Welcome! Register for a free account (or login) > How does it work?
|
|


Mar 1 2009, 08:59 PM
Post
#1
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
Hi Thnx to tom coyote they fixed my problem a couple of yrs back ...so here i am again and i know and appreciate the good you do .... i am an amateur but can get around on the computer fairly well ... what i've seen in this matter is the disabling of the MALWAREBYTES program and AVG ...so i cant scan ...hijack works and below is the latest file log after start up ...my EMAIL is [email=" topbandevents@yahoo.com"] topbandevents@yahoo.com[/email] SYMPTOMS: the computer will freeze ... it needs restarting which is not always successful the first time ... it will not allow CHROME or EXPLORER to activate any webpages ...i use FLOCK which works ... in the TASK MANAGER i see an iexplore process that I close and the flock starts to work without freezing, the load in is LOOOONG and the start up of FLOCK is also Looong .... when i go into a file with video the PROMPT comes up causing the screen to go to just the BACKGROUND screen w/o ICONS ... and then sometimes to the White Page that requires resetting the background page .... not all files with videos in them do this .... In the tsk mngr i also close dumprep and that moves thing on so i can use it ...the only FREEWARE scan stuff i can get to work so far is STINGER ...which located about 5 things on the first run and then FIXED TROJANS .... since then i have run it and nothing comes up in STINGER as a problem .... i downloaded and saved ERUNT as suggested and as mentioned the log below is done from a fresh start up ----the computer is slow but that is not the only problem I feel something worse is coming up with thing and I must get it fixed before it goes into crash .... thnx for your help and if i can think of other symptoms i'll add them on this log file I Appreciate your help on this matter John Hancock HERE IS THE UPDATED RUN OF HIJACK THIS USING THE NEW VERSION Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 6:58:26 PM, on 3/1/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\arservice.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Maxtor\Sync\SyncServices.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\ehome\mcrdsvc.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\explorer.exe C:\WINDOWS\system32\dllhost.exe C:\Program Files\Flock\flock.exe C:\Documents and Settings\HP_Administrator\Desktop\HJTInstall.exe C:\Documents and Settings\HP_Administrator\Desktop\HJTInstall.exe C:\Documents and Settings\HP_Administrator\Desktop\HJTInstall.exe C:\Documents and Settings\HP_Administrator\Desktop\HJTInstall.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\WINDOWS\system32\wbem\wmiprvse.exe R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank O4 - HKLM\..\Run: [26ffb988] rundll32.exe "C:\WINDOWS\system32\zelojive.dll",b O4 - HKLM\..\Run: [CPM25cc8a14] Rundll32.exe "c:\windows\system32\sikizela.dll",a O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKUS\S-1-5-19\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [reroramafi] Rundll32.exe "C:\WINDOWS\system32\poyimimu.dll",s (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user') O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user') O20 - AppInit_DLLs: c:\windows\system32\hulifeki.dll c:\windows\system32\sikizela.dll O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\hulifeki.dll O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\hulifeki.dll O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image005.jpg O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg O24 - Desktop Component 2: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg -- End of file - 5595 bytes |
|
|
|
![]() |
Mar 2 2009, 12:22 AM
Post
#2
|
|
|
SuperHelper Group: Classroom Teacher Posts: 5,770 Joined: 27-April 08 Member No.: 78,707 Operating System: win98se, XP pro |
Hi topband, welcome to the forum.
Please be advised, as I'm still in training, all my replies will have to be approved by a teacher or expert before I can post them. This may cause some delays, but I will do my best to keep them as short as possible. To make cleaning this machine easier
Thanks |
|
|
|
Mar 2 2009, 09:49 AM
Post
#3
|
|
|
SuperHelper Group: Classroom Teacher Posts: 5,770 Joined: 27-April 08 Member No.: 78,707 Operating System: win98se, XP pro |
Hi topband,
I see remnant of Symantec (Norton) in your log. Did you use it previous to AVG and uninstalled it? You currently do not have an active antivirus program. Please do not use this computer online except to download tools and come to this forum. We will install an antivirus program as soon as we can. Open hijackthis, do a system scan only and checkmark these lines, if present O4 - HKLM\..\Run: [26ffb988] rundll32.exe "C:\WINDOWS\system32\zelojive.dll",b O4 - HKLM\..\Run: [CPM25cc8a14] Rundll32.exe "c:\windows\system32\sikizela.dll",a O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKUS\S-1-5-19\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [reroramafi] Rundll32.exe "C:\WINDOWS\system32\poyimimu.dll",s (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM' O4 - HKUS\.DEFAULT\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'Default user') O20 - AppInit_DLLs: c:\windows\system32\hulifeki.dll c:\windows\system32\sikizela.dll O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\hulifeki.dll O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\hulifeki.dll /b] Close [b]ALL other windows/browsers and click Fix Checked. Answer Yes if prompted. Close HJT. Next, Download Rooter.exe to your desktop
Please post back with[list][*]Rooter log [*]a new HJT (hijackthis) log Please describe your computer's behavoir at the moment. Thanks This post has been edited by Rorschach112: Mar 2 2009, 12:56 PM |
|
|
|
Mar 2 2009, 02:43 PM
Post
#4
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
HI OM
OK i got rootkit and did the scan ...there were 25 infections found at first ...then the computer froze and i had to HARD REBOOT ... again i ran the rootkit and over 250 infections were found .... Regarding ANTIVIRUS ---i am with COX MEDIA and they have a SYSTEM WIDE ANTI VIRUS PROGRAM that evidently doesn't work too goo apparantley ...but it's been OK up to now (About 9 months) .... ONE SYMPTOM I remembered is that sometimes the INTERNET EXPLORER WINDOW opens and replicates about 50 times and it is not that difficult to stop using TASK MANAGER ... thnx and will await your diagnosis thnx JH ----------------- I have pasted the ROOTKIT LOG followed by the HIJACK LOG (WHICH HAS ___________________________(a long line) preceding it----- HERE IS THE ROOTKIT LOG : Prevx Scan Log - Version v3.0.1.17 Log Generated: 2/3/2009 12:31, Type: 0,0 Windows XP Professional Service Pack 2 (Build 2600) 32bit|1033 Some non-malicious files are not included in this log. Last Scan: Mon 2009-03-02 11:53:55 Pacific Standard Time. Number of Scans: 2. Last Scan Duration: 15 minutes 18 seconds. [BP] c:\windows\system32\drivers\tdsspaxt.sys [PX5: 2DBD763200A0FD58ECBF007EC163EC00E2732340] Malware Group: High Risk Cloaked Malware [B] c:\windows\system32\hepiexj.dll [PX5: 9F36D3C100DB291136A104D486C206006DC5695B] Malware Group: High Risk Fraudulent Security Program [BP] c:\windows\system32\hulifeki.dll [PX5: B61E77D100DB6296AA8601820B346B00CCF27464] Malware Group: Medium Risk Malware [BP] c:\windows\system32\sikizela.dll [PX5: 12D69BA9009C8812AAE9018C58450D00DF0F4245] Malware Group: Medium Risk Malware [BP] c:\windows\system32\zelojive.dll [PX5: 7815988C008B915F9200011AB85DBF00F94B42DB] Malware Group: Medium Risk Malware [B] c:\documents and settings\hp_administrator\application data\macromedia\common\9e0840921.dll [PX5: 0D954EAB00B2B0D6FC3E007572D2AA005535018D] Malware Group: Medium Risk Malware [B] (ACTIVE) c:\documents and settings\localservice\local settings\temp\9e0840922.tmp [PX5: 0D954EAB00B2B0D6FC3E007572D2AA005535018D] Malware Group: Medium Risk Malware [BP] c:\windows\system32\a.exe [PX5: FD4C8564088F27848EB105EC307BA500FB60EE80] Malware Group: Medium Risk Malware [B] c:\windows\system32\iehelper.dll [PX5: 296DFB900030412B26CD00D71C71FB0054B6CE07] Malware Group: High Risk Fraudulent Security Program [B] c:\windows\system32\winscenter.exe [PX5: 19EB0A8100329F1BDCED053B3C2E0700A759F9EA] Malware Group: Medium Risk Malware [B] c:\windows\system32\tdsscfum.dll [PX5: 7D92320E0036D329F00A002DDDE82A0084613610] Malware Group: High Risk Cloaked Malware [B] c:\windows\system32\ytcuyaim.exe [PX5: 3E16B6EF28C582CD59E7281063AB1E00E051944D] Malware Group: Medium Risk Malware [B] c:\windows\system32\tdssofxh.dll [PX5: FC00747C00E6EBBD8C2000C208310800C3C9A811] Malware Group: Medium Risk Malware [B] c:\program files\ultra video to flash converter\videoconverter.exe [PX5: D51CA816005F76E1E4ED188FD570650093766FAC] Malware Group: High Risk System Back Door [BP] c:\windows\system32\lasefoye.dll [PX5: 7A201EF1004CAEBD16E101787B012300231BB9DE] Malware Group: Medium Risk Malware [BP] c:\windows\system32\wigudozi.dll [PX5: 7A201EF1004CAEBD16E101787B012300231BB9DE] Malware Group: Medium Risk Malware [BP] c:\windows\system32\yijazowi.dll [PX5: 7A201EF1004CAEBD16E101787B012300231BB9DE] Malware Group: Medium Risk Malware [BPN] c:\windows\system32\cmxyic.dll [PX5: 8F375F519FAF7FE5309502798D1C9E00404E2064] Malware Group: High Risk Cloaked Malware [BPN] c:\windows\system32\natulevo.dll [PX5: 8F375F519FAF7FE5309502798D1C9E00404E2064] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\aghdff.dll [PX5: 8F375F51F3AF7FE5309502798D1C9E002732D384] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\jifetahi.dll [PX5: 8F375F51F3AF7FE5309502798D1C9E002732D384] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\bfcrjn.dll [PX5: E617449400FA55DB323C02377FFB6100F8162D65] Malware Group: Medium Risk Malware [BP] c:\windows\system32\jogejopi.dll [PX5: E617449400FA55DB323C02377FFB6100F8162D65] Malware Group: Medium Risk Malware [BP] c:\windows\system32\cmunvb.dll [PX5: 8F375F5190AF7FE5309502798D1C9E0010E6F5F1] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\libodiwa.dll [PX5: 8F375F5190AF7FE5309502798D1C9E0010E6F5F1] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\bewudogi.dll [PX5: 6308E6446AA832C074B3017E6F463400AC53A615] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\awfrrf.dll [PX5: 48213EC90068C3CB2CB202978CFC2900E89971EE] Malware Group: Medium Risk Malware [BP] c:\windows\system32\vomuganu.dll [PX5: 48213EC90068C3CB2CB202978CFC2900E89971EE] Malware Group: Medium Risk Malware [BP] c:\windows\system32\bunuzope.dll [PX5: 8F375F517FAF7FE5309502798D1C9E0057A358BE] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\argxmq.dll [PX5: 8F375F5106AF7FE5319502798D1C9E0017D018F4] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\robuteza.dll [PX5: 8F375F5106AF7FE5319502798D1C9E0017D018F4] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\bajukeko.dll [PX5: 2CB26333D7F377B774A0017522A6840022DF0CD6] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\buzrat.dll [PX5: 8F375F5122AF7FE5319502798D1C9E000731E5E0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\rayedutu.dll [PX5: 8F375F5122AF7FE5319502798D1C9E000731E5E0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\akswir.dll [PX5: 8F375F5157AF7FE5309502798D1C9E0006573CF0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\wuleluzu.dll [PX5: 8F375F5157AF7FE5309502798D1C9E0006573CF0] Malware Group: High Risk Cloaked Malware [B] c:\documents and settings\networkservice\application data\macromedia\common\9e0840921.dll [PX5: 0D954EAB00B2B0D6FC3E007572D2AA005535018D] Malware Group: Medium Risk Malware [B] c:\documents and settings\localservice\application data\macromedia\common\9e0840921.dll [PX5: 0D954EAB00B2B0D6FC3E007572D2AA005535018D] Malware Group: Medium Risk Malware [B] c:\windows\system32\config\systemprofile\application data\macromedia\common\9e0840921.dll [PX5: 0D954EAB00B2B0D6FC3E007572D2AA005535018D] Malware Group: Medium Risk Malware [BP] c:\windows\system32\hdkied.dll [PX5: 8F375F51B0AF7FE5309502798D1C9E00E4BF0CBB] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\meacvn.dll [PX5: 8F375F51B0AF7FE5309502798D1C9E00E4BF0CBB] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\rogiwunu.dll [PX5: 8F375F51B0AF7FE5309502798D1C9E00E4BF0CBB] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\tizuluke.dll [PX5: 8F375F51B0AF7FE5309502798D1C9E00E4BF0CBB] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\hefakola.dll [PX5: 8F375F51AFAF7FE5309502798D1C9E006B1C1CA0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\jbngyc.dll [PX5: 8F375F51AFAF7FE5309502798D1C9E006B1C1CA0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\hidujuku.dll [PX5: 767D8AE400BF4E369493019021A35B0074F86DF7] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\hapohuwe.dll [PX5: CF09D5DE0049AD25961801356F483C002A7CE033] Malware Group: Medium Risk Malware [BP] c:\windows\system32\ihbqmf.dll [PX5: DE4A406500EEA16B30DC02759B2F220045E5A9CC] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\tidadegi.dll [PX5: DE4A406500EEA16B30DC02759B2F220045E5A9CC] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\hxbecv.dll [PX5: CB446F2400FFA9A1323302D7DF27D2001607FD82] Malware Group: Medium Risk Malware [BP] c:\windows\system32\nukizani.dll [PX5: CB446F2400FFA9A1323302D7DF27D2001607FD82] Malware Group: Medium Risk Malware [BP] c:\windows\system32\gopigede.dll [PX5: 8F375F5122AF7FE5319502798D1C9E00D77E0203] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\doluwuhi.dll [PX5: 8F375F5108AF7FE5319502798D1C9E005B398C99] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\xccefy.dll [PX5: 8F375F5108AF7FE5319502798D1C9E005B398C99] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\dewezuwa.dll [PX5: 46C6B08100FEF2A694AC01ED016247005107F26B] Malware Group: Medium Risk Malware [BP] c:\windows\system32\hztled.dll [PX5: 0B4C490F00C131F43A5C02CA127A3E00E064B59A] Malware Group: Medium Risk Malware [BP] c:\windows\system32\ziyiwori.dll [PX5: 0B4C490F00C131F43A5C02CA127A3E00E064B59A] Malware Group: Medium Risk Malware [BP] c:\windows\system32\iorbkx.dll [PX5: 8F375F519AAF7FE5309502798D1C9E00520B9F11] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kiganopo.dll [PX5: 8F375F519AAF7FE5309502798D1C9E00520B9F11] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\elqdjw.dll [PX5: 4DDEFF98007CFD48347E0277DBCADC00225C99B1] Malware Group: Medium Risk Malware [BP] c:\windows\system32\vajetezo.dll [PX5: 4DDEFF98007CFD48347E0277DBCADC00225C99B1] Malware Group: Medium Risk Malware [BP] c:\windows\system32\dukakame.dll [PX5: 2631C8940095B299947F01045ABE03006DF07476] Malware Group: Medium Risk Malware [BP] c:\windows\system32\iudfiz.dll [PX5: A03EE3D000B5FEDA3625024FCB41FE008B8261BE] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\vinomisu.dll [PX5: A03EE3D000B5FEDA3625024FCB41FE008B8261BE] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\gayudida.dll [PX5: 10F95722009C4396922C0116C0B27300EF4E2195] Malware Group: Medium Risk Malware [BP] c:\windows\system32\dositesu.dll [PX5: A9BEBF4D00CA6D1D220C02E4E8272800A10AB312] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\luwtvv.dll [PX5: A9BEBF4D00CA6D1D220C02E4E8272800A10AB312] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\dapipobi.dll [PX5: 8CC86F0004F5AB449366014FEA92A700FA122299] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\fefiweta.dll [PX5: 8F375F51C3AF7FE5309502798D1C9E0010D64D75] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\xyyivm.dll [PX5: 8F375F51C3AF7FE5309502798D1C9E0010D64D75] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\gebegimi.dll [PX5: 7953DAF700FF9F39ACBE01CCD4FAA70065462E28] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\gadisiva.dll [PX5: 1D2935E900D03A4EAA88013508F573004DA1AC84] Malware Group: Medium Risk Malware [BP] c:\windows\system32\czhpou.dll [PX5: 8F375F518BAF7FE5309502798D1C9E00A13A831B] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\norobeta.dll [PX5: 8F375F518BAF7FE5309502798D1C9E00A13A831B] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\gthicl.dll [PX5: 8F375F5187AF7FE5309502798D1C9E00ECBA4459] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kahowuhi.dll [PX5: 8F375F5187AF7FE5309502798D1C9E00ECBA4459] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\dumavuja.dll [PX5: 950398720020905CA68F0194DA67F900942456CF] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\jagepeyu.dll [PX5: 8F375F519FAF7FE5309502798D1C9E008D1AF0A9] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\vzchwy.dll [PX5: 8F375F519FAF7FE5309502798D1C9E008D1AF0A9] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\geleboje.dll [PX5: E10247BF00D78D73A8B801FD4401CA00B98F9595] Malware Group: Medium Risk Malware [BP] c:\windows\system32\howokogu.dll [PX5: B52C4F90002D9798A22901F81A28CD00256BDAE3] Malware Group: Medium Risk Malware [BP] c:\windows\system32\fcsstu.dll [PX5: 0ECAC664000E2784369502783843C6008FE8B3DC] Malware Group: Medium Risk Malware [BP] c:\windows\system32\nifisofo.dll [PX5: 0ECAC664000E2784369502783843C6008FE8B3DC] Malware Group: Medium Risk Malware [BP] c:\windows\system32\fituzafi.dll [PX5: 25B6199B00D0812FAAE0013F07A4880032042F59] Malware Group: Medium Risk Malware [BP] c:\windows\system32\hidisuza.dll [PX5: 8F375F51E7AF7FE5309502798D1C9E009804C069] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nxrepf.dll [PX5: 8F375F51E7AF7FE5309502798D1C9E009804C069] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\higawaka.dll [PX5: B2E6410600799FEAA64F01DD48B08E001D88BCED] Malware Group: Medium Risk Malware [BP] c:\windows\system32\ijipdp.dll [PX5: 8F375F51ABAF7FE5309502798D1C9E00DF43B74C] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nuyakete.dll [PX5: 8F375F51ABAF7FE5309502798D1C9E00DF43B74C] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\gadibure.dll [PX5: 8F375F51ABAF7FE5309502798D1C9E00EF9C56F3] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\zkyyko.dll [PX5: 8F375F51ABAF7FE5309502798D1C9E00EF9C56F3] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\hokipofu.dll [PX5: BB528EC70021F6D336B10214BCC7D100BFB40EA3] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\zxxtit.dll [PX5: BB528EC70021F6D336B10214BCC7D100BFB40EA3] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\hihavuna.dll [PX5: 58984D2B00B8AABB9A2501625C08770004572726] Malware Group: Medium Risk Malware [BP] c:\windows\system32\demayoha.dll [PX5: A07DEC0D002B2421AC92012A78A91D00D50AE783] Malware Group: Medium Risk Malware [CP] c:\windows\system32\dijekaha.dll [PX5: 100FFF5200C7F805A26C014CDBFC5400E0D79286] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\divasalo.dll [PX5: 6B40B26A000011B532B802DD42A93700B92FC0A5] Malware Group: Medium Risk Malware [BP] c:\windows\system32\eotivv.dll [PX5: 6B40B26A000011B532B802DD42A93700B92FC0A5] Malware Group: Medium Risk Malware [BP] c:\windows\system32\mamotapi.dll [PX5: 8F375F5175AF7FE5309502798D1C9E006A03710B] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\wcibow.dll [PX5: 8F375F5175AF7FE5309502798D1C9E006A03710B] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\ligijupu.dll [PX5: 23813F6600DD6C94A66801959232CE00A89B4F80] Malware Group: Medium Risk Malware [BP] c:\windows\system32\khuoxt.dll [PX5: 8F375F5120AF7FE5319502798D1C9E00879BC073] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\semasema.dll [PX5: 8F375F5120AF7FE5319502798D1C9E00879BC073] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\jamamafo.dll [PX5: C31A24E9007228412CFC02DADC889D00B0C16AFF] Malware Group: Medium Risk Malware [BP] c:\windows\system32\rhleud.dll [PX5: C31A24E9007228412CFC02DADC889D00B0C16AFF] Malware Group: Medium Risk Malware [BP] c:\windows\system32\jevujuza.dll [PX5: 8F375F512EAF7FE5319502798D1C9E0094821008] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\zjdwaf.dll [PX5: 8F375F512EAF7FE5319502798D1C9E0094821008] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\lomokafu.dll [PX5: 8F375F517BAF7FE5309502798D1C9E004830D072] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\lxdynh.dll [PX5: 8F375F517BAF7FE5309502798D1C9E004830D072] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\mnmuno.dll [PX5: 8F375F517BAF7FE5309502798D1C9E004830D072] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\zehejevo.dll [PX5: 8F375F517BAF7FE5309502798D1C9E004830D072] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\jamazote.dll [PX5: 23813F6600DD6C94A66801959232CE0058D8542F] Malware Group: Medium Risk Malware [BP] c:\windows\system32\jisopisi.dll [PX5: 8F375F51BAAF7FE5309502798D1C9E00DB7E1703] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\vcmuao.dll [PX5: 8F375F51BAAF7FE5309502798D1C9E00DB7E1703] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\limepidi.dll [PX5: 2CB2633334F377B775A0017522A68400416579DD] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\lccdvg.dll [PX5: 