[color="#FF00FF"]OTL logfile created on: 2009-06-03 19:32:54 - Run 1 OTL by OldTimer - Version 2.1.1.0 Folder = C:\Documents and Settings\singhpur\Desktop\Geeks Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000409 | Country: United States | Language: ENU | Date Format: yyyy-MM-dd 1.99 Gb Total Physical Memory | 1.43 Gb Available Physical Memory | 71.65% Memory free 3.84 Gb Paging File | 3.36 Gb Available in Paging File | 87.45% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 74.52 Gb Total Space | 16.31 Gb Free Space | 21.89% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: JPURBA1 Current User Name: singhpur Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Output = Minimal File Age = 60 Days Company Name Whitelist: On [color=orange]========== Processes (SafeList) ==========[/color] PRC - c:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (Broadcom Corporation.) PRC - C:\Program Files\Symantec AntiVirus\Smc.exe (Symantec Corporation) PRC - C:\Program Files\ActivIdentity\ActivClient\acevents.exe (ActivIdentity) PRC - C:\Program Files\Symantec AntiVirus\SNAC.EXE (Symantec Corporation) PRC - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (Symantec Corporation) PRC - C:\Program Files\ActivIdentity\ActivClient\acautoup.exe (ActivIdentity) PRC - C:\Program Files\ActivIdentity\ActivClient\accoca.exe (ActivIdentity) PRC - C:\Program Files\HPAVAdminScan\avChgSvc.exe () PRC - C:\Program Files\Creative\Shared Files\CTDevSrv.exe (Creative Technology Ltd) PRC - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe (Cisco Systems, Inc.) PRC - C:\Program Files\Symantec\NetBackup DLO\DLO\DLOChangeLogSvcu.exe (Symantec Corporation) PRC - C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.) PRC - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo) PRC - C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (Microsoft Corporation) PRC - C:\Program Files\Remote tools\msraLinkMonitor.exe () PRC - C:\Program Files\Hewlett-Packard\PC COE 3\OV CMS\radexecd.exe (Hewlett-Packard) PRC - C:\Program Files\Hewlett-Packard\PC COE 3\OV CMS\radsched.exe (Hewlett-Packard) PRC - C:\Program Files\Hewlett-Packard\PC COE 3\OV CMS\Radstgms.exe (Hewlett-Packard) PRC - C:\Program Files\Symantec AntiVirus\Rtvscan.exe (Symantec Corporation) PRC - C:\Program Files\UPHClean\uphclean.exe (Microsoft Corporation) PRC - C:\Program Files\sdb\programs\pgm\serv.exe (SAP AG) PRC - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Development Company, L.P.) PRC - C:\Program Files\Citrix\ICA Client\ssonsvr.exe (Citrix Systems, Inc.) PRC - C:\WINDOWS\Explorer.EXE (Microsoft Corporation) PRC - C:\Program Files\Symantec AntiVirus\SmcGui.exe (Symantec Corporation) PRC - C:\Program Files\Microsoft Office Communicator\communicator.exe (Microsoft Corporation) PRC - C:\Documents and Settings\singhpur\Desktop\Geeks\OTL.exe (OldTimer Tools) PRC - C:\WINDOWS\notepad.exe (Microsoft Corporation) [color=orange]========== Win32 Services (SafeList) ==========[/color] SRV - (0c16ed195b75c658 [Auto | Stopped]) -- File not found SRV - (acautoup [Auto | Running]) -- C:\Program Files\ActivIdentity\ActivClient\acautoup.exe (ActivIdentity) SRV - (accoca [Auto | Running]) -- C:\Program Files\ActivIdentity\ActivClient\accoca.exe (ActivIdentity) SRV - (aspnet_state [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation) SRV - (AvChgSvc [Auto | Running]) -- C:\Program Files\HPAVAdminScan\avChgSvc.exe () SRV - (btwdins [Auto | Running]) -- c:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (Broadcom Corporation.) SRV - (ccEvtMgr [Auto | Running]) -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (Symantec Corporation) SRV - (ccSetMgr [Auto | Running]) -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (Symantec Corporation) SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) SRV - (CTDevice_Srv [Auto | Running]) -- C:\Program Files\Creative\Shared Files\CTDevSrv.exe (Creative Technology Ltd) SRV - (CTUPnPSv [On_Demand | Stopped]) -- C:\Program Files\Creative\Creative Centrale\CTUPnPSv.exe (Creative Technology Ltd) SRV - (CVPND [Auto | Running]) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe (Cisco Systems, Inc.) SRV - (DLOChangeJournalSvc [Auto | Running]) -- C:\Program Files\Symantec\NetBackup DLO\DLO\DLOChangeLogSvcu.exe (Symantec Corporation) SRV - (gupdate1c9cee0ef55a1e9 [Auto | Stopped]) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.) SRV - (helpsvc [Auto | Running]) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll (Microsoft Corporation) SRV - (hpqwmiex [Auto | Running]) -- C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Development Company, L.P.) SRV - (IviRegMgr [Auto | Running]) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo) SRV - (LiveUpdate [On_Demand | Stopped]) -- C:\Program Files\Symantec\Liveupdate\LuComServer_3_3.EXE (Symantec Corporation) SRV - (magaService [On_Demand | Stopped]) -- File not found SRV - (MDM [Auto | Running]) -- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (Microsoft Corporation) SRV - (msralinkmonitor [Auto | Running]) -- C:\Program Files\Remote tools\msraLinkMonitor.exe () SRV - (Net Driver HPZ12 [Auto | Running]) -- C:\WINDOWS\system32\HPZinw12.dll (Hewlett-Packard) SRV - (ose [On_Demand | Stopped]) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation) SRV - (PictureTaker [On_Demand | Stopped]) -- C:\WINDOWS\system32\PCTKRNT.SYS (LANovation) SRV - (Pml Driver HPZ12 [Auto | Running]) -- C:\WINDOWS\system32\HPZipm12.dll (Hewlett-Packard) SRV - (radexecd [Auto | Running]) -- C:\Program Files\Hewlett-Packard\PC COE 3\OV CMS\radexecd.exe (Hewlett-Packard) SRV - (radsched [Auto | Running]) -- C:\Program Files\Hewlett-Packard\PC COE 3\OV CMS\radsched.exe (Hewlett-Packard) SRV - (Radstgms [Auto | Running]) -- C:\Program Files\Hewlett-Packard\PC COE 3\OV CMS\Radstgms.exe (Hewlett-Packard) SRV - (SAP DBTech-.M770609 [On_Demand | Stopped]) -- C:\Program Files\sdb\programs\DatabaseStudio\utilities\pgm\kernel.exe (SAP AG) SRV - (SAP DBTech-.UMDB [On_Demand | Stopped]) -- C:\Program Files\sdb\programs\DatabaseStudio\utilities\pgm\kernel.exe (SAP AG) SRV - (SmcService [Auto | Running]) -- C:\Program Files\Symantec AntiVirus\Smc.exe (Symantec Corporation) SRV - (SNAC [Auto | Running]) -- C:\Program Files\Symantec AntiVirus\SNAC.EXE (Symantec Corporation) SRV - (Symantec AntiVirus [Auto | Running]) -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe (Symantec Corporation) SRV - (UPHClean [Auto | Running]) -- C:\Program Files\UPHClean\uphclean.exe (Microsoft Corporation) SRV - (WMPNetworkSvc [On_Demand | Stopped]) -- C:\Program Files\Windows Media Player\WMPNetwk.exe (Microsoft Corporation) SRV - (XServer [Auto | Running]) -- C:\Program Files\sdb\programs\pgm\serv.exe (SAP AG) SRV - (XServer-7210 [Auto | Stopped]) -- C:\Program Files\sdb\programs\pgm\serv.exe (SAP AG) [color=orange]========== Driver Services (SafeList) ==========[/color] DRV - (Accelerometer [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\Accelerometer.sys (Hewlett-Packard Corporation) DRV - (ADIHdAudAddService [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\ADIHdAud.sys (Analog Devices, Inc.) DRV - (AEAudio [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\AEAudio.sys (Andrea Electronics Corporation) DRV - (AgereSoftModem [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\AGRSM.sys (Agere Systems) DRV - (aksbus [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\aksbus.sys (ActivIdentity) DRV - (AKSIM [On_Demand | Stopped]) -- C:\WINDOWS\system32\drivers\aksim.sys (ActivIdentity) DRV - (akspcsc [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\akspcsc.sys (ActivIdentity) DRV - (AliIde [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.) DRV - (amdagp [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.) DRV - (asc [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\asc.sys (Advanced System Products, Inc.) DRV - (asc3550 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\asc3550.sys (Advanced System Products, Inc.) DRV - (ATSWPDRV [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\ATSwpDrv.sys (AuthenTec, Inc.) DRV - (b57w2k [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\b57xp32.sys (Broadcom Corporation) DRV - (btaudio [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\btaudio.sys (Broadcom Corporation.) DRV - (BTDriver [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\btport.sys (Broadcom Corporation.) DRV - (BTKRNL [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\btkrnl.sys (Broadcom Corporation.) DRV - (BTWDNDIS [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\btwdndis.sys (Broadcom Corporation.) DRV - (BTWUSB [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\btwusb.sys (Broadcom Corporation.) DRV - (CmdIde [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.) DRV - (COH_Mon [On_Demand | Stopped]) -- C:\WINDOWS\system32\Drivers\COH_Mon.sys (Symantec Corporation) DRV - (CVirtA [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\CVirtA.sys (Cisco Systems, Inc.) DRV - (CVPNDRVA [Auto | Running]) -- C:\WINDOWS\system32\Drivers\CVPNDRVA.sys (Cisco Systems, Inc.) DRV - (dac2w2k [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys (Mylex Corporation) DRV - (DNE [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\dne2000.sys (Deterministic Networks, Inc.) DRV - (eabfiltr [System | Running]) -- C:\WINDOWS\system32\DRIVERS\eabfiltr.sys (Hewlett-Packard Development Company, L.P.) DRV - (eeCtrl [System | Running]) -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (Symantec Corporation) DRV - (EraserUtilRebootDrv [On_Demand | Running]) -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation) DRV - (FsVga [System | Running]) -- C:\WINDOWS\system32\DRIVERS\fsvga.sys (Microsoft Corporation) DRV - (HBtnKey [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\cpqbttn.sys (Hewlett-Packard Development Company, L.P.) DRV - (HDAudBus [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\HDAudBus.sys (Windows (R) Server 2003 DDK provider) DRV - (hpdskflt [Boot | Running]) -- C:\WINDOWS\system32\DRIVERS\hpdskflt.sys (Hewlett-Packard Corporation) DRV - (ialm [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\igxpmp32.sys (Intel Corporation) DRV - (iaStor [Boot | Running]) -- C:\WINDOWS\system32\DRIVERS\iaStor.sys (Intel Corporation) DRV - (IFXTPM [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS (Infineon Technologies AG) DRV - (mraid35x [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys (American Megatrends Inc.) DRV - (NAVENG [On_Demand | Running]) -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20090602.048\NAVENG.SYS (Symantec Corporation) DRV - (NAVEX15 [On_Demand | Running]) -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20090602.048\NAVEX15.SYS (Symantec Corporation) DRV - (NETw4x32 [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\NETw4x32.sys (Intel Corporation) DRV - (NWADI [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\NWADIenum.sys (Novatel Wireless Inc) DRV - (NWUSBModem [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\nwusbmdm.sys (Novatel Wireless Inc.) DRV - (NWUSBPort [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\nwusbser.sys (Novatel Wireless Inc.) DRV - (Ptilink [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\ptilink.sys (Parallel Technologies, Inc.) DRV - (PxHelp20 [Boot | Running]) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions) DRV - (ql1080 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ql1080.sys (QLogic Corporation) DRV - (ql12160 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ql12160.sys (QLogic Corporation) DRV - (ql1280 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ql1280.sys (QLogic Corporation) DRV - (RadiaMsi [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\radiamsi.sys (Hewlett Packard) DRV - (Secdrv [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) DRV - (sisagp [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation) DRV - (SONYPVU1 [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS (Sony Corporation) DRV - (Sparrow [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sparrow.sys (Adaptec, Inc.) DRV - (SPBBCDrv [System | Running]) -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys (Symantec Corporation) DRV - (SRTSP [System | Running]) -- C:\WINDOWS\System32\Drivers\SRTSP.SYS (Symantec Corporation) DRV - (SRTSPL [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\SRTSPL.SYS (Symantec Corporation) DRV - (SRTSPX [System | Running]) -- C:\WINDOWS\System32\Drivers\SRTSPX.SYS (Symantec Corporation) DRV - (ss_bus [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ss_bus.sys (MCCI Corporation) DRV - (ss_mdfl [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ss_mdfl.sys (MCCI Corporation) DRV - (ss_mdm [On_Demand | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ss_mdm.sys (MCCI Corporation) DRV - (StarOpen [System | Running]) -- C:\WINDOWS\System32\drivers\StarOpen.sys () DRV - (symc810 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\symc810.sys (Symbios Logic Inc.) DRV - (symc8xx [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys (LSI Logic) DRV - (SymEvent [On_Demand | Running]) -- C:\WINDOWS\system32\Drivers\SYMEVENT.SYS (Symantec Corporation) DRV - (Symmpi [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\symmpi.sys (LSI Logic) DRV - (SYMREDRV [On_Demand | Stopped]) -- C:\WINDOWS\System32\Drivers\SYMREDRV.SYS (Symantec Corporation) DRV - (SYMTDI [System | Running]) -- C:\WINDOWS\System32\Drivers\SYMTDI.SYS (Symantec Corporation) DRV - (sym_hi [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys (LSI Logic) DRV - (sym_u3 [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys (LSI Logic) DRV - (SynTP [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\SynTP.sys (Synaptics, Inc.) DRV - (Teefer2 [On_Demand | Running]) -- C:\WINDOWS\system32\DRIVERS\teefer2.sys (Symantec Corporation) DRV - (ultra [Disabled | Stopped]) -- C:\WINDOWS\system32\DRIVERS\ultra.sys (Promise Technology, Inc.) DRV - (vsdatant [On_Demand | Stopped]) -- C:\WINDOWS\system32\vsdatant.sys (Zone Labs LLC) DRV - (WGX [Auto | Running]) -- C:\WINDOWS\System32\Drivers\WGX.SYS (Symantec Corporation) DRV - (WPS [System | Running]) -- C:\WINDOWS\system32\drivers\wpsdrvnt.sys (Symantec Corporation) DRV - (WpsHelper [On_Demand | Running]) -- C:\WINDOWS\system32\drivers\WpsHelper.sys (Symantec Corporation) [color=orange]========== Standard Registry (SafeList) ==========[/color] [color=orange]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://athp.hp.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [Binary data over 100 bytes] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [Binary data over 100 bytes] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://athp.hp.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Update_Check_Page = http://inline.compaq.com/im/is/ect/ctp/ie/addon.asp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://athp.hp.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: (27 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Plugin Class) - {56CD20F0-7C09-11D5-A768-0050042307CE} - C:\PlayerIE\playerIE.dll (SAP AG) O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll (Sun Microsystems, Inc.) O4 - HKLM..\Run: [Communicator] "C:\Program Files\Microsoft Office Communicator\communicator.exe" /fromrunkey (Microsoft Corporation) O4 - HKLM..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart (Google) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VPN Client.lnk = C:\WINDOWS\Installer\{4C271126-C295-4828-A901-5910AE0C258B}\Icon3E5562ED7.ico () O4 - Startup: C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE () O4 - Startup: C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Internet Explorer.lnk = File not found O4 - Startup: C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Microsoft Office Communicator 2007.lnk = C:\WINDOWS\Installer\{E5BA0430-919F-46DD-B656-0796F8A5ADFF}\Comm.Ico () O4 - Startup: C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Microsoft Office Outlook 2003.lnk = C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\outicon.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoMSAppLogo5ChannelNotify = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoBandCustomize = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoToolbarCustomize = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = Hewlett-Packard Internal Use Only O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = This is a private system operated for Hewlett-Packard company business. Authorization from HP management is required to use this system. The HP Standards of Business Conduct and all HP Information Security policies and standards must be strictly followed. Use by unauthorized persons is prohibited and may result in civil and/or criminal liability and prosecution. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableNT4Policy = 1 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\infodelivery present O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\persistence present O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Back = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Forward = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Stop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Refresh = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Home = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Search = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_History = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Favorites = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Media = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Folders = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Fullscreen = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Tools = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_MailNews = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Size = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Print = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Edit = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Discussions = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Cut = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Copy = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Paste = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_Encoding = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Btn_PrintPreview = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoNetHood = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFavoritesMenu = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsMenu = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsHistory = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ClearRecentDocsOnExit = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetTaskbar = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoInternetIcon = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFind = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRun = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetActiveDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayContextMenu = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispScrSavPage = 0 O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra Button: Fix Common Internet Explorer Problems - {E270AB82-96D5-45DB-ABE3-0BC038B92334} - C:\Program Files\Hewlett-Packard\IEToolBar\HP IE Fix.exe (Hewlett-Packard Company) O9 - Extra 'Tools' menuitem : Fix Common Internet Explorer Problems - {E270AB82-96D5-45DB-ABE3-0BC038B92334} - C:\Program Files\Hewlett-Packard\IEToolBar\HP IE Fix.exe (Hewlett-Packard Company) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O15 - HKLM\..Trusted Domains: compaq.co.jp ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com ([ie.config.asia] http in Trusted sites) O15 - HKLM\..Trusted Domains: compaq.com ([ie.config.eur] http in Trusted sites) O15 - HKLM\..Trusted Domains: compaq.com ([ie.config.im.hou] http in Trusted sites) O15 - HKLM\..Trusted Domains: compaq.com ([ie.config.jp] http in Trusted sites) O15 - HKLM\..Trusted Domains: compaq.com.ar ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com.br ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com.cl ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com.co ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com.mx ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com.sg ([]http in Local intranet) O15 - HKLM\..Trusted Domains: compaq.com.ve ([]http in Local intranet) O15 - HKLM\..Trusted Domains: cpqcorp.net ([]http in Local intranet) O15 - HKLM\..Trusted Domains: dec.com ([]http in Local intranet) O15 - HKLM\..Trusted Domains: dec.com ([ie.config.ecom] http in Trusted sites) O15 - HKLM\..Trusted Domains: digital.co.uk ([]http in Local intranet) O15 - HKLM\..Trusted Domains: digital.com ([]http in Local intranet) O15 - HKLM\..Trusted Domains: hp.com ([]http in Local intranet) O15 - HKLM\..Trusted Domains: microcom.com ([]http in Local intranet) O15 - HKLM\..Trusted Domains: tandem.com ([]http in Local intranet) O15 - HKLM\..Trusted Domains: tandem.com ([ie.config] http in Trusted sites) O15 - HKCU\..Trusted Domains: compaq.co.jp ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com ([ie.config.asia] http in Trusted sites) O15 - HKCU\..Trusted Domains: compaq.com ([ie.config.eur] http in Trusted sites) O15 - HKCU\..Trusted Domains: compaq.com ([ie.config.im.hou] http in Trusted sites) O15 - HKCU\..Trusted Domains: compaq.com ([ie.config.jp] http in Trusted sites) O15 - HKCU\..Trusted Domains: compaq.com.ar ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com.br ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com.cl ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com.co ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com.mx ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com.sg ([]http in Local intranet) O15 - HKCU\..Trusted Domains: compaq.com.ve ([]http in Local intranet) O15 - HKCU\..Trusted Domains: cpqcorp.net ([]http in Local intranet) O15 - HKCU\..Trusted Domains: dec.com ([]http in Local intranet) O15 - HKCU\..Trusted Domains: dec.com ([ie.config.ecom] http in Trusted sites) O15 - HKCU\..Trusted Domains: digital.co.uk ([]http in Local intranet) O15 - HKCU\..Trusted Domains: digital.com ([]http in Local intranet) O15 - HKCU\..Trusted Domains: hp.com ([]http in Local intranet) O15 - HKCU\..Trusted Domains: hp.com ([]https in Trusted sites) O15 - HKCU\..Trusted Domains: microcom.com ([]http in Local intranet) O15 - HKCU\..Trusted Domains: tandem.com ([]http in Local intranet) O15 - HKCU\..Trusted Domains: tandem.com ([ie.config] http in Trusted sites) O16 - DPF: {00000033-9593-4264-8B29-930B3E4EDCCD} https://www.rooms.hp.com/vRoom_Cab/WebHPVCInstall33.cab (HPVirtualRooms33 Class) O16 - DPF: {10E0E75E-6701-4134-9D95-C0942ED1F1C8} http://www4.snapfish.co.in/SnapfishOutlookImport.cab (Snapfish Outlook Import ActiveX Control) O16 - DPF: {1851174C-97BD-4217-A0CC-E908F60D5B7A} http://h50203.www5.hp.com/HPITWeb/Customer/cabs/HPISDataManager.CAB (Hewlett-Packard Online Support Services) O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} http://www4.snapfish.co.in/SnapfishActivia.cab (Snapfish Activia) O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} http://picasaweb.google.com/s/v/36.24/uploader2.cab (UploadListView Class) O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://go.divx.com/plugin/DivXBrowserPlugin.cab (Reg Error: Key error.) O16 - DPF: {857ABA85-8AB2-4C9E-8FAA-D2A963739859} https://g4t0070.houston.hp.com/hp/HPPKI.cab (HPPKI Control) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {A996E48C-D3DC-4244-89F7-AFA33EC60679} https://digitalbadge.external.hp.com/hp/capicom.cab (Settings Class) O16 - DPF: {CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_18) O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = asiapacific.cpqcorp.net O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation) O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation) O18 - Protocol\Handler\saphtmlp {D1F8BD1E-7967-11D2-B43A-006094B9EADB} - c:\program files\sap\frontend\sapgui\saphtmlp.dll (SAP AG, Walldorf) O18 - Protocol\Handler\sapr3 {D1F8BD1E-7967-11D2-B43A-006094B9EADB} - c:\program files\sap\frontend\sapgui\saphtmlp.dll (SAP AG, Walldorf) O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\ackpbsc: DllName - C:\WINDOWS\system32\ackpbsc.dll - C:\WINDOWS\system32\ackpbsc.dll (ActivIdentity) O20 - Winlogon\Notify\acunlock: DllName - C:\Program Files\ActivIdentity\ActivClient\acunlock.dll - C:\Program Files\ActivIdentity\ActivClient\acunlock.dll (ActivIdentity) O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) O20 - Winlogon\Notify\NavLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found O24 - Desktop Components:0 () - file:///C:/DOCUME~1/singhpur/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg O24 - Desktop Components:1 (My Current Home Page) - About:Home O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2007-01-26 03:45:51 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{56ffea7d-472d-11de-94c9-001a4b699bb6}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\Setup.exe -- [2008-04-13 17:12:34 | 00,023,040 | ---- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - * [2009-06-03 13:57:50 | 00,000,000 | ---D | M] [color=orange]========== Files/Folders - Created Within 60 Days ==========[/color] [2009-06-03 13:57:05 | 00,000,924 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Screenshots.doc.lnk [2009-06-03 12:03:25 | 00,000,000 | ---D | C] -- C:\Rooter$ [2009-06-03 12:00:53 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\2009-06-03_Registry [2009-06-03 12:00:18 | 00,000,773 | ---- | C] () -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk [2009-06-03 12:00:12 | 00,000,000 | ---D | C] -- C:\Program Files\ERUNT [2009-06-03 11:57:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\singhpur\Desktop\Geeks [2009-06-03 11:48:03 | 00,104,739 | ---- | C] () -- C:\Joyce\My Document\VIRUS- Gotogeeks.pdf [2009-06-03 11:07:00 | 00,000,000 | ---D | C] -- C:\327882R2FWJFW [2009-06-02 22:01:01 | 00,000,372 | ---- | C] () -- C:\WINDOWS\tasks\DLOClientu.exe - ASIAPACIFIC_singhpur.job [2009-06-02 17:59:13 | 21,383,61856 | -HS- | C] () -- C:\hiberfil.sys [2009-06-01 15:09:03 | 00,000,000 | ---D | C] -- C:\WINDOWS\cluster [2009-06-01 15:09:02 | 00,000,000 | ---D | C] -- C:\Program Files\CMAK [2009-05-29 12:37:30 | 00,000,864 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Activity Log.lnk [2009-05-27 11:18:40 | 00,001,099 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Note 1245473 - Add. Info. - SAP Enhancement Package Installer 7.00.pdf.lnk [2009-05-27 11:17:26 | 00,000,950 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Note 158358 - Additions to resetting the upgrade.pdf.lnk [2009-05-27 10:03:12 | 00,049,152 | ---- | C] () -- C:\Joyce\My Document\Hp Autocache settings.doc [2009-05-24 12:36:02 | 00,000,807 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\UNIX Editor.lnk [2009-05-23 11:24:23 | 00,000,944 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Shortcut to 20338022_JASWANT SINGH PURBA _Foreign travel-settlement.xls.lnk [2009-05-22 16:08:59 | 00,000,000 | ---D | C] -- C:\WINDOWS\Internet Logs [2009-05-22 16:06:51 | 00,002,447 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VPN Client.lnk [2009-05-22 16:06:49 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Deterministic Networks [2009-05-22 16:06:42 | 00,000,000 | ---D | C] -- C:\Program Files\Cisco Systems [2009-05-22 15:44:25 | 00,001,594 | ---- | C] () -- C:\WINDOWS\VPNInstall.MIF [2009-05-22 15:42:56 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\Cisco VPN Client 5.0.03.0530 [2009-05-22 14:57:47 | 00,125,328 | ---- | C] (Deterministic Networks, Inc.) -- C:\WINDOWS\System32\drivers\dne2000.sys [2009-05-22 14:57:47 | 00,106,768 | ---- | C] (Deterministic Networks, Inc.) -- C:\WINDOWS\System32\dneinobj.dll [2009-05-22 14:56:38 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\vpn [2009-05-22 14:56:10 | 07,599,422 | ---- | C] () -- C:\Joyce\My Document\vpn.zip [2009-05-21 13:12:20 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\Audible [2009-05-21 09:55:06 | 00,001,099 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Trbleshooting.lnk [2009-05-20 17:17:02 | 00,008,826 | ---- | C] () -- C:\Joyce\My Document\jce_policy-1_5_0.zip [2009-05-20 16:54:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\singhpur\Application Data\SSH [2009-05-20 16:54:36 | 00,000,000 | ---D | C] -- C:\Program Files\SSH Communications Security [2009-05-20 16:53:56 | 05,517,312 | ---- | C] (SSH Communications Security Corp) -- C:\Joyce\My Document\SSH3.2.9.exe [2009-05-19 14:43:33 | 00,000,859 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Shortcut to SAP EHP4 Findings.doc.lnk [2009-05-19 08:39:58 | 00,001,084 | ---- | C] () -- C:\Documents and Settings\singhpur\Desktop\Shortcut to SAP EHP4 Installation Guide ABAP for UNIX on Oracle April2009.pdf.lnk [2009-05-18 11:36:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\singhpur\Application Data\TeamViewer [2009-05-18 11:36:26 | 00,000,885 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\TeamViewer 4.lnk [2009-05-18 11:36:23 | 00,000,000 | ---D | C] -- C:\Program Files\TeamViewer [2009-05-18 11:06:50 | 00,454,656 | ---- | C] (Simon Tatham) -- C:\Joyce\My Document\putty.exe [2009-05-18 11:05:03 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\Reflection [2009-05-18 11:04:58 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\Attachmate [2009-05-12 02:50:45 | 00,049,162 | ---- | C] () -- C:\Joyce\My Document\How to build your self confidance.pdf [2009-05-12 02:03:47 | 02,152,960 | ---- | C] () -- C:\Joyce\My Document\Ticket Resturant Coupens List.xls [2009-05-11 04:28:30 | 00,131,972 | ---- | C] () -- C:\Joyce\My Document\Things to Do before you Travel.pdf [2009-05-07 00:07:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\singhpur\Application Data\Google [2009-05-05 22:10:42 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\Bluetooth Exchange Folder [2009-04-25 02:17:20 | 00,025,600 | ---- | C] () -- C:\Joyce\My Document\Rental Address Apr_mayr.doc [2009-04-21 04:50:43 | 00,032,768 | ---- | C] () -- C:\Joyce\My Document\Rhymes.doc [2009-04-19 23:16:01 | 00,002,459 | ---- | C] () -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Microsoft Office Communicator 2007.lnk [2009-04-19 23:15:24 | 00,002,533 | ---- | C] () -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Microsoft Office Outlook 2003.lnk [2009-04-19 23:14:37 | 00,000,104 | ---- | C] () -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Internet Explorer.lnk [2009-04-14 22:52:18 | 00,284,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pdh.dll [2009-04-14 22:52:17 | 00,401,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rpcss.dll [2009-04-14 22:52:17 | 00,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\services.exe [2009-04-14 22:52:16 | 00,473,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fastprox.dll [2009-04-14 22:52:15 | 00,453,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiprvsd.dll [2009-04-14 22:52:15 | 00,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiprvse.exe [2009-04-14 22:52:13 | 00,715,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntdll.dll [2009-04-14 22:51:15 | 00,002,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpsp4res.dll [2009-04-14 22:51:10 | 01,203,922 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sysmain.sdb [2009-04-14 22:51:08 | 00,215,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wordpad.exe [2009-04-07 22:37:05 | 00,000,000 | ---D | C] -- C:\SAPdump [2009-04-06 23:52:38 | 02,604,884 | ---- | C] () -- C:\Joyce\My Document\read sap ehp Switch ramework.pdf [2009-04-05 23:13:20 | 00,036,560 | ---- | C] () -- C:\Joyce\My Document\Selected copy.exe [2009-04-05 22:21:36 | 00,000,000 | ---D | C] -- C:\Joyce\My Document\My Art [2009-04-05 22:18:40 | 00,000,000 | ---D | C] -- C:\Documents and Settings\singhpur\Application Data\Samsung [2009-04-05 22:16:07 | 00,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt [2009-04-05 21:56:41 | 00,174,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\framedyn.dll [2009-04-05 21:56:09 | 00,109,704 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\ss_mdm.sys [2009-04-05 21:56:09 | 00,083,592 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\ss_bus.sys [2009-04-05 21:56:09 | 00,015,112 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\ss_mdfl.sys [2009-04-05 21:56:09 | 00,012,424 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\ss_whnt.sys [2009-04-05 21:56:09 | 00,012,424 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\ss_wh.sys [2009-04-05 21:56:09 | 00,012,424 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\ss_cmnt.sys [2009-04-05 21:56:09 | 00,012,424 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\ss_cm.sys [2009-04-05 21:56:08 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Samsung_USB_Drivers [2009-04-05 21:55:48 | 00,000,766 | ---- | C] () -- C:\WINDOWS\System32\Uninstall.ico [2009-04-05 21:55:26 | 00,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2009-04-05 21:54:37 | 00,000,000 | ---D | C] -- C:\Program Files\Samsung [2009-02-13 04:20:32 | 00,000,000 | ---- | C] () -- C:\WINDOWS\rfccom.INI [2009-02-13 04:18:22 | 00,000,421 | ---- | C] () -- C:\WINDOWS\sapgrph.ini [2009-02-12 22:42:49 | 00,114,688 | ---- | C] () -- C:\WINDOWS\System32\aicext.dll [2009-01-12 23:36:15 | 00,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4873.dll [2009-01-12 23:36:15 | 00,104,636 | ---- | C] () -- C:\WINDOWS\System32\igmedcompkrn.dll [2008-09-26 01:44:31 | 00,000,076 | ---- | C] () -- C:\WINDOWS\iltwain.ini [2008-09-19 13:52:02 | 00,003,433 | ---- | C] () -- C:\WINDOWS\saplogon.ini [2008-09-16 08:06:40 | 01,064,960 | ---- | C] () -- C:\WINDOWS\System32\h5krnl32.dll [2008-09-16 08:06:40 | 00,188,928 | ---- | C] () -- C:\WINDOWS\System32\h5icon32.dll [2008-09-16 08:06:40 | 00,175,616 | ---- | C] () -- C:\WINDOWS\System32\h5menu32.dll [2008-09-16 08:06:40 | 00,095,744 | ---- | C] () -- C:\WINDOWS\System32\h5rtf32.dll [2008-09-16 08:06:40 | 00,051,200 | ---- | C] () -- C:\WINDOWS\System32\h5tool32.dll [2008-08-29 23:50:35 | 00,000,000 | ---- | C] () -- C:\WINDOWS\iplookup.INI [2008-08-11 05:08:12 | 00,000,172 | ---- | C] () -- C:\WINDOWS\el.ini [2008-06-07 03:07:31 | 00,000,025 | ---- | C] () -- C:\WINDOWS\cdplayer.ini [2008-06-05 13:13:17 | 00,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI [2008-06-04 14:31:35 | 00,000,000 | ---- | C] () -- C:\WINDOWS\VPC32.INI [2008-04-17 09:08:56 | 00,197,408 | ---- | C] () -- C:\WINDOWS\System32\vpnapi.dll [2008-04-17 09:08:44 | 00,193,312 | ---- | C] () -- C:\WINDOWS\System32\CSGina.dll [2008-02-05 22:48:13 | 00,000,000 | ---- | C] () -- C:\WINDOWS\HPMProp.INI [2008-02-05 22:47:26 | 00,094,274 | ---- | C] () -- C:\WINDOWS\System32\HPBHEALR.DLL [2008-02-01 00:25:48 | 00,000,036 | ---- | C] () -- C:\WINDOWS\webica.ini [2008-01-14 08:47:06 | 00,099,712 | ---- | C] () -- C:\WINDOWS\HPBroker.dll [2007-10-18 01:58:22 | 00,015,872 | ---- | C] () -- C:\WINDOWS\System32\vtssm32.dll [2007-10-16 02:32:12 | 