spyware

  • From: "mike babcock" <mouki@xxxxxxxxxxxxxx>
  • To: <jfw@xxxxxxxxxxxxx>
  • Date: Wed, 28 Dec 2005 20:34:17 -0800

I dont know what this means, I doenloaded spybot S&D. I got this file back:
What does all this mean?
--- Search result list ---
Congratulations!: No immediate threats were found. ()
  


--- Spybot - Search & Destroy version: 1.4  (build: 20050523) ---

2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2005-12-28 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2005-05-31 advcheck.dll (1.0.2.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2005-05-31 Tools.dll (2.0.0.2)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2005-12-23 Includes\Cookies.sbi
2005-12-23 Includes\Dialer.sbi
2005-12-23 Includes\Hijackers.sbi
2005-12-23 Includes\Keyloggers.sbi
2005-12-23 Includes\Malware.sbi
2005-12-23 Includes\PUPS.sbi
2005-12-23 Includes\Revision.sbi
2005-12-23 Includes\Security.sbi
2005-12-23 Includes\Spybots.sbi
2005-02-17 Includes\Tracks.uti
2005-12-23 Includes\Trojans.sbi



--- System information ---
Windows XP (Build: 2600) 


--- Startup entries list ---
Located: HK_LM:Run, ATIPTA
command: C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
   file: C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
   size: 335872
    MD5: ee915a9b3b8fcee769d326e4602263a3

Located: HK_LM:Run, Explorer32
command: C:\windows\System32\efsdfgxg.exe
   file: C:\windows\System32\efsdfgxg.exe
   size: 2384
    MD5: b4ed92dff4eeb2398c7bf00b8a7f8bb8

Located: HK_LM:Run, PayTime
command: C:\windows\System32\paytime.exe
   file: C:\windows\System32\paytime.exe
   size: 7188
    MD5: 7094da01c97dfd220bf3d1cdfb7719ff

Located: HK_LM:Run, SynTPEnh
command: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
   file: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
   size: 688218
    MD5: a0ac3841dc595b5d86ab9e5016a0e36a

Located: HK_LM:Run, SynTPLpr
command: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
   file: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
   size: 98394
    MD5: ab349998e551de1c0dcc5ad63ce41d31

Located: HK_LM:Run, SystemLoader
command: C:\windows\sysldr32.exe
   file: C:\windows\sysldr32.exe
   size: 3097
    MD5: 035c4cc69d72df46126dce27381857f5

Located: HK_LM:Run, WhenUSearch
command: "C:\Program Files\WhenUSearch\Search.exe"
   file: C:\Program Files\WhenUSearch\Search.exe
   size: 301128
    MD5: 38360e41e2ef11c4c5061fa1baedf484

Located: HK_LM:Run, WhenUSearchWHSE
command: "C:\Program Files\WhenUSearch\whse.exe"
   file: C:\Program Files\WhenUSearch\whse.exe
   size: 177736
    MD5: d7dfdf3206325bd21981aeec792e6eaf

Located: HK_CU:Run, MSMSGS
command: "C:\Program Files\Messenger\msmsgs.exe" /background
   file: C:\Program Files\Messenger\msmsgs.exe
   size: 1077277
    MD5: 10a98fa310d1b6664f999378efd031ba

Located: HK_CU:Run, PayTime
command: C:\windows\System32\paytime.exe
   file: C:\windows\System32\paytime.exe
   size: 7188
    MD5: 7094da01c97dfd220bf3d1cdfb7719ff

Located: HK_CU:Run, SpySheriff
command: C:\Program Files\SpySheriff\SpySheriff.exe
   file: C:\Program Files\SpySheriff\SpySheriff.exe
   size: 463872
    MD5: cb66106f7f10daa0eb4bf531c58b95c1

Located: HK_CU:Run, Windows installer
command: C:\winstall.exe
   file: C:\winstall.exe
   size: 32256
    MD5: 52814b5de01f7db543c62497ba4acbc4

Located: WinLogon, crypt32chain
command: crypt32.dll
   file: crypt32.dll

Located: WinLogon, cryptnet
command: cryptnet.dll
   file: cryptnet.dll

Located: WinLogon, cscdll
command: cscdll.dll
   file: cscdll.dll

Located: WinLogon, ScCertProp
command: wlnotify.dll
   file: wlnotify.dll

Located: WinLogon, Schedule
command: wlnotify.dll
   file: wlnotify.dll

Located: WinLogon, sclgntfy
command: sclgntfy.dll
   file: sclgntfy.dll

Located: WinLogon, SensLogn
command: WlNotify.dll
   file: WlNotify.dll

Located: WinLogon, termsrv
command: wlnotify.dll
   file: wlnotify.dll

Located: WinLogon, wlballoon
command: wlnotify.dll
   file: wlnotify.dll



--- Browser helper object list ---
{BA2325ED-F9EB-4830-8FCE-0BC35B16969B} (WhenUSearch Helper)
          BHO name: 
        CLSID name: WhenUSearch Helper
              Path: C:\Program Files\WhenUSearch\
         Long name:         search.dll
        Short name:                   
    Date (created): 12/28/2005 5:51:22 PM
Date (last access): 12/28/2005 7:55:30 PM
 Date (last write): 11/12/2004 2:03:00 PM
          Filesize:             242760
        Attributes:           archive 
               MD5: 3B1B325628A62EC8C1EAEBED602AEAF8
             CRC32:           15F7C61E
           Version:           2.2.3.14



