Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Soc team "took" my pc claiming that it has been "infected"


  • This topic is locked This topic is locked
4 replies to this topic

#1 MikeOkand

MikeOkand

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:11:16 AM

Posted 22 January 2010 - 10:23 AM

Since that I can not run anymore tests on my work pc, it has been taken away for deconstruction I am only able to provide you the transcript below. I have been using:
- HijackThis
- UnhackMe
- RootKit revealer
- Anti-Malware bytes

Information that might provide "you" with information that might identify the company that I work for has been removed. Also, have been running Wireshark sniffing all traffic from my pc (in a lab envronment), have not "washed" those logs yet, but I can do that if needed. The only information that I have got is that "it is Trojan, that records keystrokes, passwd and send the information via other infected pc`s - on our network - by FTP to a special country that shall remain nameless for now. Since that I, not only for personal reasons but also for professional reasons need to know what, if any, infected my pc I turn to you "guys" for help! I need to mention that the pc has never been taken outside the company network, nor has it any wlan access whatsoever.

First Log, taken from: RootKit revealer (sysinternals)

HKLM\SECURITY\Policy\Secrets\SAC* 11/23/2007 1:02 PM 0 bytes Key name contains embedded nulls (*)
HKLM\SECURITY\Policy\Secrets\SAI* 11/23/2007 1:02 PM 0 bytes Key name contains embedded nulls (*)
C:\Documents and Settings\XXXXXXXX\Local Settings\Temp\~DF4DAB.tmp 1/19/2010 9:02 AM 16.00 KB Visible in Windows API, MFT, but not in directory index.
C:\Documents and Settings\XXXXXXXXX\Local Settings\Temp\~DF4DB3.tmp 1/19/2010 9:02 AM 512 bytes Visible in Windows API, MFT, but not in directory index.

Second a transcript from Unhackme (a looooong list):

