--- Search result list --- --- System information --- Windows XP (Build: 2600) Service Pack 2 / Windows XP / SP3: Windows XP Hotfix - KB834707 / Windows XP / SP3: Windows XP Hotfix - KB867282 / Windows XP / SP3: Windows XP Hotfix - KB873333 / Windows XP / SP3: Windows XP Hotfix - KB873339 / Windows XP / SP3: Security Update for Windows XP (KB883939) / Windows XP / SP3: Windows XP Hotfix - KB885250 / Windows XP / SP3: Windows XP Hotfix - KB885835 / Windows XP / SP3: Windows XP Hotfix - KB885836 / Windows XP / SP3: Windows XP Hotfix - KB886185 / Windows XP / SP3: Windows XP Hotfix - KB887472 / Windows XP / SP3: Windows XP Hotfix - KB887742 / Windows XP / SP3: Windows XP Hotfix - KB888113 / Windows XP / SP3: Windows XP Hotfix - KB888302 / Windows XP / SP3: Security Update for Windows XP (KB890046) / Windows XP / SP3: Windows XP Hotfix - KB890047 / Windows XP / SP3: Windows XP Hotfix - KB890175 / Windows XP / SP3: Windows XP Hotfix - KB890859 / Windows XP / SP3: Windows XP Hotfix - KB890923 / Windows XP / SP3: Windows XP Hotfix - KB891781 / Windows XP / SP3: Security Update for Windows XP (KB893066) / Windows XP / SP3: Windows XP Hotfix - KB893086 / Windows XP / SP3: Security Update for Windows XP (KB893756) / Windows XP / SP3: Windows Installer 3.1 (KB893803) / Windows XP / SP3: Windows Installer 3.1 (KB893803) / Windows XP / SP3: Update for Windows XP (KB894391) / Windows XP / SP3: Security Update for Windows XP (KB896358) / Windows XP / SP3: Security Update for Windows XP (KB896422) / Windows XP / SP3: Security Update for Windows XP (KB896423) / Windows XP / SP3: Security Update for Windows XP (KB896428) / Windows XP / SP3: Security Update for Windows XP (KB896688) / Windows XP / SP3: Update for Windows XP (KB896727) / Windows XP / SP3: Update for Windows XP (KB898461) / Windows XP / SP3: Security Update for Windows XP (KB899587) / Windows XP / SP3: Security Update for Windows XP (KB899588) / Windows XP / SP3: Security Update for Windows XP (KB899591) / Windows XP / SP3: Security Update for Windows XP (KB900725) / Windows XP / SP3: Security Update for Windows XP (KB901017) / Windows XP / SP3: Security Update for Windows XP (KB901214) / Windows XP / SP3: Security Update for Windows XP (KB902400) / Windows XP / SP3: Security Update for Windows XP (KB903235) / Windows XP / SP3: Security Update for Windows XP (KB904706) / Windows XP / SP3: Security Update for Windows XP (KB905414) / Windows XP / SP3: Security Update for Windows XP (KB905749) --- Startup entries list --- Located: HK_LM:Run, ccApp command: "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" file: C:\Program Files\Common Files\Symantec Shared\ccApp.exe size: 58992 MD5: 35e1f41f9cea284f8484172180dc1012 Located: HK_LM:Run, ControlPanel command: C:\WINDOWS\system32\popcorn72.exe rundll.dll,LoadMouseProfile file: C:\WINDOWS\system32\popcorn72.exe size: 12592 MD5: 88a390eaed468c2bd8ccb35963f2d79f Located: HK_LM:Run, ControlPanel command: C:\WINDOWS\system32\popcorn72.exe rundll.dll,LoadMouseProfile file: C:\WINDOWS\system32\popcorn72.exe size: 12592 MD5: 88a390eaed468c2bd8ccb35963f2d79f Located: HK_LM:Run, DAEMON Tools-1033 command: "C:\Program Files\D-Tools\daemon.exe" -lang 1033 file: C:\Program Files\D-Tools\daemon.exe size: 81920 MD5: 804fbb66ec6ca862b840d173efc638a7 Located: HK_LM:Run, HotKeysCmds command: C:\WINDOWS\system32\hkcmd.exe file: C:\WINDOWS\system32\hkcmd.exe size: 77824 MD5: 409f6851bdaec9accbdde692d56d5c87 Located: HK_LM:Run, IgfxTray command: C:\WINDOWS\system32\igfxtray.exe file: C:\WINDOWS\system32\igfxtray.exe size: 94208 MD5: a20723fa212faa76b5157ad8f434347b Located: HK_LM:Run, iTunesHelper command: "C:\Program Files\iTunes\iTunesHelper.exe" file: C:\Program Files\iTunes\iTunesHelper.exe size: 274432 MD5: 1c2b9fcd48112b0297b83e7fc43d1b42 Located: HK_LM:Run, KAZAA command: C:\Program Files\Kazaa\kazaa.exe /SYSTRAY file: Located: HK_LM:Run, KernelFaultCheck command: %systemroot%\system32\dumprep 0 -k file: C:\WINDOWS\system32\dumprep.exe size: 10752 MD5: 13922eb54890c77005268882629a31fe Located: HK_LM:Run, LWBMOUSE command: C:\Program Files\Belkin\Wireless Mouse Driver\MOUSE32A.EXE file: C:\Program Files\Belkin\Wireless Mouse Driver\MOUSE32A.EXE size: 356352 MD5: 048ab569700ca72cac17b10137641aff Located: HK_LM:Run, MyWebSearch Email Plugin command: C:\PROGRA~1\MYWEBS~1\bar\8.bin\mwsoemon.exe file: Located: HK_LM:Run, NeroFilterCheck command: C:\WINDOWS\system32\NeroCheck.exe file: C:\WINDOWS\system32\NeroCheck.exe size: 155648 MD5: 3e4c03cefad8de135263236b61a49c90 Located: HK_LM:Run, P2P Networking command: C:\WINDOWS\system32\P2P Networking\P2P Networking.exe /AUTOSTART file: Located: HK_LM:Run, Persistence command: C:\WINDOWS\system32\igfxpers.exe file: C:\WINDOWS\system32\igfxpers.exe size: 114688 MD5: 2d838f01650a630ae7a78c864315fbdc Located: HK_LM:Run, QuickTime Task command: "C:\Program Files\QuickTime\qttask.exe" -atboottime file: C:\Program Files\QuickTime\qttask.exe size: 155648 MD5: 3e7d91f24d28c968b92c85c7e2882eed Located: HK_LM:Run, Recguard command: C:\WINDOWS\SMINST\RECGUARD.EXE file: C:\WINDOWS\SMINST\RECGUARD.EXE size: 212992 MD5: d3cc7a3813123e955b3a497c04b404e2 Located: HK_LM:Run, RemoteControl command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe size: 32768 MD5: 915a106a2fb87292cef0ad4f36adf313 Located: HK_LM:Run, Symantec NetDriver Monitor command: C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer file: C:\PROGRA~1\SYMNET~1\SNDMon.exe size: 100056 MD5: f9418981ee4d7e995d359833adab59d5 Located: HK_LM:Run, SynTPEnh command: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe file: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe size: 499712 MD5: ae504a1e0f831b0cbab98468b8db1f24 Located: HK_LM:Run, SynTPLpr command: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe file: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe size: 98304 MD5: 33fa45ec8fba1db3b03567efbbfad596 Located: HK_LM:Run, TkBellExe command: "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot file: C:\Program Files\Common Files\Real\Update_OB\realsched.exe size: 180269 MD5: 77ed13fd3196ebc7311ccd6899c7488c Located: HK_CU:Run, MyWebSearch Email Plugin command: C:\PROGRA~1\MYWEBS~1\bar\8.bin\mwsoemon.exe file: Located: Startup (common), Adobe Gamma Loader.lnk command: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe file: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe size: 110592 MD5: 5cd0cd0ec4dc5df459b3ac016764f5aa Located: Startup (common), Adobe Reader Speed Launch.lnk command: C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe file: C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe size: 29696 MD5: deb88aef013dd1eefb462d7cad642166 Located: Startup (common), BigFix.lnk command: C:\Program Files\BigFix\BigFix.exe file: C:\Program Files\BigFix\BigFix.exe size: 1742384 MD5: 3802278fed9e3594b4bc3377ff0cff3b Located: System.ini, crypt32chain command: crypt32.dll file: crypt32.dll Located: System.ini, cryptnet command: cryptnet.dll file: cryptnet.dll Located: System.ini, cscdll command: cscdll.dll file: cscdll.dll Located: System.ini, igfxcui command: igfxdev.dll file: igfxdev.dll Located: System.ini, ScCertProp command: wlnotify.dll file: wlnotify.dll Located: System.ini, Schedule command: wlnotify.dll file: wlnotify.dll Located: System.ini, sclgntfy command: sclgntfy.dll file: sclgntfy.dll Located: System.ini, SensLogn command: WlNotify.dll file: WlNotify.dll Located: System.ini, termsrv command: wlnotify.dll file: wlnotify.dll Located: System.ini, wlballoon command: wlnotify.dll file: wlnotify.dll --- Browser helper object list --- {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class) BHO name: CLSID name: AcroIEHlprObj Class description: Adobe Acrobat reader classification: Legitimate known filename: AcroIEhelper.ocx
AcroIEhelper.dll info link: http://www.adobe.com/products/acrobat/readstep2.html info source: TonyKlein Path: C:\Program Files\Adobe\Acrobat 7.0\ActiveX\ Long name: AcroIEHelper.dll Short name: ACROIE~1.DLL Date (created): 12/14/2004 2:56:50 AM Date (last access): 10/20/2005 11:01:36 PM Date (last write): 12/14/2004 2:56:50 AM Filesize: 63136 Attributes: archive MD5: 42729C3DE75A7A51FC6F9EF6546C9199 CRC32: 4D60BD07 Version: 7.0.0.1333 {53707962-6F74-2D53-2644-206D7942484F} () BHO name: CLSID name: description: Spybot-S&D IE Browser plugin classification: Legitimate known filename: SDhelper.dll info link: http://spybot.eon.net.au/ info source: Patrick M. Kolla Path: C:\Program Files\Spybot - Search & Destroy\ Long name: SDHelper.dll Short name: Date (created): 10/17/2005 4:19:16 PM Date (last access): 10/20/2005 10:24:12 PM Date (last write): 5/31/2005 1:04:00 AM Filesize: 853672 Attributes: archive MD5: 250D787A5712D7768DDC133B3E477759 CRC32: D4589A41 Version: 1.4.0.0 {BDF3E430-B101-42AD-A544-FADC6B084872} (CNavExtBho Class) BHO name: CLSID name: CNavExtBho Class description: Norton Antivirus classification: Legitimate known filename: NavShExt.dll info link: http://www.symantec.com/nav/nav_9xnt/ info source: TonyKlein Path: C:\Program Files\Norton AntiVirus\ Long name: NAVShExt.dll Short name: Date (created): 1/10/2005 2:20:36 PM Date (last access): 10/20/2005 10:24:10 PM Date (last write): 1/10/2005 2:20:36 PM Filesize: 218736 Attributes: archive MD5: 46CE9AE4F88ED616A149924F40EB10D7 CRC32: 5BC5C6AE Version: 11.0.9.16 --- ActiveX list --- {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) DPF name: CLSID name: PCPitstop Utility Installer: C:\WINDOWS\Downloaded Program Files\PCPitstop.inf Codebase: http://support.gateway.com/support/profiler/PCPitStop.CAB description: Gateway tools classification: Open for discussion known filename: PCPITSTOP.DLL info link: info source: Patrick M. Kolla Path: C:\WINDOWS\DOWNLO~1\ Long name: PCPitstop.dll Short name: PCPITS~1.DLL Date (created): 9/2/2003 12:52:30 PM Date (last access): 10/20/2005 6:28:46 PM Date (last write): 9/2/2003 12:52:30 PM Filesize: 249856 Attributes: archive MD5: BCA44EAEFCEA0133B35551664570351F CRC32: D451C1A7 Version: 1.0.0.121 {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) DPF name: Java Runtime Environment 1.5.0 CLSID name: Java Plug-in 1.5.0 Installer: Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab description: Sun Java classification: Legitimate known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll info link: info source: Patrick M. Kolla Path: C:\Program Files\Java\jre1.5.0\bin\ Long name: NPJPI150.dll Short name: Date (created): 12/14/2004 2:03:10 AM Date (last access): 10/17/2005 4:53:24 PM Date (last write): 12/14/2004 2:03:10 AM Filesize: 69740 Attributes: archive MD5: D25BB4762A876A3DBF6F2BAA36A179FA CRC32: 9367234B Version: 1.5.0.0 {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0) DPF name: Java Runtime Environment 1.5.0 CLSID name: Java Plug-in 1.5.0 Installer: Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab description: classification: Legitimate known filename: NPJPI150.dll info link: info source: Safer Networking Ltd. Path: C:\Program Files\Java\jre1.5.0\bin\ Long name: NPJPI150.dll Short name: Date (created): 12/14/2004 2:03:10 AM Date (last access): 10/20/2005 11:05:24 PM Date (last write): 12/14/2004 2:03:10 AM Filesize: 69740 Attributes: archive MD5: D25BB4762A876A3DBF6F2BAA36A179FA CRC32: 9367234B Version: 1.5.0.0 {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) DPF name: CLSID name: Shockwave Flash Object Installer: C:\WINDOWS\Downloaded Program Files\swflash.inf Codebase: http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab description: Macromedia Shockwave Flash Player classification: Legitimate known filename: info link: info source: Patrick M. Kolla Path: C:\WINDOWS\system32\Macromed\Flash\ Long name: Flash8.ocx Short name: Date (created): 8/27/2005 1:38:56 PM Date (last access): 10/20/2005 10:00:42 PM Date (last write): 8/27/2005 1:38:56 PM Filesize: 1435272 Attributes: archive MD5: 900373C059C2B51CA91BF110DBDECB33 CRC32: F19599BC Version: 8.0.22.0 --- Process list --- PID: 0 ( 0) [System] PID: 396 ( 4) \SystemRoot\System32\smss.exe PID: 452 ( 396) \??\C:\WINDOWS\system32\csrss.exe PID: 656 ( 396) \??\C:\WINDOWS\system32\winlogon.exe PID: 700 ( 656) C:\WINDOWS\system32\services.exe size: 108032 MD5: C6CE6EEC82F187615D1002BB3BB50ED4 PID: 716 ( 656) C:\WINDOWS\system32\lsass.exe size: 13312 MD5: 84885F9B82F4D55C6146EBF6065D75D2 PID: 892 ( 700) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 1000 ( 700) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 1048 ( 700) C:\WINDOWS\System32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 1136 ( 700) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 1204 ( 700) C:\WINDOWS\system32\svchost.exe size: 14336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 1252 ( 700) C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe size: 181872 MD5: 67DD2CF35CDB1864E06F10F1334C0C17 PID: 1304 ( 700) C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe size: 206552 MD5: 443E397643965E08C5AB6A6CAA732B97 PID: 1320 ( 700) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe size: 173160 MD5: 08FA56B7C13B4CBF0E5D351AECAD92B1 PID: 1404 ( 700) C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe size: 198256 MD5: BEEE55546518F7010779A43F3ADFC3B3 PID: 1552 ( 700) C:\WINDOWS\system32\spoolsv.exe size: 57856 MD5: 7435B108B935E42EA92CA94F59C8E717 PID: 1664 ( 700) C:\Program Files\Norton AntiVirus\navapsvc.exe size: 177264 MD5: EAD98778AFDE3F53137A498E0D425B08 PID: 1712 ( 700) C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe size: 46704 MD5: 61FFD9F472D702A773AFD5D62EB33A31 PID: 1732 ( 700) C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS size: 65536 MD5: 6135B976E16F80C1B1363BE882344785 PID: 1788 ( 700) C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe size: 822424 MD5: B6BF7DD619D045D0F999310882551B7D PID: 1840 ( 700) C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe size: 300160 MD5: 062E214DF1AE4A0A6E14EAE49EE3A866 PID: 1908 ( 700) C:\WINDOWS\system32\wdfmgr.exe size: 