Reader_sl.exe Trojan Dropper.Generic2.Aliz???

Hi folks
I'm new in here so be gentle with me....
I've got an ACER laptop (vista) which came with the Acrobat Reader preinstalled. At times to times, it notifies me for updates, so i do the update quite frequently.
I also have the AVG Antivirus program installed, and i perform a full scan every 2 weeks (manually). Two weeks ago, nothing critical showed up from AVG.
But today, when the scan process ended, it showed that the file c:windows\system32\oem\data1.cab:reader_sl.exe was infected with the Trojan Dropper.Generic2.Aliz
Because the file data1.cab is too large (98mb) the avg cannot interfere to delete it. Is this Trojan an error of avg, or is it truly a Trojan?
Did you have any similar complaints about that file???
And why is the reader_sl.exe in the system32 folder and not in the ProgramFiles folders?
Thanks in advance!!!

Would you delete the entire oem folder or the data1.cab?
The reader_sl.exe inside the data1.cab (oem) has the followin dates:
1. date created 08/03/2007 (dd/MM/yyyy)
The data1.cab has:
1. date modified :14/07/2007
The reader_sl.exe in my program files folder has:
1. version 8.0.0.0
2. date modified 15/10/2008
2. date created 15/10/2008

Similar Messages

  • Trojan horse Dropper.Generic2.CKPW

    AVG found Trojan horse Dropper.Generic2.CKPW when I downloaded the update to QuickTime. AVG can't delete or vault it.

    Yeah, I think so. I ran AVG free AV/AS and it quarantined the Dropper2 trojan and the registry entry from the SysWoW folder and everything still works. I rebooted, ran iTunes, synced, rebooted again and everything still works with no sign of the virus. I called Apple yesterday wanting to know why I had to keep entering my account info and they wanted me to log in, change my password, then change it back. This might have been an honest attempt to solve my problem, but I wasn't born yesterday and I really see no reason for me to change my password and then change it back again. If I've hurt someone at Apple's feelings, well... boo hoo!!

  • When i start up my computer,it says reader_sl.exe failed to load,it will stop this program app.,ok

    When i turn on my computer,it says reader_+sl.exe faild to load,,we will close this program app.,,,OK.How do i repair this.Ive tried everything.I even tried deleteing Adobe reader and re-downloaded the newest version,Adobe reader XI.Whats wrong with my computer?
    what do i do to fix this?

    Remove the faulty entry 'reader_+sl.exe' from your startup list and replace it with the correct 'reader_sl.exe'.  Or just remove it altogether; it doesn't actually do much.

  • Invalid registry entry to startup reader_sl.exe

    When looking to disable another vendors startup, I found that there is an error in the entry for reader_sl.exe.  I am at current Adobe Reader XI, but the entry for RUN at startup still points to the directory for Adobe Reader X ("C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe").  That directory no longer exists. Is the entry no longer needed for fast start (i.e. should be deleted) or did the installer just fail to update it?

    I think it isn't needed in recent versions of Windows.

  • Reader_SL.exe R6034

    On boot up I get two error messages:
    R6034
    An application has made an attempt to Load the C++ runtime library incorrectly. Please contact the application's support team for more information.
    Also:
    The application failed to initialize properly 0x0000142 Click OK to terminate the application.
    This also happens when I click on the Acrord32.exe shortcut.
    This may also be effecting Corel WordPerfect Suite 12 which crashes after a brief time of functioning.

    Would you delete the entire oem folder or the data1.cab?
    The reader_sl.exe inside the data1.cab (oem) has the followin dates:
    1. date created 08/03/2007 (dd/MM/yyyy)
    The data1.cab has:
    1. date modified :14/07/2007
    The reader_sl.exe in my program files folder has:
    1. version 8.0.0.0
    2. date modified 15/10/2008
    2. date created 15/10/2008

  • Reader_sl.exe and acrord32.exe error 0x0000034

    Hello, i'm using adobe reader 9.3 and i have this little problem, first started with reader_sl.exe at startup, y then when try to use reader it pop up the same. im on windows xp sp3 and already tried to reinstall
    i did fix this problem already installing vcredist, msi and net framework (looks like the first was the only needed)
    but now i get "the instruccion at 0x012e37fa referenced memory at 0x019edc0 the memory could no be written"
    thanks in advance
    hola, tengo adobe reader 9.3 y este pequeño problema. al inicio salta reader_sl.exe y cuando tratas de iniciar el reader sale el otro. estoy usando windows xp y ya probe reinstalar
    bueno ya arregle este problema instalando vcredist, msi y net framework (me parece que el primero solamente hacia falta
    pero ahora me sale
    la isntrucion en 0x012e37fa hace referencia a la memoria 0x019edc0 la memoria no se puede written
    gracias desde ya