SpyHolesList Version:5.1 Build:6.7.6.67
18.01.2010 12:31:48
WinDir=C:\WINDOWS
Startup=C:\Documents and Settings\XXXXXXXX\Start Menu\Programs\Startup\
Common Startup=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Microsoft Windows XP Service Pack 2 (5.1.2600)
Internet Explorer 7.0.5730.13
[Internet Explorer]
[Default Home Page] :HKLM Default_Page_URL=http://go.microsoft.com/fwlink/?LinkId=69157
[Current Home Page] :HKCU Start Page=http://www.sportnik.com/XXXXXXX - Note: my daughters teamsite
[Current Home Page] :HKCU HOMEOldSP=""
[Search URL Template] :HKLM 1=www.%s.com
[Search URL Template] :HKLM 2=www.%s.org
[Search URL Template] :HKLM 3=www.%s.net
[Search URL Template] :HKLM 4=www.%s.edu
[All Users Search] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
[All Users Search] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54896
[Current Users Search] :HKCU Search Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
[Current Users Search] :HKCU Search Bar=""
[IE Local Blank Page] :HKCU Local Page=C:\WINDOWS\system32\blank.htm
[IE Local Blank Page] :HKLM Local Page=%SystemRoot%\system32\blank.htm
[Browser Helper Objects] {18DF081C-E8AD-4283-A596-FA578C2EBDC3}=C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
[Browser Helper Objects] {72853161-30C5-4D22-B7F9-0BBC1D38A37E}=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
[Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\Program Files\Java\jre6\bin\ssv.dll
[Browser Helper Objects] {7DB2D5A0-7241-4E79-B68D-6309F01C5231}=C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll
[Browser Helper Objects] {B164E929-A1B6-4A06-B104-2CD0E90A88FF}=C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll
[Browser Helper Objects] {DBC80044-A445-435b-BC74-9C25C1C588A9}=C:\Program Files\Java\jre6\bin\jp2ssv.dll
[Browser Helper Objects] {E7E6F031-17CE-4C07-BC86-EABFE594F69C}=C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
[Auto Search URL] :HKCU provider=""
[Auto Search URL] :HKCU "Default Value"=""
[Search Assistant] :HKCU SearchAssistant=""
[Search Assistant] :HKLM SearchAssistant=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
[Search Assistant] :HKCU CustomizeSearch=""
[Search Assistant] :HKLM CustomizeSearch=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
[CustomizeSearch] :HKLM CustomizeSearch=""
[URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\WINDOWS\system32\ieframe.dll
[Default Prefix] :HKLM "Default Value"=http://
[URL Default Prefixes] :HKLM ftp=ftp://
[URL Default Prefixes] :HKLM gopher=gopher://
[URL Default Prefixes] :HKLM home=http://
[URL Default Prefixes] :HKLM mosaic=http://
[URL Default Prefixes] :HKLM www=http://
[Safe Sites] :HKLM ie.search.msn.com=http://ie.search.msn.com/*
[AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM OfflineInformation=res://ieframe.dll/offcancl.htm
[AboutURLs] :HKLM Home=270
[AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm
[AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm
[AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm
[AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm
[AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm
[AboutURLs] :HKLM Tabs=res://ieframe.dll/tabswelcome.htm
[User Style Sheet] :HKCU User Stylesheet=""
[User Style Sheet] :HKUS User Stylesheet=""
[User Style Sheet] :HKCU Use My Stylesheet=0
[User Style Sheet] :HKUS Use My Stylesheet=0
[Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=1
[Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1
[Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3
[Links Toolbar] :HKCU LinksFolderName=Links
[Toolbars] :HKLM {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064}=C:\Program Files\McAfee\SiteAdvisor Enterprise\McIEPlg.dll
[Explorer Bars] :HKLM {4D5C8C25-D075-11d0-B416-00C04FB90376}=%SystemRoot%\system32\shdocvw.dll
[IE Extensions - All Users] :HKLM {2670000A-7350-4f3c-8081-5663EE0C6C49}=%SystemRoot%\system32\shdocvw.dll
[IE Extensions - All Users] :HKLM {92780B25-18CC-41C8-B9BE-3C9C571A8263}=C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
[Context menu items] :HKCU E&xport to Microsoft Excel=res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
[Active Desktop Components] :HKCU 0=About:Home
[Proxy] :HKCU ProxyServer=""
[Proxy] :HKCU ProxyEnable=0
[Network Settings]
[Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc
[Hosts File Contents] :HKLM 127.0.0.1 localhost
[Domain Name] :HKLM Domain=XXXXXXXXXXXX
[Name Server] {19A60EE5-7CE2-4F47-9AE1-F9F98A6EB555}=XX.XX.XX.X XX.XX.XX.X
[WinSock2 Components] :HKLM mswsock.dll=%SystemRoot%\System32\mswsock.dll
[WinSock2 Components] :HKLM winrnr.dll=%SystemRoot%\System32\winrnr.dll
[WinSock2 Components] :HKLM rsvpsp.dll=%SystemRoot%\system32\rsvpsp.dll
[Software Components]
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\DownloadManagerV2.ocx=C:\WINDOWS\Downloaded Program Files\DownloadManagerV2.ocx
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\ieatgpc.dll=C:\WINDOWS\Downloaded Program Files\ieatgpc.dll
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\ikbutton.ocx=C:\WINDOWS\Downloaded Program Files\ikbutton.ocx
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\ikmenu.ocx=C:\WINDOWS\Downloaded Program Files\ikmenu.ocx
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\JuniperExt.exe=C:\WINDOWS\Downloaded Program Files\JuniperExt.exe
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\JuniperSetupClient.ocx=C:\WINDOWS\Downloaded Program Files\JuniperSetupClient.ocx
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\Manager.exe=C:\WINDOWS\Downloaded Program Files\Manager.exe
[Internet Components] :HKLM C:\WINDOWS\Downloaded Program Files\SWToolset.exe=C:\WINDOWS\Downloaded Program Files\SWToolset.exe
[Internet Components] :HKLM C:\WINDOWS\system32\muweb.dll=C:\WINDOWS\system32\muweb.dll
[Internet Components] :HKLM C:\WINDOWS\system32\STCWeb.ocx=C:\WINDOWS\system32\STCWeb.ocx
[Internet Components] :HKLM C:\WINDOWS\system32\wuweb.dll=C:\WINDOWS\system32\wuweb.dll
[Windows Shell]
[Display Scrap's Extensions] :HKLM NeverShowExt=""
[ScreenSaver] :HKCU SCRNSAVE.EXE=C:\WINDOWS\system32\logon.scr
[System.ini] shell=Explorer.exe
[User Shell] :HKCU shell=""
[Main File Extensions] :HKLM .exe="%1" %*
[Main File Extensions] :HKLM .com="%1" %*
[Main File Extensions] :HKLM .pif="%1" %*
[Main File Extensions] :HKLM .bat="%1" %*
[Main File Extensions] :HKLM .cmd="%1" %*
[Main File Extensions] :HKLM .scr="%1" /S
[Main File Extensions] :HKLM .txt=%SystemRoot%\system32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .reg=regedit.exe "%1"
[Main File Extensions] :HKLM .inf=%SystemRoot%\System32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .ini=%SystemRoot%\System32\NOTEPAD.EXE %1
[Main File Extensions] :HKLM .js=%SystemRoot%\System32\WScript.exe "%1" %*
[Main File Extensions] :HKLM .vbs=%SystemRoot%\System32\WScript.exe "%1" %*
[Main File Extensions] :HKLM .vbe=%SystemRoot%\System32\WScript.exe "%1" %*
[Main File Extensions] :HKLM .msc=%SystemRoot%\system32\mmc.exe "%1" %*
[Main File Extensions] :HKLM .jpg=rundll32.exe C:\WINDOWS\system32\shimgvw.dll,ImageView_Fullscreen %1
[Main File Extensions] :HKLM .jpeg=rundll32.exe C:\WINDOWS\system32\shimgvw.dll,ImageView_Fullscreen %1
[Shell Execute Hooks] :HKLM {AEB6717E-7E19-11d0-97EE-00C04FD91972}=shell32.dll
[Shell Execute Hooks] :HKLM {B5A7F190-DDA6-4420-B3BA-52453494E6CD}=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
[UserInit Value] :HKLM UserInit=C:\WINDOWS\system32\userinit.exe,
[Winlogon Notification] :HKLM crypt32chain=crypt32.dll
[Winlogon Notification] :HKLM cryptnet=cryptnet.dll
[Winlogon Notification] :HKLM cscdll=cscdll.dll
[Winlogon Notification] :HKLM igfxcui=igfxdev.dll
[Winlogon Notification] :HKLM ScCertProp=wlnotify.dll
[Winlogon Notification] :HKLM Schedule=wlnotify.dll
[Winlogon Notification] :HKLM sclgntfy=sclgntfy.dll
[Winlogon Notification] :HKLM SensLogn=WlNotify.dll
[Winlogon Notification] :HKLM termsrv=wlnotify.dll
[Winlogon Notification] :HKLM WgaLogon=WgaLogon.dll
[Winlogon Notification] :HKLM wlballoon=wlnotify.dll
[Shell Services DelayLoad] :HKLM PostBootReminder=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM CDBurn=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM WebCheck=C:\WINDOWS\system32\webcheck.dll
[Shell Services DelayLoad] :HKLM SysTray=C:\WINDOWS\system32\stobject.dll
[Shell Services DelayLoad] :HKLM WPDShServiceObj=C:\WINDOWS\system32\WPDShServiceObj.dll
[All Users - Scripts at Logon] 0\0=\\XXXXXXXXXXX\SysVol\XXXXXXXX\Policies\{EBAE3ED3-F6C2-4433-9303-03339BC5FC04}\Machine\AClient.bat
[All Users - Scripts at Logon] 0\1=\\XXXXXXXXX\SysVol\XXXXXXXX\Policies\{EBAE3ED3-F6C2-4433-9303-03339BC5FC04}\Machine\NSClient.bat
[All Users - Scripts at Shutdown] 0\0=\\XXXXXXX\SysVol\XXXXXXXXX\Policies\{EBAE3ED3-F6C2-4433-9303-03339BC5FC04}\Machine\dns.cmd
[All Users - Scripts at Shutdown] 0\1=\\XXXXXXXXX\SysVol\XXXXXXXX\Policies\{EBAE3ED3-F6C2-4433-9303-03339BC5FC04}\Machine\RD_denied.cmd
[All Users - Scripts at Shutdown] 0\2=\\XXXXXXXXXX\SysVol\XXXXXXXXXX\Policies\{EBAE3ED3-F6C2-4433-9303-03339BC5FC04}\Machine\DisAdmSha.cmd
[All Users - Scripts at Shutdown] 0\3=\\XXXXXXXXXX\SysVol\XXXXXXXXXX\Policies\{EBAE3ED3-F6C2-4433-9303-03339BC5FC04}\Machine\Disable_NIC_Power_Saving.bat
[App Paths] :HKLM AcroRd32.exe=C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe
[App Paths] :HKLM AgentRansack.EXE=C:\Program Files\Mythicsoft\Agent Ransack\AgentRansack.EXE
[App Paths] :HKLM aruser.exe=C:\Program Files\AR System\User\aruser.exe
[App Paths] :HKLM cluadmin.exe=C:\WINDOWS\cluster\cluadmin.exe
[App Paths] :HKLM cmak.exe=C:\Program Files\CMAK\cmak.exe
[App Paths] :HKLM cmmgr32.exe=C:\WINDOWS\system32\
[App Paths] :HKLM communicator.exe=C:\Program Files\Microsoft Office Communicator\communicator.exe
[App Paths] :HKLM CONF.EXE=C:\Program Files\NetMeeting\conf.exe
[App Paths] :HKLM dexplore.exe="C:\Program Files\Common Files\Microsoft Shared\Help 8\dexplore.exe"
[App Paths] :HKLM dialer.exe=C:\Program Files\Windows NT\dialer.exe
[App Paths] :HKLM EModelViewer.exe=C:\Program Files\Common Files\eDrawings2009\EModelViewer.exe
[App Paths] :HKLM excel.exe=C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE
[App Paths] :HKLM firefox.exe=C:\Program Files\Mozilla Firefox\firefox.exe
[App Paths] :HKLM GROOVE.EXE=C:\PROGRA~1\MICROS~2\Office12\GROOVE.EXE
[App Paths] :HKLM HELPCTR.EXE=C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpCtr.exe
[App Paths] :HKLM hypertrm.exe="C:\Program Files\Windows NT\hypertrm.exe"
[App Paths] :HKLM ICWCONN1.EXE="C:\Program Files\Internet Explorer\Connection Wizard\ICWCONN1.EXE"
[App Paths] :HKLM ICWCONN2.EXE="C:\Program Files\Internet Explorer\Connection Wizard\ICWCONN2.EXE"
[App Paths] :HKLM IEXPLORE.EXE=C:\Program Files\Internet Explorer\IEXPLORE.EXE
[App Paths] :HKLM INETWIZ.EXE="C:\Program Files\Internet Explorer\Connection Wizard\INETWIZ.EXE"
[App Paths] :HKLM infopath.exe=C:\PROGRA~1\MICROS~2\Office12\INFOPATH.EXE
[App Paths] :HKLM install.exe
[App Paths] :HKLM ipsecdialer.exe=C:\Program Files\Cisco Systems\VPN Client\ipsecdialer.exe
[App Paths] :HKLM ISIGNUP.EXE="C:\Program Files\Internet Explorer\Connection Wizard\ISIGNUP.EXE"
[App Paths] :HKLM javaws.exe=C:\Program Files\Java\jre6\bin\javaws.exe
[App Paths] :HKLM mbam.exe=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
[App Paths] :HKLM migwiz.exe=%SystemRoot%\system32\usmt\migwiz.exe
[App Paths] :HKLM moviemk.exe=C:\Program Files\Movie Maker\moviemk.exe
[App Paths] :HKLM mplayer2.exe="C:\Program Files\Windows Media Player\mplayer2.exe"
[App Paths] :HKLM MSACCESS.EXE=C:\PROGRA~1\MICROS~2\Office12\MSACCESS.EXE
[App Paths] :HKLM MSCONFIG.EXE=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe
[App Paths] :HKLM msimn.exe=%ProgramFiles%\Outlook Express\msimn.exe
[App Paths] :HKLM msinfo32.exe=C:\Program Files\Common Files\Microsoft Shared\MSInfo\MSInfo32.exe
[App Paths] :HKLM MsoHtmEd.exe
[App Paths] :HKLM msoxmled.exe=C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLED.EXE
[App Paths] :HKLM MSPUB.EXE=C:\PROGRA~1\MICROS~2\Office12\MSPUB.EXE
[App Paths] :HKLM mspview.exe=C:\PROGRA~1\COMMON~1\MICROS~1\MODI\12.0\MSPVIEW.EXE
[App Paths] :HKLM ois.exe=C:\PROGRA~1\MICROS~2\Office12\OIS.EXE
[App Paths] :HKLM OneNote.exe=C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE
[App Paths] :HKLM OUTLOOK.EXE=C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE
[App Paths] :HKLM pbrush.exe=%SystemRoot%\system32\mspaint.exe
[App Paths] :HKLM pinball.exe=C:\Program Files\Windows NT\Pinball\pinball.exe
[App Paths] :HKLM powerpnt.exe=C:\PROGRA~1\MICROS~2\Office12\POWERPNT.EXE
[App Paths] :HKLM setup.exe
[App Paths] :HKLM smax4pnp.exe=C:\Program Files\Analog Devices\Core\smax4pnp.exe
[App Paths] :HKLM SMaxCore=C:\Program Files\Analog Devices\Core
[App Paths] :HKLM smwdmif.dll=C:\Program Files\Analog Devices\Core\smwdmif.dll
[App Paths] :HKLM SoundMAX=C:\Program Files\Analog Devices\SoundMAX
[App Paths] :HKLM table30.exe
[App Paths] :HKLM visio.exe=C:\PROGRA~1\MICROS~2\Office12\VISIO.EXE
[App Paths] :HKLM vsta.exe=C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\vsta.exe
[App Paths] :HKLM wab.exe=%ProgramFiles%\Outlook Express\wab.exe
[App Paths] :HKLM wabmig.exe=%ProgramFiles%\Outlook Express\wabmig.exe
[App Paths] :HKLM winnt32.exe
[App Paths] :HKLM WINPROJ.EXE=C:\PROGRA~1\MICROS~2\OFFICE11\WINPROJ.EXE
[App Paths] :HKLM WinRAR.exe=C:\Program Files\WinRAR\WinRAR.exe
[App Paths] :HKLM Winword.exe=C:\PROGRA~1\MICROS~2\Office12\WINWORD.EXE
[App Paths] :HKLM wireshark.exe=C:\Program Files\Wireshark\wireshark.exe
[App Paths] :HKLM wmplayer.exe=C:\Program Files\Windows Media Player\wmplayer.exe
[App Paths] :HKLM WORDPAD.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"
[App Paths] :HKLM WRITE.EXE="%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"
[App Paths] :HKLM XPSViewer.exe="c:\WINDOWS\system32\XPSViewer\XPSViewer.exe"
[Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0
[Disable Registry Tools] :HKCU DisableRegistryTools =0
[SharedTaskScheduler] :HKLM {438755C2-A8BA-11D1-B96B-00A0C90312E1}=%SystemRoot%\system32\browseui.dll
[SharedTaskScheduler] :HKLM {8C7461EF-2B13-11d2-BE35-3078302C2030}=%SystemRoot%\system32\browseui.dll
[Kernel Auto Boot]
[ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=C:\WINDOWS\inf\unregmp2.exe /ShowWMP
[ActiveSetup] >{881dd1c5-3dcf-431b-b061-f3f88e8be88a}=%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE
[Svchost DLLs] :HKLM HTTPFilter=%SystemRoot%\System32\w3ssl.dll
[Svchost DLLs] :HKLM Alerter=%SystemRoot%\system32\alrsvc.dll
[Svchost DLLs] :HKLM WebClient=%SystemRoot%\System32\webclnt.dll
[Svchost DLLs] :HKLM LmHosts=%SystemRoot%\System32\lmhsvc.dll
[Svchost DLLs] :HKLM RemoteRegistry=%SystemRoot%\system32\regsvc.dll
[Svchost DLLs] :HKLM upnphost=%SystemRoot%\System32\upnphost.dll
[Svchost DLLs] :HKLM SSDPSRV=%SystemRoot%\System32\ssdpsrv.dll
[Svchost DLLs] :HKLM DnsCache=%SystemRoot%\System32\dnsrslvr.dll
[Svchost DLLs] :HKLM 6to4
[Svchost DLLs] :HKLM AppMgmt=%SystemRoot%\System32\appmgmts.dll
[Svchost DLLs] :HKLM AudioSrv=%SystemRoot%\System32\audiosrv.dll
[Svchost DLLs] :HKLM Browser=%SystemRoot%\System32\browser.dll
[Svchost DLLs] :HKLM CryptSvc=%SystemRoot%\System32\cryptsvc.dll
[Svchost DLLs] :HKLM DMServer=%SystemRoot%\System32\dmserver.dll
[Svchost DLLs] :HKLM DHCP=%SystemRoot%\System32\dhcpcsvc.dll
[Svchost DLLs] :HKLM ERSvc=%SystemRoot%\System32\ersvc.dll
[Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\system32\es.dll
[Svchost DLLs] :HKLM FastUserSwitchingCompatibility=%SystemRoot%\System32\shsvcs.dll
[Svchost DLLs] :HKLM HidServ=%SystemRoot%\System32\hidserv.dll
[Svchost DLLs] :HKLM Ias
[Svchost DLLs] :HKLM Iprip
[Svchost DLLs] :HKLM Irmon
[Svchost DLLs] :HKLM LanmanServer=%SystemRoot%\System32\srvsvc.dll
[Svchost DLLs] :HKLM LanmanWorkstation=%SystemRoot%\System32\wkssvc.dll
[Svchost DLLs] :HKLM Messenger=%SystemRoot%\System32\msgsvc.dll
[Svchost DLLs] :HKLM Netman=%SystemRoot%\System32\netman.dll
[Svchost DLLs] :HKLM Nla=%SystemRoot%\System32\mswsock.dll
[Svchost DLLs] :HKLM Ntmssvc=%SystemRoot%\system32\ntmssvc.dll
[Svchost DLLs] :HKLM NWCWorkstation
[Svchost DLLs] :HKLM Nwsapagent
[Svchost DLLs] :HKLM Rasauto=%SystemRoot%\System32\rasauto.dll
[Svchost DLLs] :HKLM Rasman=%SystemRoot%\System32\rasmans.dll
[Svchost DLLs] :HKLM Remoteaccess=%SystemRoot%\System32\mprdim.dll
[Svchost DLLs] :HKLM Schedule=%SystemRoot%\system32\schedsvc.dll
[Svchost DLLs] :HKLM Seclogon=%SystemRoot%\System32\seclogon.dll
[Svchost DLLs] :HKLM SENS=%SystemRoot%\system32\sens.dll
[Svchost DLLs] :HKLM Sharedaccess=%SystemRoot%\System32\ipnathlp.dll
[Svchost DLLs] :HKLM SRService=C:\WINDOWS\system32\srsvc.dll
[Svchost DLLs] :HKLM Tapisrv=%SystemRoot%\System32\tapisrv.dll
[Svchost DLLs] :HKLM Themes=%SystemRoot%\System32\shsvcs.dll
[Svchost DLLs] :HKLM TrkWks=%SystemRoot%\system32\trkwks.dll
[Svchost DLLs] :HKLM W32Time=C:\WINDOWS\system32\w32time.dll
[Svchost DLLs] :HKLM WZCSVC=%SystemRoot%\System32\wzcsvc.dll
[Svchost DLLs] :HKLM Wmi=%SystemRoot%\System32\advapi32.dll
[Svchost DLLs] :HKLM WmdmPmSp
[Svchost DLLs] :HKLM winmgmt=%SystemRoot%\system32\wbem\WMIsvc.dll
[Svchost DLLs] :HKLM wscsvc=%SYSTEMROOT%\system32\wscsvc.dll
[Svchost DLLs] :HKLM xmlprov=%SystemRoot%\System32\xmlprov.dll
[Svchost DLLs] :HKLM BITS=C:\WINDOWS\system32\qmgr.dll
[Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\system32\wuauserv.dll
[Svchost DLLs] :HKLM ShellHWDetection=%SystemRoot%\System32\shsvcs.dll
[Svchost DLLs] :HKLM helpsvc=%WINDIR%\PCHealth\HelpCtr\Binaries\pchsvc.dll
[Svchost DLLs] :HKLM WmdmPmSN=C:\WINDOWS\system32\MsPMSNSv.dll
[Svchost DLLs] :HKLM DcomLaunch=%SystemRoot%\system32\rpcss.dll
[Svchost DLLs] :HKLM TermService=%SystemRoot%\System32\termsrv.dll
[Svchost DLLs] :HKLM RpcSs=%SystemRoot%\system32\rpcss.dll
[Svchost DLLs] :HKLM StiSvc=%SystemRoot%\system32\wiaservc.dll
[Svchost DLLs] :HKLM WUDFSvc=%SystemRoot%\System32\WUDFSvc.dll
[Bootexecute] :HKLM BootExecute=autocheck autochk *
Partizan
[Winlogon System] :HKLM system=""
[Winlogon System] :HKLM taskman=""
[Winlogon System] :HKLM UIHost=logonui.exe
[Winlogon Autostart] :HKLM VmApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
[Winlogon Autostart] :HKLM AppSetup=""
[KnownDLLs] :HKLM advapi32=advapi32.dll
[KnownDLLs] :HKLM comdlg32=comdlg32.dll
[KnownDLLs] :HKLM DllDirectory=%SystemRoot%\system32
[KnownDLLs] :HKLM gdi32=gdi32.dll
[KnownDLLs] :HKLM imagehlp=imagehlp.dll
[KnownDLLs] :HKLM kernel32=kernel32.dll
[KnownDLLs] :HKLM lz32=lz32.dll
[KnownDLLs] :HKLM ole32=ole32.dll
[KnownDLLs] :HKLM oleaut32=oleaut32.dll
[KnownDLLs] :HKLM olecli32=olecli32.dll
[KnownDLLs] :HKLM olecnv32=olecnv32.dll
[KnownDLLs] :HKLM olesvr32=olesvr32.dll
[KnownDLLs] :HKLM olethk32=olethk32.dll
[KnownDLLs] :HKLM rpcrt4=rpcrt4.dll
[KnownDLLs] :HKLM shell32=shell32.dll
[KnownDLLs] :HKLM url=url.dll
[KnownDLLs] :HKLM urlmon=urlmon.dll
[KnownDLLs] :HKLM user32=user32.dll
[KnownDLLs] :HKLM version=version.dll
[KnownDLLs] :HKLM wininet=wininet.dll
[KnownDLLs] :HKLM wldap32=wldap32.dll
[Environment - Path] :HKLM Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\system32\gs\gs7.05\bin;C:\Program Files\SecureCRT
[List of Injected DLLs] :HKLM AppInit_DLLs= AMINIT.dll
[Auto Services] AClient
[Auto Services] AeXNSClient
[Auto Services] atchksrv
[Auto Services] AudioSrv
[Auto Services] BITS
[Auto Services] CarbonCopy32
[Auto Services] CryptSvc
[Auto Services] CVPND
[Auto Services] DcomLaunch
[Auto Services] Dhcp
[Auto Services] dmserver
[Auto Services] Dnscache
[Auto Services] ERSvc
[Auto Services] ESMScheduler
[Auto Services] Eventlog
[Auto Services] helpsvc
[Auto Services] HidServ
[Auto Services] IntelligentResponseAgent
[Auto Services] JavaQuickStarterService
[Auto Services] lanmanserver
[Auto Services] lanmanworkstation
[Auto Services] LmHosts
[Auto Services] LMS
[Auto Services] MDM
[Auto Services] Netlogon
[Auto Services] PlugPlay
[Auto Services] PolicyAgent
[Auto Services] ProtectedStorage
[Auto Services] PRTGService
[Auto Services] prtgwatchservice
[Auto Services] RMIRegistry
[Auto Services] RpcSs
[Auto Services] SamSs
[Auto Services] Schedule
[Auto Services] seclogon
[Auto Services] SENS
[Auto Services] ShellHWDetection
[Auto Services] Spooler
[Auto Services] srservice
[Auto Services] STCAgent
[Auto Services] Themes
[Auto Services] TrkWks
[Auto Services] UNS
[Auto Services] vpnagent
[Auto Services] W32Time
[Auto Services] winmgmt
[Auto Services] wscsvc
[Auto Services] wuauserv
[Auto Services] WudfSvc
[Auto Services] WZCSVC
[Drivers] ntkrnlpa.exe=C:\WINDOWS\SYSTEM32\NTKRNLPA.EXE
[Drivers] hal.dll=C:\WINDOWS\SYSTEM32\HAL.DLL
[Drivers] KDCOM.DLL=C:\WINDOWS\SYSTEM32\KDCOM.DLL
[Drivers] BOOTVID.dll=C:\WINDOWS\SYSTEM32\BOOTVID.DLL
[Drivers] ACPI.sys=C:\WINDOWS\system32\DRIVERS\ACPI.sys
[Drivers] WMILIB.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS
[Drivers] Partizan.sys=C:\WINDOWS\system32\DRIVERS\Partizan.sys
[Drivers] pci.sys=C:\WINDOWS\system32\DRIVERS\pci.sys
[Drivers] isapnp.sys=C:\WINDOWS\system32\DRIVERS\isapnp.sys
[Drivers] pciide.sys=C:\WINDOWS\system32\DRIVERS\pciide.sys
[Drivers] PCIIDEX.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS
[Drivers] MountMgr.sys=C:\WINDOWS\system32\DRIVERS\MountMgr.sys
[Drivers] ftdisk.sys=C:\WINDOWS\system32\DRIVERS\ftdisk.sys
[Drivers] dmload.sys=C:\WINDOWS\system32\DRIVERS\dmload.sys
[Drivers] dmio.sys=C:\WINDOWS\system32\DRIVERS\dmio.sys
[Drivers] PartMgr.sys=C:\WINDOWS\system32\DRIVERS\PartMgr.sys
[Drivers] VolSnap.sys=C:\WINDOWS\system32\DRIVERS\VolSnap.sys
[Drivers] atapi.sys=C:\WINDOWS\system32\DRIVERS\atapi.sys
[Drivers] disk.sys=C:\WINDOWS\system32\DRIVERS\disk.sys
[Drivers] CLASSPNP.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS
[Drivers] fltMgr.sys=C:\WINDOWS\system32\DRIVERS\fltMgr.sys
[Drivers] KSecDD.sys=C:\WINDOWS\system32\DRIVERS\KSecDD.sys
[Drivers] WudfPf.sys=C:\WINDOWS\system32\DRIVERS\WudfPf.sys
[Drivers] Ntfs.sys=C:\WINDOWS\system32\DRIVERS\Ntfs.sys
[Drivers] NDIS.sys=C:\WINDOWS\system32\DRIVERS\NDIS.sys
[Drivers] Mup.sys=C:\WINDOWS\system32\DRIVERS\Mup.sys
[Drivers] intelppm.sys=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
[Drivers] igxpmp32.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IGXPMP32.SYS
[Drivers] VIDEOPRT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS
[Drivers] HECI.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HECI.SYS
[Drivers] serial.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS
[Drivers] serenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS
[Drivers] e1e5132.sys=C:\WINDOWS\SYSTEM32\DRIVERS\E1E5132.SYS
[Drivers] usbuhci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS
[Drivers] USBPORT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS
[Drivers] usbehci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
[Drivers] HDAudBus.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS
[Drivers] fdc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS
[Drivers] parport.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
[Drivers] imapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IMAPI.SYS
[Drivers] cdrom.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
[Drivers] redbook.sys=C:\WINDOWS\SYSTEM32\DRIVERS\REDBOOK.SYS
[Drivers] ks.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS
[Drivers] dne2000.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DNE2000.SYS
[Drivers] audstub.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
[Drivers] rasl2tp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
[Drivers] ndistapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
[Drivers] ndiswan.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
[Drivers] raspppoe.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
[Drivers] raspptp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
[Drivers] TDI.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS
[Drivers] psched.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PSCHED.SYS
[Drivers] msgpc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPC.SYS
[Drivers] ptilink.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS
[Drivers] raspti.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPTI.SYS
[Drivers] rdpdr.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS
[Drivers] termdd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
[Drivers] kbdclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
[Drivers] mouclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
[Drivers] swenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
[Drivers] update.sys=C:\WINDOWS\SYSTEM32\DRIVERS\UPDATE.SYS
[Drivers] mssmbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
[Drivers] NDProxy.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
[Drivers] usbhub.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
[Drivers] USBD.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS
[Drivers] ADIHdAud.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ADIHDAUD.SYS
[Drivers] portcls.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS
[Drivers] drmk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS
[Drivers] Senfilt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SENFILT.SYS
[Drivers] flpydisk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS
[Drivers] ifsmount.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IFSMOUNT.SYS
[Drivers] Fs_Rec.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS
[Drivers] Null.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS
[Drivers] Beep.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS
[Drivers] HIDPARSE.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS
[Drivers] vga.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
[Drivers] mnmdd.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MNMDD.SYS
[Drivers] RDPCDD.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
[Drivers] ext2fs.sys=C:\WINDOWS\SYSTEM32\DRIVERS\EXT2FS.SYS
[Drivers] Msfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS
[Drivers] Npfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS
[Drivers] rasacd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
[Drivers] ipsec.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IPSEC.SYS
[Drivers] tcpip.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
[Drivers] mfetdik.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MFETDIK.SYS
[Drivers] netbt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
[Drivers] wanarp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
[Drivers] afd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
[Drivers] netbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
[Drivers] rdbss.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
[Drivers] mrxsmb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
[Drivers] mferkdk.sys=C:\PROGRAM FILES\MCAFEE\VIRUSSCAN ENTERPRISE\MFERKDK.SYS
[Drivers] Fips.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FIPS.SYS
[Drivers] CCDevice.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CCDEVICE.SYS
[Drivers] hidusb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
[Drivers] HIDCLASS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS
[Drivers] mouhid.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
[Drivers] kbdhid.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS
[Drivers] Fastfat.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FASTFAT.SYS
[Drivers] atapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_ATAPI.SYS
[Drivers] WMILIB.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_WMILIB.SYS
[Drivers] win32k.sys=C:\WINDOWS\SYSTEM32\WIN32K.SYS
[Drivers] Dxapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS
[Drivers] watchdog.sys=C:\WINDOWS\SYSTEM32\WATCHDOG.SYS
[Drivers] dxg.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXG.SYS
[Drivers] dxgthk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXGTHK.SYS
[Drivers] igxpgd32.dll=C:\WINDOWS\SYSTEM32\IGXPGD32.DLL
[Drivers] igxprd32.dll=C:\WINDOWS\SYSTEM32\IGXPRD32.DLL
[Drivers] igxpdv32.DLL=C:\WINDOWS\SYSTEM32\IGXPDV32.DLL
[Drivers] igxpdx32.DLL=C:\WINDOWS\SYSTEM32\IGXPDX32.DLL
[Drivers] ATMFD.DLL=C:\WINDOWS\SYSTEM32\ATMFD.DLL
[Drivers] ndisuio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
[Drivers] ParVdm.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\PARVDM.SYS
[Drivers] CVPNDRVA.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CVPNDRVA.SYS
[Drivers] srv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS
[Drivers] Cdfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[Drivers] npf.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NPF.SYS
[Drivers] wdmaud.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WDMAUD.SYS
[Drivers] sysaudio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SYSAUDIO.SYS