--- ActiveX list ---


--- Process list ---
PID:    0 (   0) [System]
PID:  432 (   4) \SystemRoot\System32\smss.exe
PID:  492 ( 432) \??\C:\windows\system32\csrss.exe
PID:  524 ( 432) \??\C:\windows\system32\winlogon.exe
PID:  568 ( 524) C:\windows\system32\services.exe
 size: 101376
  MD5: E3DF4A0252D287C44606EE55355E1623
PID:  580 ( 524) C:\windows\system32\lsass.exe
 size: 11776
  MD5: 8A590EA109B5E0C7629E022F8A6B17C5
PID:  732 ( 568) C:\windows\System32\Ati2evxx.exe
 size: 397312
  MD5: A8464CA51C598101A3FEF341F4F0B6E0
PID:  772 ( 568) C:\windows\system32\svchost.exe
 size: 12800
  MD5: 0F7D9C87B0CE1FA520473119752C6F79
PID:  844 ( 568) C:\windows\System32\svchost.exe
 size: 12800
  MD5: 0F7D9C87B0CE1FA520473119752C6F79
PID:  992 ( 568) C:\windows\System32\svchost.exe
 size: 12800
  MD5: 0F7D9C87B0CE1FA520473119752C6F79
PID: 1068 ( 568) C:\windows\System32\svchost.exe
 size: 12800
  MD5: 0F7D9C87B0CE1FA520473119752C6F79
PID: 1224 (1200) C:\windows\Explorer.EXE
 size: 1000960
  MD5: 5A26FC6010886D25B3E412493DD95ED8
PID: 1296 ( 568) C:\windows\system32\spoolsv.exe
 size: 51200
  MD5: 9B4155BA58192D4073082B8FC5D42612
PID: 1396 (1224) C:\Program Files\ATI Technologies\ATI Control 
Panel\atiptaxx.exe
 size: 335872
  MD5: EE915A9B3B8FCEE769D326E4602263A3
PID: 1404 (1224) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
 size: 98394
  MD5: AB349998E551DE1C0DCC5AD63CE41D31
PID: 1412 (1224) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
 size: 688218
  MD5: A0AC3841DC595B5D86AB9E5016A0E36A
PID: 1448 (1224) C:\Program Files\WhenUSearch\Search.exe
 size: 301128
  MD5: 38360E41E2EF11C4C5061FA1BAEDF484
PID: 1472 (1224) C:\Program Files\WhenUSearch\whse.exe
 size: 177736
  MD5: D7DFDF3206325BD21981AEEC792E6EAF
PID: 1484 (1224) C:\WINDOWS\System32\paytime.exe
 size: 7188
  MD5: 7094DA01C97DFD220BF3D1CDFB7719FF
PID: 1492 (1224) C:\WINDOWS\sysldr32.exe
 size: 3097
  MD5: 035C4CC69D72DF46126DCE27381857F5
PID: 1500 (1224) C:\WINDOWS\System32\efsdfgxg.exe
 size: 2384
  MD5: B4ED92DFF4EEB2398C7BF00B8A7F8BB8
PID: 1508 (1224) C:\Program Files\Messenger\msmsgs.exe
 size: 1077277
  MD5: 10A98FA310D1B6664F999378EFD031BA
PID: 1564 (1224) C:\winstall.exe
 size: 32256
  MD5: 52814B5DE01F7DB543C62497BA4ACBC4
PID: 1572 (1224) C:\windows\System32\paytime.exe
 size: 7188
  MD5: 7094DA01C97DFD220BF3D1CDFB7719FF
PID: 1808 ( 568) C:\windows\System32\alg.exe
 size: 40960
  MD5: C23EB4661BF60C77280F8A3620D43B8E
PID: 1836 ( 568) C:\Program Files\Freedom Scientific\JAWS\6.20\jfw.exe
 size: 3461184
  MD5: F1BE8A6F3442AB7867BFE7FAEEF3E3F4
PID: 1912 ( 568) C:\windows\System32\wltrysvc.exe
 size: 45056
  MD5: 5C6EE692117D4085BDE59F372901DC76
PID: 1964 (1912) C:\windows\System32\bcmwltry.exe
 size: 499712
  MD5: B99ECA1B6E0086BB979CCD9BC9891019
PID:  888 (1836) C:\Program Files\Freedom Scientific\JAWS\6.20\JHOOKLDR.EXE
 size: 40960
  MD5: C0521A2D505E680F7EEB56C56A46C20A
PID: 3100 (1564) C:\Program Files\SpySheriff\SpySheriff.exe
 size: 463872
  MD5: CB66106F7F10DAA0EB4BF531C58B95C1
PID: 3340 (3244) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
 size: 4393096
  MD5: 09CA174A605B480318731E691DC98539
PID: 2460 (1492) C:\windows\System32\svchost.exe
 size: 12800
  MD5: 0F7D9C87B0CE1FA520473119752C6F79
PID:    4 (   0) System


--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 12/28/2005 8:32:29 PM

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
  c:\secure32.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
  C:\windows\System32\search.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
  C:\windows\System32\search.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
  c:\secure32.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
  c:\secure32.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\First Home Page
  
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&ar=runonce&pver={SUB_PVER}&plcid={SUB_CLSID}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
  c:\secure32.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
  C:\windows\System32\search.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
  c:\secure32.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
  c:\secure32.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
  C:\windows\System32\search.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
  http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
  http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


--- Winsock Layered Service Provider list ---


--- Uninstall list ---
  (AddressBook)

ATI - Software Uninstall Utility 6.14.10.1008 (All ATI Software)
   uninstall cmd: C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe

ATI Display Driver 8.003.3-040515a-016016C (ATI Display Driver)
   uninstall cmd: rundll32 
C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 
-force_restart -flags:0x2010001 -inf_class:DISPLAY -clean

  (Branding)

Broadcom 802.11 Control Panel  (Broadcom 802.11 Application)
   uninstall cmd: C:\WINDOWS\system32\BCMWLU00.exe verbose 
/rootkey=Software\Broadcom\802.11_App\UninstallInfo

Broadcom 802.11 Driver  (Broadcom 802.11b Network Adapter)
   uninstall cmd: C:\WINDOWS\system32\BCMWLU00.exe verbose 
/rootkey=Software\Broadcom\802.11\UninstallInfo

  (Connection Manager)

  (DirectAnimation)

  (DirectDrawEx)

  (Fontcore)

  (ICW)

  (IE40)

  (IE4Data)

  (IE5BAKEX)

  (IEData)

  (Microsoft NetShow Player 2.0)

  (MobileOptionPack)

  (MPlayer2)

My Mix  (My Mix)
 version (major): 1
install location: C:\Program Files\Simple Star\My Mix\My Mix.exe
   uninstall cmd: C:\WINDOWS\unvise32.exe C:\Program Files\Simple Star\My 
Mix\data\uninstal.log
       publisher: Simple Star, Inc.

  (NetMeeting)

OtsDJ Demo 1.00.184  (OtsDJ Demo)
   uninstall cmd: "C:\WINDOWS\OTS_UI.EXE" "C:\OtsLabs\OTSDJ.osi"

  (OutlookExpress)

  (PCHealth)
   uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 
132 C:\WINDOWS\INF\PCHealth.inf

SC Audio DJ Mixer 1.2.0.1  (SC Audio DJ Mixer_is1)
install location: C:\Program Files\SoftwareClub.ws\SC Mixer\
   uninstall cmd: "C:\Program Files\SoftwareClub.ws\SC Mixer\unins000.exe"
       publisher: Software Club
       help link: http://www.SoftwareClub.ws

  (SchedulingAgent)

Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
install location: C:\Program Files\Spybot - Search & Destroy\
   uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
       publisher: Safer Networking Limited

SpySheriff  (SpySheriff)
   uninstall cmd: C:\Program Files\SpySheriff\Uninstall.exe
       help link: http://www.spy-sheriff.com/

Synaptics Pointing Device Driver 7.12.7.0 (SynTPDeinstKey)
   uninstall cmd: rundll32.exe "C:\Program 
Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall

UControl Scan and Remove  (UControl Scan and Remove)
   uninstall cmd: C:\PROGRA~1\COMMON~1\UControl\UCONTR~1\UNWISE.EXE 
C:\PROGRA~1\COMMON~1\UControl\UCONTR~1\INSTALL.LOG

SearchBar 2.23 (WhenUSearch)
   uninstall cmd: C:\Program Files\WhenUSearch\Uninst.exe /tWHSE
       publisher: WhenU.com
       help link: http://www.whenusearch.com/about.html?ui=sb.ps

WinMX  (WinMX)
   uninstall cmd: C:\Program Files\WinMX\uninstall.exe

JAWS 6.20  ({068978CC-8F9A-4E0C-A3FA-66C8C4801D7B})
   uninstall cmd: RunDll32 
C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup 
"C:\Program Files\InstallShield Installation 
Information\{068978CC-8F9A-4E0C-A3FA-66C8C4801D7B}\Setup.exe" 

ATI Control Panel 6.14.10.5102 ({0BEDBD4E-2D34-47B5-9973-57E62B29307C})
   uninstall cmd: RunDll32 
C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup 
"C:\Program Files\InstallShield Installation 
Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe" 

WebFldrs XP 9.50.5318 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227})
         version: 154277062
 version (major): 9
 version (minor): 50
  estimated size: 2524
    install date: 20051228
  install source: C:\WINDOWS\System32\
       publisher: Microsoft Corporation
       help link: http://www.microsoft.com/windows