38912 MD5: AB0A7CA90D9E3D6A193905DC1715DED0 PID: 316 ( 268) C:\WINDOWS\Explorer.EXE size: 1032192 MD5: A0732187050030AE399B241436565E64 PID: 1284 ( 700) C:\WINDOWS\System32\alg.exe size: 44544 MD5: F1958FBF86D5C004CF19A5951A9514B7 PID: 2164 ( 316) C:\WINDOWS\system32\igfxtray.exe size: 94208 MD5: A20723FA212FAA76B5157AD8F434347B PID: 2192 ( 316) C:\WINDOWS\system32\hkcmd.exe size: 77824 MD5: 409F6851BDAEC9ACCBDDE692D56D5C87 PID: 2248 ( 316) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe size: 98304 MD5: 33FA45EC8FBA1DB3B03567EFBBFAD596 PID: 2328 ( 316) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe size: 499712 MD5: AE504A1E0F831B0CBAB98468B8DB1F24 PID: 2352 ( 316) C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe size: 32768 MD5: 915A106A2FB87292CEF0AD4F36ADF313 PID: 2404 ( 316) C:\Program Files\Belkin\Wireless Mouse Driver\MOUSE32A.EXE size: 356352 MD5: 048AB569700CA72CAC17B10137641AFF PID: 2440 ( 316) C:\Program Files\D-Tools\daemon.exe size: 81920 MD5: 804FBB66EC6CA862B840D173EFC638A7 PID: 2476 ( 316) C:\Program Files\Common Files\Symantec Shared\ccApp.exe size: 58992 MD5: 35E1F41F9CEA284F8484172180DC1012 PID: 2516 ( 316) C:\Program Files\Common Files\Real\Update_OB\realsched.exe size: 180269 MD5: 77ED13FD3196EBC7311CCD6899C7488C PID: 2652 ( 316) C:\Program Files\iTunes\iTunesHelper.exe size: 274432 MD5: 1C2B9FCD48112B0297B83E7FC43D1B42 PID: 2668 ( 316) C:\Program Files\QuickTime\qttask.exe size: 155648 MD5: 3E7D91F24D28C968B92C85C7E2882EED PID: 2728 ( 316) C:\WINDOWS\system32\igfxpers.exe size: 114688 MD5: 2D838F01650A630AE7A78C864315FBDC PID: 2736 ( 316) C:\WINDOWS\system32\popcorn72.exe size: 12592 MD5: 88A390EAED468C2BD8CCB35963F2D79F PID: 2748 ( 700) C:\Program Files\iPod\bin\iPodService.exe size: 323584 MD5: 5590C0E3B40C924C2B94CB5868B8360A PID: 2776 (2736) C:\WINDOWS\system32\ntvdm.exe size: 419840 MD5: 0738F4B53D967E46CC5E51F84BC1EB39 PID: 3032 ( 316) C:\Program Files\BigFix\BigFix.exe size: 1742384 MD5: 3802278FED9E3594B4BC3377FF0CFF3B PID: 1432 ( 500) C:\PROGRA~1\MOZILL~1\FIREFOX.EXE size: 6631012 MD5: 4ABE7358AFA12D5F0C7F293C642EB66C PID: 2644 (2516) C:\Program Files\Real\RealPlayer\RealPlay.exe size: 208941 MD5: 3126C54C95A7BE91EA62E137679D0C43 PID: 728 (2736) C:\WINDOWS\system32\ntvdm.exe size: 419840 MD5: 0738F4B53D967E46CC5E51F84BC1EB39 PID: 1344 ( 316) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe size: 4393096 MD5: 09CA174A605B480318731E691DC98539 PID: 3952 ( 892) C:\Program Files\Messenger\msmsgs.exe size: 1667584 MD5: B53343FE60A33EE765C2476D50D27B26 PID: 4 ( 0) System --- Browser start & search pages list --- Spybot - Search & Destroy browser pages report, 10/20/2005 11:05:25 PM HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page C:\WINDOWS\system32\blank.htm HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page http://red.clientapps.yahoo.com/customize/ycomp_wave/defaults/sp/*http://www.yahoo.com HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar http://red.clientapps.yahoo.com/customize/ycomp_wave/defaults/sb/*http://www.yahoo.com/search/ie.html HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page C:\WINDOWS\system32\msblank.html HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page %SystemRoot%\system32\blank.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page http://www.gatewaybiz.