8F375F5122AF7FE5319502798D1C9E002A026803] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\mibewoja.dll [PX5: 8F375F5122AF7FE5319502798D1C9E002A026803] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kebajuvi.dll [PX5: DC483615058276448FFF015FFC7F10002C11A2BD] Malware Group: Medium Risk Malware [BP] c:\windows\system32\ludiyofu.dll [PX5: 8CC86F0071F5AB449266014FEA92A7008853B5EE] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\magiduko.dll [PX5: CBBD4196007F991E38500224C9CD2C00AEE7E7CA] Malware Group: Medium Risk Malware [BP] c:\windows\system32\wctymg.dll [PX5: CBBD4196007F991E38500224C9CD2C00AEE7E7CA] Malware Group: Medium Risk Malware [BP] c:\windows\system32\lenisako.dll [PX5: 2CB2633359F377B774A0017522A68400EC03B807] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kanhzh.dll [PX5: 8F375F519CAF7FE5309502798D1C9E009EA89668] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\zakupuju.dll [PX5: 8F375F519CAF7FE5309502798D1C9E009EA89668] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kcxiok.dll [PX5: 8F375F51D6AF7FE5309502798D1C9E00F8367456] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nobawitu.dll [PX5: 8F375F51D6AF7FE5309502798D1C9E00F8367456] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\jqygga.dll [PX5: 8F375F514BAF7FE5319502798D1C9E0030DDF749] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\tenolabo.dll [PX5: 8F375F514BAF7FE5319502798D1C9E0030DDF749] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kivumolo.dll [PX5: 2CB26333BCF377B774A0017522A68400642EF3E7] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kubiwipi.dll [PX5: 6E1BA52A007ACDEF2EBF02C50F2C6E0018D12C70] Malware Group: Medium Risk Malware [BP] c:\windows\system32\slnrvg.dll [PX5: 6E1BA52A007ACDEF2EBF02C50F2C6E0018D12C70] Malware Group: Medium Risk Malware [BP] c:\windows\system32\lkoeod.dll [PX5: 8F375F5158AF7FE5309502798D1C9E0062FBDBF0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\tazobogi.dll [PX5: 8F375F5158AF7FE5309502798D1C9E0062FBDBF0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\juvokose.dll [PX5: 8F375F51F3AF7FE5309502798D1C9E00CFC5A9B2] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\ouwfly.dll [PX5: 8F375F51F3AF7FE5309502798D1C9E00CFC5A9B2] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kasiyebo.dll [PX5: 2CB2633346F377B775A0017522A684002C504EF6] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kamileva.dll [PX5: 7E3A6E370040A837360F02A0A3B350008E944530] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\tvheku.dll [PX5: 7E3A6E370040A837360F02A0A3B350008E944530] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kowoziza.dll [PX5: 2CB26333CDF377B774A0017522A684001AC7CDCD] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kzdwee.dll [PX5: 8F375F51D1AF7FE5309502798D1C9E008A241D1A] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\raditile.dll [PX5: 8F375F51D1AF7FE5309502798D1C9E008A241D1A] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\jajulaze.dll [PX5: DF8BCBE633321B9A6D01017324D83C000D95B63F] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kewowupa.dll [PX5: 05D6918700F2D4E8303402C20D19300014EF1BD8] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\qgofof.dll [PX5: 05D6918700F2D4E8303402C20D19300014EF1BD8] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\lijaduhi.dll [PX5: 8F375F513AAF7FE5319502798D1C9E009C1CAA1C] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\zizwpz.dll [PX5: 8F375F513AAF7FE5319502798D1C9E009C1CAA1C] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\kebikagu.dll [PX5: 9527EF330078499AA2B6010518685D00DB060E96] Malware Group: Medium Risk Malware [BP] c:\windows\system32\kupirire.dll [PX5: DC6E284900F780AEAE8E0183002A27001280C4F7] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\lufesoko.dll [PX5: EA98A0060338599917E901FA9B278A0088E3E516] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\pusifore.dll [PX5: 2CB263339DF377B774A0017522A68400BA9A85AD] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\mitapimu.dll [PX5: 8F375F51D3AF7FE5309502798D1C9E00A086E4EA] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\ofczam.dll [PX5: 8F375F51D3AF7FE5309502798D1C9E00A086E4EA] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\modabura.dll [PX5: 4DDEFF98007CFD48347E0277DBCADC009627C942] Malware Group: Medium Risk Malware [BP] c:\windows\system32\mezeweku.dll [PX5: 5D449432009C72CBAC3401270DE82C00F362C1B6] Malware Group: Medium Risk Malware [BP] c:\windows\system32\ragumoze.dll [PX5: DC86539AF839A64D8CA30192351F9300DD8A8800] Malware Group: Medium Risk Malware [BP] c:\windows\system32\mohafilu.dll [PX5: 93A6D47200BB8A6B32A60266F2692200F95F76E1] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\zqhpnc.dll [PX5: 93A6D47200BB8A6B32A60266F2692200F95F76E1] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\muwatibi.dll [PX5: 6308E644DBA832C074B3017E6F4634004883D2A5] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nupikufo.dll [PX5: 7D8A4748416F016A702E018A19092400C37A749C] Malware Group: High Risk Fraudulent Security Program [BP] c:\windows\system32\pawasonu.dll [PX5: 684020A6006CF1AC9665012EF9EC7400797F89C7] Malware Group: Medium Risk Malware [BP] c:\windows\system32\mapenelo.dll [PX5: B01DB2CD000848EDAC60015E3A817900D70ECF9B] Malware Group: Medium Risk Malware [BP] c:\windows\system32\peraniro.dll [PX5: 2D632672005E5DE5947401D425014900EF33AB02] Malware Group: Medium Risk Malware [BP] c:\windows\system32\qagvfc.dll [PX5: 8F375F517FAF7FE5309502798D1C9E008A3612B2] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\yozakapa.dll [PX5: 8F375F517FAF7FE5309502798D1C9E008A3612B2] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nozahiti.dll [PX5: 4618A9BA002424A79E7A01387914F100F7B12021] Malware Group: Medium Risk Malware [BP] c:\windows\system32\nhnhtr.dll [PX5: 8F375F51BCAF7FE5309502798D1C9E007074AA1C] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nojuvuva.dll [PX5: 8F375F51BCAF7FE5309502798D1C9E007074AA1C] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\obkgse.dll [PX5: DAED002A00471D212A3002BCEF590200A34776AF] Malware Group: Medium Risk Malware [BP] c:\windows\system32\tegavipo.dll [PX5: DAED002A00471D212A3002BCEF590200A34776AF] Malware Group: Medium Risk Malware [BP] c:\windows\system32\pisiluvu.dll [PX5: 8F375F5193AF7FE5309502798D1C9E00E9CA9E3F] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\qvigdz.dll [PX5: 8F375F5193AF7FE5309502798D1C9E00E9CA9E3F] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nazofafo.dll [PX5: 8F375F5102AF7FE5319502798D1C9E003EAD1D01] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\qnyrrq.dll [PX5: 8F375F5102AF7FE5319502798D1C9E003EAD1D01] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\miziwiva.dll [PX5: CFE6E9FD00BE3FBEA6AC0101AB8B6000BFA75B16] Malware Group: Medium Risk Malware [BP] c:\windows\system32\qoeedn.dll [PX5: 9F32B700002611CA304602720AFA22004A47330A] Malware Group: Medium Risk Malware [BP] c:\windows\system32\vuboduje.dll [PX5: 9F32B700002611CA304602720AFA22004A47330A] Malware Group: Medium Risk Malware [BP] c:\windows\system32\niejex.dll [PX5: 8F375F5103AF7FE5319502798D1C9E002F10B60D] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\nusoyeta.dll [PX5: 8F375F5103AF7FE5319502798D1C9E002F10B60D] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\mawijeho.dll [PX5: 009D5196FA775E61302402A26ED45D0069F8CFC1] Malware Group: High Risk Fraudulent Security Program [BP] c:\windows\system32\sxctkc.dll [PX5: 009D5196FA775E61302402A26ED45D0069F8CFC1] Malware Group: High Risk Fraudulent Security Program [BP] c:\windows\system32\suluyeba.dll [PX5: 55CA143500B78B3BA6CC018B354803006B25F2D7] Malware Group: Medium Risk Malware [BP] c:\windows\system32\rtufso.dll [PX5: 8F375F51EBAF7FE5309502798D1C9E00F4E36CDB] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\tateputu.dll [PX5: 8F375F51EBAF7FE5309502798D1C9E00F4E36CDB] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\robenala.dll [PX5: 6308E64480A832C074B3017E6F463400C3611808] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\sivotumo.dll [PX5: F97FC3D5003819779C5601745A9F56007BE23EDE] Malware Group: Medium Risk Malware [BP] c:\windows\system32\ruyutego.dll [PX5: 8F375F51FAAF7FE5309502798D1C9E0008655A9C] Malware Group: High Risk Cloaked Malware [BPN] c:\windows\system32\tijevufi.dll [PX5: 6308E6442CA832C075B3017E6F463400DA5B7502] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\sozivado.dll [PX5: 8CC86F0012F5AB449366014FEA92A70074F46A0C] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\suamnd.dll [PX5: 8F375F515FAF7FE5309502798D1C9E0060A14BE3] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\toraheke.dll [PX5: 8F375F515FAF7FE5309502798D1C9E0060A14BE3] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\sesotoja.dll [PX5: 8F375F511DAF7FE5319502798D1C9E00D8AE7B1E] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\twlovv.dll [PX5: 8F375F511DAF7FE5319502798D1C9E00D8AE7B1E] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\sabafiru.dll [PX5: 1331C9A6004C0574A48201EC563F630058F6D7FB] Malware Group: Medium Risk Malware [BPN] c:\windows\system32\vozaposo.dll [PX5: DC86539AF339A64D8CA30192351F930037C8E5E5] Malware Group: Medium Risk Malware [BPN] c:\windows\system32\vufurajo.dll [PX5: 6F5814CA0067D6A7A80001491D58DD00B1773AA4] Malware Group: Medium Risk Malware [BPN] c:\windows\system32\wogeneti.dll [PX5: 855FA8BBF6D621398C0701DB14B12C00E09F8F1A] Malware Group: Medium Risk Malware [BP] c:\windows\system32\uamynt.dll [PX5: 8F375F51DEAF7FE5309502798D1C9E00F8716DF2] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\yinuyoni.dll [PX5: 8F375F51DEAF7FE5309502798D1C9E00F8716DF2] Malware Group: High Risk Cloaked Malware [BPN] c:\windows\system32\wakatuha.dll [PX5: 8F375F51FDAF7FE5309502798D1C9E00C0756002] Malware Group: High Risk Cloaked Malware [BPN] c:\windows\system32\xxuxsm.dll [PX5: 8F375F51FDAF7FE5309502798D1C9E00C0756002] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\vawopijo.dll [PX5: 2CB2633379F377B774A0017522A6840070610A73] Malware Group: High Risk Cloaked Malware [BPN] c:\windows\system32\wufewoga.dll [PX5: DC483615C28276448EFF015FFC7F1000A5E6A3F3] Malware Group: Medium Risk Malware [BP] c:\windows\system32\velefusi.dll [PX5: 8F375F5161AF7FE5309502798D1C9E00D8143196] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\yvqewa.dll [PX5: 8F375F5161AF7FE5309502798D1C9E00D8143196] Malware Group: High Risk Cloaked Malware [BPN] c:\windows\system32\wipalego.dll [PX5: DF8BCBE667321B9A6C01017324D83C0065F2FDDD] Malware Group: High Risk Cloaked Malware [BPN] c:\windows\system32\wemeyebi.dll [PX5: DF8BCBE628321B9A6D01017324D83C002F73CFC7] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\vavusani.dll [PX5: 8F375F5190AF7FE5309502798D1C9E002DBEFDE0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\vnquig.dll [PX5: 8F375F5190AF7FE5309502798D1C9E002DBEFDE0] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\yikujode.dll [PX5: D5C3648B73C494A1907F01DDABE2B200821A233A] Malware Group: High Risk Cloaked Malware [BP] c:\windows\system32\ywlnha.dll [PX5: 317FBF72007271FD30F6028AAF989D0046EFCCB4] Malware Group: Medium Risk Malware [BP] c:\windows\system32\zugowuva.dll [PX5: 317FBF72007271FD30F6028AAF989D0046EFCCB4] Malware Group: Medium Risk Malware [BP] c:\windows\system32\yisihude.dll [PX5: DF8BCBE674321B9A6C01017324D83C007C2B6E9A] Malware Group: High Risk Cloaked Malware [BPN] c:\documents and settings\hp_administrator\local settings\temp\wjqs.exe [PX5: 23A6D6EF00A4480830810061A48AC100E1769057] Malware Group: Medium Risk Malware [U] (ACTIVE) c:\program files\flock\flock.exe [PX5: B374E80F38D51E66C54D01531FF15D008A5FA046] [U] (ACTIVE) c:\program files\flock\xul.dll [PX5: FD99373700B99696008286C8C9FC68008171F5B8] [U] (ACTIVE) c:\program files\flock\sqlite3.dll [PX5: BCBE826F0003DC98105B06B977593C00ABBC3EA7] [U] (ACTIVE) c:\program files\flock\js3250.dll [PX5: 819AE33A00060C8D60900929594A4F0018360C87] [U] (ACTIVE) c:\program files\flock\nspr4.dll [PX5: 160B2989008B07AC80A8023858637A0055BD653F] [U] (ACTIVE) c:\program files\flock\plc4.dll [PX5: F7D7E231008CDBA13A1D007F35F2C000942A4536] [U] (ACTIVE) c:\program files\flock\plds4.dll [PX5: 652E0AC1002CAD262CB600CA6E0E3C00F02E0F07] [U] (ACTIVE) c:\program files\flock\xpcom.dll [PX5: 01FB21E0000B83C92E79005410E92000D73D7EE1] [U] (ACTIVE) c:\program files\flock\components\browserdirprovider.dll [PX5: 102C429700598F3046F100DE215114007530C1FF] [U] (ACTIVE) c:\program files\flock\components\flockcom.dll [PX5: B40673640048319A705A01DDF972F600352501BF] [U] c:\program files\google\google desktop search\googledesktopdeskbar2.dll [PX5: FDE973690004B8C3928D02EDBA7CBC00D4F5D298] [U] c:\program files\agentoffice\aoloconnector.dll [PX5: FB7ABEDA00079A9FB01D012082CD8800CB28CCF0] [U] c:\windows\system32\adobe\director\swdnld.exe [PX5: BE65EAE3B8BCC9A8F550007C802D7100CDAC298E] [UPN] c:\windows\system32\tafenugo.dll [PX5: 7CE937A000C572E1941F011D67E8240066EB4C45] [UP] c:\windows\system32\smab.dll [PX5: D26ED0F900910E7E328F07C7D3E88800B6925390] [U] c:\program files\nch swift sound\mixpad\mixpad.exe [PX5: 35D0B9D3042A4820B0130893B0D3AC00399D9AD7] [UN] c:\program files\telekast\telekast.exe [PX5: 65C2322700824552705E002DDDE82A00DFCB52A1] [U] c:\program files\roxio\photosuite 10\pssourcepanes.dll [PX5: A3491BDBF08148A479E604633BCB1000316BA03A] [U] c:\program files\roxio\media import 10\mediacapturecontrols.dll [PX5: 30B30419F078EE2BB90A039E8E1144001A8ADD28] [U] c:\program files\roxio\videoui 10\panzoomdialog.dll [PX5: 95E58438F0317A53B9DF03A07675C0002ADD5AD9] [U] c:\program files\roxio\videoui 10\vuisettings.dll [PX5: FBD5C0CCF0EA285BF9D81F499CDCD0002CE18831] [U] c:\program files\common files\roxio shared\10.0\sharedcom\cpsbasiccontrols.dll [PX5: 47B292C2F098F7E0F9B00CD16323AE002CB31AD8] [U] c:\program files\roxio\videocore 10\mediaanalyser.ax [PX5: 5EC0081FF069A2479958026119E43D00E55AB3C1] [U] c:\program files\common files\installshield\updateservice\agent.exe [PX5: AFC39F8C204784B4450B0FBE33697B00D263A71A] [U] c:\program files\roxio\videoui 10\sbdview.dll [PX5: 778CE53AF0E2717409F81118EE79C700014D1348] [U] c:\program files\roxio\videoui 10\dvdbuttonstylelibrarydlg.dll [PX5: 41DE8AF1F0AADBC8494D0351750B4100FF6B7B16] [U] c:\program files\roxio\videocore 10\lvmwriter.ax [PX5: D4192F4FF0255002790B02B945E96F004A0E1764] [U] c:\program files\common files\st system shared\stvidlib.dll [PX5: 2D55CED1000784BEAE3701E529F825001A6F63C0] [U] c:\program files\common files\roxio shared\10.0\sharedcom\apssearchpane.dll [PX5: 47A27038F0EACA7D99DF05A95C934B00CDD72140] [U] c:\program files\roxio\videocore 10\vcpeffects.dll [PX5: 24AAB98BF060C3D749660E567F9D6100329D3B06] [U] c:\program files\roxio\videocore 10\vobloader.ax [PX5: EC420E12F01E9BDE29E002FABCA4C100202AD12F] [U] c:\program files\roxio\photosuite 10\ppstouchuptools.dll [PX5: 45D361E1F0FA018479C4056016A25A004612B9A8] [U] c:\program files\common files\roxio shared\10.0\mpeg\mpeg2muxer.dll [PX5: 39C60489F07E1F56F9C20526DA3D2900006A68C3] [U] c:\program files\common files\st system shared\moviesource.ax [PX5: FB8013E2001529DFB2080081556CBA00B8AC71EA] [U] c:\program files\roxio\videoui 10\vwuicontrols.dll [PX5: 0350FB56F0D66D73A9E128C61FF3E1005B3B15E5] [U] c:\program files\roxio\videocore 10\graphbuilder.dll [PX5: 883ECC3DF057DCF9F9510DCF7772AE006B1901E2] [U] c:\program files\roxio\videocore 10\roxaudio.ax [PX5: BA711E42F0F52E3A69CB068096EB0800E0C188CE] [U] c:\program files\common files\roxio shared\10.0\mpeg\roxiompegprop.dll [PX5: 19307CE5F0AE4DD499E7021DB1AA8200661665D2] [U] c:\program files\common files\roxio shared\10.0\mpeg\repackfilter.dll [PX5: 5068A006F0ED595239E40328F1913900F61979DC] [U] c:\program files\flock\accessiblemarshal.dll [PX5: AD59FDDC00C840A32E25002D43F5060089CAB3A1] [U] c:\program files\roxio\photosuite 10\ppsunsharpmask.dll [PX5: ED76C643F05063AE19AC0208D14C4800F31FA9A5] [U] c:\program files\roxio\videoui 10\vuiaudiovideommplugin.dll [PX5: 56C03C10F085ACCDD924095EBE136700565F354E] [U] c:\program files\roxio\videocore 10\vcptransitions.dll [PX5: 69BBC029F023831419F10A6DC02D4B00CCEABE23] [U] c:\program files\roxio\videoui 10\vwcommmondlgs.dll [PX5: F145D226F00A2C86B96E1DFA9DF14900899DA97B] [U] c:\program files\roxio\backupcentral\file backup\easyarchive.dll [PX5: 849F9B50F073A2F6491D06AE81D1080030DED934] [U] c:\program files\roxio\photosuite 10\printwizard.dll [PX5: 9B36343EF087E0E7F9C708CA342C9100A9E158B7] [U] c:\program files\common files\roxio shared\10.0\sharedcom\apsprevcontrols.dll [PX5: 26AAEB43F0D2F7EE897A049372344D004BACF89C] [U] c:\program files\common files\sonic shared\sonicmc02\sonic7m4vd.ax [PX5: 0B8A8E50F09B2551448204B495F07A00AD0620AC] [U] c:\program files\roxio\photosuite 10\ppsartistic.dll [PX5: 1B8C3D0CF0F31693D92905D5C6835300EF2724EE] [U] c:\program files\roxio\photosuite 10\batchwizard.dll [PX5: D77F9DBFF02F81B9C9CD06A6319FBC00339BDC99] [U] c:\program files\common files\roxio shared\mediashare101\mediasharecom.dll [PX5: D211091B007ADF27304E0292B468BF0025027DCD] [U] c:\program files\roxio\media import 10\photocapture.dll [PX5: 1327D129F021268E99CB05694025310058F816F3] [U] c:\program files\roxio\cineplayer\audioplayer.dll [PX5: BBE9234EF0149A48A96503D5DE3BA4007F25AA8C] [U] c:\program files\common files\roxio shared\10.0\roxio central36\data\dataplugin.dll [PX5: 02209069F033F4B039590A26F0303200FFFDDC8C] [U] c:\program files\roxio\photosuite 10\ppslenswarp.dll [PX5: 1B6C8B66F08265A0298F045D23E9AD00EA34EC08] [U] c:\windows\system32\adobe\director\swdir.dll [PX5: BD0201BAB8E1519B15C303ED3F333E00F5F79933] [U] c:\program files\roxio\photosuite 10\ppspainterlyeffect.dll [PX5: 25702B01F0907BA8899306A1398DA100A789C193] [U] c:\program files\roxio\videoui 10\vuiproddatammplugin.dll [PX5: 797ABE2FF0814C3CF9B307F075D46C0037E6BE53] [U] c:\program files\roxio\videoui 10\dsthemeviewctl.dll [PX5: 259BD065F085D7E0F96700D48323660089BD940F] [U] c:\program files\roxio\photosuite 10\ppsnatural.dll [PX5: 8308ECD1F00D9B1459AE04AF767B78003EA04B22] [U] c:\program files\roxio\videocore 10\sbddata.dll [PX5: 7F89A2E4F09EBFDE797A178EBAA9DE0037CBD1DA] [U] c:\program files\roxio\audiocodeccommon 10\dsfoggmux.dll [PX5: 1A45DD27F0BB04501F3401CE1D7A5F00DEAE1C37] [U] c:\program files\roxio\photosuite 10\createprojectwizard.dll [PX5: 50A08EF0F07EA324699E085EFC036F0093C351BA] [U] c:\program files\roxio\videoui 10\rxaet.dll [PX5: 142CF69CF0F0281F492F0CCECAB499002DAF0F4C] [U] c:\program files\roxio\photosuite 10\ppskernel.dll [PX5: 6CA8FE75F01D43EAF9A104B45A5B090063AD8442] [U] c:\program files\roxio\media import 10\videocapture.dll [PX5: B52AC3C8F0F261A2A9DF017DA8325D000EB22A9F] [U] c:\program files\roxio\videoui 10\slideshowwizard.dll [PX5: 328710D2F05E7884B9C9184BCD4AC9007289EA9D] [U] c:\program files\roxio\videoui 10\dvdfilehelper.dll [PX5: C574DAA9F0900618A97F02A0346915001A1B3313] [U] c:\program files\common files\st system shared\stvidfx.dll [PX5: 270D166C00EE4EB18E5D020DAF2E6600E4A0F103] [U] c:\program files\roxio\videocore 10\cpuregulator.ax [PX5: 2B753B6BF034A2B669B201589D83550062F077A4] [U] c:\windows\downloaded program files\isusweb.dll [PX5: 5A02A40320FF2147751207E4804A4F00995A92D3] [U] c:\program files\roxio\videocore 10\dvrsupportfilt.ax [PX5: F7EE778FF0A8FF5EB9D30292FAAF5C00BE75B453] [U] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomads_sm.dll [PX5: FF7098A0F0BBEA9D59380B6F78BA030015F69526] [U] c:\program files\roxio\media import 10\capturetools.dll [PX5: FCFEBA6DF0071C0CA9F705D6B4CACB009F75C1B1] [U] c:\program files\roxio\cineplayer\sonicmediaplayer.dll [PX5: 6AE87ECDF0D290F739761964456C6C004DEF7CD9] [U] c:\program files\common files\roxio shared\10.0\sharedcom\albumuniversalview.dll [PX5: F19AA7F7F00414B529A50941255B1D006E835584] [U] c:\program files\roxio\photosuite 10\ppsframeobject.dll [PX5: DF2D2122F0F899CA69E9037828CC4C0019A220DC] [U] c:\program files\roxio\photosuite 10\gdishapeobject.dll [PX5: 5B971C22F0081C41A90B06876A2DE400C7A82833] [U] c:\program files\roxio\videocore 10\mgiresourcemanager.dll [PX5: C3B2BE3DF059D4F7E93F01662FDAE400EA8C629A] [U] c:\program files\roxio\photosuite 10\ppsgeometric.dll [PX5: 6B3716F7F08884CFF903021F81BFC40022F58F8C] [U] c:\program files\roxio\cineplayer\filters\sonicdvddashvrnav.dll [PX5: D4783E3CF065B82E59E309597EDB510070F63858] [U] c:\program files\common files\roxio shared\10.0\sharedcom\obexdevice.dll [PX5: 4990EA89F0305DAC090405B3E8D78400E878F512] [U] c:\program files\roxio\label creator 10\lcprintcalibration.dll [PX5: 028BE7BDF08BEEB839C10AF4F40D5900A2333397] [U] c:\program files\common files\roxio shared\10.0\sharedcom\apsbrowsepanes.dll [PX5: C519998CF0AE6E3959A207FD7C8F2E0098A278A7] [U] c:\program files\roxio\videocore 10\vcgcapturefo.dll [PX5: C478D629F0E3408A39C20201ECF5D4005D447CDB] [U] c:\program files\roxio\media import 10\vwavecapture.dll [PX5: 2BD6FCF7F08FA3D469A8084B8DA7CF006941FA4C] [U] c:\program files\common files\roxio shared\10.0\sharedcom\p2pdialogs.dll [PX5: A2B944BCF09B81B21984067FE8137900CF18F48F] [U] c:\program files\common files\roxio shared\10.0\sharedcom\cpsthumbnailctrl.dll [PX5: C7296BAAF041FC4699B9072509D06A0029B0F36E] [U] c:\program files\common files\roxio shared\10.0\sharedcom\mediaselector.dll [PX5: 9DC820A8F079ED55398F0406BCDB1000B1683224] [U] c:\program files\roxio\photosuite 10\ppsgroupobject.dll [PX5: 2529F0AAF077503F094A027EF460D900C4C922B8] [U] c:\program files\roxio\photosuite 10\ppsuniversalbrush.dll [PX5: 261FC8E7F0A340F4594607F27AEB4800F8247CF4] [U] c:\program files\common files\roxio shared\10.0\sharedcom\apsviewpanes.dll [PX5: 99E9FB80F0A192D8899109148897E100E88063C9] [U] c:\program files\common files\roxio shared\10.0\sharedcom\cpssmartviewbrowser.dll [PX5: 2D3B3D6BF04ABCC7D92607FF4F73D400795D2C0A] [U] c:\program files\roxio\videocore 10\cgactivator.dll [PX5: C67B1B6AF0C3DC28798002987BBC240006B1D4B5] [U] c:\program files\roxio\videoui 10\projectimporter.dll [PX5: B9579B72F034977AB9CC54FD30582F0027FC4C98] [U] c:\program files\roxio\videocore 10\genericipe.dll [PX5: 82117DFAF0F405EA19540200406DA500C5EBB909] [U] c:\program files\roxio\media import 10\mediacapture10.exe [PX5: BF762406F0D70CC759B905B2C90FDF009728A3FB] [U] c:\program files\common files\installshield\updateservice\isdm.exe [PX5: 731BF99C202E24492586045E863BA700EAC1ACAB] [U] c:\program files\common files\roxio shared\10.0\mpeg\mpeg1muxer.dll [PX5: D6D9B0B8F0D30262A98E0431344AF000488CD264] [U] c:\program files\roxio\videocore 10\plasmacgfilter.ax [PX5: 5D64E0D9F0BDDBF9F9DB0258ACD98D00E02DE7DD] [U] c:\program files\common files\roxio shared\10.0\mpeg\roxioaudioenc.dll [PX5: 525FCD9FF00AC0B2492206A1381823005022D0F7] [U] c:\program files\roxio\photosuite 10\pseditdocument.dll [PX5: B6F883A5F0FF14F4B921037255A962005B707096] [U] c:\program files\roxio\photosuite 10\ppsrenderctrl.dll [PX5: 1D16A3F8F075FED2992E019E52CF8D009D4B851E] [U] c:\program files\roxio\videocore 10\lvm.dll [PX5: F5B1D308F08682FC798103E6EBD19500B6E1A5C1] [U] c:\program files\yahoo!