Sentinel System Driver 5.39.2 ({791CAF6C-90A3-11D4-8306-00D0B72E1DB9})
         version: 86441986
 version (major): 5
 version (minor): 39
  estimated size: 618
    install date: 20051228
  install source: C:\DOCUME~1\michael\LOCALS~1\Temp\_is57\
   uninstall cmd: MsiExec.exe /I{791CAF6C-90A3-11D4-8306-00D0B72E1DB9}
       publisher: Rainbow Technologies
       help link: http://www.rainbow.com
  help telephone: 1-800-852-8569
          readme: C:\Program Files\Rainbow Technologies\Sentinel System 
Driver\readme.txt



--- System Services ---
Service (registry key): Abiosdsk
         Start: 4
          Type: 1
 Error Control: 0

Service (registry key): abp480n5
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): ACPI
  Display name: Microsoft ACPI Driver
    Image path: System32\DRIVERS\ACPI.sys
    Image size: 179200
     Image MD5: 45E0D94158CA0EC71FF12DBB81B39ED3
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): ACPIEC
  Display name: Microsoft Embedded Controller Driver
    Image path: System32\DRIVERS\ACPIEC.sys
    Image size: 11648
     Image MD5: 9859C0F6936E723E4892D7141B1327D5
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): adpu160m
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): aec
  Display name: Microsoft Kernel Acoustic Echo Canceller
    Image path: system32\drivers\aec.sys
    Image size: 122472
     Image MD5: B45A744CA0A15A59D8B0307CE9741E92
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): AFD
  Display name: AFD Networking Support Environment
    Image path: \SystemRoot\System32\drivers\afd.sys
         Start: 2
          Type: 1
 Error Control: 1

Service (registry key): Aha154x
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): aic78u2
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): aic78xx
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Alerter
  Display name: Alerter
   Description: Notifies selected users and computers of administrative alerts. 
If the service is stopped, programs that use administrative alerts will not 
receive them. If this service is disabled, any services that explicitly depend 
on it will fail to start.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\svchost.exe -k LocalService
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation

Service (registry key): ALG
  Display name: Application Layer Gateway Service
   Description: Provides support for 3rd party protocol plug-ins for Internet 
Connection Sharing and the Internet Connection Firewall
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\alg.exe
    Image size: 40960
     Image MD5: C23EB4661BF60C77280F8A3620D43B8E
         Start: 3
          Type: 16
 Error Control: 1

Service (registry key): aliadwdm
  Display name: ALi Audio Accelerator WDM driver
    Image path: system32\drivers\ac97ali.sys
    Image size: 230912
     Image MD5: B318E910EFB9ECE065A0EC22E268C4FF
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): AliIde
    Image path: System32\DRIVERS\aliide.sys
    Image size: 5248
     Image MD5: 1140AB9938809700B46BB88E46D72A96
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): amsint
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): AppMgmt
  Display name: Application Management
   Description: Provides software installation services such as Assign, 
Publish, and Remove.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1

Service (registry key): asc
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): asc3350p
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): asc3550
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): AsyncMac
  Display name: RAS Asynchronous Media Driver
   Description: RAS Asynchronous Media Driver
    Image path: System32\DRIVERS\asyncmac.sys
    Image size: 13568
     Image MD5: 03F403B07A884FC2AA54A0916C410931
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): atapi
  Display name: Standard IDE/ESDI Hard Disk Controller
    Image path: System32\DRIVERS\atapi.sys
    Image size: 86656
     Image MD5: A64013E98426E1877CB653685C5C0009
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): Atdisk
         Start: 4
          Type: 1
 Error Control: 0

Service (registry key): Ati HotKey Poller
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\Ati2evxx.exe
    Image size: 397312
     Image MD5: A8464CA51C598101A3FEF341F4F0B6E0
         Start: 2
          Type: 272
 Error Control: 1

Service (registry key): ati2mtag
    Image path: System32\DRIVERS\ati2mtag.sys
    Image size: 701952
     Image MD5: 83F24E252908E59C4A7EF203BF7F4C02
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): Atmarpc
  Display name: ATM ARP Client Protocol
   Description: ATM ARP Client Protocol
    Image path: System32\DRIVERS\atmarpc.sys
    Image size: 57216
     Image MD5: 8D735CA1CBDB0081B0E3B9FF0EB222D0
         Start: 3
          Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): AudioSrv
  Display name: Windows Audio
   Description: Manages audio devices for Windows-based programs. If this 
service is stopped, audio devices and effects will not function properly. If 
this service is disabled, any services that explicitly depend on it will fail 
to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: PlugPlay,RpcSs

Service (registry key): audstub
  Display name: Audio Stub Driver
    Image path: System32\DRIVERS\audstub.sys
    Image size: 3072
     Image MD5: D9F724AA26C010A217C97606B160ED68
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): BattC
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): Beep
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): BITS
  Display name: Background Intelligent Transfer Service
   Description: Uses idle network bandwidth to transfer data.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation,RpcSs

Service (registry key): Browser
  Display name: Computer Browser
   Description: Maintains an updated list of computers on the network and 
supplies this list to computers designated as browsers. If this service is 
stopped, this list will not be updated or maintained. If this service is 
disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation,LanmanServer

Service (registry key): cbidf2k
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): cd20xrnt
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Cdaudio
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): Cdfs
         Start: 4
          Type: 2
 Error Control: 1
 Depends On group: "SCSI CDROM Class"

Service (registry key): Cdrom
  Display name: CD-ROM Driver
    Image path: System32\DRIVERS\cdrom.sys
    Image size: 47488
     Image MD5: CB762E814F602229A574F4D78D3D6A30
         Start: 1
          Type: 1
 Error Control: 1
 Depends On group: "SCSI miniport"

Service (registry key): Changer
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): cisvc
  Display name: Indexing Service
   Description: Indexes contents and properties of files on local and remote 
computers; provides rapid access to files through flexible querying language.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\cisvc.exe
    Image size: 5120
     Image MD5: 325F1D50AFD0D6CE830938262AC2AE14
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): ClipSrv
  Display name: ClipBook
   Description: Enables ClipBook Viewer to store information and share it with 
remote computers. If the service is stopped, ClipBook Viewer will not be able 
to share information with remote computers. If this service is disabled, any 
services that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\clipsrv.exe
    Image size: 30720
     Image MD5: 08EBC742345AB7EF2EC29BC92D6D33DD
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: NetDDE

Service (registry key): CmBatt
  Display name: Microsoft ACPI Control Method Battery Driver
    Image path: System32\DRIVERS\CmBatt.sys
    Image size: 13056
     Image MD5: CDB13B73628E9F94AE723BEB94130F06
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): CmdIde
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Compbatt
  Display name: Microsoft Composite Battery Driver
    Image path: System32\DRIVERS\compbatt.sys
    Image size: 9344
     Image MD5: DF1B1A24BF52D0EBC01ED4ECE8979F50
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): COMSysApp
  Display name: COM+ System Application
   Description: Manages the configuration and tracking of Component Object 
Model (COM)+-based components. If the service is stopped, most COM+-based 
components will not function properly. If this service is disabled, any 
services that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\dllhost.exe 
/Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
    Image size: 4608
     Image MD5: 6AE95FAF782E6F6AC6E4B3ACBF3D1573
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: rpcss

Service (registry key): ContentFilter
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): ContentIndex
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): Cpqarray
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): CryptSvc
  Display name: Cryptographic Services
   Description: Provides three management services: Catalog Database Service, 
which confirms the signatures of Windows files; Protected Root Service, which 
adds and removes Trusted Root Certification Authority certificates from this 
computer; and Key Service, which helps enroll this computer for certificates. 
If this service is stopped, these management services will not function 
properly. If this service is disabled, any services that explicitly depend on 
it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): dac2w2k
         Start: 4
          Type: 1
 Error Control: 0

