     C:\Windows\system32\wmploc.DLL --------- 8147968  
     14.07.2009 10:33     C:\Windows\system32\msdxm.tlb --------- 43520  
     14.07.2009 10:33     C:\Windows\system32\amcompat.tlb --------- 18432  
     11.07.2009 21:50     C:\Windows\system32\wlansvc.dll --------- 615936  
     11.07.2009 21:50     C:\Windows\system32\wlansec.dll --------- 376832  
    ----------------------------------------
    
     
    C:\Windows\Prefetch
    
     25.09.2009 21:23     C:\Windows\Prefetch\DLLHOST.EXE-6389524F.pf --------- 20684  
     25.09.2009 21:23     C:\Windows\Prefetch\CONSENT.EXE-40419367.pf --------- 73270  
     25.09.2009 21:23     C:\Windows\Prefetch\VERCLSID.EXE-AB0FD091.pf --------- 26022  
     25.09.2009 21:21     C:\Windows\Prefetch\WMIPRVSE.EXE-E8B8DD29.pf --------- 38982  
     25.09.2009 21:21     C:\Windows\Prefetch\DLLHOST.EXE-4B6CB38A.pf --------- 30336  
     25.09.2009 21:21     C:\Windows\Prefetch\CONTROL.EXE-6EA5489A.pf --------- 33434  
     25.09.2009 21:20     C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-69C456C3.pf --------- 46294  
     25.09.2009 21:19     C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-44162447.pf --------- 31362  
     25.09.2009 21:18     C:\Windows\Prefetch\VERCLSID.EXE-FBC502B5.pf --------- 23120  
     25.09.2009 21:17     C:\Windows\Prefetch\WMIADAP.EXE-BB21CD77.pf --------- 28876  
     25.09.2009 21:15     C:\Windows\Prefetch\MSCORSVW.EXE-E33FEBB3.pf --------- 161058  
     25.09.2009 21:15     C:\Windows\Prefetch\MSCORSVW.EXE-596EFD11.pf --------- 139962  
     25.09.2009 21:15     C:\Windows\Prefetch\WINMAIL.EXE-4A3CA0DE.pf --------- 186208  
     25.09.2009 21:14     C:\Windows\Prefetch\MOBSYNC.EXE-B307E1CC.pf --------- 40148  
     25.09.2009 21:14     C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-766EFF52.pf --------- 186496  
     25.09.2009 21:14     C:\Windows\Prefetch\WUAPP.EXE-79F5B9BE.pf --------- 36142  
     25.09.2009 21:14     C:\Windows\Prefetch\IEXPLORE.EXE-A033F7A0.pf --------- 231050  
     25.09.2009 21:13     C:\Windows\Prefetch\ReadyBoot --------- 4096  
     25.09.2009 21:13     C:\Windows\Prefetch\AVAST.SETUP-0E8B7FA9.pf --------- 425736  
     25.09.2009 21:13     C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf --------- 3231446  
     25.09.2009 21:11     C:\Windows\Prefetch\AgGlFgAppHistory.db --------- 921172  
     25.09.2009 21:11     C:\Windows\Prefetch\AgGlFaultHistory.db --------- 1657644  
     25.09.2009 21:11     C:\Windows\Prefetch\AgGlGlobalHistory.db --------- 2866680  
     25.09.2009 21:11     C:\Windows\Prefetch\AgRobust.db --------- 927496  
     25.09.2009 21:11     C:\Windows\Prefetch\PfSvPerfStats.bin --------- 584  
     25.09.2009 21:06     C:\Windows\Prefetch\WUAUCLT.EXE-5D573F0E.pf --------- 36584  
     25.09.2009 21:06     C:\Windows\Prefetch\SVCHOST.EXE-6A249820.pf --------- 21714  
     25.09.2009 21:06     C:\Windows\Prefetch\VSSVC.EXE-6C8F0C66.pf --------- 102134  
     25.09.2009 21:06     C:\Windows\Prefetch\DRVINST.EXE-39D9EAC7.pf --------- 81886  
     25.09.2009 21:06     C:\Windows\Prefetch\Layout.ini --------- 1527330  
     25.09.2009 20:59     C:\Windows\Prefetch\TASKENG.EXE-35FA9C06.pf --------- 58536  
