StartupList report, 3/10/2006, 3:31:28 PM StartupList version 2.00.0 Started from: C:\Documents and Settings\Owner\Desktop\startuplist\StartupList.EXE Detected: Windows XP SP2 (WinNT 5.01.2600) Logged on as 'Owner' to 'MARCS' * Using default options (see end of log for possible options) ================================================== Running processes (45): [C:\Documents and Settings\Owner\Desktop\startuplist\StartupList.exe (44)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\asycfilt.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\System32\MSCOMCTL.OCX C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\mslbui.dll C:\WINDOWS\system32\MSVBVM60.DLL C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTDSAPI.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\PSAPI.DLL C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\System32\wbem\fastprox.dll C:\WINDOWS\System32\wbem\wbemcomn.dll C:\WINDOWS\System32\wbem\wbemdisp.dll C:\WINDOWS\System32\wbem\wbemprox.dll C:\WINDOWS\System32\wbem\wbemsvc.dll C:\WINDOWS\System32\wbem\wmiutils.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\PROGRA~1\MICROS~2\Office10\OUTLOOK.EXE (121)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\Common Files\Microsoft Shared\office10\mso.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\PROGRA~1\MICROS~2\Office10\1033\outlcmr.dll C:\PROGRA~1\MICROS~2\Office10\1033\outllibr.dll C:\PROGRA~1\MICROS~2\Office10\cdooff.dll C:\PROGRA~1\MICROS~2\Office10\exsec32.dll C:\PROGRA~1\MICROS~2\Office10\msostyle.dll C:\PROGRA~1\MICROS~2\Office10\OUTLCM.DLL C:\PROGRA~1\MICROS~2\Office10\OUTLLIB.DLL C:\PROGRA~1\MICROS~2\Office10\OUTLPH.DLL C:\PROGRA~1\MICROS~2\Office10\OUTLRPC.dll C:\PROGRA~1\MICROS~2\Office10\RTFHTML.DLL C:\Program Files\Common Files\Microsoft Shared\Ink\SKCHUI.DLL C:\Program Files\Common Files\Microsoft Shared\office10\riched20.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asRes.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asUniPlg.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\MsouPlug.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccSet.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll C:\Program Files\Common Files\System\MAPI\1033\contab32.dll C:\Program Files\Common Files\System\MAPI\1033\msmapi32.dll C:\Program Files\Common Files\System\MAPI\1033\mspst32.dll C:\Program Files\Common Files\System\OLE DB\OLEDB32.DLL C:\Program Files\Common Files\System\OLE DB\OLEDB32R.DLL C:\Program Files\Microsoft Office\Office10\1033\outlwvw.dll C:\Program Files\Microsoft Office\Office10\1033\srintl.dll C:\Program Files\Microsoft Office\Office10\OUTLCTL.DLL C:\Program Files\Microsoft Office\Office10\OUTLMIME.DLL C:\Program Files\Microsoft Office\Office10\SENDTO.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\AppPatch\AcSpecfc.DLL C:\WINDOWS\IME\SPGRMR.DLL C:\WINDOWS\ime\sptip.dll C:\WINDOWS\System32\ActExt.dll C:\WINDOWS\System32\actxprxy.dll C:\WINDOWS\system32\ADVAPI32.DLL C:\WINDOWS\system32\appHelp.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\System32\browseui.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMCTL32.DLL C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\CRYPTUI.dll C:\WINDOWS\system32\DCIMAN32.dll C:\WINDOWS\system32\DDRAW.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\IMM32.dll C:\WINDOWS\System32\inetcomm.dll C:\WINDOWS\System32\inetres.dll c:\windows\system32\jscript.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MAPI32.dll C:\WINDOWS\system32\midimap.dll C:\WINDOWS\system32\MLANG.dll C:\WINDOWS\system32\MPR.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\msacm32.drv C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\MSDART.DLL C:\WINDOWS\System32\mshtml.dll C:\WINDOWS\System32\mshtmled.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\System32\msident.dll C:\WINDOWS\System32\msidntld.dll C:\WINDOWS\System32\msimtf.dll C:\WINDOWS\system32\mslbui.dll C:\WINDOWS\System32\msls31.dll C:\WINDOWS\System32\MSOERT2.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\MSVCRT.DLL C:\WINDOWS\System32\mswsock.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\OLE32.DLL C:\WINDOWS\system32\OLEACC.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\PSAPI.DLL C:\WINDOWS\system32\pstorec.dll C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\System32\shdoclc.dll C:\WINDOWS\System32\shdocvw.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\URLMON.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\usp10.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\wdmaud.drv C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\System32\winrnr.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\wtsapi32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\BroadJump\Client Foundation\CFD.exe (41)] C:\Program Files\BroadJump\Client Foundation\AppProperties.dll C:\Program Files\BroadJump\Client Foundation\BasicLoaderService.dll C:\Program Files\BroadJump\Client Foundation\BJComBase.dll C:\Program Files\BroadJump\Client Foundation\BJComRT.dll C:\Program Files\BroadJump\Client Foundation\BJComSRCManager.dll C:\Program Files\BroadJump\Client Foundation\BJIntlCore_1_1_DDR.dll C:\Program Files\BroadJump\Client Foundation\stlport_4_0_0_DDR.dll C:\Program Files\BroadJump\Client Foundation\TimerManager.dll C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ACTIVEDS.dll C:\WINDOWS\system32\adsldpc.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MPRAPI.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\MSVCRT.dll C:\WINDOWS\system32\mswsock.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RASAPI32.DLL C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (18)] C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\psapi.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Real\Update_OB\realsched.exe (23)] C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTMARTA.DLL C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\shell32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Symantec Shared\ccApp.exe (122)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\ASADIPLG.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\ASAEMSCN.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\ASLOADER.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\PROGRA~1\COMMON~1\SYMANT~1\CCALERT.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\CCEMLPXY.DLL C:\PROGRA~1\MICROS~2\Office10\OUTLCM.DLL C:\PROGRA~1\NORTON~2\ISLALERT.DLL C:\PROGRA~1\NORTON~2\NISALERT.DLL C:\PROGRA~1\NORTON~2\NISPROD.DLL C:\PROGRA~1\NORTON~2\NISRES.DLL C:\PROGRA~1\NORTON~2\NISTRAY.DLL C:\PROGRA~1\NORTON~2\NORTON~1\apwutil.dll C:\PROGRA~1\NORTON~2\NORTON~1\CCIMSCAN.DLL C:\PROGRA~1\NORTON~2\NORTON~1\DEFALERT.DLL C:\PROGRA~1\NORTON~2\NORTON~1\N32Exclu.dll C:\PROGRA~1\NORTON~2\NORTON~1\NAVAPW32.DLL C:\PROGRA~1\NORTON~2\NORTON~1\NAVOPTRF.DLL C:\PROGRA~1\NORTON~2\NORTON~1\NAVOpts.dll C:\PROGRA~1\NORTON~2\NORTON~1\NAVSTATS.dll C:\PROGRA~1\NORTON~2\NORTON~1\NAVTasks.dll C:\PROGRA~1\NORTON~2\NORTON~1\S32NAVO.DLL C:\PROGRA~1\NORTON~2\NORTON~1\SAVRT32.DLL C:\PROGRA~1\NORTON~2\NORTON~1\STATUSHP.DLL C:\Program Files\Common Files\Microsoft Shared\office10\mso.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asAuAdIm.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asFilter.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asRes.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asSetHlp.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asSpmEvt.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\asUniPlg.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\bteuclid.dll C:\Program Files\Common Files\Symantec Shared\AntiSpam\btutils.dll C:\Program Files\Common Files\Symantec Shared\ccCharCv.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccLogin.dll C:\Program Files\Common Files\Symantec Shared\ccProSub.dll C:\Program Files\Common Files\Symantec Shared\ccPxyEvt.dll C:\Program Files\Common Files\Symantec Shared\ccSet.dll C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\Program Files\Common Files\Symantec Shared\DPHTML.dll C:\Program Files\Common Files\System\Mapi\1033\MSMAPI32.DLL C:\Program Files\Norton Internet Security\ccEmlflt.dll C:\Program Files\Norton Internet Security\ccFWSetg.dll C:\Program Files\Norton Internet Security\NISLCOM.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\apwcmdnt.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\ccAVMail.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\NAVAPSCR.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\NAVError.dll C:\Program Files\Norton Internet Security\ObrkAV.dll C:\Program Files\Norton Internet Security\ObrkData.dll C:\Program Files\Norton Internet Security\ObrkIDS.dll C:\Program Files\Norton Internet Security\SFWAlert.dll C:\Program Files\Norton Internet Security\SymFWAgt.dll C:\Program Files\Norton Internet Security\TLevel.dll C:\Program Files\Support.com\bin\sdchook.dll C:\Program Files\Symantec\LiveUpdate\MFC71.DLL C:\Program Files\Symantec\LiveUpdate\NetDetectController_3_0.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\ATL71.DLL C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\Crypt32.dll C:\WINDOWS\system32\DBGHELP.DLL C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MAPI32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\System32\msident.dll C:\WINDOWS\System32\msidntld.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\MSWSOCK.dll C:\WINDOWS\system32\msxml3.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTDSAPI.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\PSTOREC.DLL C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHFOLDER.DLL C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\SymNeti.DLL C:\WINDOWS\system32\SYMREDIR.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\System32\wbem\fastprox.dll C:\WINDOWS\System32\wbem\wbemcomn.dll C:\WINDOWS\System32\wbem\wbemprox.dll C:\WINDOWS\System32\wbem\wbemsvc.dll C:\WINDOWS\system32\WINHTTP.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\System32\winrnr.dll C:\WINDOWS\system32\WinTrust.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe (49)] C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\ASSPMEVT.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\CCLOGIN.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\CCPXYEVT.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\CCSETEVT.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\SPBBC\SPBBCEVT.DLL C:\PROGRA~1\NORTON~2\NORTON~1\NAVEVENT.DLL C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccSet.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\Crypt32.dll C:\WINDOWS\system32\DBGHELP.DLL C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\IMM32.DLL C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\SYSTEM32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\SYSTEM32\SYMNETI.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WinTrust.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\WTSAPI32.DLL C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe (16)] C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcnet.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSVCR71.DLL C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\xpsp2res.dll [C:\Program Files\Common Files\Symantec Shared\ccProxy.exe (64)] C:\Program Files\Common Files\Symantec Shared\ccCharCv.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccLogin.dll C:\Program Files\Common Files\Symantec Shared\ccProSub.dll C:\Program Files\Common Files\Symantec Shared\ccPxyEvt.dll C:\Program Files\Common Files\Symantec Shared\ccSet.dll C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\Program Files\Common Files\Symantec Shared\DPHTML.dll C:\Program Files\Common Files\Symantec Shared\DPHTTP.dll C:\Program Files\Common Files\Symantec Shared\DPJS.dll C:\Program Files\Common Files\Symantec Shared\DPVBS.dll C:\Program Files\Common Files\Symantec Shared\PFAdBlk.dll C:\Program Files\Common Files\Symantec Shared\PFMisc.dll C:\Program Files\Common Files\Symantec Shared\PFPriv.dll C:\Program Files\Common Files\Symantec Shared\PFRes.dll C:\Program Files\Common Files\Symantec Shared\PFSec.dll C:\Program Files\Common Files\Symantec Shared\PxyHTTP.dll C:\Program Files\Common Files\Symantec Shared\PxyIM.dll C:\Program Files\Common Files\Symantec Shared\PxyNNTP.dll C:\Program Files\Norton Internet Security\NISRES.DLL C:\Program Files\Norton Internet Security\SYMURL.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\Crypt32.dll C:\WINDOWS\system32\DBGHELP.DLL C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\IMM32.DLL C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\mswsock.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\SymNeti.DLL C:\WINDOWS\system32\SYMREDIR.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WinTrust.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe (41)] C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\Crypt32.dll C:\WINDOWS\system32\DBGHELP.DLL C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\IMM32.DLL C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WinTrust.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\WTSAPI32.DLL C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe (41)] C:\WINDOWS\system32\ACTIVEDS.dll C:\WINDOWS\system32\adsldpc.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MPRAPI.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RASAPI32.DLL C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\SymNeti.DLL C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (39)] C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccSet.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCEvt.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\Crypt32.dll C:\WINDOWS\system32\DBGHELP.DLL C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WinTrust.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\eFax Messenger 4.0\J2GDllCmd.exe (28)] C:\Program Files\eFax Messenger 4.0\J2GRes_Enu.dll C:\Program Files\eFax Messenger 4.0\J2GSDK40.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEACC.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\urlmon.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\eFax Messenger 4.0\J2GTray.exe (32)] C:\Program Files\eFax Messenger 4.0\J2GRes_Enu.dll C:\Program Files\eFax Messenger 4.0\J2GSDK40.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MPR.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msimg32.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\oledlg.dll C:\WINDOWS\system32\psapi.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\urlmon.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\COMCTL32.dll [C:\Program Files\Internet Explorer\iexplore.exe (104)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll C:\Program Files\Common Files\Microsoft Shared\Ink\SKCHUI.DLL C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll C:\Program Files\Support.com\bin\FULLSOFT.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\IME\SPGRMR.DLL C:\WINDOWS\ime\sptip.dll C:\WINDOWS\System32\actxprxy.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\appHelp.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\ATL71.DLL C:\WINDOWS\system32\browselc.dll C:\WINDOWS\system32\BROWSEUI.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\credui.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\CRYPTUI.dll C:\WINDOWS\System32\CSCDLL.dll C:\WINDOWS\System32\cscui.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\ImgUtil.dll C:\WINDOWS\system32\iphlpapi.dll c:\windows\system32\jscript.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\LINKINFO.dll C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx C:\WINDOWS\system32\midimap.dll C:\WINDOWS\system32\mlang.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\msacm32.drv C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\System32\mshtml.dll C:\WINDOWS\System32\mshtmled.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\System32\msimtf.dll C:\WINDOWS\system32\mslbui.dll C:\WINDOWS\System32\msls31.dll C:\WINDOWS\system32\msv1_0.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\mswsock.dll C:\WINDOWS\system32\msxml3.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\NETSHELL.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ntshrui.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEACC.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\OLEPRO32.DLL C:\WINDOWS\system32\plugin.ocx C:\WINDOWS\System32\pngfilt.dll C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\RASAPI32.DLL C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\sensapi.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\sfc_os.dll C:\WINDOWS\system32\shdoclc.dll C:\WINDOWS\system32\SHDOCVW.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\urlmon.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\wdmaud.drv C:\WINDOWS\system32\WINHTTP.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\wuapi.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\iPod\bin\iPodService.exe (27)] C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.DLL C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\CFGMGR32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\setupapi.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\Wtsapi32.dll C:\WINDOWS\system32\xpsp2res.dll [C:\Program Files\iTunes\iTunesHelper.exe (26)] C:\Program Files\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.DLL C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe (14)] C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Messenger\msmsgs.exe (40)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\cryptdll.dll C:\WINDOWS\System32\es.