Prosím zkontrolujte log Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 10 led 2009 17:54

C:\Users\admin\Documents\desktop.ini
C:\Windows\GSetup.ini
Ty jsou čistý.
C:\Windows\bthservsdp.dat to mi píše, že namám oprávnění to otevřít.
Jediný infikovaný je zatím C:\Windows\System32\drivers\aqyxeb.sys:
Obrázek

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod jaro3 » 10 led 2009 19:08

script v Avengeru:

Kód: Vybrat vše

Files to delete:
C:\Windows\System32\drivers\aqyxeb.sys
C:\Windows\System32\explorer.exe

po restartu novy log z avengeru

Máš tam hodně chybějících souborů:
Vytvoř si na disku novou složku a nějak si ji pojmenuj (např: C:\Bfu)
- Stáhni si Brute Force Uninstaller
- Rozbal si stažený soubor do již vytvořeného adresáře
- Pravým tlačítkem myši klikni zde
a vyber možnost Uložit odkaz jako a ulož si ho opět do již vytvořeného adresáře
* Restartuj počítač do nouzového režimu
* Běž do adresáře kde kde máš stažený program
* Spusť program Brute Force Uninstaller (BFU.exe)
* Po zobrazeni okna programu klikni vpravo na ikonu adresáře (žlutá a Open script file...)
* Vyber tam soubor EGDACCESS.bfu a klikni na tlačítko Otevřít
* Dostaneš se zpět na úvodní obrazovku a tam klikni dole na tlačítko Execute a nech program pracovat
* Počkej až vyskočí okno Complete script execution a stiskni OK
* Pak zmáčkni tlačítko Exit kterým ukončíš program.
Pak restartuj zpět do normálního režimu.Vlož sem potom nový log z HJT.
//EDIT: než budeš něco dělat , tak dej ještě na VirusTotal toto:
C:\Windows\System32\explorer.exe
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 10 led 2009 22:23

Vše jsem udělal, jak je výše napsáno, až na to, že Avenger nějak nefunguje, protože nic nevymazal ani nevytvořil log. Takže jsem ten driver smazal ručně. Explorer.exe je chráněn, takže s ním nic dělat nejde. Ještě jsem zkusil odinstalovat betu SP2. Nainstaloval aktualizace z WU. Zdefragmentoval, ale stále nic. Pořád ten start není takový, jak má být. Posílám nový log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:12:31, on 10.1.2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\GIGABYTE\ET6\GUI.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 86.110.225.166:80
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: DeviceVM Url Search Hook - {0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} - C:\Windows\SysWOW64\dvmurl.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [EasyTuneVI] C:\Program Files (x86)\GIGABYTE\ET6\ETcall.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [nodenable] C:\Program Files\eset\nodenable.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing)
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Služba Windows Media Player Network Sharing (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 5161 bytes

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod jaro3 » 10 led 2009 22:37

Avenger v této verzi není na vistux64, zítra vypracuji script pro OTMovIt3.
Je tam spousta chybějících souborů-zpomaléný start-možný důsledek jak nákazy , tak těchto chybějících souborů.
Zítra budeme pokračovat.
Co ten soubor na virusTotal:
C:\Windows\System32\explorer.exe
??
Ještě:
Stáhni si GMER
Po stažení aplikaci rozbal a spusť, probehne rychlý sken a otevře se hlavní okno programu:
pokud klikneš na tlačítko Save vpravo dole, muzeš vyexportovat první log, ktery vloziš sem.
abychom se dostali k "hlavnimu" skenu a ziskani logu z nej, ponechame v pravem sloupci zafajfkovane vsechny polozky a klikneme na tlacitko Scan,
Vyčkej konce skenu (coz trva tak kolem peti deseti minut), pote opet klikni na tlacitko Save a vyexportuj log cislo 2,
i tento log vlož sem.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 11 led 2009 13:17

Explorer.exe je čistý. GMER píše chybu: Sysetm\CurrentControlSet\Services\gmer: Neplatný popisovač, dam OK, proběhne rychlý sken, ale v logu není ani písmenko. Dále jsou k zaškrtnutí jen Services, Registry a Files. Tedy log jenom z těchto tří:

GMER 1.0.14.14536 - http://www.gmer.net
Rootkit scan 2009-01-11 13:14:07
Windows 6.0.6001 Service Pack 1


---- Registry - GMER 1.0.14 ----

Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\000c7647c249
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\000c7647c249@0016201614a9 0x0F 0xE9 0x60 0x2A ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x15 0x7F 0xD9 0x62 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0x42 0x5C 0x99 0x50 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x0C 0xC5 0x52 0x7A ...
Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\000c7647c249
Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\000c7647c249@0016201614a9 0x0F 0xE9 0x60 0x2A ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x15 0x7F 0xD9 0x62 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0x42 0x5C 0x99 0x50 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x0C 0xC5 0x52 0x7A ...

---- EOF - GMER 1.0.14 ----

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod jaro3 » 11 led 2009 14:54

Stáhni si program OTMoveIt3(by OldTimer)
a ulož si ho na disk C a spusť ho.
- Do levého sloupce (Paste Instructions for Items to be Moved) zkopíruj tyto cesty:
Poznámka: Nepoužij k označení funkci VYBRAT VŠE

Kód: Vybrat vše

:Processes
Explorer.exe

:Files
C:\Windows\System32\drivers\aqyxeb.sys
C:\Windows\System32\explorer.exe

Po zkopírování klikni na tlačítko MoveIt! a vlož sem následně celý obsah z pravého sloupce, jinak uložený ve složce C:\_OTMoveIt\MovedFiles\, který bude informovat o výsledcích
- Je možné, že pokud nebudou moci být soubory odstraněny, budeš dotázán na restart počítače, v tom případě restart potvrď

Spusť znovu OTMoveIT a klikni na tlačítko CleanUp!. Načte se ti seznam a objeví se ti hláška tak dej Yes. Po proběhnutí se tě zeptá na restart tak ho opět povol přes volbu Yes.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 11 led 2009 21:49

Mačkl jsem ClenUp, restartoval, ale po naběhnutí je tam exlporer.exe pořád.
Mohu se ještě zeptat, proč chcete tento soubor smazat?
Jestli chcete mohu sem ještě vložit log z RunAnalyzeru.

========== PROCESSES ==========
Unable to kill process: Explorer.exe
========== FILES ==========
File/Folder C:\Windows\System32\drivers\aqyxeb.sys not found.
Item C:\Windows\System32\explorer.exe is whitelisted and cannot be moved.

OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 01112009_214146

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod jaro3 » 12 led 2009 07:31

Máčknul jsi napřed na MoveIt! ?
Jediná správná destinace explorer.exe je tato:
C:\Windows\explorer.exe
Nicméně je podle VT čistý a program OTMoveIt3 píše , že je na whitelist, takže ho necháme.

File/Folder C:\Windows\System32\drivers\aqyxeb.sys not found.
to je divné , že ho nenašel..zkus se tam podívat , zda tam je. VT ho bez problémů našel.
Můžeš vložit ještě log z RunAnalyzeru.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 12 led 2009 14:47

Samozřejmě zmačkl. Před pár příspěvky jsem napsal, že jsem ten soubor (aqyxeb.sys) vymazal ručně. Omlouvám se, předtím jsem napsal, že jsem vymazal driver a myslel jsem tím ten sys.
Sry je to RunAlyzer
Log z RunAlyzeru:

RunAlyzer 0.7.3. Copyright © 2000-2007 Safer Networking Limited. All rights reserved.
SBSD compatible log file. All rights reserved.
This log includes only active entries.
This log includes only unknown and bad entries.

--- Startup entries list ---

Located: File extension handler (user),
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: File extension handler (user),
where: S-1-5-18...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: File extension handler (user),
where: .DEFAULT...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: File extension handler (user),
where: S-1-5-20...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: File extension handler (user),
where: S-1-5-19...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: File extension handler (common),
command: "%1" %*
file: "%1" %*
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Print Monitor, Standard TCP/IP Port
command: tcpmon.dll
file: tcpmon.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Print Monitor, USB Monitor
command: usbmon.dll
file: usbmon.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Print Monitor, WSD Port
command: WSDMon.dll
file: WSDMon.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, ole32
command: ole32.dll
file: ole32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, rpcrt4
command: rpcrt4.dll
file: rpcrt4.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, OLEAUT32
command: OLEAUT32.dll
file: OLEAUT32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, NSI
command: NSI.dll
file: NSI.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, MSCTF
command: MSCTF.dll
file: MSCTF.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, LPK
command: LPK.dll
file: LPK.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, NORMALIZ
command: NORMALIZ.dll
file: NORMALIZ.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, MSVCRT
command: MSVCRT.dll
file: MSVCRT.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, WININET
command: WININET.dll
file: WININET.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, USP10
command: USP10.dll
file: USP10.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, WS2_32
command: WS2_32.dll
file: WS2_32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, WLDAP32
command: WLDAP32.dll
file: WLDAP32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, user32
command: user32.dll
file: user32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, SHELL32
command: SHELL32.dll
file: SHELL32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, Setupapi
command: Setupapi.dll
file: Setupapi.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, URLMON
command: URLMON.dll
file: URLMON.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, SHLWAPI
command: SHLWAPI.dll
file: SHLWAPI.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, IMAGEHLP
command: IMAGEHLP.dll
file: IMAGEHLP.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, IMM32
command: IMM32.dll
file: IMM32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, IERTUTIL
command: IERTUTIL.dll
file: IERTUTIL.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, gdi32
command: gdi32.dll
file: gdi32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, kernel32
command: kernel32.dll
file: kernel32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, clbcatq
command: clbcatq.dll
file: clbcatq.dll
size: 523776
MD5: C394079EB162E812D682C73FA96AF6E4

Located: Known DLLs, advapi32
command: advapi32.dll
file: advapi32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Known DLLs, DllDirectory
command: %SystemRoot%\system32
file: %SystemRoot%\system32
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Safe Boot Shell, AlternateShell
command: cmd.exe
file: cmd.exe
size: 318976
MD5: 74F26FC01B180D4A99A168ED69C30A53

Located: Screen Saver Policy, SCRNSAVE.EXE
where: S-1-5-20...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Screen Saver Policy, SCRNSAVE.EXE
where: S-1-5-18...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Screen Saver Policy, SCRNSAVE.EXE
where: .DEFAULT...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Screen Saver Policy, SCRNSAVE.EXE
where: S-1-5-19...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Screen Saver Policy, SCRNSAVE.EXE
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Screen Saver, SCRNSAVE.EXE
where: .DEFAULT...
command: C:\Windows\SysWOW64\logon.scr
file: C:\Windows\SysWOW64\logon.scr
size: 5714432
MD5: B17D18FD6594AAA25CBC95E799B1BF40

Located: Screen Saver, SCRNSAVE.EXE
where: S-1-5-18...
command: C:\Windows\SysWOW64\logon.scr
file: C:\Windows\SysWOW64\logon.scr
size: 5714432
MD5: B17D18FD6594AAA25CBC95E799B1BF40

Located: Screen Saver, SCRNSAVE.EXE
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: User Shell Policy, Shell
where: .DEFAULT...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: User Shell Policy, Shell
where: S-1-5-19...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: User Shell Policy, Shell
where: S-1-5-20...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: User Shell Policy, Shell
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: User Shell Policy, Shell
where: S-1-5-18...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Run, run
where: .DEFAULT...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Run, run
where: S-1-5-20...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Run, run
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Run, run
where: S-1-5-18...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Run, run
where: S-1-5-19...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Load, load
where: S-1-5-18...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Load, load
where: S-1-5-19...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Load, load
where: S-1-5-20...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Load, load
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT Load, load
where: .DEFAULT...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: CP AutoRun (user), AutoRun
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: CP AutoRun (user), AutoRun
where: S-1-5-20...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: CP AutoRun (user), AutoRun
where: S-1-5-18...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: CP AutoRun (user), AutoRun
where: S-1-5-19...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: CP AutoRun (user), AutoRun
where: .DEFAULT...
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: CP AutoRun (common), AutoRun
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Boot Execute, BootExecute
command: autocheck autochk *
file: autocheck autochk *
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: GINA, GinaDLL
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: NT System, System
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: Task Manager, TaskMan
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: User Init, UserInit
command: C:\Windows\system32\userinit.exe,
file: C:\Windows\system32\userinit.exe,
size: 25088
MD5: 0E135526E9785D085BCD9AEDE6FBCBF9