\messenger\photoshare.dll [PX5: AD9390C70054A22200C9081B9395390044A2CC04] [U] c:\program files\common files\sonic shared\sonicmc02\sonic7amrd.ax [PX5: 90A8801DF0EAC747847C0305B8B10700521FF780] [U] c:\program files\common files\roxio shared\10.0\sharedcom\cpsalbumbrowser.dll [PX5: 09C8E661F030E95FB94107562E298200B970D694] [U] c:\program files\roxio\videoui 10\dsburner.dll [PX5: C50B0D2AF072612069700799523449006FE99E3B] [U] c:\program files\roxio\photosuite 10\ppscutoutobject.dll [PX5: 8C83DC5FF0085057390F046924863C00424E63CE] [U] c:\program files\roxio\audiocodeccommon 10\dsfflacencoder.dll [PX5: 13CF3E3EF02EC6B739ED0117D01C5C00C2CC7A77] [U] c:\program files\roxio\photosuite 10\ppsprojectobject.dll [PX5: F4A16648F0F6FBF219FF02F100490800F377616A] [U] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomati.dll [PX5: C50DFC31F02923F8592E0B1A54444C002B0A1EB3] [U] c:\program files\common files\sonic shared\sonicmc02\sonic7mpgdmx.ax [PX5: C905FF13F0064EE9740714BB8EFC06003E8A000F] [U] c:\program files\common files\roxio shared\10.0\sharedcom\cpsnavigationcontrol.dll [PX5: 878A2A6CF0BFEEA519FD04887475E400E62894A6] [U] c:\program files\roxio\videoui 10\dvdformatloaderplugin.dll [PX5: 7C4112B9F05FBA69B9DC01408488DD00FDD4A361] [U] c:\program files\common files\roxio shared\10.0\sharedcom\rawjpegeditor.dll [PX5: 1D6959FBF0A381FE694103EA8FCF4800BA8427E3] [U] c:\program files\common files\roxio shared\10.0\sharedcom\roxwebuploadprothandler.dll [PX5: D6674A35F09BD6AF39C3010A5E1BF600B7AB15E4] [U] c:\program files\roxio\videocore 10\vcptextoverlay.dll [PX5: DC26053DF0B50D68C9D505844186CA0081E0E26F] [U] c:\program files\roxio\videoui 10\dvdbvalidatedlg.dll [PX5: 918A4174F0442F2619CB02B671FDF40099BCD18D] [U] c:\program files\common files\roxio shared\10.0\mpeg\mgirawwriter.dll [PX5: CCAE0F7BF01BBB51293E02EA88D3B100D9FC5264] [U] c:\program files\common files\roxio shared\10.0\sharedcom\cpslistctrl.dll [PX5: 22F24414F05E9C94D9F90352B2641B00306F5BBE] [U] c:\program files\roxio\audiocodeccommon 10\dsfcmmlrawsource.dll [PX5: 4E995B77F0BDC9E139D60118F5A17600DF68DAF8] [U] c:\program files\roxio\videoui 10\dssaveastheme.dll [PX5: DC528D6DF0F44FF129040241E9321E00D2AAA2AF] [U] c:\program files\roxio\videocore 10\dvdplusrwmanager.dll [PX5: EAAADF82F0E07D3889E606F825701D00EC8AC4B9] [U] c:\program files\roxio\photosuite 10\ppsremoveredeye.dll [PX5: 2EEDB1AAF09BF2EA89AF0268F47E60005EF6CECC] [U] c:\program files\common files\roxio shared\10.0\sharedcom\cpstreectrl.dll [PX5: 7A7C0828F07EE348798E037C653AC800E56BDBE3] [U] c:\program files\common files\sonic shared\sonichdnav.dll [PX5: 59E06F25F088D8FDE3C302AB6AAD19006DC93FD8] [U] c:\program files\roxio\audiocodeccommon 10\dsfoggdemux2.dll [PX5: B69CC06FF091AB6E09A00298DFCB7200CFDDA18D] [U] c:\program files\roxio\photosuite 10\psnavigationpanes.dll [PX5: 4896EC61F0652298C9C90440B7CFBF0011B73881] [U] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomasushp.dll [PX5: 07B1ACD9F0C3063949320B2571E57200BED53046] [U] c:\program files\roxio\photosuite 10\ppsaffine.dll [PX5: 17B53D99F0D91115092203F7A2FEE8008FA6A879] [U] c:\program files\roxio\videoui 10\videocdlib.dll [PX5: AD940419F04F078D09CD0331947DA800D01A4049] [U] c:\program files\common files\sonic shared\sonicmc02\sonic7avcvd.ax [PX5: 7944BA30F0EC969FD4460EE94A614000DD1C7401] [U] c:\program files\roxio\virtual drive 10\dilelevationproxy.dll [PX5: 44AB51BAF01ED4A6E95E002498A49600B9A8CF96] [U] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomemuzed.dll [PX5: 700AE1C0F0ABAC0BD98E0BF31D3D6F00E1088614] [U] c:\program files\roxio\videoui 10\dvdbtreecontrol.dll [PX5: 9DE9BBEFF0376CEE090605AD84340700C2E2CE3E] [U] c:\program files\roxio\digital home 10\assetsmngrcontrol.dll [PX5: E0AFB295F08359BAC9AF0AEA04671E005F52239B] [U] c:\documents and settings\hp_administrator\local settings\application data\google\google talk plugin\googletalkax.dll [PX5: 663FF8B5F08ACC76E57003EC73FA1900852B77CE] [U] c:\documents and settings\hp_administrator\local settings\application data\google\google talk plugin\googleadapter.dll [PX5: A06B5721F0FC305E25DB04048EAD0C006EF7D052] [U] c:\windows\system32\tmp22d54.fot [PX5: A8752D3D81AE9C8B05C00001DBD0C4008C6B6050] [U] c:\windows\system32\tmp23d54.fot [PX5: F7749AC081034A8A051100A37E0971005A3F2429] [U] c:\windows\system32\tmp260b4.fot [PX5: 8616E1B181770B48056D001A16F2B9005DC4D358] [U] c:\windows\system32\tmp33ace.fot [PX5: E07B201081B2933C0560002D60D982000DAC1C5A] [U] c:\windows\system32\tmp3e2b4.fot [PX5: 37AEBBE9815C307E052E004EDEE5680035C126D4] [U] c:\windows\system32\tmp48bcf.fot [PX5: 242A55A18141E0F30598008752EB2300EE49C13C] [U] c:\windows\system32\tmp55bcf.fot [PX5: C8392500810597C60596009F9801390080F808A6] [U] c:\windows\system32\tmp57bcf.fot [PX5: 3F8871598154FECE052100A4B2B36B0025427478] [U] c:\windows\system32\tmp62bcf.fot [PX5: 7476671C8103AC68056400DB70F6ED003370F717] [U] c:\windows\system32\tmp63bcf.fot [PX5: C03C1AF48159BC28052500F572A75B009081212E] [U] c:\windows\system32\tmp70bcf.fot [PX5: EAC5570681B16E26050400B56FCDB6007B996E45] [U] c:\windows\system32\tmp74c54.fot [PX5: 05F57FE381146128056C004548E63700BE54814E] [U] c:\windows\system32\tmp7afa4.fot [PX5: 0772959381BC78B105800023CBB94E002318679B] [U] c:\windows\system32\tmp812b4.fot [PX5: 80B6A5C38177F55E050B00803732C400C689B048] [U] c:\windows\system32\tmp8fbce.fot [PX5: 376C95D98193C0E5050500B567C84000A00AB3F2] [U] c:\windows\system32\tmp90c54.fot [PX5: E180256E81A17593053400F0A51BD900DC4995E9] [U] c:\windows\system32\tmpabbce.fot [PX5: 9DCCA57F81D938750589007353F70200C4200128] [U] c:\windows\system32\tmpb7bce.fot [PX5: CE3FC94481480AD905DF008346CD86009CA970B7] [U] c:\windows\system32\tmpbbb54.fot [PX5: 3C160B4781DCA6CE054A00B57D1D62003A219041] [U] c:\windows\system32\tmpd31b4.fot [PX5: 866086D881BAFE11054D0022CCFDB900802FB50C] [U] c:\windows\system32\tmpd3bce.fot [PX5: F9123BA18113505D05550057AAA37700677ACBB8] [U] c:\windows\system32\tmpd6b54.fot [PX5: 7DB3A778814D2F3B05BF00A486F418006B30B73A] [U] c:\windows\system32\tmpdb3b4.fot [PX5: C4424DED816E1C66059A00E3D2F5BC0033ACF69E] [U] c:\windows\system32\tmpeface.fot [PX5: 81C18C7681A0F94D05A10034EFC9BF005140BFE2] [U] c:\windows\system32\twain.dll [PX5: 62108ADDE0B4DF7F819100A54B08D600BB413C68] [U] c:\program files\flock\crashreporter.exe [PX5: 7FB4AF7C3806955E2526037ED0918400CE943FD6] [U] c:\program files\flock\install_flash_player.exe [PX5: E7823B2B5017656BE60F16980D1D940029506B4D] [U] c:\program files\flock\updater.exe [PX5: A24A885F38ADE840E54F031256BC7E00F732BB82] [U] c:\program files\flock\components\imgscaler.dll [PX5: B8CFB171009FA02A3C6800EBD0EDCE0020DEC828] [U] c:\documents and settings\hp_administrator\local settings\application data\google\google talk plugin\googletalkplugin.dll [PX5: 0562A722F00C2D18B5FC39A31DD479001B9D7A37] [U] c:\program files\agentoffice\olagnt32.exe [PX5: B454F1250058C9EC40FC2658F41D8900615B3FAE] [U] c:\program files\secondlife\secondlife.exe [PX5: EE840FD6004D3B5730933A850AD90101626A9B2B] [UP] c:\program files\swish max2\swishmax2.exe [PX5: 4F17D894008AA2112CED2E4B3CEBD7001A66D5D8] [UP] c:\program files\stoik imaging\stoik video converter 2\videopak2.exe [PX5: E98268100080805EA08917A35BA54100971CA065] [U] c:\vt3software\vt3videosuite.exe [PX5: 4042EF29CA669B22D6451B6040199300BB9B434A] [G] (ACTIVE) c:\windows\system32\secur32.dll [PX5: 536E34A8003EFBF8DA2800A52BB2F5002C50EDCF] [G] (ACTIVE) c:\windows\system32\csrsrv.dll [PX5: C955D99B00AD22858091009CE7653300F7E45BAD] [G] (ACTIVE) c:\windows\system32\msvcrt.dll [PX5: 8D219F8D00D363B03C94050F1D501000232569AA] [G] (ACTIVE) c:\windows\system32\user32.dll [PX5: 1EE852BB004AFE80D0E5086E010CC200BAEDD060] [G] (ACTIVE) c:\windows\system32\rpcrt4.dll [PX5: 3A75D7AA0004184FDE050869EFAEAF003FE8C68E] [G] (ACTIVE) c:\windows\system32\userenv.dll [PX5: 8D0A73790000B9A60AFA0B7799BA50001480E583] [G] (ACTIVE) c:\windows\system32\winsrv.dll [PX5: 9F12216B00E243DC788304E70F620200B9651418] [G] (ACTIVE) c:\windows\system32\regapi.dll [PX5: 3BDFE07B00636050C232006EC96F600028536072] [G] (ACTIVE) c:\windows\system32\profmap.dll [PX5: 129936C20053D9156CD7001C64367E00E414EB45] [G] (ACTIVE) c:\windows\system32\smss.exe [PX5: 858985AB00B86E2BC60900AD18ED0300AAE1DE66] [G] (ACTIVE) c:\windows\system32\authz.dll [PX5: 9C99E50400FE530EDE9300C611EE4100D1F5B0A9] [G] (ACTIVE) c:\windows\system32\ntdll.dll [PX5: C67635B000C7EFCCCEC40AD85BC1A300F252F525] [G] (ACTIVE) c:\windows\system32\sxs.dll [PX5: 7DA6155100CD9BC4E2BC0A5BBE89310022984217] [G] (ACTIVE) c:\windows\system32\psapi.dll [PX5: E45B4B8F006B80405A31004447A81A0004CB0571] [G] (ACTIVE) c:\windows\system32\winlogon.exe [PX5: 08A3C79400E89575AACC07CFE43BE4007E07B082] [G] (ACTIVE) c:\windows\system32\gdi32.dll [PX5: 9D4C6D890038D28A4E82041A7993750075164CE7] [G] (ACTIVE) c:\windows\system32\msasn1.dll [PX5: A4F4ADCF0079800BE0EB00B2C969390093F01930] [G] (ACTIVE) c:\windows\system32\version.dll [PX5: 48B2326F0046ACF04A2F009ECFE2F700297C7989] [G] (ACTIVE) c:\windows\system32\netapi32.dll [PX5: 0919F94300101F5012140538A0E252006DFECAEF] [G] (ACTIVE) c:\windows\system32\apphelp.dll [PX5: CAD3C6370032D7A5F0B3015FD8E92200A7751139] [G] (ACTIVE) c:\windows\system32\kernel32.dll [PX5: 0AD652AA00FC1D0C06930F5593CD84002DD65432] [G] (ACTIVE) c:\windows\system32\nddeapi.dll [PX5: 956C54EE009E4E5046BE007A7FAF9200E4434752] [G] (ACTIVE) c:\windows\system32\csrss.exe [PX5: 915E606100C25A44189F00665DD0AE00C2915516] [G] (ACTIVE) c:\windows\system32\basesrv.dll [PX5: 7CF7B2D300161694CEE70079FD762A00FD221255] [G] (ACTIVE) c:\windows\system32\setupapi.dll [PX5: 154783FC009BD5AC024A0FD064643800249F930D] [G] (ACTIVE) c:\windows\system32\icaapi.dll [PX5: 250F3DFD00F33C1F2CA90044E2AB0700656E66F3] [G] (ACTIVE) c:\windows\system32\ipsecsvc.dll [PX5: A284B00D004412D1CACE0214647C4E008303B9B3] [G] (ACTIVE) c:\windows\system32\msgina.dll [PX5: 332D310E00FAA8212CA00F238AD78B0023CDC234] [G] (ACTIVE) c:\windows\system32\mstlsapi.dll [PX5: C2680D8300018E10C49501D751FA98009B3E7AB6] [G] (ACTIVE) c:\windows\system32\msprivs.dll [PX5: B7C3D94D00650CDCBC0A0065E2B2780073142639] [G] (ACTIVE) c:\windows\system32\scesrv.dll [PX5: D5457DC900476E25CA9904FA093453007CE1D3EE] [G] (ACTIVE) c:\windows\system32\ncobjapi.dll [PX5: 4A760B7A005A24058E1B000579721100D7860F10] [G] (ACTIVE) c:\windows\system32\winscard.dll [PX5: 40DE6C9D00625F258477015397173C002F7330D3] [G] (ACTIVE) c:\windows\system32\msv1_0.dll [PX5: 849F823900874A5BFA030136E43C1D00F7CBD368] [G] (ACTIVE) c:\windows\system32\normaliz.dll [PX5: E3FC1A7000BA1C775C420052AC60C600F74EBAFC] [G] (ACTIVE) c:\windows\system32\rsaenh.dll [PX5: 19B797A900BB112F5426027FDD39EC001D5760F1] [G] (ACTIVE) c:\windows\system32\odbc32.dll [PX5: 7B1DF19300CD6699D0980342C9BBC000005C4BB6] [G] (ACTIVE) c:\windows\system32\rasapi32.dll [PX5: B42570E300C0A51B9C9A03B11C4470004F247D2C] [G] (ACTIVE) c:\windows\system32\hnetcfg.dll [PX5: 7D93B95F0053B42340FE05BA958353001E056FC5] [G] (ACTIVE) c:\windows\system32\ws2help.dll [PX5: D5E6E5C200940F924EAB009267BAC700194216C3] [G] (ACTIVE) c:\windows\system32\samlib.dll [PX5: C6E9EBFF00376E94FAAE002B3D4FE600C1F3F18E] [G] (ACTIVE) c:\windows\system32\wdmaud.drv [PX5: 9E997A9100E00AB25C2E0007BFD7ED00D6DB759F] [G] (ACTIVE) c:\windows\system32\wintrust.dll [PX5: DB0CC24600AC672EB2E30223D02BD300BCD7BC8F] [G] (ACTIVE) c:\windows\system32\clbcatq.dll [PX5: F6005FF8002694229C2707EE8C3E3200AE61E555] [G] (ACTIVE) c:\windows\system32\wldap32.dll [PX5: BB7512DA00E90F3EA05602946259A9007F8695BD] [G] (ACTIVE) c:\windows\system32\msacm32.drv [PX5: 0A0C500500C4AB055058007FB94555005B041DD7] [G] (ACTIVE) c:\windows\system32\wtsapi32.dll [PX5: C00F08BB00D5C1E748870068B7CF33003C5DB51A] [G] (ACTIVE) c:\windows\apppatch\acgenral.dll [PX5: A5E070E5008A3CA2449B1C759DD89C00AE77A675] [G] (ACTIVE) c:\windows\system32\iertutil.dll [PX5: A9DC33A300F06C7B16A8044B4AEC2200A0A02D32] [G] (ACTIVE) c:\windows\system32\uxtheme.dll [PX5: 004E6F720026350A5600030933650A008FE9F7B0] [G] (ACTIVE) c:\windows\system32\ntdsapi.dll [PX5: 829FACD8005095330684014F43849600A4A7FB8D] [G] (ACTIVE) c:\windows\system32\sfc.dll [PX5: 89E84D5200CF03421478002B882F7D00A63C49D3] [G] (ACTIVE) c:\windows\system32\msctfime.ime [PX5: F657260400203250B436023B63BED10004430D4E] [G] (ACTIVE) c:\windows\system32\comctl32.dll [PX5: 58711F2E0031D0D66C9109B3CC40D8001324BA48] [G] (ACTIVE) c:\windows\system32\atl.dll [PX5: 5E305C2100F089A0E682004447382A00FDED6863] [G] (ACTIVE) c:\windows\system32\lsasrv.dll [PX5: 671C08540079858604030BB03474E200382E31B6] [G] (ACTIVE) c:\windows\system32\oleaut32.dll [PX5: D3721E540040A0906292083DF30D50008811F532] [G] (ACTIVE) c:\windows\system32\comdlg32.dll [PX5: 892EEE5500E4EDA63AA104D70FCBB60076D8D62A] [G] (ACTIVE) c:\windows\system32\msacm32.dll [PX5: F818B09C0055EBEA18B101729A6EC6002AD08A29] [G] (ACTIVE) c:\windows\system32\tapi32.dll [PX5: 7AE4E0A400D5864AC64B02EEA63BF300C0418EFD] [G] (ACTIVE) c:\windows\system32\shfolder.dll [PX5: 4F877D7A00697D35626000B50AACB3008A0F914A] [G] (ACTIVE) c:\windows\system32\samsrv.dll [PX5: 253D430300438A98588C06CDDB739000272E6768] [G] (ACTIVE) c:\windows\system32\activeds.dll [PX5: 67FDEADE001365B1F639027CBF788C007F0C0466] [G] (ACTIVE) c:\windows\system32\pstorsvc.dll [PX5: D5E6DE15002AB97486EE00295E3519004311F809] [G] (ACTIVE) c:\windows\system32\wininet.dll [PX5: A8437EF000F365BA92050C7C8BEFCC005EE60CE2] [G] (ACTIVE) c:\windows\system32\iphlpapi.dll [PX5: 352A2D9200DB457772C6019AB1E38E009C7A5700] [G] (ACTIVE) c:\windows\system32\odbcint.dll [PX5: 847B8E9B004B5A42703B01AC5A6AB700CD30D958] [G] (ACTIVE) c:\windows\system32\winmm.dll [PX5: 13F5EAB2004B18C7B0AA0253C3C1330003CE5648] [G] (ACTIVE) c:\windows\system32\winsta.dll [PX5: 4FC178B000482116D2BD00E93C9ECE00D0480EF2] [G] (ACTIVE) c:\windows\system32\cryptdll.dll [PX5: 03BDA30E00C2568782E70078CCDCA600FB107A2E] [G] (ACTIVE) c:\windows\system32\psbase.dll [PX5: 0E574A8700AB3CF97AE50134B55DCA00B9B05876] [G] (ACTIVE) c:\windows\system32\msvcp60.dll [PX5: 529F9CCA00E65E4E50F406DD88392600874CC458] [G] (ACTIVE) c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll [PX5: 56C8CE5E00851B0E16C71080EE38A700B0371013] [G] (ACTIVE) c:\windows\system32\wbem\fastprox.dll [PX5: 6B5798200004A660346E07370FE42F000E29BFB9] [G] (ACTIVE) c:\windows\apppatch\acadproc.dll [PX5: 4481FDAC006BDDB69ABC00D7D79D140035AF8893] [GP] (ACTIVE) c:\windows\system32\shlwapi.dll [PX5: 7D1168D100397D863C5F079AA364E000D32033DD] [G] (ACTIVE) c:\windows\system32\schannel.dll [PX5: E084CAFD00263F4C3618026895AF4E00D376B1B0] [G] (ACTIVE) c:\windows\system32\eventlog.dll [PX5: 74C0ACE400BB539DDA760019C66FFE004EA8E15E] [G] (ACTIVE) c:\windows\system32\winipsec.dll [PX5: 316A8F9B009E219D8062008DBEE6D100C6CDF6D8] [G] (ACTIVE) c:\windows\system32\wdigest.dll [PX5: 10A39DD8002A489BC09400C4337AED00A21738D0] [G] (ACTIVE) c:\windows\system32\cabinet.dll [PX5: 41C0FD920017CFBEEA3400FF6C23B200948AF962] [G] (ACTIVE) c:\windows\system32\rasman.dll [PX5: EDBB389C0036CD71F0EF007B23C7E500D974B004] [G] (ACTIVE) c:\windows\system32\ws2_32.dll [PX5: ED479C43003596C5447E01096F563C00A0368937] [G] (ACTIVE) c:\windows\system32\xpsp2res.dll [PX5: DA22457E009A2BE138AD2CE13B304000CC3BE023] [G] (ACTIVE) c:\windows\system32\sfc_os.dll [PX5: F26B2BAF0018BC9E2489020583C62D00D3EDFCD1] [G] (ACTIVE) c:\windows\system32\dnsapi.dll [PX5: 74EB5FA400091D754463024F4ED97A0092707122] [G] (ACTIVE) c:\windows\system32\dssenh.dll [PX5: 31E843BE00E2A81C18FA0265E10B6500232880A4] [G] (ACTIVE) c:\windows\system32\mpr.dll [PX5: 53E19177002424D9EAD7005EFAA4ED00F14A5B45] [G] (ACTIVE) c:\windows\system32\oakley.dll [PX5: B3FA2D0E00AA18AE12B804D88D758200387B1E01] [G] (ACTIVE) c:\windows\system32\imagehlp.dll [PX5: C514DEA900649DD634FB027E5F879F00BCCD8258] [G] (ACTIVE) c:\windows\system32\wbem\wbemsvc.dll [PX5: F370DD6A003B1D86AA8E00F210285E00CEEA1EBA] [G] (ACTIVE) c:\windows\system32\kerberos.dll [PX5: 2815B079000EADB3847504C1A6094F009DAE1FF3] [G] (ACTIVE) c:\windows\system32\adsldpc.dll [PX5: B147B9E700C7511F3070026D6E9329002B36B91C] [G] (ACTIVE) c:\windows\system32\umpnpmgr.dll [PX5: 9778CA37001C999DE21901CEE9332600C8A8FDFF] [G] (ACTIVE) c:\windows\system32\shimeng.dll [PX5: 187925F700B0758B00BE01FCD873B4008BD47C54] [G] (ACTIVE) c:\windows\system32\netlogon.dll [PX5: 4AD0CDF2006A3C7F36AD06B5AE145400218BAC7A] [G] (ACTIVE) c:\windows\system32\comres.dll [PX5: 056D8FA100E39E7216470C7CE8FD7800B3987822] [G] (ACTIVE) c:\windows\system32\ole32.dll [PX5: 37731593007696ED9C6813CFF613B1004A93B4E7] [G] (ACTIVE) c:\windows\system32\wbem\wbemprox.dll [PX5: 9BC59AB300115E854A64001B6B14BF004340CCB2] [G] (ACTIVE) c:\windows\system32\wbem\wbemcomn.dll [PX5: 668B9E6C0067E87646D603856877DD005CE05AD8] [G] (ACTIVE) c:\windows\system32\rtutils.dll [PX5: 47F262E000A76D5BAC5800EFA3AA12007319C827] [G] (ACTIVE) c:\windows\system32\ntmarta.dll [PX5: 1E915E1600DB5D12D0A801955C4BCF00D7074068] [G] (ACTIVE) c:\windows\system32\imm32.dll [PX5: 4DA51A0A00D858BFAE4F01B360834F009316407E] [G] (ACTIVE) c:\windows\system32\midimap.dll [PX5: 57090CFC0008E4CA4A4F00428AB4320020C9C16A] [G] (ACTIVE) c:\windows\system32\wmi.dll [PX5: 07C4E937009487D016E3006A26ACBD000B74A165] [G] (ACTIVE) c:\windows\system32\netrap.dll [PX5: 1FEBA81200EFD9D730B9003B2A2D0F009394D04D] [G] (ACTIVE) c:\windows\system32\wbem\wbemcore.dll [PX5: 163EF86B00B6422D1A6008DFA38AFD003253C0D2] [G] (ACTIVE) c:\windows\system32\netshell.dll [PX5: 8C52CCC90008F1C206F71A56C6AD510047D8BAE8] [G] (ACTIVE) c:\windows\system32\wbem\ncprov.dll [PX5: 57AA38DF00AE7586B826004DA42E73006AD67F00] [G] (ACTIVE) c:\windows\system32\wbem\esscli.dll [PX5: 60861C2D0025D1D1C8AC0338AF184100E6F3D37D] [G] (ACTIVE) c:\windows\system32\kmddsp.tsp [PX5: 141A38E4002A8DF5820300A2C40E74007D7E26AA] [G] (ACTIVE) c:\program files\pinnacle\shared files\filter\mpegdecoder.dll [PX5: D8573CF6003A50CA707501E9CD292B005DCE4EDE] [G] (ACTIVE) c:\windows\system32\fxsmon.dll [PX5: 76E8574200EBD6015CEE0015F748DF0078897676] [G] (ACTIVE) c:\windows\system32\unimdmat.dll [PX5: 1C54723900EF2033227A011DF3C285005B32B7EA] [G] (ACTIVE) c:\windows\system32\winhttp.dll [PX5: 06A2994C00D85B135CB105D77AAB0300B9222156] [G] (ACTIVE) c:\windows\system32\uniplat.dll [PX5: BDA160F3004D5035361000FC8F08220075E0CBD1] [G] (ACTIVE) c:\windows\system32\urlmon.dll [PX5: 5FB62F4F0066C29C94391184DDB32500FECE87A8] [G] (ACTIVE) c:\windows\system32\hpzlnt12.dll [PX5: 9DF454E751E3562C20D8023E30B4C00027DD8110] [G] (ACTIVE) c:\windows\system32\winrnr.dll [PX5: B99E0E8D00542DFA424300FED26B3C00567EC44F] [G] (ACTIVE) c:\windows\system32\credui.dll [PX5: 2958D65E00CF5461808D02E1D736740044A2B4BA] [G] (ACTIVE) c:\windows\system32\kstvtune.ax [PX5: 8CD8D3CB00F6F316F2A70038694F18006ED45529] [G] (ACTIVE) c:\windows\system32\fxsevent.dll [PX5: E90BC93B003EBC66D8B1003F80FAB900D7AA4589] [G] (ACTIVE) c:\windows\system32\colbact.dll [PX5: 9B19BC02000C06C1EC3F00F04A75D20080CF345C] [G] (ACTIVE) c:\windows\system32\ntlsapi.dll [PX5: 88BEBD1B006C52E520B8003B3C2E070049DBD569] [G] (ACTIVE) c:\windows\system32\inetpp.dll [PX5: 