[Drivers] TDTCP.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\TDTCP.SYS
[Drivers] RDPWD.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\RDPWD.SYS
[Drivers] UnHackMeDrv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\UNHACKMEDRV.SYS
[Drivers] ntdll.dll=C:\WINDOWS\SYSTEM32\NTDLL.DLL
[Services detected by Partizan] :HKLM .NET CLR Data
[Services detected by Partizan] :HKLM .NET CLR Networking
[Services detected by Partizan] :HKLM .NET Data Provider for Oracle
[Services detected by Partizan] :HKLM .NET Data Provider for SqlServer
[Services detected by Partizan] :HKLM .NETFramework
[Services detected by Partizan] :HKLM Abiosdsk
[Services detected by Partizan] :HKLM abp480n5
[Services detected by Partizan] :HKLM AClient=C:\Program Files\Altiris\AClient\AClient.exe -service
[Services detected by Partizan] :HKLM ACPI=system32\DRIVERS\ACPI.sys
[Services detected by Partizan] :HKLM ACPIEC
[Services detected by Partizan] :HKLM ADIHdAudAddService=system32\drivers\ADIHdAud.sys
[Services detected by Partizan] :HKLM adpu160m
[Services detected by Partizan] :HKLM aec=system32\drivers\aec.sys
[Services detected by Partizan] :HKLM AeXNSClient=C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe
[Services detected by Partizan] :HKLM AFD=\SystemRoot\System32\drivers\afd.sys
[Services detected by Partizan] :HKLM Aha154x
[Services detected by Partizan] :HKLM aic78u2
[Services detected by Partizan] :HKLM aic78xx
[Services detected by Partizan] :HKLM Alerter=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM ALG=%SystemRoot%\System32\alg.exe
[Services detected by Partizan] :HKLM AliIde
[Services detected by Partizan] :HKLM AlKernel=System32\Drivers\AlKernel.sys
[Services detected by Partizan] :HKLM amsint
[Services detected by Partizan] :HKLM AppMgmt=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM asc
[Services detected by Partizan] :HKLM asc3350p
[Services detected by Partizan] :HKLM asc3550
[Services detected by Partizan] :HKLM ASP.NET
[Services detected by Partizan] :HKLM ASP.NET_2.0.50727
[Services detected by Partizan] :HKLM aspnet_state=%SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
[Services detected by Partizan] :HKLM AsyncMac=system32\DRIVERS\asyncmac.sys
[Services detected by Partizan] :HKLM atapi=system32\DRIVERS\atapi.sys
[Services detected by Partizan] :HKLM atchksrv=C:\Program Files\Intel\AMT\atchksrv.exe
[Services detected by Partizan] :HKLM Atdisk
[Services detected by Partizan] :HKLM Atmarpc=system32\DRIVERS\atmarpc.sys
[Services detected by Partizan] :HKLM AudioSrv=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM audstub=system32\DRIVERS\audstub.sys
[Services detected by Partizan] :HKLM BattC
[Services detected by Partizan] :HKLM Beep
[Services detected by Partizan] :HKLM BITS=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Browser=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM CarbonCopy32=C:\WINDOWS\system32\ccsrvc.exe
[Services detected by Partizan] :HKLM cbidf2k
[Services detected by Partizan] :HKLM CCDevice
[Services detected by Partizan] :HKLM cd20xrnt
[Services detected by Partizan] :HKLM Cdaudio
[Services detected by Partizan] :HKLM Cdfs
[Services detected by Partizan] :HKLM Cdrom=system32\DRIVERS\cdrom.sys
[Services detected by Partizan] :HKLM Changer
[Services detected by Partizan] :HKLM CiSvc=%SystemRoot%\system32\cisvc.exe
[Services detected by Partizan] :HKLM ClipSrv=%SystemRoot%\system32\clipsrv.exe
[Services detected by Partizan] :HKLM clr_optimization_v2.0.50727_32=C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
[Services detected by Partizan] :HKLM CmdIde
[Services detected by Partizan] :HKLM COMSysApp=C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
[Services detected by Partizan] :HKLM ContentFilter
[Services detected by Partizan] :HKLM ContentIndex
[Services detected by Partizan] :HKLM Cpqarray
[Services detected by Partizan] :HKLM CryptSvc=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM CSVirtA=system32\DRIVERS\CSVirtA.sys
[Services detected by Partizan] :HKLM CVirtA=system32\DRIVERS\CVirtA.sys
[Services detected by Partizan] :HKLM CVPND="C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe"
[Services detected by Partizan] :HKLM CVPNDRVA=\??\C:\WINDOWS\system32\Drivers\CVPNDRVA.sys
[Services detected by Partizan] :HKLM dac2w2k
[Services detected by Partizan] :HKLM dac960nt
[Services detected by Partizan] :HKLM DcomLaunch=%SystemRoot%\system32\svchost -k DcomLaunch
[Services detected by Partizan] :HKLM Dhcp=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Disk=system32\DRIVERS\disk.sys
[Services detected by Partizan] :HKLM dmadmin=%SystemRoot%\System32\dmadmin.exe /com
[Services detected by Partizan] :HKLM dmboot=System32\drivers\dmboot.sys
[Services detected by Partizan] :HKLM dmio=System32\drivers\dmio.sys
[Services detected by Partizan] :HKLM dmload=System32\drivers\dmload.sys
[Services detected by Partizan] :HKLM dmserver=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM DMusic=system32\drivers\DMusic.sys
[Services detected by Partizan] :HKLM DNE=system32\DRIVERS\dne2000.sys
[Services detected by Partizan] :HKLM Dnscache=%SystemRoot%\system32\svchost.exe -k NetworkService
[Services detected by Partizan] :HKLM dpti2o
[Services detected by Partizan] :HKLM drmkaud=system32\drivers\drmkaud.sys
[Services detected by Partizan] :HKLM e1express=system32\DRIVERS\e1e5132.sys
[Services detected by Partizan] :HKLM ERSvc=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM ESMScheduler=C:\Nortel\ESM\ESMService.exe
[Services detected by Partizan] :HKLM Eventlog=%SystemRoot%\system32\services.exe
[Services detected by Partizan] :HKLM EventSystem=C:\WINDOWS\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Ext2fs=system32\DRIVERS\ext2fs.sys
[Services detected by Partizan] :HKLM Fastfat
[Services detected by Partizan] :HKLM FastUserSwitchingCompatibility=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Fdc=system32\DRIVERS\fdc.sys
[Services detected by Partizan] :HKLM Fips
[Services detected by Partizan] :HKLM Flpydisk=system32\DRIVERS\flpydisk.sys
[Services detected by Partizan] :HKLM FltMgr=system32\DRIVERS\fltMgr.sys
[Services detected by Partizan] :HKLM FontCache3.0.0.0=c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
[Services detected by Partizan] :HKLM Fs_Rec
[Services detected by Partizan] :HKLM Ftdisk=system32\DRIVERS\ftdisk.sys
[Services detected by Partizan] :HKLM Gpc=system32\DRIVERS\msgpc.sys
[Services detected by Partizan] :HKLM hamachi=system32\DRIVERS\hamachi.sys
[Services detected by Partizan] :HKLM HDAudBus=system32\DRIVERS\HDAudBus.sys
[Services detected by Partizan] :HKLM HECI=system32\DRIVERS\HECI.sys
[Services detected by Partizan] :HKLM helpsvc=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM HidServ=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM hidusb=system32\DRIVERS\hidusb.sys
[Services detected by Partizan] :HKLM hpn
[Services detected by Partizan] :HKLM HTTP=System32\Drivers\HTTP.sys
[Services detected by Partizan] :HKLM HTTPFilter=%SystemRoot%\System32\svchost.exe -k HTTPFilter
[Services detected by Partizan] :HKLM i2omgmt
[Services detected by Partizan] :HKLM i2omp
[Services detected by Partizan] :HKLM i8042prt
[Services detected by Partizan] :HKLM ialm=system32\DRIVERS\igxpmp32.sys
[Services detected by Partizan] :HKLM idsvc="C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe"
[Services detected by Partizan] :HKLM IfsMount=system32\DRIVERS\ifsmount.sys
[Services detected by Partizan] :HKLM Imapi=system32\DRIVERS\imapi.sys
[Services detected by Partizan] :HKLM ImapiService=C:\WINDOWS\system32\imapi.exe
[Services detected by Partizan] :HKLM inetaccs
[Services detected by Partizan] :HKLM InetInfo
[Services detected by Partizan] :HKLM ini910u
[Services detected by Partizan] :HKLM Inport
[Services detected by Partizan] :HKLM IntelIde
[Services detected by Partizan] :HKLM IntelligentResponseAgent="C:\Program Files\Mandiant\Mandiant Intelligent Response Agent\MIRAgent.exe" -service -servicename IntelligentResponseAgent
[Services detected by Partizan] :HKLM intelppm=system32\DRIVERS\intelppm.sys
[Services detected by Partizan] :HKLM Ip6Fw=system32\DRIVERS\Ip6Fw.sys
[Services detected by Partizan] :HKLM IpFilterDriver=system32\DRIVERS\ipfltdrv.sys
[Services detected by Partizan] :HKLM IpInIp=system32\DRIVERS\ipinip.sys
[Services detected by Partizan] :HKLM IpNat=system32\DRIVERS\ipnat.sys
[Services detected by Partizan] :HKLM IPSec=system32\DRIVERS\ipsec.sys
[Services detected by Partizan] :HKLM IRENUM=system32\DRIVERS\irenum.sys
[Services detected by Partizan] :HKLM ISAPISearch
[Services detected by Partizan] :HKLM isapnp=system32\DRIVERS\isapnp.sys
[Services detected by Partizan] :HKLM JavaQuickStarterService="C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"
[Services detected by Partizan] :HKLM Kbdclass=system32\DRIVERS\kbdclass.sys
[Services detected by Partizan] :HKLM kbdhid=system32\DRIVERS\kbdhid.sys
[Services detected by Partizan] :HKLM kmixer=system32\drivers\kmixer.sys
[Services detected by Partizan] :HKLM KSecDD
[Services detected by Partizan] :HKLM lanmanserver=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM lanmanworkstation=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM lbrtfdc
[Services detected by Partizan] :HKLM ldap
[Services detected by Partizan] :HKLM LicenseService
[Services detected by Partizan] :HKLM LmHosts=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM LMS=C:\Program Files\Intel\AMT\LMS.exe
[Services detected by Partizan] :HKLM Mandiant_Tools=\??\C:\Program Files\Mandiant\Mandiant Intelligent Response Agent\mktools.sys
[Services detected by Partizan] :HKLM McAfee SiteAdvisor Enterprise Service="C:\Program Files\McAfee\SiteAdvisor Enterprise\McSACore.exe"
[Services detected by Partizan] :HKLM McAfeeFramework="C:\Program Files\McAfee\Common Framework\FrameworkService.exe" /ServiceStart
[Services detected by Partizan] :HKLM McShield="C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe"
[Services detected by Partizan] :HKLM McTaskManager="C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe"
[Services detected by Partizan] :HKLM MDM="C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
[Services detected by Partizan] :HKLM MEMSWEEP2=\??\C:\WINDOWS\system32\84.tmp
[Services detected by Partizan] :HKLM Messenger=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM mfeapfk=system32\drivers\mfeapfk.sys
[Services detected by Partizan] :HKLM mfeavfk=system32\drivers\mfeavfk.sys
[Services detected by Partizan] :HKLM mfebopk=system32\drivers\mfebopk.sys
[Services detected by Partizan] :HKLM mfehidk=system32\drivers\mfehidk.sys
[Services detected by Partizan] :HKLM mferkdk=\??\C:\Program Files\McAfee\VirusScan Enterprise\mferkdk.sys
[Services detected by Partizan] :HKLM mfetdik=system32\drivers\mfetdik.sys
[Services detected by Partizan] :HKLM Microsoft Office Groove Audit Service="C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe"
[Services detected by Partizan] :HKLM mnmdd
[Services detected by Partizan] :HKLM mnmsrvc=C:\WINDOWS\system32\mnmsrvc.exe
[Services detected by Partizan] :HKLM Modem
[Services detected by Partizan] :HKLM Mouclass=system32\DRIVERS\mouclass.sys
[Services detected by Partizan] :HKLM mouhid=system32\DRIVERS\mouhid.sys
[Services detected by Partizan] :HKLM MountMgr
[Services detected by Partizan] :HKLM mraid35x
[Services detected by Partizan] :HKLM MRxDAV=system32\DRIVERS\mrxdav.sys
[Services detected by Partizan] :HKLM MRxSmb=system32\DRIVERS\mrxsmb.sys
[Services detected by Partizan] :HKLM MSDTC=C:\WINDOWS\system32\msdtc.exe
[Services detected by Partizan] :HKLM MSDTC Bridge 3.0.0.0
[Services detected by Partizan] :HKLM Msfs
[Services detected by Partizan] :HKLM MSIServer=C:\WINDOWS\system32\msiexec.exe /V
[Services detected by Partizan] :HKLM MSKSSRV=system32\drivers\MSKSSRV.sys
[Services detected by Partizan] :HKLM MSPCLOCK=system32\drivers\MSPCLOCK.sys
[Services detected by Partizan] :HKLM MSPQM=system32\drivers\MSPQM.sys
[Services detected by Partizan] :HKLM mssmbios=system32\DRIVERS\mssmbios.sys
[Services detected by Partizan] :HKLM Mup
[Services detected by Partizan] :HKLM NDIS
[Services detected by Partizan] :HKLM NdisTapi=system32\DRIVERS\ndistapi.sys
[Services detected by Partizan] :HKLM Ndisuio=system32\DRIVERS\ndisuio.sys
[Services detected by Partizan] :HKLM NdisWan=system32\DRIVERS\ndiswan.sys
[Services detected by Partizan] :HKLM NDProxy
[Services detected by Partizan] :HKLM NetBIOS=system32\DRIVERS\netbios.sys
[Services detected by Partizan] :HKLM NetBT=system32\DRIVERS\netbt.sys
[Services detected by Partizan] :HKLM NetDDE=%SystemRoot%\system32\netdde.exe
[Services detected by Partizan] :HKLM NetDDEdsdm=%SystemRoot%\system32\netdde.exe
[Services detected by Partizan] :HKLM Netlogon=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM Netman=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM NetTcpPortSharing="C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe"
[Services detected by Partizan] :HKLM Nla=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM nm=system32\DRIVERS\NMnt.sys
[Services detected by Partizan] :HKLM NPF=system32\drivers\npf.sys
[Services detected by Partizan] :HKLM Npfs
[Services detected by Partizan] :HKLM Ntfs
[Services detected by Partizan] :HKLM NtLmSsp=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM NtmsSvc=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Null
[Services detected by Partizan] :HKLM NwlnkFlt=system32\DRIVERS\nwlnkflt.sys
[Services detected by Partizan] :HKLM NwlnkFwd=system32\DRIVERS\nwlnkfwd.sys
[Services detected by Partizan] :HKLM odserv="C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE"
[Services detected by Partizan] :HKLM ose="C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
[Services detected by Partizan] :HKLM Outlook
[Services detected by Partizan] :HKLM Parport=system32\DRIVERS\parport.sys
[Services detected by Partizan] :HKLM Partizan=system32\drivers\Partizan.sys
[Services detected by Partizan] :HKLM PartMgr
[Services detected by Partizan] :HKLM ParVdm
[Services detected by Partizan] :HKLM PCI=system32\DRIVERS\pci.sys
[Services detected by Partizan] :HKLM PCIDump
[Services detected by Partizan] :HKLM PCIIde=system32\DRIVERS\pciide.sys
[Services detected by Partizan] :HKLM Pcmcia
[Services detected by Partizan] :HKLM PDCOMP
[Services detected by Partizan] :HKLM PDFRAME
[Services detected by Partizan] :HKLM PDRELI
[Services detected by Partizan] :HKLM PDRFRAME
[Services detected by Partizan] :HKLM perc2
[Services detected by Partizan] :HKLM perc2hib
[Services detected by Partizan] :HKLM PerfDisk
[Services detected by Partizan] :HKLM PerfNet
[Services detected by Partizan] :HKLM PerfOS
[Services detected by Partizan] :HKLM PerfProc
[Services detected by Partizan] :HKLM PlugPlay=%SystemRoot%\system32\services.exe
[Services detected by Partizan] :HKLM PolicyAgent=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM PptpMiniport=system32\DRIVERS\raspptp.sys
[Services detected by Partizan] :HKLM ProtectedStorage=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM PRTGService=C:\Program Files\PRTG Traffic Grapher\PRTG Traffic Grapher.exe
[Services detected by Partizan] :HKLM prtgwatchservice=C:\Program Files\PRTG Traffic Grapher\watchdog\prtgwatchdog.exe
[Services detected by Partizan] :HKLM PSched=system32\DRIVERS\psched.sys
[Services detected by Partizan] :HKLM Ptilink=system32\DRIVERS\ptilink.sys
[Services detected by Partizan] :HKLM ql1080
[Services detected by Partizan] :HKLM Ql10wnt
[Services detected by Partizan] :HKLM ql12160
[Services detected by Partizan] :HKLM ql1240
[Services detected by Partizan] :HKLM ql1280
[Services detected by Partizan] :HKLM RasAcd=system32\DRIVERS\rasacd.sys
[Services detected by Partizan] :HKLM RasAuto=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Rasl2tp=system32\DRIVERS\rasl2tp.sys
[Services detected by Partizan] :HKLM RasMan=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM RasPppoe=system32\DRIVERS\raspppoe.sys
[Services detected by Partizan] :HKLM Raspti=system32\DRIVERS\raspti.sys
[Services detected by Partizan] :HKLM Rdbss=system32\DRIVERS\rdbss.sys
[Services detected by Partizan] :HKLM RDPCDD=System32\DRIVERS\RDPCDD.sys
[Services detected by Partizan] :HKLM RDPDD
[Services detected by Partizan] :HKLM rdpdr=system32\DRIVERS\rdpdr.sys
[Services detected by Partizan] :HKLM RDPNP
[Services detected by Partizan] :HKLM RDPWD
[Services detected by Partizan] :HKLM RDSessMgr=C:\WINDOWS\system32\sessmgr.exe
[Services detected by Partizan] :HKLM redbook=system32\DRIVERS\redbook.sys
[Services detected by Partizan] :HKLM RemoteAccess=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM RemoteRegistry=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM RMIRegistry=C:\Nortel\ESM\ESMService.exe
[Services detected by Partizan] :HKLM rpcapd="%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini"
[Services detected by Partizan] :HKLM RpcLocator=%SystemRoot%\system32\locator.exe
[Services detected by Partizan] :HKLM RpcSs=%SystemRoot%\system32\svchost -k rpcss
[Services detected by Partizan] :HKLM RSVP=%SystemRoot%\system32\rsvp.exe
[Services detected by Partizan] :HKLM s0017bus=system32\DRIVERS\s0017bus.sys
[Services detected by Partizan] :HKLM s0017mdfl=system32\DRIVERS\s0017mdfl.sys
[Services detected by Partizan] :HKLM s0017mdm=system32\DRIVERS\s0017mdm.sys
[Services detected by Partizan] :HKLM s0017mgmt=system32\DRIVERS\s0017mgmt.sys
[Services detected by Partizan] :HKLM s0017nd5=system32\DRIVERS\s0017nd5.sys
[Services detected by Partizan] :HKLM s0017obex=system32\DRIVERS\s0017obex.sys
[Services detected by Partizan] :HKLM s0017unic=system32\DRIVERS\s0017unic.sys
[Services detected by Partizan] :HKLM SamSs=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM SCardSvr=%SystemRoot%\System32\SCardSvr.exe
[Services detected by Partizan] :HKLM Schedule=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Secdrv=system32\DRIVERS\secdrv.sys
[Services detected by Partizan] :HKLM seclogon=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM SenFiltService=system32\drivers\Senfilt.sys
[Services detected by Partizan] :HKLM SENS=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM serenum=system32\DRIVERS\serenum.sys
[Services detected by Partizan] :HKLM Serial=system32\DRIVERS\serial.sys
[Services detected by Partizan] :HKLM ServiceModelEndpoint 3.0.0.0
[Services detected by Partizan] :HKLM ServiceModelOperation 3.0.0.0
[Services detected by Partizan] :HKLM ServiceModelService 3.0.0.0
[Services detected by Partizan] :HKLM Sfloppy
[Services detected by Partizan] :HKLM SharedAccess=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM ShellHWDetection=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Simbad
[Services detected by Partizan] :HKLM SMSvcHost 3.0.0.0
[Services detected by Partizan] :HKLM SNMP
[Services detected by Partizan] :HKLM SolarWinds TFTP Server="C:\Program Files\SolarWinds\TFTPServer\SolarWinds TFTP Server.exe"
[Services detected by Partizan] :HKLM SolidWorks Licensing Service="C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe"
[Services detected by Partizan] :HKLM Sparrow
[Services detected by Partizan] :HKLM splitter=system32\drivers\splitter.sys
[Services detected by Partizan] :HKLM Spooler=%SystemRoot%\system32\spoolsv.exe
[Services detected by Partizan] :HKLM sr=\SystemRoot\system32\DRIVERS\sr.sys
[Services detected by Partizan] :HKLM srservice=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Srv=system32\DRIVERS\srv.sys
[Services detected by Partizan] :HKLM SSDPSRV=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM STCAgent=C:\Program Files\Cisco Systems\SSL VPN Client\agent.exe
[Services detected by Partizan] :HKLM stisvc=%SystemRoot%\system32\svchost.exe -k imgsvc
[Services detected by Partizan] :HKLM swenum=system32\DRIVERS\swenum.sys
[Services detected by Partizan] :HKLM swmidi=system32\drivers\swmidi.sys
[Services detected by Partizan] :HKLM SwPrv=C:\WINDOWS\system32\dllhost.exe /Processid:{89517C7E-1EC7-48DE-AE05-7D48E1D9E0BD}
[Services detected by Partizan] :HKLM symc810
[Services detected by Partizan] :HKLM symc8xx
[Services detected by Partizan] :HKLM sym_hi
[Services detected by Partizan] :HKLM sym_u3
[Services detected by Partizan] :HKLM sysaudio=system32\drivers\sysaudio.sys
[Services detected by Partizan] :HKLM SysmonLog=%SystemRoot%\system32\smlogsvc.exe
[Services detected by Partizan] :HKLM TapiSrv=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Tcpip=system32\DRIVERS\tcpip.sys
[Services detected by Partizan] :HKLM Tcpip6
[Services detected by Partizan] :HKLM TDPIPE
[Services detected by Partizan] :HKLM TDTCP
[Services detected by Partizan] :HKLM teamviewervpn=system32\DRIVERS\teamviewervpn.sys
[Services detected by Partizan] :HKLM TermDD=system32\DRIVERS\termdd.sys
[Services detected by Partizan] :HKLM TermService=%SystemRoot%\System32\svchost -k DComLaunch
[Services detected by Partizan] :HKLM Themes=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM TlntSvr=C:\WINDOWS\system32\tlntsvr.exe
[Services detected by Partizan] :HKLM TosIde
[Services detected by Partizan] :HKLM TrkWks=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM TSDDD
[Services detected by Partizan] :HKLM Udfs
[Services detected by Partizan] :HKLM ultra
[Services detected by Partizan] :HKLM UNS=C:\Program Files\Intel\AMT\UNS.exe
[Services detected by Partizan] :HKLM Update=system32\DRIVERS\update.sys
[Services detected by Partizan] :HKLM upnphost=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM UPS=%SystemRoot%\System32\ups.exe
[Services detected by Partizan] :HKLM usbccgp=system32\DRIVERS\usbccgp.sys
[Services detected by Partizan] :HKLM usbehci=system32\DRIVERS\usbehci.sys
[Services detected by Partizan] :HKLM usbhub=system32\DRIVERS\usbhub.sys
[Services detected by Partizan] :HKLM USBSTOR=system32\DRIVERS\USBSTOR.SYS
[Services detected by Partizan] :HKLM usbuhci=system32\DRIVERS\usbuhci.sys
[Services detected by Partizan] :HKLM VgaSave=\SystemRoot\System32\drivers\vga.sys
[Services detected by Partizan] :HKLM ViaIde
[Services detected by Partizan] :HKLM VolSnap
[Services detected by Partizan] :HKLM vpnagent="C:\Program Files\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe"
[Services detected by Partizan] :HKLM vpnva=system32\DRIVERS\vpnva.sys
[Services detected by Partizan] :HKLM VSS=%SystemRoot%\System32\vssvc.exe
[Services detected by Partizan] :HKLM W32Time=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM W3SVC
[Services detected by Partizan] :HKLM Wanarp=system32\DRIVERS\wanarp.sys
[Services detected by Partizan] :HKLM WDICA
[Services detected by Partizan] :HKLM wdmaud=system32\drivers\wdmaud.sys
[Services detected by Partizan] :HKLM WebClient=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM Windows Workflow Foundation 3.0.0.0
[Services detected by Partizan] :HKLM winmgmt=%systemroot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Winsock
[Services detected by Partizan] :HKLM WinSock2
[Services detected by Partizan] :HKLM WinTrust
[Services detected by Partizan] :HKLM wip0204=system32\DRIVERS\wip0204.sys
[Services detected by Partizan] :HKLM WmdmPmSN=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Wmi=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM WmiApRpl
[Services detected by Partizan] :HKLM WmiApSrv=C:\WINDOWS\system32\wbem\wmiapsrv.exe
[Services detected by Partizan] :HKLM WMPNetworkSvc="C:\Program Files\Windows Media Player\WMPNetwk.exe"
[Services detected by Partizan] :HKLM WpdUsb=system32\DRIVERS\wpdusb.sys
[Services detected by Partizan] :HKLM WS2IFSL
[Services detected by Partizan] :HKLM wscsvc=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM wuauserv=%systemroot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM WudfPf=system32\DRIVERS\WudfPf.sys
[Services detected by Partizan] :HKLM WudfRd=system32\DRIVERS\wudfrd.sys
[Services detected by Partizan] :HKLM WudfSvc=%SystemRoot%\system32\svchost.exe -k WudfServiceGroup
[Services detected by Partizan] :HKLM WZCSVC=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM xmlprov=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM {19A4354C-97B6-45AB-86EB-C2F225F02DA2}
[Services detected by Partizan] :HKLM {19A60EE5-7CE2-4F47-9AE1-F9F98A6EB555}
[Services detected by Partizan] :HKLM {447D7043-3FD8-429C-A4DF-81C8DC2DBF7A}
[Services detected by Partizan] :HKLM {6CF66851-8C14-4703-9DE0-E16146B260A8}
[Services detected by Partizan] :HKLM {C535B025-BC84-43FD-AC95-535AEBC40D7F}
[Services detected by Partizan] :HKLM {D6809F16-E560-46BC-9869-435982CB835B}
[Auto Start Apps]
[Registry Run] :HKCU ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
[Registry Run] :HKCU TuneUp MemOptimizer="C:\Program Files\TuneUp Utilities 2009\MemOptimizer.exe" autostart
[Registry Run] :HKCU UnHackMe Monitor=C:\Program Files\UnHackMe\hackmon.exe
[Registry Run] :HKLM atchk="C:\Program Files\Intel\AMT\atchk.exe"
[Registry Run] :HKLM IgfxTray=C:\WINDOWS\system32\igfxtray.exe
[Registry Run] :HKLM HotKeysCmds=C:\WINDOWS\system32\hkcmd.exe
[Registry Run] :HKLM Persistence=C:\WINDOWS\system32\igfxpers.exe
[Registry Run] :HKLM SoundMAXPnP=C:\Program Files\Analog Devices\Core\smax4pnp.exe
[Registry Run] :HKLM AClntUsr=C:\Program Files\Altiris\AClient\AClntUsr.EXE
[Registry Run] :HKLM McAfeeUpdaterUI="C:\Program Files\McAfee\Common Framework\udaterui.exe" /StartedFromRunKey
[Registry Run] :HKLM ShStatEXE="C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE
[Registry Run] :HKLM GrooveMonitor="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
[Registry Run] :HKLM Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
[Registry Run] :HKLM Communicator="C:\Program Files\Microsoft Office Communicator\communicator.exe" /fromrunkey
[Registry Run] :HKLM AeXAgentLogon=C:\Program Files\Altiris\Altiris Agent\AeXAgentActivate.exe /logon
[Registry RunOnce] :HKLM Malwarebytes' Anti-Malware=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
[Registry RunOnceEx] :HKLM @UnHackMe=C:\PROGRA~1\UnHackMe\UnHackMe.exe /p Partizan
[Win.ini] load=""
[Win.ini] run=""
[Startup Folder] Password Safe.lnk=C:\password safe\pwsafe.exe
[Common Startup Folder] Cisco Systems VPN Client.lnk=C:\Program Files\Cisco Systems\VPN Client\vpngui.exe
[In memory]
[Running Processes] C:\WINDOWS\SYSTEM32\SMSS.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WINLOGON.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SERVICES.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\LSASS.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\PROGRAM FILES\CISCO SYSTEMS\SSL VPN CLIENT\AGENT.EXE
[Running Processes] C:\PROGRAM FILES\CISCO\CISCO ANYCONNECT VPN CLIENT\VPNAGENT.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
[Running Processes] C:\PROGRAM FILES\ALTIRIS\ACLIENT\ACLIENT.EXE
[Running Processes] C:\PROGRAM FILES\ALTIRIS\ALTIRIS AGENT\AEXNSAGENT.EXE
[Running Processes] C:\PROGRAM FILES\INTEL\AMT\ATCHKSRV.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\CCSRVC.EXE
[Running Processes] C:\PROGRAM FILES\ALTIRIS\CARBON COPY\SHELLKER.EXE
[Running Processes] C:\PROGRAM FILES\CISCO SYSTEMS\VPN CLIENT\CVPND.EXE
[Running Processes] C:\PROGRAM FILES\MANDIANT\MANDIANT INTELLIGENT RESPONSE AGENT\MIRAGENT.EXE
[Running Processes] C:\PROGRAM FILES\JAVA\JRE6\BIN\JQS.EXE
[Running Processes] C:\PROGRAM FILES\INTEL\AMT\LMS.EXE
[Running Processes] C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\VS7DEBUG\MDM.EXE
[Running Processes] C:\PROGRAM FILES\PRTG TRAFFIC GRAPHER\PRTG TRAFFIC GRAPHER.EXE
[Running Processes] C:\PROGRAM FILES\PRTG TRAFFIC GRAPHER\PRTG TRAFFIC GRAPHER.EXE
[Running Processes] C:\PROGRAM FILES\PRTG TRAFFIC GRAPHER\WATCHDOG\PRTGWATCHDOG.EXE
[Running Processes] C:\NORTEL\ESM\ESMSERVICE.EXE
[Running Processes] C:\NORTEL\ESM\JRE\BIN\RMIREGISTRY.EXE
[Running Processes] C:\PROGRAM FILES\INTEL\AMT\UNS.EXE
[Running Processes] C:\NORTEL\ESM\ESMSERVICE.EXE
[Running Processes] C:\NORTEL\ESM\JRE\BIN\JAVA.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WUAUCLT.EXE
[Running Processes] C:\WINDOWS\EXPLORER.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
[Running Processes] C:\PROGRA~1\UNHACKME\UNHACKME.EXE
[Running Processes] C:\PROGRA~1\UNHACKME\REANIMATOR.EXE
[Running Processes] C:\PROGRA~1\ALTIRIS\CARBON~1\CLIENT.EXE
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\SECUI.DLL
[Loaded DLLs] C:\WINDOWS\system32\AMINIT.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\MSVCP71.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\MsgLog.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\ACommon.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\userprof.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\MFC71.DLL