     25.09.2009 20:57     C:\Windows\Prefetch\WERMGR.EXE-F439C551.pf --------- 23936  
     25.09.2009 20:42     C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-590963748-20509992-292448591-1000.db --------- 435361  
     25.09.2009 20:42     C:\Windows\Prefetch\AgGlUAD_S-1-5-21-590963748-20509992-292448591-1000.db --------- 169790  
     25.09.2009 20:21     C:\Windows\Prefetch\EXPLORER.EXE-D5E97654.pf --------- 201682  
     25.09.2009 20:21     C:\Windows\Prefetch\IE4UINIT.EXE-693AF9DC.pf --------- 62814  
     25.09.2009 20:21     C:\Windows\Prefetch\IE4UINIT.EXE-B9F02C00.pf --------- 65522  
     25.09.2009 20:19     C:\Windows\Prefetch\LOGONUI.EXE-F639BD7E.pf --------- 236572  
     25.09.2009 20:18     C:\Windows\Prefetch\IEUSER.EXE-5376DA49.pf --------- 44102  
     25.09.2009 20:01     C:\Windows\Prefetch\DLLHOST.EXE-61AB3437.pf --------- 29138  
     25.09.2009 19:58     C:\Windows\Prefetch\DWM.EXE-314E93C5.pf --------- 25284  
     25.09.2009 19:58     C:\Windows\Prefetch\USERINIT.EXE-5114915C.pf --------- 14104  
     25.09.2009 19:58     C:\Windows\Prefetch\SVCHOST.EXE-4ED41433.pf --------- 29300  
     25.09.2009 19:58     C:\Windows\Prefetch\GSVR.EXE-E2C51D6F.pf --------- 25228  
     25.09.2009 19:53     C:\Windows\Prefetch\SPYBOTSD.EXE-B55CE70A.pf --------- 156506  
     25.09.2009 19:41     C:\Windows\Prefetch\VISTHUPD.EXE-B0CCC695.pf --------- 40058  
     25.09.2009 19:24     C:\Windows\Prefetch\CONIME.EXE-4691AE88.pf --------- 24080  
     25.09.2009 18:57     C:\Windows\Prefetch\RUNDLL32.EXE-37FE8E52.pf --------- 47474  
     25.09.2009 18:55     C:\Windows\Prefetch\WSQMCONS.EXE-4048402C.pf --------- 2248  
     25.09.2009 18:54     C:\Windows\Prefetch\DLLHOST.EXE-F6FB0921.pf --------- 32484  
     25.09.2009 18:52     C:\Windows\Prefetch\DLLHOST.EXE-AD18D999.pf --------- 30708  
     25.09.2009 18:52     C:\Windows\Prefetch\WUAPP.EXE-55D470C2.pf --------- 15360  
     25.09.2009 18:50     C:\Windows\Prefetch\SDWINSEC.EXE-70A0DB9A.pf --------- 44054  
     25.09.2009 18:50     C:\Windows\Prefetch\NET.EXE-0225D674.pf --------- 16298  
     25.09.2009 18:50     C:\Windows\Prefetch\NET1.EXE-091D8149.pf --------- 13744  
     25.09.2009 18:50     C:\Windows\Prefetch\SPYBOTSD_INCLUDES.EXE-4C0EFD1B.pf --------- 69600  
     25.09.2009 18:49     C:\Windows\Prefetch\RUNDLL32.EXE-54927F39.pf --------- 30774  
     25.09.2009 18:49     C:\Windows\Prefetch\WUSETUPV.EXE-A5D23970.pf --------- 16866  
     25.09.2009 18:49     C:\Windows\Prefetch\SPYBOTSD162.TMP-78A17EB5.pf --------- 38024  
     25.09.2009 18:49     C:\Windows\Prefetch\SPYBOTSD162.EXE-EA07C18B.pf --------- 28068  
     25.09.2009 18:49     C:\Windows\Prefetch\SPYBOTSD162.TMP-773DDA9F.pf --------- 25620  
     25.09.2009 18:47     C:\Windows\Prefetch\WMPLAYER.EXE-EBBA463B.pf --------- 57660  
     25.09.2009 18:46     C:\Windows\Prefetch\RUNDLL32.EXE-13A0ABD9.pf --------- 30908  
     25.09.2009 18:44     C:\Windows\Prefetch\RESTART.EXE-12096555.pf --------- 22456  
     25.09.2009 18:44     C:\Windows\Prefetch\DLLHOST.EXE-A010D183.pf --------- 63850  
     25.09.2009 18:44     C:\Windows\Prefetch\RUNDLL32.EXE-17691DFE.pf --------- 59538  
     25.09.2009 18:44     C:\Windows\Prefetch\CTLAUNCH.EXE-A5E2A686.pf --------- 30694  