8544E6380055F6F22609016155092800B5A9B890] [G] (ACTIVE) c:\windows\system32\spool\drivers\w32x86\3\hpzpm312.dll [PX5: A97AB252009F769AC05607385D37C00061EF1D91] [G] (ACTIVE) c:\windows\system32\vssapi.dll [PX5: 9981661100F61EC192C406C311EF6100047B10DE] [G] (ACTIVE) c:\windows\system32\win32spl.dll [PX5: 87139F5A008883C28E030151228D0A00B37939E4] [G] (ACTIVE) c:\windows\system32\wzcsapi.dll [PX5: 1AE5604D00D83A3FCEF700E40E1C9E000A65FA29] [G] (ACTIVE) c:\windows\system32\ipconf.tsp [PX5: 53A749B800FFAA6244E6008F03658A00324D6AB8] [G] (ACTIVE) c:\windows\system32\vidcap.ax [PX5: 8C2EDD3F002017B5706300792AABA0008BD5FEB8] [G] (ACTIVE) c:\windows\system32\wsock32.dll [PX5: 1E78F46C007169C958BA0010AAB96200B1A7E8E3] [G] (ACTIVE) c:\windows\system32\pjlmon.dll [PX5: F8A3A716001E74ED3C7B00DCEBD89800DC69D94B] [G] (ACTIVE) c:\windows\system32\powrprof.dll [PX5: 69018B76004AE3D7448B00F668AC380013A5409B] [G] (ACTIVE) c:\windows\system32\msi.dll [PX5: 67C0ED8500CAF1E88EE52B2266AE24009BF267F4] [G] (ACTIVE) c:\windows\system32\wuaueng.dll [PX5: 26C07DF358FF2BE623151A8BD3FD64005FC70733] [G] (ACTIVE) c:\windows\system32\dsound.dll [PX5: D44DA5B500FC95329C4105A66AA91B00D6C8017D] [G] (ACTIVE) c:\windows\system32\rdpwsx.dll [PX5: E9FC853A8862EA65546401DF11DAFF00E5750B7E] [G] (ACTIVE) c:\windows\system32\modemui.dll [PX5: F6B164370060096D58B3024E07AE900021AE3E1C] [G] (ACTIVE) c:\windows\system32\clusapi.dll [PX5: 55EDC704007224DAE24600555B8CBF0012B11384] [G] (ACTIVE) c:\windows\system32\hid.dll [PX5: 73734D9B0068182952AF00C60BD55A00D64CF0B7] [G] (ACTIVE) c:\windows\system32\rastapi.dll [PX5: 54B2F0550070D10EE69000CD687DD9005457F678] [G] (ACTIVE) c:\windows\system32\quartz.dll [PX5: A72FDED900124070A646138B4BBB02008E00E049] [G] (ACTIVE) c:\windows\system32\faultrep.dll [PX5: CA703FD800DA787A3A12017953B069001B6304B9] [G] (ACTIVE) c:\windows\system32\mtxclu.dll [PX5: E165AD3D00A79EE10467018D1377CE000C45FB3E] [G] (ACTIVE) c:\windows\system32\cryptui.dll [PX5: 0555EC6A006F02A8D26607A164A23A00FADACFBB] [G] (ACTIVE) c:\windows\system32\msidle.dll [PX5: 690A7593007ACD6D1AC1008CF3166F0059716CFB] [G] (ACTIVE) c:\windows\system32\wbem\wmiprvsd.dll [PX5: BDF13B4900C7859DAC0406CE3CFE86002F6B7C0D] [G] (ACTIVE) c:\windows\system32\certcli.dll [PX5: 733CB91900F5C521F81A02962CBA1C00EB8C1136] [G] (ACTIVE) c:\windows\system32\ksproxy.ax [PX5: FEBBD0E700510E8EFC96013084E89A00661623AF] [G] (ACTIVE) c:\windows\system32\encapi.dll [PX5: 485CB81B00136A92501200C3443F65009729851C] [G] (ACTIVE) c:\windows\system32\netcfgx.dll [PX5: 3D9989D2009EDB507E9209C3E2091A0091A4F1FF] [G] (ACTIVE) c:\windows\system32\rasadhlp.dll [PX5: 730EB3E100BD805F2027003B3C2E0700962FB09B] [G] (ACTIVE) c:\windows\system32\lplmn03n.dll [PX5: BF725EB9D0BFBD5970F3009A661A8D0014DA9D78] [G] (ACTIVE) c:\windows\system32\sensapi.dll [PX5: 236788A4009696FD1A1D00B3F78D4800E52E4491] [G] (ACTIVE) c:\windows\system32\hidphone.tsp [PX5: 5E5FA7C400A508A5743B003B123AC2001CB52E3D] [G] (ACTIVE) c:\windows\system32\wbem\repdrvfs.dll [PX5: E80BF80100FEAE9FB442022ACA1E6900DE762B31] [G] (ACTIVE) c:\windows\system32\usbmon.dll [PX5: F3F6619C0084C934428300F5F7CA9D0013347394] [G] (ACTIVE) c:\windows\system32\devenum.dll [PX5: 18828B0A0035C53BEA3C003EB710310066C8F16A] [G] (ACTIVE) c:\windows\system32\ndptsp.tsp [PX5: F6FFEAB5003835C2DE8D00D6EF399E005505BFFB] [G] (ACTIVE) c:\windows\system32\msvidctl.dll [PX5: 3FEB685100A7F8027AA3196B9760EE0088CCA79B] [G] (ACTIVE) c:\windows\system32\mprapi.dll [PX5: 89A9326300429D6F544C0140C8E6CF006BE03453] [G] (ACTIVE) c:\windows\system32\tcpmon.dll [PX5: 27DE5C0400117FEBB23700AAE5CE3C005980659C] [G] (ACTIVE) c:\windows\system32\ksuser.dll [PX5: 093E440D00D03B9010910057B93D8800B79BCD14] [G] (ACTIVE) c:\windows\system32\cnbjmon.dll [PX5: CDE2237300970E77B83E00A93E8C15007F646A09] [G] (ACTIVE) c:\windows\system32\mspatcha.dll [PX5: 82E94A59007F579A76DF00605FDB1800E5A3A44B] [G] (ACTIVE) c:\windows\system32\mcdvd_32.dll [PX5: 8A83029A009C0AD6FE2403290B03B700D71B25C4] [G] (ACTIVE) c:\windows\system32\spoolss.dll [PX5: 8D5CE9490034F84624D8013E80575A004AC628A8] [G] (ACTIVE) c:\windows\system32\resutils.dll [PX5: FB1131B700B09AF5E6C000D229E76B0082B58095] [G] (ACTIVE) c:\windows\system32\pclepim1.dll [PX5: B2FB758300113F46F0AE005DD7194600B95D0937] [G] (ACTIVE) c:\windows\ehome\ehtrace.dll [PX5: 966589BF002C17602E35003B796DBA005CC8A4D4] [G] (ACTIVE) c:\windows\system32\unimdm.tsp [PX5: E3F6046E0002406F28550384BAB1D0005979EA6B] [G] (ACTIVE) c:\windows\system32\localspl.dll [PX5: 9C4A0B850023494036A505B96558AE00D351785A] [G] (ACTIVE) c:\windows\system32\msdmo.dll [PX5: DC4D04FE00E7C90538CA00251CF0FC00EE5FAE2C] [G] (ACTIVE) c:\windows\system32\comsvcs.dll [PX5: E83075CB001344545619130616988C001DDB263E] [G] (ACTIVE) c:\windows\system32\wbem\wbemcons.dll [PX5: D2A452590078C86D1880013923B81600129908C4] [G] (ACTIVE) c:\windows\system32\wbem\wmiutils.dll [PX5: 4821E1B700A31A30748801443260CA00E2C056C1] [G] (ACTIVE) c:\windows\system32\spool\drivers\w32x86\3\hpz2ku12.dll [PX5: E991303A009A0ED440B6037ED3B49600C7A285FB] [G] (ACTIVE) c:\windows\system32\h323.tsp [PX5: 3A12DFE50094ED480E1104EB3875C900497B6EC3] [G] (ACTIVE) c:\windows\system32\wbem\wbemess.dll [PX5: 69A18BD800BC11302EF6047AD9314F00EF9102A0] [G] (ACTIVE) c:\windows\system32\sbe.dll [PX5: F9018F48001C526574A90482B7E7A700F86EDFB1] [G] (ACTIVE) c:\windows\system32\esent.dll [PX5: C8A857690088C1A584B81050256A6800C9E1A40E] [G] (ACTIVE) c:\windows\ehome\ehproxy.dll [PX5: 26ACCE3000106D157CDC01B0DF89D600BCA2FC95] [G] (ACTIVE) c:\windows\system32\drmv2clt.dll [PX5: BEEC0A4E0023386022490F07E15E56001F916F6D] [G] (ACTIVE) c:\windows\system32\wmvds32.ax [PX5: 7C19DFE30029C4CCF08D036E1EE15300462D8179] [G] (ACTIVE) c:\windows\system32\mpg2splt.ax [PX5: 08D58BFA003DDB228613023ABA08DE0066FE067F] [G] (ACTIVE) c:\windows\system32\msadds32.ax [PX5: F36D276F000228CE60EA03A4766501006CAC063E] [G] (ACTIVE) c:\windows\system32\wmvdmoe.dll [PX5: 4C80BCA10042C4DFD013060D53F5D80093B99C0E] [G] (ACTIVE) c:\windows\system32\wmvxencd.dll [PX5: 4442BA9B00245AB606360A413D1DF2008043C52F] [G] (ACTIVE) c:\program files\microsoft sql server\mssql$retsdata\binn\opends60.dll [PX5: 51FE3A4040AC128B629400374A0B7E00C02FAD7A] [G] (ACTIVE) c:\windows\system32\msls31.dll [PX5: 06578F3600BE0A1C62E3026806CB9A00A1DAF899] [G] (ACTIVE) c:\windows\system32\ksxbar.ax [PX5: 303282AD001F3EFAA8EF00A0E9BAC800FDA4257A] [G] (ACTIVE) c:\windows\system32\shimgvw.dll [PX5: 9CE3FF0A009CD6EFB06106F87E936300306159F8] [G] (ACTIVE) c:\program files\common files\sonic shared\cinemastervideo.dll [PX5: 20F27697F015B36189B63CB969C72E00E97865EF] [G] (ACTIVE) c:\windows\system32\browseui.dll [PX5: BA5BAF02009A1C589C340FA03C60C200D84340D1] [G] (ACTIVE) c:\program files\maxtor\encryption\sfeconfiguration.dll [PX5: 6489736B68CD4410598B00F8F9E119002642FD34] [G] (ACTIVE) c:\windows\system32\hcwecp.ax [PX5: 94B0F7EB00A2C399E00D04A872CBBC00DB3B0FB5] [G] (ACTIVE) c:\windows\system32\themeui.dll [PX5: 6B135CFD00181607E269052D8F555500AE10627D] [G] (ACTIVE) c:\program files\maxtor\sync\drvifnt.dll [PX5: 9D5AB31358EFF6C515610247709D7F00D277E29F] [G] (ACTIVE) c:\windows\system32\dciman32.dll [PX5: 0B9410B4004E8A35224600722D6B110068143358] [G] (ACTIVE) c:\program files\common files\lightscribe\lslog.dll [PX5: 0AFA3AB30082915B7EE1002D2D1BCB005B4E5B65] [G] (ACTIVE) c:\program files\common files\sonic shared\msvcp71.dll [PX5: F133D4F000B92F08A0E107FD67B66E0015498C05] [G] (ACTIVE) c:\windows\system32\shdocvw.dll [PX5: FD686470005A9BA2D8DE16BFC29C8D00EE5E888E] [G] (ACTIVE) c:\windows\system32\jscript.dll [PX5: FA885F76005A710A80BB072BB1453100D393DD16] [G] (ACTIVE) c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll [PX5: 3BEA2264002F3A3C205B1A422AAD8C00B81134CD] [G] (ACTIVE) c:\windows\system32\odbcbcp.dll [PX5: CBDAC83B00224BE9601C0035AE24B9005FB70030] [G] (ACTIVE) c:\windows\system32\wmv8ds32.ax [PX5: B066CB321F0A8428402A046967F333003DA578F1] [G] (ACTIVE) c:\windows\system32\wmasf.dll [PX5: 1C8EBDA500BD427C64A1039E43D83D00C16E57A8] [G] (ACTIVE) c:\windows\system32\hcwxds.dll [PX5: 9E7896000057C5B790FC01F7C1FFE000915AE59A] [G] (ACTIVE) c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\msvcp80.dll [PX5: 1CD79A6B00ACCCBD60660869F17C0900CE4B6B7D] [G] (ACTIVE) c:\program files\microsoft sql server\mssql$retsdata\binn\ums.dll [PX5: 355D5BCB305B43D9D2B800057600B300517A438A] [G] (ACTIVE) c:\windows\system32\cfgmgr32.dll [PX5: F84C6B8500565D62428D003C4DC9A10048F16230] [G] (ACTIVE) c:\program files\maxtor\encryption\sfecrypto.dll [PX5: 6CC3F83058CB0B7F858901CA3E88BB00B93A2BAB] [G] (ACTIVE) c:\windows\winsxs\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfc80u.dll [PX5: 4A2EABCA00EEEF38AEDF10453CA10400EACE2231] [G] (ACTIVE) c:\program files\microsoft sql server\mssql$retsdata\binn\ssnetlib.dll [PX5: F94456223C49A50742C901B839B5AB00B411E73F] [G] (ACTIVE) c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\msvcr80.dll [PX5: 9A45456900EE9D7990C909755A3A5C00A6DAF154] [G] (ACTIVE) c:\windows\system32\mlang.dll [PX5: DE58751A00AF5861F28F08FF0448A9002BBD4947] [G] (ACTIVE) c:\windows\system32\wmdrmsdk.dll [PX5: 933212C400EA344B2AB108FB87325600170EECBC] [G] (ACTIVE) c:\program files\microsoft sql server\mssql$retsdata\binn\sqlsort.dll [PX5: BD7755B63C28EF9E020209C51B239200A9D41FE8] [G] (ACTIVE) c:\windows\system32\mp4sdecd.dll [PX5: 9F85173D00B82D77D89C04801B025800A8BF3BA0] [GP] (ACTIVE) c:\windows\system32\blackbox.dll [PX5: 64B09A95001198F648FD08168D3B3200F802DD62] [G] (ACTIVE) c:\windows\system32\mp43decd.dll [PX5: C6889C7600839E57F4660362515C7E00FB19C42D] [G] (ACTIVE) c:\windows\system32\linkinfo.dll [PX5: A617EA60005FA0244E9300345D850B00DE60FA53] [G] (ACTIVE) c:\windows\system32\wmspdmoe.dll [PX5: C3E4512600BB5DF1486E14AA1FC06F00877719F0] [G] (ACTIVE) c:\program files\maxtor\encryption\sfepassword.dll [PX5: BFD69EC1601E04EF7781002B5AA7B600E6F5E95B] [G] (ACTIVE) c:\windows\system32\wmvdecod.dll [PX5: 6C73C68400BD223C8E0417CB144E7D006D045324] [G] (ACTIVE) c:\program files\common files\sonic shared\msvcr71.dll [PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7] [G] (ACTIVE) c:\program files\java\jre6\bin\msvcr71.dll [PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7] [G] (ACTIVE) c:\windows\system32\msvcirt.dll [PX5: 6FD5B9C200FB5FE6D67200D1EA2F5100872465AC] [G] (ACTIVE) c:\windows\system32\wmv8dmod.dll [PX5: DEC7F8775071D43AB94A049ACBA0AF00AD6C1404] [G] (ACTIVE) c:\windows\system32\sbeio.dll [PX5: 6B86E15B009D66AF6ED502DE1A6DB6009D73A2D8] [G] (ACTIVE) c:\windows\system32\mfc42.dll [PX5: E40383F7007EE217B0540F91E92144007CF5AE31] [G] (ACTIVE) c:\windows\system32\kswdmcap.ax [PX5: B654B98700738436620401FDAD7D4E00AADBF24F] [G] (ACTIVE) c:\windows\system32\wmadmod.dll [PX5: BB8D717C00E4F5868E730B495132020057624EA5] [G] (ACTIVE) c:\program files\maxtor\encryption\sfecopier.dll [PX5: 8F49BD6A589A66A47DEC00BA26CE44004988860A] [G] (ACTIVE) c:\windows\system32\mfplat.dll [PX5: 3C7773B20007744A4087030B2B3FCB00031D5056] [G] (ACTIVE) c:\program files\common files\lightscribe\lssproxy.dll [PX5: 28DBC9ED005DD570306E01442CE33C00CA801DDD] [G] (ACTIVE) c:\windows\system32\encdec.dll [PX5: EBF6177900EF47F2F62206E75C757200D3D523EE] [G] (ACTIVE) c:\windows\system32\wmvcore.dll [PX5: 21E5EED200E4BAA9664525EF6856730017F9BD30] [G] (ACTIVE) c:\windows\system32\mshtml.dll [PX5: 8EAB396F00BFA178AE3B364B6D40DB004747452E] [G] (ACTIVE) c:\windows\system32\ieframe.dll [PX5: A99EC8E100B0079572915CEF6572C100B733D6B5] [G] (ACTIVE) c:\windows\system32\sti.dll [PX5: 93047EF7006497F7088D01F7C0267D00531E93D4] [G] (ACTIVE) c:\program files\microsoft sql server\mssql$retsdata\binn\ssmslpcn.dll [PX5: 979D154F3C7CC491728A002458AB4A00B84BF6FA] [GP] (ACTIVE) c:\windows\system32\ac3dx.ax [PX5: 6A5059E2004DDFD178B303262B578E00FAB92BA0] [G] (ACTIVE) c:\windows\system32\pdh.dll [PX5: C8F90D350020586E54A304DADCF012003AFFF670] [G] (ACTIVE) c:\windows\system32\ntshrui.dll [PX5: 991B39C7009068C0326F029851B09A0015F0EFD3] [G] (ACTIVE) c:\windows\system32\actxprxy.dll [PX5: F0E7D3520081B02E8E580106EEE98F003F0B200B] [G] (ACTIVE) c:\windows\system32\wmvencod.dll [PX5: A66C869700EE9C5808E8189C582ACF00D529E431] [G] (ACTIVE) c:\windows\system32\ddraw.dll [PX5: BC68FB0100B4A5B8106504CB5D3E17001FE297AF] [G] (ACTIVE) c:\windows\system32\vbicodec.ax [PX5: F33C67DD0060A5EA70E602E04E394C003FB043AF] [G] (ACTIVE) c:\windows\system32\ssdpapi.dll [PX5: AC7191060087EF6588E400ACF18FBF0068A6CB32] [G] (ACTIVE) c:\windows\system32\security.dll [PX5: 4A7BFCC10055CC6F1684007F8D738E0024F80D06] [G] (ACTIVE) c:\windows\system32\mpg4ds32.ax [PX5: 3982F4240053AF5400CA043769857700ED0EEB7C] [G] (ACTIVE) c:\program files\microsoft sql server\mssql$retsdata\binn\resources\1033\sqlevn70.rll [PX5: 7BB2565700885DEF70EA00C4DAFC7F00CCF56119] [G] (ACTIVE) c:\program files\microsoft sql server\mssql$retsdata\binn\ssnmpn70.dll [PX5: A61C7B4B3CC4F7266275005FB9A14900153862BD] [G] (ACTIVE) c:\windows\system32\wmv8dmoe.dll [PX5: 276D264C003C30A220E9074D05790A007DD24777] [G] (ACTIVE) c:\windows\system32\mscms.dll [PX5: 268AD0F4009672C922DF01E485519F002235CD5D] [G] (ACTIVE) c:\windows\system32\hcwccnv2.ax [PX5: A4BD6AED001DC2C6E06A03C6875F39003C842A79] [G] (ACTIVE) c:\windows\system32\msimg32.dll [PX5: AF72858C00849551121E00D0C427CA005E811658] [G] (ACTIVE) c:\windows\winsxs\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80enu.dll [PX5: 1F364D0500D18657E01F00B04B6BAD00BF7AFD7E] [G] (ACTIVE) c:\windows\system32\wmadmoe.dll [PX5: 778F1EE6002079780E3811298E956800E7A2C352] [G] (ACTIVE) c:\windows\system32\qasf.dll [PX5: 578E0C29002120243A4E039858A85C0002C3734C] [G] (ACTIVE) c:\windows\system32\batmeter.dll [PX5: 82441BC100FFD6DE70CA00035CC8DD0077DE2487] [G] (ACTIVE) c:\program files\flock\smime3.dll [PX5: FB90807B0043B32F804301422044A40017EAD345] [G] (ACTIVE) c:\program files\flock\nssutil3.dll [PX5: 766F0EC900869EDE408C01BE63AA09008A152273] [G] (ACTIVE) c:\windows\system32\usp10.dll [PX5: 005B6D7700021B5234830608761787007B604CF5] [G] (ACTIVE) c:\program files\common files\muvee technologies\mainconcept2\muveedsmpeg.ax [PX5: EFA7B58C00FACE6CFEE10051D8E3FD00BBDC0590] [G] (ACTIVE) c:\windows\system32\avifil32.dll [PX5: 434D287900F086574C2D01488CF14B0029EDA954] [G] (ACTIVE) c:\program files\flock\ssl3.dll [PX5: 2E468A4A0000E04F00510200BC831900B600039A] [G] (ACTIVE) c:\windows\system32\upnp.dll [PX5: 5E0544330026A96C060102D913CC0E00A3D60DD2] [G] (ACTIVE) c:\windows\system32\upnpui.dll [PX5: CAF47A210070F0B8A8E503E535415C0086AE342E] [G] (ACTIVE) c:\program files\common files\adobe\acrobat\activex\pdfshell.dll [PX5: 8C22B1270080452CB0520538F9A2700042807472] [G] (ACTIVE) c:\windows\system32\netui0.dll [PX5: B12071AC0090D5B73C56018D993256003E2DB136] [G] (ACTIVE) c:\program files\flock\components\brwsrcmp.dll [PX5: 53D3B0B3004B5701906D02A893000300153D2208] [G] (ACTIVE) c:\windows\system32\msctf.dll [PX5: 20D9663B00FB90A680A30473CDC30800A3D58F60] [G] (ACTIVE) c:\windows\system32\txflog.dll [PX5: E017C53200DBE0F98C350196051BA200BA9CC276] [G] (ACTIVE) c:\program files\flock\nssckbi.dll [PX5: E64D573400E1B5945089047527D32700B549C834] [G] (ACTIVE) c:\windows\system32\msvfw32.dll [PX5: 762271750046F517D836018527039800D3B30B17] [G] (ACTIVE) c:\windows\system32\stobject.dll [PX5: 54CAC4AA00ED96A5DC0D01624FE4D400632E5CD7] [G] (ACTIVE) c:\windows\system32\duser.dll [PX5: 97FA71C000C80345A4AC04AFF329E900180999FE] [G] (ACTIVE) c:\program files\flock\nssdbm3.dll [PX5: B37F416000A4C35C80CC015A871D4700FB550D91] [G] (ACTIVE) c:\windows\system32\davclnt.dll [PX5: BAF43E2D00793FDF609800C84E6B9300DBED251F] [G] (ACTIVE) c:\windows\system32\browselc.dll [PX5: 59E08950008101E8F8460099B3F8AF00C6A42E05] [G] (ACTIVE) c:\program files\common files\muvee technologies\mainconcept2\muveempgdec.dll [PX5: 4E6B5FF800B56D1174330DF23871A0004EEC4280] [G] (ACTIVE) c:\windows\system32\pstorec.dll [PX5: 103B75B600BB7449AA71008AF7441A007071CE4B] [G] (ACTIVE) c:\windows\system32\netui1.dll [PX5: 1A55483800AB268FC06B03291661C400E3F4DF26] [G] (ACTIVE) c:\windows\system32\zipfldr.dll [PX5: 8FC00074000E4D66285205EE4A2F9200D24EB71E] [G] (ACTIVE) c:\program files\common files\sonic shared\sonichddemuxer.dll [PX5: AFF1BCE5F04C604029B90359ADD4090052CD4BE0] [G] (ACTIVE) c:\windows\system32\webcheck.dll [PX5: 2901F1D800A796448E6F03A7734622007986B06E] [G] (ACTIVE) c:\windows\system32\msimtf.dll [PX5: 84C167A4001582946EB80246CB72540077EB8B33] [G] (ACTIVE) c:\program files\flock\softokn3.dll [PX5: 9EB6554200B7B54F50C602B7A9646800B0CB3D5F] [G] (ACTIVE) c:\program files\flock\mozcrt19.dll [PX5: 51562EF6006FC02EC0DD0A610E0F6700409D5CA7] [G] (ACTIVE) c:\program files\flock\freebl3.dll [PX5: 3133B7410012E3D990F403709D77FE002B50A9A7] [G] (ACTIVE) c:\windows\system32\notepad.exe [PX5: B7A2BFE50094FF110E8201E40FA14400BECE1095] [G] (ACTIVE) c:\windows\system32\ntlanman.dll [PX5: 6595B3F5007E6AA9AAD800E504A75600CCF36A85] [G] (ACTIVE) c:\windows\system32\shmedia.dll [PX5: 77EE39D3000FE36B5051022320791C008FF13E6B] [G] (ACTIVE) c:\windows\system32\drprov.dll [PX5: 8611AE1400894303389F0036593D2500F2A44F49] [G] (ACTIVE) c:\program files\flock\components\xpclucen.dll [PX5: CE381E06003CFA33901305D57155A600FDE5CC1E] [G] (ACTIVE) c:\program files\flock\nss3.dll [PX5: BA14612400E64E08E06D0AF820EAD500788E7BB9] [G] c:\windows\system32\drivers\cdrom.sys [PX5: B3CE44DD80DABE80C1400031E25C450069663A5F] [G] c:\windows\system32\progman.exe [PX5: E67B700200F3A956AC6301B2DAB0670093B6AE41] [G] c:\windows\system32\drivers\avc.sys [PX5: 5BB9D9070049A4F5985B005690A2EA003A306868] [G] c:\windows\system32\cscui.dll [PX5: 7251405F009E1821FC4204FF4DD95A00364FF1CF] [G] c:\windows\system32\drivers\arp1394.sys [PX5: E79B803D809043E9ED9C00655C5EAE00E1E46E49] [G] c:\windows\system32\cryptsvc.dll [PX5: AF326DE300CAB04EECF2002C6A88F800C175F52F] [G] c:\program files\prevx\prevx.exe [PX5: 3FBBB7F23829381956FE3FD6DA407C00AB2D9B1E] [G] c:\windows\system32\gptext.dll [PX5: 689526860039F0D108B703A86D36E50003F0B009] [G] c:\program files\symantec\liveupdate\aluschedulersvc.exe [PX5: C17BB761781678BC762D0875C4BB9500D50380E0] [S] c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe [PX5: F17A6501C07AD2CE023301EE2109B000FDD5AFC3] [G] c:\windows\arservice.exe [PX5: B39BA48B0042E909E6E700B303533300826E7C6E] [G] c:\windows\system32\browser.dll [PX5: BA6204AB00E2C55F2E1201513D519B003713D289] [G] c:\windows\system32\drivers\61883.sys [PX5: EB726CC7008372D5BC0700A69E6B2C00897308E7] [G] c:\windows\system32\drivers\dmusic.sys [PX5: 64B493018066E6FACEE6008D21636D008F236B03] [G] c:\windows\system32\drivers\audstub.sys [PX5: C910D030000E35B30CDC00441BDEF300B79BCD14] [G] c:\windows\system32\dnsrslvr.dll [PX5: A82055DE0039C1C1B21400463DA67900676D3B39] [G] c:\windows\system32\scecli.dll [PX5: BA60DFD7007FF03BC0B10210E447DA00431A9EA5] [G] c:\windows\system32\cryptnet.dll [PX5: C0F5905B00E7BEA1F8F700C6CEFE63003F0073E9] [G] c:\windows\explorer.exe [PX5: 5F224AD100F73BC6C4BA0FDC56B8E4007E783B90] [G] c:\windows\system32\drivers\aec.sys [PX5: E884BE24808C5EEB2C92028B464629005484ED65] [G] c:\windows\system32\drivers\disk.sys [PX5: 61E4E34300C80A908E6D00C10934AF006F571071] [G] c:\windows\system32\nvcpl.dll [PX5: FD388E66009967F790966F690D4AEB00A91091B4] [G] c:\windows\ehome\ehrecvr.exe [PX5: 642D1B55009F41EDA04F0301CC6D6F00F9C23CE4] [G] c:\windows\system32\drivers\arpolicy.sys [PX5: 2D0761CA80B30749278000EC2DA9D600D96334BA] [G] c:\windows\system32\dllhost.exe [PX5: 1679135500EC77DC146800B4A32FF2001191A072] [G] c:\windows\system32\userinit.exe [PX5: DA0BCEF8001DA1EB600B00510674AE00523A2D3A] [G] c:\windows\system32\iedkcs32.dll [PX5: F438089800279357DE7005DEB75A5200F8B94055] [G] c:\program files\lead technologies, inc\leadtools eprint 3.0\bin\lpsvs03n.exe [PX5: 0752E12200B227CB204C0144928F73009547ABC9] [G] c:\windows\system32\rundll32.exe [PX5: 8A5CEE42007174E38209003396ABA600752B531A] [G] c:\windows\system32\drivers\acpi.sys [PX5: 6EB7D724801F4D96DDA8029EF0BB7000188CE31F] [G] c:\windows\system32\alrsvc.dll [PX5: 649E6BAB00BD4981443900F8FAFE85005C6027E3] [G] c:\windows\system32\qmgr.dll [PX5: 4D7BB9240003DBB4D66D05334435EC008AABDF49] [G] c:\windows\system32\wlnotify.dll [PX5: B3DE3F08000763CC6ADE017B79CC190098DD584B] [G] c:\windows\system32\fdeploy.dll [PX5: 312C80680084ECFB205701D789A11C00154BDADA] [G] c:\windows\system32\dskquota.dll [PX5: 9F0C397C0045EC8E6AE70150DEAEC3006CC124BE] [G] c:\windows\system32\drivers\arhidfltr.sys [PX5: 0630E45D005D14AB4BF400F2FDEA37000256CE19] [G] c:\windows\system32\shell32.dll [PX5: 1825B3FB00D0BA0FFE3480F1706D3800D4B157DC] [G] c:\windows\system32\drwtsn32.exe [PX5: BD615A25002B6CDFB2AF005912C34700D4CFDBA9] [G] c:\windows\microsoft.net\framework\v1.1.4322\aspnet_isapi.dll [PX5: 68F54D71008E0F61F0FF0363D9DC6C000D0BDC3D] [G] c:\windows\system32\drivers\atmarpc.sys [PX5: C41A09F600246E0AEA81009B2DE4BF0073057136] [G] c:\windows\system32\drivers\eusbmsd.sys [PX5: F5B77E1580119D33C74E002A7594720091BEDAF9] [G] c:\windows\system32\drivers\aracpi.sys [PX5: 919268AD000A515159C2009FF22825001C350295] [G] c:\windows\system32\drivers\asyncmac.sys [PX5: 8BD45D2B002F3B40389D007E91CC59004B62F8E9] [G] c:\windows\microsoft.net\framework\v2.0.50727\aspnet_perf.dll [PX5: 2B598AC7006FCDC35C1A005EA2D2AC00CDD3F98B] [G] c:\windows\system32\drivers\ccdecode.sys [PX5: 4E4CADF380552430426F00BC05FF9D0038FB5853] [G] c:\windows\system32\drivers\dmboot.sys [PX5: 917F152000320DE9346A0C3622393800CEA8DC17] [G] c:\windows\system32\svchost.exe [PX5: DAF1E19400616549387D0095555BE300779F3C3D] [G] c:\windows\ehome\ehsched.exe [PX5: F8DBABEF0007C1FF9283018C93ADBB0061DA7B4E] [G] c:\windows\system32\drivers\drmkaud.sys [PX5: FA93CCC9802BA0DD0B8800D3A4C66500B79BCD14] [G] c:\windows\system32\logonui.exe [PX5: F2C3C2920083D65DDA0B0761A1341000FC2E2043] [G] c:\windows\system32\drivers\atapi.sys [PX5: 9D6081B280209DE174C2011395153C00E47C5A8D] [G] c:\windows\system32\drivers\dmio.sys [PX5: 33A7916100B2EE7E57C702A49AA6DC002AD9BEDA] [G] c:\windows\system32\dmserver.dll [PX5: 94E13DFE006D5C195C2500224BFF1F00F466A779] [G] c:\windows\system32\ntsd.exe [PX5: 0CC37318002D211C7C10004432E9BD00ACA4EA15] [G] c:\windows\system32\crypt32.dll [PX5: 4A59DFBA00DC49271E850917445B2900D34AB5D6] [G] c:\windows\system32\drivers\asapiw2k.sys [PX5: B53B67E0003097ED2C3000A6A30F1D00F8DBF60A] [G] c:\windows\system32\clipsrv.exe [PX5: E78BE279004F616D823700EBB15ECF006A84A8EE] [G] c:\windows\system32\drivers\amdk8.sys [PX5: 4E3BBE7000341D308E7A00AB60955600D7F1B42E] [G] c:\windows\system32\cscdll.dll [PX5: 971F59D600837AC68E6701A3E5B77A00309F7ECB] [G] c:\windows\system32\rpcss.dll [PX5: D822603D00CD66D9129D06DB0B7B1D007E9F1628] [G] c:\windows\system32\dmadmin.exe [PX5: 0CD0D1D5000183196E2703238C591600C3E34600] [G] c:\windows\system32\audiosrv.dll [PX5: 932A31B600AB40CAA62C00BF06D62A00006A5BE9] [G] c:\windows\system32\sclgntfy.dll [PX5: CFD1527A00098A01523F00DD1A6813004FE366D7] [G] c:\windows\system32\drivers\afd.sys [PX5: EE224F5C0089E9241DEF0273688B740025971F4C] [G] c:\windows\system32\drivers\armoucfltr.sys [PX5: 0313AFB0806637501337006900AAD40095854C82] [G] c:\windows\system32\ersvc.dll [PX5: 6FF656B000BD22FA5A0E001E333E02004608458D] [G] c:\windows\system32\cisvc.exe [PX5: 93C8529200B053D21696005665669D007142E764] [G] c:\windows\system32\drivers\arkbcfltr.sys [PX5: 97DB910F001A73D41563003B85CDFB001C451CA7] [G] c:\windows\system32\appmgmts.dll [PX5: FD25A6A800EC11ED908202A87C9C5B00EEC35B70] [G] c:\windows\system32\drivers\dmload.sys [PX5: FC216AA0003B46A9171D00359F9C1600E909FEB4] [G] c:\windows\system32\services.exe [PX5: 1B167F4F0083E585A6B8011373392400F157C83B] [G] c:\windows\system32\netfxperf.dll [PX5: 1A2876B000187B0F80C400FED64B1900FAFC4C7F] [G] c:\windows\system32\alg.exe [PX5: 9D39E77D00A84BB2AEC200E087F3A200E5003E1D] [G] c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe [PX5: BB434D07C8741D51745900F3E3CC0F00ED8F1C59] [G] c:\windows\system32\query.dll [PX5: 2C22D1BA0066EE92E8701518C757080075060362] [G] c:\windows\system32\dhcpcsvc.dll [PX5: A9EBC5D6001A18F3B4B401620314F40088368459] [G] c:\windows\system32\drivers\ipfltdrv.sys [PX5: E130718C809C039180F700DA0AC8EE00F2B31814] [G] c:\windows\system32\drivers\kmixer.sys [PX5: 1C3250A68067C4B7A11302D8512D99006E8A628F] [G] c:\windows\system32\wshnetbs.dll [PX5: 645EFE80007EA2E71CF600860F45F700B81D6EDF] [G] c:\windows\system32\shsvcs.dll [PX5: 2C529D1E00C1F0F70ECC025EA1ABB800AB55D8AD] [G] c:\windows\system32\drivers\mdmxsdk.sys [PX5: 508718DA00F4230831A1005444D92900F3A75FB9] [G] c:\windows\system32\drivers\ndiswan.sys [PX5: 304E26E9803B344266FF0104DAA0B500E6B358BD] [G] c:\windows\system32\drivers\mouhid.sys [PX5: 2301F35080287EAB2F80000FDBBFFD0097D85869] [G] c:\windows\system32\drivers\i8042prt.sys [PX5: 5176B379005D75ECCE900002BF9BC200B108E255] [G] c:\windows\system32\msiexec.exe [PX5: 2199A4A600D88009341401C8D9AE0A004C78202A] [G] c:\windows\system32\mhn.dll [PX5: 0CB217760034CB6D4E0601FC78100400B685A997] [G] c:\program files\common files\microsoft shared\vs7debug\mdm.exe [PX5: 4F3D296500D9D087203B0483D1FD6A005E4D3A8E] [G] c:\windows\system32\drivers\http.sys [PX5: 1A572A9180D9F92E022704747529EC0016C1652C] [G] c:\windows\ehome\mcrdsvc.exe [PX5: EAD885DD00465B78846C01CD3B9560006BD12DE6] [G] c:\windows\system32\drivers\netbios.sys [PX5: 6F5EDA40008AE18787EB007972CAB100F174D35C] [G] c:\windows\system32\drivers\mstee.sys [PX5: EF9F4FE18003FE44154E00AC0DDE6800FF407119] [G] c:\windows\system32\drivers\mspqm.sys [PX5: 5D7EA63E804A637C13CA0078C414AC000E912E93] [G] c:\windows\system32\drivers\hdaudbus.sys [PX5: 0BF29F2900ECCC301EAB02F054A1A700522B006C] [G] c:\windows\system32\drivers\mxopswd.sys [PX5: 3A5D9055885FE980568A000711CD720084EF7DED] [G] c:\windows\system32\drivers\ipsec.sys [PX5: 84ED89D600412A2C245201A3F8A740006B772EC6] [G] c:\windows\system32\drivers\imapi.sys [PX5: A6DE19768012C7FDA37F00B5535D7900050612BF] [G] c:\windows\system32\drivers\msgpc.sys [PX5: A6DC8C520088C979894600B57B2B1A00363C4157] [G] c:\program files\java\jre6\bin\jqs.exe [PX5: AC8801830031AE1C40120269EA21F200A6ADD29E] [G] c:\windows\system32\wkssvc.dll [PX5: 0E65A9AD004CED3604410264F0D57E003899F7EE] [G] c:\windows\system32\drivers\msdv.sys [PX5: 27AF0F97805D5630C8C30079E369470031F71039] [G] c:\windows\system32\drivers\rtkhdaud.sys [PX5: 0C71276A00472CFF9AC741F7A44E3800C8F4C145] [G] c:\windows\system32\drivers\hpzid412.sys [PX5: 9CC25A74B0C8C07FC7F700A36D282F001847E958] [G] c:\program files\symantec\liveupdate\lucomserver_3_2.exe [PX5: 5E1BDD7D78E0540486952D02F9FAFC00B1B53ABC] [G] c:\windows\system32\drivers\irenum.sys [PX5: 42D7DCAC001BE9A12C7B00EF915041002AED16BC] [G] c:\windows\system32\drivers\isapnp.sys [PX5: 8A87001A0002BFB48C1F0066402D8A001AECBE23] [G] c:\windows\system32\mnmsrvc.exe [PX5: F6BBC75F00D71BFC80AE00AF40E07800F4D92A6E] [G] c:\windows\pchealth\helpctr\binaries\pchsvc.dll [PX5: 8DE204D80030A6D498F90061FD9D1400CBF5C58F] [G] c:\windows\system32\drivers\hpzius12.sys [PX5: CB28CFFDF0153781545E00EFA723A800BAE5DBC7] [G] c:\windows\system32\drivers\mrxdav.sys [PX5: 2A28D206005617C9C4F8026FCC47BD006A62BA75] [G] c:\windows\system32\drivers\mhndrv.sys [PX5: 885FC12400EABD9E2B48002BFABEBE006F993DD3] [G] c:\windows\system32\lmhsvc.dll [PX5: 5EB71FFD004FF2DC36A5002FE4AD54000C784AED] [G] c:\windows\system32\drivers\ndisip.sys [PX5: 92D82929807F4CDE2A6000D7EF7E8C008BDE37E2] [G] c:\windows\system32\drivers\ip6fw.sys [PX5: 554B18088049820E711F003BBA86E4005B660DCC] [G] c:\windows\system32\drivers\gearaspiwdm.sys [PX5: A55AE85A30DB761D3DAB0084328A43001D3B5116] [G] c:\windows\system32\w3ssl.dll [PX5: 027C71C70048AF293E9300CE5DBF9200658ED343] [G] c:\program files\google\google desktop search\googledesktop.exe [PX5: 9CF545F000A4CD5D0ECF1CA33E2BAD00118DDBEE] [G] c:\windows\system32\drivers\hsxhwbs2.sys [PX5: E75F5A70004E40F7B0B503147F42B80058889D95] [G] c:\program files\common files\lightscribe\lssrvc.exe [PX5: E2495B970096FD67C04B008CCE85DE0024775EFF] [G] c:\windows\system32\drivers\mrxsmb.sys [PX5: 3A6FDF2E00838449EA5E06BDEF52FE0062D6AA8B] [G] c:\windows\system32\drivers\mspclock.sys [PX5: 3656535900693AA115D1001337247B009D5BCE4B] [G] c:\windows\system32\msgsvc.dll [PX5: 522675AE00204525841700B55B294700B30E7F13] [G] c:\windows\system32\drivers\hidir.sys [PX5: 385910E500491C2A4B2500B2238855002FE61A3A] [G] c:\windows\system32\drivers\ndistapi.sys [PX5: 25AEC9EA809D4D4825A500A2A9E22F00CCB1FFC8] [G] c:\windows\system32\drivers\kbdclass.sys [PX5: 11013D51001BA498600F00A282D06D00DF7EE561] [G] c:\windows\system32\srvsvc.dll [PX5: 92EB8E4600DD88A77A950111349C74000C827F72] [G] c:\program files\common files\symantec shared\pif\{b8e1dd85-8582-4c61-b58f-2f227fca9a08}\pifsvc.exe [PX5: B3AA1771886E37CDE505089B35650E00E5DC6822] [G] c:\windows\system32\drivers\irbus.sys [PX5: F2826D6200C57828B62F004A2636B300F9BC1FCD] [G] c:\program files\maxtor\sync\syncservices.exe [PX5: 1B9E855D60AB34AFF5D3021211C5360060EE3041] [G] c:\windows\system32\drivers\ndisuio.sys [PX5: 2EA05445002F5FBA39F20007FCC82A00B423E8AB] [G] c:\windows\system32\drivers\mouclass.sys [PX5: 7E80CA6A0038C59C5A6F0047F0E3550060B4E791] [G] c:\windows\system32\drivers\ipinip.sys [PX5: 9655BFAF0030F62E523A00C352D248003081C413] [G] c:\windows\system32\drivers\netbt.sys [PX5: 7D3B6A2A0069D5737CDE020A47DE6F00F472D659] [G] c:\program files\common files\installshield\driver\1050\intel 32\idrivert.exe [PX5: 1E443CCB008E17AA203B0161FA63D50008F6D6DF] [G] c:\windows\system32\drivers\nabtsfec.sys [PX5: 37E661E8803A144B4DFD01732787D600D94FD14F] [G] c:\windows\system32\drivers\hcwpp2.sys [PX5: 94F2DBC6800BED38900002B1E9239500374B2866] [G] c:\windows\system32\drivers\ftdisk.sys [PX5: D543638280F1FAF5E8A30154BD3E77003ECEED80] [G] c:\windows\system32\fxsperf.dll [PX5: 5A4482CB007E1ED02285003B3C2E07006806E776] [G] c:\program files\ipod\bin\ipodservice.exe [PX5: BF32883828EEE444B1D6079049529D00CCD785CD] [G] c:\program files\google\common\google updater\googleupdaterservice.exe [PX5: F3A6096BF060EB39918F025C52210300860CB5DC] [G] c:\windows\system32\drivers\mskssrv.sys [PX5: 441E162B80A429811D1500CB9CEDF700CED69BEA] [G] c:\windows\system32\drivers\hsx_dp.sys [PX5: 826BD1D000E6C6EF4AA20E5BFDAA64002558E2DF] [G] c:\windows\system32\drivers\mssmbios.sys [PX5: 5C75220680F731D03C3D001BD399CC00D7DBED29] [G] c:\windows\system32\drivers\ipnat.sys [PX5: 16BC903800541BF40F8E02F0609797000CA3B3FE] [G] c:\windows\system32\fxssvc.exe [PX5: A3C3B8BD00AECFA4164704CBFF06DC009C532BC0] [G] c:\windows\system32\drivers\fltmgr.sys [PX5: DD494D2180C4BB98F7F901405AA62900817D3A94] [G] c:\program files\microsoft sql server\mssql$retsdata\binn\sqlctr80.dll [PX5: A16BFD203805B53C821B00528291EC00BE41A596] [G] c:\program files\microsoft sql server\80\tools\binn\sqladhlp.exe [PX5: 54403C2F40F746EE02EF01E9AABA8C00046ACDE5] [G] c:\windows\system32\imapi.exe [PX5: CD52DE4C009BDDD14A8402202B1E5300405285CB] [G] c:\windows\system32\netdde.exe [PX5: 729291CB00BB76ABB2DC01BFB3AC1B00B3DD926E] [G] c:\windows\system32\hidserv.dll [PX5: F58A188B0047D17654360054F5A8B600C8442716] [G] c:\windows\system32\drivers\kbdhid.sys [PX5: BFEF19AB007A27B83AD2001F22115F003B0B99E9] [G] c:\windows\system32\es.dll [PX5: 0081FE5800E09C4CB61003D0290B1D00976C66BF] [G] c:\windows\system32\drivers\hidusb.sys [PX5: 1484F98A807906C3258400E49D6D650019C14BBC] [G] c:\windows\system32\drivers\intelide.sys [PX5: 13577194803FCB8815F90068ABEFAF00BBEB3658] [G] c:\windows\system32\drivers\hpzipr12.sys [PX5: AE6ACC0370C51706409F00F854115200D726416B] [G] c:\windows\system32\schedsvc.dll [PX5: 00967B3C00CA877DEA9B0283F80B86008C541907] [G] c:\windows\system32\drivers\rdpcdd.sys [PX5: 14FCFAAE80A686EB103300CFAE183900CB624D74] [G] c:\windows\system32\drivers\nvnetbus.sys [PX5: 08708151008B63BC33960072C323FD00439EB01B] [G] c:\windows\system32\drivers\nvenetfd.sys [PX5: 96B2B3E38041D6BA8525005E9B84560029017F69] [G] c:\windows\system32\rsvp.exe [PX5: 42F8162B00E163D906880231F30F2D00947BFF3C] [G] c:\windows\system32\rastls.dll [PX5: 41012AE700D403D9B68C010C32391300A1CC1B25] [G] c:\windows\system32\rasrad.dll [PX5: FEA535330013F4925CCC00A519489000BB324F7D] [G] c:\windows\system32\spoolsv.exe [PX5: 1DCDB07A00179F65E28700A02CD4BA00B29C7A8B] [G] c:\program files\roxio\digital home 10\roxioupnpservice10.exe [PX5: 01614139F0A56B888972059F5CC9CD0086C6FD2E] [G] c:\windows\system32\perfos.dll [PX5: 2BF62CC900FA546562ED00C6B65C6A00AA734940] [G] c:\windows\system32\drivers\pclepci.sys [PX5: 804316EA5562C049376400E921DDE200F7E0A52A] [G] c:\windows\system32\scardsvr.exe [PX5: EEC7375C00BAA7847646014ECC3CD2000EA8C2D4] [G] c:\windows\system32\drivers\streamip.sys [PX5: 37C869AE00A1D1423CD000F9D66948002AC47A8D] [G] c:\windows\system32\drivers\sr.sys [PX5: 4D90659E00D8A4771F1A013E6E421F00FD00E547] [G] c:\windows\system32\rasmans.dll [PX5: 6AC5343500FEB4ECC468025649825700DA9458A8] [G] c:\windows\system32\drivers\nwlnkflt.sys [PX5: A826BA3A803B83AE30C000488911C200DC3CA878] [G] c:\windows\system32\rasppp.dll [PX5: 7926CFA8005991112607030EB3D5E9000B0D0D3D] [G] c:\windows\system32\hpzipm12.exe [PX5: 4DA44F7800835C1220E601B72C79AE00C3FBDD0C] [G] c:\windows\system32\drivers\pxscan.sys [PX5: 11EEE13208526D6558A400F26A394F00E75A87AE] [G] c:\windows\system32\drivers\sfloppy.sys [PX5: 6884E1AE807AAB872CD300DC197E0C00B015D834] [G] c:\windows\system32\drivers\pci.sys [PX5: 9DA3602E807459480A5D01595A918400B8F0B94D] [G] c:\program files\common files\roxio shared\10.0\sharedcom\roxliveshare10.exe [PX5: 8A8B3E78F0583440B9A9049BAEFE0D00AF9AC348] [G] c:\windows\system32\locator.exe [PX5: A82B0A1D0045DDC726E601EBB10B83004F746E32] [G] c:\windows\system32\drivers\rdbss.sys [PX5: EE21D17900972EBEAA93023D87A14E0013D2E867] [G] c:\windows\system32\drivers\nic1394.sys [PX5: 720917AF800A6EE8F12400F5E9C6E000F750E215] [G] c:\windows\system32\srsvc.dll [PX5: 94C789210046D3619AD10285BB07F100773F7289] [G] c:\windows\system32\nvsvc32.exe [PX5: DEB22A6F43B4CA5100CE022E0F1228001BAF62F6] [G] c:\windows\system32\drivers\pciide.sys [PX5: 826808EE00CFD8500D55002AE8E7E200B79BCD14] [G] c:\windows\system32\drivers\raspppoe.sys [PX5: A8F2C94800B2E031A21A00F0EC682E009B5794D5] [G] c:\windows\system32\drivers\rtl8139.sys [PX5: 0D1CF5B000B2C8EA5211002E76778C00F4B2E39E] [G] c:\windows\system32\drivers\swenum.sys [PX5: FDB253C8004ADC8E110200CB82EF3C003BACCEF1] [G] c:\windows\system32\drivers\processr.sys [PX5: AF0FBDFA005416188A000040A9FF7600EC9D81FD] [G] c:\windows\system32\sens.dll [PX5: CCBBDD05006A9DD9989800FA9D19B200092DAE28] [G] c:\windows\system32\drivers\rasacd.sys [PX5: EF519CA180B540A42200002C4F06E3005372DD33] [G] c:\program files\microsoft sql server\mssql$retsdata\binn\sqlagent.exe [PX5: 2A447EBA40C89FBAC2B90400E5258A00CF7174B6] [G] c:\windows\system32\lsass.exe [PX5: E322179B00AF6D2D3445003B3C2E0700A1B0AF84] [G] c:\windows\system32\sessmgr.exe [PX5: DD2A13A70020C05D263E02893D0F0900CF005DCE] [G] c:\windows\system32\ntmssvc.dll [PX5: 9BF7795E00EDB14CA4A906F9806DAD0047D213A8] [G] c:\windows\system32\mprddm.dll [PX5: 7C44A45900B056800EF50150B23802000FA84C6D] [G] c:\windows\system32\drivers\rasl2tp.sys [PX5: C15C1546804EC8E6C8410037F34FAD00B1FBF6DF] [G] c:\windows\system32\drivers\raspptp.sys [PX5: F406FA260016D348BD2800EFDBDF52003203F53C] [G] c:\windows\system32\drivers\nv4_mini.sys [PX5: B057C43040C61B1BF3A535F65E733F00A4782183] [G] c:\windows\system32\netman.dll [PX5: C51B550E00EF0CBA047F036BEC8A55000966CBCA] [G] c:\program files\common files\roxio shared\10.0\sharedcom\roxwatch10.exe [PX5: 68C24CD1F0280D5B89D2027ABAE0E5006A295A44] [G] c:\windows\system32\drivers\ptilink.sys [PX5: F96F182D805891FA452B007EBD870E004C25BA07] [G] c:\windows\system32\ipnathlp.dll [PX5: 3B65D0DF0000F4850EC805A137144000A420C076] [G] c:\windows\system32\drivers\nwlnkfwd.sys [PX5: B9B73139006979BB7FBC0031EA7E320032D237D0] [G] c:\windows\system32\wiaservc.dll [PX5: B93C0F9C00967E34186B05FE7FBDAB002BC316D2] [G] c:\windows\system32\drivers\parport.sys [PX5: 4A82394D0019443A393C017F618C1500A0A8EBA3] [G] c:\windows\system32\drivers\psched.sys [PX5: C7C1320E008655110E77011715C66E0009C5AE75] [G] c:\windows\system32\rasctrs.dll [PX5: 8987E67300CC7ADA2E09003B3C2E070040E30DA8] [G] c:\windows\system32\rasauto.dll [PX5: 00B3EC7E0005E0685CA101F0D24E390012F12FE9] [G] c:\windows\system32\regsvc.dll [PX5: B79F11AC00EB93FDEA5300DF16F53F00DB91FE7B] [G] c:\windows\system32\mswsock.dll [PX5: 16BCD2890051C955BE5B03DEED8C6800046E1E5A] [G] c:\program files\common files\roxio shared\10.0\sharedcom\roxmediadb10.exe [PX5: A141D194F05BE5CC89C310067D1922000C3905EA] [G] c:\windows\system32\drivers\rxfilter.sys [PX5: 8A181295F08AEBD0DF300098A6D62500910396FE] [G] c:\windows\system32\perfnet.dll [PX5: C5972DFC00AC14CB42680050715FE7008FEE4CD0] [G] c:\windows\system32\drivers\slip.sys [PX5: C05453A580D50DE62B1A00E6C96F380022C2D117] [G] c:\windows\system32\drivers\ohci1394.sys [PX5: 4A6E8F7F8033FF34EE4200E871B4F300047CEC38] [G] c:\windows\system32\drivers\pxhelp20.sys [PX5: 4307B3EA60730F2CAB5C00683A456800FF0DEDBA] [G] c:\windows\system32\drivers\splitter.sys [PX5: 249A00630095166C194E008C6AC35800063B57CE] [G] c:\windows\system32\raschap.dll [PX5: 469869220095F50610B00104DEE25E00746ECCB1] [G] c:\windows\system32\iprtrmgr.dll [PX5: E6F2139A007F099F98B402C9EDE45A0065864F67] [G] c:\windows\system32\rsvpperf.dll [PX5: 3D1DBCC200EFCBBC26D2003B3C2E0700EA4A7067] [G] c:\windows\system32\ssdpsrv.dll [PX5: 3235FF16002C0C7218D10148A82C0100526AA176] [G] c:\program files\microsoft sql server\mssql$retsdata\binn\sqlservr.exe [PX5: B9983F6B519AAE64C0F87229211CE00014A7C192] [G] c:\windows\system32\drivers\redbook.sys [PX5: AEF2FC7D804F986FE0C7004FF2D91D0087DADA96] [G] c:\windows\system32\drivers\ps2.sys [PX5: 411F91A2804C99544A88001CB74BC800226441F9] [G] c:\windows\system32\mprdim.dll [PX5: FC37F92900A0F7C9C0D80018FA92EF00BD63AB1A] [G] c:\windows\system32\pschdprf.dll [PX5: 6CDB7CE7005E11F92A1C003B039D1D005E3783C4] [G] c:\windows\system32\winspool.drv [PX5: 015C030400CF66743CEC02C1CDE749000B659A52] [G] c:\windows\system32\drivers\secdrv.sys [PX5: 6C1F33AD30B48B8F6BBC0037A0F8A400F11BD786] [G] c:\windows\system32\seclogon.dll [PX5: B63CB54C00A4D6F14A2500626A21D60080D8056D] [G] c:\windows\system32\drivers\srv.sys [PX5: 75BFBC608040FEEB14BC05A8A20D28000AA8481B] [G] c:\windows\system32\perfproc.dll [PX5: 1B63A75D00E6B2E788C9009CD1855300A4355EA8] [G] c:\windows\system32\perfdisk.dll [PX5: DD0A399200757638688E001B9649470096079583] [G] c:\windows\system32\drivers\rdpdr.sys [PX5: 02477783007980B5019E03607F7E03003B692115] [G] c:\windows\system32\drivers\raspti.sys [PX5: 506F10F380FEE57C406900BE351741009F00F0DE] [G] c:\program files\roxio\digital home 10\roxioupnprenderer10.exe [PX5: D9186BD8F0D1A928199A019DF4497D00A90C21E4] [G] c:\windows\system32\wbem\wmiaprpl.dll [PX5: A6628A5500220F5E5C0F01BD66232400A681601E] [G] c:\windows\system32\wshtcpip.dll [PX5: DC9BB447001573924E70000972CCB00010ED4F34] [G] c:\windows\system32\w32time.dll [PX5: 4B83AABA0027599EAA46024D449B460048D4CD90] [G] c:\windows\system32\smlogsvc.exe [PX5: 4A5C5ADB0095AB605E660128541E4400EC499013] [G] c:\windows\system32\narrator.exe [PX5: 4EB93F0A004573D3D23200BDD75DA100BB09FC33] [G] c:\windows\system32\wscsvc.dll [PX5: 0C0097FF00B19F043E14018727E7200043F72CCC] [G] c:\windows\system32\drivers\tfkbmon.sys [PX5: 22B96FA710290F1C312D003F4602F5005DAFE72F] [G] c:\windows\system32\drivers\wdmaud.sys [PX5: 1A706C8200C406CF446E0184AD924B00FE330A09] [G] c:\windows\system32\drivers\symlcbrd.sys [PX5: 5C3664C96836A076288A00D828A789001E487CA0] [G] c:\windows\system32\drivers\sysaudio.sys [PX5: 23CF2276806778A5EDCF00D9512FDE00BB195FEF] [G] c:\windows\system32\drivers\wudfrd.sys [PX5: 938378B8001690D3445C01DE64563A001F0572DD] [G] c:\program files\windows media player\wmpnetwk.exe [PX5: AF2881470070FC52F0AF0DFACB168500E27064AB] [G] c:\windows\system32\upnphost.dll [PX5: 9F1C89D400C97CB0D4AC0281897B71008037103D] [G] c:\windows\system32\tapiperf.dll [PX5: B071BC0800507491162D0072BA152400776310DE] [G] c:\windows\system32\drivers\usbccgp.sys [PX5: 3051DD5F80B0E02D7BC400CFE2D7F10086CC5663] [G] c:\windows\system32\drivers\usbuhci.sys [PX5: 4756F37D00016D8B5030004DF844F10054C11836] [G] c:\windows\system32\perfctrs.dll [PX5: A60F1C3200BFF0F99CBD0040F2A6A00083044C32] [G] c:\windows\system32\drivers\termdd.sys [PX5: 3111E3EA882052CE9F39002D38F46900A7415306] [G] c:\windows\system32\wudfsvc.dll [PX5: 4F5BFC0200221476DA8A0019D0184C00F499481E] [G] c:\windows\system32\drivers\wudfpf.sys [PX5: 0CF32E7D00C942692FB1016FE6CD6B005D0F67E4] [G] c:\windows\system32\drivers\usbstor.sys [PX5: 6135CAAA80509344675C002A218295006093CEAA] [G] c:\windows\system32\tapisrv.dll [PX5: 9104A46500166909CEB60342BA14880047D59B5E] [G] c:\windows\system32\drivers\hsx_cnxt.sys [PX5: 26B070E4002D7FA03ACB0A03AB87F6005E669655] [G] c:\windows\system32\drivers\usbohci.sys [PX5: 97A6F69780D7B5F44212000A79EBE000E5CEE5D9] [G] c:\windows\system32\termsrv.dll [PX5: 524B3D08006EBB6E8222045A5D15D700EFACB8D7] [G] c:\windows\system32\drivers\swmidi.sys [PX5: D73823E800EBA9D4D48400057CBBEE004EA1E5C8] [S] c:\windows\system32\wuauserv.dll [PX5: B80DF0DE00A655AA1A4900068A66AC000C7C0675] [G] c:\windows\system32\trkwks.dll [PX5: 7870990A007CDDBD627A01EF59E79400E7B8DD73] [G] c:\windows\system32\ups.exe [PX5: 0112E403000750CB484000B4D1F04D0016A86582] [G] c:\windows\system32\webclnt.dll [PX5: 7D440E0500FE33CB0AC3011EA7E7DA0041324A3D] [G] c:\windows\system32\drivers\wstcodec.sys [PX5: B2CFBF068074D4084BB4001A2B9A35007D8AF7A1] [G] c:\windows\system32\vssvc.exe [PX5: FE61564C006746AE6C9C04ADE2180F0029BBF360] [G] c:\windows\system32\drivers\usbhub.sys [PX5: 1972CD35009EF197E1E10053A918EE0090181966] [G] c:\windows\system32\drivers\usbprint.sys [PX5: C449F0710094064A6580004CDAAF0B00CAA1349A] [G] c:\windows\system32\drivers\usbaudio.sys [PX5: FF94AD3180F83D9CE71F009B89049300D8E6B2BA] [G] c:\windows\system32\wzcsvc.dll [PX5: 8BEF5B0900AFE6663ECA0715EACCFB00E7178209] [G] c:\windows\system32\mspmsnsv.dll [PX5: F82E387E009585B66A440052C05A4E0090AF0C84] [G] c:\windows\system32\drivers\usbscan.sys [PX5: A345B33E004758873B29000DE02C9B00A6455141] [G] c:\windows\system32\xmlprov.dll [PX5: 9147161300AE1234FAF4013E4BA00F0094F0339B] [G] c:\windows\system32\advapi32.dll [PX5: 296A3B25006A64436AAF09BF97D4150087D2BD6D] [G] c:\windows\system32\wbem\wmiapsrv.exe [PX5: 212D2ED0007C19C1EE9501FD1D315800D058F9C4] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\googleupdate.exe [PX5: 65EBCD15F0656C910766029245C27200AA9C273C] [G] c:\windows\system32\tlntsvr.exe [PX5: 322025E6008EB51B1EEC0113A0DCBB00E691F1FD] [G] c:\windows\system32\drivers\viaide.sys [PX5: 763F36E3001A65E115B100F2DCFD2A00D63490D3] [G] c:\windows\system32\drivers\tmcomm.sys [PX5: 2E50D1090835340B919B013591DC5A0043757FD7] [G] c:\windows\system32\drivers\usbehci.sys [PX5: BFCE7DFB80314F08694900251ACB2400EB6D5705] [G] c:\windows\system32\wbem\wmisvc.dll [PX5: 4B870EFD003023C936EC02A6160CDC00ADEC4E5C] [G] c:\windows\system32\drivers\vga.sys [PX5: 14B18202007EA0B752C8003693833D00BCED634F] [G] c:\program files\common files\symantec shared\ccpd-lc\symlcsvc.exe [PX5: 83F9FE098896750F191813EE5975780001DBA358] [G] c:\windows\system32\drivers\wanarp.sys [PX5: D61BDDFF00BF41D487E5002B87E94900EE92AF43] [G] c:\windows\system32\perfts.dll [PX5: DE3E7D130048D2B230BF004AEAD24300936A354F] [S] c:\windows\system32\drivers\update.sys [PX5: B35240AB00E3291D321603412D8E98007B007A17] [G] c:\windows\system32\drivers\tcpip.sys [PX5: 4F73F53680D573A87D91052B82C9450084D6047A] [G] c:\windows\system32\system.drv [PX5: D4BD27742043BEDB0DB0000478EA5C00B79BCD14] [G] c:\windows\system32\lanman.drv [PX5: E2D10F72A09F8F89619803C59F91BE00E3FF0BD2] [G] c:\windows\system32\ieudinit.exe [PX5: 2C8541560099AE7090D500A273611A008E85823F] [G] c:\windows\system32\mmsystem.dll [PX5: 52A2AABFA0F6A1DF0C8101C8EB6DD70084C065E1] [G] c:\windows\system32\pmspl.dll [PX5: 98CDEBDE0094268EB67200C1C6BF85009014DA93] [G] c:\windows\system32\wfwnet.drv [PX5: E9641F0220200734353000D28FC59A003BEC664C] [G] c:\windows\system32\ntvdm.exe [PX5: 084E896000018F01684F06473E7EAA006418CBEA] [G] c:\program files\java\jre6\bin\regutils.dll [PX5: 15182F0B00EA40E400C804FF745A5300A2145012] [G] c:\windows\system32\nature.scr [PX5: 799745B4001727A604C933164B2D50009C998B39] [G] c:\program files\outlook express\setup50.exe [PX5: A9F78B2800467F971E69015D0AA93E00F2306607] [G] c:\windows\system32\olesvr.dll [PX5: CE221EF60049CF2B5E3B009B247C6A00F018477F] [G] c:\windows\system32\msieftp.dll [PX5: C557D92C00004CEDCCDE03ACFA461D00C8AD02D8] [G] c:\windows\system32\ctl3dv2.dll [PX5: C84734B440655DC66A4D00304EF8AC0014627D07] [G] c:\windows\system32\mscories.dll [PX5: 652959240095250822A60140F37F47001792531A] [G] c:\windows\system32\ddeml.dll [PX5: 87F926CB00F2CB349A1200182C741300499075CD] [G] c:\windows\system32\vga.drv [PX5: 8D38D13480CC42FA089200F6F3895F00B79BCD14] [G] c:\windows\system32\advpack.dll [PX5: 6410B695005FA759E8DD01268DB4C4003AE7E6E8] [G] c:\windows\system32\regsvr32.exe [PX5: 71A6CCBC008691252EFD001A3E083800E286DF89] [G] c:\windows\system32\comm.drv [PX5: 0D8B262B3068553F296F004B25B4F300F3172575] [G] c:\windows\system32\sound.drv [PX5: E70CAE91D00DCE52067C00647C846400B79BCD14] [G] c:\windows\system32\mouse.drv [PX5: D9EA0CB2F0FB384407BE00D28D0C0C00B79BCD14] [G] c:\windows\system32\netapi.dll [PX5: 3C3683AEB04DF3B2A77E0156CAF52A00C051813D] [G] c:\program files\common files\symantec shared\pif\{b8e1dd85-8582-4c61-b58f-2f227fca9a08}\pifeng.dll [PX5: 9A68FD018822EB5C352A0829DC643800442ECAAC] [G] c:\windows\system32\krnl386.exe [PX5: 73DC8EAB409575D768FA018D9464D2002C4E9D96] [G] c:\windows\system32\olecli.dll [PX5: 4B8B4B1800858B0244DF0121D0BC3200740DC5D3] [G] c:\program files\messenger\msmsgs.exe [PX5: 937DB9BC008B29B4DA13198C306CAF00327E8384] [G] c:\windows\system32\keyboard.drv [PX5: 159F7A82D0C5E0D3077700FE801B1000B79BCD14] [G] c:\windows\inf\unregmp2.exe [PX5: 62D1ABBC006680A4D83104F3FD5F660098F6E1C9] [G] c:\windows\system32\commdlg.dll [PX5: 48741A4830643BD6803B0098DCFB87001F6B1116] [G] c:\windows\system32\ie4uinit.exe [PX5: 7D2421A1003B3595F8C60072045681005BAF98FD] [G] c:\windows\system32\logon.scr [PX5: D1D797A700114C175E1803F3B4819D00138273BE] [G] c:\windows\system32\shmgrate.exe [PX5: 8BCC733600AD0F89A6D6007CC62E8E00F0CC6F4F] [G] c:\windows\system32\mmcshext.dll [PX5: A053843B00144E6FC6C500FB8A9FEB00ACA4B630] [G] c:\windows\system32\slayerxp.dll [PX5: 5C680BD900DC8502622E007198D69C00AD12707D] [G] c:\windows\system32\deskmon.dll [PX5: 1861578D0019BD9842E400F4C3AB03004C627E26] [G] c:\windows\system32\extmgr.dll [PX5: FBD2C09E00637EDA06F202E47D533100CF1B5670] [G] c:\windows\system32\ole2.dll [PX5: F2FC4A2A40B7B6B59BDF00629364AB00A54AED31] [G] c:\windows\system32\printui.dll [PX5: 4A309320000C5BEE8E100838611E6300C7A005BE] [G] c:\windows\system32\winspool.exe [PX5: F5BB157440E5748C08D600021F9AD300B79BCD14] [G] c:\windows\system32\mmsys.cpl [PX5: 0C605D6900B7505B700A096AD3370E007F17D2E0] [G] c:\program files\common files\roxio shared\10.0\sharedcom\upnpui.dll [PX5: B053B3B6F004AF82196E0C7B74214200D024758F] [G] c:\windows\system32\dsuiext.dll [PX5: 7E57432700352BB4BAF00109D732F9004255F2CF] [G] c:\windows\system32\win87em.dll [PX5: 22C03F9D0005E87A34B40075B0F00E00517D625F] [G] c:\windows\system32\nvshell.dll [PX5: 2371381B0051C449206907CC2BD46700B87C5C5C] [G] c:\windows\system32\fontext.dll [PX5: 14BCEBA8004E0C8DD869053CB6A6C80003666E15] [G] c:\windows\system32\photowiz.dll [PX5: 7BFC1FB700E66211B0CE023DAE2CD80040FBB399] [G] c:\windows\system32\dfsshlex.dll [PX5: 853F0DC900DEC10C7043003118835A003A84EA4A] [G] c:\windows\system32\msvideo.dll [PX5: 166B9821C065DB11EF6E012F00509C0078575A4E] [G] c:\windows\system32\dskquoui.dll [PX5: C0535DCB00C952353473021194B78700ECD53A0C] [G] c:\windows\system32\dssec.dll [PX5: AB15FA9100EBC265C84D00AE99016100F2B13CDB] [G] c:\windows\system32\docprop2.dll [PX5: D126C09300D1B90EBC610003A014560052247100] [G] c:\windows\system32\mstask.dll [PX5: 3082E8C00015AFB7320D0492B23C9200DE47E494] [G] c:\windows\system32\msacm.dll [PX5: B7D763E3F0AFD481EEC10048E192C7001FF6064C] [G] c:\windows\system32\mciwave.drv [PX5: E05EE706009DE3CC6ED500B984CFF500AC82858F] [G] c:\windows\system32\shell.dll [PX5: CE2E2C35000BF1E3147B0046192BB900FA35E49E] [G] c:\windows\system32\occache.dll [PX5: D37DB39800C40129901F012AFF00A400C6C460CD] [G] c:\windows\system32\netplwiz.dll [PX5: 485C67B10031B2415A1F0D0F38EC4500CDB0ED8B] [G] c:\windows\system32\deskperf.dll [PX5: 3186F5FB00DA3DC6487C00EF4C68AF007E9BD8F6] [G] c:\windows\system32\shellvrtf.dll [PX5: 5590B566001D5490A0C60395240D0600A37A0A88] [G] c:\windows\system32\dfshim.dll [PX5: 494A923700854E7646D901138F98BF001434DC1A] [G] c:\windows\system32\syncui.dll [PX5: 3E468E3E00973CB5ECAB020489F4100064A749D1] [G] c:\windows\system32\avicap.dll [PX5: D5345CD4D06C42C90F7C0131EBCF0000CCBFD345] [G] c:\windows\system32\wmpshell.dll [PX5: A257F2F40064E0C786EE01FC6369D9005D6B5CD4] [G] c:\program files\microsoft office\office10\olkfstub.dll [PX5: B7C4D8B0A0FB43B0D522009AFBB788001BC113EE] [G] c:\windows\system32\timer.drv [PX5: 9E742523D04ADDED0FAB00C7BF7ADD00AFD72FD9] [G] c:\windows\system32\cryptext.dll [PX5: 52E265F900EC99C7D2BE005678988400E7F5A7A2] [G] c:\windows\system32\dsquery.dll [PX5: D59933F80071FAF0A60503D87FF35F0063CF71D2] [G] c:\windows\system32\wowdeb.exe [PX5: C1613D5DB0A80A260ABB006471357400B79BCD14] [G] c:\windows\system32\wshext.dll [PX5: B24E1FEB005258F40079011144B53000E92FC416] [G] c:\program files\outlook express\wabfind.dll [PX5: 712A7E9000A9A845805300462EEB270073AB20BA] [G] c:\windows\system32\shscrap.dll [PX5: 2390FB2800BB78776C3A000D71D441002D349AD6] [G] c:\windows\system32\diskcopy.dll [PX5: CF5C1E730086C83CEAFA16F256F75D00B0048BB7] [G] c:\windows\system32\compobj.dll [PX5: DA21156DD0BCD8E77562007DCF26A600F4FFDA3F] [G] c:\windows\system32\mscoree.dll [PX5: F65D0B7500B9E3C5247304486ECE1C00F72D759B] [G] c:\windows\system32\wpdshext.dll [PX5: 260936F700D6CD55B83A276215529800C0FDB145] [G] c:\windows\system32\cdfview.dll [PX5: 1A7F0BCC004EEB204EE2023411247800848D97D6] [G] c:\windows\system32\hticons.dll [PX5: 591B763D006A5470AEE5005379ACFC001D731794] [G] c:\program files\common files\system\ole db\oledb32.dll [PX5: F402AF0200CC188470E8074CAC66FA003626BE0B] [G] c:\windows\system32\mciavi.drv [PX5: 589C957DA0B4EE8D1E4C01116F791800B1691AE9] [G] c:\windows\system32\ole2nls.dll [PX5: 09B13294B021FA9E558F026E08072F00900228B5] [G] c:\windows\system32\typelib.dll [PX5: C0620321C004C14EB60D020DCCE16200701F9AEA] [G] c:\windows\msagent\agentpsh.dll [PX5: 3A35C77A0066EF825E5100F992B81A005E39991C] [G] c:\program files\real\realplayer\rpshell.dll [PX5: CA799796409C6919F69B0065638DCA00ED2DCB6B] [G] c:\windows\system32\icmui.dll [PX5: A65A2CC700684743D60C00E9E66CBE007DE253A7] [G] c:\windows\system32\mydocs.dll [PX5: 42D5AD55008A0B606281014DCE058600453E47C7] [G] c:\windows\system32\avifile.dll [PX5: 673C9E5390EC39E0AB99016052733100D94C108E] [G] c:\windows\system32\winoldap.mod [PX5: E19A53B2202676D208C7002132DA8800B79BCD14] [G] c:\windows\system32\mapi.dll [PX5: 93D4F898C0AAA3E5EF3707B6FD82F000CFBFE1E3] [G] c:\program files\poweriso\pwrisosh.dll [PX5: 86DE37D2002FBEF920CC03FFA9B9C1005F3C39E5] [G] c:\windows\system32\deskadp.dll [PX5: A8E6BCB8005F1AED40D1005EACC72200D8A6286F] [G] c:\windows\system32\ntlanui2.dll [PX5: 1EF47110003D84B738A5000A7557EF00319AF9D5] [G] c:\windows\system32\cabview.dll [PX5: 59960ACC00D762944A3D01255C39000044BD52EB] [G] c:\windows\system32\winsock.dll [PX5: FCF9BBDC30E28D0D0BF200D9F4D9CD00B79BCD14] [G] c:\windows\system32\wiashext.dll [PX5: A3FEB55300990968FE7D08DC27C7460075590D60] [G] c:\windows\system32\storage.dll [PX5: 60BAD4D270E3252C10B800A49D4C780095AFB292] [G] c:\windows\system32\remotepg.dll [PX5: 33E60AA600EA8D73EC6C00AA761D87008122B633] [G] c:\windows\system32\wuaucpl.cpl [PX5: DEC1D60858D0AD974D1603850E3A98002B746A2D] [G] c:\windows\system32\sendmail.dll [PX5: 78FF502700334328D8AD00B543AB3E0080A67ED7] [G] c:\windows\system32\toolhelp.dll [PX5: 87219368400265353643009B30E21C003936EBD7] [G] c:\windows\arpower.dll [PX5: D7B521E70045B442F4AA0064EC6EE6007D9EAEF0] [G] c:\program files\microsoft office\office10\msohev.dll [PX5: 131D104EA043137C350C01DA7538A900EA1A19DB] [G] c:\program files\itunes\itunesminiplayer.dll [PX5: EE2972E8283C315805CA029AE610E2002F27D6B9] [G] c:\windows\system32\mciseq.drv [PX5: 26C7F2EFB0BC9496624C00DE27EBE900CB5395A3] [G] c:\program files\common files\microsoft shared\web folders\msonsext.dll [PX5: CFF3A8E900F0931C20561499EDC2B000C723D664] [G] c:\windows\system32\rshx32.dll [PX5: 241B697100CDA77E9CF6006B516F700015C8CB4D] [G] c:\windows\system32\twext.dll [PX5: AFCD13DE00E16AFDAC7500D0623D8900A1DC43EB] [G] c:\windows\system32\appwiz.cpl [PX5: A9AC142D008048D664B308BA8AEF8800EDDA15E8] [G] c:\windows\system32\docprop.dll [PX5: ECC55D0D00A03E5CB41800107233B100171B1004] [G] c:\windows\system32\ole2disp.dll [PX5: 3E66404830EBCC7296B902E3361C6400BE12EFF7] [G] c:\windows\system32\audiodev.dll [PX5: 4BE217500087C5F13A360430E7958900806DA483] [G] c:\windows\system32\tssoft32.acm [PX5: 597C225A00229E5420CD00D6CE33FD0070CD831A] [G] c:\program files\common files\microsoft shared\grphflt\pcdimp32.flt [PX5: 6D990415003226DC80300150E1672E0070446DB5] [G] c:\windows\system32\msh261.drv [PX5: 928C986F0073814EE002021514A321000FD5B39F] [G] c:\windows\system32\netsetup.cpl [PX5: A3C2AF42008D84BE644800371F48AB008022FDA5] [G] c:\program files\common files\microsoft shared\grphflt\cgmimp32.flt [PX5: 1C973A2300A46A1C60810661ECDD4000AFDA59A3] [G] c:\windows\system32\vct3216.acm [PX5: A8B5CFD700A70B57440E012658B30500CBDE42E1] [G] c:\windows\system32\alf2cd.acm [PX5: CC3B55D5003C64F0984800E0ABECCF009D0F31C1] [G] c:\program files\common files\microsoft shared\grphflt\tiffim32.flt [PX5: 6A65288600710C5E10250304BA3E680017BA55DA] [GP] c:\windows\system32\divx.dll [PX5: 86A295AE00568BC670740A764415B700C073480B] [G] c:\windows\system32\ir41_32.ax [PX5: A7B0F4470071816BF2740C5AB256BE005D691B51] [G] c:\windows\system32\rdpcfgex.dll [PX5: 2287036E008EC90F102D00C1F661D900B79BCD14] [G] c:\windows\system32\iyuv_32.dll [PX5: FD6672980029E821BA4400F1F0F98E00B4D03D53] [G] c:\program files\common files\microsoft shared\grphflt\fpx32.flt [PX5: 0103CBDD4925B81510DB2FA081A84400AD71E1C8] [G] c:\windows\system32\msrle32.dll [PX5: 17D5F5AA00CC99E82CC40086654EC6004814AC7A] [G] c:\windows\system32\lameacm.acm [PX5: D38FA2FC00C3165020F00D8390C9D600F7E09261] [G] c:\windows\system32\ir32_32.dll [PX5: 09D3470B00BA2D800A35030E86711E00012418EC] [G] c:\program files\common files\microsoft shared\grphflt\pcximp32.flt [PX5: 786B79BE0043616D4033013060AF8500033C63B6] [G] c:\windows\system32\firewall.cpl [PX5: 3D59545F00D651F33A6401A729628B00D970D616] [G] c:\program files\common files\microsoft shared\textconv\wnwrd232.cnv [PX5: 2BDF980F00193A16302F03FA6F2D9900FF1EB510] [G] c:\windows\system32\msvidc32.dll [PX5: 3BCEDE7A00AD9815642A00A6E14FCB00635E3B9B] [G] c:\windows\system32\msh263.drv [PX5: 8449A62C00897083800004771B8F4A00830A9282] [G] c:\program files\common files\microsoft shared\grphflt\wmfimp32.flt [PX5: 971F6A2B00A27CEF908B002DDDE82A0023C48C59] [G] c:\program files\microsoft office\office10\msqry32.exe [PX5: 824F331BA0A83A44454B0B458613BC00D1271B54] [G] c:\windows\system32\msg711.acm [PX5: DC7633F80078CFD524560012D62AF30041BAFEED] [G] c:\windows\system32\vdrcodec.dll [PX5: B81BE211009F284FB6C900D090CAD0001B6C3BF1] [G] c:\windows\system32\digest.dll [PX5: 96DC7CB10062E09C0C68012A082156008E02C4A1] [G] c:\program files\adobe\reader 8.0\reader\pdfprevhndlrshim.exe [PX5: 623D7460882DBAFD90910060B8205E0036350873] [G] c:\windows\system32\imaadp32.acm [PX5: 6017AF9100745872405A0002F87C030042EB6884] [G] c:\program files\common files\microsoft shared\textconv\macwrd32.cnv [PX5: 87D8F47F00C3BB7718E003635229F40012E0550B] [G] c:\program files\common files\microsoft shared\textconv\wrd6er32.cnv [PX5: 4421400B0052DE422C04003B3C2E07000C63A494] [G] c:\program files\common files\microsoft shared\grphflt\jpegim32.flt [PX5: 561D8D31404B04827C1102EBE625B60029914885] [G] c:\windows\system32\ipxsap.dll [PX5: 0D0E7AB1005CA9FD044A0145CCB76100EA2DB56E] [G] c:\windows\system32\msapsspc.dll [PX5: 1AB260E800AE9F0650060110AB0FE8000E6F824A] [G] c:\program files\common files\microsoft shared\grphflt\emfimp32.flt [PX5: F0FCD40F0010BE9F5E66058999A28D00C0732751] [G] c:\windows\system32\msaud32.acm [PX5: 642632CB00A54DE480D004F5779ADD002B8969B8] [G] c:\windows\system32\msnsspc.dll [PX5: F7D5F4300010B73F70E904D99BDE4B000D5527C7] [G] c:\program files\common files\microsoft shared\grphflt\gifimp32.flt [PX5: 1AFC15B7406A5DF9BCF2022DB710D40042C2594E] [G] c:\program files\common files\microsoft shared\grphflt\bmpimp32.flt [PX5: 93747641008297F45017019294DF8900778FB4D0] [G] c:\program files\common files\microsoft shared\textconv\works432.cnv [PX5: 6FFFA7710086EF08F81003EF6D5B1200BC629138] [G] c:\windows\system32\msyuv.dll [PX5: 07F9CC96009C57AC446300446E160E00F0BCB1CC] [GP] c:\windows\system32\yv12vfw.dll [PX5: 50F71ECB00C2073114A30138B5AC8400E2DE2EB5] [G] c:\program files\common files\microsoft shared\grphflt\cdrimp32.flt [PX5: AF8081000041B2D6C0750AEF28FC60007EBC2A06] [G] c:\windows\system32\msg723.acm [PX5: 90CED65100D50D35D03C015E1E73F000BBB3F186] [G] c:\windows\system32\msgsm32.acm [PX5: 9A33DFDB007F6CC14E65006C65CF6C0089503DD3] [G] c:\windows\system32\osk.exe [PX5: FEF16A80008F100B4AF6035F16FFB2007BEBC8FD] [G] c:\windows\system32\rdpclip.exe [PX5: C3BA724D009CADCFF4300018D68AB90023DD0C7D] [G] c:\program files\common files\microsoft shared\textconv\wrd6ex32.cnv [PX5: 9EF728AE00C58DD2B08410F920658800EA5D0276] [G] c:\program files\common files\microsoft shared\textconv\html32.cnv [PX5: 34B59BD5C0FD5F7FC4E4042A52F42E00E2C6426C] [G] c:\program files\common files\microsoft shared\grphflt\wpgimp32.flt [PX5: 5772631F40B5A2FFB88401F208DE1300A5083FF8] [G] c:\program files\common files\microsoft shared\grphflt\epsimp32.flt [PX5: 4F91CDDE00E688FBD01F0AD63A234A00DA43F5F2] [G] c:\program files\symantec\liveupdate\s32lucp2.cpl [PX5: A3C28D7C78326F8B56B7070E9AC21400648A53F9] [G] c:\windows\system32\ir50_32.dll [PX5: 4CEA49F7001AA56586130B63128157002F7952DB] [G] c:\program files\quicktime\qtsystem\quicktime.cpl [PX5: 004E1EBD00D799B9F05D154123E1C300687B8B77] [G] c:\windows\system32\rsvpsp.dll [PX5: E913BA84007172D3600101B186734F00ADB2AE65] [G] c:\windows\system32\cmd.exe [PX5: 0E7788B10044C14CEE1405F23AA7F300DF9E140A] [G] c:\program files\common files\microsoft shared\msinfo\msinfo32.exe [PX5: 3B22421A0036A3BB9CFA00953DF8F2007A286172] [G] c:\program files\common files\microsoft shared\grphflt\png32.flt [PX5: 41F3277C387D0DCC802F02C1B6DDD1004C87D6FD] [G] c:\windows\microsoft.net\framework\v2.0.50727\mscordacwks.dll [PX5: EF54F26D0008E1F238C20CD47ED58E00B5718750] [G] c:\windows\system32\pvmjpg21.dll [PX5: 6AA0AD0600DCB6E4806504A01FE32A00B4FDFB8F] [G] c:\windows\resources\themes\luna\luna.msstyles [PX5: 26B8216A90343112F0D33F7D42FFFF0092474AEE] [G] c:\windows\system32\mpg4c32.dll [PX5: 05FD8AD84072E10450C106E8D49CCF005E072D5B] [G] c:\windows\system32\ipxrtmgr.dll [PX5: 80A05EA6001714369C7400382E768600DD1E5ACC] [G] c:\windows\system32\iccvid.dll [PX5: F4756FFC00024AC33ABB013919947600ADCD8999] [G] c:\windows\system32\scg726.acm [PX5: 5F44D1F8B7CE296F337E00A5C951FE007B5C9F1A] [G] c:\windows\system32\vfwwdm32.dll [PX5: E2FA347F0029B5B8D23900E28D8B79008C92F759] [G] c:\program files\common files\microsoft shared\grphflt\pictim32.flt [PX5: 21A9ECD100C714F3F03501E638210100C36C3CBC] [G] c:\windows\system32\ac3acm.acm [PX5: 6732A8410031C4E5408A010540795E00978E7D0E] [GP] c:\windows\system32\i420vfw.dll [PX5: 6F1D2DF4009080C514B4012D37A68100F982E922] [G] c:\windows\system32\rdpsnd.dll [PX5: D85F6AAE0082602C4E400072736E3200E7A34FD5] [G] c:\windows\system32\magnify.exe [PX5: B73C8C1F00F1CC211C520147693D720069007337] [G] c:\windows\system32\ipxrip.dll [PX5: DE838EAE00E0AD3854A4008772C89D00626E84EF] [G] c:\windows\system32\l3codeca.acm [PX5: 3307C17D0023D63F70D804756DFEAC00C550327E] [G] c:\windows\system32\sl_anet.acm [PX5: 4646043E00FBDA8450F9011B81A8D90062DBA40F] [G] c:\windows\system32\tsbyuv.dll [PX5: 020E89D8009F301B205E00B4BB4D90004F05B8D0] [G] c:\program files\common files\microsoft shared\speech\sapi.cpl [PX5: 7A9E4DBA00D57729608102D73782D000282D15B6] [G] c:\program files\adobe\reader 8.0\reader\pdfprevhndlr.dll [PX5: 3BD592F470063CF846ED01556DDA8700DCEF7EC5] [G] c:\windows\system32\iac25_32.ax [PX5: 3049DB140089A97F0CEE03E4B7439900DA0B3323] [G] c:\windows\system32\xvidvfw.dll [PX5: 3FBB7F125F3C53727098023FC67C2300F964842B] [G] c:\windows\system32\msadp32.acm [PX5: 142727A8003A7B4A3AD600BCED1D550039A30A1A] [G] c:\program files\common files\microsoft shared\textconv\lotus32.cnv [PX5: 9E6FBAEB007F0979C8A60102158E260099152020] [G] c:\program files\macromedia\dreamweaver 4\dreamweaver.exe [PX5: DDB48B01006A5425D026032B31254A00A4001D46] [G] c:\windows\system32\msfeedssync.exe [PX5: FA0E4E60004D610F30FB00727688CF008D2D9800] [G] c:\program files\common files\microsoft shared\textconv\excel32.cnv [PX5: 704A8728007B1BFD60FA029E8725FD0061F46BC2] [G] c:\program files\common files\microsoft shared\textconv\write32.wpc [PX5: 71A6A3C449C4AC08B01A01656F55D10008D0B60B] [G] c:\program files\norton security scan\nss.exe [PX5: 8AF5D107708D3213DD690B2602521E00039C9DB3] [G] c:\program files\common files\microsoft shared\textconv\recovr32.cnv [PX5: 57E4029000E09B18F49B0082C5DE430062CA81D9] [G] c:\program files\microsoft office\office10\outlook.exe [PX5: 1C0BBDE0A029D7AFB5F8002DDDE82A0001628F21] [G] c:\pngsetup.exe [PX5: A1FA31E000E695B8D0AD00C184FB110078A07572] [G] c:\windows\system32\ntbackup.exe [PX5: 6EE1EE21004F1EB550571263D9B225009A5A623F] [G] c:\program files\maxtor\managerapp\maxutilities.exe [PX5: DD77A7A860691EE1958C8E18FEAE700037229654] [G] c:\program files\roxio\virtual drive 10\dc_shellext.dll [PX5: 932C463DF0E266C759D701F6D99F6000749E5D9E] [G] c:\program files\common files\microsoft shared\textconv\wpft532.cnv [PX5: 70AFF0680003DB938A0905DC950C11007E1AD480] [G] c:\windows\system32\cleanmgr.exe [PX5: 3E97F67F00389E7FFA100064B6DDA7004204BDC2] [G] c:\program files\common files\microsoft shared\textconv\mswrd832.cnv [PX5: 97833D4CC85457B94CCE032837FC5D001BFAD2B5] [G] c:\program files\common files\microsoft shared\textconv\works632.cnv [PX5: 89B6053B009629DFE04800B0F6D0070069D648C9] [G] c:\windows\system32\mmc.exe [PX5: 2D0DEEE200915CDD70820CD0EB0CF800DB21FBB3] [G] c:\program files\common files\microsoft shared\textconv\wpft632.cnv [PX5: 4F772F6EC8A0D5182881032412740D006D22F15E] [G] c:\program files\google\googletoolbar1.dll [PX5: 73D88C38402D1A10FC7C2651535E8800CA47ACE5] [G] c:\program files\common files\microsoft shared\textconv\mswrd632.cnv [PX5: 417C23C900BA5AE0485702F2E91DAA0072B88A78] [G] c:\program files\malwarebytes' anti-malware\mbamext.dll [PX5: 2636393DB03EDB421E1701B5D563E600717A6ADF] [G] c:\windows\system32\wscript.exe [PX5: 