    Can you tell us more about the error you are getting regarding reader_sl.exe - is it just "system error", or anything more?
    On the other hand, you can safely remove reader_sl.exe from the startup list; it doesn't really do much.
    Regarding MSVCP71.dll - do you also get that message in connection with Adobe Reader?
    What Reader version do you have installed?
    The visual C runtime libraries are normally distributed with the applications that require it.  If MSVCx71.dll modules are generally missing, they are part of .NET Framework 1.1

  • Re: ravmon.exe trojan on Satallite L40-t17

    Hello
    Just got my Satellite L40-t17 laptop.
    After opening it and all, I found out that my AVG antivirus (using it instead of Norton which came with the laptop) locates a trojan on the file ravmon.exe
    Since nothing else was installed (and the computer was sealed and all), and the AVG came from there site.
    What can I do now?
    Thanks,
    Doron.
    Message was edited by: ADMIN

    Hi there,
    The ravmon.exe may be a trojan or virus file. Just look at its filesize and if it is equal to 48KB then it appears to be malicious software.
    You may have a few options. First, try to get rid of it by using antivir or if this doesn't help, there might be some instructions on the antivir websites. The second one is, to do as Joao already suggested and make a new clean install of Windows with your recovery DVD.
    Best of luck for this.
    Regards, Zim

  • How do I remedy this error reader_sl.exe

    How do I remedy this error reader_sl.exe

    I have no idea what you are asking.  Or why you have marked your question as 'answered'.

  • Removing reader_sl.exe from startup (Windows 7)

    Does anyone know how of a legitimate way to remove Acrobat's speed loader in Windows 7 such as not having to edit the registery or ending the process through task manager every boot? There is a method outlined at:
    http://help.adobe.com/en_US/Acrobat/8.0/Professional/help.html?content=WS5E914C75-67C2-47e 5-840E-BE51AFB56D0D.html
    but I think the information on that link pertains to a previous edition of Windows since the startup folders are all empty.

    You might search at http://search.microsoft.com/search.aspx?mkt=en-US&setlang=en-US to see if Microsoft has an article specific to Win7 concerning startup options

  • ITunes and Quicktime crash when opened!!!

    Ok, I'm kind of panicking.
    I have the iPhone 4 now and I updated my iTunes last week. It was working fine until today. I got a bonjour disable message, and now neither application will work. I then check my services and bonjour was started. I've been restarting it but it makes no difference as far as itunes is concerned. I have Windows XP. Any ideas?
    Many thanks from a very stressed guy up at 3 am attempting to figure this out!
    Message was edited by: michael2323
    Message was edited by: michael2323

    Hmmmm didnt think off that. Here's the results though! There was definitely some malicious content on here.
    Malwarebytes' Anti-Malware 1.46
    www.malwarebytes.org
    Database version: 4052
    Windows 5.1.2600 Service Pack 2
    Internet Explorer 7.0.5730.11
    7/9/2010 12:20:18 PM
    mbam-log-2010-07-09 (12-20-18).txt
    Scan type: Full scan (C:\|)
    Objects scanned: 184018
    Time elapsed: 54 minute(s), 30 second(s)
    Memory Processes Infected: 0
    Memory Modules Infected: 1
    Registry Keys Infected: 0
    Registry Values Infected: 3
    Registry Data Items Infected: 2
    Folders Infected: 0
    Files Infected: 5
    Memory Processes Infected:
    (No malicious items detected)
    Memory Modules Infected:
    C:\WINDOWS\system32\0041.DLL (Spyware.Passwords) -> Delete on reboot.
    Registry Keys Infected:
    (No malicious items detected)
    Registry Values Infected:
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\appinit_dlls (Trojan.Witkinat) -> Delete on reboot.
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\crntdll (Trojan.Witkinat) -> Delete on reboot.
    HKEYCLASSESROOT\secfile\shell\open\command\(default) (Rogue.MultipleAV) -> Quarantined and deleted successfully.
    Registry Data Items Infected:
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Spyware.Passwords) -> Data: c:\windows\system32\0041.dll -> Quarantined and deleted successfully.
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Spyware.Passwords) -> Data: system32\0041.dll -> Quarantined and deleted successfully.
    Folders Infected:
    (No malicious items detected)
    Files Infected:
    C:\WINDOWS\system32\0041.DLL (Spyware.Passwords) -> Delete on reboot.
    C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP94\A0114143.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\wexe.exe (Trojan.Small) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\WORK.DAT (Malware.Trace) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\wupd.dat (Malware.Trace) -> Quarantined and deleted successfully.