00,000,028 | ---- | C] () -- C:\WINDOWS\pdf995.ini [2007-10-15 23:15:08 | 00,051,716 | ---- | C] () -- C:\WINDOWS\System32\pdf995mon.dll [2007-10-15 23:15:08 | 00,000,060 | ---- | C] () -- C:\WINDOWS\wpd99.drv [2007-10-15 03:04:38 | 00,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll [2007-10-15 03:04:38 | 00,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll [2007-10-15 03:04:38 | 00,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll [2007-10-15 03:04:38 | 00,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll [2007-10-15 03:04:38 | 00,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll [2007-10-15 03:04:38 | 00,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll [2007-05-04 04:02:17 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2007-04-17 02:33:15 | 01,174,000 | ---- | C] () -- C:\WINDOWS\System32\igmedkrn.dll [2007-04-17 02:33:15 | 00,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4785.dll [2007-02-06 02:50:00 | 02,842,624 | ---- | C] () -- C:\WINDOWS\System32\btwicons.dll [2007-02-06 02:25:52 | 00,090,112 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll [2007-01-26 09:31:08 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2007-01-26 08:01:52 | 00,000,041 | ---- | C] () -- C:\WINDOWS\CSERVE.INI [2007-01-26 03:49:51 | 00,002,401 | ---- | C] () -- C:\WINDOWS\System32\drivers\AlKernel.sys [2005-02-16 23:11:32 | 00,000,603 | ---- | C] () -- C:\WINDOWS\System32\BTNeighborhood.dll.manifest [2005-02-16 23:11:30 | 00,000,593 | ---- | C] () -- C:\WINDOWS\System32\btcss.dll.manifest [2004-10-26 12:30:14 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini [2003-01-07 16:05:08 | 00,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI [2001-11-14 00:26:00 | 01,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll [1979-12-31 17:00:00 | 00,000,693 | ---- | C] () -- C:\WINDOWS\win.ini [1979-12-31 17:00:00 | 00,000,285 | ---- | C] () -- C:\WINDOWS\system.ini [color=orange]========== Files - Modified Within 60 Days ==========[/color] [FILE handle not seen by OS] -- C:\WINDOWS\zip.exe [FILE handle not seen by OS] -- C:\WINDOWS\Zapotec.bmp [FILE handle not seen by OS] -- C:\WINDOWS\wpd99.drv [FILE handle not seen by OS] -- C:\WINDOWS\WMSysPr9.prx [FILE handle not seen by OS] -- C:\WINDOWS\winnt256.bmp [FILE handle not seen by OS] -- C:\WINDOWS\winnt.bmp [FILE handle not seen by OS] -- C:\WINDOWS\winhlp32.exe [FILE handle not seen by OS] -- C:\WINDOWS\winhelp.exe [FILE handle not seen by OS] -- C:\WINDOWS\WindowsShell.Manifest [FILE handle not seen by OS] -- C:\WINDOWS\win.ini [FILE handle not seen by OS] -- C:\WINDOWS\webica.ini [FILE handle not seen by OS] -- C:\WINDOWS\VPNInstall.MIF [FILE handle not seen by OS] -- C:\WINDOWS\VPC32.INI [FILE handle not seen by OS] -- C:\WINDOWS\vmmreg32.dll [FILE handle not seen by OS] -- C:\WINDOWS\VFind.exe [FILE handle not seen by OS] -- C:\WINDOWS\vbaddin.ini [FILE handle not seen by OS] -- C:\WINDOWS\vb.ini [FILE handle not seen by OS] -- C:\WINDOWS\unzip.exe [FILE handle not seen by OS] -- C:\WINDOWS\twunk_32.exe [FILE handle not seen by OS] -- C:\WINDOWS\twunk_16.exe [FILE handle not seen by OS] -- C:\WINDOWS\twain_32.dll [FILE handle not seen by OS] -- C:\WINDOWS\twain.dll [FILE handle not seen by OS] -- C:\WINDOWS\tasks\SA.DAT [FILE handle not seen by OS] -- C:\WINDOWS\tasks\DLOClientu.exe - ASIAPACIFIC_singhpur.job [FILE handle not seen by OS] -- C:\WINDOWS\tasks\desktop.ini [FILE handle not seen by OS] -- C:\WINDOWS\TASKMAN.EXE [FILE handle not seen by OS] -- C:\WINDOWS\System32\zonedon.reg [FILE handle not seen by OS] -- C:\WINDOWS\System32\zonedoff.reg [FILE handle not seen by OS] -- C:\WINDOWS\System32\zipfldr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xpsp4res.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xpsp3res.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xpsp2res.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xpsp1res.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xpob2res.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xolehlp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xmlprovi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xmlprov.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xmllite.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xjis.nls [FILE handle not seen by OS] -- C:\WINDOWS\System32\xenroll.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\xcopy.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\xactsrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wzcsvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wzcsapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wzcdlg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuweb.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wups2.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wups.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wupdmgr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\WUDFx.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WudfSvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WudfPlatform.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WudfHost.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\WUDFCoinstaller.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wucltui.dll.mui [FILE handle not seen by OS] -- C:\WINDOWS\System32\wucltui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuauserv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuaueng1.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuaueng.dll.mui [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuaueng.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuaucpl.cpl.mui [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuaucpl.cpl [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuauclt1.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuauclt.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuapi.dll.mui [FILE handle not seen by OS] -- C:\WINDOWS\System32\wuapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wtsapi32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wstrenderer.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\wstpager.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\wstdecod.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wsock32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wsnmp32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshtcpip.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshrm.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshom.ocx [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshnetbs.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshisn.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshext.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshcon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshbth.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wshatm.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wsecedit.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wscui.cpl [FILE handle not seen by OS] -- C:\WINDOWS\System32\wscsvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wscript.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wscntfy.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\ws2help.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\ws2_32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\write.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpnpinst.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpdsp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WPDShServiceObj.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpdshextres.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpdshextautoplay.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\WpdShext.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpdmtpus.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpdmtp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpdconns.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpd_ci.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpabaln.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wpa.dbl [FILE handle not seen by OS] -- C:\WINDOWS\System32\wowfaxui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wowfax.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wowexec.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wowdeb.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wow32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVXENCD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVSENCD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVSDECD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVENCOD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmvds32.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmvdmoe2.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmvdmod.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVDECOD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVCore.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVADVE.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMVADVD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmv8ds32.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmstream.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMSPDMOE.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMSPDMOD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmsdmoe2.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmsdmoe.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmsdmod.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpsrcwp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpshell.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpns.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpmde.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmploc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmphoto.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpencen.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpeffects.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpdxm.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpcore.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpcd.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmpasf.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmp.ocx [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMNetmgr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmiscmgr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmiprop.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmimgmt.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmidx.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmerror.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmerrenu.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmdrmsdk.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmdrmnet.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmdrmdev.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmdmps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmdmlog.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wmasf.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMADMOE.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WMADMOD.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wlnotify.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wldap32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wlanapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wkssvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wjview.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wisptis.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\WINZM.MB [FILE handle not seen by OS] -- C:\WINDOWS\System32\winzm.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\winver.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wintrust.