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSIMG32.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\wtsapi32.dll C:\WINDOWS\system32\XPOB2RES.DLL C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\COMCTL32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll [C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (57)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Common Files\Microsoft Shared\Ink\SKCHUI.DLL C:\Program Files\Common Files\Microsoft Shared\office10\mso.dll C:\Program Files\Common Files\Microsoft Shared\office10\riched20.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Microsoft Office\Office10\1033\srintl.dll C:\Program Files\Microsoft Office\Office10\msostyle.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\OFFICEAV.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\IME\SPGRMR.DLL C:\WINDOWS\ime\sptip.dll C:\WINDOWS\system32\ADVAPI32.DLL C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.DLL C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\LINKINFO.dll C:\WINDOWS\system32\midimap.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\msacm32.drv C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\System32\msimtf.dll C:\WINDOWS\system32\mslbui.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ntshrui.dll C:\WINDOWS\system32\OLE32.DLL C:\WINDOWS\system32\OLEACC.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\wdmaud.drv C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Microsoft Office\Office10\WINWORD.EXE (59)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\FNAME.DLL C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\MOFL.DLL C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\PROGRA~1\MICROS~2\Office10\ENVELOPE.DLL C:\Program Files\Common Files\Microsoft Shared\Ink\SKCHUI.DLL C:\Program Files\Common Files\Microsoft Shared\office10\mso.dll C:\Program Files\Common Files\Microsoft Shared\office10\riched20.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Microsoft Office\Office10\1033\envelopr.dll C:\Program Files\Microsoft Office\Office10\SENDTO.DLL C:\Program Files\Norton Internet Security\Norton AntiVirus\OFFICEAV.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\IME\SPGRMR.DLL C:\WINDOWS\ime\sptip.dll C:\WINDOWS\system32\ADVAPI32.DLL C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMDLG32.DLL C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\GDI32.DLL C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\System32\msimtf.dll C:\WINDOWS\system32\mslbui.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\msxml3.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\OLE32.DLL C:\WINDOWS\system32\OLEACC.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\M_M_UMPD.DLL C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\MGXLUI_M.DLL C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\MLTGUI_M.dll C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\MLTSRV_m.dll C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\MLTXL__M.DLL C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINHTTP.dll C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\wtsapi32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Netopia\C3kWepN.exe (26)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\mslbui.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.DLL C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\W32N50.dll C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Norton Internet Security\ISSVC.exe (63)] C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Common Files\Symantec Shared\ccProSub.dll C:\Program Files\Common Files\Symantec Shared\ccSet.dll C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll C:\Program Files\Norton Internet Security\NISRES.DLL C:\Program Files\Norton Internet Security\ObrkData.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\Crypt32.dll C:\WINDOWS\system32\DBGHELP.DLL C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\IMM32.DLL C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\System32\mswsock.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTDSAPI.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\RASAPI32.DLL C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\SymNeti.DLL C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\urlmon.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\System32\wbem\fastprox.dll C:\WINDOWS\System32\wbem\wbemcomn.dll C:\WINDOWS\System32\wbem\wbemprox.dll C:\WINDOWS\System32\wbem\wbemsvc.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WinTrust.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe (30)] C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRT32.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\DBGHELP.DLL C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\secur32.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Norton Internet Security\Norton AntiVirus\OPScan.exe (33)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRT32.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\secur32.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\userenv.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\QuickTime\qttask.exe (14)] C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Softex\OmniPass\Omniserv.exe (9)] C:\Program Files\Softex\OmniPass\sftxtgp.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\USER32.dll [C:\Program Files\Softex\OmniPass\OPXPApp.exe (17)] C:\Program Files\Softex\OmniPass\GINASTUB.dll C:\Program Files\Softex\OmniPass\sftxtgp.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSVCRT.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTMARTA.DLL C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Support.com\bin\tgcmd.exe (59)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Support.com\bin\sdcdetect.dll C:\Program Files\Support.com\bin\sdchook.dll C:\Program Files\Support.com\bin\sdcmon.dll C:\Program Files\Support.com\bin\sdcnetcheck.dll C:\WINDOWS\system32\ACTIVEDS.dll C:\WINDOWS\system32\adsldpc.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\cfgmgr32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\icmp.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MPRAPI.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msv1_0.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\System32\mswsock.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\PSAPI.DLL C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\RASAPI32.DLL C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\setupapi.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\URLMON.DLL C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WININET.DLL C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\System32\winrnr.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (36)] C:\Program Files\Symantec\LiveUpdate\MSVCP71.dll C:\Program Files\Symantec\LiveUpdate\MSVCR71.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\msv1_0.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\System32\mswsock.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\RASAPI32.DLL C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\System32\winrnr.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe (66)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\BackWeb\BACKWE~1\623~1.66\program\EN\ClientRC.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\BackWeb\BackWeb Client\6.2.3.66\Program\BackWeb.dll C:\Program Files\BackWeb\BackWeb Client\6.2.3.66\Program\BWfiles.dll C:\Program Files\BackWeb\BackWeb Client\6.2.3.66\Program\bwsec.dll C:\Program Files\BackWeb\BackWeb Client\6.2.3.66\Program\clntutil.dll C:\Program Files\BackWeb\BackWeb Client\6.2.3.66\Program\frext.dll C:\Program Files\Support.com\bin\sdchook.dll C:\Program Files\Updates from HP\137903\Program\BWfiles-137903.dll C:\Program Files\Updates from HP\137903\Program\frext-137903.dll C:\Program Files\Updates from HP\137903\Program\HPClientExt.dll C:\WINDOWS\system32\ACTIVEDS.dll C:\WINDOWS\system32\adsldpc.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\inetmib1.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MFC42.DLL C:\WINDOWS\system32\MPRAPI.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\MSVCRT.dll C:\WINDOWS\system32\mswsock.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\rasapi32.dll C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\snmpapi.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\System32\winrnr.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\wtsapi32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\Explorer.EXE (96)] C:\DOCUME~1\Owner\LOCALS~1\Temp\IadHide4.dll C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll C:\Program Files\Common Files\Symantec Shared\ccL30.dll C:\Program Files\Microsoft Office\Office10\msohev.dll C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll C:\Program Files\Support.com\bin\FULLSOFT.DLL C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\AppPatch\AcGenral.DLL C:\WINDOWS\System32\actxprxy.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\appHelp.dll C:\WINDOWS\system32\ATL.DLL C:\WINDOWS\system32\ATL71.DLL C:\WINDOWS\System32\BatMeter.dll C:\WINDOWS\system32\browselc.dll C:\WINDOWS\system32\BROWSEUI.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\credui.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\CRYPTUI.dll C:\WINDOWS\System32\CSCDLL.dll C:\WINDOWS\System32\cscui.dll C:\WINDOWS\System32\davclnt.dll C:\WINDOWS\System32\drprov.dll C:\WINDOWS\system32\DSOUND.dll C:\WINDOWS\system32\FXSAPI.dll C:\WINDOWS\system32\fxsst.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\LINKINFO.dll C:\WINDOWS\system32\midimap.dll C:\WINDOWS\system32\MPR.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\msacm32.drv C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msi.dll C:\WINDOWS\System32\MSIMG32.dll C:\WINDOWS\system32\mslbui.dll C:\WINDOWS\system32\MSVCP71.dll C:\WINDOWS\system32\MSVCR71.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\System32\mydocs.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\System32\NETRAP.dll C:\WINDOWS\system32\NETSHELL.dll C:\WINDOWS\System32\NETUI0.dll C:\WINDOWS\System32\NETUI1.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\System32\ntlanman.dll C:\WINDOWS\system32\NTMARTA.DLL C:\WINDOWS\system32\ntshrui.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\System32\POWRPROF.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\System32\Secur32.dll C:\WINDOWS\System32\SETUPAPI.dll C:\WINDOWS\system32\shdoclc.dll C:\WINDOWS\system32\SHDOCVW.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\System32\stobject.dll C:\WINDOWS\system32\SXS.DLL C:\WINDOWS\System32\themeui.dll C:\WINDOWS\system32\urlmon.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\wdmaud.drv C:\WINDOWS\System32\webcheck.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\System32\WS2_32.dll C:\WINDOWS\System32\WS2HELP.dll C:\WINDOWS\System32\WSOCK32.dll C:\WINDOWS\System32\WTSAPI32.dll C:\WINDOWS\system32\WZCSAPI.DLL C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\System32\zipfldr.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\ctfmon.exe (22)] C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\AppPatch\AcGenral.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\MSUTB.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\LEXBCES.EXE (25)] C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\Apphelp.dll C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\lex2kusb.dll C:\WINDOWS\system32\lexp2p32.dll C:\WINDOWS\system32\MPR.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\LEXPPS.EXE (18)] C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\LEXBCE.DLL C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\mswsock.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\lsass.exe (56)] C:\WINDOWS\AppPatch\AcGenral.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\AUTHZ.dll C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\cryptdll.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\dssenh.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\hnetcfg.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\ipsecsvc.dll C:\WINDOWS\system32\kerberos.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\LSASRV.dll C:\WINDOWS\system32\MPR.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msprivs.dll C:\WINDOWS\system32\msv1_0.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\mswsock.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\netlogon.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTDSAPI.dll C:\WINDOWS\system32\oakley.DLL C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\psbase.dll C:\WINDOWS\system32\pstorsvc.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\SAMSRV.dll C:\WINDOWS\system32\scecli.dll C:\WINDOWS\system32\schannel.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\setupapi.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\w32time.dll C:\WINDOWS\system32\wdigest.dll C:\WINDOWS\system32\WINIPSEC.DLL C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\System32\nvsvc32.exe (10)] C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\ps2.exe (14)] C:\Program Files\Support.com\bin\sdchook.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSCTF.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\services.exe (34)] C:\WINDOWS\AppPatch\AcGenral.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\Apphelp.dll C:\WINDOWS\system32\AUTHZ.dll C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\eventlog.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\MSVCP60.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NCObjAPI.DLL C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\PSAPI.DLL C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SCESRV.dll C:\WINDOWS\system32\secur32.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\umpnpmgr.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\wtsapi32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\System32\smss.exe (1)] C:\WINDOWS\system32\ntdll.dll [C:\WINDOWS\system32\spoolsv.exe (67)] C:\WINDOWS\AppPatch\AcGenral.DLL C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\cnbjmon.dll C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\DNSAPI.dll C:\WINDOWS\system32\FXSEVENT.dll C:\WINDOWS\system32\FXSMON.DLL C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\inetpp.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\LexBce.dll C:\WINDOWS\system32\LEXLMPM.DLL C:\WINDOWS\system32\localspl.dll C:\WINDOWS\system32\LXBCpwr.dll C:\WINDOWS\system32\LXCBpwr.dll C:\WINDOWS\system32\mgmtapi.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\System32\mswsock.dll C:\WINDOWS\system32\netapi32.dll C:\WINDOWS\system32\NETRAP.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTDSAPI.dll C:\WINDOWS\system32\NTMARTA.DLL C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\pdf995mon.dll C:\WINDOWS\system32\pjlmon.dll C:\WINDOWS\system32\PrintMeMon.dll C:\WINDOWS\system32\rasadhlp.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\sfc_os.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\snmpapi.dll C:\WINDOWS\System32\spool\PRTPROCS\W32X86\LXBCPP5C.dll C:\WINDOWS\System32\spool\PRTPROCS\W32X86\LXCBPP5C.dll C:\WINDOWS\system32\SPOOLSS.DLL C:\WINDOWS\system32\tcpmib.dll C:\WINDOWS\system32\tcpmon.dll C:\WINDOWS\system32\usbmon.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\win32spl.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\System32\winrnr.dll C:\WINDOWS\system32\winspool.drv C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\wsnmp32.dll C:\WINDOWS\system32\WSOCK32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\System32\svchost.exe (147)] C:\WINDOWS\AppPatch\AcGenral.DLL c:\windows\pchealth\helpctr\binaries\pchsvc.dll C:\WINDOWS\System32\ACTIVEDS.dll C:\WINDOWS\System32\adsldpc.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\System32\ADVPACK.dll C:\WINDOWS\system32\Apphelp.dll c:\windows\system32\ATL.DLL c:\windows\system32\audiosrv.dll c:\windows\system32\AUTHZ.dll c:\windows\system32\browser.dll C:\WINDOWS\System32\Cabinet.dll c:\windows\system32\certcli.dll C:\WINDOWS\System32\CLBCATQ.DLL C:\WINDOWS\System32\CLUSAPI.DLL C:\WINDOWS\system32\colbact.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\System32\COMRes.dll C:\WINDOWS\system32\comsvcs.dll c:\windows\system32\credui.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\System32\cryptdll.dll c:\windows\system32\cryptsvc.dll C:\WINDOWS\system32\CRYPTUI.dll c:\windows\system32\dhcpcsvc.dll c:\windows\system32\DNSAPI.dll c:\windows\system32\ersvc.dll c:\windows\system32\es.dll c:\windows\system32\ESENT.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\System32\h323.tsp c:\windows\system32\HID.DLL C:\WINDOWS\System32\hidphone.tsp c:\windows\system32\hidserv.dll C:\WINDOWS\System32\hnetcfg.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\System32\ipconf.tsp c:\windows\system32\iphlpapi.dll c:\windows\system32\ipnathlp.dll C:\WINDOWS\system32\kerberos.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\System32\kmddsp.tsp C:\WINDOWS\system32\modemui.dll C:\WINDOWS\system32\MPR.dll C:\WINDOWS\System32\MPRAPI.dll C:\WINDOWS\System32\MSACM32.dll C:\WINDOWS\system32\MSASN1.dll c:\windows\system32\msi.dll C:\WINDOWS\System32\MSIDLE.DLL C:\WINDOWS\System32\mspatcha.dll C:\WINDOWS\system32\msv1_0.dll C:\WINDOWS\System32\MSVCP60.