Located: HK_CU:Run, nodenable
where: S-1-5-21-1786912063-3955790279-2565316649-1000...
command: C:\Program Files\eset\nodenable.exe
file: C:\Program Files\eset\nodenable.exe
size: 803495
MD5: 4622C298442F422672DDF4B0028321E7

Located: HK_CU:Run, WindowsWelcomeCenter
where: S-1-5-19...
command: rundll32.exe oobefldr.dll,ShowWelcomeCenter
file: oobefldr.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: HK_LM:Run, EasyTuneVI
command: C:\Program Files (x86)\GIGABYTE\ET6\ETcall.exe
file: C:\Program Files (x86)\GIGABYTE\ET6\ETcall.exe
size: 20480
MD5: 9E279D1BC39F5C6C530F0A0DB1D2DC98

Located: HK_LM:Run, StartCCC
command: "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
file: C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
size: 61440
MD5: 2659F9B422673A98D5629FA3294F5DF3


--- Startup entries list ---

Located: CP AutoRun (common), AutoRun
command:
file:
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: HK_LM:Run, Skytel
command: Skytel.exe
file: C:\Windows\Skytel.exe
size: 1833504
MD5: 48626B276D385223FD59249FE71B5225

Located: HK_LM:Run, RtHDVCpl
command: RAVCpl64.exe
file: C:\Windows\RAVCpl64.exe
size: 6452256
MD5: 63D563240B9D8747C3A80D8AFC7D2260

Located: HK_LM:Run, egui
command: "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
file: C:\Program Files\ESET\ESET Smart Security\egui.exe
size: 1911040
MD5: C3AC877F08F1A3B396C447B613D6D11A


--- System Services ---

Service (registry key): ACPI
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač standardu ACPI společnosti Microsoft
Image path: system32\drivers\acpi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): adp94xx
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\adp94xx.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): adpahci
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\adpahci.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): adpu160m
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\adpu160m.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): adpu320
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\adpu320.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): adsi
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): AFD
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ancilliary Function Driver for Winsock
Description: Ancilliary Function Driver for Winsock
Image path: \SystemRoot\system32\drivers\afd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): agp440
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Intel AGP Bus Filter
Image path: \SystemRoot\system32\drivers\agp440.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): aic78xx
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\djsvs.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ALG
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\Alg.exe,-112
Description: @%SystemRoot%\system32\Alg.exe,-113
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\alg.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): aliide
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\aliide.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 3

Service (registry key): amdide
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\amdide.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 3

Service (registry key): AmdK8
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: AMD K8 Processor Driver
Image path: \SystemRoot\system32\drivers\amdk8.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): arc
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\arc.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): arcsas
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\arcsas.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): AsyncMac
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\rascfg.dll,-32000
Description: @%systemroot%\system32\rascfg.dll,-32000
Image path: system32\DRIVERS\asyncmac.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): atapi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Kanál IDE
Image path: system32\drivers\atapi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): Ati External Event Utility
Registry path: \SYSTEM\CurrentControlSet\Services\
Object name: LocalSystem
Image path: %SystemRoot%\system32\Ati2evxx.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 16
Error Control: 1

Service (registry key): atikmdag
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\DRIVERS\atikmdag.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): Autodesk Licensing Service
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Autodesk Licensing Service
Description: Anchor service for Autodesk products licensed with SafeCast
Object name: LocalSystem
Image path: "C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe"
Image size: 79360
Image MD5: 91815C2481847A782C90117D10E2ED50
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): blbdrive
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\blbdrive.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): bowser
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Bowser
Description: Implements the datagram receiver for the computer browser browser service.
Image path: system32\DRIVERS\bowser.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1

Service (registry key): BrFiltLo
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Brother USB Mass-Storage Lower Filter Driver
Image path: \SystemRoot\system32\drivers\brfiltlo.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): BrFiltUp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Brother USB Mass-Storage Upper Filter Driver
Image path: \SystemRoot\system32\drivers\brfiltup.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Brserid
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Brother MFC Serial Port Interface Driver (WDM)
Image path: \SystemRoot\system32\drivers\brserid.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): BrSerWdm
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Brother WDM Serial driver
Image path: \SystemRoot\system32\drivers\brserwdm.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): BrUsbMdm
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Brother MFC USB Fax Only Modem
Image path: \SystemRoot\system32\drivers\brusbmdm.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): BrUsbSer
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Brother MFC USB Serial WDM Driver
Image path: \SystemRoot\system32\drivers\brusbser.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): BthEnum
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Služba Bluetooth Enumerator
Image path: system32\DRIVERS\BthEnum.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): BTHMODEM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Bluetooth Serial Communications Driver
Image path: \SystemRoot\system32\drivers\bthmodem.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): BthPan
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Zařízení Bluetooth (síť PAN)
Description: Zařízení Bluetooth (síť PAN)
Image path: system32\DRIVERS\bthpan.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): BTHPORT
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač portu Bluetooth
Image path: System32\Drivers\BTHport.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): BTHUSB
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač rozhraní USB radiostanice Bluetooth
Image path: System32\Drivers\BTHUSB.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): cdfs
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: CD/DVD File System Reader
Description: ISO9660/Joliet File System Reader for CD/DVDs. (Core) (All pieces)
Image path: system32\DRIVERS\cdfs.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 2
Error Control: 1
Depends On group: "SCSI CDROM Class"

Service (registry key): cdrom
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač jednotky CD-ROM
Image path: system32\DRIVERS\cdrom.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): circlass
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Consumer IR Devices
Image path: \SystemRoot\system32\drivers\circlass.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): CLFS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Common Log (CLFS)
Description: Common Log (CLFS)
Image path: System32\CLFS.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): clr_optimization_v2.0.50727_32
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft .NET Framework NGEN v2.0.50727_X86
Description: Microsoft .NET Framework NGEN
Object name: LocalSystem
Image path: %systemroot%\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
Image size: 69632
Image MD5: D87ACAED61E417BBA546CED5E7E36D9C
Control Set: CurrentControlSet
Start: 4
Type: 16
Error Control: 0

Service (registry key): clr_optimization_v2.0.50727_64
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft .NET Framework NGEN v2.0.50727_X64
Description: Microsoft .NET Framework NGEN
Object name: LocalSystem
Image path: %systemroot%\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
Image size: 93184
Image MD5: FA58B51ED71C9133E141164EAA7C54EB
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 0

Service (registry key): cmdide
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\DRIVERS\cmdide.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): Compbatt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Composite Battery Driver
Image path: \SystemRoot\system32\drivers\compbatt.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 3

Service (registry key): crcdisk
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Crcdisk Filter Driver
Image path: system32\drivers\crcdisk.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): CSC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Offline Files Driver
Description: Allows network files to be used while the local computer is offline.
Image path: system32\drivers\csc.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1
Depends On services: rdbss

Service (registry key): DCLocator
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): DfsC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\drivers\dfsc.sys,-101
Description: @%systemroot%\system32\drivers\dfsc.sys,-102
Image path: System32\Drivers\dfsc.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 2
Error Control: 1
Depends On services: Mup

Service (registry key): DFSR
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @dfsrres.dll,-101
Description: @dfsrres.dll,-102
Object name: LocalSystem
Image path: %SystemRoot%\system32\DFSR.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RpcSs,EventSystem

Service (registry key): disk
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač disku
Image path: system32\drivers\disk.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): drmkaud
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Dekodér zvuků DRM jádra společnosti Microsoft
Image path: system32\drivers\drmkaud.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): DXGKrnl
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: LDDM Graphics Subsystem
Description: Controls the underlying video driver stacks to provide fully-featured display capabilities.
Image path: \SystemRoot\System32\drivers\dxgkrnl.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): E1G60
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Intel(R) PRO/1000 NDIS 6 Adapter Driver
Image path: system32\DRIVERS\E1G6032E.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): eamon
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: EAMON
Description: Eset file on-access scanner
Image path: system32\DRIVERS\eamon.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): easdrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: easdrv
Description: Eset AntiStealth driver
Image path: system32\DRIVERS\easdrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): Ecache
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: ReadyBoost Caching Driver
Description: ReadyBoost Caching Driver
Image path: System32\drivers\ecache.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): ehstart
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\ehome\ehstart.dll,-101
Description: @%SystemRoot%\ehome\ehstart.dll,-102
Object name: NT AUTHORITY\LocalService
Image path: %windir%\system32\svchost.exe -k LocalServiceNoNetwork
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 0
Depends On services: RPCSS

Service (registry key): EhttpSrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Eset HTTP Server
Description: Eset HTTP Server
Object name: NT AUTHORITY\NetworkService
Image path: "C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe"
Image size: 21760
Image MD5: 9BE67B94F7179666CFBFF4B51A276AAE
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): ekrn
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Eset Service
Description: Eset Service
Object name: LocalSystem
Image path: "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
Image size: 468224
Image MD5: 6371CF4169038E11FEBC0ACFFAF5233D
Control Set: CurrentControlSet
Start: 2
Type: 16
Error Control: 1

Service (registry key): elxstor
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\elxstor.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): EmdCache
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): epfw
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: epfw
Description: EPFW Filter Driver
Image path: system32\DRIVERS\epfw.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): Epfwndis
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Eset Personal Firewall
Image path: system32\DRIVERS\Epfwndis.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): epfwtdi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: epfwtdi
Description: EPFW Filter Driver
Image path: system32\DRIVERS\epfwtdi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): ErrDev
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Hardware Error Device Driver
Image path: \SystemRoot\system32\drivers\errdev.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Eventlog
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Protokol událostí systému Windows
Description: @%SystemRoot%\system32\wevtsvc.dll,-201
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 21504
Image MD5: 3794B461C45882E06856F282EEF025AF
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): exfat
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: exFAT File System Driver
Description: exFAT File System Driver
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1

Service (registry key): fastfat
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: FAT12/16/32 File System Driver
Description: Note - dependance on CDROM.SYS only if required to read/write DVD-RAM media (which appears as CD class device). (Core) (All pieces)
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1

Service (registry key): fdc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač řadiče disketové jednotky
Image path: system32\DRIVERS\fdc.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): FileInfo
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: File Information FS MiniFilter
Description: Collects information about files in memory to be consumed by other system services.
Image path: system32\drivers\fileinfo.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 2
Error Control: 1
Depends On services: fltmgr

Service (registry key): Filetrace
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: FileTrace
Description: ETW File Trace Filter
Image path: system32\drivers\filetrace.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1
Depends On services: FltMgr

Service (registry key): flpydisk
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač disketové jednotky
Image path: system32\DRIVERS\flpydisk.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): FontCache3.0.0.0
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\PresentationHost.exe,-3309
Description: @%SystemRoot%\system32\PresentationHost.exe,-3310
Object name: NT Authority\LocalService
Image path: %systemroot%\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
Image size: 46104
Image MD5: 73D0F1D32EDAE3DCC4E84468BF910ADD
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): fvevol
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: BitLocker Drive Encryption Filter Driver
Description: Bitlocker Drive Encryption Filter Driver
Image path: System32\DRIVERS\fvevol.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): gagp30kx
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms
Image path: \SystemRoot\system32\drivers\gagp30kx.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): gdrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: gdrv
Image path: \??\C:\Windows\gdrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): GEST Service
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: GEST Service for program management.
Object name: LocalSystem
Image path: "C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe"
Image size: 80392
Image MD5: 7CE32949B965A4B6622ACCAB3ADB0144
Control Set: CurrentControlSet
Start: 4
Type: 272
Error Control: 1

Service (registry key): GVTDrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): GVTDrv64
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \??\C:\Windows\GVTDrv64.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): HdAudAddService
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio
Image path: system32\drivers\HdAudio.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): HDAudBus
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač sběrnice Microsoft UAA pro zvuk High Definition Audio
Image path: system32\DRIVERS\HDAudBus.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): HidBth
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Bluetooth HID Miniport
Image path: \SystemRoot\system32\drivers\hidbth.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 0

Service (registry key): HidIr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Infrared HID Driver
Image path: \SystemRoot\system32\drivers\hidir.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 0

Service (registry key): HidUsb
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač třídy standardu HID Microsoft
Image path: system32\DRIVERS\hidusb.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): HpCISSs
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\hpcisss.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): i2omp
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\i2omp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): iaStor
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Intel AHCI Controller
Image path: system32\DRIVERS\iaStor.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): iaStorV
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Intel RAID Controller Vista
Image path: \SystemRoot\system32\drivers\iastorv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): idsvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193
Description: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8192
Object name: LocalSystem
Image path: "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe"
Image size: 859648
Image MD5: 76EA63CDB2D88DAE7209691D089BEF1D
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1

Service (registry key): iirsp
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\iirsp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): IntcAzAudAddService
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Service for Realtek HD Audio (WDM)
Image path: system32\drivers\RTKVHD64.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): intelide
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\intelide.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 3

Service (registry key): intelppm
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač procesoru Intel
Image path: system32\DRIVERS\intelppm.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): IpFilterDriver
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\rascfg.dll,-32013
Description: @%systemroot%\system32\rascfg.dll,-32013
Image path: system32\DRIVERS\ipfltdrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip
Naposledy upravil(a) siskai dne 12 led 2009 14:55, celkem upraveno 1 x.