Service (registry key): dac960nt
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Dhcp
  Display name: DHCP Client
   Description: Manages network configuration by registering and updating IP 
addresses and DNS names.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: Tcpip,Afd,NetBT

Service (registry key): Disk
  Display name: Disk Driver
    Image path: System32\DRIVERS\disk.sys
    Image size: 33664
     Image MD5: 43A10CD19D648E57ED039A6CAA667A56
         Start: 0
          Type: 1
 Error Control: 1
 Depends On group: "SCSI miniport"

Service (registry key): dmadmin
  Display name: Logical Disk Manager Administrative Service
   Description: Configures hard disk drives and volumes. The service only runs 
for configuration processes and then stops.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\dmadmin.exe /com
    Image size: 204800
     Image MD5: 67648497FDC9A9235A2642950E326756
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RpcSs,PlugPlay,DmServer

Service (registry key): dmboot
    Image path: System32\drivers\dmboot.sys
    Image size: 780928
     Image MD5: E18132D39407AADCA6B1D19ADF408A8A
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): dmio
    Image path: System32\drivers\dmio.sys
    Image size: 146304
     Image MD5: ACA44E9A8E2FF7C833664263C8478629
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): dmload
    Image path: System32\drivers\dmload.sys
    Image size: 5888
     Image MD5: E9317282A63CA4D188C0DF5E09C6AC5F
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): dmserver
  Display name: Logical Disk Manager
   Description: Detects and monitors new hard disk drives and sends disk volume 
information to Logical Disk Manager Administrative Service for configuration. 
If this service is stopped, dynamic disk status and configuration information 
may become out of date. If this service is disabled, any services that 
explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RpcSs,PlugPlay

Service (registry key): DMusic
  Display name: Microsoft Kernel DLS Syntheiszer
    Image path: system32\drivers\DMusic.sys
    Image size: 50048
     Image MD5: EF05974D47D56FA8387F170F05BAE5E7
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Dnscache
  Display name: DNS Client
   Description: Resolves and caches Domain Name System (DNS) names for this 
computer. If this service is stopped, this computer will not be able to resolve 
DNS names and locate Active Directory domain controllers. If this service is 
disabled, any services that explicitly depend on it will fail to start.
   Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): dpti2o
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): drmkaud
  Display name: Microsoft Kernel DRM Audio Descrambler
    Image path: system32\drivers\drmkaud.sys
    Image size: 2816
     Image MD5: AA94E0CBD79DB63100D0EAE061EB69BC
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): ERSvc
  Display name: Error Reporting Service
   Description: Allows error reporting for services and applictions running in 
non-standard environments.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 0
 Depends On services: RpcSs

Service (registry key): Eventlog
  Display name: Event Log
   Description: Enables event log messages issued by Windows-based programs and 
components to be viewed in Event Viewer. This service cannot be stopped.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 101376
     Image MD5: E3DF4A0252D287C44606EE55355E1623
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): EventSystem
  Display name: COM+ Event System
   Description: Supports System Event Notification Service (SENS), which 
provides automatic distribution of events to subscribing Component Object Model 
(COM) components. If the service is stopped, SENS will close and will not be 
able to provide logon and logoff notifications. If this service is disabled, 
any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): FA312
  Display name: NETGEAR FA330/FA312/FA311 Fast Ethernet Adapter Driver
    Image path: System32\DRIVERS\FA312nd5.sys
    Image size: 16074
     Image MD5: AA855FB8A866281AACB393C1FEAB91AE
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Fastfat
         Start: 4
          Type: 2
 Error Control: 1

Service (registry key): FastUserSwitchingCompatibility
  Display name: Fast User Switching Compatibility
   Description: Provides management for applications that require assistance in 
a multiple user environment.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: TermService

Service (registry key): Fdc
  Display name: Floppy Disk Controller Driver
    Image path: System32\DRIVERS\fdc.sys
    Image size: 26240
     Image MD5: 19C5C7EAC0190A42522290BF002F64EA
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Fips
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): Flpydisk
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): Fs_Rec
         Start: 1
          Type: 8
 Error Control: 0

Service (registry key): Ftdisk
  Display name: Volume Manager Driver
    Image path: System32\DRIVERS\ftdisk.sys
    Image size: 125056
     Image MD5: 6AC26732762483366C3969C9E4D2259D
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): Gpc
  Display name: Generic Packet Classifier
   Description: Generic Packet Classifier
    Image path: System32\DRIVERS\msgpc.sys
    Image size: 33792
     Image MD5: 13591E0A02E85DE2A388F3EC4BD206DF
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): helpsvc
  Display name: Help and Support
   Description: Enables Help and Support Center to run on this computer. If 
this service is stopped, Help and Support Center will be unavailable. If this 
service is disabled, any services that explicitly depend on it will fail to 
start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): HidServ
  Display name: Human Interface Device Access
   Description: Enables generic input access to Human Interface Devices (HID), 
which activates and maintains the use of predefined hot buttons on keyboards, 
remote controls, and other multimedia devices. If this service is stopped, hot 
buttons controlled by this service will no longer function. If this service is 
disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 4
          Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): hpn
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): hpt3xx
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): i2omgmt
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): i2omp
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): i386p
  Display name: i386p
    Image path: \??\C:\WINDOWS\System32\drivers\i386p.sys
    Image size: 9600
     Image MD5: 57E8B996713D25C4F2F673FA413696C3
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): i8042prt
  Display name: i8042 Keyboard and PS/2 Mouse Port Driver
    Image path: System32\DRIVERS\i8042prt.sys
    Image size: 50944
     Image MD5: 54AE656490B33F84B4417194AA127B25
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): Imapi
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): ImapiService
  Display name: IMAPI CD-Burning COM Service
   Description: Manages CD recording using Image Mastering Applications 
Programming Interface (IMAPI). If this service is stopped, this computer will 
be unable to record CDs. If this service is disabled, any services that 
explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\imapi.exe
    Image size: 118784
     Image MD5: F6069827B0A39DC75D251CFB37C4E9C9
         Start: 3
          Type: 16
 Error Control: 1

Service (registry key): inetaccs
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): ini910u
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Inport
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): IntelIde
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): IpFilterDriver
  Display name: IP Traffic Filter Driver
   Description: IP Traffic Filter Driver
    Image path: System32\DRIVERS\ipfltdrv.sys
    Image size: 32896
     Image MD5: 731F22BA402EE4B62748ADAF6363C182
         Start: 3
          Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): IpInIp
  Display name: IP in IP Tunnel Driver
   Description: IP in IP Tunnel Driver
    Image path: System32\DRIVERS\ipinip.sys
    Image size: 19584
     Image MD5: F56DD863BA732A4E8EE58D486C31250F
         Start: 3
          Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): IpNat
  Display name: IP Network Address Translator
   Description: IP Network Address Translator
    Image path: System32\DRIVERS\ipnat.sys
    Image size: 76288
     Image MD5: 561E2AEDE82CAE972D572C60D4E090BF
         Start: 3
          Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): IPSec
  Display name: IPSEC driver
   Description: IPSEC driver
    Image path: System32\DRIVERS\ipsec.sys
    Image size: 56064
     Image MD5: 87AD207BC4437F215508024559D72F30
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): IRENUM
  Display name: IR Enumerator Service
    Image path: System32\DRIVERS\irenum.sys
    Image size: 10496
     Image MD5: B43201394646B7E98C89056EDDA686B5
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): ISAPISearch
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): isapnp
  Display name: PnP ISA/EISA Bus Driver
    Image path: System32\DRIVERS\isapnp.sys
    Image size: 35840
     Image MD5: E504F706CCB699C2596E9A3DA1596E87
         Start: 0
          Type: 1
 Error Control: 3