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\MCMSGBOX.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\MSVCR71.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\NETINFO.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\Commdevs.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\registry.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\PhoneBk.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\framedyn.dll
[Loaded DLLs] C:\WINDOWS\system32\srclient.dll
[Loaded DLLs] C:\WINDOWS\system32\mstask.dll
[Loaded DLLs] C:\WINDOWS\system32\ntshrui.dll
[Loaded DLLs] C:\WINDOWS\system32\LINKINFO.dll
[Loaded DLLs] C:\WINDOWS\system32\urlmon.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\urlmon.dll
[Loaded DLLs] C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\ADVPACK.dll
[Loaded DLLs] C:\WINDOWS\system32\iernonce.dll
[Loaded DLLs] C:\WINDOWS\system32\themeui.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
[Loaded DLLs] C:\Program Files\Microsoft Office\Office12\GrooveNew.DLL
[Loaded DLLs] C:\Program Files\Microsoft Office\Office12\GrooveUtil.DLL
[Loaded DLLs] C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\SHDOCVW.dll
[Loaded DLLs] C:\WINDOWS\system32\BROWSEUI.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiprov.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemprox.dll
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\WMIApRes.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\rmi.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\net.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\zip.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\java.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\verify.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\hpi.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\client\jvm.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\MSVCR71.dll
[Loaded DLLs] C:\Nortel\ESM\jre\bin\jli.dll
[Loaded DLLs] C:\WINDOWS\system32\HHCtrl.OCX
[Loaded DLLs] C:\WINDOWS\system32\msimg32.dll
[Loaded DLLs] C:\WINDOWS\system32\LZ32.DLL
[Loaded DLLs] C:\WINDOWS\system32\MSVFW32.dll
[Loaded DLLs] C:\WINDOWS\system32\avifil32.dll
[Loaded DLLs] C:\Program Files\PRTG Traffic Grapher\LIBEAY32.dll
[Loaded DLLs] C:\Program Files\PRTG Traffic Grapher\netsnmp.dll
[Loaded DLLs] C:\WINDOWS\system32\olepro32.dll
[Loaded DLLs] C:\WINDOWS\system32\snmpapi.dll
[Loaded DLLs] C:\WINDOWS\system32\inetmib1.dll
[Loaded DLLs] C:\Program Files\Common Files\Microsoft Shared\VS7Debug\msdbg2.dll
[Loaded DLLs] C:\Program Files\Common Files\Microsoft Shared\VS7Debug\csm.dll
[Loaded DLLs] C:\Program Files\Java\jre6\bin\MSVCR71.dll
[Loaded DLLs] C:\WINDOWS\system32\cryptnet.dll
[Loaded DLLs] C:\WINDOWS\system32\AMINIT.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCP80.dll
[Loaded DLLs] C:\Program Files\Mandiant\Mandiant Intelligent Response Agent\LogLite.dll
[Loaded DLLs] C:\Program Files\Mandiant\Mandiant Intelligent Response Agent\zlib1.dll
[Loaded DLLs] C:\Program Files\Mandiant\Mandiant Intelligent Response Agent\libxml2.dll
[Loaded DLLs] C:\WINDOWS\system32\AMINIT.dll
[Loaded DLLs] C:\WINDOWS\system32\MFC42.DLL
[Loaded DLLs] C:\WINDOWS\system32\MSVCIRT.dll
[Loaded DLLs] C:\WINDOWS\system32\vpnapi.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\cdwsock.dll
[Loaded DLLs] C:\PROGRA~1\altiris\CARBON~1\gcc.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\CCDOSKEY.DLL
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\iutility.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\SECUI.DLL
[Loaded DLLs] C:\WINDOWS\system32\AMINIT.dll
[Loaded DLLs] C:\WINDOWS\system32\OLEACC.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\MsgLog.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\ACommon.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\userprof.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\NETINFO.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\Commdevs.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\PhoneBk.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\registry.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\CONMGRUI.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\MFC71.DLL
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\MCMSGBOX.dll
[Loaded DLLs] C:\Program Files\Altiris\ALTIRIS AGENT\Agents\InventoryRuleAgent\AeXWin32RuleProvider.dll
[Loaded DLLs] C:\Program Files\Altiris\ALTIRIS AGENT\Agents\InventoryRuleAgent\AeXStdRuleProvider.dll
[Loaded DLLs] C:\WINDOWS\system32\loadperf.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiaprpl.dll
[Loaded DLLs] C:\WINDOWS\system32\UTILDLL.dll
[Loaded DLLs] C:\WINDOWS\system32\perfts.dll
[Loaded DLLs] C:\WINDOWS\system32\Perfctrs.dll
[Loaded DLLs] C:\WINDOWS\system32\tapiperf.dll
[Loaded DLLs] C:\WINDOWS\System32\rsvpperf.dll
[Loaded DLLs] C:\WINDOWS\system32\TRAFFIC.dll
[Loaded DLLs] C:\WINDOWS\system32\pschdprf.dll
[Loaded DLLs] C:\WINDOWS\system32\perfproc.dll
[Loaded DLLs] C:\WINDOWS\system32\perfos.dll
[Loaded DLLs] C:\WINDOWS\system32\perfnet.dll
[Loaded DLLs] C:\WINDOWS\system32\perfdisk.dll
[Loaded DLLs] C:\Program Files\Common Files\Microsoft Shared\office12\mso.dll
[Loaded DLLs] C:\PROGRA~1\MICROS~2\Office12\OLMAPI32.DLL
[Loaded DLLs] C:\WINDOWS\system32\MSDTCPRX.dll
[Loaded DLLs] C:\WINDOWS\system32\MFC42u.DLL
[Loaded DLLs] C:\WINDOWS\system32\msdtcuiu.DLL
[Loaded DLLs] C:\WINDOWS\System32\query.dll
[Loaded DLLs] c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_perf.dll
[Loaded DLLs] c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CorperfmonExt.dll
[Loaded DLLs] c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
[Loaded DLLs] c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\perfcounter.dll
[Loaded DLLs] C:\WINDOWS\system32\mscoree.dll
[Loaded DLLs] C:\WINDOWS\system32\netfxperf.dll
[Loaded DLLs] C:\WINDOWS\system32\odbcint.dll
[Loaded DLLs] C:\WINDOWS\system32\odbcbcp.dll
[Loaded DLLs] C:\WINDOWS\system32\pdh.dll
[Loaded DLLs] C:\WINDOWS\system32\AeXSystemPerformance.dll
[Loaded DLLs] C:\Program Files\Common Files\Altiris\AexPackageDelivery.dll
[Loaded DLLs] C:\Program Files\Altiris\ALTIRIS AGENT\Agents\PatchMgmtAgent\PatchMgmtAgents.dll
[Loaded DLLs] C:\Program Files\Altiris\ALTIRIS AGENT\Agents\InventoryRuleAgent\InventoryRuleAgent.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\MSVCR71.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\MSVCP71.dll
[Loaded DLLs] C:\Program Files\Altiris\Carbon Copy\aexcclientagent.dll
[Loaded DLLs] C:\Program Files\Altiris\Altiris Agent\AeXAMAgent.dll
[Loaded DLLs] C:\Program Files\Altiris\Altiris Agent\AeXBasicInventory.dll
[Loaded DLLs] C:\Program Files\Altiris\Altiris Agent\AeXSWDAgent.dll
[Loaded DLLs] C:\WINDOWS\system32\sensapi.dll
[Loaded DLLs] C:\Program Files\Common Files\Altiris\AeXNetComms.dll
[Loaded DLLs] C:\Program Files\Altiris\Altiris Agent\AeXTaskSchedulerLib.dll
[Loaded DLLs] C:\Program Files\Altiris\Altiris Agent\AeXAgentUI.dll
[Loaded DLLs] C:\WINDOWS\system32\msxml3.dll
[Loaded DLLs] C:\WINDOWS\system32\RICHED20.dll
[Loaded DLLs] C:\WINDOWS\system32\RICHED32.DLL
[Loaded DLLs] C:\WINDOWS\system32\inetpp.dll
[Loaded DLLs] C:\WINDOWS\system32\win32spl.dll
[Loaded DLLs] C:\WINDOWS\System32\spool\PRTPROCS\W32X86\msonpppr.dll
[Loaded DLLs] C:\WINDOWS\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll
[Loaded DLLs] C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll
[Loaded DLLs] C:\WINDOWS\system32\usbmon.dll
[Loaded DLLs] C:\WINDOWS\system32\tcpmon.dll
[Loaded DLLs] C:\WINDOWS\system32\msonpmon.dll
[Loaded DLLs] C:\WINDOWS\system32\pjlmon.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
[Loaded DLLs] C:\WINDOWS\system32\mdimon.dll
[Loaded DLLs] C:\WINDOWS\system32\CCMONNT.DLL
[Loaded DLLs] C:\WINDOWS\system32\cnbjmon.dll
[Loaded DLLs] C:\WINDOWS\system32\localspl.dll
[Loaded DLLs] C:\WINDOWS\system32\SPOOLSS.DLL
[Loaded DLLs] C:\WINDOWS\system32\AMINIT.dll
[Loaded DLLs] C:\Program Files\Cisco\Cisco AnyConnect VPN Client\vpncommoncrypt.dll
[Loaded DLLs] C:\Program Files\Cisco\Cisco AnyConnect VPN Client\vpncommon.dll
[Loaded DLLs] C:\Program Files\Cisco\Cisco AnyConnect VPN Client\LIBEAY32.dll
[Loaded DLLs] C:\Program Files\Cisco\Cisco AnyConnect VPN Client\SSLEAY32.dll
[Loaded DLLs] C:\WINDOWS\system32\AMINIT.dll
[Loaded DLLs] C:\Program Files\Cisco Systems\SSL VPN Client\Common.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] c:\windows\system32\WUDFPlatform.dll
[Loaded DLLs] c:\windows\system32\wudfsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\rasadhlp.dll
[Loaded DLLs] C:\WINDOWS\System32\winrnr.dll
[Loaded DLLs] C:\WINDOWS\system32\wups2.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\ncprov.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemess.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiprvsd.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\repdrvfs.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiutils.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\FastProx.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\wbemcomn.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\esscli.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\wbemcore.dll
[Loaded DLLs] c:\windows\system32\credui.dll
[Loaded DLLs] c:\windows\system32\netshell.dll
[Loaded DLLs] c:\windows\system32\msi.dll
[Loaded DLLs] c:\windows\system32\wscsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\mspatcha.dll
[Loaded DLLs] C:\WINDOWS\System32\Cabinet.dll
[Loaded DLLs] C:\WINDOWS\system32\wuaueng.dll
[Loaded DLLs] c:\windows\system32\wuauserv.dll
[Loaded DLLs] C:\WINDOWS\system32\VSSAPI.DLL
[Loaded DLLs] c:\windows\system32\wbem\wmisvc.dll
[Loaded DLLs] c:\windows\system32\POWRPROF.dll
[Loaded DLLs] c:\windows\system32\srsvc.dll
[Loaded DLLs] c:\windows\system32\trkwks.dll
[Loaded DLLs] c:\windows\system32\sens.dll
[Loaded DLLs] c:\windows\system32\seclogon.dll
[Loaded DLLs] C:\WINDOWS\System32\RESUTILS.DLL
[Loaded DLLs] C:\WINDOWS\System32\CLUSAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\WSOCK32.dll
[Loaded DLLs] C:\WINDOWS\system32\MTXCLU.DLL
[Loaded DLLs] C:\WINDOWS\system32\colbact.DLL
[Loaded DLLs] C:\WINDOWS\system32\comsvcs.dll
[Loaded DLLs] c:\windows\system32\srvsvc.dll
[Loaded DLLs] c:\windows\system32\HID.DLL
[Loaded DLLs] c:\windows\system32\hidserv.dll
[Loaded DLLs] c:\windows\pchealth\helpctr\binaries\pchsvc.dll
[Loaded DLLs] c:\windows\system32\es.dll
[Loaded DLLs] c:\windows\system32\ersvc.dll
[Loaded DLLs] c:\windows\system32\dmserver.dll
[Loaded DLLs] c:\windows\system32\certcli.dll
[Loaded DLLs] c:\windows\system32\cryptsvc.dll
[Loaded DLLs] c:\windows\system32\WINHTTP.dll
[Loaded DLLs] c:\windows\system32\SHFOLDER.dll
[Loaded DLLs] c:\windows\system32\qmgr.dll
[Loaded DLLs] c:\windows\system32\wkssvc.dll
[Loaded DLLs] c:\windows\system32\audiosrv.dll
[Loaded DLLs] C:\WINDOWS\System32\MSIDLE.DLL
[Loaded DLLs] c:\windows\system32\schedsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\raschap.dll
[Loaded DLLs] C:\WINDOWS\System32\TAPI32.dll
[Loaded DLLs] C:\WINDOWS\System32\rasman.dll
[Loaded DLLs] C:\WINDOWS\System32\RASAPI32.dll
[Loaded DLLs] C:\WINDOWS\System32\MPRAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\iertutil.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\WININET.dll
[Loaded DLLs] C:\WINDOWS\system32\CRYPTUI.dll
[Loaded DLLs] C:\WINDOWS\System32\rastls.dll
[Loaded DLLs] c:\windows\system32\ESENT.dll
[Loaded DLLs] c:\windows\system32\WMI.dll
[Loaded DLLs] c:\windows\system32\rtutils.dll
[Loaded DLLs] c:\windows\system32\wzcsvc.dll
[Loaded DLLs] c:\windows\system32\dhcpcsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\rdpwsx.dll
[Loaded DLLs] c:\windows\system32\ATL.DLL
[Loaded DLLs] c:\windows\system32\adsldpc.dll
[Loaded DLLs] c:\windows\system32\ACTIVEDS.dll
[Loaded DLLs] c:\windows\system32\mstlsapi.dll
[Loaded DLLs] c:\windows\system32\ICAAPI.dll
[Loaded DLLs] c:\windows\system32\termsrv.dll
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] c:\windows\system32\rpcss.dll
[Loaded DLLs] C:\WINDOWS\system32\dssenh.dll
[Loaded DLLs] C:\WINDOWS\system32\psbase.dll
[Loaded DLLs] C:\WINDOWS\system32\pstorsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\WINIPSEC.DLL
[Loaded DLLs] C:\WINDOWS\system32\oakley.DLL
[Loaded DLLs] C:\WINDOWS\system32\ipsecsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\wshtcpip.dll
[Loaded DLLs] C:\WINDOWS\system32\hnetcfg.dll
[Loaded DLLs] C:\WINDOWS\system32\mswsock.dll
[Loaded DLLs] C:\WINDOWS\system32\scecli.dll
[Loaded DLLs] C:\WINDOWS\system32\wdigest.dll
[Loaded DLLs] C:\WINDOWS\system32\schannel.dll
[Loaded DLLs] C:\WINDOWS\system32\w32time.dll
[Loaded DLLs] C:\WINDOWS\system32\netlogon.dll
[Loaded DLLs] C:\WINDOWS\system32\kerberos.dll
[Loaded DLLs] C:\WINDOWS\system32\msprivs.dll
[Loaded DLLs] C:\WINDOWS\system32\SAMSRV.dll
[Loaded DLLs] C:\WINDOWS\system32\DNSAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\NTDSAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\LSASRV.dll
[Loaded DLLs] C:\WINDOWS\system32\eventlog.dll
[Loaded DLLs] C:\WINDOWS\AppPatch\AcGenral.DLL
[Loaded DLLs] C:\WINDOWS\system32\ShimEng.dll
[Loaded DLLs] C:\WINDOWS\system32\umpnpmgr.dll
[Loaded DLLs] C:\WINDOWS\system32\SCESRV.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCP60.dll
[Loaded DLLs] C:\WINDOWS\system32\NCObjAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\netmsg.dll
[Loaded DLLs] C:\WINDOWS\system32\NETUI2.dll
[Loaded DLLs] C:\WINDOWS\system32\MPRUI.dll
[Loaded DLLs] C:\WINDOWS\System32\davclnt.dll
[Loaded DLLs] C:\WINDOWS\System32\NETRAP.dll
[Loaded DLLs] C:\WINDOWS\System32\NETUI1.dll
[Loaded DLLs] C:\WINDOWS\System32\NETUI0.dll
[Loaded DLLs] C:\WINDOWS\System32\ntlanman.dll
[Loaded DLLs] C:\WINDOWS\System32\drprov.dll
[Loaded DLLs] C:\WINDOWS\system32\midimap.dll
[Loaded DLLs] C:\WINDOWS\system32\MSACM32.dll
[Loaded DLLs] C:\WINDOWS\system32\msacm32.drv
[Loaded DLLs] C:\WINDOWS\system32\wdmaud.drv
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] C:\WINDOWS\system32\cscui.dll
[Loaded DLLs] C:\WINDOWS\system32\iphlpapi.dll
[Loaded DLLs] C:\WINDOWS\system32\cryptdll.dll
[Loaded DLLs] C:\WINDOWS\system32\msv1_0.dll
[Loaded DLLs] C:\WINDOWS\system32\COMRes.dll
[Loaded DLLs] C:\WINDOWS\system32\CLBCATQ.DLL
[Loaded DLLs] C:\WINDOWS\system32\SAMLIB.dll
[Loaded DLLs] C:\WINDOWS\system32\WLDAP32.dll
[Loaded DLLs] C:\WINDOWS\system32\NTMARTA.DLL
[Loaded DLLs] C:\WINDOWS\system32\rsaenh.dll
[Loaded DLLs] C:\WINDOWS\system32\OLEAUT32.dll
[Loaded DLLs] C:\WINDOWS\system32\WgaLogon.dll
[Loaded DLLs] C:\WINDOWS\system32\MPR.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSPOOL.DRV
[Loaded DLLs] C:\WINDOWS\system32\WlNotify.dll
[Loaded DLLs] C:\WINDOWS\system32\cscdll.dll
[Loaded DLLs] C:\WINDOWS\system32\WINMM.dll
[Loaded DLLs] C:\WINDOWS\system32\uxtheme.dll
[Loaded DLLs] C:\WINDOWS\system32\sxs.dll
[Loaded DLLs] C:\WINDOWS\system32\WTSAPI32.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSCARD.DLL
[Loaded DLLs] C:\WINDOWS\system32\msctfime.ime
[Loaded DLLs] C:\WINDOWS\system32\Apphelp.dll
[Loaded DLLs] C:\WINDOWS\system32\ole32.dll
[Loaded DLLs] C:\WINDOWS\system32\sfc_os.dll
[Loaded DLLs] C:\WINDOWS\system32\sfc.dll
[Loaded DLLs] C:\WINDOWS\system32\SHSVCS.dll
[Loaded DLLs] C:\WINDOWS\system32\odbcint.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[Loaded DLLs] C:\WINDOWS\system32\comdlg32.dll
[Loaded DLLs] C:\WINDOWS\system32\ODBC32.dll
[Loaded DLLs] C:\WINDOWS\system32\COMCTL32.dll
[Loaded DLLs] C:\WINDOWS\system32\SHLWAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\SHELL32.dll
[Loaded DLLs] C:\WINDOWS\system32\MSGINA.dll
[Loaded DLLs] C:\WINDOWS\system32\AMINIT.dll
[Loaded DLLs] C:\WINDOWS\system32\IMM32.DLL
[Loaded DLLs] C:\WINDOWS\system32\WS2HELP.dll
[Loaded DLLs] C:\WINDOWS\system32\WS2_32.dll
[Loaded DLLs] C:\WINDOWS\system32\IMAGEHLP.dll
[Loaded DLLs] C:\WINDOWS\system32\WINTRUST.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSTA.dll
[Loaded DLLs] C:\WINDOWS\system32\VERSION.dll
[Loaded DLLs] C:\WINDOWS\system32\SETUPAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\REGAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\PSAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\USERENV.dll
[Loaded DLLs] C:\WINDOWS\system32\NETAPI32.dll
[Loaded DLLs] C:\WINDOWS\system32\PROFMAP.dll
[Loaded DLLs] C:\WINDOWS\system32\NDdeApi.dll
[Loaded DLLs] C:\WINDOWS\system32\MSASN1.dll
[Loaded DLLs] C:\WINDOWS\system32\GDI32.dll
[Loaded DLLs] C:\WINDOWS\system32\USER32.dll
[Loaded DLLs] C:\WINDOWS\system32\CRYPT32.dll
[Loaded DLLs] C:\WINDOWS\system32\msvcrt.dll
[Loaded DLLs] C:\WINDOWS\system32\AUTHZ.dll
[Loaded DLLs] C:\WINDOWS\system32\Secur32.dll
[Loaded DLLs] C:\WINDOWS\system32\RPCRT4.dll
[Loaded DLLs] C:\WINDOWS\system32\ADVAPI32.dll
[Loaded DLLs] C:\WINDOWS\system32\kernel32.dll
[Loaded DLLs] C:\WINDOWS\system32\ntdll.dll
[Explorer's DLLs] C:\WINDOWS\system32\themeui.dll
[Explorer's DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
[Explorer's DLLs] C:\Program Files\Microsoft Office\Office12\GrooveNew.DLL
[Explorer's DLLs] C:\Program Files\Microsoft Office\Office12\GrooveUtil.DLL
[Explorer's DLLs] C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
[Explorer's DLLs] C:\WINDOWS\system32\Normaliz.dll
[Explorer's DLLs] C:\WINDOWS\system32\SHDOCVW.dll
[Explorer's DLLs] C:\WINDOWS\system32\BROWSEUI.dll
[Explorer's DLLs] C:\WINDOWS\system32\msimg32.dll
[Explorer's DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
[Explorer's DLLs] C:\WINDOWS\system32\iertutil.dll
[Explorer's DLLs] C:\WINDOWS\system32\WININET.dll
[Explorer's DLLs] C:\WINDOWS\system32\CRYPTUI.dll
[Explorer's DLLs] C:\WINDOWS\AppPatch\AcGenral.DLL
[Explorer's DLLs] C:\WINDOWS\system32\ShimEng.dll
[Explorer's DLLs] C:\WINDOWS\system32\MSACM32.dll
[Explorer's DLLs] C:\WINDOWS\system32\cscui.dll
[Explorer's DLLs] C:\WINDOWS\system32\COMRes.dll
[Explorer's DLLs] C:\WINDOWS\system32\CLBCATQ.DLL
[Explorer's DLLs] C:\WINDOWS\system32\WLDAP32.dll
[Explorer's DLLs] C:\WINDOWS\system32\rsaenh.dll
[Explorer's DLLs] C:\WINDOWS\system32\OLEAUT32.dll
[Explorer's DLLs] C:\WINDOWS\system32\cscdll.dll
[Explorer's DLLs] C:\WINDOWS\system32\WINMM.dll
[Explorer's DLLs] C:\WINDOWS\system32\uxtheme.dll
[Explorer's DLLs] C:\WINDOWS\system32\msctfime.ime
[Explorer's DLLs] C:\WINDOWS\system32\Apphelp.dll
[Explorer's DLLs] C:\WINDOWS\system32\ole32.dll
[Explorer's DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[Explorer's DLLs] C:\WINDOWS\system32\COMCTL32.dll
[Explorer's DLLs] C:\WINDOWS\system32\SHLWAPI.dll
[Explorer's DLLs] C:\WINDOWS\system32\SHELL32.dll
[Explorer's DLLs] C:\WINDOWS\system32\AMINIT.dll
[Explorer's DLLs] C:\WINDOWS\system32\IMM32.DLL
[Explorer's DLLs] C:\WINDOWS\system32\IMAGEHLP.dll
[Explorer's DLLs] C:\WINDOWS\system32\WINTRUST.dll
[Explorer's DLLs] C:\WINDOWS\system32\VERSION.dll
[Explorer's DLLs] C:\WINDOWS\system32\USERENV.dll
[Explorer's DLLs] C:\WINDOWS\system32\NETAPI32.dll
[Explorer's DLLs] C:\WINDOWS\system32\MSASN1.dll
[Explorer's DLLs] C:\WINDOWS\system32\GDI32.dll
[Explorer's DLLs] C:\WINDOWS\system32\USER32.dll
[Explorer's DLLs] C:\WINDOWS\system32\CRYPT32.dll
[Explorer's DLLs] C:\WINDOWS\system32\msvcrt.dll
[Explorer's DLLs] C:\WINDOWS\system32\Secur32.dll
[Explorer's DLLs] C:\WINDOWS\system32\RPCRT4.dll
[Explorer's DLLs] C:\WINDOWS\system32\ADVAPI32.dll
[Explorer's DLLs] C:\WINDOWS\system32\kernel32.dll
[Explorer's DLLs] C:\WINDOWS\system32\ntdll.dll
[Running Services] AClient
[Running Services] AeXNSClient
[Running Services] atchksrv
[Running Services] AudioSrv
[Running Services] BITS
[Running Services] CarbonCopy32
[Running Services] CryptSvc
[Running Services] CVPND
[Running Services] DcomLaunch
[Running Services] Dhcp
[Running Services] dmserver
[Running Services] Dnscache
[Running Services] ERSvc
[Running Services] ESMScheduler
[Running Services] Eventlog
[Running Services] EventSystem
[Running Services] helpsvc
[Running Services] HidServ
[Running Services] IntelligentResponseAgent
[Running Services] JavaQuickStarterService
[Running Services] lanmanserver
[Running Services] lanmanworkstation
[Running Services] LmHosts
[Running Services] LMS
[Running Services] MDM
[Running Services] Netlogon
[Running Services] PlugPlay
[Running Services] PolicyAgent
[Running Services] ProtectedStorage
[Running Services] PRTGService
[Running Services] prtgwatchservice
[Running Services] RMIRegistry
[Running Services] RpcSs
[Running Services] SamSs
[Running Services] Schedule
[Running Services] seclogon
[Running Services] SENS
[Running Services] ShellHWDetection
[Running Services] Spooler
[Running Services] STCAgent
[Running Services] TermService
[Running Services] Themes
[Running Services] TrkWks
[Running Services] UNS
[Running Services] vpnagent
[Running Services] W32Time
[Running Services] winmgmt
[Running Services] WmiApSrv
[Running Services] wuauserv
[Running Services] WudfSvc
[Running Services] WZCSVC
[Uninstall]
[Applications] :HKLM Meeting Service=C:\WINDOWS\DOWNLO~1\atcliun.exe
[Applications] :HKLM Adobe AIR=c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
[Applications] :HKLM Adobe Flash Player 10 ActiveX=C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
[Applications] :HKLM Adobe Flash Player 10 Plugin=C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
[Applications] :HKLM Agent Ransack Version 1.7.3="C:\Program Files\Mythicsoft\Agent Ransack\unins000.exe"
[Applications] :HKLM Altiris Carbon Copy Solution Agent 6.2=MsiExec.exe /x {332454D8-73B0-4b4a-954C-D96089CD898A} /qf
[Applications] :HKLM AltirisAgent=C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe /uninstall
[Applications] :HKLM Branding
[Applications] :HKLM Cisco SSL VPN Client=C:\Program Files\Cisco Systems\SSL VPN Client\uninstall.exe
[Applications] :HKLM MetaFrame Presentation Server Web Client for Win32=RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wficat.inf,DefaultUninstall
[Applications] :HKLM Connection Manager
[Applications] :HKLM Microsoft Office Enterprise 2007="C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
[Applications] :HKLM Enterprise Switch Manager="C:\Nortel\ESM\UninstallerData\Uninstall Enterprise Switch Manager.exe"
[Applications] :HKLM ExamDiff 1.8 (Build 1.8.0.4)="C:\Program Files\ExamDiff\unins000.exe"
[Applications] :HKLM Ext2 IFS 1.11a for Windows XP=RunDll32 setupapi.dll,InstallHinfSection DefaultUninstall 130 Ext2Ifs_for_NT501.inf
[Applications] :HKLM Intel® Graphics Media Accelerator Driver=C:\WINDOWS\system32\igxpun.exe -uninstall
[Applications] :HKLM Intel® Management Engine Interface=C:\WINDOWS\system32\heciudlg.exe -uninstall
[Applications] :HKLM Microsoft Internationalized Domain Names Mitigation APIs="C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
[Applications] :HKLM Windows Internet Explorer 7="C:\WINDOWS\ie7\spuninst\spuninst.exe"
[Applications] :HKLM InstallShield Uninstall Information
[Applications] :HKLM SolarWinds TFTP Server=C:\Program Files\InstallShield Installation Information\{1AA86313-B188-498D-91CF-D017AC5A82A5}\setup.exe -runfromtemp -l0x0409
[Applications] :HKLM Java Device Manager="C:\Nortel\ESM\UninstallerData\Uninstall Java Device Manager.exe"
[Applications] :HKLM High Definition Audio Driver Package - KB835221=C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
[Applications] :HKLM Windows XP Hotfix - KB873339=C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
[Applications] :HKLM KB884016
[Applications] :HKLM KB884267
[Applications] :HKLM KB885353
[Applications] :HKLM Windows XP Hotfix - KB885835=C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
[Applications] :HKLM Windows XP Hotfix - KB885836=C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
[Applications] :HKLM Windows XP Hotfix - KB886185=C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
[Applications] :HKLM KB886612
[Applications] :HKLM KB887078
[Applications] :HKLM Windows XP Hotfix - KB887472=C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
[Applications] :HKLM KB887626
[Applications] :HKLM Windows XP Hotfix - KB888302=C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
[Applications] :HKLM KB888656
[Applications] :HKLM KB889858
[Applications] :HKLM Security Update for Windows XP (KB890046)="C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
[Applications] :HKLM Windows XP Hotfix - KB890859="C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
[Applications] :HKLM KB891122
[Applications] :HKLM Windows XP Hotfix - KB891781=C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
[Applications] :HKLM Windows Genuine Advantage Validation Tool (KB892130)
[Applications] :HKLM KB892313
[Applications] :HKLM KB893240
[Applications] :HKLM KB893241
[Applications] :HKLM Security Update for Windows XP (KB893756)="C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
[Applications] :HKLM KB893803
[Applications] :HKLM Windows Installer 3.1 (KB893803)="C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB894391)="C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
[Applications] :HKLM KB895181
[Applications] :HKLM KB895316
[Applications] :HKLM KB895572
[Applications] :HKLM Security Update for Windows XP (KB896358)="C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB896423)="C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB896428)="C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
[Applications] :HKLM KB897586
[Applications] :HKLM Update for Windows XP (KB898461)="C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
[Applications] :HKLM KB898549
[Applications] :HKLM Security Update for Windows XP (KB899587)="C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB899591)="C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
[Applications] :HKLM KB900399
[Applications] :HKLM Update for Windows XP (KB900485)="C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB900725)="C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB901017)="C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB901214)="C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
[Applications] :HKLM KB902344
[Applications] :HKLM Security Update for Windows XP (KB902400)="C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB904706)="C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB905414)="C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB905749)="C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
[Applications] :HKLM KB907658
[Applications] :HKLM Security Update for Windows XP (KB908519)="C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB908531)="C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB910437)="C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB911280)="C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB911562)="C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player (KB911564)="C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe"
[Applications] :HKLM KB911565
[Applications] :HKLM KB911854
[Applications] :HKLM Security Update for Windows XP (KB911927)="C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB913580)="C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB914388)="C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB914389)="C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB915865)="C:\WINDOWS\$NtUninstallKB915865$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB916595)="C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB916846)="C:\WINDOWS\$NtUninstallKB916846$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB917344)="C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB917953)="C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB918118)="C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB918439)="C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB919007)="C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920213)="C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920670)="C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920683)="C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB920685)="C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB920872)="C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB921503)="C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB922582)="C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB922819)="C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923191)="C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923414)="C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923561)="C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923689)="C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB923789)=C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