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 12 led 2009 14:48

Service (registry key): IPMIDRV
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\ipmidrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): IRENUM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: IR Bus Enumerator
Description: IR Bus Enumerator
Image path: system32\drivers\irenum.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): isapnp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: PnP ISA/EISA Bus Driver
Image path: \SystemRoot\system32\drivers\isapnp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 3

Service (registry key): iScsiPrt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač iScsiPort
Image path: system32\DRIVERS\msiscsi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): iteatapi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: ITEATAPI_Service_Install
Image path: \SystemRoot\system32\drivers\iteatapi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): iteraid
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: ITERAID_Service_Install
Image path: \SystemRoot\system32\drivers\iteraid.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): kbdhid
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač klávesnice standardu HID
Image path: system32\DRIVERS\kbdhid.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): KeyIso
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @keyiso.dll,-100
Description: @keyiso.dll,-101
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): KSecDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\Drivers\ksecdd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): ksthunk
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Kernel Streaming Thunks
Image path: \SystemRoot\system32\drivers\ksthunk.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): lltdio
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Vstupně výstupní ovladač mapovače zjišťování topologie linkové vrstvy
Image path: system32\DRIVERS\lltdio.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): Lsa
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): LSI_FC
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\lsi_fc.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): LSI_SAS
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\lsi_sas.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): LSI_SCSI
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\lsi_scsi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): luafv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: UAC File Virtualization
Description: Virtualizes file write failures to per-user locations.
Image path: \SystemRoot\system32\drivers\luafv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 2
Error Control: 1
Depends On services: FltMgr

Service (registry key): lwztbo
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\drivers\ofdz.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): megasas
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\megasas.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): MegaSR
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\megasr.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Modem
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\drivers\modem.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): monitor
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Služba ovladače funkce třídy monitorů Microsoft
Image path: system32\DRIVERS\monitor.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): mouhid
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač HID myši
Image path: system32\DRIVERS\mouhid.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): MountMgr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Mount Point Manager
Description: Driver responsible with maintaining persistent drive letters and names for volumes
Image path: System32\drivers\mountmgr.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): mpio
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Multi-Path Bus Driver
Image path: \SystemRoot\system32\drivers\mpio.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): mpsdrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\FirewallAPI.dll,-23092
Description: @%SystemRoot%\system32\FirewallAPI.dll,-23093
Image path: System32\drivers\mpsdrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Mraid35x
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\mraid35x.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): MRxDAV
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: WebDav Client Redirector Driver
Description: WebDav Client Redirector Driver
Image path: \SystemRoot\system32\drivers\mrxdav.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1
Depends On services: rdbss

Service (registry key): mrxsmb
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SMB MiniRedirector Wrapper and Engine
Description: Implements the framework for the SMB filesystem redirector
Image path: system32\DRIVERS\mrxsmb.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1
Depends On services: rdbss

Service (registry key): mrxsmb10
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SMB 1.x MiniRedirector
Description: Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers
Image path: system32\DRIVERS\mrxsmb10.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1
Depends On services: mrxsmb

Service (registry key): mrxsmb20
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SMB 2.0 MiniRedirector
Description: Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers
Image path: system32\DRIVERS\mrxsmb20.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1
Depends On services: mrxsmb

Service (registry key): msahci
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\DRIVERS\msahci.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): msdsm
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Multi-Path Device Specific Module
Image path: \SystemRoot\system32\drivers\msdsm.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): MSDTC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @comres.dll,-2797
Description: @comres.dll,-2798
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\msdtc.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS,SamSS

Service (registry key): MSDTC Bridge 3.0.0.0
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): msisadrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač třídy ISA/EISA
Image path: system32\drivers\msisadrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): MSKSSRV
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Server proxy služby datových proudů Microsoft
Image path: system32\drivers\MSKSSRV.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSPCLOCK
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Server proxy hodin datových proudů Microsoft
Image path: system32\drivers\MSPCLOCK.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSPQM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Server proxy správce kvality datových proudů Microsoft
Image path: system32\drivers\MSPQM.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MsRPC
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSSCNTRS
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): mssmbios
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač Microsoft System Management BIOS
Image path: system32\DRIVERS\mssmbios.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSTEE
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Konvertor jímka-jímka typu T datových proudů Microsoft
Image path: system32\drivers\MSTEE.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Mup
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Mup
Description: Multiple UNC Provider
Image path: System32\Drivers\mup.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 2
Error Control: 1

Service (registry key): NativeWifiP
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Filtr NativeWiFi
Image path: system32\DRIVERS\nwifi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): NDIS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NDIS System Driver
Description: NDIS System Driver
Image path: system32\drivers\ndis.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): NdisTapi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\rascfg.dll,-32001
Description: @%systemroot%\system32\rascfg.dll,-32001
Image path: system32\DRIVERS\ndistapi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Ndisuio
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NDIS Usermode I/O Protocol
Image path: system32\DRIVERS\ndisuio.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): NdisWan
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\rascfg.dll,-32002
Description: @%systemroot%\system32\rascfg.dll,-32002
Image path: system32\DRIVERS\ndiswan.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): netbt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NETBT
Description: This service implements NetBios over TCP/IP.
Image path: System32\DRIVERS\netbt.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1
Depends On services: Tdx,tcpip

Service (registry key): Netlogon
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\System32\netlogon.dll,-102
Description: @%SystemRoot%\System32\netlogon.dll,-103
Object name: LocalSystem
Image path: %systemroot%\system32\lsass.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation

Service (registry key): NetTcpPortSharing
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
Description: @%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
Object name: NT AUTHORITY\LocalService
Image path: "%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe"
Image size: 119808
Image MD5: B84613B469B98E09F50A748C1D02E132
Control Set: CurrentControlSet
Start: 4
Type: 32
Error Control: 1

Service (registry key): nfrd960
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\nfrd960.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): nsiproxy
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NSI proxy service
Description: NSI proxy service
Image path: system32\drivers\nsiproxy.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): NTDS
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): nvraid
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NVIDIA nForce RAID Driver
Image path: \SystemRoot\system32\drivers\nvraid.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): nvstor
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\nvstor.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 3

Service (registry key): nv_agp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NVIDIA nForce AGP Bus Filter
Image path: \SystemRoot\system32\drivers\nv_agp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): ohci1394
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NEC FireWarden OHCI Compliant IEEE 1394 Host Controller
Image path: \SystemRoot\system32\drivers\ohci1394.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Parport
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač paralelního portu
Image path: system32\DRIVERS\parport.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): partmgr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Partition Manager
Description: Disk class filter driver that auctions out partitions to volume managers
Image path: System32\drivers\partmgr.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): pci
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Řadič sběrnice PCI
Image path: system32\drivers\pci.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): pcmcia
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\pcmcia.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): PEAUTH
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: PEAUTH
Image path: system32\drivers\peauth.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): PerfHost
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\sysWow64\perfhost.exe,-2
Description: @%systemroot%\SysWow64\perfhost.exe,-1
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\SysWow64\perfhost.exe
Image size: 19968
Image MD5: 0ED8727EA0172860F47258456C06CAEA
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): PptpMiniport
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\rascfg.dll,-32006
Description: @%systemroot%\system32\rascfg.dll,-32006
Image path: system32\DRIVERS\raspptp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Processor
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Processor Driver
Image path: \SystemRoot\system32\drivers\processr.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ProtectedStorage
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\psbase.dll,-300
Description: @%systemroot%\system32\psbase.dll,-301
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): PSched
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\System32\drivers\pacer.sys,-101
Description: @%SystemRoot%\System32\drivers\pacer.sys,-101
Image path: system32\DRIVERS\pacer.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): qailatgu
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\drivers\aqyxeb.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): ql2300
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: QLogic Fibre Channel Miniport Driver
Image path: \SystemRoot\system32\drivers\ql2300.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ql40xx
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: QLogic iSCSI Miniport Driver
Image path: \SystemRoot\system32\drivers\ql40xx.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): QWAVEdrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
Description: @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
Image path: \SystemRoot\system32\drivers\qwavedrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Rasl2tp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\rascfg.dll,-32005
Description: @%systemroot%\system32\rascfg.dll,-32005
Image path: system32\DRIVERS\rasl2tp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): RasPppoe
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\rascfg.dll,-32007
Description: @%systemroot%\system32\rascfg.dll,-32007
Image path: system32\DRIVERS\raspppoe.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): RasSstp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\sstpsvc.dll,-202
Description: @%systemroot%\system32\sstpsvc.dll,-202
Image path: system32\DRIVERS\rassstp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): rdbss
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Redirected Buffering Sub Sysytem
Description: Provides the framework for network mini-redirectors
Image path: system32\DRIVERS\rdbss.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 2
Error Control: 1
Depends On services: Mup

Service (registry key): RDPCDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: RDPCDD
Description: RDPDD Chained DD
Image path: System32\DRIVERS\RDPCDD.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): rdpdr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač přesměrovače zařízení terminálového serveru
Image path: system32\DRIVERS\rdpdr.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): RDPENCDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: RDP Encoder Mirror Driver
Description: RDP Encoder Mirror Driver
Image path: system32\drivers\rdpencdd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): RFCOMM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Zařízení Bluetooth (RFCOMM protokol TDI)
Description: Zařízení Bluetooth (RFCOMM protokol TDI)
Image path: system32\DRIVERS\rfcomm.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): RpcLocator
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\Locator.exe,-2
Description: @%systemroot%\system32\Locator.exe,-3
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\locator.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): rspndr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Odpovídající zařízení zjišťování topologie linkové vrstvy
Image path: system32\DRIVERS\rspndr.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): RTCore64
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: RTCore64
Image path: \??\D:\rmma\RTCore64.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): RTL8169
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Realtek 8169 NT Driver
Image path: system32\DRIVERS\Rtlh64.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): SamSs
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\samsrv.dll,-1
Description: @%SystemRoot%\system32\samsrv.dll,-2
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): sbp2port
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SBP-2 Transport/Protocol Bus Driver
Image path: \SystemRoot\system32\drivers\sbp2port.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): SBSDWSCService
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SBSD Security Center Service
Object name: LocalSystem
Image path: C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
Image size: 809296
Image MD5: 55C1E4FDFD62A48FB5A2CE25F3AA8AE8
Control Set: CurrentControlSet
Start: 2
Type: 16
Error Control: 1
Depends On services: wscsvc

Service (registry key): secdrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Security Driver
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): Serenum
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač filtru Serenum
Image path: system32\DRIVERS\serenum.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Serial
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač sériového portu
Image path: system32\DRIVERS\serial.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): sermouse
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Serial Mouse Driver
Image path: \SystemRoot\system32\drivers\sermouse.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ServiceModelEndpoint 3.0.0.0
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): ServiceModelOperation 3.0.0.0
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): ServiceModelService 3.0.0.0
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): sffdisk
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SFF Storage Class Driver
Image path: \SystemRoot\system32\drivers\sffdisk.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): sffp_mmc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SFF Storage Protocol Driver for MMC
Image path: \SystemRoot\system32\drivers\sffp_mmc.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): sffp_sd
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SFF Storage Protocol Driver for SDBus
Image path: \SystemRoot\system32\drivers\sffp_sd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): sfloppy
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: High-Capacity Floppy Disk Drive
Image path: \SystemRoot\system32\drivers\sfloppy.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): SiSRaid2
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\sisraid2.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): SiSRaid4
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\sisraid4.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): slsvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\SLsvc.exe,-101
Description: @%SystemRoot%\system32\SLsvc.exe,-100
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\SLsvc.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 16
Error Control: 1
Depends On services: RpcSs