Service (registry key): JFWService
  Display name: JFWService
   Object name: LocalSystem
    Image path: C:\Program Files\Freedom Scientific\JAWS\6.20\jfw.exe
    Image size: 3461184
     Image MD5: F1BE8A6F3442AB7867BFE7FAEEF3E3F4
         Start: 2
          Type: 272
 Error Control: 1

Service (registry key): Kbdclass
  Display name: Keyboard Class Driver
    Image path: System32\DRIVERS\kbdclass.sys
    Image size: 23424
     Image MD5: 9C30CD464D87102497FD7C32910E6253
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): kmixer
  Display name: Microsoft Kernel Wave Audio Mixer
    Image path: system32\drivers\kmixer.sys
    Image size: 159232
     Image MD5: ECD42891ECC1CA80FCB849511D3DF186
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): KSecDD
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): lanmanserver
  Display name: Server
   Description: Supports file, print, and named-pipe sharing over the network 
for this computer. If this service is stopped, these functions will be 
unavailable. If this service is disabled, any services that explicitly depend 
on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): lanmanworkstation
  Display name: Workstation
   Description: Creates and maintains client network connections to remote 
servers. If this service is stopped, these connections will be unavailable. If 
this service is disabled, any services that explicitly depend on it will fail 
to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): lbrtfdc
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): ldap
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): LicenseService
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): LmHosts
  Display name: TCP/IP NetBIOS Helper
   Description: Enables support for NetBIOS over TCP/IP (NetBT) service and 
NetBIOS name resolution.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\svchost.exe -k LocalService
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: NetBT,Afd

Service (registry key): MDC8021X
  Display name: AEGIS Protocol (IEEE 802.1x) v2.3.0.0
   Description: AEGIS Protocol (IEEE 802.1x) v2.3.0.0
    Image path: System32\DRIVERS\mdc8021x.sys
    Image size: 15584
     Image MD5: 73C0D9BAA649C3DF94761474E8C5F8C9
         Start: 2
          Type: 1
 Error Control: 1

Service (registry key): Messenger
  Display name: Messenger
   Description: Transmits net send and Alerter service messages between clients 
and servers. This service is not related to Windows Messenger. If this service 
is stopped, Alerter messages will not be transmitted. If this service is 
disabled, any services that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS

Service (registry key): mnmdd
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): mnmsrvc
  Display name: NetMeeting Remote Desktop Sharing
   Description: Enables an authorized user to access this computer remotely by 
using NetMeeting over a corporate intranet. If this service is stopped, remote 
desktop sharing will be unavailable. If this service is disabled, any services 
that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\mnmsrvc.exe
    Image size: 32768
     Image MD5: 743AEA1D5DB177ED3F1A0A25B3F5D6A6
         Start: 3
          Type: 272
 Error Control: 1

Service (registry key): Modem
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): Mouclass
  Display name: Mouse Class Driver
    Image path: System32\DRIVERS\mouclass.sys
    Image size: 22016
     Image MD5: E534CCBA5714E8BFFF4FB97D6453898F
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): MountMgr
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): mraid35x
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): MRxDAV
  Display name: WebDav Client Redirector
   Description: WebDav Client Redirector
    Image path: System32\DRIVERS\mrxdav.sys
    Image size: 172672
     Image MD5: D30CBA20CC355D3648B9FED5BB55A9D5
         Start: 3
          Type: 2
 Error Control: 1

Service (registry key): MRxSmb
  Display name: MRXSMB
   Description: MRXSMB
    Image path: System32\DRIVERS\mrxsmb.sys
    Image size: 407680
     Image MD5: A3AD34D36242E92C86B0C1BFBD131255
         Start: 1
          Type: 2
 Error Control: 1

Service (registry key): MSDTC
  Display name: Distributed Transaction Coordinator
   Description: Coordinates transactions that span multiple resource managers, 
such as databases, message queues, and file systems. If this service is 
stopped, these transactions will not occur. If this service is disabled, any 
services that explicitly depend on it will fail to start. 
   Object name: NT AUTHORITY\NetworkService
    Image path: C:\WINDOWS\System32\msdtc.exe
    Image size: 6144
     Image MD5: 073D2F5B53580583FEB704084CBA39CE
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: RPCSS,SamSS

Service (registry key): Msfs
         Start: 1
          Type: 2
 Error Control: 1

Service (registry key): MSIServer
  Display name: Windows Installer
   Description: Installs, repairs and removes software according to 
instructions contained in .MSI files.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\msiexec.exe /V
    Image size: 63488
     Image MD5: E7A49533944654EDD82D26338DF0FD05
         Start: 3
          Type: 288
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): MSKSSRV
  Display name: Microsoft Streaming Service Proxy
    Image path: system32\drivers\MSKSSRV.sys
    Image size: 6400
     Image MD5: 73FF6DDEAC27839583FE6A2573EE60CA
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): MSPCLOCK
  Display name: Microsoft Streaming Clock Proxy
    Image path: system32\drivers\MSPCLOCK.sys
    Image size: 5120
     Image MD5: BD8A0DCF208C27E20416BF9E8AED9CF9
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): MSPQM
  Display name: Microsoft Streaming Quality Manager Proxy
    Image path: system32\drivers\MSPQM.sys
    Image size: 4608
     Image MD5: F6A726B8832DB1F88326B8BE98B11981
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Mup
  Display name: Mup
         Start: 0
          Type: 2
 Error Control: 1

Service (registry key): NDIS
  Display name: NDIS System Driver
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): NdisTapi
  Display name: Remote Access NDIS TAPI Driver
   Description: Remote Access NDIS TAPI Driver
    Image path: System32\DRIVERS\ndistapi.sys
    Image size: 9600
     Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Ndisuio
  Display name: NDIS Usermode I/O Protocol
   Description: NDIS Usermode I/O Protocol
    Image path: System32\DRIVERS\ndisuio.sys
    Image size: 12160
     Image MD5: DA77857D9F9BC724D779DF64DA15164B
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): NdisWan
  Display name: Remote Access NDIS WAN Driver
   Description: Remote Access NDIS WAN Driver
    Image path: System32\DRIVERS\ndiswan.sys
    Image size: 88320
     Image MD5: DF101384699C87C70E9BD71DDF0E8509
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): NDProxy
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): NetBIOS
  Display name: NetBIOS Interface
   Description: NetBIOS Interface
    Image path: System32\DRIVERS\netbios.sys
    Image size: 33152
     Image MD5: 9F880D46EF6DCC865B8EF5C5A4956E3B
         Start: 1
          Type: 2
 Error Control: 1

Service (registry key): NetBT
  Display name: NetBios over Tcpip
   Description: NetBios over Tcpip
    Image path: System32\DRIVERS\netbt.sys
    Image size: 150272
     Image MD5: 58A5116194BC0AD86A6BBDBDFA5E1240
         Start: 1
          Type: 1
 Error Control: 1
 Depends On services: Tcpip

Service (registry key): NetDDE
  Display name: Network DDE
   Description: Provides network transport and security for Dynamic Data 
Exchange (DDE) for programs running on the same computer or on different 
computers. If this service is stopped, DDE transport and security will be 
unavailable. If this service is disabled, any services that explicitly depend 
on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 105984
     Image MD5: 8A45EC36DF58BF90816A14E9F21075DC
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: NetDDEDSDM

Service (registry key): NetDDEdsdm
  Display name: Network DDE DSDM
   Description: Manages Dynamic Data Exchange (DDE) network shares. If this 
service is stopped, DDE network shares will be unavailable. If this service is 
disabled, any services that explicitly depend on it will fail to start. 
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\netdde.exe
    Image size: 105984
     Image MD5: 8A45EC36DF58BF90816A14E9F21075DC
         Start: 3
          Type: 32
 Error Control: 1