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL http://www.gatewaybiz.com HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm --- Winsock Layered Service Provider list --- Protocol 0: MSAFD Tcpip [TCP/IP] GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP IP protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD Tcpip [*] Protocol 1: MSAFD Tcpip [UDP/IP] GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP IP protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD Tcpip [*] Protocol 2: MSAFD Tcpip [RAW/IP] GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP IP protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD Tcpip [*] Protocol 3: RSVP UDP Service Provider GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A} Filename: %SystemRoot%\system32\rsvpsp.dll Description: Microsoft Windows NT/2k/XP RVSP DB filename: %SystemRoot%\system32\rsvpsp.dll DB protocol: RSVP * Service Provider Protocol 4: RSVP TCP Service Provider GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A} Filename: %SystemRoot%\system32\rsvpsp.dll Description: Microsoft Windows NT/2k/XP RVSP DB filename: %SystemRoot%\system32\rsvpsp.dll DB protocol: RSVP * Service Provider Protocol 5: MSAFD NetBIOS [\Device\NetBT_Tcpip_{3885AB7A-9759-477A-A3FD-0274A79C0466}] SEQPACKET 4 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 6: MSAFD NetBIOS [\Device\NetBT_Tcpip_{3885AB7A-9759-477A-A3FD-0274A79C0466}] DATAGRAM 4 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 7: MSAFD NetBIOS [\Device\NetBT_Tcpip_{32DF9995-695F-4F03-BDA6-3271BEFB6116}] SEQPACKET 3 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 8: MSAFD NetBIOS [\Device\NetBT_Tcpip_{32DF9995-695F-4F03-BDA6-3271BEFB6116}] DATAGRAM 3 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 9: MSAFD NetBIOS [\Device\NetBT_Tcpip_{964B86C2-7E6F-41EB-8780-772EAABF9D39}] SEQPACKET 0 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 10: MSAFD NetBIOS [\Device\NetBT_Tcpip_{964B86C2-7E6F-41EB-8780-772EAABF9D39}] DATAGRAM 0 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 11: MSAFD NetBIOS [\Device\NetBT_Tcpip_{955BFF23-DCB0-49A8-8D84-4F570D95E42B}] SEQPACKET 1 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 12: MSAFD NetBIOS [\Device\NetBT_Tcpip_{955BFF23-DCB0-49A8-8D84-4F570D95E42B}] DATAGRAM 1 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 13: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F5CCDB05-70E7-4E58-8B41-796A3AD0AB3F}] SEQPACKET 2 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Protocol 14: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F5CCDB05-70E7-4E58-8B41-796A3AD0AB3F}] DATAGRAM 2 GUID: {8D5F1830-C273-11CF-95C8-00805F48A192} Filename: %SystemRoot%\system32\mswsock.dll Description: Microsoft Windows NT/2k/XP NetBios protocol DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: MSAFD NetBIOS * Namespace Provider 0: Tcpip GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B} Filename: %SystemRoot%\System32\mswsock.dll Description: Microsoft Windows NT/2k/XP TCP/IP name space provider DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: TCP/IP Namespace Provider 1: NTDS GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC} Filename: %SystemRoot%\System32\winrnr.dll Description: Microsoft Windows NT/2k/XP name space provider DB filename: %SystemRoot%\system32\winrnr.dll DB protocol: NTDS Namespace Provider 2: Network Location Awareness (NLA) Namespace GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83} Filename: %SystemRoot%\System32\mswsock.dll Description: Microsoft Windows NT/2k/XP name space provider DB filename: %SystemRoot%\system32\mswsock.dll DB protocol: NLA-Namespace