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\mswsock.dll C:\WINDOWS\system32\MTXCLU.DLL C:\WINDOWS\system32\NCObjAPI.DLL C:\WINDOWS\System32\ndptsp.tsp C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\System32\netcfgx.dll c:\windows\system32\netman.dll c:\windows\system32\netshell.dll C:\WINDOWS\system32\ntdll.dll c:\windows\system32\NTDSAPI.dll C:\WINDOWS\System32\ntlsapi.dll C:\WINDOWS\System32\NTMARTA.DLL C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll c:\windows\system32\POWRPROF.dll c:\windows\system32\PSAPI.DLL c:\windows\system32\qmgr.dll C:\WINDOWS\System32\rasadhlp.dll C:\WINDOWS\System32\RASAPI32.dll C:\WINDOWS\System32\raschap.dll C:\WINDOWS\System32\RASDLG.dll C:\WINDOWS\System32\rasman.dll C:\WINDOWS\System32\rasmans.dll C:\WINDOWS\System32\rasppp.dll C:\WINDOWS\System32\rastapi.dll C:\WINDOWS\System32\rastls.dll C:\WINDOWS\System32\RESUTILS.DLL C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\System32\rsaenh.dll c:\windows\system32\rtutils.dll C:\WINDOWS\System32\SAMLIB.dll C:\WINDOWS\System32\SCHANNEL.dll c:\windows\system32\schedsvc.dll c:\windows\system32\seclogon.dll c:\windows\system32\Secur32.dll c:\windows\system32\sens.dll C:\WINDOWS\System32\SETUPAPI.dll C:\WINDOWS\System32\sfc.dll C:\WINDOWS\System32\sfc_os.dll C:\WINDOWS\system32\SHELL32.dll c:\windows\system32\SHFOLDER.dll C:\WINDOWS\System32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll c:\windows\system32\shsvcs.dll c:\windows\system32\srsvc.dll c:\windows\system32\srvsvc.dll C:\WINDOWS\System32\SXS.DLL C:\WINDOWS\System32\TAPI32.dll c:\windows\system32\tapisrv.dll c:\windows\system32\trkwks.dll C:\WINDOWS\System32\unimdm.tsp C:\WINDOWS\System32\unimdmat.dll C:\WINDOWS\System32\uniplat.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\System32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\VSSAPI.DLL c:\windows\system32\w32time.dll C:\WINDOWS\System32\Wbem\esscli.dll C:\WINDOWS\System32\Wbem\FastProx.dll C:\WINDOWS\System32\wbem\ncprov.dll C:\WINDOWS\System32\wbem\repdrvfs.dll C:\WINDOWS\System32\wbem\wbemcomn.dll C:\WINDOWS\System32\wbem\wbemcons.dll C:\WINDOWS\System32\Wbem\wbemcore.dll C:\WINDOWS\System32\wbem\wbemess.dll C:\WINDOWS\System32\wbem\wbemsvc.dll C:\WINDOWS\System32\wbem\wmiprvsd.dll c:\windows\system32\wbem\wmisvc.dll C:\WINDOWS\System32\wbem\wmiutils.dll c:\windows\system32\WINHTTP.dll C:\WINDOWS\system32\WININET.dll C:\WINDOWS\System32\WINIPSEC.DLL C:\WINDOWS\System32\WINMM.dll C:\WINDOWS\System32\WinSCard.dll C:\WINDOWS\System32\winspool.drv C:\WINDOWS\System32\WINSTA.dll C:\WINDOWS\system32\WINTRUST.dll c:\windows\system32\wkssvc.dll C:\WINDOWS\system32\WLDAP32.dll c:\windows\system32\WMI.dll c:\windows\system32\WS2_32.dll c:\windows\system32\WS2HELP.dll c:\windows\system32\wscsvc.dll C:\WINDOWS\System32\wshtcpip.dll C:\WINDOWS\system32\WSOCK32.dll c:\windows\system32\WTSAPI32.dll C:\WINDOWS\system32\wuaueng.dll c:\windows\system32\wuauserv.dll C:\WINDOWS\System32\WZCSAPI.DLL c:\windows\system32\wzcsvc.dll C:\WINDOWS\System32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\System32\svchost.exe (35)] C:\WINDOWS\AppPatch\AcGenral.DLL C:\WINDOWS\System32\actxprxy.dll C:\WINDOWS\system32\ADVAPI32.dll c:\windows\system32\CFGMGR32.dll C:\WINDOWS\System32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\System32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\System32\MSACM32.dll C:\WINDOWS\system32\MSASN1.dll c:\windows\system32\mscms.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\RPCRT4.dll c:\windows\system32\setupapi.DLL C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\System32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\System32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll c:\windows\system32\wiaservc.dll C:\WINDOWS\System32\WINMM.dll c:\windows\system32\WINSPOOL.DRV c:\windows\system32\WINSTA.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\System32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\svchost.exe (51)] C:\WINDOWS\AppPatch\AcGenral.DLL c:\windows\system32\ACTIVEDS.dll c:\windows\system32\adsldpc.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\Apphelp.dll c:\windows\system32\ATL.DLL c:\windows\system32\AUTHZ.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\comctl32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\GDI32.dll c:\windows\system32\ICAAPI.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\msi.dll c:\windows\system32\mstlsapi.dll C:\WINDOWS\system32\msv1_0.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTMARTA.DLL C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\REGAPI.dll C:\WINDOWS\system32\RPCRT4.dll c:\windows\system32\rpcss.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\SAMLIB.dll c:\windows\system32\Secur32.dll c:\windows\system32\SETUPAPI.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\ShimEng.dll C:\WINDOWS\system32\SHLWAPI.dll c:\windows\system32\termsrv.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\UxTheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WLDAP32.dll c:\windows\system32\WS2_32.dll c:\windows\system32\WS2HELP.dll C:\WINDOWS\system32\WTSAPI32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll [C:\WINDOWS\system32\winlogon.exe (66)] C:\Program Files\Softex\OmniPass\opxpgina.dll C:\WINDOWS\system32\ADVAPI32.dll C:\WINDOWS\system32\Apphelp.dll C:\WINDOWS\system32\AUTHZ.dll C:\WINDOWS\system32\CLBCATQ.DLL C:\WINDOWS\system32\COMCTL32.dll C:\WINDOWS\system32\comdlg32.dll C:\WINDOWS\system32\COMRes.dll C:\WINDOWS\system32\CRYPT32.dll C:\WINDOWS\system32\cscdll.dll C:\WINDOWS\system32\cscui.dll C:\WINDOWS\system32\GDI32.dll C:\WINDOWS\system32\IMAGEHLP.dll C:\WINDOWS\system32\iphlpapi.dll C:\WINDOWS\system32\kernel32.dll C:\WINDOWS\system32\midimap.dll C:\WINDOWS\system32\MPR.dll C:\WINDOWS\system32\MSACM32.dll C:\WINDOWS\system32\msacm32.drv C:\WINDOWS\system32\MSASN1.dll C:\WINDOWS\system32\MSGINA.dll C:\WINDOWS\system32\msv1_0.dll C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\NDdeApi.dll C:\WINDOWS\system32\NETAPI32.dll C:\WINDOWS\system32\ntdll.dll C:\WINDOWS\system32\NTMARTA.DLL C:\WINDOWS\system32\ODBC32.dll C:\WINDOWS\system32\odbcint.dll C:\WINDOWS\system32\ole32.dll C:\WINDOWS\system32\OLEAUT32.dll C:\WINDOWS\system32\PROFMAP.dll C:\WINDOWS\system32\PSAPI.DLL C:\WINDOWS\system32\RASAPI32.dll C:\WINDOWS\system32\rasman.dll C:\WINDOWS\system32\REGAPI.dll C:\WINDOWS\system32\RPCRT4.dll C:\WINDOWS\system32\rsaenh.dll C:\WINDOWS\system32\rtutils.dll C:\WINDOWS\system32\SAMLIB.dll C:\WINDOWS\system32\Secur32.dll C:\WINDOWS\system32\SETUPAPI.dll C:\WINDOWS\system32\sfc.dll C:\WINDOWS\system32\sfc_os.dll C:\WINDOWS\system32\SHELL32.dll C:\WINDOWS\system32\SHLWAPI.dll C:\WINDOWS\system32\SHSVCS.dll C:\WINDOWS\system32\sxs.dll C:\WINDOWS\system32\TAPI32.dll C:\WINDOWS\system32\USER32.dll C:\WINDOWS\system32\USERENV.dll C:\WINDOWS\system32\uxtheme.dll C:\WINDOWS\system32\VERSION.dll C:\WINDOWS\system32\wdmaud.drv C:\WINDOWS\system32\WINMM.dll C:\WINDOWS\system32\WINSCARD.DLL C:\WINDOWS\system32\WINSPOOL.DRV C:\WINDOWS\system32\WINSTA.dll C:\WINDOWS\system32\WINTRUST.dll C:\WINDOWS\system32\WLDAP32.dll C:\WINDOWS\system32\WlNotify.dll C:\WINDOWS\system32\WS2_32.dll C:\WINDOWS\system32\WS2HELP.dll C:\WINDOWS\system32\WTSAPI32.dll C:\WINDOWS\system32\xpsp2res.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll -------------------- Autostart folders: [Startup (1)] desktop.ini [User Startup (1)] desktop.ini [Common Startup (5)] Adobe Reader Speed Launch.lnk desktop.ini eFax DllCmd 4.0.lnk eFax Tray Menu 4.0.lnk Updates from HP.lnk [User Common Startup (5)] Adobe Reader Speed Launch.lnk desktop.ini eFax DllCmd 4.0.lnk eFax Tray Menu 4.0.lnk Updates from HP.lnk -------------------- Task Scheduler jobs (1): Norton AntiVirus - Scan my computer - Owner.job -------------------- IniMapping values: System NT shell = Explorer.exe User screensaver = C:\WINDOWS\System32\ssmypics.scr -------------------- Autorun.inf files: [D:\] OPEN=Info.exe folder.htt 480 480 -------------------- Autostarting batch files: [autoexec.nt] @echo off lh %SystemRoot%\system32\mscdexnt.exe lh %SystemRoot%\system32\redir lh %SystemRoot%\system32\dosx SET BLASTER=A220 I5 D1 P330 T3 [config.nt] dos=high, umb device=%SystemRoot%\system32\himem.sys files=40 -------------------- On-reboot actions: BootExecute = autocheck autochk * -------------------- Shell commands: .bat - MS-DOS Batch File - "%1" %* .cmd - Windows NT Command Script - "%1" %* .com - MS-DOS Application - "%1" %* .exe - Application - "%1" %* .hta - HTML Application - C:\WINDOWS\System32\mshta.exe "%1" %* .js - JScript Script File - C:\WINDOWS\System32\WScript.exe "%1" %* .jse - JScript Encoded Script File - C:\WINDOWS\System32\WScript.exe "%1" %* .pif - Shortcut to MS-DOS Program - "%1" %* .scr - Screen Saver - "%1" /S .txt - Text Document - C:\WINDOWS\system32\NOTEPAD.EXE %1 .vbe - VBScript Encoded Script File - C:\WINDOWS\System32\WScript.exe "%1" %* .vbs - VBScript Script File - C:\WINDOWS\System32\WScript.exe "%1" %* .wsf - Windows Script File - C:\WINDOWS\System32\WScript.exe "%1" %* .wsh - Windows Script Host Settings File - C:\WINDOWS\System32\WScript.exe "%1" %* -------------------- Driver filters: [Class filters] * Disk drives * - Upper filters PartMgr.sys - Lower filters drvmcdb.sys * DVD/CD-ROM drives * - Upper filters GEARAspiWDM.sys - Lower filters Pfc.sys MXLW2K.sys AFS2K.sys drvmcdb.sys * Infrared devices * - Upper filters IRENUM.sys * Keyboards * - Upper filters kbdclass.sys * Mice and other pointing devices * - Upper filters mouclass.sys * Storage volumes * - Upper filters VolSnap.sys * Tape drives * - Lower filters drvmcdb.sys [Device filters] * Communications Port * - Upper filters serenum.sys * Direct Parallel * - Lower filters PtiLink.sys * HP PS2 Keyboard (2K - 3) * - Upper filters PS2.sys * Intel(R) 82865G\PE\P Processor to AGP Controller - 2571 * - Upper filters AGP440.sys * Lucent Win Modem * - Lower filters ltmodem5.sys * Terminal Server Keyboard Driver * - Upper filters kbdclass.sys * Terminal Server Mouse Driver * - Upper filters mouclass.sys * WAN Miniport (IP) * - Lower filters NdisTapi.sys * WAN Miniport (PPPOE) * - Lower filters NdisTapi.sys * WAN Miniport (PPTP) * - Lower filters NdisTapi.sys -------------------- Print monitors (9): BJ Language Monitor - cnbjmon.dll Lexmark Network Port - LEXLMPM.DLL Local Port - localspl.dll Microsoft Shared Fax Monitor - FXSMON.DLL PDF995 Monitor - pdf995mon.dll PJL Language Monitor - pjlmon.dll PrintMe Port - PrintMeMon.dll Standard TCP/IP Port - tcpmon.dll USB Monitor - usbmon.dll -------------------- WinLogon autoruns: UserInit = C:\WINDOWS\system32\userinit.exe, VmApplet = rundll32 shell32,Control_RunDLL "sysdm.cpl" [Notify (12)] crypt32chain = crypt32.dll cryptnet = cryptnet.dll cscdll = cscdll.dll igfxcui = igfxsrvc.dll OPXPGina = C:\Program Files\Softex\OmniPass\opxpgina.dll ScCertProp = wlnotify.dll Schedule = wlnotify.dll sclgntfy = sclgntfy.dll SensLogn = WlNotify.dll termsrv = wlnotify.dll wlballoon = wlnotify.dll WRNotifier = WRLogonNTF.dll [Group policy extensions (6)] Microsoft Disk Quota = dskquota.dll Internet Explorer Zonemapping = iedkcs32.dll Security = scecli.dll Internet Explorer Branding = iedkcs32.dll EFS recovery = scecli.dll Software Installation = appmgmts.dll -------------------- Policies: [This user] * Alternate policies * - Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) NoDriveTypeAutoRun = dword: 145 [All users] * Primary policies * - Software\Policies\Microsoft\Windows\DriverSearching (2) DontSearchWindowsUpdate = dword: 0 DontPromptForWindowsUpdate = dword: 1 - Software\Policies\Microsoft\Windows\Installer (1) EnableAdminTSRemote = dword: 1 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecFilter{72385235-70fa-11d1-864c-14a300000000} (7) ClassName = ipsecFilter description = Matches all ICMP packets between this computer and any other computer. name = ipsecFilter{72385235-70fa-11d1-864c-14a300000000} ipsecName = All ICMP Traffic ipsecID = {72385235-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecFilter{7238523a-70fa-11d1-864c-14a300000000} (7) ClassName = ipsecFilter description = Matches all IP packets from this computer to any other computer, except broadcast, multicast, Kerberos, RSVP and ISAKMP (IKE). name = ipsecFilter{7238523a-70fa-11d1-864c-14a300000000} ipsecName = All IP Traffic ipsecID = {7238523a-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385231-70fa-11d1-864c-14a300000000} (5) ClassName = ipsecISAKMPPolicy name = ipsecISAKMPPolicy{72385231-70fa-11d1-864c-14a300000000} ipsecID = {72385231-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385234-70fa-11d1-864c-14a300000000} (5) ClassName = ipsecISAKMPPolicy name = ipsecISAKMPPolicy{72385234-70fa-11d1-864c-14a300000000} ipsecID = {72385234-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385237-70fa-11d1-864c-14a300000000} (5) ClassName = ipsecISAKMPPolicy name = ipsecISAKMPPolicy{72385237-70fa-11d1-864c-14a300000000} ipsecID = {72385237-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{7238523d-70fa-11d1-864c-14a300000000} (5) ClassName = ipsecISAKMPPolicy name = ipsecISAKMPPolicy{7238523d-70fa-11d1-864c-14a300000000} ipsecID = {7238523d-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{581832f6-c991-40b8-a912-d546d144f3e6} (7) ClassName = ipsecNegotiationPolicy name = ipsecNegotiationPolicy{581832f6-c991-40b8-a912-d546d144f3e6} ipsecID = {581832f6-c991-40b8-a912-d546d144f3e6} ipsecNegotiationPolicyAction = {8a171dd3-77e3-11d1-8659-a04f00000000} ipsecNegotiationPolicyType = {62f49e13-6c37-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{616b0640-a1ef-4fa8-9680-e9f95bb0f867} (7) ClassName = ipsecNegotiationPolicy name = ipsecNegotiationPolicy{616b0640-a1ef-4fa8-9680-e9f95bb0f867} ipsecID = {616b0640-a1ef-4fa8-9680-e9f95bb0f867} ipsecNegotiationPolicyAction = {8a171dd3-77e3-11d1-8659-a04f00000000} ipsecNegotiationPolicyType = {62f49e13-6c37-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{72385233-70fa-11d1-864c-14a300000000} (9) ClassName = ipsecNegotiationPolicy description = Accepts unsecured communication, but requests clients to establish trust and security methods. Will communicate insecurely to untrusted clients if they do not respond to request. name = ipsecNegotiationPolicy{72385233-70fa-11d1-864c-14a300000000} ipsecName = Request Security (Optional) ipsecID = {72385233-70fa-11d1-864c-14a300000000} ipsecNegotiationPolicyAction = {3f91a81a-7647-11d1-864d-d46a00000000} ipsecNegotiationPolicyType = {62f49e10-6c37-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000} (9) ClassName = ipsecNegotiationPolicy description = Permit unsecured IP packets to pass through. name = ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000} ipsecName = Permit ipsecID = {7238523b-70fa-11d1-864c-14a300000000} ipsecNegotiationPolicyAction = {8a171dd2-77e3-11d1-8659-a04f00000000} ipsecNegotiationPolicyType = {62f49e10-6c37-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523f-70fa-11d1-864c-14a300000000} (9) ClassName = ipsecNegotiationPolicy description = Accepts unsecured communication, but always requires clients to establish trust and security methods. Will NOT communicate with untrusted clients. name = ipsecNegotiationPolicy{7238523f-70fa-11d1-864c-14a300000000} ipsecName = Require Security ipsecID = {7238523f-70fa-11d1-864c-14a300000000} ipsecNegotiationPolicyAction = {3f91a81a-7647-11d1-864d-d46a00000000} ipsecNegotiationPolicyType = {62f49e10-6c37-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{8d76686c-8993-4efd-afb9-c78d9b7207c6} (7) ClassName = ipsecNegotiationPolicy name = ipsecNegotiationPolicy{8d76686c-8993-4efd-afb9-c78d9b7207c6} ipsecID = {8d76686c-8993-4efd-afb9-c78d9b7207c6} ipsecNegotiationPolicyAction = {8a171dd3-77e3-11d1-8659-a04f00000000} ipsecNegotiationPolicyType = {62f49e13-6c37-11d1-864c-14a300000000} ipsecDataType = dword: 256 whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{1f0c8b99-3c4f-4715-9228-ba689833f359} (6) ClassName = ipsecNFA name = ipsecNFA{1f0c8b99-3c4f-4715-9228-ba689833f359} ipsecID = {1f0c8b99-3c4f-4715-9228-ba689833f359} ipsecDataType = dword: 256 ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{581832f6-c991-40b8-a912-d546d144f3e6} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{35f67b07-2e3c-4f8e-b892-16e854a91b46} (8) ClassName = ipsecNFA name = ipsecNFA{35f67b07-2e3c-4f8e-b892-16e854a91b46} ipsecName = Permit unsecure ICMP packets to pass through. description = Permit unsecure ICMP packets to pass through. ipsecID = {35f67b07-2e3c-4f8e-b892-16e854a91b46} ipsecDataType = dword: 256 ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{4ea9daaf-f4c4-4066-a698-2246bb4cfbe2} (8) ClassName = ipsecNFA name = ipsecNFA{4ea9daaf-f4c4-4066-a698-2246bb4cfbe2} ipsecName = Require Security description = Accepts unsecured communication, but always requires clients to establish trust and security methods. Will NOT communicate with untrusted clients. ipsecID = {4ea9daaf-f4c4-4066-a698-2246bb4cfbe2} ipsecDataType = dword: 256 ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523f-70fa-11d1-864c-14a300000000} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{7df27183-1292-4469-ac4a-5c4f9a0b1470} (6) ClassName = ipsecNFA name = ipsecNFA{7df27183-1292-4469-ac4a-5c4f9a0b1470} ipsecID = {7df27183-1292-4469-ac4a-5c4f9a0b1470} ipsecDataType = dword: 256 ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{8d76686c-8993-4efd-afb9-c78d9b7207c6} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{e9162daa-ff64-49e4-b490-acbf1384eb52} (8) ClassName = ipsecNFA name = ipsecNFA{e9162daa-ff64-49e4-b490-acbf1384eb52} ipsecName = Permit unsecure ICMP packets to pass through. description = Permit unsecure ICMP packets to pass