Service (registry key): Netlogon
  Display name: Net Logon
   Description: Supports pass-through authentication of account logon events 
for computers in a domain.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\lsass.exe
    Image size: 11776
     Image MD5: 8A590EA109B5E0C7629E022F8A6B17C5
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: LanmanWorkstation

Service (registry key): Netman
  Display name: Network Connections
   Description: Manages objects in the Network and Dial-Up Connections folder, 
in which you can view both local area network and remote connections.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 288
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): Nla
  Display name: Network Location Awareness (NLA)
   Description: Collects and stores network configuration and location 
information, and notifies applications when this information changes.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: Tcpip,Afd

Service (registry key): Npfs
         Start: 1
          Type: 2
 Error Control: 1

Service (registry key): Ntfs
         Start: 4
          Type: 2
 Error Control: 1

Service (registry key): NtLmSsp
  Display name: NT LM Security Support Provider
   Description: Provides security to remote procedure call (RPC) programs that 
use transports other than named pipes.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\lsass.exe
    Image size: 11776
     Image MD5: 8A590EA109B5E0C7629E022F8A6B17C5
         Start: 3
          Type: 32
 Error Control: 1

Service (registry key): NtmsSvc
  Display name: Removable Storage
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): Null
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): NwlnkFlt
  Display name: IPX Traffic Filter Driver
   Description: IPX Traffic Filter Driver
    Image path: System32\DRIVERS\nwlnkflt.sys
    Image size: 12416
     Image MD5: B305F3FAD35083837EF46A0BBCE2FC57
         Start: 3
          Type: 1
 Error Control: 1
 Depends On services: NwlnkFwd

Service (registry key): NwlnkFwd
  Display name: IPX Traffic Forwarder Driver
   Description: IPX Traffic Forwarder Driver
    Image path: System32\DRIVERS\nwlnkfwd.sys
    Image size: 32512
     Image MD5: C99B3415198D1AAB7227F2C88FD664B9
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Parport
  Display name: Parallel port driver
    Image path: System32\DRIVERS\parport.sys
    Image size: 76160
     Image MD5: 1424FFBF560627B07CCE5082FA837F5C
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): PartMgr
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): ParVdm
         Start: 2
          Type: 1
 Error Control: 0
 Depends On services: Parport
 Depends On group: "Parallel arbitrator"

Service (registry key): PCI
  Display name: PCI Bus Driver
    Image path: System32\DRIVERS\pci.sys
    Image size: 62464
     Image MD5: 1F96EECDF5D1E3385AC44C6A457B381F
         Start: 0
          Type: 1
 Error Control: 3

Service (registry key): PCIDump
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): PCIIde
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Pcmcia
    Image path: System32\DRIVERS\pcmcia.sys
    Image size: 116352
     Image MD5: 2F2D0D6BD48759EF4F17D569869C4A92
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): PDCOMP
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): PDFRAME
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): PDRELI
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): PDRFRAME
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): perc2
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): perc2hib
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): PerfDisk
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): PerfNet
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): PerfOS
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): PerfProc
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): PlugPlay
  Display name: Plug and Play
   Description: Enables a computer to recognize and adapt to hardware changes 
with little or no user input. Stopping or disabling this service will result in 
system instability.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 101376
     Image MD5: E3DF4A0252D287C44606EE55355E1623
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): PolicyAgent
  Display name: IPSEC Services
   Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) 
and the IP security driver.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\lsass.exe
    Image size: 11776
     Image MD5: 8A590EA109B5E0C7629E022F8A6B17C5
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RPCSS,Tcpip,IPSec

Service (registry key): PptpMiniport
  Display name: WAN Miniport (PPTP)
   Description: WAN Miniport (PPTP)
    Image path: System32\DRIVERS\raspptp.sys
    Image size: 46464
     Image MD5: 5849957DC3F7CAE702E03B69744B9BFE
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Processor
  Display name: Processor Driver
    Image path: System32\DRIVERS\processr.sys
    Image size: 30592
     Image MD5: 72F923F0A0FDFBE3252579CA1D1D8948
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): ProtectedStorage
  Display name: Protected Storage
   Description: Provides protected storage for sensitive data, such as private 
keys, to prevent access by unauthorized services, processes, or users.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 11776
     Image MD5: 8A590EA109B5E0C7629E022F8A6B17C5
         Start: 2
          Type: 288
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): PSched
  Display name: QoS Packet Scheduler
   Description: QoS Packet Scheduler
    Image path: System32\DRIVERS\psched.sys
    Image size: 65920
     Image MD5: 7FD061B0B0833D5106244B0CF2A1E68C
         Start: 3
          Type: 1
 Error Control: 1
 Depends On services: Gpc

Service (registry key): Ptilink
  Display name: Direct Parallel Link Driver
   Description: Direct Parallel Link Driver
    Image path: System32\DRIVERS\ptilink.sys
    Image size: 17792
     Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): ql1080
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Ql10wnt
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): ql12160
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): ql1240
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): ql1280
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): RasAcd
  Display name: Remote Access Auto Connection Driver
   Description: Remote Access Auto Connection Driver
    Image path: System32\DRIVERS\rasacd.sys
    Image size: 8832
     Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): RasAuto
  Display name: Remote Access Auto Connection Manager
   Description: Creates a connection to a remote network whenever a program 
references a remote DNS or NetBIOS name or address.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RasMan,Tapisrv

Service (registry key): Rasl2tp
  Display name: WAN Miniport (L2TP)
   Description: WAN Miniport (L2TP)
    Image path: System32\DRIVERS\rasl2tp.sys
    Image size: 48640
     Image MD5: 01BD60CDE35D8B60F46EBDF5358D7127
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): RasMan
  Display name: Remote Access Connection Manager
   Description: Creates a network connection.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: Tapisrv

Service (registry key): RasPppoe
  Display name: Remote Access PPPOE Driver
   Description: Remote Access PPPOE Driver
    Image path: System32\DRIVERS\raspppoe.sys
    Image size: 38912
     Image MD5: 888335B3BE346119CF7B4EFF3A3FCA7C
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Raspti
  Display name: Direct Parallel
   Description: Direct Parallel
    Image path: System32\DRIVERS\raspti.sys
    Image size: 16512
     Image MD5: FDBB1D60066FCFBB7452FD8F9829B242
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Rdbss
  Display name: Rdbss
   Description: Rdbss
    Image path: System32\DRIVERS\rdbss.sys
    Image size: 163840
     Image MD5: DE300831C74CFF09091E954A1844BDBF
         Start: 1
          Type: 2
 Error Control: 1

Service (registry key): RDPCDD
    Image path: System32\DRIVERS\RDPCDD.sys
    Image size: 4224
     Image MD5: 4912D5B403614CE99C28420F75353332
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): RDPDD
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): RDPNP
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): RDPWD
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): RDSessMgr
  Display name: Remote Desktop Help Session Manager
   Description: Manages and controls Remote Assistance. If this service is 
stopped, Remote Assistance will be unavailable. Before stopping this service, 
see the Dependencies tab of the Properties dialog box.
   Object name: LocalSystem
    Image path: C:\WINDOWS\system32\sessmgr.exe
    Image size: 130048
     Image MD5: E6E3C190B143A6190C73F049EC39C37C
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): redbook
  Display name: Digital CD Audio Playback Filter Driver
    Image path: System32\DRIVERS\redbook.sys
    Image size: 55808
     Image MD5: DD2183A5092FEEE8961A1E19ABD1A0FC
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): RemoteAccess
  Display name: Routing and Remote Access
   Description: Offers routing services to businesses in local area and wide 
area network environments.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 4
          Type: 32
 Error Control: 1
 Depends On services: RpcSS
 Depends On group: NetBIOSGroup