[Applications] :HKLM Security Update for Windows XP (KB923980)="C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB924270)="C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB924496)="C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB924667)="C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 6.4 (KB925398)="C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB925720)="C:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB925876)="C:\WINDOWS\$NtUninstallKB925876$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB925902)="C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB926239)="C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB926255)="C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB926436)="C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB927779)="C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB927802)="C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB927891)="C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB928255)="C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB928843)="C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB929123)="C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows Media Format 11 SDK (KB929399)="C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB930178)="C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB930916)="C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB931261)="C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB931784)="C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for CAPICOM (KB931906)=MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
[Applications] :HKLM Security Update for Windows XP (KB932168)="C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Microsoft .NET Framework 3.0 (KB932471)=C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {ECD292A0-0347-4244-8C24-5DBCE990FB40} /package {BAF78226-3200-4DB4-BE33-4D922A799840}
[Applications] :HKLM Update for Windows XP (KB932823-v3)="C:\WINDOWS\$NtUninstallKB932823-v3$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB933360)="C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB933729)="C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB935839)="C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB935840)="C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB936021)="C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB936357)="C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 11 (KB936782)="C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 9 (KB936782)="C:\WINDOWS\$NtUninstallKB936782_WMP9$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB937143)="C:\WINDOWS\$NtUninstallKB937143$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB937894)="C:\WINDOWS\$NtUninstallKB937894$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB938127)="C:\WINDOWS\$NtUninstallKB938127$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB938127-v2)="C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB938464)="C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB938828)="C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB938829)="C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB939653)="C:\WINDOWS\$NtUninstallKB939653$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows Media Player 11 (KB939683)="C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941202)="C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941568)="C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941569)="C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941644)="C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB941693)="C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB942615)="C:\WINDOWS\$NtUninstallKB942615$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB943055)="C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB943460)="C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB943485)="C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB944338-v2)="C:\WINDOWS\$NtUninstallKB944338-v2$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB944533)="C:\WINDOWS\$NtUninstallKB944533$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB944653)="C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB945553)="C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB946026)="C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB946648)="C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB947864)="C:\WINDOWS\$NtUninstallKB947864$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB948590)="C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB948881)="C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950749)="C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950759)="C:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950760)="C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950762)="C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB950974)="C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951066)="C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB951072-v2)="C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951376-v2)="C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951698)="C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB951748)="C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB952004)="C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player (KB952069)="C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB952287)="C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB952954)="C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB953155)="C:\WINDOWS\$NtUninstallKB953155$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB953838)="C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player 11 (KB954154)="C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player (KB954155)="C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB954211)="C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB954550-v5)
[Applications] :HKLM Security Update for Windows XP (KB954600)="C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB955069)="C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB955759)="C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB955839)="C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956390)="C:\WINDOWS\$NtUninstallKB956390$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956391)="C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956572)="C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956744)="C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956802)="C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956803)="C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956841)="C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB956844)="C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB957095)="C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB957097)="C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB958215)="C:\WINDOWS\$NtUninstallKB958215$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB958644)="C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB958687)="C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB958690)="C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB958869)="C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB959426)="C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
[Applications] :HKLM Critical Update for Windows Media Player 11 (KB959772)="C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB960225)="C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB960714)="C:\WINDOWS\$NtUninstallKB960714$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB960715)="C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB960803)="C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB960859)="C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
[Applications] :HKLM Hotfix for Windows XP (KB961118)="C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB961371)="C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB961371-v2)="C:\WINDOWS\$NtUninstallKB961371-v2$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB961373)="C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB961501)="C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB963027)="C:\WINDOWS\$NtUninstallKB963027$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB963027)="C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB967715)="C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB968389)="C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB968537)="C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player (KB968816)="C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB969059)="C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB969897)="C:\WINDOWS\$NtUninstallKB969897$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB969897)="C:\WINDOWS\ie7updates\KB969897-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB969947)="C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB970238)="C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB970430)="C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB971032)="C:\WINDOWS\$NtUninstallKB971032$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB971486)="C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB971557)="C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB971633)="C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB971657)="C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB971737)="C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB971961)="C:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB972260)="C:\WINDOWS\ie7updates\KB972260-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB973346)="C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB973354)="C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB973507)="C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB973525)="C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Media Player (KB973540)="C:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB973687)="C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows XP (KB973815)="C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB973869)="C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB973904)="C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB974112)="C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB974318)="C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB974392)="C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB974455)="C:\WINDOWS\ie7updates\KB974455-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB974571)="C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB975025)="C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows XP (KB975467)="C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
[Applications] :HKLM Security Update for Windows Internet Explorer 7 (KB976325)="C:\WINDOWS\ie7updates\KB976325-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Update for Windows Internet Explorer 7 (KB976749)="C:\WINDOWS\ie7updates\KB976749-IE7\spuninst\spuninst.exe"
[Applications] :HKLM Malwarebytes' Anti-Malware="C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
[Applications] :HKLM McAfee AntiSpyware Enterprise Module="C:\Program Files\McAfee\VirusScan Enterprise\scan32.exe" /UninstallMAS
[Applications] :HKLM Intel® Active Management Technology=C:\WINDOWS\system32\mesoludlg.exe -uninstall
[Applications] :HKLM Microsoft .NET Framework 3.5 SP1=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
[Applications] :HKLM Visual Studio 2005 Tools for Office Second Edition Runtime=c:\Program Files\Common Files\Microsoft Shared\VSTO\8.0\Microsoft Visual Studio 2005 Tools for Office Runtime\install.exe
[Applications] :HKLM Mozilla Firefox (3.5.5)=C:\Program Files\Mozilla Firefox\uninstall\helper.exe
[Applications] :HKLM Microsoft Compression Client Pack 1.0 for Windows XP="C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
[Applications] :HKLM MSI30-Beta1
[Applications] :HKLM MSI30-Beta2
[Applications] :HKLM MSI30-KB884016
[Applications] :HKLM MSI30-RC1
[Applications] :HKLM MSI30-RC2
[Applications] :HKLM MSI30a-KB884016
[Applications] :HKLM MSI31-Beta
[Applications] :HKLM MSI31-RC1
[Applications] :HKLM Network and Security Manager="C:\Program Files\Network and Security Manager\UninstallerData\Uninstall Network and Security Manager.exe"
[Applications] :HKLM Microsoft National Language Support Downlevel APIs="C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
[Applications] :HKLM Microsoft Office Language Pack 2007 - Swedish/svenska="C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall OMUI.SV-SE /dll OSETUP.DLL
[Applications] :HKLM Password Safe="C:\password safe\Uninstall.exe"
[Applications] :HKLM PCHealth=rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
[Applications] :HKLM Intel® PRO Network Connections Drivers=Prounstl.exe
[Applications] :HKLM VanDyke Software SecureCRT 5.0=C:\PROGRA~1\SECURE~1\UNINSTAL.EXE C:\PROGRA~1\SECURE~1\INSTALL.LOG
[Applications] :HKLM Sophos Anti-Rootkit 1.5.0=C:\Program Files\Sophos\Sophos Anti-Rootkit\helper.exe remove
[Applications] :HKLM Tera Term Pro=C:\WINDOWS\ttuninst.exe
[Applications] :HKLM UnHackMe 5.70 release="C:\Program Files\UnHackMe\unins000.exe"
[Applications] :HKLM Microsoft Office Visio Professional 2007="C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall VISPRO /dll OSETUP.DLL
[Applications] :HKLM Windows Genuine Advantage Notifications (KB905474)
[Applications] :HKLM Windows Imaging Component="C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
[Applications] :HKLM Windows Media Format 11 runtime="C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
[Applications] :HKLM Windows Media Player 11="C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
[Applications] :HKLM WinPcap 4.1.1=C:\Program Files\WinPcap\uninstall.exe
[Applications] :HKLM WinRAR archiver=C:\Program Files\WinRAR\uninstall.exe
[Applications] :HKLM Wireshark 1.2.5="C:\Program Files\Wireshark\uninstall.exe"
[Applications] :HKLM WMCSetup
[Applications] :HKLM Windows Media Format 11 runtime="C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
[Applications] :HKLM Windows Media Player 11="C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
[Applications] :HKLM Microsoft User-Mode Driver Framework Feature Pack 1.0="C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
[Applications] :HKLM XML Paper Specification Shared Components Pack 1.0
[Applications] :HKLM McAfee SiteAdvisor Enterprise Plus=MsiExec.exe /X{00FC3F65-86EB-475E-881F-A5B1CF731320}
[Applications] :HKLM VC 9.0 Runtime=MsiExec.exe /I{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}
[Applications] :HKLM HiJackThis=MsiExec.exe /X{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}
[Applications] :HKLM Microsoft Office Communicator 2007 R2=MsiExec.exe /X{0D1CBBB9-F4A8-45B6-95E7-202BA61D7AF4}
[Applications] :HKLM Security Update for CAPICOM (KB931906)=MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
[Applications] :HKLM SolidWorks eDrawings 2009=MsiExec.exe /I{13C5282E-473B-4AA1-A659-FEC1A82F813B}
[Applications] :HKLM Vista tn3270=MsiExec.exe /I{14B27909-C49A-46D4-938A-B53C710EF25A}
[Applications] :HKLM Cisco AnyConnect VPN Client=MsiExec.exe /X{17E1BC18-8B8C-4160-B759-C47294B5A9C2}
[Applications] :HKLM SolarWinds TFTP Server
[Applications] :HKLM Java™ 6 Update 11=MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216010FF}
[Applications] :HKLM Altiris Task Synchronization Agent=MsiExec.exe /X{2851123E-5786-41BE-A3F1-A9B21E499EEB}
[Applications] :HKLM WordFinder - Engelska ordboken FAR SRS=MsiExec.exe /I{28601286-A4BD-48DD-9FA3-DE15663FFEAF}
[Applications] :HKLM Acrobat.com=MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
[Applications] :HKLM Mandiant Intelligent Response Agent=MsiExec.exe /I{29EEA7B1-7BF8-4262-8A50-03E0FE06BEEA}
[Applications] :HKLM Altiris Carbon Copy Solution Agent =MsiExec.exe /X{332454D8-73B0-4B4A-954C-D96089CD898A}
[Applications] :HKLM WebFldrs XP
[Applications] :HKLM McAfee VirusScan Enterprise=MsiExec.exe /I{35C03C04-3F1F-42C2-A989-A757EE691F65}
[Applications] :HKLM McAfee Agent=MsiExec.exe /X{36FE3EDA-0C18-48DE-934B-D9862F82A7A8}
[Applications] :HKLM Microsoft Visual Studio 2005 Tools for Office Runtime=MsiExec.exe /X{388E4B09-3E71-4649-8921-F44A3A2954A7}
[Applications] :HKLM Remedy User 6.3=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{437B532F-EB2B-40A2-8585-DEFA15F92C76}\Setup.exe" -l0x9 Useruninstall
[Applications] :HKLM Altiris Application Metering Agent=MsiExec.exe /I{4A702DA1-9E48-4346-8030-26B399CCFA8C}
[Applications] :HKLM ITT Fonts=MsiExec.exe /I{4AD16F89-A4D1-42CE-85E4-EB9125376984}
[Applications] :HKLM Microsoft Office 2007 Primary Interop Assemblies=MsiExec.exe /X{50120000-1105-0000-0000-0000000FF1CE}
[Applications] :HKLM VPN Client=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5624C000-B109-11D4-9DB4-00E0290FCAC5}\Setup.exe" -l0x9 VpnUninstall
[Applications] :HKLM MSXML 6 Service Pack 2 (KB973686)=MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}
[Applications] :HKLM Windows Server 2003 Administration Tools Pack=MsiExec.exe /I{5E076CF2-EFED-43A2-A623-13E0D62EC7E0}
[Applications] :HKLM Avanquest update="C:\Program Files\InstallShield Installation Information\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}\Setup.exe" -runfromtemp -l0x0009 -removeonly
[Applications] :HKLM Microsoft Visual C++ 2005 Redistributable=MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
[Applications] :HKLM MSXML 4.0 SP2 (KB954430)=MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
[Applications] :HKLM Microsoft Software Update for Web Folders (English) 12
[Applications] :HKLM Microsoft Software Update for Web Folders (Swedish) 12
[Applications] :HKLM Microsoft Office Access MUI (English) 2007=MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office Access MUI (Swedish) 2007=MsiExec.exe /X{90120000-0015-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0015-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office Excel MUI (English) 2007=MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office Excel MUI (Swedish) 2007=MsiExec.exe /X{90120000-0016-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0016-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office SharePoint Designer MUI (Swedish) 2007=MsiExec.exe /X{90120000-0017-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0017-041D-0000-0000000FF1CE} /uninstall {6BF69B6E-06EF-4761-B62E-663EF7C449B5}
[Applications] :HKLM Microsoft Office PowerPoint MUI (English) 2007=MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office PowerPoint MUI (Swedish) 2007=MsiExec.exe /X{90120000-0018-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0018-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office Publisher MUI (English) 2007=MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office Publisher MUI (Swedish) 2007=MsiExec.exe /X{90120000-0019-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0019-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office Outlook MUI (English) 2007=MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office Outlook MUI (Swedish) 2007=MsiExec.exe /X{90120000-001A-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001A-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office Word MUI (English) 2007=MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office Word MUI (Swedish) 2007=MsiExec.exe /X{90120000-001B-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001B-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office Proof (German) 2007=MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
[Applications] :HKLM Microsoft Office Proof (English) 2007=MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
[Applications] :HKLM Microsoft Office Proof (Finnish) 2007=MsiExec.exe /X{90120000-001F-040B-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-040B-0000-0000000FF1CE} /uninstall {8C00DF3E-E8BD-4C6A-B86F-0135E11DAF1C}
[Applications] :HKLM Microsoft Office Proof (French) 2007=MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
[Applications] :HKLM Microsoft Office Proof (Swedish) 2007=MsiExec.exe /X{90120000-001F-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-041D-0000-0000000FF1CE} /uninstall {43722AA8-ACEA-4F54-9B83-2467D376EF8A}
[Applications] :HKLM Microsoft Office Proof (Spanish) 2007=MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)=msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
[Applications] :HKLM Compatibility Pack for the 2007 Office system=MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
[Applications] :HKLM Compatibility Pack för Office 2007-systemet=MsiExec.exe /X{90120000-0020-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing (English) 2007=MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Proofing (Swedish) 2007=MsiExec.exe /X{90120000-002C-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Enterprise 2007=MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
[Applications] :HKLM Security Update for Microsoft Office Outlook 2007 (KB972363)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
[Applications] :HKLM Security Update for Microsoft Office system 2007 (972581)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
[Applications] :HKLM Update for Microsoft Office InfoPath 2007 (KB976416)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {432C5EE4-8096-4FF1-95E1-65219365DFF7}
[Applications] :HKLM Security Update for Microsoft Office system 2007 (KB969613)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB969559)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
[Applications] :HKLM Security Update for Microsoft Office Visio Viewer 2007 (KB973709)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
[Applications] :HKLM Security Update for Microsoft Office PowerPoint 2007 (KB957789)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
[Applications] :HKLM Security Update for Microsoft Office Publisher 2007 (KB969693)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
[Applications] :HKLM Security Update for Microsoft Office Excel 2007 (KB973593)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
[Applications] :HKLM Update for 2007 Microsoft Office System (KB967642)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
[Applications] :HKLM Security Update for Microsoft Office Word 2007 (KB969604)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB973704)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
[Applications] :HKLM Update for Outlook 2007 Junk Email Filter (kb976884)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FB60F280-C70F-4174-BADB-471412AA42F0}
[Applications] :HKLM Security Update for Microsoft Office system 2007 (KB974234)=msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
[Applications] :HKLM Microsoft Office InfoPath MUI (English) 2007=MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office InfoPath MUI (Swedish) 2007=MsiExec.exe /X{90120000-0044-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0044-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office Visio Professional 2007=MsiExec.exe /X{90120000-0051-0000-0000-0000000FF1CE}
[Applications] :HKLM Security Update for Microsoft Office system 2007 (972581)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB969559)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB951944)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
[Applications] :HKLM Microsoft Office Visio 2007 Service Pack 1 (SP1)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {AA4F2610-5FF1-4DCD-A6FB-BCA2D09A6443}
[Applications] :HKLM Security Update for 2007 Microsoft Office System (KB951550)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
[Applications] :HKLM Update for 2007 Microsoft Office System (KB967642)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
[Applications] :HKLM Security Update for Microsoft Office Visio 2007 (KB957831)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {DA824D83-D80E-47AE-9726-7F5E810330C8}
[Applications] :HKLM Security Update for Microsoft Office system 2007 (KB974234)=msiexec /package {90120000-0051-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
[Applications] :HKLM Microsoft Office Visio MUI (English) 2007=MsiExec.exe /X{90120000-0054-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Visio 2007 Service Pack 1 (SP1)=msiexec /package {90120000-0054-0409-0000-0000000FF1CE} /uninstall {EA35370F-586C-45E1-AC6C-A4E275C6B762}
[Applications] :HKLM Microsoft Office Shared MUI (English) 2007=MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
[Applications] :HKLM Microsoft Office Shared MUI (Swedish) 2007=MsiExec.exe /X{90120000-006E-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-006E-041D-0000-0000000FF1CE} /uninstall {8C2A0B2D-382B-428C-9E8D-247D31B22201}
[Applications] :HKLM Microsoft Office OneNote MUI (English) 2007=MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office OneNote MUI (Swedish) 2007=MsiExec.exe /X{90120000-00A1-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-00A1-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Save as PDF Add-in for 2007 Microsoft Office programs=MsiExec.exe /X{90120000-00B0-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Save as XPS Add-in for 2007 Microsoft Office programs=MsiExec.exe /X{90120000-00B1-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs=MsiExec.exe /X{90120000-00B2-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office Groove MUI (English) 2007=MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office Groove MUI (Swedish) 2007=MsiExec.exe /X{90120000-00BA-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-00BA-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office O MUI (Swedish) 2007=MsiExec.exe /X{90120000-0100-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0100-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office X MUI (Swedish) 2007=MsiExec.exe /X{90120000-0101-041D-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0101-041D-0000-0000000FF1CE} /uninstall {1AEE207F-E4DC-4A6C-9ACD-D1218F08B442}
[Applications] :HKLM Microsoft Office Groove Setup Metadata MUI (English) 2007=MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office Shared Setup Metadata MUI (English) 2007=MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
[Applications] :HKLM Microsoft Office Access Setup Metadata MUI (English) 2007=MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
[Applications] :HKLM Microsoft Office 2007 Service Pack 2 (SP2)=msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
[Applications] :HKLM Microsoft Office 2003 Swedish User Interface Pack=MsiExec.exe /I{901E041D-6000-11D3-8CFE-0150048383C9}
[Applications] :HKLM Microsoft Office 2003 Proofing Tools=MsiExec.exe /I{901F0409-6000-11D3-8CFE-0150048383C9}
[Applications] :HKLM Microsoft Office Project Professional 2003=MsiExec.exe /I{903B0409-6000-11D3-8CFE-0150048383C9}
[Applications] :HKLM {92F2A534-C3E4-4B18-BEBD-329F5E848C8B}=C:\Program Files\Altiris\Altiris Agent\AeXNSAgent.exe /uninstall
[Applications] :HKLM ITAR Outlook 2007 Plugin=MsiExec.exe /I{95273A2F-6C11-4A83-98C7-39E2C7B27A50}
[Applications] :HKLM Altiris Software Delivery Solution Agent=MsiExec.exe /X{A0A1EB01-A6FD-423A-8480-364055A7C961}
[Applications] :HKLM Adobe AIR=MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
[Applications] :HKLM Microsoft .NET Framework 3.0 Service Pack 2=MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
[Applications] :HKLM Adobe Reader 9.1=MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A91000000001}
[Applications] :HKLM Spelling Dictionaries Support For Adobe Reader 8=MsiExec.exe /I{AC76BA86-7AD7-5464-3428-800000000003}
[Applications] :HKLM Altiris NS Agent (ITT)=MsiExec.exe /X{AEA0627E-B2C8-47EE-B1BD-063080EE1880}
[Applications] :HKLM Windows Presentation Foundation=MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
[Applications] :HKLM {BB8B979E-E336-47E7-96BC-1031C1B94561}
[Applications] :HKLM MSXML 4.0 SP2 (KB936181)=MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
[Applications] :HKLM Microsoft .NET Framework 2.0 Service Pack 2=MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
[Applications] :HKLM Microsoft XML Parser
[Applications] :HKLM Microsoft .NET Framework 3.5 SP1=MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
[Applications] :HKLM {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB350003
[Applications] :HKLM Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)=C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
[Applications] :HKLM Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)=C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
[Applications] :HKLM {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB960043
[Applications] :HKLM Update for Microsoft .NET Framework 3.5 SP1 (KB963707)=C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
[Applications] :HKLM SoundMAX=RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\setup.exe" -l0x1d -removeonly