through. ipsecID = {e9162daa-ff64-49e4-b490-acbf1384eb52} ipsecDataType = dword: 256 ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{ed537fa8-e9cc-4d73-a6dc-f7f873f29811} (8) ClassName = ipsecNFA name = ipsecNFA{ed537fa8-e9cc-4d73-a6dc-f7f873f29811} ipsecName = Request Security (Optional) Rule description = For all IP traffic, always request security using Kerberos trust. Allow unsecured communication with clients that do not respond to request. ipsecID = {ed537fa8-e9cc-4d73-a6dc-f7f873f29811} ipsecDataType = dword: 256 ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{72385233-70fa-11d1-864c-14a300000000} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{f369098c-c0dd-4f6d-a1ef-c7c0c99cf439} (6) ClassName = ipsecNFA name = ipsecNFA{f369098c-c0dd-4f6d-a1ef-c7c0c99cf439} ipsecID = {f369098c-c0dd-4f6d-a1ef-c7c0c99cf439} ipsecDataType = dword: 256 ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{616b0640-a1ef-4fa8-9680-e9f95bb0f867} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecPolicy{72385230-70fa-11d1-864c-14a300000000} (8) ClassName = ipsecPolicy description = For all IP traffic, always request security using Kerberos trust. Allow unsecured communication with clients that do not respond to request. name = ipsecPolicy{72385230-70fa-11d1-864c-14a300000000} ipsecName = Server (Request Security) ipsecID = {72385230-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 ipsecISAKMPReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385231-70fa-11d1-864c-14a300000000} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecPolicy{72385236-70fa-11d1-864c-14a300000000} (8) ClassName = ipsecPolicy description = Communicate normally (unsecured). Use the default response rule to negotiate with servers that request security. Only the requested protocol and port traffic with that server is secured. name = ipsecPolicy{72385236-70fa-11d1-864c-14a300000000} ipsecName = Client (Respond Only) ipsecID = {72385236-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 ipsecISAKMPReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385237-70fa-11d1-864c-14a300000000} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecPolicy{7238523c-70fa-11d1-864c-14a300000000} (8) ClassName = ipsecPolicy description = For all IP traffic, always require security using Kerberos trust. Do NOT allow unsecured communication with untrusted clients. name = ipsecPolicy{7238523c-70fa-11d1-864c-14a300000000} ipsecName = Secure Server (Require Security) ipsecID = {7238523c-70fa-11d1-864c-14a300000000} ipsecDataType = dword: 256 ipsecISAKMPReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{7238523d-70fa-11d1-864c-14a300000000} whenChanged = dword: 1049926418 - Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers (4) TransparentEnabled = dword: 1 DefaultLevel = dword: 262144 AuthenticodeEnabled = dword: 0 PolicyScope = dword: 0 - Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328} (4) Description = Stop the download of this file FriendlyName = Mdac11.cab SaferFlags = dword: 0 HashAlg = dword: 32771 - Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91} (4) Description = Stop the download of this file FriendlyName = mdac20.cab SaferFlags = dword: 0 HashAlg = dword: 32771 - Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f} (4) Description = Stop the download of this file FriendlyName = mdac20_a.cab SaferFlags = dword: 0 HashAlg = dword: 32771 - Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d} (4) Description = Stop the download of this file FriendlyName = _msadc10.cab SaferFlags = dword: 0 HashAlg = dword: 32771 - Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc} (4) Description = Stop the download of this file FriendlyName = msadc11.cab SaferFlags = dword: 0 HashAlg = dword: 32771 - Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33} (2) Description = SaferFlags = dword: 0 * Alternate policies * - Software\Microsoft\Windows\CurrentVersion\policies\NonEnum (3) {BDEADF00-C265-11D0-BCED-00A0C90AB50F} = dword: 1 {6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} = dword: 1073741857 {0DF44EAA-FF21-4412-828E-260A8728E7F1} = dword: 32 - Software\Microsoft\Windows\CurrentVersion\policies\system (5) dontdisplaylastusername = dword: 0 legalnoticecaption = legalnoticetext = shutdownwithoutlogon = dword: 1 undockwithoutlogon = dword: 1 -------------------- Browser Helper Objects (4): AcroIEHlprObj Class = {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} = C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll NAV Helper = {BDF3E430-B101-42AD-A544-FADC6B084872} = C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll Norton Internet Security = {9ECB9560-04F9-4bbc-943D-298DDF1699E1} = C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll SSVHelper Class = {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} = C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll -------------------- ActiveX objects (15): BASEIE40_W2K - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe DOTNETFRAMEWORKS - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\System32\Rundll32.exe C:\WINDOWS\System32\mscories.dll,Install Fax - {8b15971b-5355-4c82-8c07-7e181ea07608} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\fxsocm.inf,Fax.Install.PerUser IE4Shell_NT - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll IEACCESS - {26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigIE MailNews - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install Messenger - {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.inf,PerUserStub NetMeeting - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT OEACCESS - {881dd1c5-3dcf-431b-b061-f3f88e8be88a} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigOE Theme Component - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\WINDOWS\system32\regsvr32.exe /s /n /i:/UserInstall C:\WINDOWS\system32\themeui.dll WAB - {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install WebPost - {44BBA851-CC51-11CF-AAFA-00AA00B6015C} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wpie4x86.inf,PerUserStub Windows Marketplace Link - {4b218e3e-bc98-4770-93d3-2731b9329278} - C:\WINDOWS\System32\rundll32.exe setupapi,InstallHinfSection MarketplaceLinkInstall 896 C:\WINDOWS\inf\ie.inf WMPACCESS - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP -------------------- Internet Explorer toolbars: [All users (3)] hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [This user] * ShellBrowser (3) * hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll * WebBrowser (5) * Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll Norton Internet Security - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - (no file) -------------------- Internet Explorer buttons/tools (2): Sun Java Console - {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe -------------------- Internet Explorer menu extensions: [This user (1)] E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 -------------------- Internet Explorer Bands (9): Search Band - {30D02401-6A81-11d0-8274-00C04FD5AE38} - C:\WINDOWS\System32\browseui.dll &Tip of the Day - {4D5C8C25-D075-11d0-B416-00C04FB90376} - C:\WINDOWS\System32\shdocvw.dll hp toolkit - {8F4902B6-6C04-4ade-8052-AA58578A21BD} - C:\WINDOWS\System32\Shdocvw.dll hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL &Discuss - {BDEADE7F-C265-11D0-BCED-00A0C90AB50F} - shdocvw.dll File Search Explorer Band - {C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} - C:\WINDOWS\system32\SHELL32.dll Favorites Band - {EFA24E61-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\System32\shdocvw.dll History Band - {EFA24E62-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\System32\shdocvw.dll Explorer Band - {EFA24E64-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\System32\shdocvw.dll -------------------- Downloaded Program Files (31): DirectAnimation Java Classes - DirectAnimation Java Classes - (no file) - file://C:\WINDOWS\Java\classes\dajava.cab Microsoft XML Parser for Java - Microsoft XML Parser for Java - (no file) - file://C:\WINDOWS\Java\classes\xmldso.cab Yahoo! Go Fish - Yahoo! Go Fish - (no file) - http://download.games.yahoo.com/games/clients/y/zt3_x.cab SupportSoft SmartIssue - {01010E00-5E80-11D8-9E86-0007E96C65AE} - C:\WINDOWS\Downloaded Program Files\tgctlsi.dll - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab SupportSoft Script Runner Class - {01012101-5E80-11D8-9E86-0007E96C65AE} - C:\WINDOWS\Downloaded Program Files\tgctlsr.dll - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab Microsoft Office Template and Media Control - {02BCC737-B171-4746-94C9-0D8A0B2C0089} - C:\WINDOWS\Downloaded Program Files\IEAWSDC.DLL - http://office.microsoft.com/templates/ieawsdc.cab QuickTime Object - {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - C:\Program Files\QuickTime\QTPlugin.ocx - http://www.apple.com/qtactivex/qtplugin.cab ClickLoan Control - {05842B0C-271B-412F-958F-D1A8F6CAD937} - C:\WINDOWS\System32\GENCLI~1.OCX - https://www.clickloan.com/CAB/GenClickLoan/1,0,0,11/GenClickLoan.cab MeadCo ScriptX Basic - {1663ed61-23eb-11d2-b92f-008048fdd814} - C:\WINDOWS\System32\MCScripX.dll - https://www.resmae.com/ScriptX.cab LSSupCtl Class - {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - C:\WINDOWS\Downloaded Program Files\LSSupCtl.dll - https://www-secure.symantec.com/techsupp/asa/LSSupCtl.cab Symantec AntiVirus scanner - {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} - C:\WINDOWS\Downloaded Program Files\avsniff.dll - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab Office Update Installation Engine - {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - C:\WINDOWS\opuc.dll - http://office.microsoft.com/officeupdate/content/opuc3.cab (no name) - {41F17733-B041-4099-A042-B518BB6A408C} - (no file) - http://a1540.g.akamai.net/7/1540/52/20031216/qtinstall.info.apple.com/mickey/us/win/QuickTimeInstaller.exe RdxIE Class - {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - C:\WINDOWS\Downloaded Program Files\RdxIE.dll - http://software-dl.real.com/1719195af2b8f56b1201/netzip/RdxIE601.cab ContClickLoan Control - {56BCB794-783A-48F1-A4C2-110F32371830} - C:\WINDOWS\System32\CONTCL~1.OCX - https://www.clickloan.com/CAB/ContClickLoan/1,0,0,12/ContClickLoan.cab Symantec RuFSI Utility Class - {644E432F-49D3-41A1-8DD5-E099162EEEC5} - C:\WINDOWS\Downloaded Program Files\rufsi.dll - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab HouseCall Control - {74D05D43-3236-11D4-BDCD-00C04F9A3B61} - C:\WINDOWS\DOWNLO~1\xscan53.ocx - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab Groove Control - {77E32299-629F-43C6-AB77-6A1E6D7663F6} - C:\WINDOWS\Downloaded Program Files\GrooveAX.dll - http://www.nick.com/common/groove/gx/GrooveAX27.cab Java Runtime Environment 1.5.0 - {8AD9C840-044E-11D1-B3E9-00805F499D93} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll - http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab HostWin Class - {960B6AEC-118A-4745-A070-819025E17534} - C:\WINDOWS\Downloaded Program Files\Cwbr.dll - http://backup.capsure.com/webrestore/wbr.cab (no name) - {96D338F5-8757-4A1C-AFEA-770A4036752F} - (no file) - https://setup.bellsouth.net/wizlet/BellSouthDial/static/controls/WebflowActiveXCab.CAB EnClickLoan Control - {A0C321EA-07EE-4DA3-96CB-6F6516FB4A43} - C:\WINDOWS\system32\ENCLIC~1.OCX - https://www.clickloan.com/CAB/EnClickLoan/1,0,0,1/EnClickLoan.cab Toontown Installer ActiveX Control - {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} - C:\WINDOWS\Downloaded Program Files\ttinst.dll - http://download.toontown.com/sv1.0.15.38/ttinst.cab Java Runtime Environment 1.5.0 - {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll - http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab Java Runtime Environment 1.5.0 - {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll - http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab ActiveDataInfo Class - {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - C:\WINDOWS\Downloaded Program Files\SymAData.dll - https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab Shockwave Flash Object - {D27CDB6E-AE6D-11CF-96B8-444553540000} - C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx - http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab iTunesDetector Class - {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} - C:\Program Files\iTunes\ITDetector.ocx - http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab PtClickLoan Control - {DF05D910-DC8E-403A-93B0-5C866F3200D1} - C:\WINDOWS\System32\PTCLIC~1.OCX - https://www.clickloan.com/CAB/PtClickLoan/1,0,0,12/PtClickLoan.cab GpcContainer Class - {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - C:\WINDOWS\Downloaded Program Files\ieatgpc.dll - https://novastarsupport.webex.com/client/latest/support/ieatgpc.cab LOSInterface.LOSIface - {FD5A684E-B2FE-4039-9068-48CF8B740E14} - C:\WINDOWS\Downloaded Program Files\LOSInterface.ocx - http://www.novastaris.com/export/LOSInterface.CAB -------------------- URL search hooks: [This user (1)] Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\System32\shdocvw.dll -------------------- Explorer clones: C:\WINDOWS\explorer.exe -------------------- Image File Execution Options (1): Your Image File Name Here without a path = ntsd -d -------------------- ContextMenuHandlers: [* (7)] HotShellExt_40 = {6BC1BB05-BA15-415d-8C62-093A7F312FD2} = C:\Program Files\eFax Messenger 4.0\J2GShell.dll Offline Files = {750fdf0e-2a26-11d1-a3ea-080036587f03} = C:\WINDOWS\System32\cscui.dll Open With = {09799AFB-AD67-11d1-ABCD-00C04FC30936} = C:\WINDOWS\system32\SHELL32.dll Open With EncryptionMenu = {A470F8CF-A1E8-4f65-8335-227475AA5C46} = C:\WINDOWS\system32\SHELL32.dll OPShellE = {CCFE56EE-C7DE-44EE-A160-4553A5A912C9} = C:\Program Files\Softex\OmniPass\opshelle.dll Start Menu Pin = {a2a9545d-a0c2-42b4-9708-a0b2badd77c8} = C:\WINDOWS\system32\SHELL32.dll Symantec.Norton.Antivirus.IEContextMenu = {5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2} = C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [Drive (6)] Disk Copy Extension = {59099400-57FF-11CE-BD94-0020AF85B590} = diskcopy.dll Offline Files = {750fdf0e-2a26-11d1-a3ea-080036587f03} = C:\WINDOWS\System32\cscui.dll Portable Media Devices Menu = {cc86590a-b60a-48e6-996b-41d25ed39a1e} = C:\WINDOWS\system32\Audiodev.dll Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = ntshrui.dll ShellFolder for CD Burning = {fbeb8a05-beee-4442-804e-409d6c4515e9} = C:\WINDOWS\system32\SHELL32.dll Symantec.Norton.Antivirus.IEContextMenu = {5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2} = C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [Folder (1)] Symantec.Norton.Antivirus.IEContextMenu = {5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2} = C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [CompressedFolder (1)] Compressed (zipped) Folder Context Menu = {b8cdcb65-b1bf-4b42-9428-1dfdb7ee92af} = C:\WINDOWS\System32\zipfldr.dll [Directory (4)] EncryptionMenu = {A470F8CF-A1E8-4f65-8335-227475AA5C46} = C:\WINDOWS\system32\SHELL32.dll Offline Files = {750fdf0e-2a26-11d1-a3ea-080036587f03} = C:\WINDOWS\System32\cscui.dll OPShellE = {CCFE56EE-C7DE-44EE-A160-4553A5A912C9} = C:\Program Files\Softex\OmniPass\opshelle.dll Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = ntshrui.dll [Directory\Background (2)] igfxcui = {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} = C:\WINDOWS\System32\igfxpph.dll New = {D969A300-E7FF-11d0-A93B-00A0C90F2719} = C:\WINDOWS\system32\SHELL32.dll [file (1)] Symantec.Norton.Antivirus.IEContextMenu = {5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2} = C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [ChannelShortcut (1)] Channel Menu Handler Object = {f3da0dc0-9cc8-11d0-a599-00c04fd64437} = C:\WINDOWS\System32\cdfview.dll [InternetShortcut (1)] Internet Shortcut = {FBF23B40-E3F0-101B-8488-00AA003E56F8} = shdocvw.dll [AllFileSystemObjects (1)] Send To = {7BA4C740-9E81-11CF-99D3-00AA004AE837} = C:\WINDOWS\system32\SHELL32.dll -------------------- ColumnHandlers (5): (no name) - {0D2E74C4-3C34-11d2-A27E-00C04FC30871} - C:\WINDOWS\system32\SHELL32.dll (no name) - {24F14F01-7B1C-11d1-838f-0000F80461CF} - C:\WINDOWS\system32\SHELL32.dll (no name) - {24F14F02-7B1C-11d1-838f-0000F80461CF} - C:\WINDOWS\system32\SHELL32.dll (no name) - {66742402-F9B9-11D1-A202-0000F81FEDEE} - C:\WINDOWS\system32\SHELL32.dll PDF Shell Extension - {F9DB5320-233E-11D1-9F84-707F02C10627} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll -------------------- ShellExecuteHooks (1): URL Exec Hook = {AEB6717E-7E19-11d0-97EE-00C04FD91972} = shell32.dll -------------------- Approved Shell Extensions: [All users (186)] %DESC_PublishDropTarget% - {60fd46de-f830-4894-a628-6fa81bc0190d} - C:\WINDOWS\System32\photowiz.dll &Address - {01E04581-4EEE-11d0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll .CAB file viewer - {0CD7A5C0-9F37-11CE-AE65-08002B2E1262} - cabview.dll Accessible - {7e653215-fa25-46bd-a339-34a2790f3cb7} - C:\WINDOWS\System32\browseui.dll ActiveX Cache Folder - {88C6C381-2E85-11D0-94DE-444553540000} - C:\WINDOWS\System32\occache.dll Address Bar Parser - {E0E11A09-5CB8-4B6C-8332-E00720A168F2} - C:\WINDOWS\System32\browseui.dll Address EditBox - {A08C11D2-A228-11d0-825B-00AA005B4383} - C:\WINDOWS\System32\browseui.dll Administrative Tools - {D20EA4E1-3957-11d2-A40B-0C5020524153} - C:\WINDOWS\system32\shdocvw.dll Audio Media Properties Handler - {875CB1A1-0F29-45de-A1AE-CFB4950D0B78} - C:\WINDOWS\System32\shmedia.dll Augmented Shell Folder - {91EA3F8B-C99B-11d0-9815-00C04FD91972} - C:\WINDOWS\System32\browseui.dll Augmented Shell Folder 2 - {6413BA2C-B461-11d1-A18A-080036B11A03} - C:\WINDOWS\System32\browseui.dll Auto Update Property Sheet Extension - {5F327514-6C5E-4d60-8F16-D07FA08A78ED} - C:\WINDOWS\system32\wuaucpl.cpl Avi Properties Handler - {87D62D94-71B3-4b9a-9489-5FE6850DC73E} - C:\WINDOWS\System32\shmedia.dll BandProxy - {F61FFEC1-754F-11d0-80CA-00AA005B4383} - C:\WINDOWS\System32\browseui.dll Briefcase - {85BBD920-42A0-1069-A2E4-08002B30309D} - syncui.dll CDF Extension Copy Hook - {67EA19A0-CCEF-11d0-8024-00C04FD75D13} - C:\WINDOWS\System32\shdocvw.dll Channel File - {f39a0dc0-9cc8-11d0-a599-00c04fd64433} - C:\WINDOWS\System32\cdfview.dll Channel Handler Object - {f3ba0dc0-9cc8-11d0-a599-00c04fd64435} - C:\WINDOWS\System32\cdfview.dll Channel Menu - {f3da0dc0-9cc8-11d0-a599-00c04fd64437} - C:\WINDOWS\System32\cdfview.dll Channel Properties - {f3ea0dc0-9cc8-11d0-a599-00c04fd64438} - C:\WINDOWS\System32\cdfview.dll Channel Shortcut - {f3aa0dc0-9cc8-11d0-a599-00c04fd64434} - C:\WINDOWS\System32\cdfview.dll Code Download Agent - {7D559C10-9FE9-11d0-93F7-00AA0059CE02} - C:\WINDOWS\System32\webcheck.dll Compatibility Page - {513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} - SlayerXP.dll Compressed (zipped) Folder - {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} - C:\WINDOWS\System32\zipfldr.dll Compressed (zipped) Folder Right Drag Handler - {BD472F60-27FA-11cf-B8B4-444553540000} - C:\WINDOWS\System32\zipfldr.dll Compressed (zipped) Folder SendTo Target - {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} - C:\WINDOWS\System32\zipfldr.dll ConnectionAgent - {E6CC6978-6B6E-11D0-BECA-00C04FD940BE} - C:\WINDOWS\System32\webcheck.dll Crypto PKO Extension - {7444C717-39BF-11D1-8CD9-00C04FC29D45} - C:\WINDOWS\system32\cryptext.dll Crypto Sign Extension - {7444C719-39BF-11D1-8CD9-00C04FC29D45} - C:\WINDOWS\system32\cryptext.dll Custom MRU AutoCompleted List - {6935DB93-21E8-4ccc-BEB9-9FE3C77A297A} - C:\WINDOWS\System32\browseui.dll Darwin App Publisher - {CFCCC7A0-A282-11D1-9082-006008059382} - C:\WINDOWS\System32\appwiz.cpl Desktop Explorer - {1CDB2949-8F65-4355-8456-263E7C208A5D} - C:\WINDOWS\System32\nvshell.dll Desktop Explorer Menu - {1E9B04FB-F9E5-4718-997B-B8DA88302A47} - C:\WINDOWS\System32\nvshell.dll DfsShell - {ECCDF543-45CC-11CE-B9BF-0080C87CDBA6} - C:\WINDOWS\System32\dfsshlex.dll Directory Context Menu Verbs - {62AE1F9A-126A-11D0-A14B-0800361B1103} - C:\WINDOWS\System32\dsuiext.dll Directory Object Find - {163FDC20-2ABC-11d0-88F0-00A024AB2DBB} - C:\WINDOWS\System32\dsquery.dll Directory Property UI - {0D45D530-764B-11d0-A1CA-00AA00C16E65} - C:\WINDOWS\System32\dsuiext.dll Directory Query UI - {8A23E65E-31C2-11d0-891C-00A024AB2DBB} - C:\WINDOWS\System32\dsquery.dll Directory Start/Search Find - {F020E586-5264-11d1-A532-0000F8757D7E} - C:\WINDOWS\System32\dsquery.dll Disk Copy Extension - {59099400-57FF-11CE-BD94-0020AF85B590} - diskcopy.dll Disk Quota UI - {7988B573-EC89-11cf-9C00-00AA00A14F56} - dskquoui.dll Display Adapter CPL Extension - {42071712-76d4-11d1-8b24-00a0c9068ff3} - deskadp.dll Display Monitor CPL Extension - {42071713-76d4-11d1-8b24-00a0c9068ff3} - deskmon.dll Display Panning CPL Extension - {42071714-76d4-11d1-8b24-00a0c9068ff3} - deskpan.dll Display TroubleShoot CPL Extension - {f92e8c40-3d33-11d2-b1aa-080036a75b03} - deskperf.dll Download Status - {22BF0C20-6DA7-11D0-B373-00A0C9034938} - C:\WINDOWS\System32\browseui.dll DS Security Page - {4E40F770-369C-11d0-8922-00A024AB2DBB} - dssec.dll eFax Messenger - Shell Extension - {6bc1bb05-ba15-415d-8c62-093a7f312fd2} - C:\Program Files\eFax Messenger 4.0\J2GShell.dll E-mail - {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll Encryption Context Menu - {853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} - Explorer Band - {EFA24E64-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\System32\shdocvw.dll Extensions Manager Folder - {692F0339-CBAA-47e6-B5B5-3B84DB604E87} - C:\WINDOWS\System32\extmgr.dll Favorites Band - {EFA24E61-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\System32\shdocvw.dll Fonts - {BD84B380-8CA2-1069-AB1D-08000948F534} - fontext.dll Fonts - {D20EA4E1-3957-11d2-A40B-0C5020524152} - C:\WINDOWS\system32\shdocvw.dll For &People... - {32714800-2E5F-11d0-8B85-00AA0044F941} - C:\Program Files\Outlook Express\wabfind.dll FTP Folders Webview - {63da6ec0-2e98-11cf-8d82-444553540000} - C:\WINDOWS\System32\msieftp.dll Fusion Cache - {1D2680C9-0E2A-469d-B787-065558BC7D43} - C:\WINDOWS\System32\mscoree.dll GDI+ file thumbnail extractor - {3F30C968-480A-4C6C-862D-EFC0897BB84B} - C:\WINDOWS\System32\shimgvw.dll Get a Passport Wizard - {58f1f272-9240-4f51-b6d4-fd63d1618591} - C:\WINDOWS\System32\netplwiz.dll Global Folder Settings - {EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} - C:\WINDOWS\System32\browseui.dll Help and Support - {2559a1f1-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll Help and Support - {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll History - {FF393560-C2A7-11CF-BFF4-444553540000} - C:\WINDOWS\System32\shdocvw.dll HTML Thumbnail Extractor - {EAB841A0-9550-11cf-8C16-00805F1408F3} - C:\WINDOWS\System32\shimgvw.dll HyperTerminal Icon Ext - {88895560-9AA2-1069-930E-00AA0030EBC8} - C:\WINDOWS\System32\hticons.dll ICC Profile - {DBCE2480-C732-101B-BE72-BA78E9AD5B27} - C:\WINDOWS\system32\icmui.dll ICM Monitor Management - {5DB2625A-54DF-11D0-B6C4-0800091AA605} - C:\WINDOWS\System32\icmui.dll ICM Printer Management - {675F097E-4C4D-11D0-B6C1-0800091AA605} - C:\WINDOWS\system32\icmui.dll ICM Scanner Management - {176d6597-26d3-11d1-b350-080036a75b03} - icmui.dll IE4 Suite Splash Screen - {A2B0DD40-CC59-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\shdocvw.dll In-pane search - {169A0691-8DF9-11d1-A1C4-00C04FD75D13} - C:\WINDOWS\System32\browseui.dll Installed Apps Enumerator - {0B124F8F-91F0-11D1-B8B5-006008059382} - C:\WINDOWS\System32\appwiz.cpl Internet - {2559a1f4-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll Internet Name Space - {871C5380-42A0-1069-A2EA-08002B30309D} - C:\WINDOWS\System32\shdocvw.dll InternetShortcut - {FBF23B40-E3F0-101B-8488-00AA003E56F8} - shdocvw.dll ISFBand OC - {131A6951-7F78-11D0-A979-00C04FD705A2} - C:\WINDOWS\System32\shdocvw.dll iTunes - {B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} - C:\Program Files\iTunes\iTunesMiniPlayer.dll Media Band - {32683183-48a0-441b-a342-7c2a440a9478} - Microsoft Agent Character Property Sheet Handler - {143A62C8-C33B-11D1-84FE-00C04FA34A14} - C:\WINDOWS\msagent\agentpsh.dll Microsoft AutoComplete - {00BB2763-6A77-11D0-A535-00C04FD7D062} - C:\WINDOWS\System32\browseui.dll Microsoft Browser Architecture - {A5E46E3A-8849-11D1-9D8C-00C04FC99D61} - C:\WINDOWS\System32\shdocvw.dll Microsoft BrowserBand - {7BA4C742-9E81-11CF-99D3-00AA004AE837} - C:\WINDOWS\System32\browseui.dll Microsoft Data Link - {2206CDB2-19C1-11D1-89E0-00C04FD7A829} - C:\Program Files\Common Files\System\OLE DB\OLEDB32.DLL Microsoft DocProp Inplace Calendar Control - {6A205B57-2567-4A2C-B881-F787FAB579A3} - C:\WINDOWS\System32\docprop2.dll Microsoft DocProp Inplace Droplist Combo Control - {0EEA25CC-4362-4A12-850B-86EE61B0D3EB} - C:\WINDOWS\System32\docprop2.dll Microsoft DocProp Inplace Edit Box Control - {A9CF0EAE-901A-4739-A481-E35B73E47F6D} - C:\WINDOWS\System32\docprop2.dll Microsoft DocProp Inplace ML Edit Box Control - {8EE97210-FD1F-4B19-91DA-67914005F020} - C:\WINDOWS\System32\docprop2.dll Microsoft DocProp Inplace Time Control - {28F8A4AC-BBB3-4D9B-B177-82BFC914FA33} - C:\WINDOWS\System32\docprop2.dll Microsoft DocProp Shell Ext - {883373C3-BF89-11D1-BE35-080036B11A03} - C:\WINDOWS\System32\docprop2.dll Microsoft History AutoComplete List - {00BB2764-6A77-11D0-A535-00C04FD7D062} - C:\WINDOWS\System32\browseui.dll Microsoft Internet Toolbar - {5E6AB780-7743-11CF-A12B-00AA004AE837} - C:\WINDOWS\System32\browseui.dll Microsoft Multiple AutoComplete List Container - {00BB2765-6A77-11D0-A535-00C04FD7D062} - C:\WINDOWS\System32\browseui.dll Microsoft Office HTML Icon Handler - {42042206-2D85-11D3-8CFF-005004838597} - C:\Program Files\Microsoft Office\Office10\msohev.dll Microsoft Outlook Custom Icon Handler - {0006F045-0000-0000-C000-000000000046} - C:\Program Files\Microsoft Office\Office10\OLKFSTUB.DLL Microsoft Shell Folder AutoComplete List - {03C036F1-A186-11D0-824A-00AA005B4383} - C:\WINDOWS\System32\browseui.dll Microsoft Url History Service - {3C374A40-BAE4-11CF-BF7D-00AA006946EE} - C:\WINDOWS\System32\shdocvw.dll Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\System32\shdocvw.dll Midi Properties Handler - {A6FD9E45-6E44-43f9-8644-08598F5A74D9} - C:\WINDOWS\System32\shmedia.dll MMC Icon Handler - {7A80E4A8-8005-11D2-BCF8-00C04F72C717} - C:\WINDOWS\System32\mmcshext.dll MRU AutoComplete List - {6756A641-DE71-11d0-831B-00AA005B4383} - C:\WINDOWS\System32\browseui.dll Multimedia File Property Sheet - {00022613-0000-0000-C000-000000000046} - mmsys.cpl MyDocs Copy Hook - {ECF03A33-103D-11d2-854D-006008059367} - C:\WINDOWS\System32\mydocs.dll MyDocs Drop Target - {ECF03A32-103D-11d2-854D-006008059367} - C:\WINDOWS\System32\mydocs.dll MyDocs Properties - {4a7ded0a-ad25-11d0-98a8-0800361b1103} - C:\WINDOWS\System32\mydocs.dll Network Connections - {7007ACC7-3202-11D1-AAD2-00805FC1270E} - C:\WINDOWS\system32\NETSHELL.dll Network Connections - {992CFFA0-F557-101A-88EC-00DD010CCC48} - C:\WINDOWS\system32\NETSHELL.dll NTFS Security Page - {1F2E5C40-9550-11CE-99D2-00AA006E086C} - rshx32.dll Offline Files Folder - {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} - C:\WINDOWS\System32\cscui.dll Offline Files Folder Options - {10CFC467-4392-11d2-8DB4-00C04FA31A66} - C:\WINDOWS\System32\cscui.dll Offline Files Menu - {750fdf0e-2a26-11d1-a3ea-080036587f03} - C:\WINDOWS\System32\cscui.dll OLE Docfile Property Page - {3EA48300-8CF6-101B-84FB-666CCB9BCD32} - docprop.dll OmniPass Shell Extension - {CCFE56EE-C7DE-44EE-A160-4553A5A912C9} - C:\Program Files\Softex\OmniPass\opshelle.dll PlusPack CPL Extension - {41E300E0-78B6-11ce-849B-444553540000} - C:\WINDOWS\System32\themeui.dll Portable Media Devices - {640167b4-59b0-47a6-b335-a6b3c0695aea} - C:\WINDOWS\system32\Audiodev.dll Portable Media Devices Menu - {cc86590a-b60a-48e6-996b-41d25ed39a1e} - C:\WINDOWS\system32\Audiodev.dll PostAgent - {D8BD2030-6FC9-11D0-864F-00AA006809D9} - C:\WINDOWS\System32\webcheck.dll Previous Versions - {9DB7A13C-F208-4981-8353-73CC61AE2783} - C:\WINDOWS\System32\twext.dll Previous Versions Property Page - {596AB062-B4D2-4215-9F74-E9109B0A8153} - C:\WINDOWS\System32\twext.dll Print Ordering via the Web - {add36aa8-751a-4579-a266-d66f5202ccbb} - C:\WINDOWS\System32\netplwiz.dll Printers Security Page - {F37C5810-4D3F-11d0-B4BF-00AA00BBB723} - rshx32.dll Registry Tree Options Utility - {AF4F6510-F982-11d0-8595-00AA004CD6D8} - C:\WINDOWS\System32\browseui.dll Remote Sessions CPL Extension - {F0152790-D56E-4445-850E-4F3117DB740C} - C:\WINDOWS\System32\remotepg.dll Run... - {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll SampleView - {7F67036B-66F1-411A-AD85-759FB9C5B0DB} - C:\WINDOWS\System32\ShellvRTF.dll Scanners & Cameras - {3F953603-1008-4f6e-A73A-04AAC7A992F1} - wiashext.dll Scanners & Cameras - {83bbcbf3-b28a-4919-a5aa-73027445d672} - wiashext.dll Scanners & Cameras - {905667aa-acd6-11d2-8080-00805f6596d2} - wiashext.dll Scanners & Cameras - {E211B736-43FD-11D1-9EFB-0000F8757FCD} - wiashext.dll Scanners & Cameras - {FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} - wiashext.dll Scheduled Tasks - {D6277990-4C6A-11CF-8D87-00AA0060F5BF} - C:\WINDOWS\System32\mstask.dll Search - {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll Search Assistant OC - {9461b922-3c5a-11d2-bf8b-00c04fb93661} - C:\WINDOWS\System32\shdocvw.dll Search Band - {30D02401-6A81-11d0-8274-00C04FD5AE38} - C:\WINDOWS\System32\browseui.dll Sendmail service - {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} - C:\WINDOWS\System32\sendmail.dll Sendmail service - {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} - C:\WINDOWS\System32\sendmail.dll Set Program Access and Defaults - {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll Share-to-Web Upload Folder - {A4DF5659-0801-4A60-9607-1C48695EFDA9} - c:\Program Files\Hewlett-Packard\HP Share-to-Web\HPGS2WNS.DLL Shell Application Manager - {352EC2B7-8B9A-11D1-B8AE-006008059382} - C:\WINDOWS\System32\appwiz.cpl Shell Automation Inproc Service - {0A89A860-D7B1-11CE-8350-444553540000} - C:\WINDOWS\System32\shdocvw.dll Shell Band Site Menu - {ECD4FC4E-521C-11D0-B792-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll Shell DeskBar - {ECD4FC4C-521C-11D0-B792-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll Shell DeskBarApp - {3CCF8A41-5C85-11d0-9796-00AA00B90ADF} - C:\WINDOWS\System32\browseui.dll Shell DocObject Viewer - {E7E4BC40-E76A-11CE-A9BB-00AA004AE837} - C:\WINDOWS\System32\shdocvw.dll Shell extensions for file compression - {764BF0E1-F219-11ce-972D-00AA00A14F56} - Shell extensions for Microsoft Windows Network objects - {59be4990-f85c-11ce-aff7-00aa003ca9f6} - ntlanui2.dll Shell Extensions for RealOne Player - {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - C:\Program Files\Real\RealOne Player\rpshell.dll Shell extensions for sharing - {40dd6e20-7c17-11ce-a804-00aa003ca9f6} - ntshrui.dll Shell extensions for sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} - ntshrui.dll Shell extensions for Windows Script Host - {60254CA5-953B-11CF-8C96-00AA00B8708C} - C:\WINDOWS\System32\wshext.dll Shell Image Data Factory - {66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} - C:\WINDOWS\System32\shimgvw.dll Shell Image Property Handler - {eb9b1153-3b57-4e68-959a-a3266bc3d7fe} - C:\WINDOWS\System32\shimgvw.dll Shell Image Verbs - {e84fda7c-1d6a-45f6-b725-cb260c236066} - C:\WINDOWS\System32\shimgvw.dll Shell properties for a DS object - {9E51E0D0-6E0F-11d2-9601-00C04FA31A86} - C:\WINDOWS\System32\dsquery.dll Shell Publishing Wizard Object - {6b33163c-76a5-4b6c-bf21-45de9cd503a1} - C:\WINDOWS\System32\netplwiz.dll Shell Rebar BandSite - {ECD4FC4D-521C-11D0-B792-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll Shell Scrap DataHandler - {56117100-C0CD-101B-81E2-00AA004AE837} - shscrap.dll Shell Search Band - {21569614-B795-46b1-85F4-E737A8DC09AD} - C:\WINDOWS\system32\browseui.dll Subscription Folder - {F5175861-2688-11d0-9C5E-00AA00A45957} - C:\WINDOWS\System32\webcheck.dll Subscription Mgr - {ABBE31D0-6DAE-11D0-BECA-00C04FD940BE} - C:\WINDOWS\System32\webcheck.dll Summary Info Thumbnail handler (DOCFILES) - {9DBD2C50-62AD-11d0-B806-00C04FD706EC} - C:\WINDOWS\System32\shimgvw.dll Taskbar and Start Menu - {0DF44EAA-FF21-4412-828E-260A8728E7F1} - Tasks Folder Icon Handler - {DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\System32\mstask.dll Tasks Folder Shell Extension - {797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\System32\mstask.dll Temporary Internet Files - {7BD29E00-76C1-11CF-9DD0-00A0C9034933} - C:\WINDOWS\System32\shdocvw.dll Temporary Internet Files - {7BD29E01-76C1-11CF-9DD0-00A0C9034933} - C:\WINDOWS\System32\shdocvw.dll The Internet - {3DC7A020-0ACD-11CF-A9BB-00AA004AE837} - C:\WINDOWS\System32\shdocvw.dll Track Popup Bar - {acf35015-526e-4230-9596-becbe19f0ac9} - C:\WINDOWS\System32\browseui.dll TrayAgent - {E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7} - C:\WINDOWS\System32\webcheck.dll TridentImageExtractor - {7376D660-C583-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\System32\browseui.dll User Accounts - {7A9D77BD-5403-11d2-8785-2E0420524153} - User Assist - {DD313E04-FEFF-11d1-8ECD-0000F87A470C} - C:\WINDOWS\System32\browseui.dll Video Media Properties Handler - {40C3D757-D6E4-4b49-BB41-0E5BBEA28817} - C:\WINDOWS\System32\shmedia.dll Video Thumbnail Extractor - {c5a40261-cd64-4ccf-84cb-c394da41d590} - C:\WINDOWS\System32\shmedia.dll Wav Properties Handler - {E4B29F9D-D390-480b-92FD-7DDB47101D71} - C:\WINDOWS\System32\shmedia.dll Web Folders - {BDEADF00-C265-11D0-BCED-00A0C90AB50F} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL Web Printer Shell Extension - {77597368-7b15-11d0-a0c2-080036af3f03} - printui.dll Web Publishing Wizard - {CC6EEFFB-43F6-46c5-9619-51D571967F7D} - C:\WINDOWS\System32\netplwiz.dll Web Search - {07798131-AF23-11d1-9111-00A0C98BA67D} - C:\WINDOWS\System32\browseui.dll WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\System32\webcheck.dll WebCheck SyncMgr Handler - {7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB} - C:\WINDOWS\System32\webcheck.dll WebCheckChannelAgent - {E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB} - C:\WINDOWS\System32\webcheck.dll WebCheckWebCrawler - {08165EA0-E946-11CF-9C87-00AA005127ED} - C:\WINDOWS\System32\webcheck.dll Windows Media Player Add to Playlist Context Menu Handler - {F1B9284F-E9DC-4e68-9D7E-42362A59F0FD} - C:\WINDOWS\system32\wmpshell.dll Windows Media Player Burn Audio CD Context Menu Handler - {CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C} - C:\WINDOWS\system32\wmpshell.dll Windows Media Player Play as Playlist Context Menu Handler - {8DD448E6-C188-4aed-AF92-44956194EB1F} - C:\WINDOWS\system32\wmpshell.dll [This user (1)] Web Folders - {BDEADF00-C265-11d0-BCED-00A0C90AB50F} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL -------------------- Registry 'Run' keys: [User Run] ctfmon.exe = C:\WINDOWS\system32\ctfmon.exe updateMgr = C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_5 -reboot 1 [System Run] BJCFD = C:\Program Files\BroadJump\Client