Service (registry key): Smb
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50005
Description: @%SystemRoot%\system32\tcpipcfg.dll,-50006
Image path: system32\DRIVERS\smb.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): SMSvcHost 3.0.0.0
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): SNMPTRAP
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\snmptrap.exe,-3
Description: @%SystemRoot%\system32\snmptrap.exe,-4
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\snmptrap.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): speedfan
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: speedfan
Image path: SysWOW64\speedfan.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): spldr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Security Processor Loader Driver
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): Spooler
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\spoolsv.exe,-1
Description: @%systemroot%\system32\spoolsv.exe,-2
Object name: LocalSystem
Image path: %SystemRoot%\System32\spoolsv.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS,http

Service (registry key): srv
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\srv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1
Depends On services: srv2

Service (registry key): srv2
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: srv2
Description: Default SDDL for Windows Resource Protected file
Image path: System32\DRIVERS\srv2.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1
Depends On services: srvnet

Service (registry key): srvnet
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\srvnet.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1

Service (registry key): swenum
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Softwarový ovladač sběrnice
Image path: system32\DRIVERS\swenum.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Symc8xx
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\symc8xx.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Sym_hi
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\sym_hi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Sym_u3
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\sym_u3.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Tcpip
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50003
Description: @%SystemRoot%\system32\tcpipcfg.dll,-50003
Image path: System32\drivers\tcpip.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): Tcpip6
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač protokolu IPv6 společnosti Microsoft
Description: Ovladač protokolu IPv6 společnosti Microsoft
Image path: system32\DRIVERS\tcpip.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): tcpipreg
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: TCP/IP Registry Compatibility
Description: Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality.
Image path: System32\drivers\tcpipreg.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1
Depends On services: tcpip

Service (registry key): TDPIPE
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: TDPIPE
Image path: system32\drivers\tdpipe.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): TDTCP
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: TDTCP
Image path: system32\drivers\tdtcp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): tdx
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\tcpipcfg.dll,-50004
Description: @%SystemRoot%\system32\tcpipcfg.dll,-50004
Image path: system32\DRIVERS\tdx.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): TermDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač terminálového zařízení
Image path: system32\DRIVERS\termdd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): Themes
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Motivy
Description: @%SystemRoot%\System32\shsvcs.dll,-8193
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 21504
Image MD5: 3794B461C45882E06856F282EEF025AF
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): TrustedInstaller
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\servicing\TrustedInstaller.exe,-100
Description: @%SystemRoot%\servicing\TrustedInstaller.exe,-101
Object name: localSystem
Image path: %SystemRoot%\servicing\TrustedInstaller.exe
Image size: 42496
Image MD5: AC6FF1DF22ED90BAD6417EE5A4C6E2F0
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): tssecsrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Terminal Services Security Filter Driver
Description: Terminal Services Security Filter Driver
Image path: System32\DRIVERS\tssecsrv.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): tunnel
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft IPv6 Tunnel Miniport Adapter Driver
Image path: system32\DRIVERS\tunnel.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): uagp35
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft AGPv3.5 Filter
Image path: \SystemRoot\system32\drivers\uagp35.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): udfs
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: udfs
Description: Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)
Image path: system32\DRIVERS\udfs.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 2
Error Control: 1

Service (registry key): UGatherer
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): UGTHRSVC
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): UI0Detect
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\ui0detect.exe,-101
Description: @%SystemRoot%\system32\ui0detect.exe,-102
Object name: LocalSystem
Image path: %SystemRoot%\system32\UI0Detect.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 272
Error Control: 1

Service (registry key): uliagpkx
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Uli AGP Bus Filter
Image path: \SystemRoot\system32\drivers\uliagpkx.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): uliahci
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\uliahci.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): UlSata
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\ulsata.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ulsata2
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\ulsata2.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): umbus
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač sběrnice UMBus Enumerator
Image path: system32\DRIVERS\umbus.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbccgp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft USB Generic Parent Driver
Image path: \SystemRoot\system32\drivers\usbccgp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): usbcir
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: eHome Infrared Receiver (USBCIR)
Image path: \SystemRoot\system32\drivers\usbcir.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): usbehci
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač Miniport vylepšeného hostitelského řadiče Microsoft USB 2.0
Image path: system32\DRIVERS\usbehci.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbhub
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Rozbočovač umožňující USB2
Image path: system32\DRIVERS\usbhub.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbohci
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft USB Open Host Controller Miniport Driver
Image path: \SystemRoot\system32\drivers\usbohci.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): usbprint
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft USB PRINTER Class
Image path: \SystemRoot\system32\drivers\usbprint.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): usbuhci
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft
Image path: system32\DRIVERS\usbuhci.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): vds
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%SystemRoot%\system32\vds.exe,-100
Description: @%SystemRoot%\system32\vds.exe,-112
Object name: LocalSystem
Image path: %SystemRoot%\System32\vds.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RpcSs,PlugPlay

Service (registry key): viaide
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\viaide.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 3

Service (registry key): volmgr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ovladač správce svazků
Image path: system32\drivers\volmgr.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): volmgrx
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Dynamic Volume Manager
Description: Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks
Image path: System32\drivers\volmgrx.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): volsnap
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Svazky úložiště
Image path: system32\drivers\volsnap.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): vsmraid
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\system32\drivers\vsmraid.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): VSS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\vssvc.exe,-102
Description: @%systemroot%\system32\vssvc.exe,-101
Object name: LocalSystem
Image path: %systemroot%\system32\vssvc.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): WacomPen
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Wacom Serial Pen HID Driver
Image path: \SystemRoot\system32\drivers\wacompen.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Wanarpv6
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Remote Access IPv6 ARP Driver
Description: Remote Access IPv6 ARP Driver
Image path: system32\DRIVERS\wanarp.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): wbengine
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%systemroot%\system32\wbengine.exe,-104
Description: @%systemroot%\system32\wbengine.exe,-105
Object name: localSystem
Image path: "%systemroot%\system32\wbengine.exe"
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): Wd
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Watchdog Timer Driver
Image path: \SystemRoot\system32\drivers\wd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Wdf01000
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Kernel Mode Driver Frameworks service
Image path: system32\drivers\Wdf01000.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): Windows Workflow Foundation 3.0.0.0
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): WmiAcpi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft Windows Management Interface for ACPI
Image path: \SystemRoot\system32\drivers\wmiacpi.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): wmiApSrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110
Description: @%Systemroot%\system32\wbem\wmiapsrv.exe,-111
Object name: localSystem
Image path: %systemroot%\system32\wbem\WmiApSrv.exe
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): WMPNetworkSvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Služba Windows Media Player Network Sharing
Description: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-102
Object name: NT AUTHORITY\NetworkService
Image path: "%ProgramFiles%\Windows Media Player\wmpnetwk.exe"
Image size: 1216000
Image MD5: 56382A5EB85A25446745E3BD6D50A3A5
Control Set: CurrentControlSet
Start: 2
Type: 16
Error Control: 1
Depends On services: UPnPHost,http

Service (registry key): ws2ifsl
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Winsock IFS driver
Description: Winsock IFS driver
Image path: \SystemRoot\system32\drivers\ws2ifsl.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): wscsvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Centrum zabezpečení
Description: @%SystemRoot%\System32\wscsvc.dll,-201
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted
Image size: 21504
Image MD5: 3794B461C45882E06856F282EEF025AF
Control Set: CurrentControlSet
Start: 4
Type: 32
Error Control: 1
Depends On services: RpcSs,WinMgmt

Service (registry key): WSearch
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Vyhledávání systému Windows
Description: @%systemroot%\system32\SearchIndexer.exe,-104
Object name: LocalSystem
Image path: %systemroot%\system32\SearchIndexer.exe /Embedding
Image size: 439808
Image MD5: 7778BDFA3F6F6FBA0E75B9594098F737
Control Set: CurrentControlSet
Start: 4
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): WSearchIdxPi
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): WUDFRd
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\DRIVERS\WUDFRd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): xmlprov
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): {0BAFF6B0-6B59-412A-BABC-0211ACBD8AFA}
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): {4F1C0892-B676-4BCA-8608-66E62E5DAD82}
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): ap9r3cuk
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0


--- Winsock Layered Service Provider list ---


--- Scheduled Tasks list ---


--- Browser helper object list ---

{53707962-6F74-2D53-2644-206D7942484F} (Spybot-S&D IE Protection)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: Spybot-S&D IE Protection
Path: C:\PROGRA~2\SPYBOT~1\
Long name: SDHelper.dll
Short name:
Date (created): 6.1.2009 20:17:26
Date (last access): 6.1.2009 20:28:34
Date (last write): 15.9.2008 14:25:44
Filesize: 1562960
Attributes: readonly hidden sysfile archive
MD5: 35F73F1936BDE91F1B6995510A61E7A8
CRC32: BE6A5D15
Version: 1.6.2.14

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 12 led 2009 14:50

>{22d6f312-b0f6-11d0-94ab-0080c74c7e95} (Microsoft Windows Media Player)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Microsoft Windows Media Player
CLSID name:
Path: %SystemRoot%\system32\
Long name: unregmp2.exe /ShowWMP
MD5: D41D8CD98F00B204E9800998ECF8427E

{44BBA840-CC51-11CF-AAFA-00AA00B6015C} (Microsoft Windows Mail 7)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Microsoft Windows Mail 7
CLSID name:
Path: "%ProgramFiles(x86)%\Windows Mail\
Long name: WinMail.exe" OCInstallUserConfigOE
MD5: D41D8CD98F00B204E9800998ECF8427E

{64C96490-6013-4EA5-A689-457AF1067027} (.NET Framework)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: .NET Framework
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{8E60343B-B663-29FA-5CE2-758ABC807351} (Internet Explorer)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Internet Explorer
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{99AE47C5-C77C-669B-44F6-791A342259A8} (Internet Explorer)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Internet Explorer
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{CCFD1C10-D29D-3A02-7B43-C1CE547D0DFD} (Browser Customizations)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Browser Customizations
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{D27CDB6E-AE6D-11CF-96B8-444553540000} (Adobe Flash Player)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Adobe Flash Player
CLSID name: Shockwave Flash Object
Path: C:\Windows\SysWow64\Macromed\Flash\
Long name: Flash10a.ocx
Short name:
Date (created): 5.10.2008 4:16:26
Date (last access): 3.1.2009 11:11:14
Date (last write): 5.10.2008 4:16:26
Filesize: 3789728
Attributes: readonly archive
MD5: 466C1355934925768822E380DA6E6E4A
CRC32: 48EC1E52
Version: 10.0.12.36

{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} ()
location: HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{22d6f312-b0f6-11d0-94ab-0080c74c7e95} (Windows Media Player)
location: HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name: Windows Media Player
Path: C:\Windows\SysWOW64\
Long name: wmpdxm.dll
Short name:
Date (created): 20.4.2008 11:47:48
Date (last access): 20.4.2008 11:47:48
Date (last write): 20.4.2008 11:47:48
Filesize: 310784
Attributes: archive
MD5: 21069C01E329BB295CBB49C278B55D86
CRC32: D2029616
Version: 11.0.6001.7000

{44BBA848-CC51-11CF-AAFA-00AA00B6015C} ()
location: HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{6BF52A52-394A-11d3-B153-00C04F79FAA6} (Windows Media Player)
location: HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name: Windows Media Player
Path: %SystemRoot%\system32\
Long name: wmp.dll
MD5: F5C20CC369B5C9992CCD27972ED85EC4
Filesize: 10621440

>{26923b43-4d38-484f-9b9e-de460746276c} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

>{60B49E34-C7CC-11D0-8953-00A0C90347FF} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{22d6f312-b0f6-11d0-94ab-0080c74c7e95} (Windows Media Player)
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name: Windows Media Player
Path: C:\Windows\SysWOW64\
Long name: wmpdxm.dll
Short name:
Date (created): 20.4.2008 11:47:48
Date (last access): 20.4.2008 11:47:48
Date (last write): 20.4.2008 11:47:48
Filesize: 310784
Attributes: archive
MD5: 21069C01E329BB295CBB49C278B55D86
CRC32: D2029616
Version: 11.0.6001.7000

{2C7339CF-2B09-4501-B3F3-F3508C9228ED} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{44BBA840-CC51-11CF-AAFA-00AA00B6015C} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{44BBA848-CC51-11CF-AAFA-00AA00B6015C} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{6BF52A52-394A-11d3-B153-00C04F79FAA6} (Windows Media Player)
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name: Windows Media Player
Path: %SystemRoot%\system32\
Long name: wmp.dll
MD5: F5C20CC369B5C9992CCD27972ED85EC4
Filesize: 10621440