[Applications] :HKLM MSXML 4.0 SP2 (KB973688)=MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
[MD5]
[C9830DAFDC929D22F8763A6A72CB4181][2 49152 B4A3C9975AE4D91CA0B6DAF8FA841828C58C132A ]C:\NORTEL\ESM\ESMSERVICE.EXE
[C01709C25FB0408072D83B3E6B054E4B][2 135168 D781D55B91DCDAB357FF2FB266C7E34BE82A5E9A ]C:\NORTEL\ESM\JRE\BIN\JAVA.EXE
[1F73365402528E3C670E2F2F3E3EDF94][2 25600 20D8E785BCB73EE2257ADCA9F0701F0310914487 ]C:\NORTEL\ESM\JRE\BIN\RMIREGISTRY.EXE
[ADCFCADB4825F82C798ECFECD9290E26][2 2256896 9EE1B40EF90A214E7B74AD6A88CA5C85B45A1838 ]C:\PASSWORD SAFE\PWSAFE.EXE
[85F7666B4C61A1987172C4032D34FA11][2 1437696 9FCDF00949EDAC5DAD8F18D31EDB808DB5B899E5 ]C:\PROGRA~1\ALTIRIS\CARBON~1\CLIENT.EXE
[AEF204E782BFA2C8448CB43A58960744][1 39464 DF21FB466085D9848A795A71C77361EDA73334B5 ]C:\PROGRA~1\MICROS~2\OFFICE12\REFIEBAR.DLL
[82CCDB6A53918EBB5E095F502C81A477][1 7502600 9B476F9819ACDCBE6E0B7C2508769AFDE84AF32C ]C:\PROGRA~1\UNHACKME\REANIMATOR.EXE
[748B7DB364C4823B79B5F5D989B6871E][1 1387744 0E7A4D8755E8782A7C370C400309D31E342434B1 ]C:\PROGRA~1\UNHACKME\UNHACKME.EXE
[452FA961163EF4AEE4815796A13AB2CF][1 35696 225F15C62B396C467623527BE89AB0DE83D891DE ]C:\PROGRAM FILES\ADOBE\READER 9.0\READER\READER_SL.EXE
[25301927664FFDEB78799C49E1A400F1][2 5222476 B4A5E9467ACC17AF0C0B91205031620C87EE79CF ]C:\PROGRAM FILES\ALTIRIS\ACLIENT\ACLIENT.EXE
[30D894D34B9430AF5CC8D4F0E7A48DAC][2 184320 EE88BE16EF32C6D86F379435D124981BD15F7696 ]C:\PROGRAM FILES\ALTIRIS\ACLIENT\ACLNTUSR.EXE
[72A56D49CAC3194F192AFA801EA6E648][1 153416 DE05165C217BC4AA05C6850FD88D397C1769FE2A ]C:\PROGRAM FILES\ALTIRIS\ALTIRIS AGENT\AEXAGENTACTIVATE.EXE
[FCAA146C2B19508D069D2A81B9A82B15][2 1282048 9FE8B0AA2240793DA68A96E10E1D8F79611EB959 ]C:\PROGRAM FILES\ALTIRIS\ALTIRIS AGENT\AEXNSAGENT.EXE
[CA5A36EF75DB70274C6076B483EBB60B][2 724992 388EB75F5E45A2D3210405494BE36BF808B6D089 ]C:\PROGRAM FILES\ALTIRIS\CARBON COPY\SHELLKER.EXE
[0C5F9D4D8EA3F2ABC0FE916FE43CE2BB][1 1036288 71080235324757F9FDAAD3B318F150D93063E78A ]C:\PROGRAM FILES\ANALOG DEVICES\CORE\SMAX4PNP.EXE
[07D04C9FE87D21434162D977B56414E6][1 267016 DF9B4A1C1C875467F60762DA34462BEE36EE6450 ]C:\PROGRAM FILES\CISCO SYSTEMS\SSL VPN CLIENT\AGENT.EXE
[C64D9A84723E874BF5168D7BF420F85D][1 1504304 4759D5478A0835F9FE41DD894571031D31CC7CCF ]C:\PROGRAM FILES\CISCO SYSTEMS\VPN CLIENT\CVPND.EXE
[0DC4AF4DCB8950F84B3A5F034D8F1093][1 1528880 09EFF11A242ACB222F838A8EC62E1F82615D9281 ]C:\PROGRAM FILES\CISCO SYSTEMS\VPN CLIENT\VPNGUI.EXE
[F7FBBC1F6943A493727FC8D369FE1FE3][1 336944 7ABB420ED98286F9C5F00E34728E7746AB77F353 ]C:\PROGRAM FILES\CISCO\CISCO ANYCONNECT VPN CLIENT\VPNAGENT.EXE
[5CF6190CD875DA6B35256FEE573E7908][1 75128 D3404C44712F5D6B9A069204E363C16775AA847C ]C:\PROGRAM FILES\COMMON FILES\ADOBE\ACROBAT\ACTIVEX\ACROIEHELPERSHIM.DLL
[1F0E05DFF4F5A833168E49BE1256F002][1 441712 130651909B0D5130BD4EB6EA27334896B6191D47 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\OFFICE12\ODSERV.EXE
[5A432A042DAE460ABE7199B758E8606C][1 145184 821B965267EE15C6C59178777AE7A8DCFC80F4BA ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\SOURCE ENGINE\OSE.EXE
[7CF1B716372B89568AE4C0FE769F5869][2 335872 85B15A1B69DBBB2A39CE2B2CB6D8209E300F8065 ]C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\VS7DEBUG\MDM.EXE
[4945020BC094C322571184A6E8056B3A][2 79360 A8176E9B8F210C6AEE3835804257E78727B421E0 ]C:\PROGRAM FILES\COMMON FILES\SOLIDWORKS SHARED\SERVICE\SOLIDWORKSLICENSING.EXE
[DB6FF27683A1D8A29C57F55EC128532D][1 408344 B11AC81B08E65042A64C14909DB8FAE5BE4197A4 ]C:\PROGRAM FILES\INTEL\AMT\ATCHK.EXE
[EECC1D40AA10F85126708796ABA1E7D5][1 183064 910E8121F97A242B9B6A19E1E6AD17C6E3C633B6 ]C:\PROGRAM FILES\INTEL\AMT\ATCHKSRV.EXE
[C518D248041C259FCFA7175C866915C3][1 109336 95FBB81F6AD023A950829C75D20031FCEDB334DD ]C:\PROGRAM FILES\INTEL\AMT\LMS.EXE
[0558985BD646203DF5F36BF0FBD241A3][1 2521880 24529EAAC58C387416B246172200621147330D06 ]C:\PROGRAM FILES\INTEL\AMT\UNS.EXE
[80675329E0FD54F016C4F8A83C616349][1 634632 D928E7E557EEE67431BB1776A43B53D22ADADD17 ]C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
[5D57FD3DF32DC69CEC3D1D54B4C43162][2 34816 00E22C321A20E095BFD93A33632E1CBC94B510C9 ]C:\PROGRAM FILES\JAVA\JRE6\BIN\JP2SSV.DLL
[32192B4EBE8720ED8D49A455C962CB91][1 152984 19DBFA719DF1EBC49A3DF0E080BBA206B8EF01C4 ]C:\PROGRAM FILES\JAVA\JRE6\BIN\JQS.EXE
[35E6FB6E6003BD54A5D69C9C1C762192][1 320920 30100D284E0E442D6FFF7880943689479E7F1FB6 ]C:\PROGRAM FILES\JAVA\JRE6\BIN\SSV.DLL
[F68EDAFE003F2B3523C0742CD3B8D673][2 73728 87CE831F4A32DF4A38FB33660AD2A7344AC18689 ]C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\IE\JQS_PLUGIN.DLL
[2F45DA195C876AA9D0A3725D52F362F9][1 429392 C79A62B585B501CAE69AA0C7928CE873E910F08C ]C:\PROGRAM FILES\MALWAREBYTES' ANTI-MALWARE\MBAMGUI.EXE
[71415BAF97EEECD15B1074C6C78AACC2][1 1618576 7590F7C495D6FE22F26F7B30314FED4E6DF0F5D9 ]C:\PROGRAM FILES\MANDIANT\MANDIANT INTELLIGENT RESPONSE AGENT\MIRAGENT.EXE
[0A5279C129E0748A23344D5DE1884F85][2 12288 19DB41CBBCD4D1BE843039E94BE6DF229931A212 ]C:\PROGRAM FILES\MANDIANT\MANDIANT INTELLIGENT RESPONSE AGENT\MKTOOLS.SYS
[A88A9713B2B9F7665945626560858E68][1 103744 E213DB31FCFE390D817055FA450EDB825BC4B0CC ]C:\PROGRAM FILES\MCAFEE\COMMON FRAMEWORK\FRAMEWORKSERVICE.EXE
[69ED392871A15EAEE143FF600BFF5E99][1 136512 9BBC0E0615522E805B984B2468B126643B3C88E4 ]C:\PROGRAM FILES\MCAFEE\COMMON FRAMEWORK\UDATERUI.EXE
[42115992A75D17B440C10558A03FC58B][1 116032 838B8D829C3CF3A237F4DF1B8F70873FC7DB7E7E ]C:\PROGRAM FILES\MCAFEE\SITEADVISOR ENTERPRISE\MCIEPLG.DLL
[EB8366FB0496A460B5BFD531C1006D2C][1 222528 6D6CEFC903CAB2D313F35EFD32121084DB711733 ]C:\PROGRAM FILES\MCAFEE\SITEADVISOR ENTERPRISE\MCSACORE.EXE
[4AE1B4E0F6A5A290E6C1586B4E6E294E][1 144704 6B8131A47C1147AF7EA7AA22E6B77A6C2F1C4EFC ]C:\PROGRAM FILES\MCAFEE\VIRUSSCAN ENTERPRISE\MCSHIELD.EXE
[D611536A38FA34C20E6A1163012AD0EB][1 31816 425C14F08F6D5B562B664260F84FBB85A0BCFEDB ]C:\PROGRAM FILES\MCAFEE\VIRUSSCAN ENTERPRISE\MFERKDK.SYS
[71C266F8A10F78FAA99AEF8A23686AC9][1 58688 68AEA9B0DDEF019B4F2864FE64CDDACEDD5C1B6F ]C:\PROGRAM FILES\MCAFEE\VIRUSSCAN ENTERPRISE\SCRIPTCL.DLL
[0A6EF349175FAB47838CCA0637BDC921][1 111952 E8984EA729D20C00FD618CF84CD9EC93221CB27A ]C:\PROGRAM FILES\MCAFEE\VIRUSSCAN ENTERPRISE\SHSTAT.EXE
[067A73B720E8840BD89A083F50F7E9A0][1 54608 DEB8793E2FCB68673C194D40DF51F1223A9097D6 ]C:\PROGRAM FILES\MCAFEE\VIRUSSCAN ENTERPRISE\VSTSKMGR.EXE
[3267351124E831E7B8AC7C9C3CF6A28D][1 5071200 1A9A7679936F73117AC153EEE4785B4B3BC98620 ]C:\PROGRAM FILES\MICROSOFT OFFICE COMMUNICATOR\COMMUNICATOR.EXE
[7C4C76B39D5525C4A465E0BE32528E19][1 65888 AC784DA59EB00A55CF68AB87EB59C5C6EDE51FDE ]C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE12\GROOVEAUDITSERVICE.EXE
[644795F6985C740F5E36E9336B837D0B][1 31072 D2F5F78D437D81BA678F61AE2EEB966AC0715091 ]C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE12\GROOVEMONITOR.EXE
[A6B5A41C0ED007AB6C43CAD899E533D8][1 2217848 9B396D2CFCBB7F4DE686FFB05306FA1B9A8C43EB ]C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE12\GROOVESHELLEXTENSIONS.DLL
[5969E867AECA198E4B550354AF2E7BEC][1 3949904 7B41147ED287DB179C989710A927E31A6C8F0997 ]C:\PROGRAM FILES\PRTG TRAFFIC GRAPHER\PRTG TRAFFIC GRAPHER.EXE
[AD3C0890C45DA684C8E212640880E9D1][2 443904 6D0CCFF2C7F0758199A03D312523FC4B50CA0186 ]C:\PROGRAM FILES\PRTG TRAFFIC GRAPHER\WATCHDOG\PRTGWATCHDOG.EXE
[A4517A433D855E63B55F6A2DF8713FB2][2 61440 990E3C5812489C4EAB763D1BCCC936F690B6B716 ]C:\PROGRAM FILES\SOLARWINDS\TFTPSERVER\SOLARWINDS TFTP SERVER.EXE
[ -2][0 -1 ]C:\PROGRAM FILES\TUNEUP UTILITIES 2009\MEMOPTIMIZER.EXE
[93441DF9E2725C256EF2089C7802EC76][1 594144 CF281D65D393374D0674385A42BA2714C5CF319D ]C:\PROGRAM FILES\UNHACKME\HACKMON.EXE
[F74E3D9A7FA9556C3BBB14D4E5E63D3B][6 913408 5CDF1AB397C196BD73E21CF6681236755560AAC3 ]C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE
[CB4C9A6B1353167578B813DE929B7161][1 215552 4B48A1F9E475830703086B26063C316CD98E609D ]C:\PROGRAM FILES\WINDOWS NT\ACCESSORIES\WORDPAD.EXE
[A780D3EAA74582EA1DEB6BD9C7A3D9C9][1 117264 5FE3571AAF05B356CCF74BFC8FC08836CE101C98 ]C:\PROGRAM FILES\WINPCAP\RPCAPD.EXE
[8FDC3E87529429BB5FBC60CFC46E4E4A][2 45056 CAE6939C3A9B3A59AD6D6F1C7729DAFC2D96675E ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\DOWNLOADMANAGERV2.OCX
[C471BCF664FA832F8B8555E496D005F0][1 94104 809A723AB275C7149BBF7C624B8DFC5B3812A8AB ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\IEATGPC.DLL
[C6D713ED3D10F75659AA60D83BB29733][2 25088 526A328699F4F1C00BD35CC162B0B45A48EC017A ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\IKBUTTON.OCX
[22D906C1C3830923E6F54CE601EAABE3][2 26112 08B0D302739C173593DCC831F4C6B4BB3527A9BC ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\IKMENU.OCX
[DEB76B5E1C757F64E049962B47B36222][1 398632 A93ECFC89B97BD056365DC834034634CF0565455 ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\JUNIPEREXT.EXE
[E4D55EBBB85E2C000BF9DAF887AFB2A3][1 230696 3B041AEAE17DD7CF14546DFBBB92751B4946FFC3 ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\JUNIPERSETUPCLIENT.OCX
[6D61950F8B7A023A64D19F650A314B45][1 660856 C7696580066CE447D0F551E149E804A9812AF570 ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\MANAGER.EXE
[B5EA5C0CD95B0482760D25312D62EE1C][1 1435392 6250A910C348F1F3876C02801D74AF58FCA1C3F5 ]C:\WINDOWS\DOWNLOADED PROGRAM FILES\SWTOOLSET.EXE
[97BD6515465659FF8F3B7BE375B2EA87][1 1033216 972307A3EF93680AFDD03603DF20F2241047A934 ]C:\WINDOWS\EXPLORER.EXE
[D0CB8DEAF008D7CDC794EF6A37EC8134][6 317440 9470A45F3AA17399E9499BFC0B7B1BA6A5601C20 ]C:\WINDOWS\INF\UNREGMP2.EXE
[0E5E4957549056E2BF2C49F4F6B601AD][1 34312 51E6CEA7D2C27FFE21976CD0AC3CF6078042653D ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V2.0.50727\ASPNET_STATE.EXE
[D87ACAED61E417BBA546CED5E7E36D9C][1 69632 6BEACDA3C977838A88B4795BFA42B7AD8FC9A5A2 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V2.0.50727\MSCORSVW.EXE
[C01AC32DC5C03076CFB852CB5DA5229C][1 881664 436FD2F86420D94416304A8ADB6CD6751D03C5B3 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.0\WINDOWS COMMUNICATION FOUNDATION\INFOCARD.EXE
[D34612C5D02D026535B3095D620626AE][1 132096 10F1EC2DAF049045FEAE843437146E19AEB62952 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.0\WINDOWS COMMUNICATION FOUNDATION\SMSVCHOST.EXE
[8BA7C024070F2B7FDD98ED8A4BA41789][1 46104 760F989C9F04ADC60DF790C2FD6099FF10F35EA2 ]C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.0\WPF\PRESENTATIONFONTCACHE.EXE
[3BA608F5B5EB81B972E047FCC1813BFE][1 768512 2635D27AB6BDC893E028D2F11F6A908E5FEF0248 ]C:\WINDOWS\PCHEALTH\HELPCTR\BINARIES\HELPCTR.EXE
[4FD22142F54692463A7B98B7DE175573][1 158208 21D079909EEFFDA4B79DACE30EAFA0860BBD4C62 ]C:\WINDOWS\PCHEALTH\HELPCTR\BINARIES\MSCONFIG.EXE
[8827911A8C37E40C027CBFC88E69D967][1 38912 E36321C1FD4DB447327618D59771C896CEDDF135 ]C:\WINDOWS\PCHEALTH\HELPCTR\BINARIES\PCHSVC.DLL
[9859C0F6936E723E4892D7141B1327D5][6 11648 F27A1EE007EB29DB95BEBEEB16F76322E2CDFDCE ]C:\WINDOWS\SYSTEM32\\DRIVERS\ACPIEC.SYS
[DA1F27D85E0D1525F6621372E7B685E9][6 4224 E3D2DC5EB273FA701DE8AF13B60D6BAAC7629260 ]C:\WINDOWS\SYSTEM32\\DRIVERS\BEEP.SYS
[90A673FC8E12A79AFBED2576F6A7AAF9][6 13952 2D93247F985EF498535BE7B95172182FF829588A ]C:\WINDOWS\SYSTEM32\\DRIVERS\CBIDF2K.SYS
[CF91ECC3DE13CE765F9AB4B9B2B1970E][2 9216 1137F08279155A7E361F50320DCA61A8C2187A3C ]C:\WINDOWS\SYSTEM32\\DRIVERS\CCDEVICE.SYS
[C1B486A7658353D33A10CC15211A873B][6 18688 76094C8E69F435E218A751EC6BDE89F3D861F477 ]C:\WINDOWS\SYSTEM32\\DRIVERS\CDAUDIO.SYS
[CD7D5152DF32B47F4E36F710B35AAE02][1 63744 C82F467B1246D94EFC13F0BCEDC1B0DCCA38BA0D ]C:\WINDOWS\SYSTEM32\\DRIVERS\CDFS.SYS
[3117F595E9615E04F05A54FC15A03B20][1 143360 3D3AA7BDC75DB729072A4A3445186BA51E59FC7F ]C:\WINDOWS\SYSTEM32\\DRIVERS\FASTFAT.SYS
[E153AB8A11DE5452BCF5AC7652DBF3ED][1 34944 C2195F139E7E3B00E3D1889BC4FE42399EB7F019 ]C:\WINDOWS\SYSTEM32\\DRIVERS\FIPS.SYS
[3E1E2BD4F39B0E2B7DC4F4D2BCC2779A][6 7936 2DFF9AEBC441753BBDBF18856337ECAE85ABCF06 ]C:\WINDOWS\SYSTEM32\\DRIVERS\FS_REC.SYS
[5502B58EEF7486EE6F93F3F164DCB808][1 52736 4021843CEFB217B9BBB3147D549BF8970BFA9290 ]C:\WINDOWS\SYSTEM32\\DRIVERS\I8042PRT.SYS
[674D3E5A593475915DC6643317192403][1 92544 7F574C10D5648D69A273C2B7BCCFE547ADF5B471 ]C:\WINDOWS\SYSTEM32\\DRIVERS\KSECDD.SYS
[4AE068242760A1FB6E1A44BF4E16AFA6][6 4224 932F7B2DCD9D42BFAA0F61B586628663BC3D0504 ]C:\WINDOWS\SYSTEM32\\DRIVERS\MNMDD.SYS
[6FC6F9D7ACC36DCA9B914565A3AEDA05][1 30080 F297324EE5BD6109CDB08631E3B9948D9CCA9C79 ]C:\WINDOWS\SYSTEM32\\DRIVERS\MODEM.SYS
[65653F3B4477F3C63E68A9659F85EE2E][1 42240 E3E531D2E2CB3017BF09092E5D1E3173025BB728 ]C:\WINDOWS\SYSTEM32\\DRIVERS\MOUNTMGR.SYS
[561B3A4333CA2DBDBA28B5B956822519][1 19072 7A4CE956BFE7E9B29DFA9572A01DE8EC22EE00D6 ]C:\WINDOWS\SYSTEM32\\DRIVERS\MSFS.SYS
[82035E0F41C2DD05AE41D27FE6CF7DE1][1 107904 CED59A4E7BF3BC5F2D02EA731A3AF4C1F70B6840 ]C:\WINDOWS\SYSTEM32\\DRIVERS\MUP.SYS
[558635D3AF1C7546D26067D5D9B6959E][1 182912 DE08D6D587FE19CE3C61A1CF3773158DF212DBE8 ]C:\WINDOWS\SYSTEM32\\DRIVERS\NDIS.SYS
[59FC3FB44D2669BC144FD87826BB571F][1 38016 69D2EF1146B97EC4C95DAF7D785E743B4B1E5B8B ]C:\WINDOWS\SYSTEM32\\DRIVERS\NDPROXY.SYS
[4F601BCB8F64EA3AC0994F98FED03F8E][1 30848 5C19809C0BA8FAF28BD30FCA584A3C8394A6D2D1 ]C:\WINDOWS\SYSTEM32\\DRIVERS\NPFS.SYS
[19A811EF5F1ED5C926A028CE107FF1AF][1 574464 D1EFC83A3CB762BC596C1866C163DDAE8382A1D5 ]C:\WINDOWS\SYSTEM32\\DRIVERS\NTFS.SYS
[73C1E1F395918BC2C6DD67AF7591A3AD][6 2944 80EB8A76E5579B0136281E4DD4E2D4E56B249E4C ]C:\WINDOWS\SYSTEM32\\DRIVERS\NULL.SYS
[3334430C29DC338092F79C38EF7B4CD0][1 18688 72DF26D29B1C3B733B4EA0CD0CA944B4EF72C249 ]C:\WINDOWS\SYSTEM32\\DRIVERS\PARTMGR.SYS
[70E98B3FD8E963A6A46A2E6247E0BEA1][6 6784 B527518CFA5E61B3DB09179BEA2FA2E0D346828F ]C:\WINDOWS\SYSTEM32\\DRIVERS\PARVDM.SYS
[82A087207DECEC8456FBE8537947D579][1 119936 6CE670C1F044B842C931F01E1115F46A83EEED56 ]C:\WINDOWS\SYSTEM32\\DRIVERS\PCMCIA.SYS
[B54CD38A9EBFBF2B3561426E3FE26F62][1 139528 8351EEDFFECB33C5E229DFF3380BA719EA343D09 ]C:\WINDOWS\SYSTEM32\\DRIVERS\RDPWD.SYS
[0D13B6DF6E9E101013A7AFB0CE629FE0][1 11392 B7361C48DBE2863E62FF07DECE7F13BF9B17A683 ]C:\WINDOWS\SYSTEM32\\DRIVERS\SFLOPPY.SYS
[38D437CF2D98965F239B0ABCD66DCB0F][1 12040 13F3B59E8C1B5F94757DEA069C9B0B4E648842ED ]C:\WINDOWS\SYSTEM32\\DRIVERS\TDPIPE.SYS
[ED0580AF02502D00AD8C4C066B156BE9][1 21896 3C2AFCB8638D00884A4A680172F697A0C51E5006 ]C:\WINDOWS\SYSTEM32\\DRIVERS\TDTCP.SYS
[12F70256F140CD7D52C58C7048FDE657][1 66176 98B136B3A4CDA015D866CA383A1D6CF29508852B ]C:\WINDOWS\SYSTEM32\\DRIVERS\UDFS.SYS
[EE4660083DEBA849FF6C485D944B379B][1 52352 A739F0B4161D93180178EA9EF6AD20452B7E4FEA ]C:\WINDOWS\SYSTEM32\\DRIVERS\VOLSNAP.SYS
[6ABE6E225ADB5A751622A9CC3BC19CE8][6 12032 D7444AFE7E801BC269E04207D17FAF572C41789D ]C:\WINDOWS\SYSTEM32\\DRIVERS\WS2IFSL.SYS
[ -2][0 -1 ]C:\WINDOWS\SYSTEM32\84.TMP
[1081C185AED0660B2B5F173C3E023B23][1 616960 542BCD13B658B2A575A24B666B114DAF85ED6045 ]C:\WINDOWS\SYSTEM32\ADVAPI32.DLL
[F1958FBF86D5C004CF19A5951A9514B7][1 44544 ED44C251C53A9F0CCE20B30E50067F2A89222858 ]C:\WINDOWS\SYSTEM32\ALG.EXE
[C7AE0FD3867DB0D42B03B73C18F3D671][1 17408 74BC069238103C8330097DC27773AE8F6BBD38C6 ]C:\WINDOWS\SYSTEM32\ALRSVC.DLL
[15106F3205708903D958AA01FBAD1A40][2 61440 48A17397A5EC654B73D4B2418BA8F0FAAF5F99AD ]C:\WINDOWS\SYSTEM32\AMINIT.DLL
[9C3C12975C97119412802B181FBEEFFE][1 167936 A9DA3430734D5FF3727734170A6D784192C0985C ]C:\WINDOWS\SYSTEM32\APPMGMTS.DLL
[FB6359FE8864D0CE06B79CD33D188411][1 285696 9BD2B06B8FDE3A4A42A49CCAF9228F1A29141AC1 ]C:\WINDOWS\SYSTEM32\ATMFD.DLL
[DB66DB626E4882EBEF55F136F12C1829][1 42496 3CDCDD75F9BA63C8C8DF782A6D8F5E8D5423AF80 ]C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL
[CC306BF581446D5E443EAE5B3BB900F0][6 12288 7C5D1B89AA52DB0B8CF9A2E4E6A743BAF0668885 ]C:\WINDOWS\SYSTEM32\BOOTVID.DLL
[E3CFCCDDA4EDD1D0DC9168B2E18F27B8][1 77312 4268CCFAECF2F9ECCED07455E9EFC2934518E273 ]C:\WINDOWS\SYSTEM32\BROWSER.DLL
[9C00DF78E3F5C7A7311EF495DA9AC041][1 1023488 FC9DE7EA6B5E1301FF88DEB22BDCC1DA6D8EC07C ]C:\WINDOWS\SYSTEM32\BROWSEUI.DLL
[E72CAD5A720CE18D26CC1C010FF08355][2 49152 97757BCE28BDF373C39658EB5A19B083ECCE1A89 ]C:\WINDOWS\SYSTEM32\CCSRVC.EXE
[3192BD04D032A9C4A85A3278C268A13A][1 5632 A068E9534050FCE39D74994C1FD5F8371DBDBB97 ]C:\WINDOWS\SYSTEM32\CISVC.EXE
[C8DEC22C4137D7A90F8BDF41CA4B82AE][1 33280 87FBDDAE4B43DC9A08AF4296CA7ACC7890211502 ]C:\WINDOWS\SYSTEM32\CLIPSRV.EXE
[EFC958396A7A7EF7E6D4A52B97512E18][1 597504 B9E14B84A8D39E982D192906FC0C190EDC1CCCA0 ]C:\WINDOWS\SYSTEM32\CRYPT32.DLL
[CAD4AA32E7ECA00C23CC39C0EB833F9D][1 63488 0BE7CCFBAD17A5E6CF7F2C64678AB4DD55D42ED8 ]C:\WINDOWS\SYSTEM32\CRYPTNET.DLL
[10654F9DDCEA9C46CFB77554231BE73B][1 60416 FBD7431A79B49CA04B3FBDA3DDE43C3C81F02BC2 ]C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL
[587729679B4FE04CE06A5C61D6C56DCD][1 101888 2558BA6F0EBFF4C49DC1E26DC1277695F7F7B245 ]C:\WINDOWS\SYSTEM32\CSCDLL.DLL
[24232996A38C0B0CF151C2140AE29FC8][1 15360 B36D03B56A30187FFC6257459D632A4FAAC48AF2 ]C:\WINDOWS\SYSTEM32\CTFMON.EXE
[EF545E1A4B043DA4C84E230DD471C55F][1 111616 3E9D04CD277DDBE58E9FB399E1E910003B24F561 ]C:\WINDOWS\SYSTEM32\DHCPCSVC.DLL
[DD87DB7387B9EB441C5674888A0D840C][1 5120 6CB068D8BB51CE82828D08E441E92E9B3B9CC0AB ]C:\WINDOWS\SYSTEM32\DLLHOST.EXE
[554C7CB178FE3BD12450B81AD63ADBC3][1 224768 46D53A7D61E4C2A98B2AB37C6C988CCEBEC75843 ]C:\WINDOWS\SYSTEM32\DMADMIN.EXE
[1639D9964C9E1B2ECCA95C8217D3E70D][1 23552 69BF0DE8E8A4A9A0AED7A0225E58E6976AED306C ]C:\WINDOWS\SYSTEM32\DMSERVER.DLL
[AAC8FFBFD61E784FA3BAC851D4A0BD5F][1 45568 06376BF5E2E0F04D797798C8959E72C8B024696D ]C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL
[A10C7534F7223F4A73A948967D00E69B][1 187776 7A5E460607C236CEC5A142586BE3F48E13B796C0 ]C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS
[9859C0F6936E723E4892D7141B1327D5][6 11648 F27A1EE007EB29DB95BEBEEB16F76322E2CDFDCE ]C:\WINDOWS\SYSTEM32\DRIVERS\acpiec.sys
[0F0A69496989912351284BB1BAA2CE57][1 307712 D77A3FAC3DFC33EE6DC53D40C09215FD926ACDA3 ]C:\WINDOWS\SYSTEM32\DRIVERS\ADIHDAUD.SYS
[1EE7B434BA961EF845DE136224C30FEC][1 142464 49D7D3E3D1DA9A8B7E9D5FCB8EAC560634B84E24 ]C:\WINDOWS\SYSTEM32\DRIVERS\AEC.SYS
[55E6E1C51B6D30E54335750955453702][1 138368 CB3260AEF24DDF64547B839B5C87C08B77919404 ]C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
[06112696A1B06692939CF087D1F1C84E][2 2401 0BAAC8764404AF8E627E04AD37B9BC7870BBF192 ]C:\WINDOWS\SYSTEM32\DRIVERS\ALKERNEL.SYS
[DAD16A9D5C873E7219E6B43802ED316A][1 36992 6E72FA9C213081D2D324B16075FE0B5982236DC0 ]C:\WINDOWS\SYSTEM32\DRIVERS\amdk6.sys
[680AD1C1BB16239E28D8F33A54A7A3C7][1 37376 45040CFEEE24002480D76484DFFDC1E259467DAB ]C:\WINDOWS\SYSTEM32\DRIVERS\amdk7.sys
[F0D692B0BFFB46E30EB3CEA168BBC49F][1 60800 A8182C83A9C26D009E451415C0C06DD87DF35C1F ]C:\WINDOWS\SYSTEM32\DRIVERS\arp1394.sys
[02000ABF34AF4C218C35D257024807D6][1 14336 4BD208ABCAB95B6E14E966EAB395BCDE461B839E ]C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS
[CDFE4411A69C224BD1D11B2DA92DAC51][1 95360 A42FBFEB5A4D94118B483D7F18113AA8C329A052 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS
[EC88DA854AB7D7752EC8BE11A741BB7F][1 59904 6DF1AA383BA018086A5B15E551003995A44D7696 ]C:\WINDOWS\SYSTEM32\DRIVERS\ATMARPC.SYS
[39A0A59180F19946374275745B21AEBA][6 31360 E27788026ED77481635F266E0B20FEC77706E73D ]C:\WINDOWS\SYSTEM32\DRIVERS\atmepvc.sys
[0128E78FE835F074E469F03DB681CA9E][1 55936 71405B0D42E8AD88ACA920BFE8F78D39FAABC351 ]C:\WINDOWS\SYSTEM32\DRIVERS\atmlane.sys
[E7EF69B38D17BA01F914AE8F66216A38][6 352256 667AA171EE6A69E575C73362F3ACF86C2EB11C44 ]C:\WINDOWS\SYSTEM32\DRIVERS\atmuni.sys
[A9A124C15B5F2FE1FFD1EA238BD5AEED][2 51304 916F1730D7A6FC930EB32A1043F2ECFC24F24F51 ]C:\WINDOWS\SYSTEM32\DRIVERS\atnt40k.sys
[D9F724AA26C010A217C97606B160ED68][6 3072 E07EE000BC06B455534D8A517305C1208D30306B ]C:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
[DA1F27D85E0D1525F6621372E7B685E9][6 4224 E3D2DC5EB273FA701DE8AF13B60D6BAAC7629260 ]C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS
[E4E6A0922E3D983728C9AD4E8D466954][1 71552 49B73F9D95E4D71794F7A908951754907EE287A8 ]C:\WINDOWS\SYSTEM32\DRIVERS\bridge.sys
[95EF6F3F386D93EE1E4D9CA45A50252A][1 272128 076671E0EBAB2322A9E44862425602CE6187BDE2 ]C:\WINDOWS\SYSTEM32\DRIVERS\bthport.sys
[90A673FC8E12A79AFBED2576F6A7AAF9][6 13952 2D93247F985EF498535BE7B95172182FF829588A ]C:\WINDOWS\SYSTEM32\DRIVERS\cbidf2k.sys
[CF91ECC3DE13CE765F9AB4B9B2B1970E][2 9216 1137F08279155A7E361F50320DCA61A8C2187A3C ]C:\WINDOWS\SYSTEM32\DRIVERS\CCDEVICE.SYS
[C1B486A7658353D33A10CC15211A873B][6 18688 76094C8E69F435E218A751EC6BDE89F3D861F477 ]C:\WINDOWS\SYSTEM32\DRIVERS\cdaudio.sys
[CD7D5152DF32B47F4E36F710B35AAE02][1 63744 C82F467B1246D94EFC13F0BCEDC1B0DCCA38BA0D ]C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[AF9C19B3100FE010496B1A27181FBF72][1 49536 D65C9CA8E0DC335C14B416C59F7F9C6E0CD9B161 ]C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
[B562592B7F5759C99E179CA467ECFB4C][6 262528 A0539C1BB76CB8640B6A2D89E3E7CAC53D15D49B ]C:\WINDOWS\SYSTEM32\DRIVERS\cinemst2.sys
[D86173B401470F06D9810F7962969DDF][1 49664 7DB47C871BD596CC74B94041843B7AF203E637AE ]C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS
[9624293E55AD405415862B504CA95B73][6 11776 FDADE6E11D7E4989635136C3CDE2778CBFE1A19B ]C:\WINDOWS\SYSTEM32\DRIVERS\cpqdap01.sys
[6AF1684CCAAC3F7EF4EE9BA65EB0677A][1 36480 8A2CF41F0D020EB0E7154B4D01FFF6445530F0A0 ]C:\WINDOWS\SYSTEM32\DRIVERS\crusoe.sys
[B90B0A61045DB0C63487D1995F957680][1 22136 2A22FD90FC98558B002C93125387A8D77EDF4C2C ]C:\WINDOWS\SYSTEM32\DRIVERS\CSVIRTA.SYS
[5C706C06C1279952D2CC1A609CA948BF][1 5315 509148A086603DCA27C189AEF657B85CEB521FFD ]C:\WINDOWS\SYSTEM32\DRIVERS\CVIRTA.SYS
[03516F6D3B8C91C919DE622196A84BCE][2 305788 DBF58B97BEA17ACD091BE44CD5F52EBD03CC5EE7 ]C:\WINDOWS\SYSTEM32\DRIVERS\CVPNDRVA.SYS
[00CA44E4534865F8A3B64F7C0984BFF0][1 36352 2F80B250CFE794144D4802CA0BEB45582B2BD242 ]C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS
[D16C81677A9BE399C63CD2EA486472A5][1 14208 57C41562A5CF09865970FC3D0A8878F2DE715CBB ]C:\WINDOWS\SYSTEM32\DRIVERS\diskdump.sys
[C0FBB516E06E243F0CF31F597E7EBF7D][1 799744 4DA64A87D873863A789799AB2EC52DC0B4028E20 ]C:\WINDOWS\SYSTEM32\DRIVERS\DMBOOT.SYS
[F5E7B358A732D09F4BCF2824B88B9E28][1 153344 356AB9E531870653BAF602A46395133034293C87 ]C:\WINDOWS\SYSTEM32\DRIVERS\DMIO.SYS
[E9317282A63CA4D188C0DF5E09C6AC5F][6 5888 A768077067DB3DE64B1CEB98EC2DA42B7F184EBA ]C:\WINDOWS\SYSTEM32\DRIVERS\DMLOAD.SYS
[A6F881284AC1150E37D9AE47FF601267][1 52864 203B5E2F3A3E515FCE9B45216733ECC1A5FD6EAE ]C:\WINDOWS\SYSTEM32\DRIVERS\DMUSIC.SYS
[8101650993B2F79118D2BF24402C390D][1 126864 4F02F0EBB9EE67FB1530D1E88789A62AEEEE61F8 ]C:\WINDOWS\SYSTEM32\DRIVERS\DNE2000.SYS
[FF86422268DE771D571E123EB7092C6A][1 60288 610FD27153137BCF577F5C3DE1088F4064ABF128 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS
[1ED4DBBAE9F5D558DBBA4CC450E3EB2E][1 2944 C5C87CAA439907F9B0782C17AA8287EC1B4BE8F7 ]C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS
[FE97D0343ACFDEBDD578FC67CC91FA87][6 10496 731BD21A972DCA7F70ADBE1F93AE8200A17A7208 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS
[D3DAC8432110AAD0B02A58B4459AB835][1 71040 21CC55D1E2BAE42C9E00C3BC84BBA6BEEA25718B ]C:\WINDOWS\SYSTEM32\DRIVERS\DXG.SYS
[A73F5D6705B1D820C19B18782E176EFD][6 3328 6F9F663CDFBC2592EAB4C43FEE359EFFD37D60F2 ]C:\WINDOWS\SYSTEM32\DRIVERS\DXGTHK.SYS
[34AAA3B298A852B3663E6E0D94D12945][1 254872 6CBDCFEA5077F7255B46DD5DC2F71D798571C831 ]C:\WINDOWS\SYSTEM32\DRIVERS\E1E5132.SYS
[FBC0E085A5BECBA5DD3C401EEB6E45BB][2 181120 A24EE16012D0C6A5AC949DD524E4D187A0FDAA05 ]C:\WINDOWS\SYSTEM32\DRIVERS\EXT2FS.SYS
[3117F595E9615E04F05A54FC15A03B20][1 143360 3D3AA7BDC75DB729072A4A3445186BA51E59FC7F ]C:\WINDOWS\SYSTEM32\DRIVERS\FASTFAT.SYS
[CED2E8396A8838E59D8FD529C680E02C][1 27392 357744DB5063CBC3629C244330F2D2B16884E970 ]C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS
[E153AB8A11DE5452BCF5AC7652DBF3ED][1 34944 C2195F139E7E3B00E3D1889BC4FE42399EB7F019 ]C:\WINDOWS\SYSTEM32\DRIVERS\FIPS.SYS
[0DD1DE43115B93F4D85E889D7A86F548][1 20480 AE51FDA08FE56859223D6051A1B1DF1231ED22A0 ]C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS
[3D234FB6D6EE875EB009864A299BEA29][1 128896 8F578BC47BCE0A36A2FF8C031D11E5C49477574A ]C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS
[3E1E2BD4F39B0E2B7DC4F4D2BCC2779A][6 7936 2DFF9AEBC441753BBDBF18856337ECAE85ABCF06 ]C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS
[455F778EE14368468560BD7CB8C854D0][6 12160 B26202829F4CD22DB0CFA01065ED9A3BB38497F9 ]C:\WINDOWS\SYSTEM32\DRIVERS\fsvga.sys
[6AC26732762483366C3969C9E4D2259D][6 125056 12B8DB7B23BF05C46BCE7640B0714BF682B7C2A4 ]C:\WINDOWS\SYSTEM32\DRIVERS\FTDISK.SYS
[833051C6C6C42117191935F734CFBD97][1 26176 F7D5E5A82E9083DFCC3D49658668B1D1D4342D46 ]C:\WINDOWS\SYSTEM32\DRIVERS\HAMACHI.SYS
[E31363D186B3E1D7C4E9117884A6AEE5][1 137728 C6B2801C9D1FF78796BA41639D51411F265B0C64 ]C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS
[9131EDE087AF04A7D80F7EBADC164254][1 113664 FBE3E881E4DB4290B72FFC456ECFD26C3931B3A3 ]C:\WINDOWS\SYSTEM32\DRIVERS\Hdaudio.sys
[C865D1F6D03595DF213DC3C67E4E4C58][1 45056 E46A05689590EBB85A8A906BBDE0750FF21279F5 ]C:\WINDOWS\SYSTEM32\DRIVERS\HECI.SYS
[378055AB8DDA86228683C697C4E11685][1 36224 18A805ED83F5BBDE9931BB0BFA3C6729478D3BDE ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS
[5FFF41CD5108E9051D255C37825AF697][1 24960 5E2FB258C97D9987C41DE64A164B2E595BFF5B34 ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS
[1DE6783B918F540149AA69943BDFEBA8][1 9600 2D889498F5DCB5E68FB50F9301B627620B24935D ]C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
[9F8B0F4276F618964FD118BE4289B7CD][1 263552 3BD0B9E48B7D0C0D9F203D955E013130D863E1CC ]C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS
[5502B58EEF7486EE6F93F3F164DCB808][1 52736 4021843CEFB217B9BBB3147D549BF8970BFA9290 ]C:\WINDOWS\SYSTEM32\DRIVERS\i8042prt.sys
[F3F825FCC70471FD967126E1871B2CDC][2 51072 CC46A957BE5F1F8466B577244EFAE068EE5DF52B ]C:\WINDOWS\SYSTEM32\DRIVERS\IFSMOUNT.SYS
[12C7F8D581C4A9F126F5F8F5683A1C29][1 5761728 069564F376E81CB512773E81F232C1DCF3AC965F ]C:\WINDOWS\SYSTEM32\DRIVERS\IGXPMP32.SYS
[F8AA320C6A0409C0380E5D8A99D76EC6][1 41856 6A3AE8A3711161216C136BA6B925CFE96DD15879 ]C:\WINDOWS\SYSTEM32\DRIVERS\IMAPI.SYS
[279FB78702454DFF2BB445F238C048D2][1 36096 E1364D30871C8F531A71DCA8F3D42402FF1109DD ]C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
[4448006B6BC60E6C027932CFC38D6855][1 29056 677304E575660642BCED544266126131FF6ED75F ]C:\WINDOWS\SYSTEM32\DRIVERS\IP6FW.SYS
[731F22BA402EE4B62748ADAF6363C182][6 32896 77253EF369A95E2CB3BF5531D963260A9C2E7857 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS
[E1EC7F5DA720B640CD8FB8424F1B14BB][1 20992 711E3984E7A61FFEF837B50A48B91F0D9FB4B6B9 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPINIP.SYS
[E2168CBC7098FFE963C6F23F472A3593][1 134912 9331F27968A522BCC3F024614457F7EE471B770F ]C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS
[64537AA5C003A6AFEEE1DF819062D0D1][1 74752 58772669B9FF69FA48EA77AF5C4268CDB0EE1F67 ]C:\WINDOWS\SYSTEM32\DRIVERS\IPSEC.SYS
[50708DAA1B1CBB7D6AC1CF8F56A24410][1 11264 C62C3F441D1C120BEAB0F620609D037536EC320D ]C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS
[E504F706CCB699C2596E9A3DA1596E87][1 35840 A0A464E210D6D71C988DE52C8BC700475840808E ]C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS
[EBDEE8A2EE5393890A1ACEE971C4C246][1 24576 9F1CDB27A5C66C13F095E3AE9801813A8DCB9E2D ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
[E182FA8E49E8EE41B4ADC53093F3C7E6][1 14848 DBE1451145C61CBA4960B51761ADBD917BD9D2CA ]C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS
[BA5DEDA4D934E6288C2F66CAF58D2562][1 172416 2D63AA8FC5CAF69A667AEA9A3EACBB566D0D3A66 ]C:\WINDOWS\SYSTEM32\DRIVERS\KMIXER.SYS
[B9540E258F952650DE8DEC68719A5C97][1 140928 F45A6F20E384E3DDABC147A8B2A4B307A8F6B955 ]C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS
[674D3E5A593475915DC6643317192403][1 92544 7F574C10D5648D69A273C2B7BCCFE547ADF5B471 ]C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS
[654A3F014903DC62CAF5E037F3D316D2][1 19160 A66399D089875E4F888584B55D6A30E32FEBDE8F ]C:\WINDOWS\SYSTEM32\DRIVERS\mbam.sys
[C0D40BEAA6DFC05602FC8F484696F7F5][1 38224 A833F4BC2B9F978A0AC21126583C95F5F37F5566 ]C:\WINDOWS\SYSTEM32\DRIVERS\mbamswissarmy.sys
[D1F8BE91ED4DDB671D42E473E3FE71AB][6 7680 AB11BCFA76D3475ACB770C894CC54D7974291B9D ]C:\WINDOWS\SYSTEM32\DRIVERS\mcd.sys
[729D83E56C29C510258A6E9E79FFDDC3][1 63744 06EED77BC004A4E40B658B1B6FCEB179AF73DE85 ]C:\WINDOWS\SYSTEM32\DRIVERS\mf.sys
[B4F1698E0816319FB2661F9544A9721B][1 64488 7FA07ECA2F2940CCD7E196AFF54AC20088BC2BD8 ]C:\WINDOWS\SYSTEM32\DRIVERS\MFEAPFK.SYS
[516B553284217DDB5CA0F114756F2693][1 72904 BD808EA87AC77ACC7412656282A70817ACA3BB3F ]C:\WINDOWS\SYSTEM32\DRIVERS\MFEAVFK.SYS
[7DA3C45E09A6C8DEF9D61E3C8F23E1B7][1 34344 BE3150853277100C0A433A1F3A8702EFDDBA9394 ]C:\WINDOWS\SYSTEM32\DRIVERS\MFEBOPK.SYS