     25.09.2009 18:44     C:\Windows\Prefetch\CTINST.EXE-64C90A42.pf --------- 36768  
     25.09.2009 18:44     C:\Windows\Prefetch\CTREGSVR.EXE-3EE3E561.pf --------- 27632  
     25.09.2009 18:43     C:\Windows\Prefetch\SETUP.EXE-55E4169F.pf --------- 95586  
     25.09.2009 18:43     C:\Windows\Prefetch\INSTHELP.EXE-88A3301C.pf --------- 11154  
     25.09.2009 18:43     C:\Windows\Prefetch\SETUP.EXE-2431FEE6.pf --------- 106014  
     25.09.2009 18:43     C:\Windows\Prefetch\CTREGSVR.EXE-684C99A3.pf --------- 24730  
     25.09.2009 18:43     C:\Windows\Prefetch\INSTHELP.EXE-992D3710.pf --------- 11154  
     25.09.2009 18:43     C:\Windows\Prefetch\RESDEFE.EXE-4BA1BC0D.pf --------- 29272  
     25.09.2009 18:43     C:\Windows\Prefetch\CTPBSEQ.EXE-53D56754.pf --------- 21892  
     25.09.2009 18:43     C:\Windows\Prefetch\REGEDIT.EXE-DAB4D60B.pf --------- 14960  
     25.09.2009 18:43     C:\Windows\Prefetch\REGEDIT.EXE-0D49B425.pf --------- 23830  
     25.09.2009 18:43     C:\Windows\Prefetch\NOTIMAN.EXE-4C3C29F3.pf --------- 23482  
     25.09.2009 18:43     C:\Windows\Prefetch\REGSVR32.EXE-B31EC963.pf --------- 35176  
     25.09.2009 18:43     C:\Windows\Prefetch\INSTHELP.EXE-37F54C3A.pf --------- 11952  
     25.09.2009 18:43     C:\Windows\Prefetch\INSTHELP.EXE-22A609E7.pf --------- 11590  
     25.09.2009 18:43     C:\Windows\Prefetch\CTHWACCL.EXE-8AA441E6.pf --------- 23534  
     25.09.2009 18:43     C:\Windows\Prefetch\CTZAPXX.EXE-B93255DF.pf --------- 70080  
     25.09.2009 18:43     C:\Windows\Prefetch\SETUP.EXE-C5FCA51D.pf --------- 22174  
     25.09.2009 18:43     C:\Windows\Prefetch\RUNDLL32.EXE-497C617D.pf --------- 35136  
     25.09.2009 18:42     C:\Windows\Prefetch\ADDCAT.EXE-1938F6E6.pf --------- 26288  
     25.09.2009 18:42     C:\Windows\Prefetch\EXPAND.EXE-B4BCC1B9.pf --------- 26864  
     25.09.2009 18:42     C:\Windows\Prefetch\REGSVR32.EXE-03D3FB87.pf --------- 29476  
     25.09.2009 18:42     C:\Windows\Prefetch\OALINST.EXE-2ADE505D.pf --------- 32592  
     25.09.2009 18:42     C:\Windows\Prefetch\INSTHELP.EXE-808AE75C.pf --------- 11154  
     25.09.2009 18:42     C:\Windows\Prefetch\INSTHELP.EXE-0B90C59A.pf --------- 11154  
     25.09.2009 18:42     C:\Windows\Prefetch\INSTHELP.EXE-4515E8D2.pf --------- 11940  
     25.09.2009 18:42     C:\Windows\Prefetch\INSTHELP.EXE-51EC1E6F.pf --------- 11952  
     25.09.2009 18:42     C:\Windows\Prefetch\INSTHELP.EXE-157B4F91.pf --------- 11166  
     25.09.2009 18:41     C:\Windows\Prefetch\INSTHELP.EXE-11265ADE.pf --------- 11166  
     25.09.2009 18:41     C:\Windows\Prefetch\SETUP.EXE-41129E67.pf --------- 110360  
     25.09.2009 18:41     C:\Windows\Prefetch\CTOSCHK.EXE-4900EA27.pf --------- 21580  
     25.09.2009 18:41     C:\Windows\Prefetch\DEMO32.EXE-035FFF76.pf --------- 25770  
     25.09.2009 18:41     C:\Windows\Prefetch\SETUP.EXE-9F182B59.pf --------- 22270  
     25.09.2009 18:40     C:\Windows\Prefetch\PCALUA.EXE-28D6C54B.pf --------- 2000  
     25.09.2009 18:34     C:\Windows\Prefetch\DIFX64.EXE-675A10BB.pf --------- 43690  
     25.09.2009 18:33     C:\Windows\Prefetch\SETUP.EXE-1515D651.pf --------- 33042  