  • Itunes and IE - if IE doesnt work, itunes can't connect problem

    IE8 stopped working.
    Now, itunes does not connect to the internet, for downloading podcasts.
    However, I can surf the internet using Firefox. So I have a connection to the internet that works.
    How can I get itunes to connect to the internet?
    Thanks for help!

    With IE I get this page:
    "Internet Explorer cannot display the webpage
    What you can try:
    Diagnose Connection Problems"
    I have AVG. Never had Norton. I brought the computer uninstalled.
    My suspicion is that it's a virus (or other), because AVG wont update, nor will Malwarebytes.
    I installed Malewarebytes last week and ran it. It found some items, see below:
    I've run Crap Cleaner. I have run AVG.
    Is there a way to get iTunes to connect to the internet via Firefox (which is now my default browser)? Be great if there's a solution to iTunes, without having to need to remove the virus first - it might be beyond my computer skills to remove a virus.
    Thanks for your help.
    Malwarebytes' Anti-Malware 1.50.1.1100
    www.malwarebytes.org
    Database version: 5363
    Windows 5.1.2600 Service Pack 3
    Internet Explorer 8.0.6001.18702
    16/01/2011 20:12:01
    mbam-log-2011-01-16 (20-12-01).txt
    Scan type: Full scan (C:\|)
    Objects scanned: 327983
    Time elapsed: 1 hour(s), 18 minute(s), 14 second(s)
    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 7
    Registry Values Infected: 2
    Registry Data Items Infected: 1
    Folders Infected: 0
    Files Infected: 2
    Memory Processes Infected:
    (No malicious items detected)
    Memory Modules Infected:
    (No malicious items detected)
    Registry Keys Infected:
    HKEYCLASSESROOT\CLSID\{DD4A65C7-61D7-445F-BCF1-5065F765EAF9} (Trojan.Vundo) -> Quarantined and deleted successfully.
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DD4A65C7-61D7-445F-BCF1-5065F765EAF9} (Trojan.Vundo) -> Quarantined and deleted successfully.
    HKEYCURRENTUSER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DD4A65C7-61D7-445F-BCF 1-5065F765EAF9} (Trojan.Vundo) -> Quarantined and deleted successfully.
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D4E23BC-3766-3ED8-8234-95C1786B945A} (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEYCLASSESROOT\CLSID\{6D4E23BC-3766-3ED8-8234-95C1786B945A} (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEYCURRENTUSER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{6D4E23BC-3766-3ED8- 8234-95C1786B945A} (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEYCURRENTUSER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D4E23BC-3766-3ED8-823 4-95C1786B945A} (Trojan.BHO) -> Quarantined and deleted successfully.
    Registry Values Infected:
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{DD 4A65C7-61D7-445F-BCF1-5065F765EAF9} (Trojan.Vundo) -> Value: {DD4A65C7-61D7-445F-BCF1-5065F765EAF9} -> Quarantined and deleted successfully.
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{DD 4A65C7-61D7-445F-BCF1-5065F765EAF9} (Trojan.Vundo) -> Value: {DD4A65C7-61D7-445F-BCF1-5065F765EAF9} -> Quarantined and deleted successfully.
    Registry Data Items Infected:
    HKEYLOCALMACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidde n\SHOWALL\CheckedValue (PUM.Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
    Folders Infected:
    (No malicious items detected)
    Files Infected:
    c:\documents and settings\James\local settings\Temp\c2cdll.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
    c:\documents and settings\James\local settings\Temp\audiodgt.exe (Trojan.Dropper) -> Quarantined and deleted successfully.

  • Trojan found during installation of AW7

    This is the first time something like this has happened to me during          
    software installation.
    I'm running ZoneAlarm Extreme Security, which found five trojan variants during Authorware 7 installation:
    Trojan.Win32.Krament.ml, associated with Get RTF Object Text Range.exe;
    Trojan.Win32.Krament.mn, associated with Insert RTF Object Hot Text interaction.exe;
    Trojan.Win32.Krament.mi, associated with Save RTF Object.exe;
    Trojan.Win32.Krament.mo, associated with Search RTF Object.exe;
    Trojan.Win32.Krament.mh, associated with Show or Hide RTF Object.exe.
    I'm sure it is semantics. Any thoughts on this problem? Cures?
    Any help is appreciated and thank you in advance for your time and consideration.
    Running XP sp3.
    Regards

    I contacted ZoneAlarm as you recommended and the first thing the support guy said was that it sounded like false positives. He gave me a procedure to follow, which I am going to implement.