[71DAB8BF0FABD0EA58AFFF20F187031E][1 177672 E56F8F744D6C71270D50A36134E848801C675C11 ]C:\WINDOWS\SYSTEM32\DRIVERS\MFEHIDK.SYS
[3E69888375E2B87B38B4E303C10A4999][1 52136 2CBA89DC06B9C861C27FE097601795D8909A31C7 ]C:\WINDOWS\SYSTEM32\DRIVERS\MFETDIK.SYS
[4AE068242760A1FB6E1A44BF4E16AFA6][6 4224 932F7B2DCD9D42BFAA0F61B586628663BC3D0504 ]C:\WINDOWS\SYSTEM32\DRIVERS\MNMDD.SYS
[6FC6F9D7ACC36DCA9B914565A3AEDA05][1 30080 F297324EE5BD6109CDB08631E3B9948D9CCA9C79 ]C:\WINDOWS\SYSTEM32\DRIVERS\modem.sys
[34E1F0031153E491910E12551400192C][1 23040 5B3B425C9B4686FCAE88C63414336FFE87D51761 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
[B1C303E17FB9D46E87A98E4BA6769685][1 12160 4D5C2048C9830E945B8B3642BA1237E8B72A87AF ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
[65653F3B4477F3C63E68A9659F85EE2E][1 42240 E3E531D2E2CB3017BF09092E5D1E3173025BB728 ]C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS
[EEE50BF24CAEEDB515A8F3B22756D3BB][2 91776 A8DF29CC8CDE7A2F6AB9AF9E8A01057D6542F154 ]C:\WINDOWS\SYSTEM32\DRIVERS\mqac.sys
[29414447EB5BDE2F8397DC965DBB3156][1 179584 62AB850629D64A18429DA562C7897AFCC03B6917 ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
[6F2D483B97B395544E59749C47963C6A][1 453632 06F8C66CE1B6AC002122079C3D212C6DDA11E48C ]C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
[561B3A4333CA2DBDBA28B5B956822519][1 19072 7A4CE956BFE7E9B29DFA9572A01DE8EC22EE00D6 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS
[C0F1D4A21DE5A415DF8170616703DEBF][1 35072 5E2D1CE0E40546959E695CE85A0062DD4B53013C ]C:\WINDOWS\SYSTEM32\DRIVERS\MSGPC.SYS
[AE431A8DD3C1D0D0610CDBAC16057AD0][1 7552 2862BCBBCFCA267E0BC4762F4485717C837426B8 ]C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS
[13E75FEF9DFEB08EEDED9D0246E1F448][1 5376 9A1D1EC34BA0E6B3F925948E0EC98745D72CFCBB ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS
[1988A33FF19242576C3D0EF9CE785DA7][1 4992 6F81C4D20B0D8FF970223FA80753729B7899952C ]C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS
[469541F8BFD2B32659D5D463A6714BCE][1 15488 7DD23176C6A01A2AB35C3B97C5E10E8AD8C601AC ]C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
[82035E0F41C2DD05AE41D27FE6CF7DE1][1 107904 CED59A4E7BF3BC5F2D02EA731A3AF4C1F70B6840 ]C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS
[558635D3AF1C7546D26067D5D9B6959E][1 182912 DE08D6D587FE19CE3C61A1CF3773158DF212DBE8 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS
[08D43BBDACDF23F34D79E44ED35C1B4C][1 9600 1A8D79CF59C7B2697202B34F5A8EFBAED9997ED6 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
[34D6CD56409DA9A7ED573E1C90A308BF][1 12928 0224DF969FF7F27961CF5482DD7F34FCCF239915 ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
[0B90E255A9490166AB368CD55A529893][1 91776 A12E8167D6A927EC3C1266D8624E66134F1021CD ]C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
[59FC3FB44D2669BC144FD87826BB571F][1 38016 69D2EF1146B97EC4C95DAF7D785E743B4B1E5B8B ]C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
[3A2ACA8FC1D7786902CA434998D7CEB4][1 34560 ABC50CF1FB62054A9B5EC427226B36A77C4BF980 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
[0C80E410CD2F47134407EE7DD19CC86B][1 162816 FC94040533C8E2BBA6F4A5BFF8A97294CC5E4C06 ]C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
[5C5C53DB4FEF16CF87B9911C7E8C6FBC][1 61824 DB7D1ADD8FAA0E1324C96035EB49E0A42364DE52 ]C:\WINDOWS\SYSTEM32\DRIVERS\nic1394.sys
[BE984D604D91C217355CDD3737AAD25D][6 12032 9F136E21AB81F32555641032387C16CEE56C3653 ]C:\WINDOWS\SYSTEM32\DRIVERS\nikedrv.sys
[60CF8C7192B3614F240838DDBAA4A245][1 40320 73FF7C56625FB2F938778EFE00D7FB6F9712242F ]C:\WINDOWS\SYSTEM32\DRIVERS\NMNT.SYS
[B9730495E0CF674680121E34BD95A73B][1 50704 5F897E63A08201563184BEB2ACB1B96AAB2EAA7C ]C:\WINDOWS\SYSTEM32\DRIVERS\NPF.SYS
[4F601BCB8F64EA3AC0994F98FED03F8E][1 30848 5C19809C0BA8FAF28BD30FCA584A3C8394A6D2D1 ]C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS
[19A811EF5F1ED5C926A028CE107FF1AF][1 574464 D1EFC83A3CB762BC596C1866C163DDAE8382A1D5 ]C:\WINDOWS\SYSTEM32\DRIVERS\NTFS.SYS
[73C1E1F395918BC2C6DD67AF7591A3AD][6 2944 80EB8A76E5579B0136281E4DD4E2D4E56B249E4C ]C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS
[B305F3FAD35083837EF46A0BBCE2FC57][6 12416 99C71139009069EB04E65CAB57BD71F3403B101D ]C:\WINDOWS\SYSTEM32\DRIVERS\NWLNKFLT.SYS
[C99B3415198D1AAB7227F2C88FD664B9][6 32512 4A55D8E1EF7F7A9ADB8DD2F21DB0F92FC21F7249 ]C:\WINDOWS\SYSTEM32\DRIVERS\NWLNKFWD.SYS
[79EA3FCDA7067977625B3363A2657C80][1 88448 F139C333D5711BE00412128FED14BD946EAA4A64 ]C:\WINDOWS\SYSTEM32\DRIVERS\nwlnkipx.sys
[56D34A67C05E94E16377C60609741FF8][6 63232 60266D466C9129F169993BDAAEB2C79F0D467CFC ]C:\WINDOWS\SYSTEM32\DRIVERS\nwlnknb.sys
[C0BB7D1615E1ACBDC99757F6CEAF8CF0][6 55936 3AA45CB7358AC0F7E45CE0341DE6169544E97558 ]C:\WINDOWS\SYSTEM32\DRIVERS\nwlnkspx.sys
[3F18D9365BE71C7B2E43B7CF4A0C1A10][1 163584 73E43C4DD3924B821E821A862153A43014286EA3 ]C:\WINDOWS\SYSTEM32\DRIVERS\nwrdr.sys
[4BB30DDC53EBC76895E38694580CDFE9][6 3456 AE1BA00EBD074C99A29DFCEF179CD4C38E78F3B3 ]C:\WINDOWS\SYSTEM32\DRIVERS\oprghdlr.sys
[3E16EFF2A6FED2D8D7F5A66DFE65D183][1 42496 063966020AAF21A2A77B8F9002B83E9B9C90CB2B ]C:\WINDOWS\SYSTEM32\DRIVERS\p3.sys
[29744EB4CE659DFE3B4122DEB45BC478][1 80128 50CFFA17AE4AC1F949464A4949CB644CE9E10A5E ]C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
[3D2AB56021A0D4C18C0BE90843E13BBF][1 34760 B563D0C7F122E3EB8892DAF644B5BDE5BF6F6AA9 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTIZAN.SYS
[3334430C29DC338092F79C38EF7B4CD0][1 18688 72DF26D29B1C3B733B4EA0CD0CA944B4EF72C249 ]C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS
[70E98B3FD8E963A6A46A2E6247E0BEA1][6 6784 B527518CFA5E61B3DB09179BEA2FA2E0D346828F ]C:\WINDOWS\SYSTEM32\DRIVERS\PARVDM.SYS
[8086D9979234B603AD5BC2F5D890B234][1 68224 9DA7C2EBEE0BB32A39A4D602F39F9D7401DE10CE ]C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS
[CCF5F451BB1A5A2A522A76E670000FF0][1 3328 DD1A94969B0B66FF72E39107E297BFFE23781CBD ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS
[520B91AB011456B940D9B05FC91108FF][1 25088 3F7E938CF8E02698448F7BBCB6CB024C46970584 ]C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS
[82A087207DECEC8456FBE8537947D579][1 119936 6CE670C1F044B842C931F01E1115F46A83EEED56 ]C:\WINDOWS\SYSTEM32\DRIVERS\pcmcia.sys
[BC6B2BC69C1E009443E8B1FE2DB96101][1 136960 454D6FA3A657DC304E73857A3348BC798ABB3ADB ]C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS
[0D97D88720A4087EC93AF7DBB303B30A][1 35328 C6C931E11E6F7AC23BE0256F2AE4A75084DF34C2 ]C:\WINDOWS\SYSTEM32\DRIVERS\processr.sys
[48671F327553DCF1D27F6197F622A668][1 69120 EE75EB78BE971D57F3621C5911567A850D8AAC14 ]C:\WINDOWS\SYSTEM32\DRIVERS\PSCHED.SYS
[80D317BD1C3DBC5D4FE7B1678C60CADD][6 17792 E8C148E71E870965CA452142E55AC89486779D56 ]C:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS
[FE0D99D6F31E4FAD8159F690D68DED9C][6 8832 AB474DB29198EA46F5E1C1D60B7AA215660CD563 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
[98FAEB4A4DCF812BA1C6FCA4AA3E115C][1 51328 2F256EEFE46DB4E2E43AD98F7226D1EE793B4AF6 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
[7306EEED8895454CBED4669BE9F79FAA][1 41472 9BAC3006849696F619EBD1BD337E78A147E27BBC ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
[1C5CC65AAC0783C344F16353E60B72AC][1 48384 BFA5EB8887F07784F382D23E629BBF5B3B00254E ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
[FDBB1D60066FCFBB7452FD8F9829B242][6 16512 9F85B3C30FF634D23E711CC694750D5D8AD14419 ]C:\WINDOWS\SYSTEM32\DRIVERS\RASPTI.SYS
[01524CD237223B18ADBB48F70083F101][6 34432 E62EC2293381D3C061128C8235444FA13B60C0C6 ]C:\WINDOWS\SYSTEM32\DRIVERS\rawwan.sys
[03B965B1CA47F6EF60EB5E51CB50E0AF][1 174592 47087CEA700728F213F533EAD4506FFE3131668E ]C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
[4912D5B403614CE99C28420F75353332][6 4224 DBDA3AC341EDFF01B7C00357B3F0FEAFEEF15470 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
[A2CAE2C60BC37E0751EF9DDA7CEAF4AD][1 196864 0AC844AA57078EC7817E0BDE54B14FAEEE46F4AC ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS
[B54CD38A9EBFBF2B3561426E3FE26F62][1 139528 8351EEDFFECB33C5E229DFF3380BA719EA343D09 ]C:\WINDOWS\SYSTEM32\DRIVERS\RDPWD.SYS
[B31B4588E4086D8D84ADBF9845C2402B][1 57472 A466A835E645163135D78DA365D05960FA2CBB19 ]C:\WINDOWS\SYSTEM32\DRIVERS\REDBOOK.SYS
[A56FE08EC7473E8580A390BB1081CDD7][6 12032 A99307549B9DF79B0A9BE3342FF498C800986AAE ]C:\WINDOWS\SYSTEM32\DRIVERS\rio8drv.sys
[0A854DF84C77A0BE205BFEAB2AE4F0EC][6 12032 7D5507A1D6CE458B39938EC5738F6C921769505F ]C:\WINDOWS\SYSTEM32\DRIVERS\riodrv.sys
[D18208ED6C768663B08C972EAA7A8B60][1 202752 3EA3FF19FF38F80FCBE5672E702D0A385AC7EBFB ]C:\WINDOWS\SYSTEM32\DRIVERS\rmcast.sys
[7CE8B277F3207EA82D7D22AD348BEFC6][1 30080 82F5919B82592BDE83F7C0894270F1532F06768F ]C:\WINDOWS\SYSTEM32\DRIVERS\rndismp.sys
[D8B0B4ADE32574B2D9C5CC34DC0DBBE7][6 5888 B4A02978D8BB4B064FA1067696A4838DAAF0B963 ]C:\WINDOWS\SYSTEM32\DRIVERS\rootmdm.sys
[594FF5620661D1386475406E78CB6F2F][1 86824 13B36CB3F1F94B9BACAB58AEDA2566E2173D3881 ]C:\WINDOWS\SYSTEM32\DRIVERS\S0017BUS.SYS
[3FA76516F21FC7CF04689834B2B7325E][1 12200 EB2E0DD752DE7E75B9026010D98B275781A8823B ]C:\WINDOWS\SYSTEM32\DRIVERS\s0017cm.sys
[3FA76516F21FC7CF04689834B2B7325E][1 12200 EB2E0DD752DE7E75B9026010D98B275781A8823B ]C:\WINDOWS\SYSTEM32\DRIVERS\s0017cmnt.sys
[5B1078D9E27DF63656C39449492AE3E9][1 10792 827145847258C39FC909716BF5549693FA6CCCD4 ]C:\WINDOWS\SYSTEM32\DRIVERS\s0017cr.sys
[7258F550419D543BC5C8E80C578A5D54][1 15016 45DD629B639130B4AA8F9B565107DC42E4BF9B5D ]C:\WINDOWS\SYSTEM32\DRIVERS\S0017MDFL.SYS
[1DE4F6607FEB17A15DBD4F1B139E6D2F][1 114600 5A4A76E04D46727D1BDAF2EF1E929DA3B134817B ]C:\WINDOWS\SYSTEM32\DRIVERS\S0017MDM.SYS
[9814E6BACC06D2526CD52981C7EEEDF0][1 108328 1B8045D9AA5B0BEFB09B0C43E411B1AD716FD37F ]C:\WINDOWS\SYSTEM32\DRIVERS\S0017MGMT.SYS
[2C62CD58225973F26682CD4F783DDEDE][1 26024 2E5C6B319863F09F115FE01F64B335E58C3D568C ]C:\WINDOWS\SYSTEM32\DRIVERS\S0017ND5.SYS
[F87C3422E84B2FB1B43E0A26247AD5A5][1 104616 F502220F7F726DC59210F01D60B86E9C5A7BC13D ]C:\WINDOWS\SYSTEM32\DRIVERS\S0017OBEX.SYS
[DF5E7360A0AFA5956BF75DA683D0679F][1 109736 2DF49E7CEA3C8452CD59939AD251D402CE81B377 ]C:\WINDOWS\SYSTEM32\DRIVERS\S0017UNIC.SYS
[985E0A43CF844A573FF254C847AD0BA9][1 12200 F1C18F53C8E2285E50CAFA96DECEC4AA1BAF9B6B ]C:\WINDOWS\SYSTEM32\DRIVERS\s0017wh.sys
[985E0A43CF844A573FF254C847AD0BA9][1 12200 F1C18F53C8E2285E50CAFA96DECEC4AA1BAF9B6B ]C:\WINDOWS\SYSTEM32\DRIVERS\s0017whnt.sys
[D7FD0FF761E28AC0EA35AD71E0CD67E9][1 96256 40F88D937CEBA8CF73FFA1110E84191EF20DAD6F ]C:\WINDOWS\SYSTEM32\DRIVERS\scsiport.sys
[02FC71B020EC8700EE8A46C58BC6F276][1 67584 4FA520537DDB672E48C52576C62EF4814602B910 ]C:\WINDOWS\SYSTEM32\DRIVERS\sdbus.sys
[90A3935D05B494A5A39D37E71F09A677][6 20480 51613026E706F9BDCBC0C94CF2014BC9FB58A3E8 ]C:\WINDOWS\SYSTEM32\DRIVERS\SECDRV.SYS
[B6A6B409FDA9D9EBD3AADB838D3D7173][1 392960 9E8ED179D4F48365787B16E68581AB983EC48DC8 ]C:\WINDOWS\SYSTEM32\DRIVERS\SENFILT.SYS
[A2D868AEEFF612E70E213C451A70CAFB][1 15488 20334D2E1DCBC19C9814A6106122860C340FA10B ]C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS
[CD9404D115A00D249F70A371B46D5A26][1 64896 32273DE2107668E25E500BA3D9C3F18D85C1855C ]C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS
[1D9F1BEC651815741F088A8FB88E17EE][1 11136 0225AF60AE93817C9D26BFC2647FD187B10AD4E9 ]C:\WINDOWS\SYSTEM32\DRIVERS\sffdisk.sys
[586499FD312FFD7F78553F408E71682E][1 10240 F5ED19E36ABA69253DB2862716C8D185AB29226C ]C:\WINDOWS\SYSTEM32\DRIVERS\sffp_sd.sys
[0D13B6DF6E9E101013A7AFB0CE629FE0][1 11392 B7361C48DBE2863E62FF07DECE7F13BF9B17A683 ]C:\WINDOWS\SYSTEM32\DRIVERS\sfloppy.sys
[017DAECF0ED3AA731313433601EC40FA][6 14592 00974BC36052110FF322BC29F83681F3C15EE6B8 ]C:\WINDOWS\SYSTEM32\DRIVERS\smclib.sys
[ADDC9E4757A68AB60562AD3CB9C288D6][1 25472 F0850F09ACE1E389AC60E19571AAE6CB63FFDEA5 ]C:\WINDOWS\SYSTEM32\DRIVERS\sonydcam.sys
[0CE218578FFF5F4F7E4201539C45C78F][1 6400 1417CB60013EACF01E7B19DFBC02E91E71FFB1AB ]C:\WINDOWS\SYSTEM32\DRIVERS\SPLITTER.SYS
[E41B6D037D6CD08461470AF04500DC24][1 73472 6CA05ADD925C75E6D021C38FA1515EBC677E3735 ]C:\WINDOWS\SYSTEM32\DRIVERS\SR.SYS
[AB9C79ED12D65E800AAAD3D72A04792F][1 333184 60F2A9C3100164B04A59BFCA14C875372543DC92 ]C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS
[C43356072EB3E88CD62958DB10CEAD47][1 48640 A5E822D078ABFF34C8FD5E92F354E0C304A2FB35 ]C:\WINDOWS\SYSTEM32\DRIVERS\stream.sys
[03C1BAE4766E2450219D20B993D6E046][1 4352 3D2F5AE5853A0C9EF47880BBC76FA29DBB39359C ]C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
[94ABC808FC4B6D7D2BBF42B85E25BB4D][1 54272 6544B63F137D3403067ACF0B193B6C81CCF94DA3 ]C:\WINDOWS\SYSTEM32\DRIVERS\SWMIDI.SYS
[650AD082D46BAC0E64C9C0E0928492FD][1 60800 5E9D3EED0AD665910DED5F22A177C43BE68489D0 ]C:\WINDOWS\SYSTEM32\DRIVERS\SYSAUDIO.SYS
[A2A9CA0D1A9AC1FF54220AA0789FE5CF][1 14976 BF6E2A3CD95F757D4677CDF6E81D2C8B2159C1BE ]C:\WINDOWS\SYSTEM32\DRIVERS\tape.sys
[2A5554FC5B1E04E131230E3CE035C3F9][1 360320 3E8B95F95E458625A8D7F08ACBB7BB11677C653C ]C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
[00586ED87AB564B03870A2A3DCC84B55][1 225920 9983E20F17A962AC3B41448ED294B2B19B5E5399 ]C:\WINDOWS\SYSTEM32\DRIVERS\tcpip6.sys
[6891B74AB9A016064E82A419388D0601][1 18560 3283F39BC29628605BC7921948B36043A225CA0D ]C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS
[38D437CF2D98965F239B0ABCD66DCB0F][1 12040 13F3B59E8C1B5F94757DEA069C9B0B4E648842ED ]C:\WINDOWS\SYSTEM32\DRIVERS\tdpipe.sys
[ED0580AF02502D00AD8C4C066B156BE9][1 21896 3C2AFCB8638D00884A4A680172F697A0C51E5006 ]C:\WINDOWS\SYSTEM32\DRIVERS\TDTCP.SYS
[9101FFFCFCCD1A30E870A5B8A9091B10][1 25088 1BA11156D8AFA2A0AE537404D156B8E12F68B86E ]C:\WINDOWS\SYSTEM32\DRIVERS\TEAMVIEWERVPN.SYS
[A540A99C281D933F3D69D55E48727F47][1 40840 84A3EE7D48971866A7A39B2008C647004D63CF52 ]C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
[DD9596C18818288845423C68F3F39800][1 161296 FB1570B4865083DFCE1FCFF2BD72E9E1B03CEAD5 ]C:\WINDOWS\SYSTEM32\DRIVERS\tmcomm.sys
[699450901C5CCFD82357CBC531CEDD23][6 51712 10BF8CFB933C6A7B632AFEBEAB300548792F75D9 ]C:\WINDOWS\SYSTEM32\DRIVERS\tosdvd.sys
[D74A8EC75305F1D3CFDE7C7FC1BD62A9][6 21376 0A16BF4274DC1C3C0974A7CF120BE6CB30F022A0 ]C:\WINDOWS\SYSTEM32\DRIVERS\tsbvcap.sys
[87A0E9E18C10A9E454238E3330E2A26D][1 12416 2C8C569BC551F807A33A1A8205BEFDE15F0F40DE ]C:\WINDOWS\SYSTEM32\DRIVERS\tunmp.sys
[12F70256F140CD7D52C58C7048FDE657][1 66176 98B136B3A4CDA015D866CA383A1D6CF29508852B ]C:\WINDOWS\SYSTEM32\DRIVERS\udfs.sys
[DF685D0C5DD349286E983AB5399878F2][1 12752 22E6E89888CB97AB3549805C2436D2C96B2474ED ]C:\WINDOWS\SYSTEM32\DRIVERS\UNHACKMEDRV.SYS
[CED744117E91BDC0BEB810F7D8608183][1 364160 9C3B916B68618E7DA6BB4CA84BA91093C044B609 ]C:\WINDOWS\SYSTEM32\DRIVERS\UPDATE.SYS
[AF090265EC388BAB320F1FF7E7A7D5EA][1 12672 60A7A4B118AA454BFF2EDFF5312C10654B29E2FA ]C:\WINDOWS\SYSTEM32\DRIVERS\usb8023.sys
[2654EECC6FB13603EBDDCD5C8EA943D1][2 23808 06783C8692EEF7E422ECEC68C0B840506688E52A ]C:\WINDOWS\SYSTEM32\DRIVERS\usbcamd.sys
[61018BA9DF6B63E51D9753C980E73EC2][1 23936 0ECACAFF1DBDBD327FFC36F708F445756C145E43 ]C:\WINDOWS\SYSTEM32\DRIVERS\usbcamd2.sys
[BFFD9F120CC63BCBAA3D840F3EEF9F79][1 31616 DFB6331ABBC04298E33A98B9CD58AD89A5C88E16 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS
[596EB39B50D6EBD9B734DC4AE0544693][1 4736 A2C5F1A19A7C72CD239D40171455A92170373842 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS
[15E993BA2F6946B2BFBBFCD30398621E][1 26624 90F0FA3A42FB39F7A9CB3F03BEC6B085D585A5B7 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
[C72F40947F92CEA56A8FB532EDF025F1][1 57600 3FE020755FBA2EA4CD6D16D333399B66AF4BB4A9 ]C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
[2853FD4C4489E0F8BFCF78EFCDB7E998][1 16000 93974F107EC38542DCD8E42E495349CC19C58A71 ]C:\WINDOWS\SYSTEM32\DRIVERS\usbintel.sys
[2034CA78F9C6E787B4B76D81AC888351][1 142976 90693DA5737E84922DCB8B951E4075C1D1D9200F ]C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS
[6CD7B22193718F1D17A47A1CD6D37E75][1 26496 F4E190BABF0318C897CF915A1841EA5FA14756EC ]C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS
[F8FD1400092E23C8F2F31406EF06167B][1 20480 CC5505855A357A7FDBAB228A78C890541660F14E ]C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS
[984EF0B9788ABF89974CFED4BFBAACBC][1 34560 5F04813BD9D58FEBABF6311A689E1A3A6550459B ]C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
[EFD235CA22B57C81118C1AEB4798F1C1][1 82944 0D85C63D4BFFB7FF3043EB6C9686E829ADCE4C05 ]C:\WINDOWS\SYSTEM32\DRIVERS\WDMAUD.SYS
[55E01061C74A8CEFFF58DC36114A8D3F][6 58112 DA1E775BF4867E4D354662A03C9C8BDC1E2E0467 ]C:\WINDOWS\SYSTEM32\DRIVERS\vdmindvd.sys
[8A60EDD72B4EA5AEA8202DAF0E427925][1 20992 0AA68F6FBE29E8359942D2CDEFE7E9B8527568AB ]C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
[D5A9D123F5ED7C9965A481BD20CF66D8][1 79744 F4989DB9A792D7E5EAD7B76A33D50B780C20ECE7 ]C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS
[2944BED10FFD9369DA9A988D8AC899E4][1 23480 3749817B501056B7C1E358A4E74DB38666C4E0F1 ]C:\WINDOWS\SYSTEM32\DRIVERS\WIP0204.SYS
[2F31B7F954BED437F2C75026C65CAF7B][6 4352 344471C09B0E5DD684FA2324ECAD05C79C19A031 ]C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS
[EE4660083DEBA849FF6C485D944B379B][1 52352 A739F0B4161D93180178EA9EF6AD20452B7E4FEA ]C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS
[CF4DEF1BF66F06964DC0D91844239104][6 38528 75A17205A0F869789EC719FA26829C83867258BB ]C:\WINDOWS\SYSTEM32\DRIVERS\WPDUSB.SYS
[E9513BFA9B5F638358122DA13B40E1C2][1 24176 1D0CB0F779B08C8045E3EE23B54B011AABF29D13 ]C:\WINDOWS\SYSTEM32\DRIVERS\VPNVA.SYS
[6ABE6E225ADB5A751622A9CC3BC19CE8][6 12032 D7444AFE7E801BC269E04207D17FAF572C41789D ]C:\WINDOWS\SYSTEM32\DRIVERS\ws2ifsl.sys
[F15FEAFFFBB3644CCC80C5DA584E6311][6 77568 56D724D68DA50F34A7C47A0C526CCFD831FE6C78 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS
[28B524262BCE6DE1F7EF9F510BA3985B][6 82944 8B433BE8A533A1A2482982BC582B6684A6BC2723 ]C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS
[67DFF7BBBD0E80AAB7B3CF061448DB8A][1 23040 7B45CF63A5716DFC7E9AFBB3789D082F259343A6 ]C:\WINDOWS\SYSTEM32\ERSVC.DLL
[60D1A6342238378BFB7545C81EE3606C][1 253952 B8B2A9F7AB81B205850DD6E80F765B99F68132BC ]C:\WINDOWS\SYSTEM32\ES.DLL
[DFCE51FD96909D1B97D4A1A72D060D77][1 134400 C6381C25D8DBDD3635E6CA0ED68ECBA5AB850A62 ]C:\WINDOWS\SYSTEM32\HAL.DLL
[ECD6727ACEE1531D2A801EF5B8738E1B][1 162328 88CDE91F4E1B8BB11A900D331616E363B0504B45 ]C:\WINDOWS\SYSTEM32\HKCMD.EXE
[5530B5093740BCFEDDE85C54CE2476BB][1 6070784 7B4DD3220DD3700C508912DF0F090D119F5BA870 ]C:\WINDOWS\SYSTEM32\IEFRAME.DLL
[F4DF02FB95E466551FB5A3C10C9986BA][1 204800 B991CDF8D3128988F695FF7CEA2A99CB986C138B ]C:\WINDOWS\SYSTEM32\IGFXDEV.DLL
[6DA4FB0D52FD8D8D72AF2ACE38DECCF3][1 137752 DC560BBF64763309045E56CDFFC9F5C39E262ACC ]C:\WINDOWS\SYSTEM32\IGFXPERS.EXE
[68E7B2FEB82DFD430DB179ECCB7A1DBA][1 141848 356CD45037DAEA5C5CE49E0CB351EE5D6079E074 ]C:\WINDOWS\SYSTEM32\IGFXTRAY.EXE
[F5BEF771F8A9D1711BD1DF0231773CDB][1 1717504 97777985DC6CA5077C9B9A0A7EFE3BD4752E5D36 ]C:\WINDOWS\SYSTEM32\IGXPDV32.DLL
[D71DB113DE48A03FD414B4364C00624F][1 2681344 18DEA38D1A0FECB309B7E984E0F28CCF733F3A6B ]C:\WINDOWS\SYSTEM32\IGXPDX32.DLL
[A79FE5D86A3F5E928137FA61B6C0D56F][1 150528 8BA0BB8AC6DEF4A21316A75ECAE70246D2839391 ]C:\WINDOWS\SYSTEM32\IGXPGD32.DLL
[9010F63C825181ED7DEE8313B0294FCD][1 57344 8D443FDD0428B6BCD4B854685E6DA03A85BB3B04 ]C:\WINDOWS\SYSTEM32\IGXPRD32.DLL
[FA788520BCAC0F5D9D5CDE5615C0D931][1 150016 A4AC239C76471E82799D0875740368BD1B81027F ]C:\WINDOWS\SYSTEM32\IMAPI.EXE
[36CC8C01B5E50163037BEF56CB96DEFF][1 331264 2469E5DDCBA1AD946EF8CBF5C2B9C77FD12A8B0D ]C:\WINDOWS\SYSTEM32\IPNATHLP.DLL
[945FBB881AE927A44DFD96440F2F4F44][6 7040 1D8782772F55374B378A9EBFE40EED87A71431F9 ]C:\WINDOWS\SYSTEM32\KDCOM.DLL
[B3EFF6D938C572E90A07B3D87A3C7657][1 13824 DC7D28E829098AED4703F0DC6F3ADE3CA8A8A8A2 ]C:\WINDOWS\SYSTEM32\LMHSVC.DLL
[793F04A09B15E7C6C11DBDFFAF06C0AB][1 75264 AF52BF4D1FF3C6A24DB9DEE3548AAADB3D6C611F ]C:\WINDOWS\SYSTEM32\LOCATOR.EXE
[43FCEEF75FD6208925DDD4FFF8C36723][1 220672 A626310ED5CC7FBDE05DCC576CEBE35594198D72 ]C:\WINDOWS\SYSTEM32\LOGON.SCR
[7DB59FFF2AF32C27EB2276424FA5EDDB][1 514560 9603E666BDD5D160103CEE1D611BAB0F64A72EBC ]C:\WINDOWS\SYSTEM32\LOGONUI.EXE
[84885F9B82F4D55C6146EBF6065D75D2][1 13312 6473B34C05BC63EB0D66CAD83355E6938CBE97E9 ]C:\WINDOWS\SYSTEM32\LSASS.EXE
[F6415361201915B9FE3896B0E4E724FF][1 32768 405115F47F27897F5FCFC8A610ED9650255E51F1 ]C:\WINDOWS\SYSTEM32\MNMSRVC.EXE
[3046DB917E3CFA040632799DD9B14865][1 49152 C29DA52574771C2FABA55C82F36F94312806A297 ]C:\WINDOWS\SYSTEM32\MPRDIM.DLL
[C7C3D89EB0A6F3DBA622EA737FA335B1][1 6144 C48FCB01484B3CB369779678FF07A28221FF036E ]C:\WINDOWS\SYSTEM32\MSDTC.EXE
[95FD808E4AC22ABA025A7B3EAC0375D2][1 33792 1C31460E1498FABB39213ED5E8ACD356B2080E6F ]C:\WINDOWS\SYSTEM32\MSGSVC.DLL
[F5F0146580E7023ADB963879840777F8][1 78848 4030C8BBCB8F146A1D8BA0FF2357BE6575E48199 ]C:\WINDOWS\SYSTEM32\MSIEXEC.EXE
[C51B4A5C05A5475708E3C81C7765B71D][6 27136 C61095F51DF41E64B3F034458958C918F0D6F8A8 ]C:\WINDOWS\SYSTEM32\MSPMSNSV.DLL
[097722F235A1FB698BF9234E01B52637][1 245248 380EC131FEE9EFA58104E4887635349FA1CD060B ]C:\WINDOWS\SYSTEM32\MSWSOCK.DLL
[90058C2AD9FC43A3B3D59F82FFC6AEA7][1 208744 5343EC00E4780BEA5661B41DAAB317FC972349F3 ]C:\WINDOWS\SYSTEM32\MUWEB.DLL
[05AFB5AD06462257BEA7495283C86D50][1 111104 B71456A0F206294578AEF223AB3611D29CC862D3 ]C:\WINDOWS\SYSTEM32\NETDDE.EXE
[36739B39267914BA69AD0610A0299732][1 197632 0F6CF927ABA87BBC2831E4297905794215085921 ]C:\WINDOWS\SYSTEM32\NETMAN.DLL
[C06986B55981B355090DD34DE809E4BB][1 714752 F31300AD29A025E38D36345A3740D8E101C69329 ]C:\WINDOWS\SYSTEM32\NTDLL.DLL
[E832C72D32FA117CB0D033C5EA95B58F][1 2015744 DFCF985F06B5A8DD68075200E354E794017C6E29 ]C:\WINDOWS\SYSTEM32\NTKRNLPA.EXE
[B62F29C00AC55A761B2E45877D85EA0F][1 435200 DEFAC7E1B55662978C5B3A10EEC5AD05334D8E31 ]C:\WINDOWS\SYSTEM32\NTMSSVC.DLL
[2C69EC7E5A311334D10DD95F338FCCEA][1 382464 95B543B69BE291B1FE592A7680D375C9E84F4397 ]C:\WINDOWS\SYSTEM32\QMGR.DLL
[44DB7A9BDD2FB58747D123FBF1D35ADB][1 89088 A2EABA11FD20634D74BFF662F22014A12097ADFD ]C:\WINDOWS\SYSTEM32\RASAUTO.DLL
[49B5EED5FB89D39456A2F616CCD8BA5D][1 181248 26CC03DEC624E0175E7B15C655BD35FB02135DA6 ]C:\WINDOWS\SYSTEM32\RASMANS.DLL
[3151427DB7D87107D1C5BE58FAC53960][1 59904 C9AB66C2154BA77D7631274505281A2DEB9539F2 ]C:\WINDOWS\SYSTEM32\REGSVC.DLL
[01095FEBF33BEEA00C2A0730B9B3EC28][1 399360 9CBEF134998B1BE12FC1063B3368CA1CED040E17 ]C:\WINDOWS\SYSTEM32\RPCSS.DLL
[471B3F9741D762ABE75E9DEEA4787E47][6 132608 F3AFA282797985C7AD0E48D6D236BE2EF93FD4B9 ]C:\WINDOWS\SYSTEM32\RSVP.EXE
[90491683ABD587C702B16F181AB0D99D][1 90112 006EE4F0606A5EF86C9BBE4C88A806869F93E57F ]C:\WINDOWS\SYSTEM32\RSVPSP.DLL
[DA285490BBD8A1D0CE6623577D5BA1FF][1 33280 C466B4F4C2600FD62FBE943D8049AFD0F6606F48 ]C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
[25D8DE134DF108E3DBC8D7D23B1AA58E][1 95744 D26D940084225CFC39DDF711787932BD4389B0A6 ]C:\WINDOWS\SYSTEM32\SCARDSVR.EXE
[92360854316611F6CC471612213C3D92][1 190976 27F194EA0E208122B62417A7BB8FDE545B611DFB ]C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL
[D636FA41E50671160D838EA2DACE3330][1 20992 E904554EF769BC711288BFA5E7B1B6F491D31171 ]C:\WINDOWS\SYSTEM32\SCLGNTFY.DLL
[B1E0CE09895376871746F36DC5773B4F][1 18944 FCDE0E898C81C00AEBC8C9BCE2FF8122F99A558D ]C:\WINDOWS\SYSTEM32\SECLOGON.DLL
[DFD9870CF39C791D86C4C209DA9FA919][1 38912 771695EF115CDC207FEAA327075BF92421477574 ]C:\WINDOWS\SYSTEM32\SENS.DLL
[37561F8D4160D62DA86D24AE41FAE8DE][1 110592 F1512A4B19F70FBD918CF96E2518F39961F6F2F3 ]C:\WINDOWS\SYSTEM32\SERVICES.EXE
[729798E0933076B8FCFCD9934698F164][1 140800 E37A40D53C6FF64D7C5B9F1280AF2E6EF52345E3 ]C:\WINDOWS\SYSTEM32\SESSMGR.EXE
[81D094D3CC389254FFD915EE43EE4D17][1 1495552 CEA029CDF5FF08EA5FC987AC9D0835FEE65C1D7F ]C:\WINDOWS\SYSTEM32\SHDOCVW.DLL
[56B6333DDA2576803F99F0EA373D0A7B][1 8454656 5E4FABE3F5FB9D7831508AC1AA8DF7C2DC140BDF ]C:\WINDOWS\SYSTEM32\SHELL32.DLL
[D6C6F5126C671C6C224C4A1A0C72EF7D][1 42496 C7D598DB84D7D726380AAB72F93B696378D4F6B8 ]C:\WINDOWS\SYSTEM32\SHMGRATE.EXE
[6815DEF9B810AEFAC107EEAF72DA6F82][1 134656 A2CE4B738313C08653488C89CC84F36479DCFF7F ]C:\WINDOWS\SYSTEM32\SHSVCS.DLL
[8B54AA346D1B1B113FFAA75501B8B1B2][1 89600 50389FF49A721D4AC7E6D863A6E145E324D73D2B ]C:\WINDOWS\SYSTEM32\SMLOGSVC.EXE
[BD7FB0957C716F1A60333AEE04DE2178][1 50688 9CA5784A8E745F083C0A90C25D3FDDC7554852AD ]C:\WINDOWS\SYSTEM32\SMSS.EXE
[DA81EC57ACD4CDC3D4C51CF3D409AF9F][1 57856 7047ED8BD91F3E57972483FEAA56E3499CD8C668 ]C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
[92BDF74F12D6CBEC43C94D4B7F804838][1 170496 E2734239A81EECA06B415F46CB255568EEE2ADCD ]C:\WINDOWS\SYSTEM32\SRSVC.DLL
[0CB3AF149A0BAC0836022CA307C7A0F8][1 96768 BF94F82BC9B58379A74757802B8EABBAF4ADA1CF ]C:\WINDOWS\SYSTEM32\SRVSVC.DLL
[4B8D61792F7175BED48859CC18CE4E38][1 71680 580EC10F7FED717E320EC379827EE16FB2160E1D ]C:\WINDOWS\SYSTEM32\SSDPSRV.DLL
[2570E4AEB30E00A713D556BED7A5C46B][1 54024 DA52ECBFD16471EE71BF6334A669B59BCE4B582A ]C:\WINDOWS\SYSTEM32\STCWEB.OCX
[297101A925ECFFDCDF7F6341FFBB6C1A][1 121856 354AF0494D4C479CC65E040A90101C18E5A9CCCD ]C:\WINDOWS\SYSTEM32\STOBJECT.DLL
[8F078AE4ED187AAABC0A305146DE6716][1 14336 DA0FF4006859A7580ABA81F486F692DEAD2014FE ]C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[60881F813BA450A2EC6F0A9C6F42BF63][1 298496 23A79618052C1606F1B2A5917D698B2C95B8419B ]C:\WINDOWS\SYSTEM32\SYSDM.CPL
[FB78839B36025AA286A51289ED28B73E][1 249344 C895D362D9A2E59EAC16F710130236CA8E6D1546 ]C:\WINDOWS\SYSTEM32\TAPISRV.DLL
[B60C877D16D9C880B952FDA04ADF16E6][1 295424 B93A2C8BDA208A76B033C67FA90128F5888890E5 ]C:\WINDOWS\SYSTEM32\TERMSRV.DLL
[37DB0A7D097310E8B4DE803FC3119C78][1 73216 6A72A89CA0F99E0AFECC765DE98A43D22CBC31CA ]C:\WINDOWS\SYSTEM32\TLNTSVR.EXE
[6D9AC544B30F96C57F8206566C1FB6A1][1 90624 06252C04F3979D22FD0433CE41F18023156D991D ]C:\WINDOWS\SYSTEM32\TRKWKS.DLL
[ACA5D98663D879C6BAAFCEA7E2F1B710][1 185344 DE0F39F01E40ED688BB8D0DA0DC6C9EC8738BA5E ]C:\WINDOWS\SYSTEM32\UPNPHOST.DLL
[3F5DF65B0758675F95A2D43918A740A3][1 18432 74A6772421AFFF2FD9EF3F84C77BBA244EEBEF55 ]C:\WINDOWS\SYSTEM32\UPS.EXE
[39B1FFB03C2296323832ACBAE50D2AFF][1 24576 E5AEDCBE25A97C89101F1F3860FF846E94D70445 ]C:\WINDOWS\SYSTEM32\USERINIT.EXE
[2B281958F5D0CF99ED626E3EF39D5C8D][1 174592 7BEC75C18158B27F3E1A4E0627B4B7EB7FBD5CBB ]C:\WINDOWS\SYSTEM32\W32TIME.DLL
[064D8581ADF77C25133E7D751D917D83][1 15872 5BB698F7140F530A1C08439F7C40002127DEF262 ]C:\WINDOWS\SYSTEM32\W3SSL.DLL
[C9BF2F12C4E6C12F8A85FBA4B6BC6208][1 17664 6E709186B06AC36D714A7AE62B6CA1A314F14A9F ]C:\WINDOWS\SYSTEM32\WATCHDOG.SYS
[BA8CECC3E813E1F7C441B20393D4F86C][1 126464 0FC499321746438044863C6F79C03169C5B238A3 ]C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE
[F399242A80C4066FD155EFA4CF96658E][1 144896 E9FDE3EE2C3EB16570F70E93B2428E17702D9CC2 ]C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL
[F4C46FF006B5BCEA1F69559D5BF75131][1 233472 635A89A1F47C62118886533218F4D1EF74ED1628 ]C:\WINDOWS\SYSTEM32\WEBCHECK.DLL
[265F534EF76832435AFBF771EC97176D][1 68096 4C69B29C24DAA053F101842C297F7F2D8B946136 ]C:\WINDOWS\SYSTEM32\WEBCLNT.DLL
[02CF580510234E519736559A7F19EA20][1 239496 0F5E3C06E9C0166B0D961DC3AB05F815ED7A8791 ]C:\WINDOWS\SYSTEM32\WGALOGON.DLL
[B6763F8534AC547CF1AF98AFDFF2EDC8][1 333824 79A0FE558D161E5769AB7BC858EAB4F34160460E ]C:\WINDOWS\SYSTEM32\WIASERVC.DLL
[1EFBC43B33B83FD7376E63A71830CC69][1 1850112 8A42B44C78AE17D1F2BDD31ADC9F87702A56C495 ]C:\WINDOWS\SYSTEM32\WIN32K.SYS
[01C3346C241652F43AED8E2149881BFE][1 502272 A5396141CAB8B22D9D88B28A814089537DCE366A ]C:\WINDOWS\SYSTEM32\WINLOGON.EXE
[2C8FDB176F22629EA5342DB474FAC391][1 16896 ED6EB949D9CC790A7EC95B24690CAF390AEB25A9 ]C:\WINDOWS\SYSTEM32\WINRNR.DLL
[E1F27CFCD114EC9F1E1F44674B2FF9F0][1 132096 0EC014CD678503CF96C68949DBB076468AACEDE7 ]C:\WINDOWS\SYSTEM32\WKSSVC.DLL
[A599E5E366C1408E48AA5D37882D4E3E][1 92672 226F5A88CC45AF1466EB13FE4B7D2427E6552CA5 ]C:\WINDOWS\SYSTEM32\WLNOTIFY.DLL
[045E228F71C31901084B64BE59093499][6 133632 10015763245B006775B192F6BA6EEC22EFAD4434 ]C:\WINDOWS\SYSTEM32\WPDSHSERVICEOBJ.DLL
[4D59DAA66C60858CDF4F67A900F42D4A][1 81408 8B69DCD36526AA4F0D07C76DA1B44E53981B6AAA ]C:\WINDOWS\SYSTEM32\WSCSVC.DLL
[3EE00364AE0FD8D604F46CBAF512838A][1 289792 F7C284BE25627C86B628EAAF85C9128009B69ECF ]C:\WINDOWS\SYSTEM32\VSSVC.EXE
[E654B78D2F1D791B30D0ED9A8195EC22][1 51224 DA84F39CB6AEF15AA944D5071FD710C3BC73F197 ]C:\WINDOWS\SYSTEM32\WUAUCLT.EXE
[13D72740963CBA12D9FF76A7F218BCD8][1 6656 4EEC3AA371324C8F60591E1837BEBF3CEBC54146 ]C:\WINDOWS\SYSTEM32\WUAUSERV.DLL
[05231C04253C5BC30B26CBAAE680ED89][6 55808 0AD4132A1D328454838B2AC94C6F7361ED9D5D3E ]C:\WINDOWS\SYSTEM32\WUDFSVC.DLL
[0006DE8037F5A562F96B461B3C557C3C][1 202776 A639F684FA523C6CDC7D28E530D10812617684B9 ]C:\WINDOWS\SYSTEM32\WUWEB.DLL
[5A91E6FEAB9F901302FA7FF768C0120F][1 359936 D36500F6D211E9280541F7A7B60DE02EA015745B ]C:\WINDOWS\SYSTEM32\WZCSVC.DLL
[EEF46DAB68229A14DA3D8E73C99E2959][1 129536 82DE19BF2A5C673F28E6C135FB2F1E7E8B4E3319 ]C:\WINDOWS\SYSTEM32\XMLPROV.DLL