     25.09.2009 18:33     C:\Windows\Prefetch\INFHELP.EXE-2EBA434A.pf --------- 21794  
     25.09.2009 18:32     C:\Windows\Prefetch\ISBEW64.EXE-997299DA.pf --------- 19508  
     25.09.2009 18:32     C:\Windows\Prefetch\SETUP.EXE-A3CBA51B.pf --------- 85814  
     25.09.2009 18:32     C:\Windows\Prefetch\SETUP.EXE-183DCBAC.pf --------- 83850  
     25.09.2009 18:32     C:\Windows\Prefetch\JBROWSER.EXE-B284730A.pf --------- 56444  
     25.09.2009 18:32     C:\Windows\Prefetch\RUN.EXE-AD7E1B85.pf --------- 18422  
     25.09.2009 18:29     C:\Windows\Prefetch\WINDOWS6.0-KB936330-X86-WAVE0-87494552.pf --------- 33652  
     25.09.2009 18:29     C:\Windows\Prefetch\SPINSTALL.EXE-2358640B.pf --------- 35802  
     25.09.2009 18:29     C:\Windows\Prefetch\SPYBOTSD162.TMP-DD400B98.pf --------- 37556  
     25.09.2009 18:29     C:\Windows\Prefetch\SPYBOTSD162.TMP-BA27C526.pf --------- 25572  
     25.09.2009 18:28     C:\Windows\Prefetch\AVAST.SETUP-1100F2D6.pf --------- 35984  
     25.09.2009 18:28     C:\Windows\Prefetch\WUDFHOST.EXE-DEBBE5F1.pf --------- 24982  
     25.09.2009 18:28     C:\Windows\Prefetch\SETUPGER1351.EXE-FA9D5933.pf --------- 57884  
     25.09.2009 18:28     C:\Windows\Prefetch\RUNDLL32.EXE-9BE65666.pf --------- 16942  
     25.09.2009 18:28     C:\Windows\Prefetch\RUNDLL32.EXE-8AE07A7B.pf --------- 22630  
     25.09.2009 18:24     C:\Windows\Prefetch\MSASCUI.EXE-AB5A490C.pf --------- 946  
     25.09.2009 18:23     C:\Windows\Prefetch\RUNDLL32.EXE-E899AD83.pf --------- 46436  
     25.09.2009 18:23     C:\Windows\Prefetch\RUNDLL32.EXE-F0CE50B2.pf --------- 8408  
     25.09.2009 18:23     C:\Windows\Prefetch\UNREGMP2.EXE-51519EBD.pf --------- 70364  
     25.09.2009 18:23     C:\Windows\Prefetch\RUNDLL32.EXE-97177C7E.pf --------- 19832  
     25.09.2009 18:23     C:\Windows\Prefetch\WINMAIL.EXE-6A547899.pf --------- 43988  
     25.09.2009 18:23     C:\Windows\Prefetch\RUNDLL32.EXE-A2F5D24A.pf --------- 13256  
     25.09.2009 18:22     C:\Windows\Prefetch\WINSAT.EXE-C345C80B.pf --------- 86768  
     25.09.2009 18:22     C:\Windows\Prefetch\MCBUILDER.EXE-6F788FC0.pf --------- 447030  
     25.09.2009 18:22     C:\Windows\Prefetch\LPREMOVE.EXE-570BDFF7.pf --------- 15322  
     25.09.2009 18:19     C:\Windows\Prefetch\BFSVC.EXE-9083B243.pf --------- 9884  
     25.09.2009 18:19     C:\Windows\Prefetch\RUNONCE.EXE-BD8A4C8F.pf --------- 18476  
     25.09.2009 18:19     C:\Windows\Prefetch\RUNDLL32.EXE-4B68E06A.pf --------- 15014  
     25.09.2009 18:17     C:\Windows\Prefetch\SVCHOST.EXE-0A49737D.pf --------- 20524  
     25.09.2009 18:17     C:\Windows\Prefetch\LSM.EXE-A3814879.pf --------- 5730  
     25.09.2009 18:17     C:\Windows\Prefetch\SETUP.EXE-217758DF.pf --------- 33432  
     25.09.2009 18:17     C:\Windows\Prefetch\SVCHOST.EXE-46278F65.pf --------- 17108  
     25.09.2009 18:17     C:\Windows\Prefetch\SVCHOST.EXE-CFF5F324.pf --------- 16438  
     25.09.2009 18:17     C:\Windows\Prefetch\SERVICES.EXE-7FDA2469.pf --------- 10194  
     25.09.2009 18:17     C:\Windows\Prefetch\LSASS.EXE-F57E7653.pf --------- 10874  
     25.09.2009 18:17     C:\Windows\Prefetch\AgAppLaunch.db --------- 334168  
    ----------------------------------------
    