{89820200-ECBD-11cf-8B85-00AA005B4340} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{89820200-ECBD-11cf-8B85-00AA005B4383} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{89B4C1CD-B018-4511-B0A1-5476DBF70820} ()
location: HKEY_USERS\S-1-5-21-1786912063-3955790279-2565316649-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} ()
location: HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{22d6f312-b0f6-11d0-94ab-0080c74c7e95} (Windows Media Player)
location: HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name: Windows Media Player
Path: C:\Windows\SysWOW64\
Long name: wmpdxm.dll
Short name:
Date (created): 20.4.2008 11:47:48
Date (last access): 20.4.2008 11:47:48
Date (last write): 20.4.2008 11:47:48
Filesize: 310784
Attributes: archive
MD5: 21069C01E329BB295CBB49C278B55D86
CRC32: D2029616
Version: 11.0.6001.7000

{44BBA848-CC51-11CF-AAFA-00AA00B6015C} ()
location: HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{6BF52A52-394A-11d3-B153-00C04F79FAA6} (Windows Media Player)
location: HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name:
CLSID name: Windows Media Player
Path: %SystemRoot%\system32\
Long name: wmp.dll
MD5: F5C20CC369B5C9992CCD27972ED85EC4
Filesize: 10621440

{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} (Spybot - Search & Destroy Configuration)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\
BHO name: Spybot - Search & Destroy Configuration
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{3080F90D-D7AD-11D9-BD98-0000947B0257} (Show Desktop)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Show Desktop
CLSID name: Show Desktop
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{3080F90E-D7AD-11D9-BD98-0000947B0257} (Window Switcher)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Window Switcher
CLSID name: Window Switcher
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{eb124705-128b-40d4-8dd8-d93ed12589a4} (WPL property store)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: WPL property store
CLSID name: WPL property store
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{3c2654c6-7372-4f6b-b310-55d6128f49d2} (Alphabetical Categorizer)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Alphabetical Categorizer
CLSID name: Alphabetical Categorizer
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{9DBD2C50-62AD-11d0-B806-00C04FD706EC} (Summary Info Thumbnail handler (DOCFILES))
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Summary Info Thumbnail handler (DOCFILES)
CLSID name: Property Thumbnail Handler
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{708e1662-b832-42a8-bbe1-0a77121e3908} (Tree property value folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Tree property value folder
CLSID name: Tree property value folder
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{71f96385-ddd6-48d3-a0c1-ae06e8b055fb} (Explorer Browser)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Explorer Browser
CLSID name: Explorer Browser
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{b2952b16-0e07-4e5a-b993-58c52cb94cae} (Search Folders)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Search Folders
CLSID name: DB Folder
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{437ff9c0-a07f-4fa0-af80-84b6c6440a16} (Command Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Command Folder
CLSID name: Command Folder
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{90f8c90b-04e0-4e92-a186-e6e9c125d664} (Property Labels)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Property Labels
CLSID name: Property Labels
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{C8494E42-ACDD-4739-B0FB-217361E4894F} (Sam Account Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sam Account Folder
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{E29F9716-5C08-4FCD-955A-119FDB5A522D} (Sam Account Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sam Account Folder
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{b155bdf8-02f0-451e-9a26-ae317cfd7779} (nethood delegate folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: nethood delegate folder
CLSID name: delegate folder that appears in Computer
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{DFFACDC5-679F-4156-8947-C5C76BC0B67F} (users files delegate folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: users files delegate folder
CLSID name: delegate folder that appears in Users Files Folder
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{ed50fc29-b964-48a9-afb3-15ebb9b97f36} (printhood delegate folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: printhood delegate folder
CLSID name: printhood delegate folder
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{328B0346-7EAF-4BBE-A479-7CB88A095F5B} (Layout Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Layout Folder
CLSID name: LayoutFolder
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0} (Control Panel command object for Start menu)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Control Panel command object for Start menu
CLSID name: Control Panel command object for Start menu
MD5: D41D8CD98F00B204E9800998ECF8427E

{E44E5D18-0652-4508-A4E2-8A090067BCB0} (Default Programs command object for Start menu)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Default Programs command object for Start menu
CLSID name: Default Programs command object for Start menu
MD5: D41D8CD98F00B204E9800998ECF8427E

{4336a54d-038b-4685-ab02-99bb52d3fb8b} (Public Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Public Folder
CLSID name:
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{00021401-0000-0000-C000-000000000046} (Shortcut)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Shortcut
CLSID name: Shortcut
Path:
Long name: shell32.dll
Short name:
Date (created): 28.12.2008 13:20:18
Date (last access): 28.12.2008 13:20:18
Date (last write): 6.11.2008 14:14:26
Filesize: 11580928
Attributes: archive
MD5: 5D62692EEB77E32F67A966F1BDEB551B
CRC32: CE4BF6CB
Version: 6.0.6001.18167

{C73F6F30-97A0-4AD1-A08F-540D4E9BC7B9} (Search Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Search Folder
CLSID name:
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{0AFCCBA6-BF90-4A4E-8482-0AC960981F5B} (.fon, .otf, .ttc or .ttf files)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: .fon, .otf, .ttc or .ttf files
CLSID name:
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{66742402-F9B9-11D1-A202-0000F81FEDEE} (.cpl, .dll, .exe, .ocx, .rll or .sys files)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: .cpl, .dll, .exe, .ocx, .rll or .sys files
CLSID name:
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{D34A6CA6-62C2-4C34-8A7C-14709C1AD938} (Common Places Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Common Places Folder
CLSID name: Common Places FS Folder
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{865e5e76-ad83-4dca-a109-50dc2113ce9a} (Programs Folder and Fast Items)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Programs Folder and Fast Items
CLSID name: Programs Folder and Fast Items
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{21ec2020-3aea-1069-a2dd-08002b30309d} (Control Panel)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Control Panel
CLSID name: Control Panel
Path:
Long name: shell32.dll
Short name:
Date (created): 28.12.2008 13:20:18
Date (last access): 28.12.2008 13:20:18
Date (last write): 6.11.2008 14:14:26
Filesize: 11580928
Attributes: archive
MD5: 5D62692EEB77E32F67A966F1BDEB551B
CRC32: CE4BF6CB
Version: 6.0.6001.18167

{25585dc7-4da0-438d-ad04-e42c8d2d64b9} (Client application shell extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Client application shell extension
CLSID name: Client application shell extension
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{6dfd7c5c-2451-11d3-a299-00c04f8ef6af} (Folder Options)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Folder Options
CLSID name: Folder Options
MD5: D41D8CD98F00B204E9800998ECF8427E

{a42c2ccb-67d3-46fa-abe6-7d2f3488c7a3} (Microsoft Windows RTF Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows RTF Preview Handler
CLSID name: Microsoft Windows RTF Preview Handler
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{1531d583-8375-4d3f-b5fb-d23bbd169f22} (Window TXT Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Window TXT Preview Handler
CLSID name: Microsoft Windows TXT Preview Handler
Path: %SystemRoot%\system32\
Long name: shell32.dll
MD5: 5D62692EEB77E32F67A966F1BDEB551B
Filesize: 11580928

{97e467b4-98c6-4f19-9588-161b7773d6f6} (Office Document Property Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Office Document Property Handler
CLSID name: Office Document Property Handler
Path: %SystemRoot%\system32\
Long name: propsys.dll
MD5: 89D74683C859B7982056D15938BACA3E
Filesize: 754176

{F02C1A0D-BE21-4350-88B0-7367FC96EF3C} (Computers and Devices)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Computers and Devices
CLSID name: Computers and Devices
Path: %systemroot%\system32\
Long name: NetworkExplorer.dll
MD5: E3C52CD56F4CB2D9736C75EFAA62A07F
Filesize: 2226688

{E7DE9B1A-7533-4556-9484-B26FB486475E} (Network Map)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Network Map
Path: %SystemRoot%\system32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{4A1E5ACD-A108-4100-9E26-D2FAFA1BA486} (IGD Property Sheet Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IGD Property Sheet Handler
CLSID name: IGD Property Page
Path: %SystemRoot%\System32\
Long name: icsigd.dll
MD5: BBC1428E855C94BB22D2F09742606A1D
Filesize: 195584

{74246bfc-4c96-11d0-abef-0020af6b0b7a} (Device Manager)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Device Manager
CLSID name: Device Manager
Path: %SystemRoot%\System32\
Long name: devmgr.dll
MD5: 9E6707CAC0A742A0B13C6D238532AD18
Filesize: 377344

{7A979262-40CE-46ff-AEEE-7884AC3B6136} (Add New Hardware)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Add New Hardware
CLSID name: Add New Hardware
MD5: D41D8CD98F00B204E9800998ECF8427E

{3050f3d9-98b5-11cf-bb82-00aa00bdce0b} (MSHTML Document)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: MSHTML Document
CLSID name: MHTML Document
Path: C:\Windows\SysWOW64\
Long name: mshtml.dll
Short name:
Date (created): 10.1.2009 20:57:30
Date (last access): 10.1.2009 20:57:30
Date (last write): 2.10.2008 4:49:16
Filesize: 3578880
Attributes: archive
MD5: 3E3D3E24BD1F862CD1A772C0DAD3F134
CRC32: 2617EB40
Version: 7.0.6001.18148

{25336920-03f9-11cf-8fd0-00aa00686f13} (HTML Document)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: HTML Document
CLSID name: HTML Document
Path: C:\Windows\SysWOW64\
Long name: mshtml.dll
Short name:
Date (created): 10.1.2009 20:57:30
Date (last access): 10.1.2009 20:57:30
Date (last write): 2.10.2008 4:49:16
Filesize: 3578880
Attributes: archive
MD5: 3E3D3E24BD1F862CD1A772C0DAD3F134
CRC32: 2617EB40
Version: 7.0.6001.18148