9C94D44800D60426C0410166FCF6E0003B08D7C6] [G] c:\windows\system32\mshta.exe [PX5: 718367AA002A4EB4B2EB00A2C177ED00FAF63606] [G] c:\program files\common files\microsoft shared\textconv\works532.cnv [PX5: 8D2D8314406D125FD0B1005E1FF59900B07EA284] [G] c:\program files\common files\microsoft shared\textconv\mswrd632.wpc [PX5: 255241CE4A8E0D0D40E903D813E15E0009AB328E] [G] c:\program files\common files\hp\memories disc\2.0\hpodaierr.dll [PX5: 1539449E00A91239303D012D9537AE008A0F8934] [G] c:\program files\microsoft office\office10\finder.exe [PX5: F6C04D51A0FF27AD5536002DDDE82A002CB31807] [G] c:\program files\microsoft works\wkimgsrv.dll [PX5: FCCFBB990007346B406D01080B562700F900CBDD] [G] c:\program files\microsoft office\office10\outlrpc.dll [PX5: 13EC356CA0642B091557015233BE3800D7415555] [G] c:\program files\internet explorer\iexplore.exe [PX5: B33C26D500EC74268A6309DB7DEBEA007908A72B] [G] c:\program files\roxio\videoui 10\dsquickburndialog.dll [PX5: 28CC1CD9F03C6C15E92F05E3C6EB65005A145F5F] [G] c:\program files\roxio\photosuite 10\psactivitypanes.dll [PX5: FC0B257AF0DD72A78965102150C48200B1C7E0A5] [G] c:\program files\real\realplayer\ierjplug.dll [PX5: 2FA833B8000101968E7A003CF89A58003270D2ED] [G] c:\program files\microsoft office\office10\outlcm.dll [PX5: DF96DDB8A0DAFF7915170871E8FE27008D179554] [G] c:\program files\hp\digital imaging\bin\ltrio13n.dll [PX5: B81D35DE00E177B4FAC604C0AEED0D005E09B31F] [G] c:\program files\common files\business objects\3.0\bin\cubedefmodel.dll [PX5: 752576DE007C57E6C26E04B33929D100C22FF4DF] [G] c:\program files\common files\microsoft shared\wordart\wrdart32.exe [PX5: 4CBDE7BE00EC355D6AD90621CD36E00013845950] [G] c:\windows\system32\wsecedit.dll [PX5: 0F8584270032D8D81C3509C59578A800C89EBF31] [G] c:\windows\system32\rsmsink.exe [PX5: 45B8259300AFAF5B600200C8B3DD630085F1BDE9] [G] c:\windows\system32\mstime.dll [PX5: F8535CC900F0F68C3EB40A92AA065B003F6B40C8] [G] c:\program files\microsoft office\office10\mlshext.dll [PX5: 8CD0FBBFA0D37997859C002DDDE82A007AB6F1BD] [G] c:\program files\microsoft office\office10\msosvabw.dll [PX5: 6A8864EDA0B8E5CFC5CD00E5417BFB00EF1E0B59] [G] c:\program files\divx\divx converter\gzhf330.ddc [PX5: 1ED348BC005C2560F06A007211E6EA0050589F98] [G] c:\program files\movie maker\wmm2filt.dll [PX5: 19F01A5300D5028F24D906C03135BD0064D544A5] [G] c:\windows\system32\msscp.dll [PX5: A3313843000EE7515439062A813DBF00FA4BD3C0] [G] c:\program files\microsoft office\office10\graph.exe [PX5: 2BAA4D40A0CCB7CDB57F2089662F53003D46F911] [G] c:\windows\system32\msdtctm.dll [PX5: CF1CE02C000AA01198D80ECFBB6D03009608D2BC] [G] c:\windows\system32\autodisc.dll [PX5: FC4B017E009908123AEC0103777BA3005F9F2BB2] [G] c:\windows\system32\dxtmsft.dll [PX5: D81C676A0002CE944A5605DFFBEB3600D59313BD] [G] c:\program files\common files\business objects\3.0\bin\rptcontrollers.dll [PX5: E0A55A9600CD1A1C34AB129BD963E600FD8607F0] [G] c:\program files\microsoft office\office10\envelope.dll [PX5: 7C7FB298A080C52295DF019B8BD31B00D86A99DB] [G] c:\program files\common files\microsoft shared\dao\dao360.dll [PX5: C901A5B11BE17BBD906E08E88AA910005BFFB6E0] [G] c:\program files\microsoft office\office10\recall.dll [PX5: 4E45D458A0C51AD1B5560014DC4E22005E03FB04] [G] c:\program files\microsoft office\office10\cdooff.dll [PX5: 3F966B8BA0C0D7D595A303A940353800BA04D387] [G] c:\program files\microsoft office\office10\msomse.dll [PX5: EFC2FCB8A0EEB8FC05D101FC4E82B2006C65D485] [G] c:\program files\microsoft office\office10\outllib.dll [PX5: 7D9D30B1A0A5D0770526609A797B3800919F4D9B] [G] c:\windows\system32\sndrec32.exe [PX5: 67C599C800489F45025202C548845900EBB11CAE] [G] c:\program files\ahead\nero\nerocom.dll [PX5: 7AB9DD7400E84AF37006056404AFDA00233AC045] [G] c:\program files\microsoft sql server\80\tools\binn\axscphst.dll [PX5: 07A5574E44D10474E2CB00DE0DDC77001E4504AB] [G] c:\windows\system32\dumprep.exe [PX5: 3E618DB300FE0E962AD30080F0114F00FEADA32C] [G] c:\program files\ahead\nerovision\nevideofx.dll [PX5: FF279CA300ADF412E07215311790E60061611B9F] [G] c:\windows\system32\mapisrvr.exe [PX5: 9C52D2DC1044D20C9532000C08D4B300E7F11851] [G] c:\program files\common files\microsoft shared\equation\eqnedt32.exe [PX5: 8E02811D00547CBD308508B0A1780A005A0925D0] [G] c:\program files\common files\roxio shared\10.0\mpeg\mpeg2vidcodec.dll [PX5: 866C1B26F0A7B72AF93F11AE56E97D00A4DCCF9D] [G] c:\program files\microsoft office\office10\winword.exe [PX5: CB238BABA090C5216500A109D6B69C003D61D49E] [G] c:\program files\common files\microsoft shared\web components\10\owc10.dll [PX5: 3CE230F0F0E33ACB773871047CF8A50089D98B7D] [G] c:\windows\system32\ltscb13n.dll [PX5: C0D2B40A0063209AE0B701E25CE35E0074E2F041] [G] c:\program files\common files\roxio shared\10.0\dllshared\dcfilters10.dll [PX5: A55EEC24F0679BD469B805BD4B9062009997FD08] [G] c:\program files\common files\roxio shared\dllshared\cddbcontrolroxio.dll [PX5: 22DD6BF4F8A4CF1015230A177FF7DB00C8922D69] [G] c:\program files\microsoft works\wksss.exe [PX5: 684422EE00C28848E00D1CAA8362CD00B3092681] [G] c:\program files\microsoft office\office10\excel.exe [PX5: 6B84263AA06F2905D5478B7BB2093900752B8BEC] [G] c:\windows\system32\actskn43.ocx [PX5: 621F2F070059D317F01305C582465C007DB9B8FE] [G] c:\windows\system32\msxml4.dll [PX5: D1E8879E00026C9176AC1348D236BF0090B71A22] [G] c:\program files\microsoft office\office10\msowc.dll [PX5: 1B08E5072DEA487CF0E02EB47C0EE6007CC300B2] [G] c:\windows\system32\infosoft.dll [PX5: A99366A60032A2E4E0B60651149D18009869E051] [G] c:\program files\yahoo!\common\yverglance.dll [PX5: 083E363830E59C4226F8012DE12774005B18592C] [G] c:\program files\microsoft office\office10\mimedir.dll [PX5: 0D9992E1A05299B2B50B02AD2E248800167D1FA0] [G] c:\program files\microsoft office\office10\mse7.exe [PX5: 46723D34A0D8B1D6B50100BD8E208A00CFB5CA32] [G] c:\program files\hp\digital imaging\bin\ltran13n.dll [PX5: 4776B1D500548B8C9EB20D26F1AB3E0072B04BE7] [G] c:\windows\system32\mplay32.exe [PX5: 48F59F6400B98744E26F018FCC4A7F007777F199] [G] c:\program files\pinnacle\shared files\realvideo\rmrenderer.ax [PX5: 78B8791E0007C0B520180125D7AC7D00944B0A73] [G] c:\program files\common files\microsoft shared\triedit\triedit.dll [PX5: 5044E45F00AE3AC45600023B2273D80081E0B110] [G] c:\program files\microsoft office\office10\sendto.dll [PX5: 96F1EE10A077E2682566015EB1E8A4006753E1AB] [G] c:\program files\pinnacle\shared files\filter\pclempgdemux.ax [PX5: 73C57FEF00BDE7DE50D00473011AF8005E8C96BC] [G] c:\program files\common files\system\ado\msado15.dll [PX5: F50C0A3400B126DD30E908D4B1B0C8006C23AF29] [G] c:\program files\lead technologies, inc\leadtools eprint 3.0\bin\lpcom03n.exe [PX5: 9F1DDBB800A449EA30EE018D75E663002CD9157B] [G] c:\program files\common files\hp\memories disc\2.0\hpodae.dll [PX5: BD7CCA2F009B9674D043012612995B008CB06425] [G] c:\windows\system32\adobe\shockwave 11\swhelper_1103471.exe [PX5: 8682FA39B8A7DA7105DC0767A339DC002DB8B538] [G] c:\program files\microsoft office\office10\outlctl.dll [PX5: 7080EC5CA0707C596519015037769B003388CC7A] [G] c:\program files\click'n design 3d (v5)\ltocx13n.ocx [PX5: CEC005AC001A748B54AA0B983F413D00D7576490] [G] c:\program files\ahead\neromix\plugins\audiocontrol.ocx [PX5: DC69798B00C97101F0580468804ED90085F24F9D] [G] c:\windows\system32\nvwdmcpl.dll [PX5: A412B47F00ED3D1E603319CA6C56F8006D596253] [G] c:\program files\microsoft office\office10\outlas.dll [PX5: 50A26227A0331751853E0034F2DD92009B7163E7] [G] c:\program files\common files\business objects\3.0\bin\pageobjectmodel.dll [PX5: 408A07FF00F33D62ACDF27370B3FB200B553A972] [G] c:\program files\microsoft office\office10\refedit.dll [PX5: 7CDA418D00B2494D306E013A20BA26008331B640] [G] c:\program files\common files\system\ado\msadox.dll [PX5: 34218A8E0047051A104603D301C676000EE4C100] [G] c:\windows\system32\xvid.ax [PX5: 3FE47C3300AD8234D0EB00B236633B00717D0D3C] [G] c:\program files\common files\microsoft shared\office10\mso.dll [PX5: 87A03972A0CD498B85AA988A9009CF0030627EF2] [G] c:\program files\common files\business objects\3.0\bin\prompt.dll [PX5: 381866CA00C909952066138CA17AF000523A83B1] [G] c:\windows\system32\adobe\svg viewer\svgcontrol.dll [PX5: 593C3D470084FBCD901706D9108C300049A51675] [G] c:\program files\roxio\photosuite 10\ppspimsupport.dll [PX5: 3996974FF0A1872009C101414A12F1007D9762B9] [G] c:\program files\ahead\nerovision\gcfx.dll [PX5: 2303286100A4AEB9B0672B9282237C00A77E5525] [G] c:\windows\ehome\createdisc\sbeserverps.dll [PX5: C9B546AC005B6C5E3253003FD1A2B9007E0630E4] [G] c:\program files\roxio\cineplayer\hdrendercom.dll [PX5: F52E9820F0C90D5859CC162B8D1F1E00EB74DEF1] [G] c:\program files\pinnacle\shared files\filter\dwslicer.ax [PX5: AFE9B9A30067209A406D016E7725DE00EF21C2AE] [G] c:\program files\common files\microsoft shared\works shared\aw.dll [PX5: 4A0DBBED3240B13330B502E5E7AACA008DE84B75] [G] c:\windows\microsoft.net\framework\v1.0.3705\vsavb7rt.dll [PX5: 470E17A1004CB03740AF0FAFC1B3070070A18749] [G] c:\program files\common files\microsoft shared\smart tag\ietag.dll [PX5: 57600E2BA0FD925C954A017525BBD200F93DD257] [G] c:\program files\common files\microsoft shared\vs7debug\pdm.dll [PX5: A4BA214E005AB07FB0F702C4D6821600B1920AD3] [G] c:\program files\common files\hp\memories disc\2.0\hpodskin2.dll [PX5: D204375300E7E451B05301DA84015100881C490B] [G] c:\program files\hp\digital imaging\bin\fwupdateedo.dll [PX5: B7058100001F534E100402B4DE62C100473331AF] [G] c:\windows\ehome\ehdrop.dll [PX5: 66859BC2007B4BA9FA6E017BBB085A007837A32A] [G] c:\program files\common files\ahead\dsfilter\neaudioconv.ax [PX5: 3C95EF60008757B910D101D7F99C1F00588659DA] [G] c:\program files\hp\digital imaging\bin\hpqimgr.dll [PX5: 619BA373007CEF8F90D60734338F050034DBD2BC] [G] c:\windows\system32\wiavusd.dll [PX5: BF32F16500B4CD0A387802311ED3F9002537D5AC] [G] c:\windows\system32\wbem\wmipcima.dll [PX5: E40934ED009C2F13642402B449101300BE3CF586] [G] c:\program files\roxio\videocore 10\videocompositing.ax [PX5: D325281C00F1110640B70D6B9747F10054CF0D31] [G] c:\windows\ehome\ehmsas.exe [PX5: 2F99A94E0050AE61B61000648D6101006EC8AFCD] [G] c:\program files\roxio\videoui 10\rxburner.dll [PX5: 4C79DC87F05657DFA9750162DED8A70040BA3E82] [G] c:\windows\system32\wstdecod.dll [PX5: 52D631CE00376A49C674000185CCE200ECAC84E6] [G] c:\windows\system32\comct232.ocx [PX5: C2AD9C12306C683381AD0212F42E41005A7517A6] [G] c:\program files\microsoft office\office10\1033\schdpl32.exe [PX5: 88B6F1FE10A49505CF50022C468D650028378851] [G] c:\program files\hp\dvdplay\kernel\movie\claud.ax [PX5: 67BC9EC500FA2A06E01A0FF6F1BB1700C2BB45C7] [G] c:\windows\system32\wmp.dll [PX5: B63FD29E001D0B2054CFA57C06663800AA48B90C] [G] c:\program files\hp\shared files\claud.ax [PX5: 80AD85D5004B1EA6F0110F634DDC2F00E79E7205] [G] c:\windows\system32\inetcomm.dll [PX5: FEF9AB4F00C705EE6E110AC1B48C3300FDA9F5B9] [G] c:\program files\pinnacle\shared files\filter\pclempegbox.ax [PX5: 846655BC00A0A2FA10F3058DE9804000A8ECD0BE] [G] c:\program files\common files\business objects\3.0\bin\exportmodeller.dll [PX5: 58DFAB000085D493D0890A4F034725003AFD0731] [G] c:\program files\common files\hp\memories disc\2.0\hpoddoh.dll [PX5: CD7BE512003B8F9EC0F302FE07065D00D3A2CF0E] [G] c:\program files\yahoo!\common\yinsthelper.dll [PX5: F7D9CBC128B2791C320503DAF8207500A567711B] [G] c:\program files\pinnacle\studio 9\programs\knobcontrol.ocx [PX5: F8D31AD20074BCD8A0B705D8C83A4B0064D46FD7] [G] c:\program files\common files\muvee technologies\030625\mpeffects.dll [PX5: D42959BE5A6F93CCF042064DA97FAD0031086C73] [G] c:\windows\system32\wmpdxm.dll [PX5: C7AF661900EFA4BCCE59044DA6A1C900BA92F3CA] [G] c:\windows\system32\els.dll [PX5: 4C5DCFF200C4593CCC98025648E0390099856F89] [G] c:\windows\system32\safrdm.dll [PX5: 7FB08AD0004E005274C000F323D1940071BD01CB] [G] c:\program files\pinnacle\shared files\filter\dvc150muxer.ax [PX5: 0A4F6724005F294CD0100148424EBD003F23A94B] [G] c:\windows\system32\imagxpr7.dll [PX5: 587908A4A04F1F6344A807DE0A9D3A008EE39FA0] [G] c:\windows\system32\qedit.dll [PX5: 95232BA100DE05F3940C08F339067E007FDC39F1] [G] c:\program files\roxio\audiocodeccommon 10\dsftheoradecoder.dll [PX5: F18C3A2EF0F400CD2D8901775A7D5F00FB7A3979] [G] c:\program files\common files\sonic shared\sonicmc02\sonic7m2vd.ax [PX5: 3F4AD9B2F015CA93D4B316ED7939C000C57545F4] [G] c:\windows\system32\msdxm.ocx [PX5: F6C636AC1AE4AF9DE2910C9113D660005FAF8860] [G] c:\program files\roxio\videocore 10\roxvideo.ax [PX5: DAA11E2EF0E31430C9D60AA5EDBCC1007983B037] [G] c:\windows\system32\wmvadvd.dll [PX5: 7098C2C4001AB33D103200200DAF4A00B79BCD14] [G] c:\program files\nova development\shared plug-ins\video\sftrans1.dll [PX5: 3108CBA13CEEEA6AC04713D49620D100898AEEBC] [G] c:\windows\system32\ogacheckcontrol.dll [PX5: 0CAE6D3A80D9E43E512D0A2E86D5DB00D766CF10] [G] c:\program files\ahead\nerovision\nevideofxw.dll [PX5: FBC01C7100C2407A20CF0351263FFF00C741B2F9] [G] c:\program files\common files\business objects\3.0\bin\parameterdesigner.dll [PX5: 20F95A2A0092BF1ECC2408BBACB4B1009AA36A1A] [G] c:\windows\microsoft.net\framework\v1.1.4322\mscormmc.dll [PX5: B6FE43C400F17A34002A02E62768D200EC50F2B2] [G] c:\program files\roxio\videocore 10\vcgtemplatemngr.dll [PX5: EFEBF5FAF0023C33596003AFABB5F8002943B74B] [G] c:\windows\downloaded program files\ieawsdc.dll [PX5: 448D6DBA6002A3A0AF81024397669C004A7186B2] [G] c:\program files\rhapsody\cddbrealcontrol.dll [PX5: 53B76AA700F5D9DF10DB05E577BC4200BA34511E] [G] c:\program files\quicktime\qtplugin.ocx [PX5: 9A394AEC300F03B4E520085598B64200073D55F2] [G] c:\windows\system32\oleacc.dll [PX5: FAA4AC3F0002ADDD7E28028782D31F00A80D6E36] [G] c:\program files\common files\roxio shared\dllshared\apm.dll [PX5: BD75B29CF0312C74AB160095A40DC600E81C87F3] [G] c:\program files\common files\microsoft shared\mspaper\mspcore.dll [PX5: A529460610354CB3919C07AB3715FA00B97D7B0D] [G] c:\program files\common files\sonic shared\sonic central\engine\pxwrap.dll [PX5: 5C9D3DC00014BD89006209283A7EAA00B1F81B5C] [G] c:\program files\common files\microsoft shared\mspaper\mspfilt.dll [PX5: 38EF7CD3103A9DFB71A3060CBB7C2B002FDE773A] [G] c:\program files\roxio\audiocodeccommon 10\dsfvorbisdecoder.dll [PX5: 0E400E38F067EABB23750153E39C6F00B5D10973] [G] c:\program files\nova development\shared plug-ins\video\vidpcore.dll [PX5: 877197AE3CCD01B750FC170A39D0AB0017C80EBB] [G] c:\program files\hp\digital imaging\bin\hpodev08.dll [PX5: 084177E40012F61820A6016B47F50000F3721D43] [G] c:\windows\system32\compatui.dll [PX5: 6C73AED800E3B449DCA803131155FA004ADE1C2B] [G] c:\program files\common files\business objects\3.0\bin\rptdefmodel.dll [PX5: 7B20E9EA00425B6AA8611E39B623F00099956178] [G] c:\windows\system32\capicom.dll [PX5: ED943A1560091047CD37070789F4A8000937963A] [G] c:\program files\common files\sonic shared\sonic central\launchmydvd\launchmydvd.dll [PX5: 90FD6DFD0020648600360251E7ED390051537195] [G] c:\windows\system32\msjtes40.dll [PX5: A7A8BD891D035ACFB0920377F9430B002CDC4B17] [G] c:\windows\system32\csseqchk.dll [PX5: 7B33E83B0076851F20130187E283CA008FF91C27] [G] c:\program files\pinnacle\shared files\filter\dvc120\usbdvr2src.ax [PX5: 5CBDB68600A8619100FF02FADF22B20043E16E8F] [G] c:\program files\common files\business objects\3.0\bin\requestmodel.dll [PX5: 68F9607B00BCAE444C1509CE124C6500B5588E4B] [G] c:\program files\pinnacle\shared files\filter\pclecaptureavdv2.dll [PX5: 45B2F0A7002A93E8805105E5D5F10400B2C168A7] [G] c:\program files\common files\roxio shared\10.0\sharedcom\onlinesharewizard.dll [PX5: 7FF5B2FEF0047A75C9AA031AD4871600D745D06E] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\apsadminhelper8.dll [PX5: B8F1741E00D11DA470EA0EC694029800719F5042] [G] c:\windows\system32\wbem\wmiprov.dll [PX5: E21F127B004FC9BB365902F8052794006A0B2F78] [G] c:\program files\pinnacle\shared files\filter\dwvarispeed.ax [PX5: 5D3358D600A5B2C290850116A36A1E00C2697007] [G] c:\program files\roxio\photosuite 10\ppslens.dll [PX5: E0C89D97F0D2695F197203F722F51B0089DBC09E] [G] c:\program files\microsoft sql server\80\com\ssrmax.dll [PX5: EFFEA3E0B8E8A9369C8F0065137D1B008F92BEBC] [G] c:\program files\microsoft sql server\80\com\rdistcom.dll [PX5: 4544486E482AF310425C06D16533D900E1986F35] [G] c:\program files\microsoft sql server\80\com\ssrdown.dll [PX5: 58993640B82CB2168C4B003FE1DEE600EA9D89CC] [G] c:\windows\system32\cic.dll [PX5: 8269010C00D9C0B0AC94018F1D1A8B00674D4973] [G] c:\program files\interactual\common\bin\iaprovider.dll [PX5: F33E4D8018CC82F2694901DEA8872900A6A826AB] [G] c:\program files\microsoft sql server\80\com\snapshot.exe [PX5: 03ED1F8E48DE2DBBD27A0021A8661B00BD63C793] [G] c:\windows\system32\msxml3.dll [PX5: 6429B03400C422C2DCBA1007F79CF300CD52DDF7] [G] c:\program files\microsoft sql server\80\com\replmerg.exe [PX5: E0E1838D48C792165235022BE36386006EA459FF] [G] c:\program files\microsoft sql server\80\com\replerrx.dll [PX5: F3E63431A80639876CA701A0F27F6D000E5BE8AC] [G] c:\program files\microsoft office\office10\mstordb.exe [PX5: 8CAEC15DA0717659E58F0910BD5BDD0010E62893] [GP] c:\windows\system32\avcdx.ax [PX5: 6FE860D00098A01CE4C001800A80A9003CA5E3A0] [G] c:\program files\microsoft sql server\80\com\ssravg.dll [PX5: 3515365EB8DDA689AC2E0032DFC11900C1E3B2C4] [G] c:\program files\nova development\shared plug-ins\audio\sfxpfx2.dll [PX5: F2962BB03CAEC790F0D1063888D94E0030945A36] [G] c:\program files\hp\dvdplay\kernel\avsettings\clavsetting.dll [PX5: 18D67D2760C9D53DE023012A6B2C890017D396FB] [G] c:\program files\microsoft sql server\80\com\ssrup.dll [PX5: 13FDA254A8C8068D8C4800A6C51656004BC9F5FB] [G] c:\program files\common files\muvee technologies\030625\s00056_detective.dll [PX5: E48D4D710031DA61E0EE07095A61EC00B1F2E470] [G] c:\windows\system32\ipsmsnap.dll [PX5: 982DD82F00A15E79DC0C05B702C0E40089148C7A] [G] c:\program files\roxio\videoui 10\rhanalysisservices.dll [PX5: B2A0944BF0EF7FC0594B08AFFBF06B00BB60FCFC] [G] c:\windows\system32\comctl32.ocx [PX5: B338A671C024B20F48A80970D3818A00AFB0346E] [G] c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll [PX5: 43FC1F718034B0CAF2E7007A2CAFD0009BF22C42] [G] c:\windows\ehome\ehchsime.dll [PX5: 2A2C110600035457E807144FBC42C6009481D037] [G] c:\windows\system32\mswebdvd.dll [PX5: 66C1602F009D36C51EB2035555669A00F7564DDB] [G] c:\program files\ahead\nero wave editor\ledmeter.ocx [PX5: 362FFFAA544E65EA404C06D37D0841008DFB694E] [G] c:\program files\common files\microsoft shared\msinfo\offprv10.dll [PX5: D69359B1003E305C605C002DDDE82A00B0BEF62A] [G] c:\program files\microsoft sql server\80\com\mergetxt.dll [PX5: 1259E26BA047FE1D9C7A0057DAA030009F8FE103] [G] c:\program files\pinnacle\shared files\filter\pclemp3encoder.ax [PX5: 066C3B1E008710BEF01A0063AA883F00A9B9BAD1] [G] c:\program files\common files\microsoft shared\speech\sapi.dll [PX5: BBEA0DBA00958DCA507B0B8D25011600ECE4A84A] [G] c:\program files\common files\system\ole db\msdmeng.dll [PX5: 02A1A9CF4D1422066031067EC9952A0063F4EFEA] [G] c:\windows\system32\msconf.dll [PX5: 307D157A000B37A2104101807FAC5B00990C26FD] [G] c:\program files\common files\microsoft shared\smart tag\fstock.dll [PX5: FE87AD4DA0CFF546259A03150EB5FB006348D55E] [G] c:\windows\system32\wshom.ocx [PX5: 964FE94F005D967180910184EA27BB006FADF1A7] [G] c:\program files\updates from hp\9972322\program\bwcmndr-9972322.dll [PX5: 3625A3BA27C05E80B0E8002DDDE82A00C91E9EBE] [G] c:\program files\common files\microsoft shared\shoebox\sbox7.dll [PX5: 66C58A2900E010F7A00609C337823F0062E27E98] [G] c:\program files\microsoft sql server\80\com\ssrpub.dll [PX5: 18A39689B8D0F0E28C760036B6D90D00DA4BBDBE] [G] c:\windows\system32\scrobj.dll [PX5: D72645DA00491C78704B02ABA2B960007B9E3F5D] [G] c:\program files\microsoft sql server\80\com\spresolv.dll [PX5: 9AF68EFEC05FBA59EC530045841DE70037FE5F6F] [G] c:\windows\system32\cewmdm.dll [PX5: 58A2C2320094A43C80F9039156C18C0099744280] [G] c:\program files\microsoft sql server\80\com\distrib.exe [PX5: 0B34163648E37198D2B30062A47E11004983AA72] [G] c:\program files\microsoft sql server\80\com\replsync.dll [PX5: 623B6CA6487801B272B901628DC0E800DF9D23F1] [G] c:\program files\common files\hp\memories disc\2.0\hpodserv.exe [PX5: E1FFEA4A008FC2AF804101330EBDAF00E4806C1C] [G] c:\program files\itunes\itunesoutlookaddin.dll [PX5: D87EB24D003014BB8EF703572A8E2500C46AA3A7] [G] c:\windows\system32\cddbui.dll [PX5: E01A2FD000B23A74B00E0BCCFCEFB0007D965401] [G] c:\program files\microsoft sql server\80\com\replsub.dll [PX5: FB0FA98A4414A9030268042CCEE5E800A823AEF2] [G] c:\program files\microsoft sql server\80\com\sqlmergx.dll [PX5: 0E73E0E0A01CEBF56CE902DD44AF3700B2B30B86] [G] c:\program files\microsoft sql server\80\com\sqldistx.dll [PX5: D280B117B0EBA4306C8A0221C6DDC900AC54B686] [G] c:\program files\hp\digital imaging\bin\hpqmif08.dll [PX5: 69004BE40090020EA06E03B6462C07005FF88DFB] [G] c:\program files\netmeeting\rrcm.dll [PX5: 847871A0001C0FA9F0C900A90A4008009EFC23A5] [G] c:\program files\common files\roxio shared\10.0\sharedcom\apsplugindialogs.dll [PX5: A69CAAC9F0538CB0F92E0F8AFD943A0069B5E4B8] [G] c:\program