     
    C:\Windows\Tasks
    
     25.09.2009 21:12     C:\Windows\Tasks\SA.DAT --------- 6  
     25.09.2009 21:11     C:\Windows\Tasks\SCHEDLGU.TXT --------- 8264  
    ----------------------------------------
    
     
    C:\Windows\Temp
    
     25.09.2009 21:24     C:\Windows\Temp\_avast4_ --------- 4096  
     25.09.2009 21:07     C:\Windows\Temp\Microsoft .NET Framework 3.5-KB963707_20090925_190723920.html --------- 87342  
     25.09.2009 21:07     C:\Windows\Temp\Microsoft .NET Framework 3.5-KB963707_20090925_190723920-Msi0.txt --------- 690808  
     25.09.2009 20:50     C:\Windows\Temp\MpSigStub.log --------- 4770  
     25.09.2009 19:57     C:\Windows\Temp\ASPNETSetup_00001.log --------- 777  
     25.09.2009 19:57     C:\Windows\Temp\ASPNETSetup_00000.log --------- 775  
     25.09.2009 18:23     C:\Windows\Temp\WinSAT_StorageAsmt.etl --------- 5242880  
     25.09.2009 18:22     C:\Windows\Temp\WinSAT_DX.etl --------- 1048576  
     25.09.2009 18:22     C:\Windows\Temp\WinSAT_KernelLog.etl --------- 5242880  
     25.09.2009 18:19     C:\Windows\Temp\DMI7203.tmp --------- 0  
     25.09.2009 18:19     C:\Windows\Temp\DMI7148.tmp --------- 0  
     25.09.2009 18:18     C:\Windows\Temp\DMIBC2.tmp --------- 0  
     25.09.2009 18:18     C:\Windows\Temp\DMIB18.tmp --------- 0  
     25.09.2009 18:18     C:\Windows\Temp\DMI8F43.tmp --------- 0  
    ----------------------------------------
    
     
    C:\Users\Sherkas\AppData\Local\Temp
    
     25.09.2009 21:20     C:\Users\Sherkas\AppData\Local\Temp\Sherkas.bmp --------- 31832  
     25.09.2009 21:19     C:\Users\Sherkas\AppData\Local\Temp\hjtscanlist.zip --------- 2097  
     25.09.2009 21:17     C:\Users\Sherkas\AppData\Local\Temp\etilqs_MorvVI1rV4OJ37cHgOkT --------- 0  
     25.09.2009 21:14     C:\Users\Sherkas\AppData\Local\Temp\Low --------- 0  
     25.09.2009 21:13     C:\Users\Sherkas\AppData\Local\Temp\WPDNSE --------- 0  
     25.09.2009 20:02     C:\Users\Sherkas\AppData\Local\Temp\Microsoft .NET Framework 3.5-KB958484_20090925_180244671.html --------- 113624  
     25.09.2009 20:02     C:\Users\Sherkas\AppData\Local\Temp\Microsoft .NET Framework 3.5-KB958484_20090925_180244671-Msi0.txt --------- 1395514  
     25.09.2009 20:01     C:\Users\Sherkas\AppData\Local\Temp\dd_clwireg.txt --------- 7944  
     25.09.2009 18:43     C:\Users\Sherkas\AppData\Local\Temp\{0E0B2C76-CDCA-40BC-B48F-664F43F09073} --------- 0  
     25.09.2009 18:43     C:\Users\Sherkas\AppData\Local\Temp\CTZapLog.txt --------- 5700  
     25.09.2009 18:40     C:\Users\Sherkas\AppData\Local\Temp\{0901eb7d-147b-46e1-b989-df217bdc6d6c} --------- 0  
     25.09.2009 18:38     C:\Users\Sherkas\AppData\Local\Temp\{EE57CD1B-13B8-4963-BABF-FB99F26F76A5} --------- 0  
     25.09.2009 18:38     C:\Users\Sherkas\AppData\Local\Temp\{E34C0B63-A0D0-4B9D-9BFC-942C4144A294} --------- 4096  
     25.09.2009 18:38     C:\Users\Sherkas\AppData\Local\Temp\ispAAD2.tmp --------- 0  
     25.09.2009 18:36     C:\Users\Sherkas\AppData\Local\Temp\ispB7CC.tmp --------- 0  
     25.09.2009 18:32     C:\Users\Sherkas\AppData\Local\Temp\{807DDE03-2989-44C9-A5C2-C611F91DA7C1} --------- 0  
     25.09.2009 18:29     C:\Users\Sherkas\AppData\Local\Temp\_avast4_ --------- 0  
     25.09.2009 18:23     C:\Users\Sherkas\AppData\Local\Temp\wmsetup.log --------- 839  
     19.01.2007 21:46     C:\Users\Sherkas\AppData\Local\Temp\_is9CDA.exe --------- 455600  
     14.11.2005 10:24     C:\Users\Sherkas\AppData\Local\Temp\SETB615.tmp --------- 121064  
     07.04.2005 01:39     C:\Users\Sherkas\AppData\Local\Temp\SETA977.tmp --------- 121064  
    ----------------------------------------
    