{92dbad9f-5025-49b0-9078-2d78f935e341} (Microsoft Windows Mail Html Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Mail Html Preview Handler
CLSID name: CLSID_PreviewMime
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{b9815375-5d7f-4ce2-9245-c9d4da436930} (Microsoft Windows Mail Html Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Mail Html Preview Handler
CLSID name: CLSID_PreviewEmail
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{f8b8412b-dea3-4130-b36c-5e8be73106ac} (Microsoft Windows Mail Html Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Mail Html Preview Handler
CLSID name: CLSID_PreviewHtml
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{5FA29220-36A1-40f9-89C6-F4B384B7642E} (Shell Message Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Shell Message Handler
CLSID name: Shell Message Handler
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{E7E4BC40-E76A-11CE-A9BB-00AA004AE837} (Shell DocObject Viewer)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Shell DocObject Viewer
CLSID name: Shell DocObject Viewer
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{BC476F4C-D9D7-4100-8D4E-E043F6DEC409} (Microsoft Browser Architecture)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Browser Architecture
CLSID name: Microsoft Browser Architecture
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FBF23B40-E3F0-101B-8488-00AA003E56F8} (InternetShortcut)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: InternetShortcut
CLSID name: Internet Shortcut
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{3C374A40-BAE4-11CF-BF7D-00AA006946EE} (Microsoft Url History Service)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Url History Service
CLSID name: Microsoft Url History Service
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FF393560-C2A7-11CF-BFF4-444553540000} (History)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: History
CLSID name: History
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{7BD29E00-76C1-11CF-9DD0-00A0C9034933} (Temporary Internet Files)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Temporary Internet Files
CLSID name: Temporary Internet Files
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{7BD29E01-76C1-11CF-9DD0-00A0C9034933} (Temporary Internet Files)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Temporary Internet Files
CLSID name: Temporary Internet Files
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{CFBFAE00-17A6-11D0-99CB-00C04FD64497} (Microsoft Url Search Hook)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Url Search Hook
CLSID name: Microsoft Url Search Hook
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{3DC7A020-0ACD-11CF-A9BB-00AA004AE837} (The Internet)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: The Internet
CLSID name: The Internet
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{73CFD649-CD48-4fd8-A272-2070EA56526B} (IE BandProxy)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE BandProxy
CLSID name: IE BandProxy
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{07C45BB1-4A8C-4642-A1F5-237E7215FF66} (IE Microsoft BrowserBand)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft BrowserBand
CLSID name: IE Microsoft BrowserBand
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{43886CD5-6529-41c4-A707-7B3C92C05E68} (IE Navigation Bar)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Navigation Bar
CLSID name: IE Navigation Bar
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{30D02401-6A81-11d0-8274-00C04FD5AE38} (IE Search Band)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Search Band
CLSID name: IE Search Band
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{F83DAC1C-9BB9-4f2b-B619-09819DA81B0E} (IE Registry Tree Options Utility)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Registry Tree Options Utility
CLSID name: IE Registry Tree Options Utility
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{3028902F-6374-48b2-8DC6-9725E775B926} (IE AutoComplete)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE AutoComplete
CLSID name: IE AutoComplete
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8} (IE MRU AutoComplete List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE MRU AutoComplete List
CLSID name: IE MRU AutoComplete List
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FDE7673D-2E19-4145-8376-BBD58C4BC7BA} (IE Custom MRU AutoCompleted List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Custom MRU AutoCompleted List
CLSID name: IE Custom MRU AutoCompleted List
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{6038EF75-ABFC-4e59-AB6F-12D397F6568D} (IE Microsoft History AutoComplete List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft History AutoComplete List
CLSID name: IE Microsoft History AutoComplete List
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{9D958C62-3954-4b44-8FAB-C4670C1DB4C2} (IE Microsoft Shell Folder AutoComplete List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft Shell Folder AutoComplete List
CLSID name: IE Microsoft Shell Folder AutoComplete List
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{B31C5FAE-961F-415b-BAF0-E697A5178B94} (IE Microsoft Multiple AutoComplete List Container)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft Multiple AutoComplete List Container
CLSID name: IE Microsoft Multiple AutoComplete List Container
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{E6EE9AAC-F76B-4947-8260-A9F136138E11} (IE Shell Band Site Menu)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Shell Band Site Menu
CLSID name: IE Shell Band Site Menu
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A} (IE Shell Rebar BandSite)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Shell Rebar BandSite
CLSID name: IE Shell Rebar BandSite
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} (IE User Assist)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE User Assist
CLSID name: IE User Assist
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{4B78D326-D922-44f9-AF2A-07805C2A3560} (IE Menu Band)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Menu Band
CLSID name: IE Menu Band
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{6CF48EF8-44CD-45d2-8832-A16EA016311B} (IE IShellFolderBand)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE IShellFolderBand
CLSID name:
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{F2CF5485-4E02-4f68-819C-B92DE9277049} (&Links)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: &Links
CLSID name: &Links
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{1C1EDB47-CE22-4bbb-B608-77B48F83C823} (IE Fade Task)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Fade Task
CLSID name: IE Fade Task
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{6B4ECC4F-16D1-4474-94AB-5A763F2A54AE} (IE Tracking Shell Menu)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Tracking Shell Menu
CLSID name: IE Tracking Shell Menu
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{44C76ECD-F7FA-411c-9929-1B77BA77F524} (IE Menu Site)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Menu Site
CLSID name: IE Menu Site
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{205D7A97-F16D-4691-86EF-F3075DCCA57D} (IE Menu Desk Bar)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Menu Desk Bar
CLSID name: IE Menu Desk Bar
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{871C5380-42A0-1069-A2EA-08002B30309D} (Internet Name Space)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Internet Name Space
CLSID name:
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{9A096BB5-9DC3-4D1C-8526-C3CBF991EA4E} (IE RSS Feeder Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE RSS Feeder Folder
CLSID name: IE RSS Feeds Folder
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{8856f961-340a-11d0-a96b-00c04fd705a2} (Microsoft Web Browser)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Web Browser
CLSID name: Microsoft Web Browser
Path: C:\Windows\SysWOW64\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{DC1C5A9C-E88A-4dde-A5A1-60F82A20AEF7} (File Open Dialog)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: File Open Dialog
CLSID name: File Open Dialog
Path: %SystemRoot%\System32\
Long name: comdlg32.dll
MD5: D71266E0E06421E81CA85F2346B7EE9E
Filesize: 450048

{056440FD-8568-48e7-A632-72157243B55B} (Explorer Navigation Bar)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Explorer Navigation Bar
CLSID name: Explorer Navigation Bar
Path: %SystemRoot%\system32\
Long name: browseui.dll
MD5: A3C1B75B0156D5B68B271C6FE0A5FDE7
Filesize: 1324032

{C4EC38BD-4E9E-4b5e-935A-D1BFF237D980} (Explorer Travel Band)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Explorer Travel Band
CLSID name: Explorer Travel Band
Path: %SystemRoot%\system32\
Long name: browseui.dll
MD5: A3C1B75B0156D5B68B271C6FE0A5FDE7
Filesize: 1324032

{6D8BB3D3-9D87-4a91-AB56-4F30CFFEFE9F} (Explorer Search Band)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Explorer Search Band
CLSID name: Explorer Search Band
Path: %SystemRoot%\system32\
Long name: browseui.dll
MD5: A3C1B75B0156D5B68B271C6FE0A5FDE7
Filesize: 1324032

{2C2577C2-63A7-40e3-9B7F-586602617ECB} (Explorer Query Band)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Explorer Query Band
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{a542e116-8088-4146-a352-b0d06e7f6af6} (Address EditBox)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Address EditBox
CLSID name: Address EditBox
Path: %SystemRoot%\system32\
Long name: browseui.dll
MD5: A3C1B75B0156D5B68B271C6FE0A5FDE7
Filesize: 1324032

{596742A5-1393-4e13-8765-AE1DF71ACAFB} (Microsoft Breadcrumb Bar)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Breadcrumb Bar
CLSID name: Microsoft Breadcrumb Bar
Path: %SystemRoot%\system32\
Long name: browseui.dll
MD5: A3C1B75B0156D5B68B271C6FE0A5FDE7
Filesize: 1324032

{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} (Shell Icon Handler for Application References)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Shell Icon Handler for Application References
CLSID name: Shell Icon Handler for Application References
Path: C:\Windows\SysWOW64\
Long name: dfshim.dll
Short name:
Date (created): 28.12.2008 16:54:24
Date (last access): 28.12.2008 16:54:24
Date (last write): 27.7.2008 19:03:18
Filesize: 96760
Attributes: archive
MD5: B6C9A03E1BA3E74E33633369B35AE526
CRC32: 58C7E665
Version: 2.0.50727.3053

{e82a2d71-5b2f-43a0-97b8-81be15854de8} (ShellLink for Application References)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: ShellLink for Application References
CLSID name: ShellLink for Application References
Path: C:\Windows\SysWOW64\
Long name: dfshim.dll
Short name:
Date (created): 28.12.2008 16:54:24
Date (last access): 28.12.2008 16:54:24
Date (last write): 27.7.2008 19:03:18
Filesize: 96760
Attributes: archive
MD5: B6C9A03E1BA3E74E33633369B35AE526
CRC32: 58C7E665
Version: 2.0.50727.3053

{92337A8C-E11D-11D0-BE48-00C04FC30DF6} (OlePrn.PrinterURL)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: OlePrn.PrinterURL
CLSID name: prturl Class
Path: %SystemRoot%\system32\
Long name: oleprn.dll
MD5: 4162BB9EF08F8B2658DA85906CBB1D90
Filesize: 96768

{44121072-A222-48f2-A58A-6D9AD51EBBE9} (Microsoft XPS Thumbnail)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft XPS Thumbnail
CLSID name:
Path: %SystemRoot%\system32\
Long name: XPSSHHDR.DLL
MD5: 4A149599A7336DF7ED588761F4A8CFA8
Filesize: 574976

{38a98528-6cbf-4ca9-8dc0-b1e1d10f7b1b} (View Available Networks)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: View Available Networks
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{13D3C4B8-B179-4ebb-BF62-F704173E7448} (Windows Contact Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Contact Preview Handler
CLSID name: CLSID_ContactReadingPane
Path: %CommonProgramFiles(x86)%\System\
Long name: wab32.dll
MD5: D41D8CD98F00B204E9800998ECF8427E

{0F8604A5-4ECE-4DE1-BA7D-CF10F8AA4F48} (Contacts folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Contacts folder
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{4F58F63F-244B-4c07-B29F-210BE59BE9B4} (.group shell extension handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: .group shell extension handler
CLSID name: .group shell extension handler
Path: %CommonProgramFiles(x86)%\System\
Long name: wab32.dll
MD5: D41D8CD98F00B204E9800998ECF8427E

{8082C5E6-4C27-48ec-A809-B8E1122E8F97} (.contact shell extension handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: .contact shell extension handler
CLSID name: .contact shell extension handler
Path: %CommonProgramFiles(x86)%\System\
Long name: wab32.dll
MD5: D41D8CD98F00B204E9800998ECF8427E

{16C2C29D-0E5F-45f3-A445-03E03F587B7D} (group_wab_auto_file)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: group_wab_auto_file
CLSID name: .group shell context menu
Path: %CommonProgramFiles(x86)%\System\
Long name: wab32.dll
MD5: D41D8CD98F00B204E9800998ECF8427E

siskai
nováček
Příspěvky: 18
Registrován: leden 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím zkontrolujte log

Příspěvekod siskai » 12 led 2009 14:51

{CF67796C-F57F-45F8-92FB-AD698826C602} (contact_wab_auto_file)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: contact_wab_auto_file
CLSID name: .contact shell context menu
Path: %CommonProgramFiles(x86)%\System\
Long name: wab32.dll
MD5: D41D8CD98F00B204E9800998ECF8427E

{b2c761c6-29bc-4f19-9251-e6195265baf1} (Color Control Panel Applet)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Color Control Panel Applet
CLSID name: Color Control Panel Applet
MD5: D41D8CD98F00B204E9800998ECF8427E

{4026492f-2f69-46b8-b9bf-5654fc07e423} (Windows Firewall)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Firewall
CLSID name: Windows Firewall
MD5: D41D8CD98F00B204E9800998ECF8427E

{D555645E-D4F8-4c29-A827-D93C859C4F2A} (Ease of Access)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Ease of Access
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{60254CA5-953B-11CF-8C96-00AA00B8708C} (Shell extensions for Windows Script Host)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Shell extensions for Windows Script Host
CLSID name: Shell Extension For Windows Script Host
Path: C:\Windows\SysWOW64\
Long name: wshext.dll
Short name:
Date (created): 28.12.2008 13:03:38
Date (last access): 28.12.2008 13:03:38
Date (last write): 8.5.2008 22:59:36
Filesize: 90112
Attributes: archive
MD5: F825B8CEC8523C7542C2E397D31DB292
CRC32: D20B93B4
Version: 5.7.0.18068

{a304259d-52b8-4526-8b1a-a1d6cecc8243} (iSCSI Initiator)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: iSCSI Initiator
CLSID name: iSCSI Initiator
MD5: D41D8CD98F00B204E9800998ECF8427E

{8E908FC9-BECC-40f6-915B-F4CA0E70D03D} (Network and Sharing Center)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Network and Sharing Center
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{025A5937-A6BE-4686-A844-36FE4BEC8B6D} (Microsoft Power Options)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Power Options
CLSID name: Power Options
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{BB06C0E4-D293-4f75-8A90-CB05B6477EEE} (System)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: System
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{ED834ED6-4B5A-4bfe-8F11-A626DCB6A921} (Personalization CPL Provider)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Personalization CPL Provider
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{17cd9488-1228-4b2f-88ce-4298e93e0966} (Set User Defaults)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Set User Defaults
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{60632754-c523-4b62-b45c-4172da012619} (User Accounts)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: User Accounts
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{9C60DE1E-E5FC-40f4-A487-460851A8D915} (AutoPlay)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: AutoPlay
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{7b81be6a-ce2b-4676-a29e-eb907a5126c5} (Programs and Features)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Programs and Features
CLSID name: Programs and Features
Path: %SystemRoot%\System32\
Long name: appwiz.cpl
MD5: 9D28DF863A02971D3FA8B4C1F4DFC785
Filesize: 1122304

{15eae92e-f17a-4431-9f28-805e482dafd4} (Install New Programs)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Install New Programs
CLSID name: Install New Programs
Path: %SystemRoot%\System32\
Long name: appwiz.cpl
MD5: 9D28DF863A02971D3FA8B4C1F4DFC785
Filesize: 1122304

{0BFCF7B7-E7B6-433a-B205-2904FCF040DD} (New Shortcut Wizard Modal)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: New Shortcut Wizard Modal
CLSID name: New Shortcut Wizard Modal
Path: %SystemRoot%\System32\
Long name: appwiz.cpl
MD5: 9D28DF863A02971D3FA8B4C1F4DFC785
Filesize: 1122304

{3e7efb4c-faf1-453d-89eb-56026875ef90} (Get Programs Online)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Get Programs Online
CLSID name: Get Programs Online
MD5: D41D8CD98F00B204E9800998ECF8427E