Service (registry key): RpcLocator
  Display name: Remote Procedure Call (RPC) Locator
   Description: Manages the RPC name service database.
   Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\System32\locator.exe
    Image size: 68096
     Image MD5: 0C17B00F9ACC99139780C0E931C11F16
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: LanmanWorkstation

Service (registry key): RpcSs
  Display name: Remote Procedure Call (RPC)
   Description: Provides the endpoint mapper and other miscellaneous RPC 
services.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost -k rpcss
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): RSVP
  Display name: QoS RSVP
   Description: Provides network signaling and local traffic control setup 
functionality for QoS-aware programs and control applets.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\rsvp.exe
    Image size: 132608
     Image MD5: 471B3F9741D762ABE75E9DEEA4787E47
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: TcpIp,Afd,RpcSs

Service (registry key): SamSs
  Display name: Security Accounts Manager
   Description: Stores security information for local user accounts.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\lsass.exe
    Image size: 11776
     Image MD5: 8A590EA109B5E0C7629E022F8A6B17C5
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): SCardDrv
  Display name: Smart Card Helper
   Description: Enables support for legacy non-plug and play smart-card readers 
used by this computer. If this service is stopped, this computer will not 
support legacy reader. If this service is disabled, any services that 
explicitly depend on it will fail to start.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\SCardSvr.exe
    Image size: 93184
     Image MD5: A885D4EDE9852D81981B32FB0F134703
         Start: 3
          Type: 32
 Error Control: 0
 Depends On group: "Smart Card Reader"

Service (registry key): SCardSvr
  Display name: Smart Card
   Description: Manages access to smart cards read by this computer. If this 
service is stopped, this computer will be unable to read smart cards. If this 
service is disabled, any services that explicitly depend on it will fail to 
start.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\SCardSvr.exe
    Image size: 93184
     Image MD5: A885D4EDE9852D81981B32FB0F134703
         Start: 3
          Type: 32
 Error Control: 0
 Depends On services: PlugPlay

Service (registry key): Schedule
  Display name: Task Scheduler
   Description: Enables a user to configure and schedule automated tasks on 
this computer. If this service is stopped, these tasks will not be run at their 
scheduled times. If this service is disabled, any services that explicitly 
depend on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 288
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): Secdrv
  Display name: Secdrv
   Description: SafeDisc driver
    Image path: System32\DRIVERS\secdrv.sys
    Image size: 27440
     Image MD5: D26E26EA516450AF9D072635C60387F4
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): seclogon
  Display name: Secondary Logon
   Description: Enables starting processes under alternate credentials. If this 
service is stopped, this type of logon access will be unavailable. If this 
service is disabled, any services that explicitly depend on it will fail to 
start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 288
 Error Control: 0

Service (registry key): SENS
  Display name: System Event Notification
   Description: Tracks system events such as Windows logon, network, and power 
events.  Notifies COM+ Event System subscribers of these events.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: EventSystem

Service (registry key): Sentinel
  Display name: Sentinel
    Image path: \SystemRoot\System32\Drivers\SENTINEL.SYS
         Start: 2
          Type: 1
 Error Control: 1
 Depends On services: PARPORT

Service (registry key): serenum
  Display name: Serenum Filter Driver
    Image path: System32\DRIVERS\serenum.sys
    Image size: 14976
     Image MD5: 65A7C4D86C153C82E33A552C217ABB29
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Serial
  Display name: Serial port driver
    Image path: System32\DRIVERS\serial.sys
    Image size: 62464
     Image MD5: 1A315877D2EFCC2D0FF892D6BDB845B5
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): Sfloppy
         Start: 1
          Type: 1
 Error Control: 0
 Depends On group: "SCSI miniport"

Service (registry key): SharedAccess
  Display name: Internet Connection Firewall (ICF) / Internet Connection 
Sharing (ICS)
   Description: Provides network address translation, addressing, name 
resolution and/or intrusion prevention services for a home or small office 
network.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: Netman,NLA,RasMan,ALG

Service (registry key): ShellHWDetection
  Display name: Shell Hardware Detection
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 0
 Depends On services: RpcSs

Service (registry key): Simbad
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Sparrow
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): splitter
  Display name: Microsoft Kernel Audio Splitter
    Image path: system32\drivers\splitter.sys
    Image size: 5632
     Image MD5: 2C55620B197ED2BA93126B76396BFF6E
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): Spooler
  Display name: Print Spooler
   Description: Loads files to memory for later printing.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\spoolsv.exe
    Image size: 51200
     Image MD5: 9B4155BA58192D4073082B8FC5D42612
         Start: 2
          Type: 272
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): sr
  Display name: System Restore Filter Driver
    Image path: System32\DRIVERS\sr.sys
    Image size: 70400
     Image MD5: F899A5D353DCBBA12EACB379E7ABFEEE
         Start: 0
          Type: 2
 Error Control: 1

Service (registry key): srservice
  Display name: System Restore Service
   Description: Performs system restore functions. To stop service, turn off 
System Restore from the System Restore tab in My Computer->Properties
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): Srv
  Display name: Srv
   Description: Srv
    Image path: System32\DRIVERS\srv.sys
    Image size: 330368
     Image MD5: 94619EB663216F9BF12F9B950FCAB3C0
         Start: 3
          Type: 2
 Error Control: 1

Service (registry key): SSDPSRV
  Display name: SSDP Discovery Service
   Description: Enables discovery of UPnP devices on your home network.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\svchost.exe -k LocalService
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1

Service (registry key): stisvc
  Display name: Windows Image Acquisition (WIA)
   Description: Provides image acquisition services for scanners and cameras.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k imgsvc
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): swenum
  Display name: Software Bus Driver
    Image path: System32\DRIVERS\swenum.sys
    Image size: 3840
     Image MD5: 064740C5C02DE46723C4B8200EE876DF
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): swmidi
  Display name: Microsoft Kernel GS Wavetable Synthesizer
    Image path: system32\drivers\swmidi.sys
    Image size: 54272
     Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): SwPrv
  Display name: MS Software Shadow Copy Provider
   Description: Manages software-based volume shadow copies taken by the Volume 
Shadow Copy service. If this service is stopped, software-based volume shadow 
copies cannot be managed. If this service is disabled, any services that 
explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\dllhost.exe 
/Processid:{C00E999D-3893-4494-BFB8-5A7F9B8D79AE}
    Image size: 4608
     Image MD5: 6AE95FAF782E6F6AC6E4B3ACBF3D1573
         Start: 3
          Type: 16
 Error Control: 0
 Depends On services: rpcss

Service (registry key): symc810
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): symc8xx
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): sym_hi
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): sym_u3
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): SynTP
  Display name: Synaptics TouchPad Driver
    Image path: System32\DRIVERS\SynTP.sys
    Image size: 186016
     Image MD5: 23FE1F173996B8BAD4B9ED74003676D8
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): sysaudio
  Display name: Microsoft Kernel System Audio Device
    Image path: system32\drivers\sysaudio.sys
    Image size: 57472
     Image MD5: D0459F71807CCE71FE26A52F2EDEBAD9
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): SysmonLog
  Display name: Performance Logs and Alerts
   Description: Collects performance data from local or remote computers based 
on preconfigured schedule parameters, then writes the data to a log or triggers 
an alert. If this service is stopped, performance information will not be 
collected. If this service is disabled, any services that explicitly depend on 
it will fail to start.
   Object name: NT Authority\NetworkService
    Image path: %SystemRoot%\system32\smlogsvc.exe
    Image size: 86016
     Image MD5: BB5F528DC9BA1F233730223385F3EFC2
         Start: 3
          Type: 16
 Error Control: 1