     
    C:\Program Files
    
     25.09.2009 20:19     C:\Program Files\Internet Explorer --------- 4096  
     25.09.2009 19:55     C:\Program Files\Windows Mail --------- 4096  
     25.09.2009 19:02     C:\Program Files\Windows Media Player --------- 4096  
     25.09.2009 18:43     C:\Program Files\Creative --------- 0  
     25.09.2009 18:28     C:\Program Files\Alwil Software --------- 0  
     25.09.2009 18:22     C:\Program Files\Gemeinsame Dateien --------- 0  
     25.09.2009 18:22     C:\Program Files\Windows NT --------- 4096  
     21.01.2008 05:21     C:\Program Files\desktop.ini --------- 174  
     21.01.2008 05:09     C:\Program Files\Windows Calendar --------- 0  
     21.01.2008 05:09     C:\Program Files\Movie Maker --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Sidebar --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Collaboration --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Journal --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Photo Gallery --------- 4096  
     21.01.2008 05:09     C:\Program Files\Windows Defender --------- 4096  
     02.11.2006 17:44     C:\Program Files\Uninstall Information --------- 0  
     02.11.2006 17:07     C:\Program Files\Microsoft Games --------- 4096  
     02.11.2006 17:07     C:\Program Files\MSBuild --------- 0  
     02.11.2006 17:07     C:\Program Files\Reference Assemblies --------- 0  
     02.11.2006 15:33     C:\Program Files\Common Files --------- 4096  
    ----------------------------------------
    
     
    C:\ProgramData\.. 
    
    Sherkas    
    Default    
    desktop.ini    
    Default User    
    All Users    
    Public    
    ----------------------------------------
    
     
    C:\Windows\system32\drivers\etc\hosts
    
    127.0.0.1       localhost
    ::1             localhost
    127.0.0.1	www.007guard.com
    127.0.0.1	007guard.com
    127.0.0.1	008i.com
    127.0.0.1	www.008k.com
    127.0.0.1	008k.com
    127.0.0.1	www.00hq.com
    127.0.0.1	00hq.com
    127.0.0.1	010402.com
    127.0.0.1	www.032439.com
    127.0.0.1	032439.com
    127.0.0.1	www.0scan.com
    127.0.0.1	0scan.com
    127.0.0.1	1000gratisproben.com
    127.0.0.1	www.1000gratisproben.com
    127.0.0.1	1001namen.com
    127.0.0.1	www.1001namen.com
    127.0.0.1	100888290cs.com
    127.0.0.1	www.100888290cs.com
    127.0.0.1	www.100sexlinks.com
    127.0.0.1	100sexlinks.com
    127.0.0.1	10sek.com
    127.0.0.1	www.10sek.com
    127.0.0.1	www.1-2005-search.com
    127.0.0.1	1-2005-search.com
    127.0.0.1	123haustiereundmehr.com
    127.0.0.1	www.123haustiereundmehr.com
    127.0.0.1	123moviedownload.com
    127.0.0.1	www.123moviedownload.com
    127.0.0.1	123simsen.com
    127.0.0.1	www.123simsen.com
    127.0.0.1	123topsearch.com
    127.0.0.1	www.123topsearch.com
    127.0.0.1	125sms.co.uk
    127.0.0.1	www.125sms.co.uk
    127.0.0.1	www.125sms.com
    127.0.0.1	125sms.com
    127.0.0.1	132.com
    127.0.0.1	www.132.com
    127.0.0.1	www.1337crew.info
    127.0.0.1	1337crew.info
    127.0.0.1	www.1337-crew.to
    127.0.0.1	1337-crew.to
    127.0.0.1	136136.net
    127.0.0.1	www.136136.net
    127.0.0.1	150freesms.de
    127.0.0.1	www.150freesms.de
    127.0.0.1	163ns.com
    127.0.0.1	www.163ns.com
    127.0.0.1	171203.com
    127.0.0.1	17-plus.com
    127.0.0.1	1800searchonline.com
    127.0.0.1	www.1800searchonline.com
    127.0.0.1	180searchassistant.com
    127.0.0.1	www.180searchassistant.com
    127.0.0.1	180solutions.com
    127.0.0.1	www.180solutions.com
    127.0.0.1	181.365soft.info
    127.0.0.1	www.181.365soft.info
    127.0.0.1	1987324.com
    127.0.0.1	www.1987324.com
    127.0.0.1	1-domains-registrations.com
    127.0.0.1	www.1-domains-registrations.com
    127.0.0.1	www.1sexparty.com
    127.0.0.1	1sexparty.com
    127.0.0.1	www.1sms.de
    127.0.0.1	1sms.de
    127.0.0.1	www.1spybot.com
    127.0.0.1	1spybot.com
    127.0.0.1	www.1stantivirus.com
    127.0.0.1	1stantivirus.com
    127.0.0.1	www.1stpagehere.com
    127.0.0.1	1stpagehere.com
    127.0.0.1	www.1stsearchportal.com
    127.0.0.1	1stsearchportal.com
    127.0.0.1	2.82211.net
    127.0.0.1	2006ooo.com
    127.0.0.1	www.2006ooo.com
    127.0.0.1	2007-download.com
    127.0.0.1	www.2007-download.com
    127.0.0.1	2008firefox.com
    
    ----------------------------------------
    
     
    
    Abbildname                     PID Sitzungsname       Sitz.-Nr. Speichernutzung
    ========================= ======== ================ =========== ===============
    System Idle Process              0 Services                   0            24 K
    System                           4 Services                   0         3.356 K
    smss.exe                       428 Services                   0         1.068 K
    csrss.exe                      492 Services                   0         7.116 K
    wininit.exe                    540 Services                   0         5.240 K
    csrss.exe                      560 Console                    1        13.948 K
    services.exe                   592 Services                   0         7.080 K
    lsass.exe                      604 Services                   0         2.828 K
    lsm.exe                        612 Services                   0         5.620 K
    winlogon.exe                   788 Console                    1         7.472 K
    svchost.exe                    816 Services                   0         7.788 K
    nvvsvc.exe                     884 Services                   0         4.636 K
    svchost.exe                    912 Services                   0         8.808 K
    svchost.exe                    964 Services                   0        55.968 K
    svchost.exe                    204 Services                   0        16.596 K
    svchost.exe                    300 Services                   0       124.540 K
    svchost.exe                    288 Services                   0        76.752 K
    audiodg.exe                    608 Services                   0        19.424 K
    svchost.exe                    980 Services                   0         6.244 K
    SLsvc.exe                     1040 Services                   0        15.768 K
    svchost.exe                   1064 Services                   0        13.360 K
    nvvsvc.exe                    1208 Console                    1         8.748 K
    svchost.exe                   1236 Services                   0        25.316 K
    aswUpdSv.exe                  1324 Services                   0           500 K
    ashServ.exe                   1340 Services                   0        21.140 K
    spoolsv.exe                   1788 Services                   0        12.560 K
    taskeng.exe                   1812 Console                    1        13.740 K
    svchost.exe                   1840 Services                   0        20.912 K
    dwm.exe                       1868 Console                    1         6.040 K
    explorer.exe                  1996 Console                    1        61.628 K
    taskeng.exe                   2008 Services                   0         7.724 K
    MSASCui.exe                   2164 Console                    1        20.280 K
    RAVCpl64.exe                  2176 Console                    1        10.876 K
    CTSched.exe                   2224 Console                    1         3.956 K
    TeaTimer.exe                  2276 Console                    1       106.636 K
    ashDisp.exe                   2312 Console                    1         3.784 K
    VolPanlu.exe                  2344 Console                    1        18.304 K
    rundll32.exe                  2356 Console                    1         8.520 K
    GSvr.exe                      2776 Services                   0         4.668 K
    svchost.exe                   2900 Services                   0         6.792 K
    svchost.exe                   2940 Services                   0         8.288 K
    svchost.exe                   2996 Services                   0         3.160 K
    SearchIndexer.exe             1548 Services                   0        29.296 K
    SDWinSec.exe                   268 Services                   0         9.296 K
    ashMaiSv.exe                   908 Services                   0         2.924 K
    ashWebSv.exe                   664 Services                   0        67.468 K
    mscorsvw.exe                  3184 Services                   0         5.812 K
    mscorsvw.exe                  1400 Services                   0         7.048 K
    firefox.exe                   3636 Console                    1       102.628 K
    conime.exe                     848 Console                    1         4.300 K
    cmd.exe                       2160 Console                    1         4.568 K
    tasklist.exe                  3136 Console                    1         6.076 K
    WmiPrvSE.exe                   712 Services                   0         7.644 K
    
     
    ***** Ende des Scans 25.09.2009 um 21:25:33,24 ***
    Nun wollte ich noch meinen Desktop auf eine andere Partition legen, da diese extra für Windows ist.
    Würde es mit der Änderung dieses Registry Keys funktionieren?