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winstrm.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsta.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winssnap.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsrpc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winspool.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\winspool.drv [FILE handle not seen by OS] -- C:\WINDOWS\System32\WINSP.MB [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsp.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsock.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsmon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsmgmt.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\winshfhc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winsevnt.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winscard.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winrnr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WINPY.MB [FILE handle not seen by OS] -- C:\WINDOWS\System32\winpy.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\winoldap.mod [FILE handle not seen by OS] -- C:\WINDOWS\System32\winntbbu.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winnls.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winmsd.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\winmm.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winmine.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\winlogon.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\winipsec.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wininet.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winime.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\winhttp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winhlp32.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\winhelp.hlp [FILE handle not seen by OS] -- C:\WINDOWS\System32\wingb.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\WinFXDocObj.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\winfax.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WindowsLogon.manifest [FILE handle not seen by OS] -- C:\WINDOWS\System32\windowscodecsext.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\windowscodecs.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winchat.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\winbrand.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\winar30.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\win87em.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\win32spl.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\win32k.sys [FILE handle not seen by OS] -- C:\WINDOWS\System32\win.com [FILE handle not seen by OS] -- C:\WINDOWS\System32\wifeman.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\WidcommSdk.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiavusd.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiavideo.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiashext.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiasf.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiaservc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiascr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiadss.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiadefui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wiaacmgr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\WgaTray.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\WgaLogon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wfwnet.drv [FILE handle not seen by OS] -- C:\WINDOWS\System32\wextract.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\webvw.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\webhits.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\webfldrs.msi [FILE handle not seen by OS] -- C:\WINDOWS\System32\webclnt.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\webcheck.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wdmaud.drv [FILE handle not seen by OS] -- C:\WINDOWS\System32\wdl.trm [FILE handle not seen by OS] -- C:\WINDOWS\System32\wdigest.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wdfmgr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\wdfapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wdba.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbtapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbdbase.sve [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbdbase.nld [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbdbase.ita [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbdbase.fra [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbdbase.esn [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbdbase.enu [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbdbase.deu [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbcache.sve [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbcache.nld [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbcache.ita [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbcache.fra [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbcache.esn [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbcache.enu [FILE handle not seen by OS] -- C:\WINDOWS\System32\wbcache.deu [FILE handle not seen by OS] -- C:\WINDOWS\System32\wavemsp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\watchdog.sys [FILE handle not seen by OS] -- C:\WINDOWS\System32\w3ssl.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\w32topl.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\w32tm.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\w32time.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\VXBLOCK.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vwipxspx.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\vwipxspx.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vtssm32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vtssdl32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vssver2.scc [FILE handle not seen by OS] -- C:\WINDOWS\System32\vssvc.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\vssapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vssadmin.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\vss_ps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vsinit.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\VSFLEX3.OCX [FILE handle not seen by OS] -- C:\WINDOWS\System32\vsdatant.sys [FILE handle not seen by OS] -- C:\WINDOWS\System32\vsdata.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vrfc32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vpnapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vmhelper.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vjoy.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\View Channels.scf [FILE handle not seen by OS] -- C:\WINDOWS\System32\vidcap.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\vga64k.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vga256.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vga.drv [FILE handle not seen by OS] -- C:\WINDOWS\System32\vga.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vfpodbc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\version.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\verifier.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\verifier.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\verclsid.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\ver.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\VEN2232.OLB [FILE handle not seen by OS] -- C:\WINDOWS\System32\vdmredir.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vdmdbg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vcdex.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vbscript.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vbrun300.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vbisurf.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\vbicodec.ax [FILE handle not seen by OS] -- C:\WINDOWS\System32\Vbar332.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\VBAME.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System32\vbajet32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\VBAEND32.OLB [FILE handle not seen by OS] -- C:\WINDOWS\System32\VBAEN32.OLB [FILE handle not seen by OS] -- C:\WINDOWS\System32\Vb5db.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\vb40032.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\v7vga.rom [FILE handle not seen by OS] -- C:\WINDOWS\System32\uxtheme.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\uwdf.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\utilman.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\utildll.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrvpa.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrvoica.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrv80a.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrv42a.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrsvpia.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrshuta.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrsdpia.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrrtosa.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrprbda.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrmlnka.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrlogon.cmd [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrlbva.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrfaxa.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrdtea.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrdpa.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrcoina.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usrcntra.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usp10.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\userinit.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\userenv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\user32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\user.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\usbui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\usbmon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\urlmon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\url.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\ureg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\ups.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\upnpui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\upnphost.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\upnpcont.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\upnp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\untfs.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\unlodctr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\uniplat.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\Uninstall.ico [FILE handle not seen by OS] -- C:\WINDOWS\System32\unimdmat.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\unimdm.tsp [FILE handle not seen by OS] -- C:\WINDOWS\System32\uniime.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\unicode.nls [FILE handle not seen by OS] -- C:\WINDOWS\System32\unicdime.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\umpnpmgr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\umloader.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\umdmxfrm.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\umandlg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\ulib.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\ufat.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\udhisapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\uddi.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\uddi.mmc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tzchange.