  • Explorer.exe - Using up high CPU

    Hello community!
    I'm writing this on my desktop as the laptop which has the problem is unusable.
    Windows Explorer (explorer.exe) is using high cpu (30-60%), and crashes after about 30 seconds.
    This started happening a couple of days ago, and I cannot remember any action from my part that might have triggered this problem; one day it was perfect, the other day it had the problem.
    Here is an HiJackThis report:
    Hello community!
    I'm writing this on my desktop as the laptop which has the problem is unusable.
    Windows Explorer (explorer.exe) is using high cpu (30-60%), and crashes after about 30 seconds.
    This started happening a couple of days ago, and I cannot remember any action from my part that might have triggered this problem; one day it was perfect, the other day it had the problem.
    Here is an HiJackThis report:
    [quote]
    Logfile of Trend Micro HijackThis v2.0.5
    Scan saved at 12:40:59 PM, on 2013-11-29
    Platform: Unknown Windows (WinNT 6.02.1008)
    MSIE: Internet Explorer v10.0 (10.00.9200.16537)
    Boot mode: Normal
    Running processes:
    C:\Users\emili_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
    C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\updateui.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\ÉMILIE\Download\HijackThis.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung13.msn.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com/?SearchSource=10&CUI=UN32722210862607114&UM=2&ctid=CT3289847&UP=SPAAE27309-59AC-46A1-85ED-D84EE5E06B0D&SSPV=
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=irmsd62&cd=2XzuyEtN2Y1L1Qzu0C0A0FyBtAtAyCzy0DtCtDtB0EtByCyDtN0D0Tzu0SyDyEtDtN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1L1C1H1B1QyCtB&cr=686344045&ir=
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    R3 - URLSearchHook: WhiteSmoke New Toolbar - {739df940-c5ee-4bab-9d7e-270894ae687a} - C:\Program Files (x86)\WhiteSmoke_New\prxtbWhit.dll
    F2 - REG:system.ini: UserInit=userinit.exe
    O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll
    O2 - BHO: WebCake Layers - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\Tepfel\WebCakeIEClient.dll
    O2 - BHO: WhiteSmoke New - {739df940-c5ee-4bab-9d7e-270894ae687a} - C:\Program Files (x86)\WhiteSmoke_New\prxtbWhit.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
    O2 - BHO: TidyNetwork.com - {7736C7FA-512D-11E2-B871-DEC36088709B} - C:\Users\emili_000\AppData\Local\TidyNetwork.com\tidy2ie.dll
    O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\program files (x86)\mcafee\siteadvisor\mcieplg.dll
    O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
    O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files (x86)\mcafee\siteadvisor\mcieplg.dll
    O3 - Toolbar: WhiteSmoke New Toolbar - {739df940-c5ee-4bab-9d7e-270894ae687a} - C:\Program Files (x86)\WhiteSmoke_New\prxtbWhit.dll
    O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
    O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
    O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
    O4 - HKLM\..\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
    O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
    O4 - HKCU\..\Run: [WebCake Desktop] C:\Users\emili_000\AppData\Roaming\Movdap\WebCakeDesktop.exe
    O4 - HKCU\..\Run: [Facebook Update] "C:\Users\emili_000\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
    O4 - HKUS\S-1-5-18\..\Run: [Gestionnaire Antidote.exe] C:\Program Files (x86)\Druide\Antidote\Gestionnaire Antidote.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [Gestionnaire Antidote.exe] C:\Program Files (x86)\Druide\Antidote\Gestionnaire Antidote.exe (User 'Default user')
    O4 - Startup: Dropbox.lnk = emili_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
    O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
    O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
    O8 - Extra context menu item: Send to Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
    O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
    O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
    O9 - Extra button: Send to Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
    O9 - Extra 'Tools' menuitem: Send to Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
    O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - C:\Program Files (x86)\Druide\Antidote 8\Texteurs\Internet Explorer\Antidote.InternetExplorer.K.P109.htm (HKCU)
    O9 - Extra button: Dictionnaires - {F9B969E8-58D0-4dd9-AC8A-EE2336FF8F65} - C:\Program Files (x86)\Druide\Antidote 8\Texteurs\Internet Explorer\Antidote.InternetExplorer.D.P109.htm (HKCU)
    O9 - Extra button: Guides - {FA089E36-3F1B-4c51-9A1A-C4E7012483AF} - C:\Program Files (x86)\Druide\Antidote 8\Texteurs\Internet Explorer\Antidote.InternetExplorer.G.P109.htm (HKCU)
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O15 - Trusted Zone: *.clonewarsadventures.com
    O15 - Trusted Zone: *.freerealms.com
    O15 - Trusted Zone: *.soe.com
    O15 - Trusted Zone: *.sony.com
    O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files (x86)\mcafee\siteadvisor\mcieplg.dll
    O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
    O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files (x86)\mcafee\siteadvisor\mcieplg.dll
    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files (x86)\mcafee\msc\mcsniepl.dll
    O20 - AppInit_DLLs: C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll C:\Program Files
    O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
    O23 - Service: McAfee Personal Firewall (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
    O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
    O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
    O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
    O23 - Service: Stardock Start8 (Start8) - Stardock Software, Inc - C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
    End of file - 11774 bytes
    I hope this helps.
    Jelly