    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\ Explorer\Shell Folders

  7. #7
    Moderator Team-Mitglied Avatar von kira
    Registriert seit
    28.03.2006
    Ort
    Wien/Sprachen: Deutsch-Ungarisch
    Beiträge
    28.352

    AW: Renos/Trojan Downloader gefunden

    Ich habe da einen Teamkollegen gefragt und sind wir uns einig, dass dieser Schritt nicht so einfach ist, nicht ungefährlich und da kann`s schiefgehen

    gruß
    argos
    Warnung!:
    Vorsicht beim Rechnungen per Email mit ZIP-Datei als Anhang! Kann mit einen Verschlüsselungs-Trojaner infiziert sein!
    Anhang nicht öffnen, in unserem Forum erst nachfragen!

    Bitte diese Warnung weitergeben, wo Du nur kannst!
    Sichere regelmäßig deine Daten, auf CD/DVD, USB-Sticks oder externe Festplatten, am besten 2x an verschiedenen Orten!
    Bitte diese Warnung weitergeben, wo Du nur kannst!

  8. #8
    Forenbenutzer
    Registriert seit
    29.03.2008
    Beiträge
    86

    AW: Renos/Trojan Downloader gefunden

    Hmm.. Okay.. Gäbs da sonst noch eine Möglichkeit?
    (( Ist mein System sauber ?))

  9. #9
    Moderator Team-Mitglied Avatar von kira
    Registriert seit
    28.03.2006
    Ort
    Wien/Sprachen: Deutsch-Ungarisch
    Beiträge
    28.352

    AW: Renos/Trojan Downloader gefunden

    ansonsten ja dein Log sieht gut aus
    Warnung!:
    Vorsicht beim Rechnungen per Email mit ZIP-Datei als Anhang! Kann mit einen Verschlüsselungs-Trojaner infiziert sein!
    Anhang nicht öffnen, in unserem Forum erst nachfragen!

    Bitte diese Warnung weitergeben, wo Du nur kannst!
    Sichere regelmäßig deine Daten, auf CD/DVD, USB-Sticks oder externe Festplatten, am besten 2x an verschiedenen Orten!
    Bitte diese Warnung weitergeben, wo Du nur kannst!

  10. #10
    Forenbenutzer
    Registriert seit
    29.03.2008
    Beiträge
    86

    AW: Renos/Trojan Downloader gefunden

    Hurrah^^

    Jetzt weiß ich aber noch immer net, wie ich den Desktop auf ne andere Partition krieg..
    EDIT: Problem gelöst - Ganz easy^^
    Benutzername - Rechtsklick auf "Desktop" - Eigenschaften - Reiter: Pfad

    Da kann man dann eine andere Partition auswählen
    Geändert von sherkas (26.09.2009 um 17:54 Uhr)

Seite 1 von 2 12 LetzteLetzte

Aktive Benutzer

Aktive Benutzer

Aktive Benutzer in diesem Thema: 1 (Registrierte Benutzer: 0, Gäste: 1)

Ähnliche Themen

  1. Antworten: 40
    Letzter Beitrag: 10.07.2008, 15:10
  2. Antworten: 6
    Letzter Beitrag: 22.10.2007, 13:53
  3. Trojan.Dropper, Downloader.Trojan, etc.
    Von August12 im Forum Archiv
    Antworten: 11
    Letzter Beitrag: 16.08.2006, 20:55
  4. Trojan-Downloader
    Von Majestic im Forum Archiv
    Antworten: 10
    Letzter Beitrag: 01.06.2006, 19:41
  5. Need help with a Trojan.Downloader
    Von html-n-beyond im Forum Archiv
    Antworten: 1
    Letzter Beitrag: 18.12.2005, 04:26

Berechtigungen

  • Neue Themen erstellen: Nein
  • Themen beantworten: Nein
  • Anhänge hochladen: Nein
  • Beiträge bearbeiten: Nein
  •