{11dbb47c-a525-400b-9e80-a54615a090c0} (Execute Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Execute Folder
CLSID name: CLSID_ExecuteFolder
Path:
Long name: ExplorerFrame.dll
Short name:
Date (created): 20.4.2008 11:41:08
Date (last access): 20.4.2008 11:41:08
Date (last write): 20.4.2008 11:41:08
Filesize: 20992
Attributes: archive
MD5: B43DC259D9D66075D0E1BCB8A235CBBD
CRC32: 036D9E6F
Version: 6.0.6001.18000

{90b9bce2-b6db-4fd3-8451-35917ea1081b} (Search Execute Command)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Search Execute Command
CLSID name: CLSID_SearchExecute
Path:
Long name: ExplorerFrame.dll
Short name:
Date (created): 20.4.2008 11:41:08
Date (last access): 20.4.2008 11:41:08
Date (last write): 20.4.2008 11:41:08
Filesize: 20992
Attributes: archive
MD5: B43DC259D9D66075D0E1BCB8A235CBBD
CRC32: 036D9E6F
Version: 6.0.6001.18000

{2BC0DA0E-F1BC-43AB-B4B5-738EB6B51E7E} (Microsoft Windows Font File Icon Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Font File Icon Handler
CLSID name: Microsoft Windows Font File Icon Handler
Path:
Long name: fontext.dll
Short name:
Date (created): 20.4.2008 11:44:42
Date (last access): 20.4.2008 11:44:42
Date (last write): 20.4.2008 11:44:42
Filesize: 142336
Attributes: archive
MD5: 30E6F401DF9897B20006FE095B436FAE
CRC32: 0E00F75B
Version: 6.0.6001.18000

{1a184871-359e-4f67-aad9-5b9905d62232} (Microsoft Windows Font File Context Menu Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Font File Context Menu Handler
CLSID name: Microsoft Windows Font Context Menu Handler
Path:
Long name: fontext.dll
Short name:
Date (created): 20.4.2008 11:44:42
Date (last access): 20.4.2008 11:44:42
Date (last write): 20.4.2008 11:44:42
Filesize: 142336
Attributes: archive
MD5: 30E6F401DF9897B20006FE095B436FAE
CRC32: 0E00F75B
Version: 6.0.6001.18000

{8a7cae0e-5951-49cb-bf20-ab3fa1e44b01} (Microsoft Windows Font Previewer)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Font Previewer
CLSID name: Microsoft Windows Font Preview Handler
Path:
Long name: fontext.dll
Short name:
Date (created): 20.4.2008 11:44:42
Date (last access): 20.4.2008 11:44:42
Date (last write): 20.4.2008 11:44:42
Filesize: 142336
Attributes: archive
MD5: 30E6F401DF9897B20006FE095B436FAE
CRC32: 0E00F75B
Version: 6.0.6001.18000

{911051fa-c21c-4246-b470-070cd8df6dc4} (.cab or .zip files)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: .cab or .zip files
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{44f3dab6-4392-4186-bb7b-6282ccb7a9f6} (MyDocuments menu and properties)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: MyDocuments menu and properties
CLSID name: MyDocuments menu and properties
Path: %SystemRoot%\system32\
Long name: mydocs.dll
MD5: F30D5EE1426D519F0C6E41A24C51D7AD
Filesize: 135680

{da67b8ad-e81b-4c70-9b91b417b5e33527} (Windows Search Shell Service)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Search Shell Service
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{a38b883c-1682-497e-97b0-0a3a9e801682} (IPropertyStore Handler for Images)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IPropertyStore Handler for Images
CLSID name: IPropertyStore Handler for Images
Path: C:\Windows\SysWOW64\
Long name: PhotoMetadataHandler.dll
Short name:
Date (created): 28.12.2008 13:20:08
Date (last access): 28.12.2008 13:20:08
Date (last write): 28.8.2008 4:40:10
Filesize: 425472
Attributes: archive
MD5: B1DD63E030763B63EE78E97054375F8E
CRC32: E0AA7784
Version: 6.0.6001.18131

{C7657C4A-9F68-40fa-A4DF-96BC08EB3551} (Photo Thumbnail Provider)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Photo Thumbnail Provider
CLSID name: Photo Thumbnail Provider
Path: C:\Windows\SysWOW64\
Long name: PhotoMetadataHandler.dll
Short name:
Date (created): 28.12.2008 13:20:08
Date (last access): 28.12.2008 13:20:08
Date (last write): 28.8.2008 4:40:10
Filesize: 425472
Attributes: archive
MD5: B1DD63E030763B63EE78E97054375F8E
CRC32: E0AA7784
Version: 6.0.6001.18131

{3F30C968-480A-4C6C-862D-EFC0897BB84B} (Photo Thumbnail Extractor)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Photo Thumbnail Extractor
CLSID name: Photo Extract Image
Path: C:\Windows\SysWOW64\
Long name: PhotoMetadataHandler.dll
Short name:
Date (created): 28.12.2008 13:20:08
Date (last access): 28.12.2008 13:20:08
Date (last write): 28.8.2008 4:40:10
Filesize: 425472
Attributes: archive
MD5: B1DD63E030763B63EE78E97054375F8E
CRC32: E0AA7784
Version: 6.0.6001.18131

{BC65FB43-1958-4349-971A-210290480130} (Network Explorer Property Sheet Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Network Explorer Property Sheet Handler
CLSID name: Ncd Property Page
Path: %SystemRoot%\System32\
Long name: NcdProp.dll
MD5: FAC2D28000A685B43185F55BEB93AA0D
Filesize: 19968

{d3e34b21-9d75-101a-8c3d-00aa001a1652} (Bitmap Image)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Bitmap Image
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{E598560B-28D5-46aa-A14A-8A3BEA34B576} (Windows Photo Gallery Viewer Video Verbs)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Photo Gallery Viewer Video Verbs
CLSID name: Windows Photo Gallery Viewer Video Verbs
Path: %ProgramFiles%\Windows Photo Gallery\
Long name: PhotoViewer.dll
MD5: 2AAD5D8541ABFD8EC8877773291250AC
Filesize: 2314240

{00f2886f-cd64-4fc9-8ec5-30ef6cdbe8c3} (Microsoft.ScannersAndCameras)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft.ScannersAndCameras
CLSID name: Scanner and Camera Control Panel
MD5: D41D8CD98F00B204E9800998ECF8427E

{0a4286ea-e355-44fb-8086-af3df7645bd9} (Windows Media Player)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Media Player
CLSID name: &Windows Media Player
Path: %ProgramFiles%\Windows Media Player\
Long name: wmpband.dll
MD5: E7369CA015162EF4F9E207897EF7DED8
Filesize: 99328

{E95A4861-D57A-4be1-AD0F-35267E261739} (Windows SideShow)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Windows SideShow
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{89D83576-6BD1-4c86-9454-BEB04E94C819} (MAPI Search Namespace Extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: MAPI Search Namespace Extension
CLSID name: @%systemroot%\system32\mssvp.dll,-110
Path: %systemroot%\system32\
Long name: mssvp.dll
MD5: AC32DC4D4552151D6842B678D52EB9B7
Filesize: 670208

{7A0F6AB7-ED84-46B6-B47E-02AA159A152B} (Sync Center Simple Conflict Presenter)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Simple Conflict Presenter
CLSID name: Simple Conflict Presenter
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{9D687A4C-1404-41ef-A089-883B6FBECDE6} (Windows Photo Gallery Viewer Autoplay Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Photo Gallery Viewer Autoplay Handler
CLSID name: Windows Photo Gallery Viewer Autoplay Handler
MD5: D41D8CD98F00B204E9800998ECF8427E

{37efd44d-ef8d-41b1-940d-96973a50e9e0} (Windows Sidebar Properties)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Sidebar Properties
CLSID name: Windows Sidebar Properties
MD5: D41D8CD98F00B204E9800998ECF8427E

{00f20eb5-8fd6-4d9d-b75e-36801766c8f1} (PhotoAcqDropTarget)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: PhotoAcqDropTarget
CLSID name: PhotoAcqDropTarget
Path: %ProgramFiles%\Windows Photo Gallery\
Long name: PhotoAcq.dll
MD5: B5D79B4F81DAA75BBB3DD9F481ADF41B
Filesize: 1030144

{BC48B32F-5910-47F5-8570-5074A8A5636A} (Sync Results Delegate Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Results Delegate Folder
CLSID name: Sync Results Delegate Folder
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{ED228FDF-9EA8-4870-83B1-96B02CFE0D52} (Games Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Games Folder
CLSID name: @C:\Windows\SysWOW64\shell32.dll,-30579
Path: C:\Windows\SysWOW64\
Long name: gameux.dll
Short name:
Date (created): 28.12.2008 13:19:24
Date (last access): 28.12.2008 13:19:24
Date (last write): 8.3.2008 5:21:56
Filesize: 1695744
Attributes: archive
MD5: 94A92ADE4BB64E24C668645F5B9A6FCA
CRC32: 9F71AEBD
Version: 6.0.6001.18032

{E413D040-6788-4C22-957E-175D1C513A34} (Sync Center Conflict Delegate Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Conflict Delegate Folder
CLSID name: Sync Center Conflict Delegate Folder
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{67718415-c450-4f3c-bf8a-b487642dc39b} (Windows Features)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Features
CLSID name: Windows Features
MD5: D41D8CD98F00B204E9800998ECF8427E

{7D4734E6-047E-41e2-AEAA-E763B4739DC4} (Windows Media Player Play as Playlist Context Menu Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Media Player Play as Playlist Context Menu Handler
CLSID name: WMP Play Folder As Playlist Launcher
Path: %SystemRoot%\system32\
Long name: wmpshell.dll
MD5: 0143E15F94FD523C588EDD47609F905F
Filesize: 101376

{2781761E-28E0-4109-99FE-B9D127C57AFE} (Windows Defender IOfficeAntiVirus implementation)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Defender IOfficeAntiVirus implementation
CLSID name: Windows Defender IOfficeAntiVirus implementation
Path: %ProgramFiles%\Windows Defender\
Long name: MpOav.dll
MD5: B7DC98F6F4E7611A9C0849945FB28FB9
Filesize: 90680

{96AE8D84-A250-4520-95A5-A47A7E3C548B} (Parental Controls)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Parental Controls
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{FFE2A43C-56B9-4bf5-9A79-CC6D4285608A} (Windows Photo Gallery Viewer Image Verbs)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Photo Gallery Viewer Image Verbs
CLSID name: Windows Photo Gallery Viewer Image Verbs
Path: %ProgramFiles%\Windows Photo Gallery\
Long name: PhotoViewer.dll
MD5: 2AAD5D8541ABFD8EC8877773291250AC
Filesize: 2314240

{4B534112-3AF6-4697-A77C-D62CE9B9E7CF} (Sync Center Event Properties Extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Event Properties Extension
CLSID name: Sync Center Event Properties Extension
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{F1390A9A-A3F4-4E5D-9C5F-98F3BD8D935C} (Sync Setup Delegate Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Setup Delegate Folder
CLSID name: Sync Setup Delegate Folder
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{4E5BFBF8-F59A-4e87-9805-1F9B42CC254A} (GameUX.RichGameMediaThumbnail)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: GameUX.RichGameMediaThumbnail
CLSID name: RichGameMediaThumbnail Class
Path: C:\Windows\SysWOW64\
Long name: gameux.dll
Short name:
Date (created): 28.12.2008 13:19:24
Date (last access): 28.12.2008 13:19:24
Date (last write): 8.3.2008 5:21:56
Filesize: 1695744
Attributes: archive
MD5: 94A92ADE4BB64E24C668645F5B9A6FCA
CRC32: 9F71AEBD
Version: 6.0.6001.18032

{d8559eb9-20c0-410e-beda-7ed416aecc2a} (Windows Defender)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Defender
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{576C9E85-1300-4EF5-BF6B-D00509F4EDCD} (Sync Center Handler Properties Extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Handler Properties Extension
CLSID name: Sync Center Handler Properties Extension
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{289978AC-A101-4341-A817-21EBA7FD046D} (Sync Center Conflict Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Conflict Folder
CLSID name: Sync Center Conflict Folder
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{71D99464-3B6B-475C-B241-E15883207529} (Sync Results Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Results Folder
CLSID name: Sync Results Folder
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{B32D3949-ED98-4DBB-B347-17A144969BBA} (Sync Center Item Properties Extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Item Properties Extension
CLSID name: Sync Center Item Properties Extension
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} (Portable Devices Menu)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Portable Devices Menu
CLSID name: Portable Devices Menu
Path: %SystemRoot%\system32\
Long name: wpdshext.dll
MD5: 689C2A3B8C6CBC64E6959C7C858B742C
Filesize: 2537472