Service (registry key): TapiSrv
  Display name: Telephony
   Description: Provides Telephony API (TAPI) support for programs that control 
telephony devices and IP based voice connections on the local computer and, 
through the LAN, on servers that are also running the service.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: PlugPlay,RpcSs

Service (registry key): Tcpip
  Display name: TCP/IP Protocol Driver
   Description: TCP/IP Protocol Driver
    Image path: System32\DRIVERS\tcpip.sys
    Image size: 327168
     Image MD5: E7774698BB0D14B0710A9A31E209F9B6
         Start: 1
          Type: 1
 Error Control: 1
 Depends On services: IPSec

Service (registry key): TDPIPE
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): TDTCP
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): TermDD
  Display name: Terminal Device Driver
    Image path: System32\DRIVERS\termdd.sys
    Image size: 37896
     Image MD5: 68B71EB2E79F60640B4B3A1A714317E5
         Start: 1
          Type: 1
 Error Control: 1

Service (registry key): TermService
  Display name: Terminal Services
   Description: Allows multiple users to be connected interactively to a 
machine as well as the display of desktops and applications to remote 
computers. The underpinning of Remote Desktop (including RD for 
Administrators), Fast User Switching, Remote Assistance, and Terminal Server.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): Themes
  Display name: Themes
   Description: Provides user experience theme management.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): TosIde
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): TrkWks
  Display name: Distributed Link Tracking Client
   Description: Maintains links between NTFS files within a computer or across 
computers in a network domain.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RpcSs

Service (registry key): TSDDD
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): Udfs
         Start: 4
          Type: 2
 Error Control: 1

Service (registry key): ultra
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): Update
  Display name: Microcode Update Driver
    Image path: System32\DRIVERS\update.sys
    Image size: 137088
     Image MD5: 164CFAE1D766905F56C432ACFC54F28C
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): uploadmgr
  Display name: Upload Manager
   Description: Manages synchronous and asynchronous file transfers between 
clients and servers on the network. If this service is stopped, synchronous and 
asynchronous file transfers between clients and servers on the network will not 
occur. If this service is disabled, any services that explicitly depend on it 
will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): upnphost
  Display name: Universal Plug and Play Device Host
   Description: Provides support to host Universal Plug and Play devices.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\svchost.exe -k LocalService
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 3
          Type: 32
 Error Control: 1
 Depends On services: SSDPSRV

Service (registry key): UPS
  Display name: Uninterruptible Power Supply
   Description: Manages an uninterruptible power supply (UPS) connected to the 
computer.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\ups.exe
    Image size: 16384
     Image MD5: 3F324808E5C57399430E0C70AD565145
         Start: 3
          Type: 16
 Error Control: 1

Service (registry key): usbhub
  Display name: USB2 Enabled Hub
    Image path: System32\DRIVERS\usbhub.sys
    Image size: 50688
     Image MD5: 1766FAA3A5079D0DB3EFB331DAC587ED
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): usbohci
  Display name: Microsoft USB Open Host Controller Miniport Driver
    Image path: System32\DRIVERS\usbohci.sys
    Image size: 15616
     Image MD5: BA6B6215621255F0CD231F08B7D5D8CB
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): VgaSave
    Image path: \SystemRoot\System32\drivers\vga.sys
         Start: 1
          Type: 1
 Error Control: 0

Service (registry key): ViaIde
         Start: 4
          Type: 1
 Error Control: 1

Service (registry key): VolSnap
         Start: 0
          Type: 1
 Error Control: 1

Service (registry key): VSS
  Display name: Volume Shadow Copy
   Description: Manages and implements Volume Shadow Copies used for backup and 
other purposes. If this service is stopped, shadow copies will be unavailable 
for backup and the backup may fail. If this service is disabled, any services 
that explicitly depend on it will fail to start.
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\vssvc.exe
    Image size: 275456
     Image MD5: F422CECCF4B02790F80176CF3F4759C0
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): W32Time
  Display name: Windows Time
   Description: Maintains date and time synchronization on all clients and 
servers in the network. If this service is stopped, date and time 
synchronization will be unavailable. If this service is disabled, any services 
that explicitly depend on it will fail to start.

   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): W3SVC
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): Wanarp
  Display name: Remote Access IP ARP Driver
   Description: Remote Access IP ARP Driver
    Image path: System32\DRIVERS\wanarp.sys
    Image size: 33280
     Image MD5: 484AF08F15D1306FF2E8B64FE62A160C
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): WDICA
         Start: 3
          Type: 1
 Error Control: 0

Service (registry key): wdmaud
  Display name: Microsoft WINMM WDM Audio Compatibility Driver
    Image path: system32\drivers\wdmaud.sys
    Image size: 79616
     Image MD5: 1106767A0647BF3BE4535C91F74FE7DA
         Start: 3
          Type: 1
 Error Control: 1

Service (registry key): WebClient
  Display name: WebClient
   Description: Enables Windows-based programs to create, access, and modify 
Internet-based files. If this service is stopped, these functions will not be 
available. If this service is disabled, any services that explicitly depend on 
it will fail to start.
   Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\svchost.exe -k LocalService
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: MRxDAV

Service (registry key): winmgmt
  Display name: Windows Management Instrumentation
   Description: Provides a common interface and object model to access 
management information about operating system, devices, applications and 
services. If this service is stopped, most Windows-based software will not 
function properly. If this service is disabled, any services that explicitly 
depend on it will fail to start.
   Object name: LocalSystem
    Image path: %systemroot%\system32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 0
 Depends On services: RPCSS,Eventlog

Service (registry key): Winsock
         Start: 3
          Type: 4
 Error Control: 1

Service (registry key): WinSock2
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): WinTrust
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): WLTRYSVC
  Display name: WLTRYSVC
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\wltrysvc.exe 
%SystemRoot%\System32\bcmwltry.exe
    Image size: 45056
     Image MD5: 5C6EE692117D4085BDE59F372901DC76
         Start: 2
          Type: 272
 Error Control: 1

Service (registry key): WmdmPmSp
  Display name: Portable Media Serial Number
   Description: Retrieves the serial number of any portable music player 
connected to your computer
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): WmiApRpl
         Start: 0
          Type: 0
 Error Control: 0

Service (registry key): WmiApSrv
  Display name: WMI Performance Adapter
   Description: Provides performance library information from WMI HiPerf 
providers.
   Object name: LocalSystem
    Image path: C:\WINDOWS\System32\wbem\wmiapsrv.exe
    Image size: 117248
     Image MD5: B7891998B0F21C8D1A928C0578B0368B
         Start: 3
          Type: 16
 Error Control: 1
 Depends On services: RPCSS

Service (registry key): wuauserv
  Display name: Automatic Updates
   Description: Enables the download and installation of critical Windows 
updates. If the service is disabled, the operating system can be manually 
updated at the Windows Update Web site.
   Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1

Service (registry key): WZCSVC
  Display name: Wireless Zero Configuration
   Description: Provides automatic configuration for the 802.11 adapters
   Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
     Image MD5: 0F7D9C87B0CE1FA520473119752C6F79
         Start: 2
          Type: 32
 Error Control: 1
 Depends On services: RpcSs,Ndisuio

Service (registry key): {2654BE96-211C-4862-9239-B13FFDA11C7B}
         Start: 0
          Type: 0
 Error Control: 0


Other related posts: