Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google Search Redirect


  • Please log in to reply
2 replies to this topic

#1 tambay

tambay

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:08:08 AM

Posted 08 August 2009 - 02:04 AM

Search links just leads to some bogus site. I've tried Hijackthis, combofix, dds, malwarebytes, rootrepeal, gmer, rsit but they just fail to run, freezes, or finish scanning without posting logs. I've tried changing the names and running them in safe mode but they still won't work. The only logs I have are from Regrun Reanimator.

SpyHolesList Version:4.2 Build:6.5.6.47
07.08.2009 7:55:53 PM
WinDir=C:\WINDOWS
Startup=C:\Documents and Settings\***\Start Menu\Programs\Startup\
Common Startup=C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup\
Microsoft Windows XP Service Pack 2 (5.1.2600)
Internet Explorer 7.0.5730.13
[Internet Explorer]
[Default Home Page] :HKLM Default_Page_URL=http://go.microsoft.com/fwlink/?LinkId=69157
[Current Home Page] :HKCU Start Page=http://www.netflix.com/NetflixReadyDevices?lnkctr=mhWNRD
[Current Home Page] :HKCU HOMEOldSP=""
[Search URL Template] :HKLM 1=www.%s.com
[Search URL Template] :HKLM 2=www.%s.org
[Search URL Template] :HKLM 3=www.%s.net
[Search URL Template] :HKLM 4=www.%s.edu
[All Users Search] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
[All Users Search] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54896
[Current Users Search] :HKCU Search Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
[Current Users Search] :HKCU Search Bar=""
[IE Local Blank Page] :HKCU Local Page=C:\WINDOWS\system32\blank.htm
[IE Local Blank Page] :HKLM Local Page=%SystemRoot%\system32\blank.htm
[Browser Helper Objects] {72853161-30C5-4D22-B7F9-0BBC1D38A37E}=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
[Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
[Auto Search URL] :HKCU provider=""
[Auto Search URL] :HKCU "Default Value"=""
[Search Assistant] :HKCU SearchAssistant=""
[Search Assistant] :HKLM SearchAssistant=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
[Search Assistant] :HKCU CustomizeSearch=""
[Search Assistant] :HKLM CustomizeSearch=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
[CustomizeSearch] :HKLM CustomizeSearch=""
[URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\WINDOWS\system32\ieframe.dll
[Default Prefix] :HKLM "Default Value"=http://
[URL Default Prefixes] :HKLM ftp=ftp://
[URL Default Prefixes] :HKLM gopher=gopher://
[URL Default Prefixes] :HKLM home=http://
[URL Default Prefixes] :HKLM mosaic=http://
[URL Default Prefixes] :HKLM www=http://
[AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM OfflineInformation=res://ieframe.dll/offcancl.htm
[AboutURLs] :HKLM Home=270
[AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm
[AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm
[AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm
[AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm
[AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm
[AboutURLs] :HKLM Tabs=res://ieframe.dll/tabswelcome.htm
[User Style Sheet] :HKCU User Stylesheet=""
[User Style Sheet] :HKUS User Stylesheet=""
[User Style Sheet] :HKCU Use My Stylesheet=0
[User Style Sheet] :HKUS Use My Stylesheet=0
[Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=1
[Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=0
[Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=0
[Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKLM 1201=0
[Links Toolbar] :HKCU LinksFolderName=Links
[IE Extensions - All Users] :HKLM {08B0E5C0-4FCB-11CF-AAA5-00401C608501}=%SystemRoot%\system32\shdocvw.dll
[IE Extensions - All Users] :HKLM {2670000A-7350-4f3c-8081-5663EE0C6C49}=%SystemRoot%\system32\shdocvw.dll
[IE Extensions - All Users] :HKLM {92780B25-18CC-41C8-B9BE-3C9C571A8263}=C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
[IE Extensions - All Users] :HKLM {e2e2dd38-d088-4134-82b7-f2ba38496583}=%windir%\Network Diagnostic\xpnetdiag.exe
[IE Extensions - All Users] :HKLM {FB5F1910-F110-11d2-BB9E-00C04F795683}=C:\Program Files\Messenger\msmsgs.exe
[Active Desktop Components] :HKCU 0=About:Home
[Proxy] :HKCU ProxyServer=""
[Proxy] :HKCU ProxyEnable=0
[Network Settings]
[Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc
[Hosts File Contents] :HKLM 127.0.0.1 localhost
[Domain Name] :HKLM Domain=""
[Name Server] {592A0842-52FB-4806-B01C-6E0469671475}=192.168.1.1
[WinSock2 Components] :HKLM mswsock.dll=%SystemRoot%\System32\mswsock.dll
[WinSock2 Components] :HKLM winrnr.dll=%SystemRoot%\System32\winrnr.dll
[WinSock2 Components] :HKLM rsvpsp.dll=%SystemRoot%\system32\rsvpsp.dll
[Software Components]
[Internet Components] :HKLM C:\Program Files\TVUPlayer\libcurl.dll=C:\Program Files\TVUPlayer\libcurl.dll
[Internet Components] :HKLM C:\Program Files\TVUPlayer\libeay32.dll=C:\Program Files\TVUPlayer\libeay32.dll
[Internet Components] :HKLM C:\Program Files\TVUPlayer\libexpatw.dll=C:\Program Files\TVUPlayer\libexpatw.dll
[Internet Components] :HKLM C:\Program Files\TVUPlayer\msvcp71.dll=C:\Program Files\TVUPlayer\msvcp71.dll
[Internet Components] :HKLM C:\Program Files\TVUPlayer\msvcr71.dll=C:\Program Files\TVUPlayer\msvcr71.dll
[Internet Components] :HKLM C:\Program Files\TVUPlayer\npTVUAx.dll=C:\Program Files\TVUPlayer\npTVUAx.dll
[Internet Components] :HKLM C:\Program Files\TVUPlayer\ssleay32.dll=C:\Program Files\TVUPlayer\ssleay32.dll
[Internet Components] :HKLM C:\Program Files\TVUPlayer\zlib1.dll=C:\Program Files\TVUPlayer\zlib1.dll
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\CONFLICT.1\FP_AX_CAB_INSTALLER.exe=C:\WINDOWS\Downloaded Program Files\CONFLICT.1\FP_AX_CAB_INSTALLER.exe
[Windows Shell]
[Display Scrap's Extensions] :HKLM NeverShowExt=""
[ScreenSaver] :HKCU SCRNSAVE.EXE=""
[System.ini] shell=Explorer.exe
[User Shell] :HKCU shell=""
[Main File Extensions] :HKLM .exe="%1" %*
[Main File Extensions] :HKLM .com="%1" %*
[Main File Extensions] :HKLM .pif="%1" %*
[Main File Extensions] :HKLM .bat="%1" %*
[Main File Extensions] :HKLM .cmd="%1" %*
[Main File Extensions] :HKLM .scr="%1" /S
[Main File Extensions] :HKLM .txt=%SystemRoot%\system32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .reg=regedit.exe "%1"
[Main File Extensions] :HKLM .inf=%SystemRoot%\System32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .ini=%SystemRoot%\System32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .js=%SystemRoot%\System32\WScript.exe "%1" %*
[Main File Extensions] :HKLM .vbs=%SystemRoot%\System32\WScript.exe "%1" %*
[Main File Extensions] :HKLM .vbe=%SystemRoot%\System32\WScript.exe "%1" %*
[Main File Extensions] :HKLM .msc=%SystemRoot%\system32\mmc.exe "%1" %*
[Main File Extensions] :HKLM .html="C:\Program Files\Opera 10 Beta\Opera.exe" "%1"
[Main File Extensions] :HKLM .jpg="C:\Program Files\IrfanView\i_view32.exe" "%1"
[Main File Extensions] :HKLM .jpeg="C:\Program Files\IrfanView\i_view32.exe" "%1"
[Shell Execute Hooks] :HKLM {AEB6717E-7E19-11d0-97EE-00C04FD91972}=shell32.dll
[Shell Execute Hooks] :HKLM {B5A7F190-DDA6-4420-B3BA-52453494E6CD}=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
[UserInit Value] :HKLM UserInit=C:\WINDOWS\system32\userinit.exe,
[Winlogon Notification] :HKLM crypt32chain=crypt32.dll
[Winlogon Notification] :HKLM cryptnet=cryptnet.dll
[Winlogon Notification] :HKLM cscdll=cscdll.dll
[Winlogon Notification] :HKLM ScCertProp=wlnotify.dll
[Winlogon Notification] :HKLM Schedule=wlnotify.dll
[Winlogon Notification] :HKLM sclgntfy=sclgntfy.dll
[Winlogon Notification] :HKLM SensLogn=WlNotify.dll
[Winlogon Notification] :HKLM termsrv=wlnotify.dll
[Winlogon Notification] :HKLM WgaLogon=WgaLogon.dll
[Winlogon Notification] :HKLM wlballoon=wlnotify.dll
[Shell Services DelayLoad] :HKLM PostBootReminder=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM CDBurn=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM WebCheck=C:\WINDOWS\system32\webcheck.dll
[Shell Services DelayLoad] :HKLM SysTray=%systemroot%\system32\stobject.dll
[Shell Services DelayLoad] :HKLM WPDShServiceObj=C:\WINDOWS\system32\WPDShServiceObj.dll
[App Paths] :HKLM ACU.exe=C:\Program Files\Atheros\Driver\ACU.exe
[App Paths] :HKLM ashAvast.exe=C:\Program Files\Alwil Software\Avast4\ashAvast.exe
[App Paths] :HKLM bckgzm.exe=C:\Program Files\MSN Gaming Zone\Windows\bckgzm.exe
[App Paths] :HKLM ccleaner.exe=C:\Program Files\CCleaner\ccleaner.exe
[App Paths] :HKLM chkrzm.exe=C:\Program Files\MSN Gaming Zone\Windows\chkrzm.exe
[App Paths] :HKLM cmmgr32.exe=C:\WINDOWS\system32\cmmgr32.exe
[App Paths] :HKLM combofix.exe=C:\Documents and Settings\***\Desktop\ComboFix.exe
[App Paths] :HKLM CONF.EXE=C:\Program Files\NetMeeting\conf.exe
[App Paths] :HKLM dialer.exe=C:\Program Files\Windows NT\dialer.exe
[App Paths] :HKLM DVDFORM.EXE=C:\Program Files\DVD-RAM\WinXP\DVD-RAM Driver\DVDFORM.EXE
[App Paths] :HKLM excel.exe=C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE
[App Paths] :HKLM firefox.exe=C:\Program Files\Mozilla Firefox\firefox.exe
[App Paths] :HKLM ga_main.exe=C:\PROGRA~1\ULEADS~1\ULEADG~2\ga_main.exe
[App Paths] :HKLM gimp-2.4.exe=C:\Program Files\GIMP-2.0\bin\gimp-2.4.exe
[App Paths] :HKLM GROOVE.EXE=C:\PROGRA~1\MICROS~2\Office12\GROOVE.EXE
[App Paths] :HKLM HELPCTR.EXE=C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpCtr.exe
[App Paths] :HKLM HijackThis.exe=C:\Program Files\trend micro\hijackthis.exe
[App Paths] :HKLM hrtzzm.exe=C:\Program Files\MSN Gaming Zone\Windows\hrtzzm.exe
[App Paths] :HKLM hypertrm.exe="C:\Program Files\Windows NT\hypertrm.exe"
[App Paths] :HKLM ICWCONN1.EXE="C:\Program Files\Internet Explorer\Connection Wizard\ICWCONN1.EXE"
[App Paths] :HKLM ICWCONN2.EXE="C:\Program Files\Internet Explorer\Connection Wizard\ICWCONN2.EXE"
[App Paths] :HKLM IEXPLORE.EXE=C:\Program Files\Internet Explorer\IEXPLORE.EXE
[App Paths] :HKLM INETWIZ.EXE="C:\Program Files\Internet Explorer\Connection Wizard\INETWIZ.EXE"
[App Paths] :HKLM infopath.exe=C:\PROGRA~1\MICROS~2\Office12\INFOPATH.EXE
[App Paths] :HKLM install.exe
[App Paths] :HKLM ISIGNUP.EXE="C:\Program Files\Internet Explorer\Connection Wizard\ISIGNUP.EXE"
[App Paths] :HKLM javaws.exe=C:\Program Files\Java\jre1.6.0_07\bin\javaws.exe
[App Paths] :HKLM mbam.exe=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
[App Paths] :HKLM migwiz.exe=%SystemRoot%\system32\usmt\migwiz.exe
[App Paths] :HKLM moviemk.exe=C:\Program Files\Movie Maker\moviemk.exe
[App Paths] :HKLM mplayer2.exe="C:\Program Files\Windows Media Player\mplayer2.exe"
[App Paths] :HKLM mplayerc.exe="C:\Program Files\QuickTime Alternative\Media Player Classic\mplayerc.exe"
[App Paths] :HKLM MSACCESS.EXE=C:\PROGRA~1\MICROS~2\Office12\MSACCESS.EXE
[App Paths] :HKLM MSCONFIG.EXE=%systemroot%\pchealth\helpctr\Binaries\MSCONFIG.EXE
[App Paths] :HKLM msimn.exe=%ProgramFiles%\Outlook Express\msimn.exe
[App Paths] :HKLM msinfo32.exe=C:\Program Files\Common Files\Microsoft Shared\MSInfo\MSInfo32.exe
[App Paths] :HKLM MSMSGS.EXE=C:\Program Files\Messenger\msmsgs.exe
[App Paths] :HKLM MsoHtmEd.exe
[App Paths] :HKLM msoxmled.exe=C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLED.EXE
[App Paths] :HKLM MSPUB.EXE=C:\PROGRA~1\MICROS~2\Office12\MSPUB.EXE
[App Paths] :HKLM ois.exe=C:\PROGRA~1\MICROS~2\Office12\OIS.EXE
[App Paths] :HKLM OneNote.exe=C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE
[App Paths] :HKLM OUTLOOK.EXE=C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE
[App Paths] :HKLM pbrush.exe=%SystemRoot%\system32\mspaint.exe
[App Paths] :HKLM pidgin.exe=C:\Program Files\Pidgin\pidgin.exe
[App Paths] :HKLM pinball.exe=C:\Program Files\Windows NT\Pinball\pinball.exe
[App Paths] :HKLM powerpnt.exe=C:\PROGRA~1\MICROS~2\Office12\POWERPNT.EXE
[App Paths] :HKLM regrun2.exe=C:\Program Files\Greatis\RegRunSuite\regrun2.exe
[App Paths] :HKLM Rhapsody.exe=C:\PROGRA~1\VCASTM~1\rhapsody.exe
[App Paths] :HKLM rvsezm.exe=C:\Program Files\MSN Gaming Zone\Windows\rvsezm.exe
[App Paths] :HKLM sed.exe=C:\Program Files\Greatis\RegRunSuite\sed.exe
[App Paths] :HKLM setup.exe=C:\Program Files\ATI Technologies\ATI Control Panel\setup.exe
[App Paths] :HKLM shvlzm.exe=C:\Program Files\MSN Gaming Zone\Windows\shvlzm.exe
[App Paths] :HKLM SopCast.exe=C:\Program Files\SopCast\SopCast.exe
[App Paths] :HKLM soundman.exe=C:\WINDOWS\soundman.exe
[App Paths] :HKLM sshclient.exe=C:\Program Files\SSH Communications Security\SSH Secure Shell\sshclient.exe
[App Paths] :HKLM table30.exe
[App Paths] :HKLM TOSCDSPD.exe=C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
[App Paths] :HKLM Unlocker.exe=C:\Program Files\Unlocker\Unlocker.exe
[App Paths] :HKLM wab.exe=%ProgramFiles%\Outlook Express\wab.exe
[App Paths] :HKLM wabmig.exe=%ProgramFiles%\Outlook Express\wabmig.exe
[App Paths] :HKLM winnt32.exe
[App Paths] :HKLM WinRAR.exe=C:\Program Files\WinRAR\WinRAR.exe
[App Paths] :HKLM Winword.exe=C:\PROGRA~1\MICROS~2\Office12\WINWORD.EXE
[App Paths] :HKLM wmplayer.exe=C:\Program Files\Windows Media Player\wmplayer.exe
[App Paths] :HKLM WORDPAD.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"
[App Paths] :HKLM WRITE.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"
[Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0
[Disable Registry Tools] :HKCU DisableRegistryTools =0
[SharedTaskScheduler] :HKLM {438755C2-A8BA-11D1-B96B-00A0C90312E1}=%SystemRoot%\system32\browseui.dll
[SharedTaskScheduler] :HKLM {8C7461EF-2B13-11d2-BE35-3078302C2030}=%SystemRoot%\system32\browseui.dll
[Kernel Auto Boot]
[ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=C:\WINDOWS\inf\unregmp2.exe /ShowWMP
[Svchost DLLs] :HKLM HTTPFilter=%SystemRoot%\System32\w3ssl.dll
[Svchost DLLs] :HKLM Alerter=%SystemRoot%\system32\alrsvc.dll
[Svchost DLLs] :HKLM WebClient=%SystemRoot%\System32\webclnt.dll
[Svchost DLLs] :HKLM LmHosts=%SystemRoot%\System32\lmhsvc.dll
[Svchost DLLs] :HKLM RemoteRegistry=%SystemRoot%\system32\regsvc.dll
[Svchost DLLs] :HKLM upnphost=%SystemRoot%\System32\upnphost.dll
[Svchost DLLs] :HKLM SSDPSRV=%SystemRoot%\System32\ssdpsrv.dll
[Svchost DLLs] :HKLM Dnscache=%SystemRoot%\System32\dnsrslvr.dll
[Svchost DLLs] :HKLM 6to4
[Svchost DLLs] :HKLM AppMgmt=%SystemRoot%\System32\appmgmts.dll
[Svchost DLLs] :HKLM AudioSrv=%SystemRoot%\System32\audiosrv.dll
[Svchost DLLs] :HKLM Browser=%SystemRoot%\System32\browser.dll
[Svchost DLLs] :HKLM CryptSvc=%SystemRoot%\System32\cryptsvc.dll
[Svchost DLLs] :HKLM dmserver=%SystemRoot%\System32\dmserver.dll
[Svchost DLLs] :HKLM Dhcp=%SystemRoot%\System32\dhcpcsvc.dll
[Svchost DLLs] :HKLM ERSvc=%SystemRoot%\System32\ersvc.dll
[Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\system32\es.dll
[Svchost DLLs] :HKLM FastUserSwitchingCompatibility=%SystemRoot%\System32\shsvcs.dll
[Svchost DLLs] :HKLM HidServ=%SystemRoot%\System32\hidserv.dll
[Svchost DLLs] :HKLM Ias
[Svchost DLLs] :HKLM Iprip
[Svchost DLLs] :HKLM Irmon=%SystemRoot%\System32\irmon.dll
[Svchost DLLs] :HKLM LanmanServer=%SystemRoot%\System32\srvsvc.dll
[Svchost DLLs] :HKLM LanmanWorkstation=%SystemRoot%\System32\wkssvc.dll
[Svchost DLLs] :HKLM Messenger=%SystemRoot%\System32\msgsvc.dll
[Svchost DLLs] :HKLM Netman=%SystemRoot%\System32\netman.dll
[Svchost DLLs] :HKLM Nla=%SystemRoot%\System32\mswsock.dll
[Svchost DLLs] :HKLM NtmsSvc=%SystemRoot%\system32\ntmssvc.dll
[Svchost DLLs] :HKLM NWCWorkstation
[Svchost DLLs] :HKLM Nwsapagent
[Svchost DLLs] :HKLM RasAuto=%SystemRoot%\System32\rasauto.dll
[Svchost DLLs] :HKLM RasMan=%SystemRoot%\System32\rasmans.dll
[Svchost DLLs] :HKLM RemoteAccess=%SystemRoot%\System32\mprdim.dll
[Svchost DLLs] :HKLM Schedule=%SystemRoot%\system32\schedsvc.dll
[Svchost DLLs] :HKLM seclogon=%SystemRoot%\System32\seclogon.dll
[Svchost DLLs] :HKLM SENS=%SystemRoot%\system32\sens.dll
[Svchost DLLs] :HKLM SharedAccess=%SystemRoot%\System32\ipnathlp.dll
[Svchost DLLs] :HKLM srservice=%SystemRoot%\system32\srsvc.dll
[Svchost DLLs] :HKLM TapiSrv=%SystemRoot%\System32\tapisrv.dll
[Svchost DLLs] :HKLM Themes=%SystemRoot%\System32\shsvcs.dll
[Svchost DLLs] :HKLM TrkWks=%SystemRoot%\system32\trkwks.dll
[Svchost DLLs] :HKLM W32Time=%systemroot%\system32\w32time.dll
[Svchost DLLs] :HKLM WZCSVC=%SystemRoot%\System32\wzcsvc.dll
[Svchost DLLs] :HKLM Wmi=%SystemRoot%\System32\advapi32.dll
[Svchost DLLs] :HKLM WmdmPmSp
[Svchost DLLs] :HKLM winmgmt=%SystemRoot%\system32\wbem\WMIsvc.dll
[Svchost DLLs] :HKLM wscsvc=%SYSTEMROOT%\system32\wscsvc.dll
[Svchost DLLs] :HKLM xmlprov=%SystemRoot%\System32\xmlprov.dll
[Svchost DLLs] :HKLM BITS=%systemroot%\system32\qmgr.dll
[Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\system32\wuauserv.dll
[Svchost DLLs] :HKLM ShellHWDetection=%SystemRoot%\System32\shsvcs.dll
[Svchost DLLs] :HKLM helpsvc=%WINDIR%\PCHealth\HelpCtr\Binaries\pchsvc.dll
[Svchost DLLs] :HKLM WmdmPmSN=C:\WINDOWS\system32\MsPMSNSv.dll
[Svchost DLLs] :HKLM DcomLaunch=%SystemRoot%\system32\rpcss.dll
[Svchost DLLs] :HKLM TermService=%SystemRoot%\System32\termsrv.dll
[Svchost DLLs] :HKLM RpcSs=%SystemRoot%\System32\rpcss.dll
[Svchost DLLs] :HKLM stisvc=%SystemRoot%\system32\wiaservc.dll
[Svchost DLLs] :HKLM WudfSvc=%SystemRoot%\System32\WUDFSvc.dll
[Bootexecute] :HKLM BootExecute=autocheck autochk *
Partizan
[Winlogon System] :HKLM system=""
[KnownDLLs] :HKLM advapi32=advapi32.dll
[KnownDLLs] :HKLM comdlg32=comdlg32.dll
[KnownDLLs] :HKLM DllDirectory=%SystemRoot%\system32
[KnownDLLs] :HKLM gdi32=gdi32.dll
[KnownDLLs] :HKLM imagehlp=imagehlp.dll
[KnownDLLs] :HKLM kernel32=kernel32.dll
[KnownDLLs] :HKLM lz32=lz32.dll
[KnownDLLs] :HKLM ole32=ole32.dll
[KnownDLLs] :HKLM oleaut32=oleaut32.dll
[KnownDLLs] :HKLM olecli32=olecli32.dll
[KnownDLLs] :HKLM olecnv32=olecnv32.dll
[KnownDLLs] :HKLM olesvr32=olesvr32.dll
[KnownDLLs] :HKLM olethk32=olethk32.dll
[KnownDLLs] :HKLM rpcrt4=rpcrt4.dll
[KnownDLLs] :HKLM shell32=shell32.dll
[KnownDLLs] :HKLM url=url.dll
[KnownDLLs] :HKLM urlmon=urlmon.dll
[KnownDLLs] :HKLM user32=user32.dll
[KnownDLLs] :HKLM version=version.dll
[KnownDLLs] :HKLM wininet=wininet.dll
[KnownDLLs] :HKLM wldap32=wldap32.dll
[Environment - Path] :HKLM Path=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\Program Files\SizeExplorer Pro 3.8.5;C:\Program Files\Common Files\Autodesk Shared;E:\quicktime\QTSystem
[List of Injected DLLs] :HKLM AppInit_DLLs=""
[Auto Services] aswUpdSv
[Auto Services] Ati HotKey Poller
[Auto Services] AudioSrv
[Auto Services] avast! Antivirus
[Auto Services] BITS
[Auto Services] Browser
[Auto Services] C-DillaCdaC11BA
[Auto Services] CryptSvc
[Auto Services] DcomLaunch
[Auto Services] Dhcp
[Auto Services] dmserver
[Auto Services] Dnscache
[Auto Services] DVD-RAM_Service
[Auto Services] ERSvc
[Auto Services] Eventlog
[Auto Services] helpsvc
[Auto Services] HidServ
[Auto Services] Irmon
[Auto Services] lanmanserver
[Auto Services] lanmanworkstation
[Auto Services] LmHosts
[Auto Services] PlugPlay
[Auto Services] PolicyAgent
[Auto Services] ProtectedStorage
[Auto Services] RemoteRegistry
[Auto Services] RpcSs
[Auto Services] SamSs
[Auto Services] Schedule
[Auto Services] seclogon
[Auto Services] SENS
[Auto Services] SharedAccess
[Auto Services] ShellHWDetection
[Auto Services] Spooler
[Auto Services] srservice
[Auto Services] Themes
[Auto Services] TrkWks
[Auto Services] W32Time
[Auto Services] WebClient
[Auto Services] winmgmt
[Auto Services] wscsvc
[Auto Services] wuauserv
[Auto Services] WudfSvc
[Auto Services] WZCSVC
[Drivers] ntoskrnl.exe=C:\WINDOWS\SYSTEM32\NTOSKRNL.EXE
[Drivers] hal.dll=C:\WINDOWS\SYSTEM32\HAL.DLL
[Drivers] KDCOM.DLL=C:\WINDOWS\SYSTEM32\KDCOM.DLL
[Drivers] BOOTVID.dll=C:\WINDOWS\SYSTEM32\BOOTVID.DLL
[Drivers] spkq.sys=spkq.sys
[Drivers] WMILIB.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS
[Drivers] SCSIPORT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\SCSIPORT.SYS
[Drivers] ACPI.sys=C:\WINDOWS\system32\DRIVERS\ACPI.sys
[Drivers] pci.sys=C:\WINDOWS\system32\DRIVERS\pci.sys
[Drivers] ohci1394.sys=C:\WINDOWS\system32\DRIVERS\ohci1394.sys
[Drivers] 1394BUS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\1394BUS.SYS
[Drivers] isapnp.sys=C:\WINDOWS\system32\DRIVERS\isapnp.sys
[Drivers] compbatt.sys=C:\WINDOWS\system32\DRIVERS\compbatt.sys
[Drivers] BATTC.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\BATTC.SYS
[Drivers] pciide.sys=C:\WINDOWS\system32\DRIVERS\pciide.sys
[Drivers] PCIIDEX.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS
[Drivers] pcmcia.sys=C:\WINDOWS\system32\DRIVERS\pcmcia.sys
[Drivers] MountMgr.sys=C:\WINDOWS\system32\DRIVERS\MountMgr.sys
[Drivers] ftdisk.sys=C:\WINDOWS\system32\DRIVERS\ftdisk.sys
[Drivers] dmload.sys=C:\WINDOWS\system32\DRIVERS\dmload.sys
[Drivers] dmio.sys=C:\WINDOWS\system32\DRIVERS\dmio.sys
[Drivers] ACPIEC.sys=C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
[Drivers] OPRGHDLR.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\OPRGHDLR.SYS
[Drivers] PartMgr.sys=C:\WINDOWS\system32\DRIVERS\PartMgr.sys
[Drivers] VolSnap.sys=C:\WINDOWS\system32\DRIVERS\VolSnap.sys
[Drivers] atapi.sys=C:\WINDOWS\system32\DRIVERS\atapi.sys
[Drivers] disk.sys=C:\WINDOWS\system32\DRIVERS\disk.sys
[Drivers] CLASSPNP.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS
[Drivers] fltMgr.sys=C:\WINDOWS\system32\DRIVERS\fltMgr.sys
[Drivers] sr.sys=C:\WINDOWS\system32\DRIVERS\sr.sys
[Drivers] KSecDD.sys=C:\WINDOWS\system32\DRIVERS\KSecDD.sys
[Drivers] WudfPf.sys=C:\WINDOWS\system32\DRIVERS\WudfPf.sys
[Drivers] Ntfs.sys=C:\WINDOWS\system32\DRIVERS\Ntfs.sys
[Drivers] NDIS.sys=C:\WINDOWS\system32\DRIVERS\NDIS.sys
[Drivers] Mup.sys=C:\WINDOWS\system32\DRIVERS\Mup.sys
[Drivers] atisgkaf.sys=C:\WINDOWS\system32\DRIVERS\atisgkaf.sys
[Drivers] intelppm.sys=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
[Drivers] ati2mtag.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ATI2MTAG.SYS
[Drivers] VIDEOPRT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS
[Drivers] usbohci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS
[Drivers] USBPORT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS
[Drivers] usbehci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
[Drivers] imapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IMAPI.SYS
[Drivers] cdrom.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
[Drivers] redbook.sys=C:\WINDOWS\SYSTEM32\DRIVERS\REDBOOK.SYS
[Drivers] ks.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS
[Drivers] GEARAspiWDM.sys=C:\WINDOWS\SYSTEM32\DRIVERS\GEARASPIWDM.SYS
[Drivers] i8042prt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS
[Drivers] kbdclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
[Drivers] mouclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
[Drivers] smcirda.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SMCIRDA.SYS
[Drivers] irenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS
[Drivers] parport.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
[Drivers] CmBatt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS
[Drivers] nic1394.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NIC1394.SYS
[Drivers] athw.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ATHW.SYS
[Drivers] RTL8139.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS
[Drivers] EMS7SK.sys=C:\WINDOWS\SYSTEM32\DRIVERS\EMS7SK.SYS
[Drivers] ESD7SK.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ESD7SK.SYS
[Drivers] ESM7SK.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ESM7SK.SYS
[Drivers] ALCXWDM.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ALCXWDM.SYS
[Drivers] portcls.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS
[Drivers] drmk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS
[Drivers] ALCXSENS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ALCXSENS.SYS
[Drivers] audstub.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
[Drivers] rasirda.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASIRDA.SYS
[Drivers] TDI.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS
[Drivers] rasl2tp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
[Drivers] ndistapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
[Drivers] ndiswan.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
[Drivers] raspppoe.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
[Drivers] raspptp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
[Drivers] psched.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PSCHED.SYS
[Drivers] msgpc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPC.SYS
[Drivers] ptilink.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS
[Drivers] raspti.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPTI.SYS
[Drivers] rdpdr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS
[Drivers] termdd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
[Drivers] swenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
[Drivers] update.sys=C:\WINDOWS\SYSTEM32\DRIVERS\UPDATE.SYS
[Drivers] mssmbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
[Drivers] NDProxy.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
[Drivers] usbhub.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
[Drivers] USBD.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS
[Drivers] Fs_Rec.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS
[Drivers] Null.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS
[Drivers] Beep.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS
[Drivers] vga.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
[Drivers] mnmdd.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MNMDD.SYS
[Drivers] RDPCDD.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
[Drivers] Ext2Fsd.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\EXT2FSD.SYS
[Drivers] meiudf.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MEIUDF.SYS
[Drivers] Udfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS
[Drivers] Msfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS
[Drivers] Npfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS
[Drivers] rasacd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
[Drivers] ipsec.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IPSEC.SYS
[Drivers] tcpip.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
[Drivers] aswTdi.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ASWTDI.SYS
[Drivers] ipnat.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS
[Drivers] netbt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
[Drivers] wanarp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
[Drivers] afd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
[Drivers] netbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
[Drivers] arp1394.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ARP1394.SYS
[Drivers] rdbss.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
[Drivers] mrxsmb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
[Drivers] Fips.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FIPS.SYS
[Drivers] hidusb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
[Drivers] HIDCLASS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS
[Drivers] HIDPARSE.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS
[Drivers] aswSP.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ASWSP.SYS
[Drivers] Aavmker4.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\AAVMKER4.SYS
[Drivers] mouhid.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
[Drivers] Fastfat.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FASTFAT.SYS
[Drivers] atapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_ATAPI.SYS
[Drivers] WMILIB.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_WMILIB.SYS
[Drivers] win32k.sys=C:\WINDOWS\SYSTEM32\WIN32K.SYS
[Drivers] Dxapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS
[Drivers] watchdog.sys=C:\WINDOWS\SYSTEM32\WATCHDOG.SYS
[Drivers] dxg.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXG.SYS
[Drivers] dxgthk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXGTHK.SYS
[Drivers] ati2dvag.dll=C:\WINDOWS\SYSTEM32\ATI2DVAG.DLL
[Drivers] ati2cqag.dll=C:\WINDOWS\SYSTEM32\ATI2CQAG.DLL
[Drivers] ati3d2ag.dll=C:\WINDOWS\SYSTEM32\ATI3D2AG.DLL
[Drivers] win32k.sys:1=C:\WINDOWS\WIN32K.SYS:1
[Drivers] aswFsBlk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ASWFSBLK.SYS
[Drivers] win32k.sys:2=C:\WINDOWS\WIN32K.SYS:2
[Drivers] irda.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IRDA.SYS
[Drivers] ndisuio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
[Drivers] aswMon2.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ASWMON2.SYS
[Drivers] mrxdav.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
[Drivers] ParVdm.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\PARVDM.SYS
[Drivers] CDAC15BA.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CDAC15BA.SYS
[Drivers] wdmaud.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WDMAUD.SYS
[Drivers] sysaudio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SYSAUDIO.SYS
[Drivers] srv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS
[Drivers] aswRdr.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ASWRDR.SYS
[Drivers] HTTP.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS
[Drivers] Cdfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[Drivers] kmixer.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KMIXER.SYS
[Drivers] ntdll.dll=C:\WINDOWS\SYSTEM32\NTDLL.DLL
[Auto Start Apps]
[Registry Run] :HKCU TOSCDSPD=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
[Registry Run] :HKCU ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
[Registry Run] :HKCU MSMSGS="C:\Program Files\Messenger\msmsgs.exe" /background
[Registry Run] :HKCU SUPERAntiSpyware=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
[Registry Run] :HKLM ATIPTA=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
[Registry Run] :HKLM GrooveMonitor="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
[Registry Run] :HKLM avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
[Registry Run] :HKLM Ext2 Volume Manager="C:\Program Files\Ext2Fsd\Ext2Mgr.exe" -quiet
[Win.ini] load=""
[Win.ini] run=""
[Startup Folder] OneNote 2007 Screen Clipper and Launcher.lnk=C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[Common Startup Folder] RAMASST.lnk=C:\WINDOWS\system32\RAMASST.exe
[In memory]
[Running Processes] C:\WINDOWS\SYSTEM32\SMSS.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WINLOGON.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SERVICES.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\LSASS.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\DRIVERS\CDAC11BA.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\DVDRAMSV.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WGATRAY.EXE
[Running Processes] C:\WINDOWS\EXPLORER.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WSCNTFY.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE
[Running Processes] C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPTAXX.EXE
[Running Processes] C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE12\GROOVEMONITOR.EXE
[Running Processes] C:\PROGRA~1\ALWILS~1\AVAST4\ASHDISP.EXE
[Running Processes] C:\PROGRAM FILES\EXT2FSD\EXT2MGR.EXE
[Running Processes] C:\PROGRAM FILES\TOSHIBA\TOSCDSPD\TOSCDSPD.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\CTFMON.EXE
[Running Processes] C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\RAMASST.EXE
[Running Processes] C:\PROGRAM FILES\OPERA 10 BETA\OPERA.EXE
[Running Processes] C:\PROGRAM FILES\GREATIS\REANIMATOR\REANIMATOR.EXE
[Loaded DLLs] C:\WINDOWS\system32\mstask.dll
[Loaded DLLs] C:\WINDOWS\system32\RICHED20.dll
[Loaded DLLs] C:\WINDOWS\system32\RICHED32.DLL
[Loaded DLLs] C:\WINDOWS\system32\OLEPRO32.DLL
[Loaded DLLs] C:\WINDOWS\system32\mscms.dll
[Loaded DLLs] C:\Program Files\Opera 10 Beta\program\plugins\NPSWF32.dll
[Loaded DLLs] C:\WINDOWS\system32\jscript.dll
[Loaded DLLs] C:\WINDOWS\system32\hnetcfg.dll
[Loaded DLLs] C:\WINDOWS\system32\usp10.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\Program Files\Opera 10 Beta\Opera.dll
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] C:\WINDOWS\system32\XPOB2RES.DLL
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.3352_x-ww_81af8e88\gdiplus.dll
[Loaded DLLs] C:\WINDOWS\system32\MSUTB.dll
[Loaded DLLs] C:\WINDOWS\system32\MFC42.DLL
[Loaded DLLs] c:\program files\alwil software\avast4\ahruiws.dll
[Loaded DLLs] c:\program files\alwil software\avast4\ahruistd.dll
[Loaded DLLs] c:\program files\alwil software\avast4\ahruip2p.dll
[Loaded DLLs] C:\WINDOWS\system32\MAPI32.dll
[Loaded DLLs] c:\program files\alwil software\avast4\ahruiout.dll
[Loaded DLLs] c:\program files\alwil software\avast4\ahruins.dll
[Loaded DLLs] c:\program files\alwil software\avast4\ahruimes.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll
[Loaded DLLs] c:\program files\alwil software\avast4\ahruimai.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll
[Loaded DLLs] C:\Program Files\Microsoft Office\Office12\GrooveNew.DLL
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\Program Files\Microsoft Office\Office12\GrooveUtil.DLL
[Loaded DLLs] C:\WINDOWS\system32\DINPUT8.dll
[Loaded DLLs] C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll
[Loaded DLLs] C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.ENU
[Loaded DLLs] C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll
[Loaded DLLs] C:\WINDOWS\system32\rsvpsp.dll
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashWsFtr.dll
[Loaded DLLs] C:\WINDOWS\system32\security.dll
[Loaded DLLs] C:\WINDOWS\system32\hnetcfg.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\English\langmai.dll
[Loaded DLLs] C:\WINDOWS\system32\MFC71.DLL
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\English\Lang.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\framedyn.dll
[Loaded DLLs] C:\WINDOWS\system32\srclient.dll
[Loaded DLLs] C:\WINDOWS\System32\davclnt.dll
[Loaded DLLs] C:\WINDOWS\System32\NETUI1.dll
[Loaded DLLs] C:\WINDOWS\System32\NETUI0.dll
[Loaded DLLs] C:\WINDOWS\System32\ntlanman.dll
[Loaded DLLs] C:\WINDOWS\System32\drprov.dll
[Loaded DLLs] C:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
[Loaded DLLs] C:\WINDOWS\system32\PortableDeviceApi.dll
[Loaded DLLs] C:\WINDOWS\system32\PortableDeviceTypes.dll
[Loaded DLLs] C:\WINDOWS\system32\mydocs.dll
[Loaded DLLs] C:\WINDOWS\system32\WPDShServiceObj.dll
[Loaded DLLs] C:\WINDOWS\system32\BatMeter.dll
[Loaded DLLs] C:\WINDOWS\system32\stobject.dll
[Loaded DLLs] C:\WINDOWS\system32\webcheck.dll
[Loaded DLLs] C:\WINDOWS\system32\ieframe.dll
[Loaded DLLs] C:\WINDOWS\system32\ntshrui.dll
[Loaded DLLs] C:\WINDOWS\system32\LINKINFO.dll
[Loaded DLLs] C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll
[Loaded DLLs] C:\WINDOWS\system32\urlmon.dll
[Loaded DLLs] C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
[Loaded DLLs] C:\WINDOWS\system32\themeui.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.DLL
[Loaded DLLs] C:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
[Loaded DLLs] C:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
[Loaded DLLs] C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
[Loaded DLLs] C:\WINDOWS\system32\OLEACC.dll
[Loaded DLLs] C:\WINDOWS\system32\AcSignIcon.dll
[Loaded DLLs] C:\WINDOWS\system32\SHDOCVW.dll
[Loaded DLLs] C:\WINDOWS\system32\BROWSEUI.dll
[Loaded DLLs] C:\WINDOWS\system32\MSCTF.dll
[Loaded DLLs] C:\WINDOWS\system32\SensApi.dll
[Loaded DLLs] C:\WINDOWS\system32\cryptnet.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\inetpp.dll
[Loaded DLLs] C:\WINDOWS\system32\NETRAP.dll
[Loaded DLLs] C:\WINDOWS\system32\win32spl.dll
[Loaded DLLs] C:\WINDOWS\System32\spool\PRTPROCS\W32X86\msonpppr.dll
[Loaded DLLs] C:\WINDOWS\system32\usbmon.dll
[Loaded DLLs] C:\WINDOWS\system32\tcpmon.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll
[Loaded DLLs] C:\WINDOWS\system32\msonpmon.dll
[Loaded DLLs] C:\WINDOWS\system32\pjlmon.dll
[Loaded DLLs] C:\WINDOWS\system32\cnbjmon.dll
[Loaded DLLs] C:\WINDOWS\system32\localspl.dll
[Loaded DLLs] C:\WINDOWS\system32\SPOOLSS.DLL
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswRes.dll
[Loaded DLLs] C:\WINDOWS\system32\perfos.dll
[Loaded DLLs] C:\WINDOWS\system32\ICMP.DLL
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashSSqlt.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResWS.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResStd.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ahResP2P.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResOut.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResNS.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ahResMes.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResMai.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\English\Base.dll
[Loaded DLLs] C:\WINDOWS\system32\dbghelp.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AavmRpch.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\Aavm4h.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswIdle.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswInteg.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashTask.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashBase.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswScan.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswEngin.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswAux.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswCmnB.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCR71.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCP71.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswCmnS.dll
[Loaded DLLs] c:\windows\system32\WUDFPlatform.dll
[Loaded DLLs] c:\windows\system32\wudfsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\wuapi.dll
[Loaded DLLs] C:\WINDOWS\System32\winrnr.dll
[Loaded DLLs] C:\WINDOWS\System32\xmlprovi.dll
[Loaded DLLs] C:\WINDOWS\system32\mlang.dll
[Loaded DLLs] C:\WINDOWS\system32\wups2.dll
[Loaded DLLs] C:\WINDOWS\System32\RASDLG.dll
[Loaded DLLs] C:\WINDOWS\System32\ntlsapi.dll
[Loaded DLLs] C:\WINDOWS\System32\rasppp.dll
[Loaded DLLs] C:\WINDOWS\System32\hidphone.tsp
[Loaded DLLs] C:\WINDOWS\System32\h323.tsp
[Loaded DLLs] C:\WINDOWS\System32\ipconf.tsp
[Loaded DLLs] C:\WINDOWS\System32\ndptsp.tsp
[Loaded DLLs] C:\WINDOWS\System32\kmddsp.tsp
[Loaded DLLs] C:\WINDOWS\System32\uniplat.dll
[Loaded DLLs] C:\WINDOWS\System32\unimdm.tsp
[Loaded DLLs] C:\WINDOWS\System32\rastapi.dll
[Loaded DLLs] c:\windows\system32\tapisrv.dll
[Loaded DLLs] C:\WINDOWS\System32\rasmans.dll
[Loaded DLLs] C:\WINDOWS\system32\netcfgx.dll
[Loaded DLLs] C:\WINDOWS\system32\SSDPAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\upnp.dll
[Loaded DLLs] C:\WINDOWS\System32\rasadhlp.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\ncprov.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemess.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiprvsd.dll
[Loaded DLLs] C:\WINDOWS\System32\RESUTILS.DLL
[Loaded DLLs] C:\WINDOWS\System32\CLUSAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\WSOCK32.dll
[Loaded DLLs] C:\WINDOWS\system32\MTXCLU.DLL
[Loaded DLLs] C:\WINDOWS\system32\colbact.DLL
[Loaded DLLs] C:\WINDOWS\system32\comsvcs.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\repdrvfs.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiutils.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\esscli.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemcore.dll
[Loaded DLLs] c:\windows\system32\ipnathlp.dll
[Loaded DLLs] c:\windows\system32\browser.dll
[Loaded DLLs] C:\WINDOWS\System32\mspatcha.dll
[Loaded DLLs] C:\WINDOWS\System32\Cabinet.dll
[Loaded DLLs] C:\WINDOWS\system32\wuaueng.dll
[Loaded DLLs] c:\windows\system32\wuauserv.dll
[Loaded DLLs] c:\windows\system32\msi.dll
[Loaded DLLs] c:\windows\system32\wscsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\VSSAPI.DLL
[Loaded DLLs] c:\windows\system32\wbem\wmisvc.dll
[Loaded DLLs] c:\windows\system32\trkwks.dll
[Loaded DLLs] c:\windows\system32\POWRPROF.dll
[Loaded DLLs] c:\windows\system32\srsvc.dll
[Loaded DLLs] c:\windows\system32\sens.dll
[Loaded DLLs] c:\windows\system32\seclogon.dll
[Loaded DLLs] c:\windows\system32\credui.dll
[Loaded DLLs] c:\windows\system32\netshell.dll
[Loaded DLLs] c:\windows\system32\netman.dll
[Loaded DLLs] c:\windows\system32\HID.DLL
[Loaded DLLs] c:\windows\system32\hidserv.dll
[Loaded DLLs] c:\windows\pchealth\helpctr\binaries\pchsvc.dll
[Loaded DLLs] c:\windows\system32\srvsvc.dll
[Loaded DLLs] c:\windows\system32\es.dll
[Loaded DLLs] c:\windows\system32\ersvc.dll
[Loaded DLLs] c:\windows\system32\dmserver.dll
[Loaded DLLs] c:\windows\system32\certcli.dll
[Loaded DLLs] c:\windows\system32\cryptsvc.dll
[Loaded DLLs] c:\windows\system32\WINHTTP.dll
[Loaded DLLs] c:\windows\system32\SHFOLDER.dll
[Loaded DLLs] c:\windows\system32\qmgr.dll
[Loaded DLLs] c:\windows\system32\wkssvc.dll
[Loaded DLLs] c:\windows\system32\audiosrv.dll
[Loaded DLLs] C:\WINDOWS\System32\MSIDLE.DLL
[Loaded DLLs] c:\windows\system32\schedsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\WZCSAPI.DLL
[Loaded DLLs] C:\WINDOWS\System32\raschap.dll
[Loaded DLLs] C:\WINDOWS\System32\TAPI32.dll
[Loaded DLLs] C:\WINDOWS\System32\rasman.dll
[Loaded DLLs] C:\WINDOWS\System32\RASAPI32.dll
[Loaded DLLs] C:\WINDOWS\System32\MPRAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\iertutil.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\WININET.dll
[Loaded DLLs] C:\WINDOWS\system32\CRYPTUI.dll
[Loaded DLLs] C:\WINDOWS\System32\rastls.dll
[Loaded DLLs] C:\WINDOWS\System32\wshirda.dll
[Loaded DLLs] \\?\globalroot\Device\__max++>\4DAC6366.x86.dll
[Loaded DLLs] c:\windows\system32\irmon.dll
[Loaded DLLs] c:\windows\system32\ESENT.dll
[Loaded DLLs] c:\windows\system32\WMI.dll
[Loaded DLLs] c:\windows\system32\rtutils.dll
[Loaded DLLs] c:\windows\system32\wzcsvc.dll
[Loaded DLLs] c:\windows\system32\dhcpcsvc.dll
[Loaded DLLs] c:\windows\system32\ATL.DLL
[Loaded DLLs] c:\windows\system32\adsldpc.dll
[Loaded DLLs] c:\windows\system32\ACTIVEDS.dll
[Loaded DLLs] c:\windows\system32\mstlsapi.dll
[Loaded DLLs] c:\windows\system32\ICAAPI.dll
[Loaded DLLs] c:\windows\system32\termsrv.dll
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] c:\windows\system32\rpcss.dll
[Loaded DLLs] C:\WINDOWS\system32\dssenh.dll
[Loaded DLLs] C:\WINDOWS\system32\psbase.dll
[Loaded DLLs] C:\WINDOWS\system32\pstorsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\wshtcpip.dll
[Loaded DLLs] C:\WINDOWS\system32\hnetcfg.dll
[Loaded DLLs] C:\WINDOWS\system32\mswsock.dll
[Loaded DLLs] C:\WINDOWS\system32\WINIPSEC.DLL
[Loaded DLLs] C:\WINDOWS\system32\oakley.DLL
[Loaded DLLs] C:\WINDOWS\system32\ipsecsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\scecli.dll
[Loaded DLLs] C:\WINDOWS\system32\wdigest.dll
[Loaded DLLs] C:\WINDOWS\system32\schannel.dll
[Loaded DLLs] C:\WINDOWS\system32\w32time.dll
[Loaded DLLs] C:\WINDOWS\system32\netlogon.dll
[Loaded DLLs] C:\WINDOWS\system32\kerberos.dll
[Loaded DLLs] C:\WINDOWS\system32\msprivs.dll
[Loaded DLLs] C:\WINDOWS\AppPatch\AcGenral.DLL
[Loaded DLLs] C:\WINDOWS\system32\cryptdll.dll
[Loaded DLLs] C:\WINDOWS\system32\SAMSRV.dll
[Loaded DLLs] C:\WINDOWS\system32\LSASRV.dll
[Loaded DLLs] C:\WINDOWS\system32\eventlog.dll
[Loaded DLLs] C:\WINDOWS\AppPatch\AcAdProc.dll
[Loaded DLLs] C:\WINDOWS\system32\ShimEng.dll
[Loaded DLLs] C:\WINDOWS\system32\NCObjAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\umpnpmgr.dll
[Loaded DLLs] C:\WINDOWS\system32\SCESRV.dll
[Loaded DLLs] C:\WINDOWS\system32\msxml3.dll
[Loaded DLLs] C:\WINDOWS\system32\DNSAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\NTDSAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCP60.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\fastprox.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemcomn.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemprox.dll
[Loaded DLLs] C:\WINDOWS\system32\midimap.dll
[Loaded DLLs] C:\WINDOWS\system32\MSACM32.dll
[Loaded DLLs] C:\WINDOWS\system32\msacm32.drv
[Loaded DLLs] C:\WINDOWS\system32\wdmaud.drv
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] C:\WINDOWS\system32\cscui.dll
[Loaded DLLs] C:\WINDOWS\system32\iphlpapi.dll
[Loaded DLLs] C:\WINDOWS\system32\msv1_0.dll
[Loaded DLLs] C:\WINDOWS\system32\MSIMG32.DLL
[Loaded DLLs] C:\WINDOWS\system32\COMRes.dll
[Loaded DLLs] C:\WINDOWS\system32\CLBCATQ.DLL
[Loaded DLLs] C:\WINDOWS\system32\SAMLIB.dll
[Loaded DLLs] C:\WINDOWS\system32\WLDAP32.dll
[Loaded DLLs] C:\WINDOWS\system32\NTMARTA.DLL
[Loaded DLLs] C:\WINDOWS\system32\rsaenh.dll
[Loaded DLLs] C:\WINDOWS\system32\OLEAUT32.dll
[Loaded DLLs] C:\WINDOWS\system32\WgaLogon.dll
[Loaded DLLs] C:\WINDOWS\system32\MPR.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSPOOL.DRV
[Loaded DLLs] C:\WINDOWS\system32\WlNotify.dll
[Loaded DLLs] C:\WINDOWS\system32\cscdll.dll
[Loaded DLLs] C:\WINDOWS\system32\WINMM.dll
[Loaded DLLs] C:\WINDOWS\system32\uxtheme.dll
[Loaded DLLs] C:\WINDOWS\system32\sxs.dll
[Loaded DLLs] C:\WINDOWS\system32\WTSAPI32.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSCARD.DLL
[Loaded DLLs] C:\WINDOWS\system32\msctfime.ime
[Loaded DLLs] C:\WINDOWS\system32\Apphelp.dll
[Loaded DLLs] C:\WINDOWS\system32\ole32.dll
[Loaded DLLs] C:\WINDOWS\system32\sfc_os.dll
[Loaded DLLs] C:\WINDOWS\system32\sfc.dll
[Loaded DLLs] C:\WINDOWS\system32\SHSVCS.dll
[Loaded DLLs] C:\WINDOWS\system32\odbcint.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[Loaded DLLs] C:\WINDOWS\system32\comdlg32.dll
[Loaded DLLs] C:\WINDOWS\system32\ODBC32.dll
[Loaded DLLs] C:\WINDOWS\system32\COMCTL32.dll
[Loaded DLLs] C:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\SHELL32.dll
[Loaded DLLs] C:\WINDOWS\system32\MSGINA.dll
[Loaded DLLs] C:\WINDOWS\system32\IMM32.DLL
[Loaded DLLs] C:\WINDOWS\system32\WS2HELP.dll
[Loaded DLLs] C:\WINDOWS\system32\WS2_32.dll
[Loaded DLLs] C:\WINDOWS\system32\IMAGEHLP.dll
[Loaded DLLs] C:\WINDOWS\system32\WINTRUST.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSTA.dll
[Loaded DLLs] C:\WINDOWS\system32\VERSION.dll
[Loaded DLLs] C:\WINDOWS\system32\SETUPAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\REGAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\PSAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\USERENV.dll
[Loaded DLLs] C:\WINDOWS\system32\NETAPI32.dll
[Loaded DLLs] C:\WINDOWS\system32\PROFMAP.dll
[Loaded DLLs] C:\WINDOWS\system32\NDdeApi.dll
[Loaded DLLs] C:\WINDOWS\system32\MSASN1.dll
[Loaded DLLs] C:\WINDOWS\system32\GDI32.dll
[Loaded DLLs] C:\WINDOWS\system32\USER32.dll
[Loaded DLLs] C:\WINDOWS\system32\CRYPT32.dll
[Loaded DLLs] C:\WINDOWS\system32\msvcrt.dll
[Loaded DLLs] C:\WINDOWS\system32\AUTHZ.dll
[Loaded DLLs] C:\WINDOWS\system32\Secur32.dll
[Loaded DLLs] C:\WINDOWS\system32\RPCRT4.dll
[Loaded DLLs] C:\WINDOWS\system32\ADVAPI32.dll
[Loaded DLLs] C:\WINDOWS\system32\kernel32.dll
[Loaded DLLs] C:\WINDOWS\system32\ntdll.dll
[Explorer's DLLs] C:\WINDOWS\system32\wbem\framedyn.dll
[Explorer's DLLs] C:\WINDOWS\system32\srclient.dll
[Explorer's DLLs] C:\WINDOWS\System32\davclnt.dll
[Explorer's DLLs] C:\WINDOWS\System32\NETUI1.dll
[Explorer's DLLs] C:\WINDOWS\System32\NETUI0.dll
[Explorer's DLLs] C:\WINDOWS\System32\ntlanman.dll
[Explorer's DLLs] C:\WINDOWS\System32\drprov.dll
[Explorer's DLLs] C:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
[Explorer's DLLs] C:\WINDOWS\system32\PortableDeviceApi.dll
[Explorer's DLLs] C:\WINDOWS\system32\PortableDeviceTypes.dll
[Explorer's DLLs] C:\WINDOWS\system32\mydocs.dll
[Explorer's DLLs] C:\WINDOWS\system32\WPDShServiceObj.dll
[Explorer's DLLs] C:\WINDOWS\system32\BatMeter.dll
[Explorer's DLLs] C:\WINDOWS\system32\stobject.dll
[Explorer's DLLs] C:\WINDOWS\system32\webcheck.dll
[Explorer's DLLs] C:\WINDOWS\system32\ieframe.dll
[Explorer's DLLs] C:\WINDOWS\system32\ntshrui.dll
[Explorer's DLLs] C:\WINDOWS\system32\LINKINFO.dll
[Explorer's DLLs] C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll
[Explorer's DLLs] C:\WINDOWS\system32\urlmon.dll
[Explorer's DLLs] C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
[Explorer's DLLs] C:\WINDOWS\system32\themeui.dll
[Explorer's DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.DLL
[Explorer's DLLs] C:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
[Explorer's DLLs] C:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
[Explorer's DLLs] C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
[Explorer's DLLs] C:\WINDOWS\system32\OLEACC.dll
[Explorer's DLLs] C:\WINDOWS\system32\AcSignIcon.dll
[Explorer's DLLs] C:\WINDOWS\system32\SHDOCVW.dll
[Explorer's DLLs] C:\WINDOWS\system32\BROWSEUI.dll
[Explorer's DLLs] C:\WINDOWS\system32\MSCTF.dll
[Explorer's DLLs] C:\WINDOWS\system32\Normaliz.dll
[Explorer's DLLs] C:\WINDOWS\system32\NETRAP.dll
[Explorer's DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll
[Explorer's DLLs] C:\WINDOWS\system32\mlang.dll
[Explorer's DLLs] c:\windows\system32\msi.dll
[Explorer's DLLs] c:\windows\system32\POWRPROF.dll
[Explorer's DLLs] c:\windows\system32\credui.dll
[Explorer's DLLs] c:\windows\system32\netshell.dll
[Explorer's DLLs] c:\windows\system32\WINHTTP.dll
[Explorer's DLLs] C:\WINDOWS\System32\WZCSAPI.DLL
[Explorer's DLLs] C:\WINDOWS\system32\iertutil.dll
[Explorer's DLLs] C:\WINDOWS\system32\WININET.dll
[Explorer's DLLs] C:\WINDOWS\system32\CRYPTUI.dll
[Explorer's DLLs] c:\windows\system32\rtutils.dll
[Explorer's DLLs] c:\windows\system32\ATL.DLL
[Explorer's DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Explorer's DLLs] C:\WINDOWS\AppPatch\AcGenral.DLL
[Explorer's DLLs] C:\WINDOWS\system32\ShimEng.dll
[Explorer's DLLs] C:\WINDOWS\system32\msxml3.dll
[Explorer's DLLs] C:\WINDOWS\system32\MSVCP60.dll
[Explorer's DLLs] C:\WINDOWS\system32\midimap.dll
[Explorer's DLLs] C:\WINDOWS\system32\MSACM32.dll
[Explorer's DLLs] C:\WINDOWS\system32\msacm32.drv
[Explorer's DLLs] C:\WINDOWS\system32\wdmaud.drv
[Explorer's DLLs] C:\WINDOWS\system32\cscui.dll
[Explorer's DLLs] C:\WINDOWS\system32\iphlpapi.dll
[Explorer's DLLs] C:\WINDOWS\system32\MSIMG32.DLL
[Explorer's DLLs] C:\WINDOWS\system32\COMRes.dll
[Explorer's DLLs] C:\WINDOWS\system32\CLBCATQ.DLL
[Explorer's DLLs] C:\WINDOWS\system32\SAMLIB.dll
[Explorer's DLLs] C:\WINDOWS\system32\WLDAP32.dll
[Explorer's DLLs] C:\WINDOWS\system32\rsaenh.dll
[Explorer's DLLs] C:\WINDOWS\system32\OLEAUT32.dll
[Explorer's DLLs] C:\WINDOWS\system32\MPR.dll
[Explorer's DLLs] C:\WINDOWS\system32\WINSPOOL.DRV
[Explorer's DLLs] C:\WINDOWS\system32\cscdll.dll
[Explorer's DLLs] C:\WINDOWS\system32\WINMM.dll
[Explorer's DLLs] C:\WINDOWS\system32\uxtheme.dll
[Explorer's DLLs] C:\WINDOWS\system32\WTSAPI32.dll
[Explorer's DLLs] C:\WINDOWS\system32\msctfime.ime
[Explorer's DLLs] C:\WINDOWS\system32\Apphelp.dll
[Explorer's DLLs] C:\WINDOWS\system32\ole32.dll
[Explorer's DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[Explorer's DLLs] C:\WINDOWS\system32\COMCTL32.dll
[Explorer's DLLs] C:\WINDOWS\system32\SHLWAPI.dll
[Explorer's DLLs] C:\WINDOWS\system32\SHELL32.dll
[Explorer's DLLs] C:\WINDOWS\system32\IMM32.DLL
[Explorer's DLLs] C:\WINDOWS\system32\WS2HELP.dll
[Explorer's DLLs] C:\WINDOWS\system32\WS2_32.dll
[Explorer's DLLs] C:\WINDOWS\system32\IMAGEHLP.dll
[Explorer's DLLs] C:\WINDOWS\system32\WINTRUST.dll
[Explorer's DLLs] C:\WINDOWS\system32\WINSTA.dll
[Explorer's DLLs] C:\WINDOWS\system32\VERSION.dll
[Explorer's DLLs] C:\WINDOWS\system32\SETUPAPI.dll
[Explorer's DLLs] C:\WINDOWS\system32\PSAPI.DLL
[Explorer's DLLs] C:\WINDOWS\system32\USERENV.dll
[Explorer's DLLs] C:\WINDOWS\system32\NETAPI32.dll
[Explorer's DLLs] C:\WINDOWS\system32\MSASN1.dll
[Explorer's DLLs] C:\WINDOWS\system32\GDI32.dll
[Explorer's DLLs] C:\WINDOWS\system32\USER32.dll
[Explorer's DLLs] C:\WINDOWS\system32\CRYPT32.dll
[Explorer's DLLs] C:\WINDOWS\system32\msvcrt.dll
[Explorer's DLLs] C:\WINDOWS\system32\Secur32.dll
[Explorer's DLLs] C:\WINDOWS\system32\RPCRT4.dll
[Explorer's DLLs] C:\WINDOWS\system32\ADVAPI32.dll
[Explorer's DLLs] C:\WINDOWS\system32\kernel32.dll
[Explorer's DLLs] C:\WINDOWS\system32\ntdll.dll
[Running Services] ALG
[Running Services] aswUpdSv
[Running Services] Ati HotKey Poller
[Running Services] AudioSrv
[Running Services] avast! Antivirus
[Running Services] avast! Mail Scanner
[Running Services] avast! Web Scanner
[Running Services] BITS
[Running Services] C-DillaCdaC11BA
[Running Services] CryptSvc
[Running Services] DcomLaunch
[Running Services] Dhcp
[Running Services] dmserver
[Running Services] Dnscache
[Running Services] DVD-RAM_Service
[Running Services] ERSvc
[Running Services] Eventlog
[Running Services] EventSystem
[Running Services] FastUserSwitchingCompatibility
[Running Services] helpsvc
[Running Services] HidServ
[Running Services] Irmon
[Running Services] lanmanserver
[Running Services] lanmanworkstation
[Running Services] LmHosts
[Running Services] Netman
[Running Services] Nla
[Running Services] PlugPlay
[Running Services] PolicyAgent
[Running Services] ProtectedStorage
[Running Services] RasMan
[Running Services] RemoteRegistry
[Running Services] RpcSs
[Running Services] SamSs
[Running Services] Schedule
[Running Services] seclogon
[Running Services] SENS
[Running Services] SharedAccess
[Running Services] ShellHWDetection
[Running Services] Spooler
[Running Services] srservice
[Running Services] SSDPSRV
[Running Services] TapiSrv
[Running Services] TermService
[Running Services] Themes
[Running Services] TrkWks
[Running Services] W32Time
[Running Services] WebClient
[Running Services] winmgmt
[Running Services] wscsvc
[Running Services] wuauserv
[Running Services] WudfSvc
[Running Services] WZCSVC
[Uninstall]
[Applications] :HKLM AddressBook
[Applications] :HKLM Adobe Flash Player ActiveX=C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
[Applications] :HKLM Adobe Flash Player 10 Plugin=C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
[Applications] :HKLM Adobe Shockwave Player=C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
[Applications] :HKLM ATI - Software Uninstall Utility=C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
[Applications] :HKLM ATI Display Driver=rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
[Applications] :HKLM Autodesk Express Viewer=C:\PROGRA~1\Autodesk\AUTODE~1\Setup.exe /remove
[Applications] :HKLM avast! Antivirus=C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
[Applications] :HKLM Avidemux 2.4=C:\Program Files\Avidemux 2.4\uninstall.exe
[Applications] :HKLM Branding
[Applications] :HKLM CCleaner (remove only)="C:\Program Files\CCleaner\uninst.exe"
[Applications] :HKLM SafeCast Shared Components=C:\Program Files\Common Files\Macrovision Shared\SafeCast\Install\CDAC13BA.EXE /uninstall
[Applications] :HKLM Connection Manager
[Applications] :HKLM DirectAnimation
[Applications] :HKLM DirectDrawEx
[Applications] :HKLM DXM_Runtime
[Applications] :HKLM Microsoft Office Enterprise 2007="C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
[Applications] :HKLM Ext2Fsd 0.46="C:\Program Files\Ext2Fsd\unins000.exe"
[Applications] :HKLM ffdshow [rev 2946] [2009-05-15]="C:\Program Files\K-Lite Codec Pack\ffdshow\unins000.exe"
[Applications] :HKLM Fontcore
[Applications] :HKLM Free M4a to MP3 Converter 5.9="C:\Program Files\Free M4a to MP3 Converter\unins000.exe"
[Applications] :HKLM RegRun Reanimator="C:\Program Files\Greatis\Reanimator\unins000.exe"
[Applications] :HKLM GTK+ Runtime 2.10.13 rev a (remove only)=C:\Program Files\Common Files\GTK\2.0\uninst.exe
[Applications] :HKLM HijackThis 2.0.2="C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
[Applications] :HKLM HydroCAD
[Applications] :HKLM ICW
[Applications] :HKLM Microsoft Internationalized Domain Names Mitigation APIs="C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
[Applications] :HKLM IE40
[Applications] :HKLM IE4Data
[Applications] :HKLM IE5BAKEX
[Applications] :HKLM Windows Internet Explorer 7="C:\WINDOWS\ie7\spuninst\spuninst.exe"
[Applications] :HKLM IEData
[Applications] :HKLM InfraRecorder=C:\Program Files\InfraRecorder\uninstall.exe
[Applications] :HKLM InstallShield Uninstall Information
[Applications] :HKLM SRS WOW XT Plug-In for Windows Media Player for Toshiba version 1.0.1=C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{68D368EE-F5AC-4402-BD45-B454B5453FE1} /l1033
[Applications] :HKLM IrfanView (remove only)=C:\Program Files\IrfanView\iv_uninstall.exe
[Applications] :HKLM Windows XP Hotfix - KB873339=C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
[Applications] :HKLM KB884016
[Applications] :HKLM KB884267
[Applications] :HKLM KB885353
[Applications] :HKLM Windows XP Hotfix - KB885835=C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
[Applications] :HKLM Windows XP Hotfix - KB885836=C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
[Applications] :HKLM Windows XP Hotfix - KB886185=C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
[Applications] :HKLM KB886612
[Applications] :HKLM KB887078
[Applications] :HKLM Windows XP Hotfix - KB887472=C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
[Applications] :HKLM KB887626
[Applications] :HKLM Windows XP Hotfix - KB888302=C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
[Applications] :HKLM KB888656
[Applications] :HKLM KB889858
[Applications] :HKLM Security Update for Windows XP (KB890046)="C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
[Applications] :HKLM Windows XP Hotfix - KB890859="C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
[Applications] :HKLM KB891122
[Applications] :HKLM Windows XP Hotfix - KB891781=C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
[Applications] :HKLM KB892313
[Applications] :HKLM KB893240
[Applications] :HKLM KB893241
[Applications] :HKLM Security Update for Windows XP (KB893756)="C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
[Applications] :HKLM KB893803
[Applications] :HKLM Windows Installer 3.1 (KB893803)="C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
[Applications] :HKLM KB895181
[Applications] :HKLM KB895316
[Applications] :HKLM KB895572
[Applications] :HKLM Security Update for Windows XP (KB896358)="C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB896423)="C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB896428)="C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
[Applications] :HKLM KB897586
[Applications] :HKLM Update for Windows XP (KB898461)="C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
[Applications] :HKLM KB898549
[Applications] :HKLM Security Update for Windows XP (KB899587)="C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB899591)="C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
[Applications] :HKLM KB900399
[Applications] :HKLM Update for Windows XP (KB900485)="C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB900725)="C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB901017)="C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB901214)="C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
[Applications] :HKLM KB902344
[Applications] :HKLM Security Update for Windows XP (KB902400)="C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB904706)="C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB904942)="C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB905414)="C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB905749)="C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB907265)="C:\WINDOWS\$NtUninstallKB907265$\spuninst\spuninst.exe"
[Applications] :HKLM KB907658
[Applications] :HKLM Security Update for Windows XP (KB908519)="C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB908531)="C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB910437)="C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB911280)="C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB911562)="C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player (KB911564)="C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe"
[Applications] :HKLM KB911565
[Applications] :HKLM KB911854
[Applications] :HKLM Security Update for Windows XP (KB911927)="C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB913580)="C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB914388)="C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB914389)="C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB914440)="C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB915865)="C:\WINDOWS\$NtUninstallKB915865$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB916595)="C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB917344)="C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB917953)="C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB918118)="C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB918439)="C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB919007)="C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920213)="C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920670)="C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920683)="C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920685)="C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB920872)="C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB921503)="C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB922582)="C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB922819)="C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923191)="C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923414)="C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923689)="C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923789)=C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
[Applications] :HKLM Security Update for Windows XP (KB923980)="C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB924270)="C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB924496)="C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB924667)="C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 6.4 (KB925398)="C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB925902)="C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB926239)="C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB926255)="C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB926436)="C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB927779)="C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB927802)="C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB927891)="C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB928255)="C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB928843)="C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB929123)="C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows Media Format 11 SDK (KB929399)="C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB930178)="C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB930916)="C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB931261)="C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB931784)="C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB932168)="C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB932823-v3)="C:\WINDOWS\$NtUninstallKB932823-v3$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB933360)="C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB933729)="C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB935839)="C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB935840)="C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB936021)="C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB936357)="C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 11 (KB936782)="C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 9 (KB936782)="C:\WINDOWS\$NtUninstallKB936782_WMP9$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB937143)="C:\WINDOWS\$NtUninstallKB937143$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB937894)="C:\WINDOWS\$NtUninstallKB937894$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB938127)="C:\WINDOWS\$NtUninstallKB938127$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB938127)="C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB938464)="C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB938828)="C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB938829)="C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB939653)="C:\WINDOWS\$NtUninstallKB939653$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB939653)="C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows Media Player 11 (KB939683)="C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941202)="C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941568)="C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941569)="C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941644)="C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941693)="C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB942615)="C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB942763)="C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB943055)="C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB943460)="C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB943485)="C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB944533)="C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB944653)="C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB945553)="C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB946026)="C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB946648)="C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows Internet Explorer 7 (KB947864)="C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB948590)="C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB948881)="C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950749)="C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB950759)="C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950760)="C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950762)="C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950974)="C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951066)="C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB951072-v2)="C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951376)="C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951376-v2)="C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951698)="C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951748)="C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB952287)="C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB952954)="C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB953838)="C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB953839)="C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 11 (KB954154)="C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
[Applications] :HKLM K-Lite Codec Pack 3.9.5 (Full)="C:\Program Files\K-Lite Codec Pack\unins000.exe"
[Applications] :HKLM Malwarebytes' Anti-Malware="C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
[Applications] :HKLM MediaMonkey Script: MiniLyrics Embedder v1.4b="C:\Program Files\MediaMonkey\unins001.exe"
[Applications] :HKLM MediaMonkey 3.0="C:\Program Files\MediaMonkey\unins000.exe"
[Applications] :HKLM MetaFrame Presentation Server Web Client for Win32=C:\WINDOWS\system32\ctxsetup.exe /uninst C:\PROGRA~1\Citrix\icaweb32\uninst.inf
[Applications] :HKLM Minilyrics(remove only)="C:\Program Files\Minilyrics\uninst-ml.exe"
[Applications] :HKLM MobileOptionPack
[Applications] :HKLM Mozilla Firefox (3.5.1)=C:\Program Files\Mozilla Firefox\uninstall\helper.exe
[Applications] :HKLM MPlayer2
[Applications] :HKLM Microsoft Compression Client Pack 1.0 for Windows XP="C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
[Applications] :HKLM MSI30-Beta1
[Applications] :HKLM MSI30-Beta2
[Applications] :HKLM MSI30-KB884016
[Applications] :HKLM MSI30-RC1
[Applications] :HKLM MSI30-RC2
[Applications] :HKLM MSI30a-KB884016
[Applications] :HKLM MSI31-Beta
[Applications] :HKLM MSI31-RC1
[Applications] :HKLM NetMeeting
[Applications] :HKLM Microsoft National Language Support Downlevel APIs="C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
[Applications] :HKLM OutlookExpress
[Applications] :HKLM PCHealth=rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
[Applications] :HKLM Pidgin=C:\Program Files\Pidgin\pidgin-uninst.exe
[Applications] :HKLM QuickTime Alternative 2.8.0="C:\Program Files\QuickTime Alternative\unins000.exe"
[Applications] :HKLM SchedulingAgent
[Applications] :HKLM Shockwave
[Applications] :HKLM ShockwaveFlash
[Applications] :HKLM SopCast 2.0.4=C:\Program Files\SopCast\uninst.exe
[Applications] :HKLM TreeSize Free V2.2.1="C:\Program Files\JAM Software\TreeSize Free\unins000.exe"
[Applications] :HKLM TVAnts 1.0=C:\PROGRA~1\TVAnts\UNWISE.EXE C:\PROGRA~1\TVAnts\INSTALL.LOG
[Applications] :HKLM TVUPlayer 2.4.5.1=C:\Program Files\TVUPlayer\uninst.exe
[Applications] :HKLM Unlocker 1.8.7=C:\Program Files\Unlocker\uninst.exe
[Applications] :HKLM VideoAvatar="C:\Program Files\GeoVid\Video Avatar\unins001.exe"
[Applications] :HKLM VLC media player 1.0.1=C:\Program Files\VideoLAN\VLC\uninstall.exe
[Applications] :HKLM Windows Genuine Advantage Notifications (KB905474)
[Applications] :HKLM Windows Media Format 11 runtime="C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
[Applications] :HKLM Windows Media Player 11="C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
[Applications] :HKLM WinFF 1.0.4="C:\Program Files\WinFF\unins000.exe"
[Applications] :HKLM GIMP 2.4.2="C:\Program Files\GIMP-2.0\setup\unins000.exe"
[Applications] :HKLM WinRAR archiver=C:\Program Files\WinRAR\uninstall.exe
[Applications] :HKLM WMCSetup
[Applications] :HKLM Windows Media Format 11 runtime="C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
[Applications] :HKLM Windows Media Player 11="C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
[Applications] :HKLM Microsoft User-Mode Driver Framework Feature Pack 1.0="C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
[Applications] :HKLM Atheros Wireless LAN MiniPCI card Driver=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{05832D65-6EDB-4D32-BA78-BCD0E2B91C02}\Setup.exe" -l0x9
[Applications] :HKLM ATI Control Panel=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
[Applications] :HKLM AutoUpdate
[Applications] :HKLM Java™ 6 Update 7=MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
[Applications] :HKLM WebFldrs XP
[Applications] :HKLM AutoCAD 2004=MsiExec.exe /I{5783F2D7-0201-0409-0002-0060B0CE6BBA}
[Applications] :HKLM {62369F2F77534556AEF4C58152E3BDE5}
[Applications] :HKLM SRS WOW XT Plug-In for Windows Media Player for Toshiba version 1.0.1
[Applications] :HKLM Microsoft Visual C++ 2005 Redistributable=MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
[Applications] :HKLM SSH Secure Shell=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{74E2CD0C-D4A2-11D3-95A6-0000E86CFDE5}\Setup.exe"
[Applications] :HKLM VC80CRTRedist - 8.0.50727.762=MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}
[Applications] :HKLM DivX Codec=C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
[Applications] :HKLM {8ADFC4160D694100B5B8A22DE9DCABD9}
[Applications] :HKLM Ulead GIF Animator 5 ESD=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8AF3E926-ED59-11D4-A44B-0000E86D2305}\Setup.exe"
[Applications] :HKLM PDF-Viewer="C:\Program Files\Tracker Software\PDF-XChange Viewer\unins000.exe"
[Applications] :HKLM Microsoft Software Update for Web Folders (English) 12
[Applications] :HKLM Microsoft Office Access MUI (English) 2007=MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Excel MUI (English) 2007=MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office PowerPoint MUI (English) 2007=MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Publisher MUI (English) 2007=MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Outlook MUI (English) 2007=MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Word MUI (English) 2007=MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proof (English) 2007=MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proof (French) 2007=MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proof (Spanish) 2007=MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing (English) 2007=MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Enterprise 2007=MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB951596)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1AFF2298-CC00-4A3B-866A-C62B8373794E}
[Applications] :HKLM Update for Microsoft Office Outlook 2007 (KB952142)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
[Applications] :HKLM Security Update for Microsoft Office PowerPoint 2007 (KB951338)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
[Applications] :HKLM Security Update for the 2007 Microsoft Office System (KB936960)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5E5BD655-7AA9-47F9-BB6D-A1D8CE29AC86}
[Applications] :HKLM Security Update for Microsoft Office system 2007 (KB954326)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
[Applications] :HKLM Security Update for Visio 2007 (KB947590)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6BAD036C-261F-4BEF-96CF-C20678D07A41}
[Applications] :HKLM Security Update for Microsoft Office Excel 2007 (KB951546)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7399DD71-8E24-4E60-B6A8-6CED89C0AC26}
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB951944)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
[Applications] :HKLM Security Update for Microsoft Office system 2007 (KB951808)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F375E11-4FD6-4B89-9E2B-A76D48B51E00}
[Applications] :HKLM Update for Outlook 2007 Junk Email Filter (kb956080)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {96CC215F-3F22-4E1E-A101-F0041934A456}
[Applications] :HKLM Update for Office 2007 (KB946691)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
[Applications] :HKLM Security Update for Microsoft Office Word 2007 (KB950113)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AD72BABE-C733-4FCF-9674-4314466191B9}
[Applications] :HKLM Update for Office 2007 (KB934391)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5}
[Applications] :HKLM Update for Office 2007 (KB932080)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}
[Applications] :HKLM Security Update for Microsoft Office OneNote 2007 (KB950130)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F1B2401C-B610-4BF2-AA1C-52C55827A8F4}
[Applications] :HKLM Security Update for Microsoft Office Publisher 2007 (KB950114)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
[Applications] :HKLM Microsoft Office InfoPath MUI (English) 2007=MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Shared MUI (English) 2007=MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office OneNote MUI (English) 2007=MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Groove MUI (English) 2007=MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Groove Setup Metadata MUI (English) 2007=MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Shared Setup Metadata MUI (English) 2007=MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Access Setup Metadata MUI (English) 2007=MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
[Applications] :HKLM DVD-RAM Driver=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9D765FA6-F2BC-40AF-8145-50808F9BDF4E}\Setup.exe" DVD-RAM Driver
[Applications] :HKLM CD/DVD Drive Acoustic Silencer=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\Setup.exe" -l0x9
[Applications] :HKLM {B13A7C41581B411290FBC0395694E2A9}
[Applications] :HKLM Spybot - Search & Destroy="C:\Program Files\Spybot - Search & Destroy\unins000.exe"
[Applications] :HKLM DivX Web Player=C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
[Applications] :HKLM LG USB Modem driver=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C3ABE126-2BB2-4246-BFE1-6797679B3579}\Setup.exe" -l0x9 LG
[Applications] :HKLM Opera 10.00=MsiExec.exe /X{D069DDA6-5A6A-4DE0-A7CD-4CCB2D38F3D6}
[Applications] :HKLM Realtek AC'97 Audio=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE
[MD5]
[66893067C2FB0505F151D3FCB8EA92B5][1 78008 2D4D82129A1C8E28227DD266639FAB08E1283100 ]C:\PROGRA~1\ALWILS~1\AVAST4\ASHDISP.EXE
[786DD1892B553EFE5A004AC39775C851][1 2210608 4C4E1CD703408AA86B9574C47759185D8FAEDC9D ]C:\PROGRA~1\MICROS~2\OFFICE12\GRA8E1~1.DLL
[7FC19DA1DC70C78D2FBD7A1D10942051][1 40424 7E9FD24A12DD92AD600E8FEEC099ED0D94ADC95E ]C:\PROGRA~1\MICROS~2\OFFICE12\REFIEBAR.DLL
[BCEA9A5EEF52351E1632DD417D3E7308][1 250040 A05AFE2147B288184BAE0681C8761AC6C7067296 ]C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE
[58E57D723BD437049F74408016E1735D][1 147640 871B5DF71A29988FDAE4644605CA2DDAF8C52651 ]C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE
[B2203D1A09CAC8232780BFCF01A9B853][1 348344 3F6E75A2EFBE2823AC30E47649A8F8EFD77E6293 ]C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE
[E2323AD197689D607EBC52137B4DFB2E][1 16056 67B976F17EF066AF200E4B842433C24DCB409040 ]C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE
[024F4F23CCEE31A9994109D7A41AB78F][2 335872 ED67EFC30684BE92C6E99CA349E1C6B4C2CCB3BC ]C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPTAXX.EXE
[AA23BE16C2D229E19B1442BD37827276][0 1207440 9DF6E594F89CE4169F3CA1A4B8ED87F628E7889C ]C:\PROGRAM FILES\EXT2FSD\EXT2MGR.EXE
[5F79D9015FDAA4CE32B9CE606D9B054E][1 7310560 0AB0AB57A463F4654D86F6B68DABAA046579CC68 ]C:\PROGRAM FILES\GREATIS\REANIMATOR\REANIMATOR.EXE
[F921D875A1CBD69A6A462BA2514BC831][1 509328 5550A2D332C29211CFB0E4754751D77ED1F9C4AB ]C:\PROGRAM FILES\JAVA\JRE1.6.0_07\BIN\SSV.DLL
[74E6E96C6F0E2ECA4EDBB7F7A468F259][1 1694208 1B4729D1BD15E4D48422ECB5730959390C0BE1C7 ]C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE
[38D198A2DD54A67120040566A38103BA][1 31016 8741F10D2B9FEB500E744CE66D9277CFED209FE5 ]C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE12\GROOVEMONITOR.EXE
[9D0EEBDA40D5C33BC63FB8BB984F7681][1 101440 082A4165DD3CB38C0B4102C777FD25953BECD176 ]C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE12\ONENOTEM.EXE
[0412E0C52958392348D2EBC352D2315C][1 121640 1CEB1E8E41A72177BEDF0938821DF1A44C7147F4 ]C:\PROGRAM FILES\OPERA 10 BETA\OPERA.EXE
[ ][2 1830128 ]C:\PROGRAM FILES\SUPERANTISPYWARE\SUPERANTISPYWARE.EXE
[383B71DCB691CCAEEA445ACB9150DDD3][2 65536 1872295BDCE3A26C4117C9051DE4C0A3FD626A3E ]C:\PROGRAM FILES\TOSHIBA\TOSCDSPD\TOSCDSPD.EXE
[596AE98746CEA4C2B4A54266B26B433A][2 286720 D32530A11BAC632D1BC49B41FC8EFDFBB6E1776B ]C:\PROGRAM FILES\TVUPLAYER\LIBCURL.DLL
[2E07A92527C8AB899F5A42E1DF5DC283][2 1028096 0CA898564A26AAA8EFF2ACB8473F2BD21F0D77EE ]C:\PROGRAM FILES\TVUPLAYER\LIBEAY32.DLL
[41813F05F1BABC907640550D1C41B456][2 143360 DDD20043A06E36CAA7DCE8575CDEB52AC4D2CDF7 ]C:\PROGRAM FILES\TVUPLAYER\LIBEXPATW.DLL
[561FA2ABB31DFA8FAB762145F81667C2][2 499712 C8CCB04EEDAC821A13FAE314A2435192860C72B8 ]C:\PROGRAM FILES\TVUPLAYER\MSVCP71.DLL
[86F1895AE8C5E8B17D99ECE768A70732][0 348160 D5502A1D00787D68F548DDEEBBDE1ECA5E2B38CA ]C:\PROGRAM FILES\TVUPLAYER\MSVCR71.DLL
[4E6F6B4DA295CC2B3F89A408FFD9B586][1 2082104 6B73A51761D558077B2D96E4DE6371B589FEEBCD ]C:\PROGRAM FILES\TVUPLAYER\NPTVUAX.DLL
[2F53A197CF546A7CA5E4927B42013240][2 196608 BB054E32637D4A1DA10936774595C1B26E4F9FDD ]C:\PROGRAM FILES\TVUPLAYER\SSLEAY32.DLL
[80E41408F6D641DC1C0F5353A0CC8125][2 59904 6D957BA632DF5B06D49A901F2772DF4301610A2A ]C:\PROGRAM FILES\TVUPLAYER\ZLIB1.DLL
[F0543ACEEB5CD8821469958C9F3DD9A4][1 214528 E6168BF90E183ADB69946B43EAD5403A445DB35B ]C:\PROGRAM FILES\WINDOWS NT\ACCESSORIES\WORDPAD.EXE
[387804211A84DCA79A7238E4406A1F21][1 1523536 B63A7C626C241916CEBBB3D0BC23FE96748ED2F6 ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONFLICT.1\FP_AX_CAB_INSTALLER.EXE
[97BD6515465659FF8F3B7BE375B2EA87][1 1033216 972307A3EF93680AFDD03603DF20F2241047A934 ]C:\WINDOWS\EXPLORER.EXE
[D0CB8DEAF008D7CDC794EF6A37EC8134][0 317440 9470A45F3AA17399E9499BFC0B7B1BA6A5601C20 ]C:\WINDOWS\INF\UNREGMP2.EXE
[CEBED017C4965FC4407CCD986AE0A528][1 557568 971622280BC03DE467363A11D2FF23CCBF7C0F84 ]C:\WINDOWS\NETWORK DIAGNOSTIC\XPNETDIAG.EXE
[3BA608F5B5EB81B972E047FCC1813BFE][1 768512 2635D27AB6BDC893E028D2F11F6A908E5FEF0248 ]C:\WINDOWS\PCHEALTH\HELPCTR\BINARIES\HELPCTR.EXE
[4FD22142F54692463A7B98B7DE175573][1 158208 21D079909EEFFDA4B79DACE30EAFA0860BBD4C62 ]C:\WINDOWS\PCHEALTH\HELPCTR\BINARIES\MSCONFIG.EXE
[8827911A8C37E40C027CBFC88E69D967][1 38912 E36321C1FD4DB447327618D59771C896CEDDF135 ]C:\WINDOWS\PCHEALTH\HELPCTR\BINARIES\PCHSVC.DLL
[1AFF244CA134956C54474F4E2433E4CE][1 616960 BADA2E56BF23113BD7FA62FE2F159B514B66F02B ]C:\WINDOWS\SYSTEM32\ADVAPI32.DLL
[C7AE0FD3867DB0D42B03B73C18F3D671][1 17408 74BC069238103C8330097DC27773AE8F6BBD38C6 ]C:\WINDOWS\SYSTEM32\ALRSVC.DLL
[9C3C12975C97119412802B181FBEEFFE][1 167936 A9DA3430734D5FF3727734170A6D784192C0985C ]C:\WINDOWS\SYSTEM32\APPMGMTS.DLL
[7C8C9CCE2293EE4FBDBABD3601D55BD5][1 237568 D9446C101269E05D5E581A29A40C0CD847829D03 ]C:\WINDOWS\SYSTEM32\ATI2CQAG.DLL
[67B6AFAA1BB9A9BB4AB7383F0DEEE9CC][1 205824 CF59BAC9945ECE49FA27B002D30846A43E179D13 ]C:\WINDOWS\SYSTEM32\ATI2DVAG.DLL
[174C7EE63011017CA12E31CED195581D][1 397312 1407B9BDC31E070FD6A87EF51CF80C71A512D0CF ]C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
[490D5D1BABB1A51435F659800D4CA5E2][1 1057760 9600FE9415A193649F3E70F4C393F7D0E95C0DB7 ]C:\WINDOWS\SYSTEM32\ATI3D2AG.DLL
[DB66DB626E4882EBEF55F136F12C1829][1 42496 3CDCDD75F9BA63C8C8DF782A6D8F5E8D5423AF80 ]C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL
[CC306BF581446D5E443EAE5B3BB900F0][0 12288 7C5D1B89AA52DB0B8CF9A2E4E6A743BAF0668885 ]C:\WINDOWS\SYSTEM32\BOOTVID.DLL
[E3CFCCDDA4EDD1D0DC9168B2E18F27B8][1 77312 4268CCFAECF2F9ECCED07455E9EFC2934518E273 ]C:\WINDOWS\SYSTEM32\BROWSER.DLL
[B567A5985304A85A3CB237669E9BBE22][1 1022976 1AA7403E13D491C81C2862BFA50B264CF84BE5D2 ]C:\WINDOWS\SYSTEM32\BROWSEUI.DLL
[EFC958396A7A7EF7E6D4A52B97512E18][1 597504 B9E14B84A8D39E982D192906FC0C190EDC1CCCA0 ]C:\WINDOWS\SYSTEM32\CRYPT32.DLL
[CAD4AA32E7ECA00C23CC39C0EB833F9D][1 63488 0BE7CCFBAD17A5E6CF7F2C64678AB4DD55D42ED8 ]C:\WINDOWS\SYSTEM32\CRYPTNET.DLL
[10654F9DDCEA9C46CFB77554231BE73B][1 60416 FBD7431A79B49CA04B3FBDA3DDE43C3C81F02BC2 ]C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL
[587729679B4FE04CE06A5C61D6C56DCD][1 101888 2558BA6F0EBFF4C49DC1E26DC1277695F7F7B245 ]C:\WINDOWS\SYSTEM32\CSCDLL.DLL
[24232996A38C0B0CF151C2140AE29FC8][1 15360 B36D03B56A30187FFC6257459D632A4FAAC48AF2 ]C:\WINDOWS\SYSTEM32\CTFMON.EXE
[EF545E1A4B043DA4C84E230DD471C55F][1 111616 3E9D04CD277DDBE58E9FB399E1E910003B24F561 ]C:\WINDOWS\SYSTEM32\DHCPCSVC.DLL
[1639D9964C9E1B2ECCA95C8217D3E70D][1 23552 69BF0DE8E8A4A9A0AED7A0225E58E6976AED306C ]C:\WINDOWS\SYSTEM32\DMSERVER.DLL
[AAC8FFBFD61E784FA3BAC851D4A0BD5F][1 45568 06376BF5E2E0F04D797798C8959E72C8B024696D ]C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL
[009927DB8019C54477DABF6F9D795053][1 53248 5B8EA199B6C5405182668AECCE10D48413F28907 ]C:\WINDOWS\SYSTEM32\DRIVERS\1394BUS.SYS
[B36C2D3A46078F4A278386F5C974564D][1 26944 8489ED610309C769D8DF72ECC4D1FDECDC237F6B ]C:\WINDOWS\SYSTEM32\DRIVERS\AAVMKER4.SYS
[A10C7534F7223F4A73A948967D00E69B][1 187776 7A5E460607C236CEC5A142586BE3F48E13B796C0 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS
[9859C0F6936E723E4892D7141B1327D5][0 11648 F27A1EE007EB29DB95BEBEEB16F76322E2CDFDCE ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPIEC.SYS
[944CA435BFCFC82CC1ED9E3A7D731AA9][1 138368 8FCF511C1CE0080CF24009C04C90C77F1B740E75 ]C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
[FBBCB95F677CBAA924140B6EA2D9A97B][1 391424 173B3E8500271FADB04F323FF581E5CF31847832 ]C:\WINDOWS\SYSTEM32\DRIVERS\ALCXSENS.SYS
[4DD2C10FC6434FEDCB7C71FBDC1F107A][1 610988 519A2A9BDFEE9A44B6F06B113805F1A473508702 ]C:\WINDOWS\SYSTEM32\DRIVERS\ALCXWDM.SYS
[F0D692B0BFFB46E30EB3CEA168BBC49F][1 60800 A8182C83A9C26D009E451415C0C06DD87DF35C1F ]C:\WINDOWS\SYSTEM32\DRIVERS\ARP1394.SYS
[976E2AD5A62044629C2DE2CA8563722A][1 20560 0337C2093E203D432EC103186E4239740ED1AD1A ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWFSBLK.SYS
[C298F660FD9A91B0FB24C0AA26AE09AC][1 94416 134D8D6F6B19D0848557A8E26979C65808A77763 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWMON2.SYS
[D78653E357BFADB9A432AA1F66D50269][1 23152 485F046B83995D01205FBA568369BEB091910445 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWRDR.SYS
[17C4F06944B90944291CF7FB18D630C2][1 78416 7CC1D12C860B1429BB3EE92E229684E7E17CF0D3 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWSP.SYS
[C33510A1866806FD9C17F5D36B4DB6A6][1 42912 F29F0DB5C9C24115A631C1E942C3FFFC1A52E283 ]C:\WINDOWS\SYSTEM32\DRIVERS\ASWTDI.SYS
[CDFE4411A69C224BD1D11B2DA92DAC51][1 95360 A42FBFEB5A4D94118B483D7F18113AA8C329A052 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS
[0297AF4B89769159058B996C21218421][1 1309504 5A857C0D47DE8A00E653A4DB0CECA4188FF27998 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATHW.SYS
[4938AD74DE9088F70922FABF86912EEE][1 729088 91FC3433C890413DC3EEA58C8D28BE17EB38214A ]C:\WINDOWS\SYSTEM32\DRIVERS\ATI2MTAG.SYS
[10D5FB74EE18EA49C30DAAA203C0E0EC][1 13174 30F9C0A0B15B16AB50A99674C3D633A48262BBD4 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATISGKAF.SYS
[D9F724AA26C010A217C97606B160ED68][0 3072 E07EE000BC06B455534D8A517305C1208D30306B ]C:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
[EA22EDADF90C0ABA8319454B2A07B700][1 14080 73F814B3E6EBE8614C71E570766CE3021E7F5854 ]C:\WINDOWS\SYSTEM32\DRIVERS\BATTC.SYS
[DA1F27D85E0D1525F6621372E7B685E9][0 4224 E3D2DC5EB273FA701DE8AF13B60D6BAAC7629260 ]C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS
[9BDBDA21D3BA8E374FD06A405BE10215][2 54784 BC4D248372D2E2C80D654FF5A079F91DF2953A8B ]C:\WINDOWS\SYSTEM32\DRIVERS\CDAC11BA.EXE
[F76CB7259AA575CC53F3996BC6B68C18][2 12464 C72D8837BEEEAC783431FC09437DDC154253E4AE ]C:\WINDOWS\SYSTEM32\DRIVERS\CDAC15BA.SYS
[CD7D5152DF32B47F4E36F710B35AAE02][1 63744 C82F467B1246D94EFC13F0BCEDC1B0DCCA38BA0D ]C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[AF9C19B3100FE010496B1A27181FBF72][1 49536 D65C9CA8E0DC335C14B416C59F7F9C6E0CD9B161 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
[D86173B401470F06D9810F7962969DDF][1 49664 7DB47C871BD596CC74B94041843B7AF203E637AE ]C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS
[4266BE808F85826AEDF3C64C1E240203][1 14080 B98706641ED5C1B7BCB53BA4B3B280971B8C543C ]C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS
[DF1B1A24BF52D0EBC01ED4ECE8979F50][1 9344 8FD882F496712D85B4CB3F5CB08C1E742C82A8DF ]C:\WINDOWS\SYSTEM32\DRIVERS\COMPBATT.SYS
[00CA44E4534865F8A3B64F7C0984BFF0][1 36352 2F80B250CFE794144D4802CA0BEB45582B2BD242 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS
[F5E7B358A732D09F4BCF2824B88B9E28][1 153344 356AB9E531870653BAF602A46395133034293C87 ]C:\WINDOWS\SYSTEM32\DRIVERS\DMIO.SYS
[E9317282A63CA4D188C0DF5E09C6AC5F][0 5888 A768077067DB3DE64B1CEB98EC2DA42B7F184EBA ]C:\WINDOWS\SYSTEM32\DRIVERS\DMLOAD.SYS
[FF86422268DE771D571E123EB7092C6A][1 60288 610FD27153137BCF577F5C3DE1088F4064ABF128 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS
[FE97D0343ACFDEBDD578FC67CC91FA87][0 10496 731BD21A972DCA7F70ADBE1F93AE8200A17A7208 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS
[D3DAC8432110AAD0B02A58B4459AB835][1 71040 21CC55D1E2BAE42C9E00C3BC84BBA6BEEA25718B ]C:\WINDOWS\SYSTEM32\DRIVERS\DXG.SYS
[A73F5D6705B1D820C19B18782E176EFD][0 3328 6F9F663CDFBC2592EAB4C43FEE359EFFD37D60F2 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGTHK.SYS
[A1CCDCB2E1EB8A6C3AF879463BA2BE89][1 57216 D1BF1E171C392C4FF34A8995DEBD98156BC05FA0 ]C:\WINDOWS\SYSTEM32\DRIVERS\EMS7SK.SYS
[EC2A61FABD6F311D2A8596C280EFBA6F][1 36224 EF08660C6A4662DF7962E3D5E80163F45A665979 ]C:\WINDOWS\SYSTEM32\DRIVERS\ESD7SK.SYS
[328C7B07F4BE4826D33B826396305686][1 330496 8E7F641225BA2902AF5F65919B6C931195567F77 ]C:\WINDOWS\SYSTEM32\DRIVERS\ESM7SK.SYS
[E85F422F344AC08394832CAD85F892D6][2 651264 F8582E73B396CD8674B6BAFD595DB1CF48D52313 ]C:\WINDOWS\SYSTEM32\DRIVERS\EXT2FSD.SYS
[3117F595E9615E04F05A54FC15A03B20][1 143360 3D3AA7BDC75DB729072A4A3445186BA51E59FC7F ]C:\WINDOWS\SYSTEM32\DRIVERS\FASTFAT.SYS
[E153AB8A11DE5452BCF5AC7652DBF3ED][1 34944 C2195F139E7E3B00E3D1889BC4FE42399EB7F019 ]C:\WINDOWS\SYSTEM32\DRIVERS\FIPS.SYS
[3D234FB6D6EE875EB009864A299BEA29][1 128896 8F578BC47BCE0A36A2FF8C031D11E5C49477574A ]C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS
[3E1E2BD4F39B0E2B7DC4F4D2BCC2779A][0 7936 2DFF9AEBC441753BBDBF18856337ECAE85ABCF06 ]C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS
[6AC26732762483366C3969C9E4D2259D][0 125056 12B8DB7B23BF05C46BCE7640B0714BF682B7C2A4 ]C:\WINDOWS\SYSTEM32\DRIVERS\FTDISK.SYS
[AB8A6A87D9D7255C3884D5B9541A6E80][1 15464 DCD8CA6F82DB7938E30C0D4DD9A2A9F1253ED5D7 ]C:\WINDOWS\SYSTEM32\DRIVERS\GEARASPIWDM.SYS
[378055AB8DDA86228683C697C4E11685][1 36224 18A805ED83F5BBDE9931BB0BFA3C6729478D3BDE ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS
[5FFF41CD5108E9051D255C37825AF697][1 24960 5E2FB258C97D9987C41DE64A164B2E595BFF5B34 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS
[1DE6783B918F540149AA69943BDFEBA8][1 9600 2D889498F5DCB5E68FB50F9301B627620B24935D ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
[CB77BB47E67E84DEB17BA29632501730][1 262784 CE56AA6ED3EC8DA05727B367521A35A2694A08BC ]C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS
[5502B58EEF7486EE6F93F3F164DCB808][1 52736 4021843CEFB217B9BBB3147D549BF8970BFA9290 ]C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS
[F8AA320C6A0409C0380E5D8A99D76EC6][1 41856 6A3AE8A3711161216C136BA6B925CFE96DD15879 ]C:\WINDOWS\SYSTEM32\DRIVERS\IMAPI.SYS
[279FB78702454DFF2BB445F238C048D2][1 36096 E1364D30871C8F531A71DCA8F3D42402FF1109DD ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
[E2168CBC7098FFE963C6F23F472A3593][1 134912 9331F27968A522BCC3F024614457F7EE471B770F ]C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS
[64537AA5C003A6AFEEE1DF819062D0D1][1 74752 58772669B9FF69FA48EA77AF5C4268CDB0EE1F67 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPSEC.SYS
[86C204836FEEC22510D434982D4221B8][1 87424 AD57C4B7F639964776F4274A56E5543383BEE871 ]C:\WINDOWS\SYSTEM32\DRIVERS\IRDA.SYS
[50708DAA1B1CBB7D6AC1CF8F56A24410][1 11264 C62C3F441D1C120BEAB0F620609D037536EC320D ]C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS
[E504F706CCB699C2596E9A3DA1596E87][1 35840 A0A464E210D6D71C988DE52C8BC700475840808E ]C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS
[EBDEE8A2EE5393890A1ACEE971C4C246][1 24576 9F1CDB27A5C66C13F095E3AE9801813A8DCB9E2D ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
[BA5DEDA4D934E6288C2F66CAF58D2562][1 172416 2D63AA8FC5CAF69A667AEA9A3EACBB566D0D3A66 ]C:\WINDOWS\SYSTEM32\DRIVERS\KMIXER.SYS
[B9540E258F952650DE8DEC68719A5C97][1 140928 F45A6F20E384E3DDABC147A8B2A4B307A8F6B955 ]C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS
[EB7FFE87FD367EA8FCA0506F74A87FBB][1 92032 F15C171C0D200D4E0093C2CDB26AC176A390E63A ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS
[766A1D242F4390DDF1243084898A20C9][2 90416 7A25717CE4D80DAAE1FD52999444608C58FE9599 ]C:\WINDOWS\SYSTEM32\DRIVERS\MEIUDF.SYS
[4AE068242760A1FB6E1A44BF4E16AFA6][0 4224 932F7B2DCD9D42BFAA0F61B586628663BC3D0504 ]C:\WINDOWS\SYSTEM32\DRIVERS\MNMDD.SYS
[34E1F0031153E491910E12551400192C][1 23040 5B3B425C9B4686FCAE88C63414336FFE87D51761 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
[B1C303E17FB9D46E87A98E4BA6769685][1 12160 4D5C2048C9830E945B8B3642BA1237E8B72A87AF ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
[65653F3B4477F3C63E68A9659F85EE2E][1 42240 E3E531D2E2CB3017BF09092E5D1E3173025BB728 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS
[29414447EB5BDE2F8397DC965DBB3156][1 179584 62AB850629D64A18429DA562C7897AFCC03B6917 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
[025AF03CE51645C62F3B6907A7E2BE5E][1 453120 E2C52E83BC698A3FFC4AF230F871146E70FE2986 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
[561B3A4333CA2DBDBA28B5B956822519][1 19072 7A4CE956BFE7E9B29DFA9572A01DE8EC22EE00D6 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS
[C0F1D4A21DE5A415DF8170616703DEBF][1 35072 5E2D1CE0E40546959E695CE85A0062DD4B53013C ]C:\WINDOWS\SYSTEM32\DRIVERS\MSGPC.SYS
[469541F8BFD2B32659D5D463A6714BCE][1 15488 7DD23176C6A01A2AB35C3B97C5E10E8AD8C601AC ]C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
[82035E0F41C2DD05AE41D27FE6CF7DE1][1 107904 CED59A4E7BF3BC5F2D02EA731A3AF4C1F70B6840 ]C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS
[558635D3AF1C7546D26067D5D9B6959E][1 182912 DE08D6D587FE19CE3C61A1CF3773158DF212DBE8 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS
[08D43BBDACDF23F34D79E44ED35C1B4C][1 9600 1A8D79CF59C7B2697202B34F5A8EFBAED9997ED6 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
[34D6CD56409DA9A7ED573E1C90A308BF][1 12928 0224DF969FF7F27961CF5482DD7F34FCCF239915 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
[0B90E255A9490166AB368CD55A529893][1 91776 A12E8167D6A927EC3C1266D8624E66134F1021CD ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
[59FC3FB44D2669BC144FD87826BB571F][1 38016 69D2EF1146B97EC4C95DAF7D785E743B4B1E5B8B ]C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
[3A2ACA8FC1D7786902CA434998D7CEB4][1 34560 ABC50CF1FB62054A9B5EC427226B36A77C4BF980 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
[0C80E410CD2F47134407EE7DD19CC86B][1 162816 FC94040533C8E2BBA6F4A5BFF8A97294CC5E4C06 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
[5C5C53DB4FEF16CF87B9911C7E8C6FBC][1 61824 DB7D1ADD8FAA0E1324C96035EB49E0A42364DE52 ]C:\WINDOWS\SYSTEM32\DRIVERS\NIC1394.SYS
[4F601BCB8F64EA3AC0994F98FED03F8E][1 30848 5C19809C0BA8FAF28BD30FCA584A3C8394A6D2D1 ]C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS
[19A811EF5F1ED5C926A028CE107FF1AF][1 574464 D1EFC83A3CB762BC596C1866C163DDAE8382A1D5 ]C:\WINDOWS\SYSTEM32\DRIVERS\NTFS.SYS
[73C1E1F395918BC2C6DD67AF7591A3AD][0 2944 80EB8A76E5579B0136281E4DD4E2D4E56B249E4C ]C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS
[0951DB8E5823EA366B0E408D71E1BA2A][1 61056 B2E19B65186C5E751111CE153EA6095B5958674B ]C:\WINDOWS\SYSTEM32\DRIVERS\OHCI1394.SYS
[4BB30DDC53EBC76895E38694580CDFE9][0 3456 AE1BA00EBD074C99A29DFCEF179CD4C38E78F3B3 ]C:\WINDOWS\SYSTEM32\DRIVERS\OPRGHDLR.SYS
[29744EB4CE659DFE3B4122DEB45BC478][1 80128 50CFFA17AE4AC1F949464A4949CB644CE9E10A5E ]C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
[3334430C29DC338092F79C38EF7B4CD0][1 18688 72DF26D29B1C3B733B4EA0CD0CA944B4EF72C249 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS
[70E98B3FD8E963A6A46A2E6247E0BEA1][0 6784 B527518CFA5E61B3DB09179BEA2FA2E0D346828F ]C:\WINDOWS\SYSTEM32\DRIVERS\PARVDM.SYS
[8086D9979234B603AD5BC2F5D890B234][1 68224 9DA7C2EBEE0BB32A39A4D602F39F9D7401DE10CE ]C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS
[CCF5F451BB1A5A2A522A76E670000FF0][1 3328 DD1A94969B0B66FF72E39107E297BFFE23781CBD ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS
[520B91AB011456B940D9B05FC91108FF][1 25088 3F7E938CF8E02698448F7BBCB6CB024C46970584 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS
[82A087207DECEC8456FBE8537947D579][1 119936 6CE670C1F044B842C931F01E1115F46A83EEED56 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS
[5B0F00E43A7094C0B7E433CB42C79164][1 145792 E308D8ACA1355915AA2C446AF913FD98265B2708 ]C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS
[48671F327553DCF1D27F6197F622A668][1 69120 EE75EB78BE971D57F3621C5911567A850D8AAC14 ]C:\WINDOWS\SYSTEM32\DRIVERS\PSCHED.SYS
[80D317BD1C3DBC5D4FE7B1678C60CADD][0 17792 E8C148E71E870965CA452142E55AC89486779D56 ]C:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS
[FE0D99D6F31E4FAD8159F690D68DED9C][0 8832 AB474DB29198EA46F5E1C1D60B7AA215660CD563 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
[0207D26DDF796A193CCD9F83047BB5FC][1 19584 3473B9581DBA8E07C1D5A854AB087CFDCF348999 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASIRDA.SYS
[98FAEB4A4DCF812BA1C6FCA4AA3E115C][1 51328 2F256EEFE46DB4E2E43AD98F7226D1EE793B4AF6 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
[7306EEED8895454CBED4669BE9F79FAA][1 41472 9BAC3006849696F619EBD1BD337E78A147E27BBC ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
[1C5CC65AAC0783C344F16353E60B72AC][1 48384 BFA5EB8887F07784F382D23E629BBF5B3B00254E ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
[FDBB1D60066FCFBB7452FD8F9829B242][0 16512 9F85B3C30FF634D23E711CC694750D5D8AD14419 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPTI.SYS
[03B965B1CA47F6EF60EB5E51CB50E0AF][1 174592 47087CEA700728F213F533EAD4506FFE3131668E ]C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
[4912D5B403614CE99C28420F75353332][0 4224 DBDA3AC341EDFF01B7C00357B3F0FEAFEEF15470 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
[A2CAE2C60BC37E0751EF9DDA7CEAF4AD][1 196864 0AC844AA57078EC7817E0BDE54B14FAEEE46F4AC ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS
[B31B4588E4086D8D84ADBF9845C2402B][1 57472 A466A835E645163135D78DA365D05960FA2CBB19 ]C:\WINDOWS\SYSTEM32\DRIVERS\REDBOOK.SYS
[D507C1400284176573224903819FFDA3][1 20992 6E67F71552B2C92001DC2BC96D4B369D04CE3D5D ]C:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS
[D7FD0FF761E28AC0EA35AD71E0CD67E9][1 96256 40F88D937CEBA8CF73FFA1110E84191EF20DAD6F ]C:\WINDOWS\SYSTEM32\DRIVERS\SCSIPORT.SYS
[707647A1AA0EDB6CBEF61B0C75C28ED3][1 35913 28416A63617C9DED74D4FE3F155F54DF24760293 ]C:\WINDOWS\SYSTEM32\DRIVERS\SMCIRDA.SYS
[E41B6D037D6CD08461470AF04500DC24][1 73472 6CA05ADD925C75E6D021C38FA1515EBC677E3735 ]C:\WINDOWS\SYSTEM32\DRIVERS\SR.SYS
[EA554A3FFC3F536FE8320EB38F5E4843][1 332928 E06A1111EED9C4CC47E5251AB9E4688D0DD3D3A9 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS
[03C1BAE4766E2450219D20B993D6E046][1 4352 3D2F5AE5853A0C9EF47880BBC76FA29DBB39359C ]C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
[650AD082D46BAC0E64C9C0E0928492FD][1 60800 5E9D3EED0AD665910DED5F22A177C43BE68489D0 ]C:\WINDOWS\SYSTEM32\DRIVERS\SYSAUDIO.SYS
[2A5554FC5B1E04E131230E3CE035C3F9][1 360320 3E8B95F95E458625A8D7F08ACBB7BB11677C653C ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
[6891B74AB9A016064E82A419388D0601][1 18560 3283F39BC29628605BC7921948B36043A225CA0D ]C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS
[A540A99C281D933F3D69D55E48727F47][1 40840 84A3EE7D48971866A7A39B2008C647004D63CF52 ]C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
[12F70256F140CD7D52C58C7048FDE657][1 66176 98B136B3A4CDA015D866CA383A1D6CF29508852B ]C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS
[CED744117E91BDC0BEB810F7D8608183][1 364160 9C3B916B68618E7DA6BB4CA84BA91093C044B609 ]C:\WINDOWS\SYSTEM32\DRIVERS\UPDATE.SYS
[596EB39B50D6EBD9B734DC4AE0544693][1 4736 A2C5F1A19A7C72CD239D40171455A92170373842 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS
[15E993BA2F6946B2BFBBFCD30398621E][1 26624 90F0FA3A42FB39F7A9CB3F03BEC6B085D585A5B7 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
[C72F40947F92CEA56A8FB532EDF025F1][1 57600 3FE020755FBA2EA4CD6D16D333399B66AF4BB4A9 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
[BDFE799A8531BAD8A5A985821FE78760][1 17024 ECD39125D78D9EED9DB28FB1E822FCCE1CFC3BCC ]C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS
[2034CA78F9C6E787B4B76D81AC888351][1 142976 90693DA5737E84922DCB8B951E4075C1D1D9200F ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS
[8A60EDD72B4EA5AEA8202DAF0E427925][1 20992 0AA68F6FBE29E8359942D2CDEFE7E9B8527568AB ]C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
[D5A9D123F5ED7C9965A481BD20CF66D8][1 79744 F4989DB9A792D7E5EAD7B76A33D50B780C20ECE7 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS
[EE4660083DEBA849FF6C485D944B379B][1 52352 A739F0B4161D93180178EA9EF6AD20452B7E4FEA ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS
[984EF0B9788ABF89974CFED4BFBAACBC][1 34560 5F04813BD9D58FEBABF6311A689E1A3A6550459B ]C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
[EFD235CA22B57C81118C1AEB4798F1C1][1 82944 0D85C63D4BFFB7FF3043EB6C9686E829ADCE4C05 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDMAUD.SYS
[2F31B7F954BED437F2C75026C65CAF7B][0 4352 344471C09B0E5DD684FA2324ECAD05C79C19A031 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS
[F15FEAFFFBB3644CCC80C5DA584E6311][0 77568 56D724D68DA50F34A7C47A0C526CCFD831FE6C78 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS
[77C4901986FC7A83E853B300E80D234B][2 106496 45B5C186F9C2D71C28D860851D939DDCF65CD4B7 ]C:\WINDOWS\SYSTEM32\DVDRAMSV.EXE
[67DFF7BBBD0E80AAB7B3CF061448DB8A][1 23040 7B45CF63A5716DFC7E9AFBB3789D082F259343A6 ]C:\WINDOWS\SYSTEM32\ERSVC.DLL
[60D1A6342238378BFB7545C81EE3606C][1 253952 B8B2A9F7AB81B205850DD6E80F765B99F68132BC ]C:\WINDOWS\SYSTEM32\ES.DLL
[DFCE51FD96909D1B97D4A1A72D060D77][1 134400 C6381C25D8DBDD3635E6CA0ED68ECBA5AB850A62 ]C:\WINDOWS\SYSTEM32\HAL.DLL
[6601D5A71F09F889652EF47AEE3C9081][1 6058496 E660295D13A189BE59E030F7D91879B9BF4CA90C ]C:\WINDOWS\SYSTEM32\IEFRAME.DLL
[36CC8C01B5E50163037BEF56CB96DEFF][1 331264 2469E5DDCBA1AD946EF8CBF5C2B9C77FD12A8B0D ]C:\WINDOWS\SYSTEM32\IPNATHLP.DLL
[A02512C315C84F475BD89F847048B27B][1 27136 D570C326FC516DECF8F4975BAF04E6B8B510C8C1 ]C:\WINDOWS\SYSTEM32\IRMON.DLL
[945FBB881AE927A44DFD96440F2F4F44][0 7040 1D8782772F55374B378A9EBFE40EED87A71431F9 ]C:\WINDOWS\SYSTEM32\KDCOM.DLL
[B3EFF6D938C572E90A07B3D87A3C7657][1 13824 DC7D28E829098AED4703F0DC6F3ADE3CA8A8A8A2 ]C:\WINDOWS\SYSTEM32\LMHSVC.DLL
[84885F9B82F4D55C6146EBF6065D75D2][1 13312 6473B34C05BC63EB0D66CAD83355E6938CBE97E9 ]C:\WINDOWS\SYSTEM32\LSASS.EXE
[3046DB917E3CFA040632799DD9B14865][1 49152 C29DA52574771C2FABA55C82F36F94312806A297 ]C:\WINDOWS\SYSTEM32\MPRDIM.DLL
[95FD808E4AC22ABA025A7B3EAC0375D2][1 33792 1C31460E1498FABB39213ED5E8ACD356B2080E6F ]C:\WINDOWS\SYSTEM32\MSGSVC.DLL
[C51B4A5C05A5475708E3C81C7765B71D][0 27136 C61095F51DF41E64B3F034458958C918F0D6F8A8 ]C:\WINDOWS\SYSTEM32\MSPMSNSV.DLL
[097722F235A1FB698BF9234E01B52637][1 245248 380EC131FEE9EFA58104E4887635349FA1CD060B ]C:\WINDOWS\SYSTEM32\MSWSOCK.DLL
[36739B39267914BA69AD0610A0299732][1 197632 0F6CF927ABA87BBC2831E4297905794215085921 ]C:\WINDOWS\SYSTEM32\NETMAN.DLL
[BB5CBFFC096497506167BCE1D9690EF2][1 708096 9ACFF82A7DBF21D39548C92A6C9346283E3B624E ]C:\WINDOWS\SYSTEM32\NTDLL.DLL
[B62F29C00AC55A761B2E45877D85EA0F][1 435200 DEFAC7E1B55662978C5B3A10EEC5AD05334D8E31 ]C:\WINDOWS\SYSTEM32\NTMSSVC.DLL
[1220FAF071DEA8653EE21DE7DCDA8BFD][1 2136064 E51F9ABFEB9C619B1B560FDB847BEAF4BE9CC8B4 ]C:\WINDOWS\SYSTEM32\NTOSKRNL.EXE
[2C69EC7E5A311334D10DD95F338FCCEA][1 382464 95B543B69BE291B1FE592A7680D375C9E84F4397 ]C:\WINDOWS\SYSTEM32\QMGR.DLL
[7C86A098D2A2E5D0CC8EC60F90637E9E][2 155648 14BFA6222FF00798A6A8D41A2ED1C82C22396C81 ]C:\WINDOWS\SYSTEM32\RAMASST.EXE
[44DB7A9BDD2FB58747D123FBF1D35ADB][1 89088 A2EABA11FD20634D74BFF662F22014A12097ADFD ]C:\WINDOWS\SYSTEM32\RASAUTO.DLL
[49B5EED5FB89D39456A2F616CCD8BA5D][1 181248 26CC03DEC624E0175E7B15C655BD35FB02135DA6 ]C:\WINDOWS\SYSTEM32\RASMANS.DLL
[3151427DB7D87107D1C5BE58FAC53960][1 59904 C9AB66C2154BA77D7631274505281A2DEB9539F2 ]C:\WINDOWS\SYSTEM32\REGSVC.DLL
[CE94A2BD25E3E9F4D46A7373FF455C6D][1 397824 553520E37A78D752099D75FE68E4181DBF5C1735 ]C:\WINDOWS\SYSTEM32\RPCSS.DLL
[90491683ABD587C702B16F181AB0D99D][1 90112 006EE4F0606A5EF86C9BBE4C88A806869F93E57F ]C:\WINDOWS\SYSTEM32\RSVPSP.DLL
[92360854316611F6CC471612213C3D92][1 190976 27F194EA0E208122B62417A7BB8FDE545B611DFB ]C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL
[D636FA41E50671160D838EA2DACE3330][1 20992 E904554EF769BC711288BFA5E7B1B6F491D31171 ]C:\WINDOWS\SYSTEM32\SCLGNTFY.DLL
[B1E0CE09895376871746F36DC5773B4F][1 18944 FCDE0E898C81C00AEBC8C9BCE2FF8122F99A558D ]C:\WINDOWS\SYSTEM32\SECLOGON.DLL
[DFD9870CF39C791D86C4C209DA9FA919][1 38912 771695EF115CDC207FEAA327075BF92421477574 ]C:\WINDOWS\SYSTEM32\SENS.DLL
[C6CE6EEC82F187615D1002BB3BB50ED4][1 108032 B958912D139CB8DBFEEACDD38BA048C4F452174E ]C:\WINDOWS\SYSTEM32\SERVICES.EXE
[470B71DD0E0D166FA6C251C683663782][1 1494528 0C970C9D72C614FC781141333731999F910C74A6 ]C:\WINDOWS\SYSTEM32\SHDOCVW.DLL
[3BE4C2E84D99889685FE2B68E5FA2A9D][1 8460288 5E37F5C08BD7BC48CBCE3E0569C007348C7CD455 ]C:\WINDOWS\SYSTEM32\SHELL32.DLL
[6815DEF9B810AEFAC107EEAF72DA6F82][1 134656 A2CE4B738313C08653488C89CC84F36479DCFF7F ]C:\WINDOWS\SYSTEM32\SHSVCS.DLL
[BD7FB0957C716F1A60333AEE04DE2178][1 50688 9CA5784A8E745F083C0A90C25D3FDDC7554852AD ]C:\WINDOWS\SYSTEM32\SMSS.EXE
[DA81EC57ACD4CDC3D4C51CF3D409AF9F][1 57856 7047ED8BD91F3E57972483FEAA56E3499CD8C668 ]C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
[92BDF74F12D6CBEC43C94D4B7F804838][1 170496 E2734239A81EECA06B415F46CB255568EEE2ADCD ]C:\WINDOWS\SYSTEM32\SRSVC.DLL
[0CB3AF149A0BAC0836022CA307C7A0F8][1 96768 BF94F82BC9B58379A74757802B8EABBAF4ADA1CF ]C:\WINDOWS\SYSTEM32\SRVSVC.DLL
[4B8D61792F7175BED48859CC18CE4E38][1 71680 580EC10F7FED717E320EC379827EE16FB2160E1D ]C:\WINDOWS\SYSTEM32\SSDPSRV.DLL
[297101A925ECFFDCDF7F6341FFBB6C1A][1 121856 354AF0494D4C479CC65E040A90101C18E5A9CCCD ]C:\WINDOWS\SYSTEM32\STOBJECT.DLL
[8F078AE4ED187AAABC0A305146DE6716][1 14336 DA0FF4006859A7580ABA81F486F692DEAD2014FE ]C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[FB78839B36025AA286A51289ED28B73E][1 249344 C895D362D9A2E59EAC16F710130236CA8E6D1546 ]C:\WINDOWS\SYSTEM32\TAPISRV.DLL
[B60C877D16D9C880B952FDA04ADF16E6][1 295424 B93A2C8BDA208A76B033C67FA90128F5888890E5 ]C:\WINDOWS\SYSTEM32\TERMSRV.DLL
[6D9AC544B30F96C57F8206566C1FB6A1][1 90624 06252C04F3979D22FD0433CE41F18023156D991D ]C:\WINDOWS\SYSTEM32\TRKWKS.DLL
[ACA5D98663D879C6BAAFCEA7E2F1B710][1 185344 DE0F39F01E40ED688BB8D0DA0DC6C9EC8738BA5E ]C:\WINDOWS\SYSTEM32\UPNPHOST.DLL
[39B1FFB03C2296323832ACBAE50D2AFF][1 24576 E5AEDCBE25A97C89101F1F3860FF846E94D70445 ]C:\WINDOWS\SYSTEM32\USERINIT.EXE
[2B281958F5D0CF99ED626E3EF39D5C8D][1 174592 7BEC75C18158B27F3E1A4E0627B4B7EB7FBD5CBB ]C:\WINDOWS\SYSTEM32\W32TIME.DLL
[064D8581ADF77C25133E7D751D917D83][1 15872 5BB698F7140F530A1C08439F7C40002127DEF262 ]C:\WINDOWS\SYSTEM32\W3SSL.DLL
[C9BF2F12C4E6C12F8A85FBA4B6BC6208][1 17664 6E709186B06AC36D714A7AE62B6CA1A314F14A9F ]C:\WINDOWS\SYSTEM32\WATCHDOG.SYS
[F399242A80C4066FD155EFA4CF96658E][1 144896 E9FDE3EE2C3EB16570F70E93B2428E17702D9CC2 ]C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL
[5413D21D50DD7BF07AC7A3AAC6AB0C73][1 232960 96C9D88B3A0C80332FC23999921D5D4ED096E761 ]C:\WINDOWS\SYSTEM32\WEBCHECK.DLL
[265F534EF76832435AFBF771EC97176D][1 68096 4C69B29C24DAA053F101842C297F7F2D8B946136 ]C:\WINDOWS\SYSTEM32\WEBCLNT.DLL
[B69EBBB72EF2D15084C8B10BA4593AD6][1 236928 3FF14119310214D78436C546AA0A96F09F500D2D ]C:\WINDOWS\SYSTEM32\WGALOGON.DLL
[BBA0C62048EB5292AA5D5956ECB874BF][1 336768 4C02B0E1E9185E965D826A3B7A30D0E806BAC448 ]C:\WINDOWS\SYSTEM32\WGATRAY.EXE
[B6763F8534AC547CF1AF98AFDFF2EDC8][1 333824 79A0FE558D161E5769AB7BC858EAB4F34160460E ]C:\WINDOWS\SYSTEM32\WIASERVC.DLL
[E0F718290D19531FD10328EFB09808EC][2 1845248 A758777B7F1C2E12383B42438F60983968930882 ]C:\WINDOWS\SYSTEM32\WIN32K.SYS
[01C3346C241652F43AED8E2149881BFE][1 502272 A5396141CAB8B22D9D88B28A814089537DCE366A ]C:\WINDOWS\SYSTEM32\WINLOGON.EXE
[2C8FDB176F22629EA5342DB474FAC391][1 16896 ED6EB949D9CC790A7EC95B24690CAF390AEB25A9 ]C:\WINDOWS\SYSTEM32\WINRNR.DLL
[3CD291A2C4909088B3D1E98DED73D4B2][1 132096 3025768AF20F84B8861ECB948729EDE71A2FC402 ]C:\WINDOWS\SYSTEM32\WKSSVC.DLL
[A599E5E366C1408E48AA5D37882D4E3E][1 92672 226F5A88CC45AF1466EB13FE4B7D2427E6552CA5 ]C:\WINDOWS\SYSTEM32\WLNOTIFY.DLL
[045E228F71C31901084B64BE59093499][0 133632 10015763245B006775B192F6BA6EEC22EFAD4434 ]C:\WINDOWS\SYSTEM32\WPDSHSERVICEOBJ.DLL
[49911DD39E023BB6C45E4E436CFBD297][1 13824 BA51674E7049E2BACE2E2753C2D61E95550FC7FC ]C:\WINDOWS\SYSTEM32\WSCNTFY.EXE
[4D59DAA66C60858CDF4F67A900F42D4A][1 81408 8B69DCD36526AA4F0D07C76DA1B44E53981B6AAA ]C:\WINDOWS\SYSTEM32\WSCSVC.DLL
[13D72740963CBA12D9FF76A7F218BCD8][1 6656 4EEC3AA371324C8F60591E1837BEBF3CEBC54146 ]C:\WINDOWS\SYSTEM32\WUAUSERV.DLL
[05231C04253C5BC30B26CBAAE680ED89][0 55808 0AD4132A1D328454838B2AC94C6F7361ED9D5D3E ]C:\WINDOWS\SYSTEM32\WUDFSVC.DLL
[5A91E6FEAB9F901302FA7FF768C0120F][1 359936 D36500F6D211E9280541F7A7B60DE02EA015745B ]C:\WINDOWS\SYSTEM32\WZCSVC.DLL
[EEF46DAB68229A14DA3D8E73C99E2959][1 129536 82DE19BF2A5C673F28E6C135FB2F1E7E8B4E3319 ]C:\WINDOWS\SYSTEM32\XMLPROV.DLL
[ ][0 -1 ]C:\WINDOWS\WIN32K.SYS:1
[ ][0 -1 ]C:\WINDOWS\WIN32K.SYS:2

Edited by tambay, 08 August 2009 - 02:06 AM.


BC AdBot (Login to Remove)

 


#2 erksage

erksage

  • Members
  • 100 posts
  • OFFLINE
  •  
  • Local time:06:08 AM

Posted 08 August 2009 - 02:14 AM

I'm having all these symptoms, and as a member, I can help to right? In my topic boopme gave me directions of a program called Dr. Web Cure it, it found nothing for me, but you could always try it to! But read the directions that boopme gave, first!

#3 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,176 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:08:08 AM

Posted 10 August 2009 - 09:14 AM

Hello,yes let's try running these
Before we start fixing anything you should print out these instructions or copy them to a NotePad file so they will be accessible. Some steps will require you to disconnect from the Internet or use Safe Mode and you will not have access to this page.

Please download Dr.Web CureIt and save it to your desktop. DO NOT perform a scan yet.
alternate download link
Note: The file will be randomly named (i.e. 5mkuvc4z.exe).

Reboot your computer in "Safe Mode" using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode".

Scan with Dr.Web CureIt as follows:
  • Double-click on the randomly named file to open the program and click Start. (There is no need to update if you just downloaded the most current version
  • Read the Virus check by DrWeb scanner prompt and click Ok where asked to Start scan now? Allow the setup.exe to load if asked by any of your security programs.
  • The Express scan will automatically begin.
    (This is a short scan of files currently running in memory, boot sectors, and targeted folders).
  • If prompted to dowload the Full version Free Trial, ignore and click the X to close the window.
  • If an infected object is found, you will be prompted to move anything that cannot be cured. Click Yes to All. (This will move any detected files to the C:\Documents and Settings\userprofile\DoctorWeb\Quarantine folder if they can't be cured)
  • After the Express Scan is finished, put a check next to Complete scan to scan all local disks and removable media.
  • In the top menu, click Settings > Change settings, and uncheck "Heuristic analysis" under the "Scanning" tab, then click Apply, Ok.
  • Back at the main window, click the green arrow "Start Scanning" button on the right under the Dr.Web logo.
  • Please be patient as this scan could take a long time to complete.
  • When the scan has finished, a message will be displayed at the bottom indicating if any viruses were found.
  • Click Select All, then choose Cure > Move incurable.
  • In the top menu, click file and choose save report list.
  • Save the DrWeb.csv report to your desktop.
  • Exit Dr.Web Cureit when done.
  • Important! Reboot your computer because it could be possible that files in use will be moved/deleted during reboot.
  • After reboot, post the contents of the log from Dr.Web in your next reply. (You can use Notepad to open the DrWeb.cvs report)


Now try Rootrepeal again.
We Need to check for Rootkits with RootRepeal
  • Download RootRepeal from the following location and save it to your desktop.
  • Extract RootRepeal.exe from the archive.
  • Open Posted Image on your desktop.
  • Click the Posted Image tab.
  • Click the Posted Image button.
  • Check all seven boxes: Posted Image
  • Push Ok
  • Check the box for your main system drive (Usually C:), and press Ok.
  • Allow RootRepeal to run a scan of your system. This may take some time.
  • Once the scan completes, push the Posted Image button. Save the log to your desktop, using a distinctive name, such as RootRepeal.txt. Include this report in your next reply, please.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users