Third, It should had been a complete hijackthis log but I "screwed up" will try again tomorrow:

HiJackThis Log:



O20 - AppInit_DLLs: AMINIT.dll

Enumerating Download Program Files:

[Citrix ICA Client]
InProcServer32 = C:\Progra~1\Citrix\icaweb32\WFICA.OCX
CODEBASE = http://falctxweb/Citrix/MetaFrame/ICAWEB/en/ica32/wficat.cab

[STCWeb Control]
InProcServer32 = C:\WINDOWS\system32\STCWeb.ocx
CODEBASE = https://10.78.28.100/CACHE/webvpn/stc/1/binaries/stcweb.cab

[SWToolSet.Engine]
CODEBASE = http://10.78.16.151:8787/SWToolset.exe

[DLM Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\DOWNLO~1.OCX
CODEBASE = http://dlm.tools.akamai.com/dlmanager/vers...vex-2.2.4.1.cab

[WUWebControl Class]
InProcServer32 = C:\WINDOWS\system32\wuweb.dll
CODEBASE = http://update.microsoft.com/windowsupdate/...b?1238995102359

[MUWebControl Class]
InProcServer32 = C:\WINDOWS\system32\muweb.dll
CODEBASE = http://update.microsoft.com/microsoftupdat...b?1238995171812

[Java Plug-in 1.6.0_11]
InProcServer32 = C:\Program Files\Java\jre6\bin\jp2iexp.dll
CODEBASE = http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab

[{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}]
CODEBASE = http://fpdownload.macromedia.com/get/flash...t/ultrashim.cab

[Java Plug-in 1.6.0_11]
InProcServer32 = C:\Program Files\Java\jre6\bin\jp2iexp.dll
CODEBASE = http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab

[Java Plug-in 1.6.0_11]
InProcServer32 = C:\Program Files\Java\jre6\bin\npjpi160_11.dll
CODEBASE = http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab

[GpcContainer Class]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\ieatgpc.dll
CODEBASE = https://attwm.webex.com/client/T25L10NSP41E...bex/ieatgpc.cab

[JuniperSetupClientControl Class]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\JuniperSetupClient.ocx
CODEBASE = https://10.78.28.39/dana-cached/sc/JuniperSetupClient.cab

[Ikonic Menu Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\ikmenu.ocx
CODEBASE = https://10.78.16.71:4343/clilib/ikcntrls.cab

Load/Run keys from C:\WINDOWS\WIN.INI:

BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,490 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:06:16 AM

Posted 22 January 2010 - 12:07 PM

Hello Mike. Please post these with an HJT?DDS log.
To run HJT/DDS.
Please follow this guide. go and do steps 6 thru 8 ,, Preparation Guide For Use Before Using Hijackthis. Then go here HijackThis Logs and Virus/Trojan/Spyware/Malware Removal ,click New Topic,give it a relevant Title and post that complete log.

Let me know if it went OK.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 MikeOkand

MikeOkand
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:11:16 AM

Posted 22 January 2010 - 01:08 PM

That was my first thought, but after "talking" with jgweed he suggested that the best place for my post was in this section. The reason is that I can not run any more "tests" on my pc - it has left the country I live and work in and is, well right now somewhere over the atlantic ocean heading for the US. The only logs that might be of some usuage is the wireshark logs. Maybe those logs - traffic pattern, port numbers can be useful. I have not - yet - filtered these logs. I must filter the logs before putting them up here, if not then I will be out of a job on monday....

#4 garmanma

garmanma

    Computer Masochist


  • Members
  • 27,809 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Cleveland, Ohio
  • Local time:06:16 AM

Posted 22 January 2010 - 06:11 PM

I'm confused
How is anyone suppose to help you when the computer is not in you possession?
Mark
Posted Image
why won't my laptop work?

Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Do not send me PMs with problems that should be posted in the forums. Keep it in the forums, so everyone benefits
Become a BleepingComputer fan: Facebook and Twitter

#5 Animal

Animal

    Bleepin' Animinion


  • Site Admin
  • 35,743 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Where You Least Expect Me To Be
  • Local time:03:16 AM

Posted 22 January 2010 - 06:57 PM

This is company property and due to the fact you are no longer in possession of the computer, continuing any sort of dialog to help you is an effort in futility. We would be unable to confirm or support any diagnostic information provided thus far.

With those facts in mind, this topic is closed.

The Internet is so big, so powerful and pointless that for some people it is a complete substitute for life.
Andrew Brown (1938-1994)


A learning experience is one of those things that say, "You know that thing you just did? Don't do that." Douglas Adams (1952-2001)


"Imagination is more important than knowledge. Knowledge is limited. Imagination circles the world." Albert Einstein (1879-1955)


Follow BleepingComputer on: Facebook | Twitter | Google+




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users