    Hi,
    Since this started happening a couple of days ago, have you installed some 3rd party software recently? That may cause this issue.
    Please try clean boot to check the issue. If the issue disappears in the Clean Boot environment, you can continue to narrow down which entry is causing the issue.
    How to perform a clean boot in Windows 8.1, Windows 8, Windows 7, or Windows Vista
    http://support.microsoft.com/kb/929135/en-us
    I also suggest you use Process Explorer to capture the abnormal process.
    Please refer to this blog:
    http://blogs.technet.com/b/markrussinovich/archive/2008/04/07/3031251.aspx
    If issue persists, please upload the event log here for further analyzing.
    Yolanda
    TechNet Community Support

  • Reader 9 won't let me shut down my computer.  File reader_sl won't close.

    I have Reader 9 on my machine and when I try to shut down my computer, the file named
    reader_sl.exe will not quit.  I tried to load Reader X but Adobe tried to load two other programs onto my computer at the same time, programs that I had not agreed to accept.  This is an immoral act.  Therefore, I aborted the download.  How do I get my machine to shut down
    without deleting that file and screwing up Reader 9?  Or is there a non-Adobe site where
    I can download Reader X without being cr..ped on?

    Choose Force Quit from the Apple menu and close Safari from there.
    (100343)

  • Reader_sl

    On Windows 8.1 I see occasional Application error's and popups for 'Reader_Sl.exe'   - 'Faulting application Reader_sl.exe, version 11.0.7.79' with various faulting modules reported - seems to be random at logon time, anybody else have this happen, know what the issue is?

    Hi chriso28,
    There might be a chance that your computers is being infected with some virus or malware.
    Perform a full malware scan on your system to prevent Reader_slexe error.
    You can uninstall Reader and then install it again from the below mentioned link:
    Adobe Reader Install for all versions
    Let me know how it goes.
    Regards,
    Anubha

Maybe you are looking for

  • IPhone user getting BB network sync messages - wants them to stop

    Hello everyone.  Just signed up here, happy user of Blackberry Tour 9630 with Bell Mobility in Montreal, Quebec, Canada for nearly two years. HOWEVER, my current need for assistance has absolutely NOTHING to do with my Blackberry model, my carrier, o

  • Which Table i will Get the Name of Receipt Recipient in FBCJ

    Hi Experts Which Table i will Get the Name of Receipt Recipient in FBCJ Transaction Code : FBCJ Technical name : Name of Receipt Recipient Field Name : BP_NAME But it is not stored in TCJ_POSITIONS table Regards Jagadish

  • What frequency is AirPlay when a 2nd gen Express joins a 1st gen Extreme?

    I'm guessing the 2nd gen Express drops down to 2.4Ghz instead of utilitizing the 5Ghz it is capable of.  Correct?  I've been noticing some long drop offs and only solution is to unplug the Express (not the Extreme) and then it works fine again.  I as

  • Want to upgrade Aperture, but not to latest w Mavericks

    Hi gang. This is my first time reaching out like this. I have Aperture 2.4 and it crashes continually and I want to upgrade to 3.0 at least. I don't want Mavericks though. How do I get an Aperture version that fits my 10.8.5 OS? Thanks!

  • Flex access to Sql DB on Solaris

    Hi, What is the simplest method for a Flexbuilder 2 app to access sql data (preferably using ODBC)? Do we have to install something like Coldfusion or is there some flex adaptor that can do direct CRUD calls to the database? We would ideally prefer t