Foundation\CFD.exe C2kWep = C:\Program Files\Netopia\C3kWepN.exe ccApp = "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" iTunesHelper = "C:\Program Files\iTunes\iTunesHelper.exe" PS2 = C:\WINDOWS\system32\ps2.exe QuickTime Task = "C:\Program Files\QuickTime\qttask.exe" -atboottime SunJavaUpdateSched = C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe Symantec NetDriver Monitor = C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer tgcmd = "C:\Program Files\Support.com\BellSouth\hcenter.exe" /starthidden /tgcmdwrapper TkBellExe = "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot [System RunServices] AutoEx9x = -------------------- Protocols: [Pluggable MIME filters (8)] application/octet-stream = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = C:\WINDOWS\System32\mscoree.dll application/x-complus = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = C:\WINDOWS\System32\mscoree.dll application/x-msdownload = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = C:\WINDOWS\System32\mscoree.dll Class Install Handler = {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} = C:\WINDOWS\system32\urlmon.dll deflate = {8f6b0360-b80d-11d0-a9b3-006097942311} = C:\WINDOWS\system32\urlmon.dll gzip = {8f6b0360-b80d-11d0-a9b3-006097942311} = C:\WINDOWS\system32\urlmon.dll lzdhtml = {8f6b0360-b80d-11d0-a9b3-006097942311} = C:\WINDOWS\system32\urlmon.dll text/webviewhtml = {733AC4CB-F1A4-11d0-B951-00A0C90312E1} = C:\WINDOWS\system32\SHELL32.dll [Protocol handlers (23)] about = {3050F406-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\System32\mshtml.dll cdl = {3dd53d40-7b8b-11D0-b013-00aa0059ce02} = C:\WINDOWS\system32\urlmon.dll cdo = {CD00020A-8B95-11D1-82DB-00C04FB1625D} = C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL dvd = {12D51199-0DB5-46FE-A120-47A3D7D937CC} = C:\WINDOWS\system32\msvidctl.dll file = {79eac9e7-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll ftp = {79eac9e3-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll gopher = {79eac9e4-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll http = {79eac9e2-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll https = {79eac9e5-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll its = {9D148291-B9C8-11D0-A4CC-0000F80149F6} = C:\WINDOWS\System32\itss.dll javascript = {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\System32\mshtml.dll local = {79eac9e7-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll mailto = {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\System32\mshtml.dll mhtml = {05300401-BCBC-11d0-85E3-00C04FD85AB4} = C:\WINDOWS\System32\inetcomm.dll mk = {79eac9e6-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll ms-its = {9D148291-B9C8-11D0-A4CC-0000F80149F6} = C:\WINDOWS\System32\itss.dll ms-itss = {0A9007C0-4076-11D3-8789-0000F8105754} = C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL mso-offdap = {3D9F03FA-7A94-11D3-BE81-0050048385D1} = C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL res = {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\System32\mshtml.dll sysimage = {76E67A63-06E9-11D2-A840-006008059382} = C:\WINDOWS\System32\mshtml.dll tv = {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} = C:\WINDOWS\system32\msvidctl.dll vbscript = {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\System32\mshtml.dll wia = {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} = C:\WINDOWS\System32\wiascr.dll -------------------- WOW compatibility: cmdline = C:\WINDOWS\system32\ntvdm.exe wowcmdline = C:\WINDOWS\system32\ntvdm.exe -a C:\WINDOWS\system32\krnl386 [KnownDlls (16-bit) (40)] avicap.dll avifile.dll comm.drv commdlg.dll compobj.dll ctl3dv2.dll ddeml.dll keyboard.drv lanman.drv mapi.dll mciavi.drv mciseq.drv mciwave.drv mmsystem.dll mouse.drv msacm.dll msvideo.dll netapi.dll ole2.dll ole2disp.dll ole2nls.dll olecli.dll olesvr.dll pmspl.dll progman.exe rasapi16.dll shell.dll sound.drv storage.dll system.drv timer.drv toolhelp.dll typelib.dll vga.drv wfwnet.drv win87em.dll winoldap.mod winsock.dll winspool.exe wowdeb.exe [KnownDlls (32-bit) (20)] advapi32.dll comdlg32.dll gdi32.dll imagehlp.dll kernel32.dll lz32.dll ole32.dll oleaut32.dll olecli32.dll olecnv32.dll olesvr32.dll olethk32.dll rpcrt4.dll shell32.dll url.dll urlmon.dll user32.dll version.dll wininet.dll wldap32.dll -------------------- ShellServiceObjectDelayLoad: [All users (4)] CDBurn = {fbeb8a05-beee-4442-804e-409d6c4515e9} = C:\WINDOWS\system32\SHELL32.dll PostBootReminder = {7849596a-48ea-486e-8937-a2a3009f31a9} = C:\WINDOWS\system32\SHELL32.dll SysTray = {35CEC8A3-2BE6-11D2-8773-92E220524153} = C:\WINDOWS\System32\stobject.dll WebCheck = {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = C:\WINDOWS\System32\webcheck.dll -------------------- SharedTaskScheduler (2): Browseui preloader = {438755C2-A8BA-11D1-B96B-00A0C90312E1} = C:\WINDOWS\System32\browseui.dll Component Categories cache daemon = {8C7461EF-2B13-11d2-BE35-3078302C2030} = C:\WINDOWS\System32\browseui.dll -------------------- Winsock LSP: [Protocols (16)] MSAFD Tcpip [TCP/IP] - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD Tcpip [UDP/IP] - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} - C:\WINDOWS\system32\mswsock.dll RSVP UDP Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\WINDOWS\system32\rsvpsp.dll RSVP TCP Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\WINDOWS\system32\rsvpsp.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{FD908258-20B8-46B1-9E3B-C39BEB8D615D}] SEQPACKET 5 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{FD908258-20B8-46B1-9E3B-C39BEB8D615D}] DATAGRAM 5 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{92A07EB5-C197-48E9-93C8-AB7A451B55DB}] SEQPACKET 0 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{92A07EB5-C197-48E9-93C8-AB7A451B55DB}] DATAGRAM 0 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{6E8DE194-7D38-45E4-B3B6-5A174817F0FE}] SEQPACKET 1 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{6E8DE194-7D38-45E4-B3B6-5A174817F0FE}] DATAGRAM 1 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{3418D89B-AD4B-4BD1-B7D1-6251158FB21B}] SEQPACKET 2 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{3418D89B-AD4B-4BD1-B7D1-6251158FB21B}] DATAGRAM 2 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{67411ACD-F722-47C1-B76A-8B39717AF81B}] SEQPACKET 3 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{67411ACD-F722-47C1-B76A-8B39717AF81B}] DATAGRAM 3 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{33528DED-5EFE-45D0-9F38-0627012E847C}] SEQPACKET 4 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll MSAFD NetBIOS [\Device\NetBT_Tcpip_{33528DED-5EFE-45D0-9F38-0627012E847C}] DATAGRAM 4 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll [Namespace Providers (3)] Tcpip - {22059D40-7E9E-11CF-AE5A-00AA00A7112B} - C:\WINDOWS\System32\mswsock.dll NTDS - {3B2637EE-E580-11CF-A555-00C04FD8D4AC} - C:\WINDOWS\System32\winrnr.dll Network Location Awareness (NLA) Namespace - {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83} - C:\WINDOWS\System32\mswsock.dll -------------------- Hijack points: [Reset web settings URLs] SearchAssistant = CustomizeSearch = START_PAGE_URL = SEARCH_PAGE_URL = MS_START_PAGE_URL = [Internet Explorer URLs] * This user * - Internet Explorer\Main (6) Default_Page_Url = http://us8.hpwis.com/ Default_Search_Url = http://srch-us8.hpwis.com/ Local Page = C:\WINDOWS\system32\blank.htm Search Bar = http://www.google.com/ie Search Page = http://www.google.com Start Page = http://www.yahoo.com/ - Internet Explorer\Desktop\General (2) BackupWallpaper = %USERPROFILE%\Local Settings\Application Data\Microsoft\Wallpaper1.bmp Wallpaper = %USERPROFILE%\Local Settings\Application Data\Microsoft\Wallpaper1.bmp * All users * - Internet Explorer\Main (6) Default_Page_Url = http://us8.hpwis.com/ Default_Search_Url = http://srch-us8.hpwis.com/ Local Page = %SystemRoot%\system32\blank.htm Search Bar = http://srch-us8.hpwis.com/ Search Page = http://srch-us8.hpwis.com/ Start Page = http://www.yahoo.com - Internet Explorer\Search (2) CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm SearchAssistant = http://www.google.com/ie - Internet Explorer\AboutURLs (6) blank = res://mshtml.dll/blank.htm DesktopItemNavigationFailure = res://shdoclc.dll/navcancl.htm NavigationCanceled = res://shdoclc.dll/navcancl.htm NavigationFailure = res://shdoclc.dll/navcancl.htm OfflineInformation = res://shdoclc.dll/offcancl.htm PostNotCached = res://mshtml.dll/repost.htm [Default URL prefixes] default = http:// ftp = ftp:// gopher = gopher:// home = http:// mosaic = http:// www = http:// [Hosts file location] DatabasePath = C:\WINDOWS\System32\drivers\etc\hosts -------------------- Protection & disabled items: [ActiveX killbits (120)] &Address - {01E04581-4EEE-11d0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll (no name) - {0006f02a-0000-0000-c000-000000000046} - C:\PROGRA~1\MICROS~2\Office10\OUTLLIB.DLL (no name) - {083863F1-70DE-11d0-BD40-00A0C911CE86} - C:\WINDOWS\System32\devenum.dll (no name) - {283807b8-2c60-11d0-a31d-00aa00b92c03} - C:\WINDOWS\System32\danim.dll (no name) - {b4b3aecb-dfd6-11d1-9daa-00805f85cfe3} - C:\WINDOWS\system32\CLBCatQ.DLL (no name) - {e846f0a0-d367-11d1-8286-00a0c9231c29} - C:\WINDOWS\System32\clbcatex.dll ACM Class Manager - {33d9a761-90c8-11d0-bd43-00a0c911ce86} - C:\WINDOWS\System32\devenum.dll ActiveXPlugin Object - {06DD38D3-D187-11CF-A80D-00C04FD74AD8} - C:\WINDOWS\System32\plugin.ocx ADODB.Stream - {00000566-0000-0010-8000-00AA006D2EA4} - C:\Program Files\Common Files\System\ado\msado15.dll Bln Proxy - {bc5f1e51-5110-11d1-aff5-006097c9a284} - C:\PROGRA~1\MICROS~2\Office10\BLNMGRPS.DLL BlnMgr Class - {3f8a6c33-e0fd-11d0-8a8c-00a0c90c2bc5} - C:\Program Files\Microsoft Office\Office10\BLNMGR.DLL BlnMgr Proxy - {F27CE930-4CA3-11D1-AFF2-006097C9A284} - C:\PROGRA~1\MICROS~2\Office10\BLNMGRPS.DLL Briefcase - {85bbd920-42a0-1069-a2e4-08002b30309d} - syncui.dll CEnroll Class - {43F8F289-7A20-11D0-8F06-00C04FC295E1} - C:\WINDOWS\system32\xenroll.dll cfw Class - {ecabafc0-7f19-11d2-978e-0000f8757e2a} - C:\WINDOWS\system32\comsvcs.dll CLSID_ApprenticeICW - {8ee42293-c315-11d0-8d6f-00a0c9a06e1f} - C:\WINDOWS\System32\inetcfg.dll CLSID_CCommAcctImport - {1aa06ba1-0e88-11d1-8391-00c04fbd7c09} - C:\WINDOWS\System32\msoeacct.dll CLSID_CDIDeviceActionConfigPage - {18ab439e-fcf4-40d4-90da-f79baa3b0655} - C:\WINDOWS\System32\diactfrm.dll CommunicationManager - {67dcc487-aa48-11d1-8f4f-00c04fb611c7} - C:\WINDOWS\System32\msdtctm.dll DiskManagement.Connection - {fd78d554-4c6e-11d0-970d-00a0c9191601} - C:\WINDOWS\System32\dmdskmgr.dll Dutch_Dutch Stemmer - {860d28d0-8bf4-11ce-be59-00aa0051fe20} - infosoft.dll English_UK Stemmer - {d99f7670-7f1a-11ce-be57-00aa0051fe20} - infosoft.dll English_US Stemmer - {eeed4c20-7f1b-11ce-be57-00aa0051fe20} - infosoft.dll French_French Stemmer - {2a6eb050-7f1c-11ce-be57-00aa0051fe20} - infosoft.dll FTP Folder Web View Automation - {210DA8A2-7445-11D1-91F7-006097DF5BD4} - C:\WINDOWS\System32\msieftp.dll German_German Stemmer - {510a4910-7f1c-11ce-be57-00aa0051fe20} - infosoft.dll H323MSP Class - {0F1BE7F8-45CA-11D2-831F-00A0244D2298} - C:\WINDOWS\System32\h323msp.dll Helper Object for Java - {8e26bfc1-afd6-11cf-bffc-00aa003cfdfc} - C:\WINDOWS\System32\vmhelper.dll HHCtrl Object - {41B23C28-488E-4E5C-ACE2-BB0BBABE99E8} - C:\WINDOWS\system32\hhctrl.ocx HHCtrl Object - {ADB880A6-D8FF-11CF-9377-00AA003B7A11} - C:\WINDOWS\System32\hhctrl.ocx IAVIStream & IAVIFile Proxy - {0002000D-0000-0000-C000-000000000046} - avifil32.dll ICM Class Manager - {33d9a760-90c8-11d0-bd43-00a0c911ce86} - C:\WINDOWS\System32\devenum.dll IndexServer Simple Command Creator - {c7b6c04a-cbb5-11d0-bb4c-00c04fc2f410} - C:\WINDOWS\system32\query.dll InstallEngineCtl Object - {6E449683-C509-11CF-AAFA-00AA00B6015C} - C:\WINDOWS\System32\asctrls.ocx IPConfMSP Class - {0F1BE7F7-45CA-11D2-831F-00A0244D2298} - C:\WINDOWS\System32\confmsp.dll Italian_Italian Stemmer - {6d36ce10-7f1c-11ce-be57-00aa0051fe20} - infosoft.dll JVIEW Profiler - {03D9F3F2-B0E3-11D2-B081-006008039BF0} - C:\WINDOWS\System32\javaprxy.dll LexRefStEsObject Class - {4CFB5280-800B-4367-848F-5A13EBF27F1D} - C:\Program Files\Common Files\Microsoft Shared\Translat\ESEN\MSB1ESEN.DLL LexRefStFrObject Class - {B3E0E785-BD78-4366-9560-B7DABE2723BE} - C:\Program Files\Common Files\Microsoft Shared\Translat\FREN\MSB1FREN.DLL LM Runtime Control - {183C259A-0480-11d1-87EA-00C04FC29D46} - C:\WINDOWS\System32\lmrt.dll Log Sink Class - {DE4735F3-7532-4895-93DC-9A10C4257173} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCORE.DLL Marquee Control - {250770f3-6af2-11cf-a915-008029e31fcd} - C:\Program Files\Microsoft Office\Office10\HTML\HTMLMARQ.OCX MarshalableTI Class - {466d66fa-9616-11d2-9342-0000f875ae17} - C:\WINDOWS\System32\msconf.dll mbcontent Class - {52ca3bcf-3b9b-419e-a3d6-5d28c0b0b50c} - C:\WINDOWS\System32\browsewm.dll Media Streaming Dynamic Terminal - {AED6483F-3304-11D2-86F1-006008B0E5D2} - C:\WINDOWS\System32\termmgr.dll MessageMover Class - {ecabb0bf-7f19-11d2-978e-0000f8757e2a} - C:\WINDOWS\system32\comsvcs.dll Microsoft ActiveX Upload Control, version 1.5 - {886E7BF0-C867-11CF-B1AE-00AA00A3F2C3} - C:\Program Files\Web Publish\FLUPL.OCX Microsoft Agent Control 1.5 - {F5BE8BD2-7DE6-11D0-91FE-00C04FD701A5} - C:\WINDOWS\msagent\agentctl.dll Microsoft Common Browser Architecture - {AF604EFE-8897-11D1-B944-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll Microsoft DocHost User Interface Handler - {7057e952-bd1b-11d1-8919-00c04fc2c836} - C:\WINDOWS\System32\shdocvw.dll Microsoft HTA Document 6.0 - {3050F5C8-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll Microsoft Html Document for Popup Window - {3050F67D-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll Microsoft Html Popup Window - {3050f667-98b5-11cf-bb82-00aa00bdce0b} - C:\WINDOWS\System32\mshtml.dll Microsoft HTML Window Security Proxy - {3050F391-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll Microsoft Index Server Scope Administration Object - {3bc4f3a7-652a-11d1-b4d4-00c04fc2db8d} - C:\WINDOWS\system32\ciodm.dll Microsoft MPEG-4 Video Decompressor Property page - {598eba02-b49a-11d2-a1c1-00609778ea66} - C:\WINDOWS\System32\mpg4ds32.ax Microsoft MS Audio Decompressor Control Property page - {8FE7E181-BB96-11D2-A1CB-00609778EA66} - C:\WINDOWS\System32\msadds32.ax Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - C:\WINDOWS\system32\wmpdxm.dll Microsoft Office Chart 10.0 - {0002E556-0000-0000-C000-000000000046} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL Microsoft Office Chart 9.0 - {0002E500-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\Office10\MSOWC.DLL Microsoft Office Data Source Control 10.0 - {0002E553-0000-0000-C000-000000000046} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL Microsoft Office Data Source Control 9.0 - {0002E530-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\Office10\MSOWC.DLL Microsoft Office Free/Busy Registration - {f28d867a-ddb1-11d3-b8e8-00a0c981aeeb} - C:\PROGRA~1\MICROS~2\Office10\MSOSVFBR.DLL Microsoft Office PivotTable 10.0 - {0002E552-0000-0000-C000-000000000046} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL Microsoft Office PivotTable 9.0 - {0002E520-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\Office10\MSOWC.DLL Microsoft Office Spreadsheet 10.0 - {0002E551-0000-0000-C000-000000000046} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL Microsoft Office Spreadsheet 9.0 - {0002E510-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\Office10\MSOWC.DLL Microsoft Rich Textbox Control 6.0 (SP4) - {3B7C8860-D78F-101B-B9B5-04021C009402} - C:\WINDOWS\System32\RICHTX32.OCX Microsoft WBEM Event Subsystem - {5d08b586-343a-11d0-ad46-00c04fd8fdff} - C:\WINDOWS\System32\wbem\wbemess.dll MidiOut Class Manager - {4efe2452-168a-11d1-bc76-00c04fb9453b} - C:\WINDOWS\System32\devenum.dll MMStream Class - {49C47CE5-9BA4-11D0-8212-00C04FC32C45} - C:\WINDOWS\System32\amstream.dll MSP Class - {4DDB6D36-3BC1-11D2-86F2-006008B0E5D2} - C:\WINDOWS\System32\wavemsp.dll MTSEvents Class - {ecabb0ab-7f19-11d2-978e-0000f8757e2a} - C:\WINDOWS\system32\comsvcs.dll Multimedia File Property Sheet - {00022613-0000-0000-c000-000000000046} - mmsys.cpl Network Connections - {7007acc7-3202-11d1-aad2-00805fc1270e} - C:\WINDOWS\system32\NETSHELL.dll Network Connections - {992cffa0-f557-101a-88ec-00dd010ccc48} - C:\WINDOWS\system32\NETSHELL.dll Network Connections Tray - {7007ACCF-3202-11D1-AAD2-00805FC1270E} - C:\WINDOWS\system32\NETSHELL.dll OpenCable Class - {ABBA001B-3075-11D6-88A4-00B0D0200F88} - C:\WINDOWS\system32\psisdecd.dll Outlook Progress Ctl - {0006F071-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\Office10\OUTLLIB.DLL PostBootReminder object - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\SHELL32.dll PSDispatch - {00020420-0000-0000-c000-000000000046} - oleaut32.dll PSEnumVariant - {00020421-0000-0000-C000-000000000046} - oleaut32.dll PSOAInterface - {00020424-0000-0000-c000-000000000046} - oleaut32.dll PSSupportErrorInfo - {DF0B3D60-548F-101B-8E65-08002B2BD119} - oleaut32.dll PSTypeComp - {00020425-0000-0000-C000-000000000046} - oleaut32.dll PSTypeInfo - {00020422-0000-0000-C000-000000000046} - oleaut32.dll PSTypeLib - {00020423-0000-0000-C000-000000000046} - oleaut32.dll Queued Components Recorder - {ecabafc2-7f19-11d2-978e-0000f8757e2a} - C:\WINDOWS\system32\comsvcs.dll RdxIE Class - {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - C:\WINDOWS\Downloaded Program Files\RdxIE.dll