{2E9E59C0-B437-4981-A647-9C34B9B90891} (Sync Setup Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Setup Folder
CLSID name: Sync Setup Folder
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{9C73F5E5-7AE7-4E32-A8E8-8D23B85255BF} (Sync Center Folder)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Folder
CLSID name: Sync Center Folder
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{78F3955E-3B90-4184-BD14-5397C15F1EFC} (Performance Information and Tools)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Performance Information and Tools
Path: %SystemRoot%\System32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{CB1B7F8C-C50A-4176-B604-9E24DEE8D4D1} (Welcome Center)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Welcome Center
CLSID name: Welcome Center
Path:
Long name: oobefldr.dll
Short name:
Date (created): 20.4.2008 11:37:00
Date (last access): 20.4.2008 11:37:00
Date (last write): 20.4.2008 11:37:00
Filesize: 2153472
Attributes: archive
MD5: 83E4A5435B0FA6AD0166722621A04725
CRC32: 48B1D434
Version: 6.0.6001.18000

{F04CC277-03A2-4277-96A9-77967471BDFF} (Sync Center Conflict Properties Extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Conflict Properties Extension
CLSID name: Sync Center Conflict Properties Extension
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{53BEDF0B-4E5B-4183-8DC9-B844344FA104} (Microsoft Windows MAPI Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows MAPI Preview Handler
CLSID name: MAPI Mail Previewer
Path: %SystemRoot%\system32\
Long name: mssvp.dll
MD5: AC32DC4D4552151D6842B678D52EB9B7
Filesize: 670208

{6b9228da-9c15-419e-856c-19e768a13bdc} (Windows gadget DropTarget)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows gadget DropTarget
CLSID name: Windows gadget DropTarget
Path: %ProgramFiles%\Windows Sidebar\
Long name: sbdrop.dll
MD5: A74701976D6D75099B9FCA993685C452
Filesize: 66048

{8E25992B-373E-486E-80E5-BD23AE417E66} (Sync Center Device Notification Sink)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Sync Center Device Notification Sink
CLSID name: Sync Center Device Notification Sink
Path: %SystemRoot%\System32\
Long name: SyncCenter.dll
MD5: C8527AB1BC08E6BB57EA545DA8C6569F
Filesize: 2204672

{031EE060-67BC-460d-8847-E4A7C5E45A27} (Windows Media Player Rich Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Media Player Rich Preview Handler
CLSID name: Windows Media Player Rich Preview Handler
MD5: D41D8CD98F00B204E9800998ECF8427E

{1FA9085F-25A2-489B-85D4-86326EEDCD87} (Manage Wireless Networks)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Manage Wireless Networks
CLSID name: Manage Wireless Networks
Path: %SystemRoot%\system32\
Long name: wlanpref.dll
MD5: CFB1737C17BA3172D490F26A4CD17781
Filesize: 1671680

{ECDD6472-2B9B-4b4b-AE36-F316DF3C8D60} (RichGameMediaPropertyStore Class)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: RichGameMediaPropertyStore Class
CLSID name: RichGameMediaPropertyStore Class
Path: C:\Windows\SysWOW64\
Long name: gameux.dll
Short name:
Date (created): 28.12.2008 13:19:24
Date (last access): 28.12.2008 13:19:24
Date (last write): 8.3.2008 5:21:56
Filesize: 1695744
Attributes: archive
MD5: 94A92ADE4BB64E24C668645F5B9A6FCA
CRC32: 9F71AEBD
Version: 6.0.6001.18032

{8A734961-C4AA-4741-AC1E-791ACEBF5B39} (Windows Media Player Shop Music Context Menu Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Windows Media Player Shop Music Context Menu Handler
CLSID name:
Path: %SystemRoot%\system32\
Long name: wmpshell.dll
MD5: 0143E15F94FD523C588EDD47609F905F
Filesize: 101376

{BD7A2E7B-21CB-41b2-A086-B309680C6B7E} (Client Side Cache Namespace Extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Client Side Cache Namespace Extension
CLSID name: @%systemroot%\system32\mssvp.dll,-112
Path: %systemroot%\system32\
Long name: mssvp.dll
MD5: AC32DC4D4552151D6842B678D52EB9B7
Filesize: 670208

{B089FE88-FB52-11D3-BDF1-0050DA34150D} (Eset Smart Security - Context Menu Shell Extension)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Eset Smart Security - Context Menu Shell Extension
CLSID name: Eset Smart Security - Context Menu Shell Extension
Path: C:\Program Files\ESET\ESET Smart Security\x86\
Long name: shellExt.dll
Short name:
Date (created): 24.10.2008 20:59:54
Date (last access): 26.12.2008 10:20:26
Date (last write): 24.10.2008 20:59:54
Filesize: 169216
Attributes: archive
MD5: A0AA157037FFB7E15EB705F4B56DA24B
CRC32: 823D70E7
Version: 3.0.684.0


--- Browser helper object list ---

>{22d6f312-b0f6-11d0-94ab-0080c74c7e95} (Microsoft Windows Media Player)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Microsoft Windows Media Player
CLSID name:
Path: C:\Windows\system32\
Long name: unregmp2.exe /ShowWMP
MD5: 5723CCBD541E553B6CA337A296DA979F
Filesize: 310784

{44BBA840-CC51-11CF-AAFA-00AA00B6015C} (Microsoft Windows Mail 7)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: Microsoft Windows Mail 7
CLSID name:
Path: "%ProgramFiles%\Windows Mail\
Long name: WinMail.exe" OCInstallUserConfigOE
MD5: D41D8CD98F00B204E9800998ECF8427E

{FEBEF00C-046D-438D-8A88-BF94A6C9E703} (.NET Framework)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\
BHO name: .NET Framework
CLSID name:
MD5: D41D8CD98F00B204E9800998ECF8427E

{F02C1A0D-BE21-4350-88B0-7367FC96EF3C} (Computers and Devices)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Computers and Devices
CLSID name: Computers and Devices
Path: %systemroot%\system32\
Long name: NetworkExplorer.dll
MD5: E3C52CD56F4CB2D9736C75EFAA62A07F
Filesize: 2226688

{E7DE9B1A-7533-4556-9484-B26FB486475E} (Network Map)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name:
CLSID name: Network Map
Path: %SystemRoot%\system32\
Long name: shdocvw.dll
MD5: 86B89709BDFC7A59D566590CC30CDBB1
Filesize: 1067520

{4A1E5ACD-A108-4100-9E26-D2FAFA1BA486} (IGD Property Sheet Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IGD Property Sheet Handler
CLSID name: IGD Property Page
Path: %SystemRoot%\System32\
Long name: icsigd.dll
MD5: BBC1428E855C94BB22D2F09742606A1D
Filesize: 195584

{92dbad9f-5025-49b0-9078-2d78f935e341} (Microsoft Windows Mail Html Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Mail Html Preview Handler
CLSID name: CLSID_PreviewMime
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{b9815375-5d7f-4ce2-9245-c9d4da436930} (Microsoft Windows Mail Html Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Mail Html Preview Handler
CLSID name: CLSID_PreviewEmail
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{f8b8412b-dea3-4130-b36c-5e8be73106ac} (Microsoft Windows Mail Html Preview Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Windows Mail Html Preview Handler
CLSID name: CLSID_PreviewHtml
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{5FA29220-36A1-40f9-89C6-F4B384B7642E} (Shell Message Handler)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Shell Message Handler
CLSID name: Shell Message Handler
Path: %SystemRoot%\system32\
Long name: inetcomm.dll
MD5: D9D2BD831C93EAA7CE7BEC712ED2081E
Filesize: 738304

{E7E4BC40-E76A-11CE-A9BB-00AA004AE837} (Shell DocObject Viewer)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Shell DocObject Viewer
CLSID name: Shell DocObject Viewer
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{BC476F4C-D9D7-4100-8D4E-E043F6DEC409} (Microsoft Browser Architecture)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Browser Architecture
CLSID name: Microsoft Browser Architecture
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FBF23B40-E3F0-101B-8488-00AA003E56F8} (InternetShortcut)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: InternetShortcut
CLSID name: Internet Shortcut
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{3C374A40-BAE4-11CF-BF7D-00AA006946EE} (Microsoft Url History Service)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Url History Service
CLSID name: Microsoft Url History Service
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FF393560-C2A7-11CF-BFF4-444553540000} (History)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: History
CLSID name: History
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{7BD29E00-76C1-11CF-9DD0-00A0C9034933} (Temporary Internet Files)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Temporary Internet Files
CLSID name: Temporary Internet Files
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{7BD29E01-76C1-11CF-9DD0-00A0C9034933} (Temporary Internet Files)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Temporary Internet Files
CLSID name: Temporary Internet Files
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{CFBFAE00-17A6-11D0-99CB-00C04FD64497} (Microsoft Url Search Hook)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: Microsoft Url Search Hook
CLSID name: Microsoft Url Search Hook
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{3DC7A020-0ACD-11CF-A9BB-00AA004AE837} (The Internet)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: The Internet
CLSID name: The Internet
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{73CFD649-CD48-4fd8-A272-2070EA56526B} (IE BandProxy)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE BandProxy
CLSID name: IE BandProxy
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{07C45BB1-4A8C-4642-A1F5-237E7215FF66} (IE Microsoft BrowserBand)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft BrowserBand
CLSID name: IE Microsoft BrowserBand
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{43886CD5-6529-41c4-A707-7B3C92C05E68} (IE Navigation Bar)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Navigation Bar
CLSID name: IE Navigation Bar
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{30D02401-6A81-11d0-8274-00C04FD5AE38} (IE Search Band)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Search Band
CLSID name: IE Search Band
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{F83DAC1C-9BB9-4f2b-B619-09819DA81B0E} (IE Registry Tree Options Utility)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Registry Tree Options Utility
CLSID name: IE Registry Tree Options Utility
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{3028902F-6374-48b2-8DC6-9725E775B926} (IE AutoComplete)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE AutoComplete
CLSID name: IE AutoComplete
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8} (IE MRU AutoComplete List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE MRU AutoComplete List
CLSID name: IE MRU AutoComplete List
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FDE7673D-2E19-4145-8376-BBD58C4BC7BA} (IE Custom MRU AutoCompleted List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Custom MRU AutoCompleted List
CLSID name: IE Custom MRU AutoCompleted List
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{6038EF75-ABFC-4e59-AB6F-12D397F6568D} (IE Microsoft History AutoComplete List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft History AutoComplete List
CLSID name: IE Microsoft History AutoComplete List
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{9D958C62-3954-4b44-8FAB-C4670C1DB4C2} (IE Microsoft Shell Folder AutoComplete List)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft Shell Folder AutoComplete List
CLSID name: IE Microsoft Shell Folder AutoComplete List
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{B31C5FAE-961F-415b-BAF0-E697A5178B94} (IE Microsoft Multiple AutoComplete List Container)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Microsoft Multiple AutoComplete List Container
CLSID name: IE Microsoft Multiple AutoComplete List Container
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{E6EE9AAC-F76B-4947-8260-A9F136138E11} (IE Shell Band Site Menu)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Shell Band Site Menu
CLSID name: IE Shell Band Site Menu
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A} (IE Shell Rebar BandSite)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Shell Rebar BandSite
CLSID name: IE Shell Rebar BandSite
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} (IE User Assist)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE User Assist
CLSID name: IE User Assist
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{4B78D326-D922-44f9-AF2A-07805C2A3560} (IE Menu Band)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Menu Band
CLSID name: IE Menu Band
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{6CF48EF8-44CD-45d2-8832-A16EA016311B} (IE IShellFolderBand)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE IShellFolderBand
CLSID name:
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{F2CF5485-4E02-4f68-819C-B92DE9277049} (&Links)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: &Links
CLSID name: &Links
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148

{1C1EDB47-CE22-4bbb-B608-77B48F83C823} (IE Fade Task)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
BHO name: IE Fade Task
CLSID name: IE Fade Task
Path: C:\Windows\system32\
Long name: ieframe.dll
Short name:
Date (created): 10.1.2009 20:57:28
Date (last access): 10.1.2009 20:57:28
Date (last write): 2.10.2008 4:49:16
Filesize: 6068736
Attributes: archive
MD5: EB1D1677749CA2BC5B24D0F162EA7A78
CRC32: 178C804B
Version: 7.0.6001.18148


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 93 hostů