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\typeperf.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\typelib.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\txflog.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\twext.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsuserex.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tssoft32.acm [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsshutdn.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tspkg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsmmc.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\tslabels.ini [FILE handle not seen by OS] -- C:\WINDOWS\System32\tslabels.h [FILE handle not seen by OS] -- C:\WINDOWS\System32\tskill.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsgqec.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsdiscon.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsddd.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsd32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tscupgrd.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tscon.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tscfgwmi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsbyuv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsappcmp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tsadmin.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\trkwks.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tree.com [FILE handle not seen by OS] -- C:\WINDOWS\System32\traffic.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tracert6.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tracert.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tracerpt.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tourstart.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\toolhelp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tlntsvrp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tlntsvr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tlntsess.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tlntadmn.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tlbinf32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tintlgnt.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\timer.drv [FILE handle not seen by OS] -- C:\WINDOWS\System32\timedate.cpl [FILE handle not seen by OS] -- C:\WINDOWS\System32\ticrf.rat [FILE handle not seen by OS] -- C:\WINDOWS\System32\themeui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\Thawbrkr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tftp.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\termsrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\termmgr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\termcap [FILE handle not seen by OS] -- C:\WINDOWS\System32\telnet.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\telephon.cpl [FILE handle not seen by OS] -- C:\WINDOWS\System32\tdc.ocx [FILE handle not seen by OS] -- C:\WINDOWS\System32\tcpsvcs.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tcpmonui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tcpmon.ini [FILE handle not seen by OS] -- C:\WINDOWS\System32\tcpmon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tcpmib.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tcmsetup.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\taskmgr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\taskman.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tasklist.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\taskkill.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapiui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapisrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapisnap.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapiperf.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapimgmt.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapi32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapi3.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\tabctl32.ocx [FILE handle not seen by OS] -- C:\WINDOWS\System32\t2embed.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\systray.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\systeminfo.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\system.drv [FILE handle not seen by OS] -- C:\WINDOWS\System32\syssetup.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysprtj.sep [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysprint.sep [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysocmgr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysmon.ocx [FILE handle not seen by OS] -- C:\WINDOWS\System32\syskey.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysinv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysinfo.ocx [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysedit.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sysdm.cpl [FILE handle not seen by OS] -- C:\WINDOWS\System32\SynTPCo4.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\SynTPAPI.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\syncui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\SynCtrl.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\SynCOM.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\synceng.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\syncapp.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\SymVPN.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\SymRedir.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\SymNeti.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sxs.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\swprv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\svcpack.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\svchost.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\subst.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\subrange.uce [FILE handle not seen by OS] -- C:\WINDOWS\System32\strmfilt.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\strmdll.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\streamci.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\storprop.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\storage.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\stobject.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\stimon.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sti_ci.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sti.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\stdole32.tlb [FILE handle not seen by OS] -- C:\WINDOWS\System32\stdole2.tlb [FILE handle not seen by OS] -- C:\WINDOWS\System32\stclient.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\StartArchiveUninstall.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sstext3d.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssstars.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\sspipes.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssmyst.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssmypics.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssmarque.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssflwbox.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssdpsrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssdpapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\ssbezier.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\ss3dfo.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\srvsvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\srsvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\srrstr.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\srclient.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sqlwoa.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sqlwid.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sqlunirl.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sqlsrv32.rll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sqlsrv32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sqlsodbc.chm [FILE handle not seen by OS] -- C:\WINDOWS\System32\spxcoins.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\spupdwxp.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\spupdsvc.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sprio800.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sprio600.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sprestrt.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\spoolsv.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\spoolss.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\spnpinst.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\spnike.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\spmsg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\spiisupd.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\spider.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\spdwnwxp.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sound.drv [FILE handle not seen by OS] -- C:\WINDOWS\System32\sorttbls.nls [FILE handle not seen by OS] -- C:\WINDOWS\System32\sortkey.nls [FILE handle not seen by OS] -- C:\WINDOWS\System32\sort.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sol.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\softpub.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\snmpsnap.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\snmpapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sndvol32.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sndrec32.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\smtpapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\smss.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\smlogsvc.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\smlogcfg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\smbinst.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\slserv.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\slrundll.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\slgen.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\slextspk.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\slcoinst.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\slbrccsp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\slbiop.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\slbcsp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\slayerxp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sl_anet.acm [FILE handle not seen by OS] -- C:\WINDOWS\System32\skeys.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\skdll.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sisbkup.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\simpdata.tlb [FILE handle not seen by OS] -- C:\WINDOWS\System32\sigverif.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sigtab.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shutdown.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\shsvcs.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shscrap.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shrpubw.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\shmgrate.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\shmedia.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shlwapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shimgvw.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shimeng.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shiftjis.uce [FILE handle not seen by OS] -- C:\WINDOWS\System32\shgina.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shfolder.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shellstyle.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shell32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shell.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shdocvw.