RegWizCtrl - {50E5E3D1-C07E-11D0-B9FD-00A0249F6B00} - C:\WINDOWS\System32\regwizc.dll SafeWia Class - {0DAD5531-BF31-43AC-A513-1F8926BBF5EC} - C:\WINDOWS\System32\wiascr.dll Script Encoder Object - {32DA2B15-CFED-11D1-B747-00C04FC2B085} - C:\WINDOWS\System32\scrrun.dll SdpConferenceBlob Class - {9B2719DD-B696-11D0-A489-00C04FD91AC0} - C:\WINDOWS\System32\sdpblb.dll Search Assistant Control - {47c6c527-6204-4f91-849d-66e234dee015} - c:\windows\srchasst\srchui.dll ShellFolder for CD Burning - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\SHELL32.dll Shortcut - {00021401-0000-0000-c000-000000000046} - shell32.dll Spanish_Modern Stemmer - {b0516ff0-7f1c-11ce-be57-00aa0051fe20} - infosoft.dll Start Menu - {4622ad11-ff23-11d0-8d34-00a0c90f2719} - C:\WINDOWS\system32\SHELL32.dll Swedish_Default Stemmer - {9478f640-7f1c-11ce-be57-00aa0051fe20} - infosoft.dll SysTray - {35cec8a3-2be6-11d2-8773-92e220524153} - C:\WINDOWS\System32\stobject.dll SysTrayInvoker - {730f6cdc-2c86-11d2-8773-92e220524153} - C:\WINDOWS\System32\stobject.dll TipGW Init - {F117831B-C052-11d1-B1C0-00C04FC2F3EF} - C:\WINDOWS\System32\msdtctm.dll Trident HTMLEditor - {3050f4f5-98b5-11cf-bb82-00aa00bdce0b} - C:\WINDOWS\System32\mshtmled.dll VFW Capture Class Manager - {860bb310-5d01-11d0-bd3b-00a0c911ce86} - C:\WINDOWS\System32\devenum.dll Video Effect (1 input) Class Manager - {cc7bfb42-f175-11d1-a392-00e0291f3959} - C:\WINDOWS\System32\qedit.dll Video Effect (2 input) Class Manager - {cc7bfb43-f175-11d1-a392-00e0291f3959} - C:\WINDOWS\System32\qedit.dll Video Mixing Renderer 9 - {51b4abf3-748f-4e3b-a276-c828330e926a} - C:\WINDOWS\system32\quartz.dll Video Render Dynamic Terminal - {AED6483E-3304-11D2-86F1-006008B0E5D2} - C:\WINDOWS\System32\termmgr.dll VideoPort Object - {ce292861-fc88-11d0-9e69-00c04fd7c15b} - C:\WINDOWS\System32\qdvd.dll VMR Allocator Presenter 9 - {2d2e24cb-0cd5-458f-86ea-3e6fa22c8e64} - C:\WINDOWS\system32\quartz.dll VMR ImageSync 9 - {e4979309-7a32-495e-8a92-7b014aad4961} - C:\WINDOWS\system32\quartz.dll WaveIn Class Manager - {33D9A762-90C8-11d0-BD43-00A0C911CE86} - C:\WINDOWS\System32\devenum.dll WaveOut and DSound Class Manager - {e0f158e1-cb04-11d0-bd4e-00a0c911ce86} - C:\WINDOWS\System32\devenum.dll Wbem Scripting Object Path - {172BDDF8-CEEA-11D1-8B05-00600806D9B6} - C:\WINDOWS\System32\wbem\wbemdisp.dll WDM Instance Provider - {d2d588b5-d081-11d0-99e0-00c04fc2f8ec} - C:\WINDOWS\System32\wbem\wmiprov.dll WIA FileSystem USD - {d2923b86-15f1-46ff-a19a-de825f919576} - C:\WINDOWS\System32\fsusd.dll WIA Video Preview Class - {457A23DF-6F2A-4684-91D0-317FB768D87C} - C:\WINDOWS\System32\camocx.dll Windows Media Video Decompressor Property page - {9AADA567-04E0-11D4-9148-00C04F610D24} - C:\WINDOWS\System32\wmv8ds32.ax WMI ADSI Extension - {f0975afe-5c7f-11d2-8b74-00104b2afb41} - C:\WINDOWS\System32\wbem\wbemads.dll WMT Screen capture Filter - {31087270-d348-432c-899e-2d2f38ff29a0} - C:\Program Files\Movie Maker\wmm2filt.dll [Zones] * This user * - Restricted sites (1014) 008k.com 00hq.com 100sexlinks.com 157.238.62.14 17-plus.com 193.125.201.50 1-domains-registrations.com 1sexparty.com 1stpagehere.com 2020search.com 209.66.114.130 213.131.225.2 216.65.3.68 24teen.com 2ndpower.com 36site.com 4corn.net 66.117.14.138 66.197.100.83 66.197.138.235 66.250.107.100 66.250.107.101 66.250.107.99 66.250.130.194 66.250.170.107 66.250.57.26 66.250.57.27 66.250.57.28 66.250.74.150 66.40.16.198 777search.com 777top.com 7search.com 8ad.com aavc.com aboutclicker.com abrp.net accessthefuture.net acemedic.com ace-webmaster.com acjp.com actionbreastcancer.org activexupdate.com adamsupportgroup.org adasearch.com adipics.com adspics.com adult-engine-search.com adult-erotic-guide.net adult-friends-finder.net adulthyperlinks.com adulttds.com advert.exaccess.ru africaspromise.org agentstudio.com aifind.info akril.com alcatel.ws alfa-search.com allabtcars.com allabtjeeps.com allcybersearch.com allhyperlinks.com all-inet.com allinternetbusiness.com almarvideos.com amandamountains.com amateurliveshow.com amigeek.com amisbusiness.com analmovi.com anarchylolita.com anarchyporn.com anin.org annaromeo.com antrocity.com anything4health.com approvedlinks.com apps.webservicehost.com apsua.com aregay.com arheo.com arizonaweb.org armitageinn.com artachnid.com art-func.com art-xxx.com asiankingkong.com ass-gals.com athenrye.com avian-ads.com ayakawamura.com ayumitaniguchi.com babeweb.de bannedhost.net barbudafarms.com barnandfence.com batsearch.com baygraphicsllc.com bbbsearch.com bb-search.com bedhome.com bediadance.com bellabasketsfl.com bernaolatwin.com best-counter.com bestcrawler.com bestfor.ru best-hardpics.com bestporngate.com best-winning-casino.com bestxporno.com blackjack-free.net blazefind.com blender.xu.pl blondetgp.com bodaciousbabette.com boobdoll.com boobsandtits.com boobsclub.com boredlife.com bowlofogumbo.com bradcoem.org brandiyoung.com brookeburn.com bucps.com burgerkingbigscreen.com buscards.net bustyrussell.com buttejazz.org buyselldomain.net buz.ru calcioturris.com cameup.com canberracricketcoaching.com candycantaloupes.com cantfind.com careers.dulcineasystems.net carsands.com carsrentals.net casino.com.free.game.pogo.gratisdownloads.nl casino2win.net casino-gambling-1.net casino-gambling-2.net casinomidas.net casinonline.net casino-onlines.net castingsamateur.com catallogue.com categories.mygeek.com catsss.da.ru caxa.ru cclebali.org ceewawires.org ceres certumgroup.com chelancatering.com childrenvilla.com chips-4-free.com chrisswasey.com chriswallace.net ckick4thumbs.com clackamasliteraryreview.com clearsearch.cc clearsearch.net clickaire.com clickyestoenter.net clrsch.com cmtapestry.com coolfetishsite.com coolfreehost.com coolfreepage.com coolfreepages.com cool-homepage.co cool-homepage.com coolmoneysearch.com coolpornsearch.com cool-search.net cool-search.netfartpost.com coolsearcher.info coolwebsearch. coolwebsearch.com cool-web-search.com coolwebsearsh.com coolwwwsearch. cool-xxx.net copmtraine.com couldnotfind.com count-all.com cracks.me.uk creamedcutties.com creditsearchonline.com crestring.com crooder.com curvedspaces.com cvs.jps.ru cvsymphony.com cyberrape.com cydom.com daily-gals.com dancingbabycd.com datanotary.com datareco.com dating-search.net davemarshall.org dcfitusa.com defaultsearch.net desarrollocreativo.com dev.ntcor.com develip.com dewis.spb.ru dewis.us df809jow4wj2304lfd0sf9fsd0a2t4ldf809jow4wj2304lfd0sf9fsd0a2t4ld.biz dialerclub.com dietpills4free.com dietpussy.com digistreamsa.com dionforvalleycouncil.org doctorwaldron.com document-not-found.pornpic.org doggyaction.com domains2003.net domains-for-you-online.com domain-your-registration.com domkrat.com dp-host.com dragqueen.gay-clan.com drug-sources-exposed.com drvvv.com duolaimi.net dutch-sex.com dvdbank.org eases.net easycategories.com easy-search.net ebav.com ebaw.com ebch.com ebdv.com ebdw.com ebgo.com ebjp.com ebkb.com ebkn.com ebky.com eblv.com ebmu.com ebvr.com ecmh.com ecmp.com ecosrioplatenses.org ecpm.com ecstasyporn.net ecwz.com ecyb.com edhq.com edty.com eduy.com eeev.com eikokoike.com e-localad.com emch.com e-plus.cc epornsex.com euuu.com evidence-detector.biz evilspidercomics.com ewebsearch.net e-websitesolutions.com excellentsckin.com exit.megago.com extremeseek.net ez-searching.com faithstevens.com fantasiewelten.com farmsteadbandb.com farse.com fartpost.com fastmetasearch.com fastwebfinder.com faxporn.com featured-results.com fickenisgeil.de finance-loans.com find4u.net find-itnow.com findit-now.com findloss.com findthesite.com findthewebsiteyouneed.com find-uk-health.co.uk findwhat.com findwhatevernow.com fionasteel.com firstbookmark.net fitness-free.com foodvacations.net forex.jps.ru forexcredit.com forexcredit.ru formingfusions.com forsythfire.net forthline.com free4porno.net free64all.com freebookmark.net freebookmarks.net freecategories.com free-chipes.com freecoolhost.com free-hit.com freehqmovies.com free-pics-and-movies.com freerbhost.com freescratchandwin.com free-sex-movie-clips.net freeshemalepics.net freewebs.com freeyaho.com freshseek.com freshteensite.com gabrielscott.com galpostgirls.com gals-for-free.com gambling-online4you.com gameterror.net gay50.com generalsmeltingofcanada.com germany.rub.to geteens.com getpicshere.com gimmezamore.com gimnasiaer.com girls-porn-life.com glbdf.org global-finder.com globalwebsearch.com globe-finder.cc globe-finder.com globesearch.com gocybersearch.com golftennis.net good-mortgages.net good-mortgages-calculator.com goodsexs.com google123.web1000.com googlebar.jps.ru googlf.com gradforum.org gratis-porn-movie.com gratis-pornopics.com gtawarehouse.com gueb.com guzzycats.com gzphoenix.com H24413.tfil.com hallnetaccolade.com hand-book.com happyanal.com hardbodytgp.com hardcoreover.com hard-gals.com hardloved.com hardwareseek.net harukaigawa.com hccsolanonapa.org health-protein.com hentai4u.net here4search.com heyrichy.com hi.studioaperto.net hiddenguides.com hi-search.com hitlistlyrics.com holidayautostr.com homemortage.ws hostssp.com hotbar.com hotbookmark.com hot-cartoon-sex.anime.american-teens.net hotels-list.net hotelxxxcams.com hotfreebies.com hotlolitas.underagehost.com hotpopup.com hotsearchbox.com hotsex-series.com hotstartpage.com hqsex.biz hugeporn4u.net hunacsa.com hupacasath.com hzsx.com ibmx.com icansearch.net icwb.com icwo.com icwp.com iddh.com idgsearch.com idhh.com ie.marketdart.com ie-search.com ifiz.com iguu.com i-lookup.com incestporngate.com infodigger.net infoglobus.com inherhole.com insertthiscock.com insuranceall.net insurance-flood.net internetsearch.ru ionichost.com ionomist.com ipsex.net istarthere.com itsanal.com itseasy.us iweb-commerce.com iwebland.com iwon.com jeannineoldfield.com jethomepage.com jetseeker.com jmhgallery.org joannelatham.com judin.ru junkysex.com kabex.com karleyt.narod.ru kathisomers.com kazaa-lite.ws keithgreenpro.com kenmccaul.com kilosex.com kimhines.com kinoru.com kliksearch.com krankin.com ksdspups.org landrape.com lauraroebuck.com leannalovelace.com lesobank.ru libertyonlinehosting.com lingerie-mania.com linksummary.com lisamatthew.com live.sex-explorer.com liveholio.com livenewspaper.com loading-lolita.com lolita4all1.xrensmagpost.com lop.com louiseleeds.com loveadot.com lovelas.com lovelysearch.com love-pix.com low-taxes.com luckysearch.net lunitaweb.net lustful-porno.com mackinnonsbrook.org madfinder.com madisonmoons.com madisonoilco.com madonalive.com mafiapics.com majuozawa.com makin-do.com male4free.com map-quest.org marilynchamber.com martfinder.com massearch.com masterbar.com matetrava.com mature50.com matureporngate.com maxdzines.com mayancasino.com mcgeeforlabor.com mdstunisie.org medicare-insurance.net medicare-supplemental.com mega-dating-tips.com megaseek.net megumikanzaki.com meshalynn.com meta-adult.com meta-casino.com metafora.ru meta-mobile.com metapoisk.ru meta-porn.com michiyonakajima.com miconsultamedica.com mikasakamoto.com mikoni.com militarygods.porn4porn.net millennialpeople.org miosearch.com mipham.org missingcommand.com mixsearch.com mommykiss.com moneyhunters.com montgomeryhospitalanesthesia.com morflot.com mortgage-debt.net mortismaximus.com moscowwhores.com moviecategories.com mp3-pix.com mrtg.jps.ru msn-info.net multipussy.com mundopolar.com munky.com mustv.com mywebsearch.net nativehardcore.com naturalspy.com nbasportsbook.net nellyslyrics.com nepgyan.com nesrecords.com netshastra.net nettime.ru nettracker.jps.ru netyellowpages.info newcategories.com newcracks.com newcracks.net new-incest.com newlife-lajolla.com newsexgate.com newtonknows.com newtonsracks.com newtopsites.com newxpics.com nhlsportsbook.net niagaracapital.com niche-tv.com nmrba.com noblindlinks.com nocalories.net nocensor.com nsbabes.com nuclearwitness.org nursemania.com nvntour.com nvphall.org oborot.com ocalalivestockmarket.com ocsff.com oeatlanta.com oharrowsearch.com okmmm.com ok-search.com okulta.com omegabrains.net omega-search.com online-casino-1.net online-casino-bonus.info online-casinos-x.com onlineserverz.com onlinetradings.net online-winning.net onlycunt.com onlyinsured.com only-virgins.com operanabuco.com opsex.com orbitexplorer.com oregoncharters.org ormandcompany.com otrlives.com out.true-counter.com ozawamadoka.com paigesummer.com pamelacollections.com panamcup.com pantygirls4u.com pantyhoserealm.com pantyplace.com partner23.firehunt.com passthison.com pastubes.com paulapage.com paulhoover.com payfortraffic.net pedo.ws people.1gb.ru pervertbot.com pharmacy2003.com pharma-diet-pills.com pharmalocator.com phendimetrazine-tenuate-adipex.com picsdir.com picsforbucks.com picsofseductiveladies.com pics-videos.com pills-birth-control.com pillsmall.com pilotronix.com pixpox.com planemusic.com poiska.net poker-casino-free.com poker-games-free.net polradiologia.com pooi.net porncamz.com pornfree.info pornnightdreams.com pornokopec.com porn-teacher.com porntetris.com porntwist.com powerwebsearch.com prblitz.com pretypics.com pribalt.com privacy-support.biz privateporn.net prolivation.com prostactive.com prostol.com protect-yourself.biz prsainlandempire.org put-your-link-here.com pyrocorp.com quicklaunch.com quick-search.ws quiksearchgenealogy.com r.babenet.com radfrall.org ramgo.com ranafrog.ne rapegate.com rawtocash.net realphx.com redbudbmx.com refinance-help.com removeearthkeepers.org revolto3.da.ru rightfinder.net roar.com robbsproshop.com robertferencz.com rocketsearch.com rotocasters.com royalsearch.net runsearch.com russiansponsor.com russogay.com s2.exocrew.com sacitylife.com samplegals.com samz.com saoe.com sb.htm sbee.com sbjr.com sbnl.com sbnt.com sbssurvivor.com sbvr.com scarypix.com scbm.com sccdnet.com schoolforest.com sckr.com screensaver.it scrk.com sdry.com search.ieplugin.com search.imiserver.com search.netzany.co search.psn.cn search.rub.to search.shopnav.com search.xrenoder.com search-1.net search-2003.com search-about.net searchaccurate.com searchadultweb.com searchalot.com searchandbrowse.com searchandclick.com searchbutler.com searchbutler.org searchbuttler.com searchby.net searchcentrix.com searchcomplete.com searchdesire.com searchdot.com searchdot.net searchenhancement.com search-exe.com searchexpander.com search-explorer.net searchfastnet.com searchforge.com searchgateway.net search-hawk.com searching-the-net.com search-log.com searchmadesafe.net search-meta.com searchmeta.md searchmeta.net searchmeta.ru searchmeta.webhost.ru searchmeup.com searchnow.ws searchonfly.com searchresult.net search-safe.com searchsquire.com searchv.com searchxl.com searchxp.com sebot.com secondpower.com secret-crush.com securenp.org security-warning.biz seehardcore.com seekseek.com seekwell.net seld.com selfbookmark.com selfbookmark.info selfbookmark.net server-au.imrworldwide.com sex.free4porno.net sexarena.com sexarena.org sex-coach.com sex-festival.com sexgalleries4all.com sexmoviesnet.com sexocean.play-lolita.com sexolymp.com sexpatriot.net sex-video-galleries.com sexy18.cc sexycat.adult-host.org sfbayfolkboats.com sfux.com sgirls.net sharempeg.com sheat.com shopcards.net shopknights.com sic02.com sintrader.com sipo.com site1.ru sites-in-web.com sitevictoria.com sixroads.com skakalka.ru skeech.com slawsearch.com slotch.com smarter.com smartsumo.com smds.com smutarchive.net smutserver.com solongas.com sonomaevents.com spermatrix.com spidersearch.com sportbooks-free4you.com spros.com spyass.com spyorgy.net sqwire.com srib.com srng.net srox.com srsf.com ssaw.com ssby.com staceyowens.com stacistaxx.com stacystaxx.com startium.com start-seite.com start-space.com startsurfing.com steamycock.com sterva.com stevecashdollar.com stop-tracking.biz stopvotefraud.com stopxxxpics.com strekoza.com stuffstore.com styleclickink.com summercollins.com summitcross.com supersexmachine.com super-spider.com superwebsearch.com super-websearch.com superwp.by.ru supret.com sureseeker.com surferbar.com surj.com suzannebrecht.com sweeteenz.com t.rack.cc tacil.org tangounion.com tastethemusic.com tax-refund4you.com tbvg.com tdak.com tdko.com tdmy.com tech-jobs.ws technology-related.com teen-biz.com teen-pic-post.com teenpornosex.com teens4free.net teensact.com teensgate.com teensguru.com teenswamp.com tefs.com terafinder.com terra.es testosterone-birth-control.com tfil.com the-exit.com thefakejournal.com the-huns-yellow-pages.com thehuy.net theproxy.org therealsearch.com thesten.com thko.com thornleygroup.com tings.org tinybar.com titanvision.com titsianna.com tit-x.com tjar.com tjaw.com tjdo.com tjem.com tjgo.com toddhayes.com tooncomics.com toon-comics.com topsearcher.com topsite.us topsites.us topsitez.us torc.com toriii.cc trafficback.com trafficswitcher.com travel.picture-posters.com true-counter.com true-portal.com trytechnical.com ufindall.click-now.net umaxsearch.com une-autre-france.com unigays.com unipages.cc unitedstates.rub.to up2you.ru uralitel.ru urawa.cool.ne.jp urlstat.com urlstat.ru ursie.net utahsweet.com utopicportal.com uusocialjustice.org v61.com vaginpics.com valmyers.com vegas-free.com vegbuy.com veloventures.com verzila.com victoriaadam.com videocategories.com vitamins-for-each.com votehowe.org vxebony.com wabq.com wabu.com wakeupdick.com warnomore.org watersport-specialties.com wazzupnet.com wbkb.com webcoolsearch.com web-entrance.co web-homepage.net web-search.tk websearchdot.com weekend-movies.com wethere.com wetpornostars.com wfix.com wflu.com whatsyoursearch.com whazit.com white-pages.ws whittierblvd.com windowenhancer.com win-in-casino.com wiresearch.com wish7.com wolfpacracing.com wordlist.jps.ru worldusa.com wowsearch.org wpc2001.org wspzone.sexpornonline.com