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\shdoclc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\share.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\shadow.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sfmapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sfcfiles.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sfc_os.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sfc.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sfc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\setver.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\setupn.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\setupdll.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\setupapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\setup.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\setup.bmp [FILE handle not seen by OS] -- C:\WINDOWS\System32\sethc.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sessmgr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\serwvdrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\services.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\services.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\servdeps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\serialui.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\senscfg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sensapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sens.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sendmail.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sendcmsg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\security.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\secur32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\secupd.sig [FILE handle not seen by OS] -- C:\WINDOWS\System32\secupd.dat [FILE handle not seen by OS] -- C:\WINDOWS\System32\secpol.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\seclogon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\secedit.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sdpblb.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sdhcinst.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sdbinst.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\scrrun.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\scrobj.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\scrnsave.scr [FILE handle not seen by OS] -- C:\WINDOWS\System32\scriptpw.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\scredir.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\SCP32.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System32\sclgntfy.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\schtasks.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\schmmgmt.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\schmmgmt.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\schedsvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\schannel.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\scesrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\scecli.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sccsccp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sccbase.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\scardsvr.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\scardssp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\scarddlg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sc.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sbeio.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\sbe.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\savedump.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sav10uninstall.bat [FILE handle not seen by OS] -- C:\WINDOWS\System32\sav10_uni.rup [FILE handle not seen by OS] -- C:\WINDOWS\System32\sapregsv.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\sapi.cpl.manifest [FILE handle not seen by OS] -- C:\WINDOWS\System32\sapfcpl.cpl [FILE handle not seen by OS] -- C:\WINDOWS\System32\SAPbtmp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\samsrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\samlib.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\safrslv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\safrcdlg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\s3gnb.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\S32EVNT1.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System32\rwnh.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rwinsta.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\runonce.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rundll32.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\runas.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rtutils.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rtm.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rtipxmib.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rtcshare.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsvpsp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsvpperf.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsvpmsg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsvpcnts.h [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsvp.ini [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsvp.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rssubps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsshell.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsservps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsopprov.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsop.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsnotify.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsmui.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsmsink.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsmps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsm.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsjob.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rshx32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsh.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsfsaps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsengps.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsconn.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rscommon.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsaenh.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsadmin.msc [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsadmin.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rsaci.rat [FILE handle not seen by OS] -- C:\WINDOWS\System32\rpcss.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rpcrt4.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rpcns4.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\routetab.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\routemon.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\route.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rigpsnap.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\richtx32.ocx [FILE handle not seen by OS] -- C:\WINDOWS\System32\riched32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\riched20.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rhttpaa.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rexec.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\resutils.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\reset.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\replace.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rend.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\remroam.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\remotesp.tsp [FILE handle not seen by OS] -- C:\WINDOWS\System32\remotepg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\relog.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\regwizc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\regwiz.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\regsvr32.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\regsvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\regini.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\regedt32.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\regapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\reg.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\redir.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\recover.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdshost.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdsaddin.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdpwsx.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdpsnd.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdpdd.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdpclip.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdpcfgex.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\RDOCURS.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System32\rdchost.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rcp.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rcimlby.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rcbdyctl.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rastls.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rastapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasser.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rassapi.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasrad.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasqec.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasctrs.ini [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasctrs.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasctrnm.h [FILE handle not seen by OS] -- C:\WINDOWS\System32\raschap.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasautou.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasauto.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasapi32.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\rasadhlp.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\racpldlg.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\qwinsta.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\qutil.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\quick.ime [FILE handle not seen by OS] -- C:\WINDOWS\System32\query.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\quartz.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\qprocess.exe [FILE handle not seen by OS] -- C:\WINDOWS\System32\qosname.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\PXWMA.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\PxWave.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\PxMas.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\pxdrv.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\px.ini [FILE handle not seen by OS] -- C:\WINDOWS\System32\Px.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\pusbfd2.vxd [FILE handle not seen by OS] -- C:\WINDOWS\System32\pusbfd1.sys [FILE handle not seen by OS] -- C:\WINDOWS\System32\pubprn.vbs [FILE handle not seen by OS] -- C:\WINDOWS\System32\pstorsvc.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\pstorec.dll [FILE handle not seen by OS] -- C:\WINDOWS\System32\psnppagn.dll [FILE handle not seen by OS] -- C:\WINDOWS\System\winspool.drv [FILE handle not seen by OS] -- C:\WINDOWS\System\WFWNET.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\VGA.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\VER.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\TIMER.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\TAPI.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\SYSTEM.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\stdole.tlb [FILE handle not seen by OS] -- C:\WINDOWS\System\SOUND.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\SHELL.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\setup.inf [FILE handle not seen by OS] -- C:\WINDOWS\System\OLESVR.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\OLECLI.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\MSVIDEO.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\MOUSE.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\MMTASK.TSK [FILE handle not seen by OS] -- C:\WINDOWS\System\MMSYSTEM.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\MCIWAVE.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\MCISEQ.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\MCIAVI.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\LZEXPAND.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\KEYBOARD.DRV [FILE handle not seen by OS] -- C:\WINDOWS\System\COMMDLG.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\AVIFILE.DLL [FILE handle not seen by OS] -- C:\WINDOWS\System\AVICAP.DLL [FILE handle not seen by OS] -- C:\WINDOWS\system.ini [FILE handle not seen by OS] -- C:\WINDOWS\Sygate_uninstall.exe [FILE handle not seen by OS] -- C:\WINDOWS\swxcacls.exe [FILE handle not seen by OS] -- C:\WINDOWS\swsc.exe [FILE handle not seen by OS] -- C:\WINDOWS\swreg.exe [FILE handle not seen by OS] -- C:\WINDOWS\stauto.dll [FILE handle not seen by OS] -- C:\WINDOWS\Soap Bubbles.bmp [FILE handle not seen by OS] -- C:\WINDOWS\smscfg.ini [FILE handle not seen by OS] -- C:\WINDOWS\slrundll.exe [FILE handle not seen by OS] -- C:\WINDOWS\shutdown.exe [FILE handle not seen by OS] -- C:\WINDOWS\shortcut.exe [FILE handle not seen by OS] -- C:\WINDOWS\setdebug.exe [FILE handle not seen by OS] -- C:\WINDOWS\sepsysplant.exe [FILE handle not seen by OS] -- C:\WINDOWS\sed.exe [FILE handle not seen by OS] -- C:\WINDOWS\SAV10Cleanup.vbs [FILE handle not seen by OS] -- C:\WINDOWS\saplogon.ini [FILE handle not seen by OS] -- C:\WINDOWS\sapgrph.ini [FILE handle not seen by OS] -- C:\WINDOWS\Santa Fe Stucco.bmp [FILE handle not seen by OS] -- C:\WINDOWS\River Sumida.bmp [FILE handle not seen by OS] -- C:\WINDOWS\Rhododendron.bmp [FILE handle not seen by OS] -- C:\WINDOWS\rfccom.INI [FILE handle not seen by OS] -- C:\WINDOWS\REGLOCS.OLD [FILE handle not seen by OS] -- C:\WINDOWS\regedit.exe [FILE handle not seen by OS] -- C:\WINDOWS\Prairie Wind.bmp [FILE handle not seen by OS] -- C:\WINDOWS\pin.vbs [FILE handle not seen by OS] -- C:\WINDOWS\pin.cmd [FILE handle not seen by OS] -- C:\WINDOWS\pdf995.ini [FILE handle not seen by OS] -- C:\WINDOWS\ODBCINST.INI [FILE handle not seen by OS] -- C:\WINDOWS\ODBC.INI [FILE handle not seen by OS] -- C:\WINDOWS\notepad.exe [FILE handle not seen by OS] -- C:\WINDOWS\Nircmd.exe [FILE handle not seen by OS] -- C:\WINDOWS\n5434h.dx [FILE handle not seen by OS] -- C:\WINDOWS\msdfmap.ini [FILE handle not seen by OS] -- C:\WINDOWS\killAVScan.vbs [FILE handle not seen by OS] -- C:\WINDOWS\jautoexp.dat [FILE handle not seen by OS] -- C:\WINDOWS\IsUninst.exe [FILE handle not seen by OS] -- C:\WINDOWS\ispro.ico [FILE handle not seen by OS] -- C:\WINDOWS\iplookup.INI [FILE handle not seen by OS] -- C:\WINDOWS\iPlayer.INI [FILE handle not seen by OS] -- C:\WINDOWS\imsins.BAK [FILE handle not seen by OS] -- C:\WINDOWS\iltwain.ini [FILE handle not seen by OS] -- C:\WINDOWS\hpqins13.dat [FILE handle not seen by OS] -- C:\WINDOWS\HPMProp.INI [FILE handle not seen by OS] -- C:\WINDOWS\hpmonZ.exe [FILE handle not seen by OS] -- C:\WINDOWS\HPBroker.dll [FILE handle not seen by OS] -- C:\WINDOWS\hh.exe [FILE handle not seen by OS] -- C:\WINDOWS\grep.exe [FILE handle not seen by OS] -- C:\WINDOWS\Greenstone.bmp [FILE handle not seen by OS] -- C:\WINDOWS\Gone Fishing.bmp [FILE handle not seen by OS] -- C:\WINDOWS\FeatherTexture.bmp [FILE handle not seen by OS] -- C:\WINDOWS\fdsv.exe [FILE handle not seen by OS] -- C:\WINDOWS\explorer.scf [FILE handle not seen by OS] -- C:\WINDOWS\explorer.exe [FILE handle not seen by OS] -- C:\WINDOWS\el.ini [FILE handle not seen by OS] -- C:\WINDOWS\devenum.exe [FILE handle not seen by OS] -- C:\WINDOWS\details.xml [FILE handle not seen by OS] -- C:\WINDOWS\desktop.ini [FILE handle not seen by OS] -- C:\WINDOWS\Ctregrun.exe [FILE handle not seen by OS] -- C:\WINDOWS\CSERVE.INI [FILE handle not seen by OS] -- C:\WINDOWS\control.ini [FILE handle not seen by OS] -- C:\WINDOWS\Coffee Bean.bmp [FILE handle not seen by OS] -- C:\WINDOWS\clock.avi [FILE handle not seen by OS] -- C:\WINDOWS\cdplayer.ini [FILE handle not seen by OS] -- C:\WINDOWS\bootstat.dat [FILE handle not seen by OS] -- C:\WINDOWS\Blue Lace 16.bmp [FILE handle not seen by OS] -- C:\WINDOWS\agrsmdel.exe [FILE handle not seen by OS] -- C:\WINDOWS\adminScanInstall.EXE [FILE handle not seen by OS] -- C:\WINDOWS\Active Setup Log.BAK [FILE handle not seen by OS] -- C:\WINDOWS\_default.pif [FILE handle not seen by OS] -- C:\Program Files\Common Files\sapxlhelper.dll [FILE handle not seen by OS] -- C:\Program Files\Common Files\sapconsr3.dll [FILE handle not seen by OS] -- C:\Program Files\Common Files\sapconsaccess.dll [FILE handle not seen by OS] -- C:\Program Files\Common Files\SAPActiveXL_nosig.xlt [FILE handle not seen by OS] -- C:\Program Files\Common Files\SAPActiveXL.xlt [FILE handle not seen by OS] -- C:\Program Files\Common Files\DigitalSignature.ocx [FILE handle not seen by OS] -- C:\Joyce\My Document\vpn.zip [FILE handle not seen by OS] -- C:\Joyce\My Document\VIRUS- Gotogeeks.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\Ticket Resturant Coupens List.xls [FILE handle not seen by OS] -- C:\Joyce\My Document\Things to Do before you Travel.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\Taxi Receipt.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Sticky.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Sticky A CheckList for You.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\SSH3.2.9.exe [FILE handle not seen by OS] -- C:\Joyce\My Document\SpiceJet_Itinerary.html [FILE handle not seen by OS] -- C:\Joyce\My Document\Selected copy.exe [FILE handle not seen by OS] -- C:\Joyce\My Document\Road Layout .bmp [FILE handle not seen by OS] -- C:\Joyce\My Document\Rhymes.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Rental Address Apr_mayr.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\read sap ehp Switch ramework.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\RationCard in Punjab.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\Ration Card Process.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\putty.exe [FILE handle not seen by OS] -- C:\Joyce\My Document\PF Transfer Blank 13revised.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\Passport Size _SnapFish Printable.JPG [FILE handle not seen by OS] -- C:\Joyce\My Document\MEDICALREIMBURSEMENT-CLAIM.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Mayfair Cover letter.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Karnataka Tourism Site Packages.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\jce_policy-1_5_0.zip [FILE handle not seen by OS] -- C:\Joyce\My Document\JaswantNEW.pfx [FILE handle not seen by OS] -- C:\Joyce\My Document\ICICICC.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\ICICI Watch Issue.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\HP Holidays 2009.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\HP Gas Jagdish Agency Contact Info.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Hp Autocache settings.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\How to build your self confidance.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\Hand Over Document.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Electrol Entry Form6.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\EDS ACCESS INFO jaswant.purba@hp.com.htm [FILE handle not seen by OS] -- C:\Joyce\My Document\desktop.ini [FILE handle not seen by OS] -- C:\Joyce\My Document\Default.rdp [FILE handle not seen by OS] -- C:\Joyce\My Document\Copy of Passport Size _SnapFish Printable.JPG [FILE handle not seen by OS] -- C:\Joyce\My Document\BOOKS24x7 HP.doc [FILE handle not seen by OS] -- C:\Joyce\My Document\Banksifsc_1.xls [FILE handle not seen by OS] -- C:\Joyce\My Document\Bangalore Chennai Buses.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\Airport Shuttle info.pdf [FILE handle not seen by OS] -- C:\Joyce\My Document\Airport EasyGuide.pdf [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Microsoft Office Outlook 2003.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Microsoft Office Communicator 2007.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\Internet Explorer.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Start Menu\Programs\Startup\desktop.ini [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Local Settings\desktop.ini [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\UNIX Editor.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Trbleshooting.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Thumbs.db [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Shortcut to SAP EHP4 Installation Guide ABAP for UNIX on Oracle April2009.pdf.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Shortcut to SAP EHP4 Findings.doc.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Shortcut to PDPlan.xls.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Shortcut to myHelp.xls.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Shortcut to 20338022_JASWANT SINGH PURBA _Foreign travel-settlement.xls.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Screenshots.doc.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\SAPHQ.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\SAPCLOROX.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\SAP Logon.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Resume.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Remote Access to HP Network.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Read eBooks.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Note 158358 - Additions to resetting the upgrade.pdf.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Note 1245473 - Add. Info. - SAP Enhancement Package Installer 7.00.pdf.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\ComboFix.exe [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\ATF_Cleaner.exe [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Desktop\Activity Log.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\singhpur\Application Data\desktop.ini [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VPN Client.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Documents\desktop.ini [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Desktop\TeamViewer 4.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Application Data\LUUnInstall.LiveUpdate [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt [FILE handle not seen by OS] -- C:\Documents and Settings\All Users\Application Data\desktop.ini [2009-06-03 18:26:37 | 00,475,154 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2009-06-03 18:26:37 | 00,404,536 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2009-06-03 18:26:37 | 00,063,590 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2009-06-03 18:21:48 | 21,383,61856 | -HS- | M] () -- C:\hiberfil.sys [2009-05-26 13:20:08 | 00,040,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2009-05-26 13:19:56 | 00,019,096 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2009-05-10 21:45:11 | 00,361,992 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009-05-07 00:16:29 | 24,699,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe [2009-04-09 00:37:01 | 00,000,281 | RHS- | M] () -- C:\boot.ini [2009-04-05 22:15:34 | 00,005,632 | ---- | M] () -- C:\WINDOWS\System32\drivers\StarOpen.sys < End of report > [/color]