www.139mm.com www.allcybersearch.com www.blue-elefant.com www.bonzi.com www.browserwise.com www.cashsurfers.com www.cnetadd.com www.commonname.com www.digitalfan.com www.ezcybersearch.com www.free-popup-killer.com www.gocybersearch.com www.gohip.com www.hastalavista.com www.hityou.com www.huntbar.com www.jethomepage.com www.seekporn.org www.supersexpass.com www.teenmonster.com www.tinybar.com www.topsearcher.com www.wazzupnet.com www.webbrowser.tv www.websearch.com www.xjupiter.com www.xtipp.de www.xupiter.com www.xxx.com wwwbet.net wwwbetting.net wwwpokergames.com wwwpokerplayers.com wwwroulette.net xads.cliks.org xcomics4u.com xic-bs.com xjupiter.com xldr.com x-library.com xlola.underagehost.com xp18.com xrenosearch.com xtragay.com xu.xu.pl x-webdesign.com xwebsearch.biz xxxcategories.com xxxemailxxx.com xxxtoolbar.com xzoomy.com y-e-l-l-o-w.com yellow500.com yezol.com youfindall.com youfindall.net yourbookmarks.info yourbookmarks.ws your-prescriptions.net you-search.com you-search.com.ru ypir.com ysa-info.net yukohamano.com ywebsearch.info zapros.com zesearch.com zestyfind.com ziportal.com zipportal.com znext.com zoneoffreeporn.com zoofil.com zoomegasite.com zvimigdal.com zyban-zocor-levitra.com [MSConfig XP (18)] AlcxMonitor = ALCXMNTR.EXE BestPopUpKiller = C:\Program Files\BestPopUpKiller\BestPopupKiller.exe /startup CamMonitor = c:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe ctfmon.exe = C:\WINDOWS\System32\ctfmon.exe Filetopia = C:\Filetopia3\Filetopia.exe /TRAY HotKeysCmds = C:\WINDOWS\System32\hkcmd.exe hpsysdrv = c:\windows\system\hpsysdrv.exe NovaNet-WEB Tray Control = C:\Program Files\CapSure-DataBank\TrayControl.exe NvCplDaemon = RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup NVIEW = rundll32.exe nview.dll,nViewLoadHook nwiz = nwiz.exe /installquiet /keeploaded /nodetect PS2 = C:\WINDOWS\system32\ps2.exe QuickTime Task = "C:\Program Files\QuickTime\qttask.exe" -atboottime Recguard = C:\WINDOWS\SMINST\RECGUARD.EXE Share-to-Web Namespace Daemon = c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe SpyKiller = C:\Program Files\SpyKiller\spykiller.exe /startup StorageGuard = "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r TkBellExe = "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot [Stopped/disabled NT Services] * Stopped (39) * Application Layer Gateway Service = C:\WINDOWS\System32\alg.exe Application Management = C:\WINDOWS\system32\svchost.exe -k netsvcs ASP.NET State Service = C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe COM+ Event System = C:\WINDOWS\System32\svchost.exe -k netsvcs COM+ System Application = C:\WINDOWS\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} Distributed Transaction Coordinator = C:\WINDOWS\System32\msdtc.exe Fast User Switching Compatibility = C:\WINDOWS\System32\svchost.exe -k netsvcs Fax = C:\WINDOWS\system32\fxssvc.exe HTTP SSL = C:\WINDOWS\System32\svchost.exe -k HTTPFilter IMAPI CD-Burning COM Service = C:\WINDOWS\System32\imapi.exe Indexing Service = C:\WINDOWS\system32\cisvc.exe InstallDriver Table Manager = "C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe" iPodService = C:\Program Files\iPod\bin\iPodService.exe LiveUpdate = "C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE" Logical Disk Manager = C:\WINDOWS\System32\svchost.exe -k netsvcs Logical Disk Manager Administrative Service = C:\WINDOWS\System32\dmadmin.exe /com MS Software Shadow Copy Provider = C:\WINDOWS\System32\dllhost.exe /Processid:{3E638203-9A6E-493D-B94E-E207BFC163BC} Net Logon = C:\WINDOWS\system32\lsass.exe NetMeeting Remote Desktop Sharing = C:\WINDOWS\System32\mnmsrvc.exe Network Connections = C:\WINDOWS\System32\svchost.exe -k netsvcs Network Location Awareness (NLA) = C:\WINDOWS\System32\svchost.exe -k netsvcs Network Provisioning Service = C:\WINDOWS\System32\svchost.exe -k netsvcs NT LM Security Support Provider = C:\WINDOWS\system32\lsass.exe Performance Logs and Alerts = C:\WINDOWS\system32\smlogsvc.exe Portable Media Serial Number Service = C:\WINDOWS\System32\svchost.exe -k netsvcs QoS RSVP = C:\WINDOWS\System32\rsvp.exe Remote Access Connection Manager = C:\WINDOWS\System32\svchost.exe -k netsvcs Remote Desktop Help Session Manager = C:\WINDOWS\system32\sessmgr.exe Remote Procedure Call (RPC) Locator = C:\WINDOWS\system32\locator.exe Removable Storage = C:\WINDOWS\system32\svchost.exe -k netsvcs SAVScan = "C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe" Smart Card = C:\WINDOWS\System32\SCardSvr.exe Symantec Password Validation = "C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe" Telephony = C:\WINDOWS\System32\svchost.exe -k netsvcs Terminal Services = C:\WINDOWS\System32\svchost -k DComLaunch Uninterruptible Power Supply = C:\WINDOWS\System32\ups.exe Volume Shadow Copy = C:\WINDOWS\System32\vssvc.exe Windows Installer = C:\WINDOWS\system32\msiexec.exe /V WMI Performance Adapter = C:\WINDOWS\System32\wbem\wmiapsrv.exe * Stopped & disabled (9) * Alerter = C:\WINDOWS\system32\svchost.exe -k LocalService ClipBook = C:\WINDOWS\system32\clipsrv.exe Messenger = C:\WINDOWS\system32\svchost.exe -k netsvcs Network DDE = C:\WINDOWS\system32\netdde.exe Network DDE DSDM = C:\WINDOWS\system32\netdde.exe Remote Access Auto Connection Manager = C:\WINDOWS\System32\svchost.exe -k netsvcs Routing and Remote Access = C:\WINDOWS\System32\svchost.exe -k netsvcs SSDP Discovery Service = C:\WINDOWS\System32\svchost.exe -k LocalService Universal Plug and Play Device Host = C:\WINDOWS\System32\svchost.exe -k LocalService [Windows XP Security] * Security Center * - This user FirstRun = dword: 1 - All users AntiVirusDisableNotify = dword: 1 FirewallDisableNotify = dword: 1 UpdatesDisableNotify = dword: 1 AntiVirusOverride = dword: 0 FirewallOverride = dword: 0 * System Restore * - All users DisableSR = dword: 0 CreateFirstRunRp = dword: 1 DSMin = dword: 200 DSMax = dword: 400 RPSessionInterval = dword: 0 RPGlobalInterval = dword: 86400 RPLifeInterval = dword: 7776000 CompressionBurst = dword: 60 TimerInterval = dword: 120 DiskPercent = dword: 12 ThawInterval = dword: 900 RestoreDiskSpaceError = dword: 0 ================================================== = Other users on this computer: Default user = ================================================== -------------------- Autostart folders: [Startup] desktop.ini [User Startup] desktop.ini -------------------- IniMapping values: User screensaver = logon.scr -------------------- Policies: [Alternate policies] * Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) * NoDriveTypeAutoRun = dword: 145 -------------------- Registry 'Run' keys: [User Run] ALUAlert = C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe -------------------- Hijack points: [Internet Explorer URLs] * Internet Explorer\Desktop\General (1) * BackupWallpaper = (None) ================================================== = Other users on this computer: LOCAL SERVICE = ================================================== -------------------- Autostart folders: [User Startup] desktop.ini -------------------- IniMapping values: User screensaver = C:\WINDOWS\System32\logon.scr -------------------- Policies: [Alternate policies] * Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) * NoDriveTypeAutoRun = dword: 145 ================================================== = Other users on this computer: NETWORK SERVICE = ================================================== -------------------- Autostart folders: [User Startup] desktop.ini -------------------- IniMapping values: User screensaver = C:\WINDOWS\System32\logon.scr -------------------- Policies: [Alternate policies] * Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) * NoDriveTypeAutoRun = dword: 145 ================================================== = Other users on this computer: SYSTEM = ================================================== -------------------- Autostart folders: [Startup] desktop.ini [User Startup] desktop.ini -------------------- IniMapping values: User screensaver = logon.scr -------------------- Policies: [Alternate policies] * Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) * NoDriveTypeAutoRun = dword: 145 -------------------- Registry 'Run' keys: [User Run] ALUAlert = C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe -------------------- Hijack points: [Internet Explorer URLs] * Internet Explorer\Desktop\General (1) * BackupWallpaper = (None) ================================================== = Other hardware configurations: Last known good = ================================================== -------------------- On-reboot actions: BootExecute = autocheck autochk * -------------------- Services: [NT Services (50)] Automatic LiveUpdate Scheduler = "C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe" Automatic Updates = C:\WINDOWS\system32\svchost.exe -k netsvcs Background Intelligent Transfer Service = C:\WINDOWS\System32\svchost.exe -k netsvcs Computer Browser = C:\WINDOWS\system32\svchost.exe -k netsvcs Cryptographic Services = C:\WINDOWS\system32\svchost.exe -k netsvcs DCOM Server Process Launcher = C:\WINDOWS\system32\svchost -k DcomLaunch DHCP Client = C:\WINDOWS\System32\svchost.exe -k netsvcs Distributed Link Tracking Client = C:\WINDOWS\system32\svchost.exe -k netsvcs DNS Client = C:\WINDOWS\System32\svchost.exe -k NetworkService Error Reporting Service = C:\WINDOWS\System32\svchost.exe -k netsvcs Event Log = C:\WINDOWS\system32\services.exe Help and Support = C:\WINDOWS\System32\svchost.exe -k netsvcs HID Input Service = C:\WINDOWS\System32\svchost.exe -k netsvcs IPSEC Services = C:\WINDOWS\System32\lsass.exe ISSvc = "C:\Program Files\Norton Internet Security\ISSVC.exe" LexBce Server = C:\WINDOWS\system32\LEXBCES.EXE Machine Debug Manager = "C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe" Norton AntiVirus Auto-Protect Service = "C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe" NVIDIA Driver Helper Service = C:\WINDOWS\System32\nvsvc32.exe Plug and Play = C:\WINDOWS\system32\services.exe Print Spooler = C:\WINDOWS\system32\spoolsv.exe Protected Storage = C:\WINDOWS\system32\lsass.exe Remote Procedure Call (RPC) = C:\WINDOWS\system32\svchost -k rpcss ScriptBlocking Service = C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe Secondary Logon = C:\WINDOWS\System32\svchost.exe -k netsvcs Security Accounts Manager = C:\WINDOWS\system32\lsass.exe Security Center = C:\WINDOWS\System32\svchost.exe -k netsvcs Server = C:\WINDOWS\System32\svchost.exe -k netsvcs Shell Hardware Detection = C:\WINDOWS\System32\svchost.exe -k netsvcs Softex OmniPass Service = C:\Program Files\Softex\OmniPass\Omniserv.exe Symantec Core LC = C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe Symantec Event Manager = "C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe" Symantec Network Drivers Service = "C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe" Symantec Network Proxy = "C:\Program Files\Common Files\Symantec Shared\ccProxy.exe" Symantec Settings Manager = "C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe" Symantec SPBBCSvc = "C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe" System Event Notification = C:\WINDOWS\system32\svchost.exe -k netsvcs System Restore Service = C:\WINDOWS\System32\svchost.exe -k netsvcs Task Scheduler = C:\WINDOWS\System32\svchost.exe -k netsvcs TCP/IP NetBIOS Helper = C:\WINDOWS\System32\svchost.exe -k LocalService Themes = C:\WINDOWS\System32\svchost.exe -k netsvcs WebClient = C:\WINDOWS\System32\svchost.exe -k LocalService Windows Audio = C:\WINDOWS\System32\svchost.exe -k netsvcs Windows Firewall/Internet Connection Sharing (ICS) = C:\WINDOWS\System32\svchost.exe -k netsvcs Windows Image Acquisition (WIA) = C:\WINDOWS\System32\svchost.exe -k imgsvc Windows Management Instrumentation = C:\WINDOWS\system32\svchost.exe -k netsvcs Windows Time = C:\WINDOWS\System32\svchost.exe -k netsvcs Windows User Mode Driver Framework = C:\WINDOWS\system32\wdfmgr.exe Wireless Zero Configuration = C:\WINDOWS\System32\svchost.exe -k netsvcs Workstation = C:\WINDOWS\system32\svchost.exe -k netsvcs [VxD Services (1)] JAVASUP = JAVASUP.VXD [SafeBoot services (Minimal boot)] * CD-ROM Drive * {4D36E965-E325-11CE-BFC1-08002BE10318} * DiskDrive * {4D36E967-E325-11CE-BFC1-08002BE10318} * Driver * dmboot.sys dmio.sys dmload.sys sermouse.sys vga.sys vgasave.sys * Driver Group * Base Boot Bus Extender Boot file system File system Filter PCI Configuration PNP Filter Primary disk SCSI Class System Bus Extender * Floppy disk drive * {4D36E980-E325-11CE-BFC1-08002BE10318} * FSFilter System Recovery * sr.sys * Hdc * {4D36E96A-E325-11CE-BFC1-08002BE10318} * Human Interface Devices * {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} * Keyboard * {4D36E96B-E325-11CE-BFC1-08002BE10318} * Mouse * {4D36E96F-E325-11CE-BFC1-08002BE10318} * PCMCIA Adapters * {4D36E977-E325-11CE-BFC1-08002BE10318} * SCSIAdapter * {4D36E97B-E325-11CE-BFC1-08002BE10318} * Service * AppMgmt CryptSvc DcomLaunch dmadmin dmserver EventLog HelpSvc Netlogon PlugPlay RpcSs SRService vds WinMgmt * Standard floppy disk controller * {4D36E969-E325-11CE-BFC1-08002BE10318} * System * {4D36E97D-E325-11CE-BFC1-08002BE10318} * Universal Serial Bus controllers * {36FC9E60-C465-11CF-8056-444553540000} * Volume * {71A27CDD-812A-11D0-BEC7-08002BE2092F} * Volume shadow copy * {533C5B84-EC70-11D2-9505-00C04F79DEAF} [SafeBoot services (Minimal boot + network support)] * CD-ROM Drive * {4D36E965-E325-11CE-BFC1-08002BE10318} * DiskDrive * {4D36E967-E325-11CE-BFC1-08002BE10318} * Driver * dmboot.sys dmio.sys dmload.sys ip6fw.sys ipnat.sys rdpcdd.sys rdpdd.sys rdpwd.sys sermouse.sys tdpipe.sys tdtcp.sys vga.sys vgasave.sys * Driver Group * Base Boot Bus Extender Boot file system File system Filter NDIS NDIS Wrapper NetBIOSGroup NetDDEGroup Network NetworkProvider PCI Configuration PNP Filter PNP_TDI Primary disk SCSI Class Streams Drivers System Bus Extender TDI * Floppy disk drive * {4D36E980-E325-11CE-BFC1-08002BE10318} * FSFilter System Recovery * sr.sys * Hdc * {4D36E96A-E325-11CE-BFC1-08002BE10318} * Human Interface Devices * {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} * Keyboard * {4D36E96B-E325-11CE-BFC1-08002BE10318} * Mouse * {4D36E96F-E325-11CE-BFC1-08002BE10318} * Net * {4D36E972-E325-11CE-BFC1-08002BE10318} * NetClient * {4D36E973-E325-11CE-BFC1-08002BE10318} * NetService * {4D36E974-E325-11CE-BFC1-08002BE10318} * NetTrans * {4D36E975-E325-11CE-BFC1-08002BE10318} * PCMCIA Adapters * {4D36E977-E325-11CE-BFC1-08002BE10318} * SCSIAdapter * {4D36E97B-E325-11CE-BFC1-08002BE10318} * Service * AFD AppMgmt Browser CryptSvc DcomLaunch Dhcp dmadmin dmserver DnsCache EventLog HelpSvc LanmanServer LanmanWorkstation LmHosts Messenger Ndisuio NetBIOS NetBT Netlogon NetMan NtLmSsp PlugPlay rdsessmgr RpcSs sharedaccess SRService Tcpip termservice UploadMgr WinMgmt WZCSVC * Standard floppy disk controller * {4D36E969-E325-11CE-BFC1-08002BE10318} * System * {4D36E97D-E325-11CE-BFC1-08002BE10318} * Universal Serial Bus controllers * {36FC9E60-C465-11CF-8056-444553540000} * Volume * {71A27CDD-812A-11D0-BEC7-08002BE2092F} [SafeBoot: Alternate shell] cmd.exe (not enabled) -------------------- Driver filters: [Class filters] * Infrared devices * - Upper filters IRENUM.sys * Storage volumes * - Upper filters VolSnap.sys * Tape drives * - Lower filters drvmcdb.sys [Device filters] * Communications Port * - Upper filters serenum.sys * Direct Parallel * - Lower filters PtiLink.sys * HP PS2 Keyboard (2K - 3) * - Upper filters PS2.sys * Intel(R) 82865G\PE\P Processor to AGP Controller - 2571 * - Upper filters AGP440.sys * Lucent Win Modem * - Lower filters ltmodem5.sys * Terminal Server Keyboard Driver * - Upper filters kbdclass.sys * Terminal Server Mouse Driver * - Upper filters mouclass.sys * WAN Miniport (IP) * - Lower filters NdisTapi.sys * WAN Miniport (PPPOE) * - Lower filters NdisTapi.sys * WAN Miniport (PPTP) * - Lower filters NdisTapi.sys -------------------- Print monitors (9): BJ Language Monitor - cnbjmon.dll Lexmark Network Port - LEXLMPM.DLL Local Port - localspl.dll Microsoft Shared Fax Monitor - FXSMON.DLL PDF995 Monitor - pdf995mon.dll PJL Language Monitor - pjlmon.dll PrintMe Port - PrintMeMon.dll Standard TCP/IP Port - tcpmon.dll USB Monitor - usbmon.dll -------------------- WOW compatibility: cmdline = C:\WINDOWS\system32\ntvdm.exe wowcmdline = C:\WINDOWS\system32\ntvdm.exe -a C:\WINDOWS\system32\krnl386 [KnownDlls (16-bit) (40)] avicap.dll avifile.dll comm.drv commdlg.dll compobj.dll ctl3dv2.dll ddeml.dll keyboard.drv lanman.drv mapi.dll mciavi.drv mciseq.drv mciwave.drv mmsystem.dll mouse.drv msacm.dll msvideo.dll netapi.dll ole2.dll ole2disp.dll ole2nls.dll olecli.dll olesvr.dll pmspl.dll progman.exe rasapi16.dll shell.dll sound.drv storage.dll system.drv timer.drv toolhelp.dll typelib.dll vga.drv wfwnet.drv win87em.dll winoldap.mod winsock.dll winspool.exe wowdeb.exe [KnownDlls (32-bit) (20)] advapi32.dll comdlg32.dll gdi32.dll imagehlp.dll kernel32.dll lz32.dll ole32.dll oleaut32.dll olecli32.dll olecnv32.dll olesvr32.dll olethk32.dll rpcrt4.dll shell32.dll url.dll urlmon.dll user32.dll version.dll wininet.dll wldap32.dll -------------------------------------------------- End of report, 183,980 bytes Commandline options: /showempty - Show empty sections /showcmts - Show comments in .bat files /noshowclsids - Hide class IDs /noshowprivate - Hide usernames and computer name /noshowusers - Hide entries from other users /noshowhardware - Hide entries from other hardware configurations /autosave - Run hidden, automatically save a report and quit