files\netmeeting\confmrsl.dll [PX5: 4923B0EE00364E25B0E4003672A47800F128860A] [G] c:\program files\common files\microsoft shared\msinfo\msioff10.ocx [PX5: 594282EE0058D0828094069985DDC900E72AE999] [G] c:\program files\common files\hewlett-packard\scanjet\hpgscnsv.dll [PX5: 71F63514003ED97C707901945E875C00DFCBC009] [G] c:\program files\netmeeting\nmcom.dll [PX5: E7FC9E6700F50A2F3077013341CE400020D8A272] [G] c:\program files\microsoft sql server\80\com\ssradd.dll [PX5: EFFF42ADA8B3F45DACDF002F0D10B600F4E9F672] [G] c:\program files\netmeeting\conf.exe [PX5: BE280AF0002953B7C0A20FB57B3457000FE056EB] [G] c:\program files\common files\roxio shared\10.0\sharedcom\roxshellviewbrowser.dll [PX5: F7214AE2F013AB4D19EF0ABE5B849A00B71A99E0] [G] c:\windows\system32\portabledevicetypes.dll [PX5: 79585FF4007031758CF802904E46EE00DF2F75D4] [G] c:\program files\common files\business objects\3.0\bin\reportrenderer.dll [PX5: 05BBDD740061E26C5651120A45B16F0008732E80] [G] c:\program files\itunes\itunesadmin.dll [PX5: A2876B9928B3F086A78F01D91BC32900D4034468] [G] c:\program files\netmeeting\nac.dll [PX5: 07FC2DCC00A0D5DE600F03D9037315009CE6364C] [GP] c:\windows\system32\diracsplitter.ax [PX5: 4D661B3E0067F116BC96023E684B8600400FEE4F] [G] c:\program files\common files\business objects\3.0\bin\craxdrt.dll [PX5: 0C60C423005221424CF07DBC8DAF5F0032999DFD] [G] c:\program files\outlook express\msoe.dll [PX5: 898CB1CA00AE65ED10B214063809BE0013E2F0C1] [G] c:\program files\microsoft sql server\80\com\ssrmin.dll [PX5: 49AAD0E4B8B1610D9CEA003859D8C5002989D532] [G] c:\program files\pinnacle\shared files\filter\dvdsamplesink.ax [PX5: 8E670316530E1372C0E00184BA212E00E8855F21] [G] c:\program files\roxio\videoui 10\vuidvdprojectmmplugin.dll [PX5: DB74BE61F09F4C77B9D203FF8CAE0B00DDF9A11F] [G] c:\windows\system32\logagent.exe [PX5: 311C7A66006524C68A8601E4B40C09002DB292B9] [G] c:\program files\itunes\cddbcontrolapple.dll [PX5: 81F52D36001E465BB06F066A25A6B500DD825E4D] [G] c:\program files\common files\system\ole db\msdaps.dll [PX5: DB148B95002EC3EC2000035CC17507001AB8FEA8] [G] c:\program files\common files\roxio shared\10.0\sharedcom\wpdprotocolhandler.dll [PX5: FD9B24D9F03A5AAF197003F90CA5F90043E857F1] [G] c:\windows\system32\dxtrans.dll [PX5: 5F6C1FCB00D07F6646AE033314E02C00DBB4AB3E] [G] c:\program files\google\google desktop search\googledesktopapi2.dll [PX5: 72D0828F006D2E247062083D94A652003230A3E0] [G] c:\windows\system32\wmpencen.dll [PX5: 3CD07242008082D95A9419300C41B100D82EA511] [G] c:\program files\common files\ahead\lib\nerocbui.dll [PX5: FE4B7B7400C29A6BC0EA10ED2BD6840003CA2BEA] [GP] c:\windows\system32\matroskadx.ax [PX5: F40FE85A00EC7A81966C02270D3C3C00EE1AD6DF] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsimagedeviceprotocolhandler.dll [PX5: 9AE15E6FF08CD7C79D580060AFE32200738BF8D6] [G] c:\program files\hp\digital imaging\bin\hpqdsftr.ax [PX5: 5CBE2E8E001E3F0EE0B0014542AAD4005603C813] [G] c:\windows\system32\sysmon.ocx [PX5: 168AB2A0003BD6D9569D03749F71E30058FE55A4] [G] c:\program files\symantec\liveupdate\pslucomserver_3_2.dll [PX5: BF9798B1786931CE262A01CE3AC27B00B695B5DC] [G] c:\program files\common files\business objects\3.0\crystalreportviewers11\activexcontrols\swebrs.dll [PX5: DE2A588BA0B25D2D4289039D03D34A0029381089] [G] c:\windows\system32\winfxdocobj.exe [PX5: 6D28E5110049742E26AE03B5F40E5B00008E2C4D] [G] c:\program files\common files\microsoft shared\web folders\pkmaxctl.dll [PX5: 3B8596070001A49F10AE01B214AB3F00CCCCD645] [G] c:\program files\common files\muvee technologies\030625\mvappcore.dll [PX5: 338ED73555AFDD4C7058034B958C0600ABBACC6E] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\enterpriseframework.dll [PX5: 707B8D03003BB1FC90D22C186D3C640043F65BEB] [G] c:\program files\piolet\ebcrypt.dll [PX5: 98BED7C100C8CE9A507D047771054D00595E702E] [G] c:\program files\microsoft sql server\80\tools\binn\custtask.dll [PX5: 10DF314F4064D3CBD20F04DD2FC85E00E8428B26] [G] c:\program files\common files\adobe\shell\psicon.dll [PX5: CF3292F00008E354A0E7013C7AC90C00303BA982] [G] c:\windows\system32\portabledeviceapi.dll [PX5: 413BE4C6002C530256CD0467F46CFA0079ACDAE6] [G] c:\windows\system32\scrrun.dll [PX5: 23272EEC0040C051509F0228F196220074B8A89B] [G] c:\program files\common files\system\ole db\sqloledb.dll [PX5: CEE1296D00ADB45B10BF08AAAA74E00045174126] [G] c:\program files\common files\business objects\3.0\bin\crqe.dll [PX5: FB29E00B008FC6B3400B1D52B941DB0013E2FBAE] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxanalogcapture10.dll [PX5: E8AD0C63F05D2FCCF99F02A864218800218FA690] [G] c:\program files\common files\microsoft shared\information retrieval\itircl52.dll [PX5: E3CCA9590DFE44461B54077736D3E400AE7B41FE] [G] c:\program files\microsoft works\wkgdcach.exe [PX5: 3D4A3B9800C057F310190158AE5A0B00239C5A45] [G] c:\program files\common files\sonic shared\sonic central\audio\audioplugin.dll [PX5: 8295468F0059701580E20510664442003D7F4F56] [G] c:\program files\common files\roxio shared\dllshared\sonichttpclient10.dll [PX5: 493A9F8AF00E6CCBA90B0D80AE30C000B7637154] [G] c:\program files\common files\roxio shared\9.0\divx\divxmux.ax [PX5: 9D4B8F321056CFF9E62F026490581E00410B84D1] [G] c:\program files\pinnacle\shared files\filter\mpadecoder.ax [PX5: E1646D340006077D30C001D6FA070E00BD92D6F0] [G] c:\program files\common files\adobe\shell\aiicon.dll [PX5: 03EA327C00F19FC1D0280170BAF5820033D43A70] [G] c:\program files\real\realplayer\rdsf3260.dll [PX5: 1D7BB2B84882BD5D76580186CD6CDA00955ABC93] [G] c:\windows\system32\adsnds.dll [PX5: 1BF866A300087D12789102E786099300489F19E1] [G] c:\program files\common files\microsoft shared\web folders\vaiddmgr.dll [PX5: 413BE94200A17C4CF04F04AA7B855200CAF8F4F5] [G] c:\program files\common files\sonic shared\sonic central\data\dataplugin.dll [PX5: 22A66AB700CF34A600080730E468A8004C4B348F] [G] c:\program files\msn\msnia\msniasvc.exe [PX5: 7DB4E2EC0030D12BB21B23E6C20863005151467E] [G] c:\program files\common files\business objects\3.0\bin\sacommoncontrols.dll [PX5: C59D53E400F0A6E7587C0C254DCC0700994F9590] [G] c:\program files\nova development\shared plug-ins\file formats\novampeg\ligosnov.dll [PX5: F09C97593E87273BE0E70AA3250AC200991BF7E1] [G] c:\program files\interactual\interactual player\mfc42.dll [PX5: 4E8A32693726FF3130BD0F541CF28000887518F8] [G] c:\windows\system32\hcwprxa2.ax [PX5: 84B06666002900A530F004693CBBEB008C068D8C] [G] c:\program files\pinnacle\shared files\filter\surroundencode.ax [PX5: CC9322D20013AE0C00130135ED7CF900E5951371] [G] c:\program files\common files\roxio shared\10.0\sharedcom\audiocapture10.dll [PX5: 12F06882F0F2C9DE7958025F9824FE00E9C89158] [G] c:\program files\hp\common\hpediag.dll [PX5: 1A7449CC385CB4546A3405F62DC23F00769A2158] [G] c:\windows\system32\adsnw.dll [PX5: F6E93282008CB9A1ACF901F9EA9B2A00ED5C9C04] [G] c:\windows\system32\qdvd.dll [PX5: 003E2A55008B9FC2E0C6058FB25F3A004168816B] [G] c:\program files\windows media player\wmpband.dll [PX5: F6834A59007867DC785F013351A56900E322CB32] [G] c:\program files\outlook express\oeimport.dll [PX5: 22B355C90019874098720117C002DA002D1ADC6F] [G] c:\program files\common files\speechengines\microsoft\sr\spsrx.dll [PX5: F784509500008CA2800C11E979FF710076D44B1D] [G] c:\program files\piolet\nctaudiofile.dll [PX5: 821091FF00F7668900F21AEDF4622C001B498402] [G] c:\windows\system32\msscript.ocx [PX5: E74FC11600A01A97902F01AB8D459B00193DCDD6] [G] c:\windows\system32\wiascr.dll [PX5: 0B4F31AC00DEB8C428D001354D8CE000A3A0214E] [G] c:\program files\roxio\videocore 10\vcgrenderingservices.dll [PX5: E34A6D4CF01F395929AA0990D8719A00FBDCB294] [G] c:\program files\pinnacle\shared files\filter\pclecapturedv.dll [PX5: 7EED5D050004A058B0450504A1A574008614D3F5] [G] c:\windows\system32\msfeeds.dll [PX5: 4344D60000C0946F025A070812AA270071CECE07] [G] c:\windows\system32\catsrvut.dll [PX5: A88B6EBA00D4077C8A1709DF0F11FA0048E3B1BD] [G] c:\program files\common files\muvee technologies\030625\mvbasictexts.dll [PX5: 18BDB22049EE2E6D90F906DC1D8DD700B92FE8DC] [G] c:\program files\common files\roxio shared\10.0\sharedcom\albumcommonplugins.dll [PX5: B677961FF07EA7A7B94502D958389B009508B827] [G] c:\program files\ahead\wmpburn\neroburnplugin.dll [PX5: 9D0C9BE100F3C5DF101305342C49C200CB2DCC90] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdsmp3encoder.ax [PX5: 11140658F03192A22948012C91021500345068B1] [G] c:\program files\interactual\interactual player\bin\iaiexplore.dll [PX5: C455C6D738BBCA6F0B6005F4A09EAD00673A58D9] [G] c:\windows\system32\ixsso.dll [PX5: 86626F9800E158B5D488004D78C06800D7521346] [G] c:\program files\pinnacle\shared files\filter\pclecaptureproteus.dll [PX5: E6FDF9C700F9911140B605F7ADF8D20086BAEA11] [G] c:\windows\system32\qcap.dll [PX5: 2B14994E003018B7F09C0248452629004E45D9F6] [G] c:\program files\pinnacle\shared files\filter\esink.ax [PX5: E2F0F24D0032791AA03B00F95EBDB100222F72D9] [G] c:\program files\pinnacle\shared files\filter\atlplugin.dll [PX5: 59CF56DB55D89B9890980DB09D9CC5005C199258] [G] c:\program files\common files\business objects\3.0\bin\datadefmodel.dll [PX5: 2F2F1488002E9C279E9E1942256E2C00B81E306F] [G] c:\program files\common files\microsoft shared\information retrieval\msitss.dll [PX5: 9EEDD00000946C716042030F5CC29C0053E7D566] [G] c:\program files\roxio\videocore 10\cpsvideoobjects.dll [PX5: 71003418F085863DF9380687D72C450052D79354] [G] c:\program files\hp\digital imaging\bin\map_wrap.ocx [PX5: 8384D4F300552F510093017E36EF5A008E685C3D] [G] c:\program files\roxio\photosuite 10\ppsshapecollection.dll [PX5: 253E7EABF057348E09C205338C410A007B3BC8A2] [G] c:\program files\windows media player\mpvis.dll [PX5: 798ADDA000840797B8AE03E15F5EA400262FD4EC] [G] c:\program files\roxio\digital home 10\roxiolocalserver.dll [PX5: 52308D3EF0BC85AB89D10267E4766F00487864F1] [G] c:\program files\ahead\nerovision\gcfilter.ax [PX5: 4C94EA7300337E4C2079066E8C251200D8231870] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpssaveoptions.dll [PX5: 5B7F2D54F049947829C805D028DF3B000145744D] [G] c:\program files\microsoft works\wkwpac.dll [PX5: C6E6E74B00A91C1AF0C111E81B454F0098107469] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsextendedcontrols.dll [PX5: B25BF4E7F09BE47CA9E20DE4AEC6AD00AACEC4F7] [G] c:\program files\roxio\videoui 10\plugnburnwizard.dll [PX5: 837F3A85F04FA54F993C10A330BE2800B09C311E] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsformatloaderpng.dll [PX5: CE7F2E59F09D8400096702403DB518008BB4B82A] [G] c:\windows\system32\dmintf.dll [PX5: 2A04944F009A9ED948E5003B3C2E07009ABB901F] [G] c:\windows\system32\dpvoice.dll [PX5: 57FD4912000CBD053E840330C74AEE00503199F7] [G] c:\program files\common files\muvee technologies\030625\mvtimeline.dll [PX5: 631B0C445528607A3027034925C9EB000A78AF67] [G] c:\windows\system32\wmdmlog.dll [PX5: 3924178D0089FFF284C100E235F520000AD1520B] [G] c:\program files\microsoft sql server\80\tools\binn\dtsffile.dll [PX5: 80BF5308409E01BDD21D0185514578004E93DB87] [G] c:\program files\roxio\photosuite 10\ppsimageobject.dll [PX5: 7126E506F0B46820F9E1013803FEAC008102851F] [G] c:\program files\yahoo!\companion\installs\cpn\pubmod.dll [PX5: 33328C053023E0E6517A030A3B11AA0061EB3114] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsformatloadertiff.dll [PX5: 7F0BD507F0B6A59C9937015F3BB8BD009D74DB17] [G] c:\program files\hp\digital imaging\bin\hpqtra08.exe [PX5: 3D53E87900787BC0F0BB03E1D019C900A501D627] [G] c:\program files\agentoffice\vendorcontrol.dll [PX5: C8CC5FF90053E28A7053047CD987260046459690] [G] c:\windows\system32\wstrenderer.ax [PX5: 206A7AE200959990AC0C03D6E6F5C3003816E9FD] [G] c:\program files\hp\digital imaging\bin\hpqscnvw.exe [PX5: 2BD8535D00A9BE24D0A3024E953905006AAC5E60] [G] c:\windows\system32\wuapi.dll [PX5: CDD35EBA58DB0AE863FB08B33BD0060031EAFA5A] [G] c:\program files\common files\hp\memories disc\2.0\hpodxmlutil.dll [PX5: 2867E32200740D68409D03FE97DDC500CA687595] [G] c:\program files\hp\digital imaging\bin\hpodeb08.dll [PX5: 6295DE58002DC32E20B90399468DB3006E9C7D2A] [G] c:\windows\system32\xenroll.dll [PX5: 2CBADB2D78AD36EBA85C02778CBE9B009E807952] [G] c:\windows\system32\confmsp.dll [PX5: 7429CF8C00BA876C466A05E964D76800D49B3141] [G] c:\windows\system32\scardssp.dll [PX5: E5F737FA00874212D03201A47EF4BD005AB53412] [G] c:\program files\roxio\videocore 10\errorstack.dll [PX5: 6538FFBFF07E8A2FAB1D005FE07E72009D706C1D] [G] c:\windows\system32\wstpager.ax [PX5: 2FCF314300945F649040023E2EF5D5003E14C999] [G] c:\windows\system32\h323msp.dll [PX5: D46A3F030050523D62DB0913E6FF0500D4F9F809] [GP] c:\program files\common files\ahead\dsfilter\neaudio.ax [PX5: EF6931670024D24E9EF40606976DF800F3BE68B5] [G] c:\program files\common files\roxio shared\10.0\roxio central36\audio\audioplugin.dll [PX5: 7CB68E2BF0420C33092B0683B0E085000D3DAE5B] [G] c:\program files\common files\business objects\3.0\bin\commonobjmodel.dll [PX5: EB0BE04900C654613062049788BBDC0050EA76BC] [G] c:\program files\pinnacle\shared files\filter\axmpeg_av.ax [PX5: 9CCF21EA00ED0E1F404B012846443E005AFD3D46] [G] c:\windows\system32\dsdmo.dll [PX5: 99E997F700D26086C6E302ECFF49A900E3ECF270] [G] c:\program files\ahead\nerovision\nvdv.dll [PX5: 9567FE4900D46E7A50A50116676AA400FB495DC4] [G] c:\program files\microsoft sql server\80\tools\binn\dtspump.dll [PX5: AD9ACAA64034FE66129A083E2B208A00ADE02BD0] [G] c:\program files\aoa audio extractor\skincrafter.dll [PX5: FACB3BFF0097D181B08706B673E7890087242B55] [G] c:\program files\microsoft sql server\80\tools\binn\sqldmo.dll [PX5: 3C1A7EF740D492F7528A40A9D84FD00037996C86] [G] c:\windows\ime\sptip.dll [PX5: 0E2B24C800B5673DD465031A8BBD2200F2B456AF] [G] c:\program files\microsoft office\office10\nslite.dll [PX5: E93B249D5037C627131002A37039EF00BC419D63] [G] c:\program files\ahead\nerovision\gchw.dll [PX5: 50C2AEBD00777561407906B2E5E8BA002DF09CE7] [G] c:\windows\system32\mycomput.dll [PX5: AD56BA03005FAA986015012A75E0D4000CD93E86] [G] c:\program files\common files\hp\instantshare\hpisdownsampler.dll [PX5: 21D854C80084CC21A0A40276441BA9005466F41C] [G] c:\program files\common files\microsoft shared\photoed\photoed.exe [PX5: C0345D8400C72723104D0CE8A85BC000FAF01FF6] [G] c:\windows\system32\fxscomex.dll [PX5: F26A336D00F5575A5A3C04AE6A965900FFD19258] [G] c:\windows\system32\rmoc3260.dll [PX5: A5C4537458CA840CD644022BBD8926003EC27B2A] [G] c:\program files\roxio\audiocodeccommon 10\dsftheoraencoder.dll [PX5: A811710FF032E5A6851C01D6E8385F0056F10E13] [G] c:\windows\system32\wups.dll [PX5: 2F104E2558117BE383A6004E553EDB00C5D02FFD] [G] c:\windows\system32\cmprops.dll [PX5: A3040B8400A6E303D4B4020ED74381007EA7888A] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsfileloader.dll [PX5: 591FC955F05ED88F497903C6605A94004A41F055] [G] c:\program files\common files\system\ole db\msxactps.dll [PX5: 95C81E36002DB80B606C002DDDE82A00DA540014] [G] c:\program files\microsoft sql server\80\tools\binn\dtspkg.dll [PX5: 8F729A3C40CA49B5122B1D00FE8E5E00AE2CF924] [G] c:\program files\hp\digital imaging\bin\hpqcxm08.dll [PX5: E2CCE7D300C99D2140CE0262BCE8110054284C3F] [G] c:\program files\pinnacle\shared files\filter\pcle_ovr.ax [PX5: 33E0EA1D0011616276C201FA88532E00B4FF084B] [G] c:\windows\system32\gpedit.dll [PX5: 4183E053001132B7A61F080E4F581900691BFC3D] [G] c:\program files\roxio\videocore 10\sonicmcdsdv.ax [PX5: 2298D99EF032DF92D16000C6482EA700FDAA2461] [G] c:\windows\ehome\cbvafilter.dll [PX5: 79B57976002FE04AAC750B3D2F42340024087FB6] [G] c:\program files\interactual\common\video\iamedia.dll [PX5: 074D9BC918DB03BFFF790208F6C23000ED5D2E8F] [G] c:\program files\yahoo!\companion\installs\cpn\ypubc.dll [PX5: 33B3AB9300B40EF4FEA402DB112CCA005E70BB7F] [G] c:\program files\common files\system\ole db\msdaipp.dll [PX5: C77F75EC00DDD74D2092127BACFDBA0004F8DB4E] [G] c:\program files\common files\roxio shared\dllshared\soniclicensemanager10.dll [PX5: 73848A4EF049FBBD696706596DEC240095E4738D] [G] c:\program files\adobe\reader 8.0\reader\viewerps.dll [PX5: B0C52A9A80F62390429000B85505C60050C509AA] [G] c:\program files\common files\muvee technologies\030625\mvaxengine.dll [PX5: 943B839D5A4CDB3F00290D74F3D64B0079895EBA] [G] c:\program files\common files\ahead\dsfilter\nescenedetector.ax [PX5: EA250FB200AB6A2A200801899070820019BDDCDE] [G] c:\program files\microsoft sql server\80\com\repldts.dll [PX5: 935B380448E49A4282070176640E3600C5D5D8F9] [G] c:\windows\msagent\agentsr.dll [PX5: 19B4817B00C210EAAC9E002CA5B743008D9D203E] [G] c:\program files\common files\microsoft shared\vgx\vgx.dll [PX5: 0AF438760035D644B0DB0B528B5A22005FAB0C07] [G] c:\program files\common files\microsoft shared\ink\inkobj.dll [PX5: B2EE08533773945F90E8079E9DDC7700C7D51716] [G] c:\windows\system32\msoeacct.dll [PX5: FFBD15F600EAC378DC0E03795CCD7100BEF4BAB0] [G] c:\program files\roxio\videocore 10\rxpathsresolver.dll [PX5: B1543443F0EC0EA93950016F70B91700E18943DE] [G] c:\windows\system32\qdv.dll [PX5: 750302210074CD49421004330A842F008ADC3B65] [G] c:\program files\pinnacle\shared files\filter\pclecaptureamoeba.dll [PX5: 0478894A009BFF016071052508B958005C7DB888] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsfileprotocolhandler.dll [PX5: 3D5F5BBCF01BDF7BB9BD018B124467003EE8E54C] [G] c:\program files\microsoft sql server\80\com\replrec.dll [PX5: A4649208484448FAA2D00453B13F5B00C01F3B2E] [G] c:\windows\system32\oeminfo.dll [PX5: CD39176D001C2824285102EF57E865002CF9BA83] [G] c:\program files\pinnacle\shared files\recordingapi\pcledial.dll [PX5: 9AE8C95F001BA9DC90A50445FBD85B00C890481D] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsaboutdlg.dll [PX5: 8169637FF04B0A17E9D203372A9D1F00E1E6AFB5] [G] c:\windows\system32\diactfrm.dll [PX5: 7DBF4DEF0078ECB60447065A13A0070051F20271] [G] c:\program files\common files\roxio shared\dllshared\cddbplaylist2roxio.dll [PX5: 27FE6481F8BBAC32351908F8EB257A004D7B48BB] [G] c:\program files\common files\ahead\dsfilter\nendmux.ax [PX5: D4FEAEEF00C4C0CD5023056786EA310030A6AC75] [G] c:\program files\google\google earth\googleearth.exe [PX5: 6A988248004936FAA887CA566E327500A7D33C61] [G] c:\program files\pinnacle\shared files\filter\flowctrl.ax [PX5: 9EA1381C0064BF82D01300E23FB79300E0B8516F] [G] c:\windows\microsoft.net\framework\v1.0.3705\mscormmc.dll [PX5: 4AC2C1BD00DFC1FA525A014D867D1E00E32AD158] [G] c:\program files\ahead\nero wave editor\audiocontrols2.ocx [PX5: 19D5FEDF5730C1C680ED07C5BA11F40092C56D22] [G] c:\program files\nova development\shared plug-ins\video\sfpagepeel.dll [PX5: 8EA52FA23E6A0D8FA08809FE8CAF66008DDEA53B] [G] c:\program files\hp\dvdplay\kernel\video\clmedia.dll [PX5: 7A9F369700AA12C8E0B400E697487A005DE1C8FE] [G] c:\program files\common files\hp\memories disc\2.0\hpodai.dll [PX5: 7A15166F00CC8FF5605C024E3D2E6B0037938769] [G] c:\program files\symantec\liveupdate\productregcom_3_2.dll [PX5: 6A62362678544AA7C6DB0547E00F56009508A404] [G] c:\program files\common files\microsoft shared\web folders\secmgr.dll [PX5: 176DE365007694B3D04E02A196C5AC00B06C60A1] [GP] c:\program files\divx\divx plus directshow filters\daac.ax [PX5: B3DFC82500368819EE0500F6D82CA7006B5CF17A] [G] c:\windows\system32\appmgr.dll [PX5: AA726FC0008B84CB846304E02896E700FF0523D8] [G] c:\windows\system32\rdbios32.dll [PX5: C80EA1C800F84B8B02750C97E1938500D0A82361] [G] c:\program files\common files\roxio shared\10.0\roxio central36\engine\rcengine.dll [PX5: C67A541CF076929429720B1528804E00726DFD7C] [G] c:\program files\microsoft office\office10\aw.dll [PX5: E6A238B6A0B0DF0CF5640124F93C10001F9580EB] [G] c:\windows\system32\hpovst08.dll [PX5: 8E741A12005954A980C9039AAA5795004EF717A5] [G] c:\program files\roxio\photosuite 10\pseditview.dll [PX5: DDC6A9F0F062AE7A89D6044DC69DF5000A00471E] [G] c:\program files\roxio\video convert 10\menudshowsource10.ax [PX5: 5B0F8B4DF0CD85528978012F57A50200F0D5A0CE] [G] c:\program files\microsoft works\wkwzmrg.dll [PX5: 8DFE0CE0005BA4D750AD014B6C51BB005311C3FC] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdmrassist.dll [PX5: 4C4C14F0F0926E62892402C40535A7007C3F8186] [G] c:\windows\system32\catsrv.dll [PX5: C3D03030006294C272310367402771000A215A47] [G] c:\program files\common files\muvee technologies\030625\s00163_photo2.dll [PX5: E7040C6100889F8A901807B4ABD23800715D80E9] [G] c:\program files\hp\dvdplay\kernel\movie\claudiocd.ax [PX5: CDE5F6BE00937E73309101E0CD1F7E00B3E52FE4] [G] c:\program files\pinnacle\shared files\filter\float2pcm.ax [PX5: 794E895F00FC1133108A011A588427008A59AA75] [G] c:\program files\interactual\common\video\iamediamatics.dll [PX5: B0A777AF38CCA374110404CFD3ADF00083641650] [G] c:\program files\common files\roxio shared\dllshared\cddbcleanroxio.dll [PX5: 42CBB657F899C9FD55D202A69C2424002D150828] [G] c:\windows\system32\keyhelp.ocx [PX5: E9FDEBE8B065AABD3C9905C73010E300EE5251DC] [G] c:\windows\system32\fm20.dll [PX5: 6A51EC37107969A93B8511B6576B0D00B1873586] [G] c:\windows\system32\wbem\wbemdisp.dll [PX5: 266A453D009ECC78B8FF026DC53F22006B3E71C2] [G] c:\windows\system32\msdtcprx.dll [PX5: 39FDCF850035AB4782F706CE9495DD009A08DBF5] [G] c:\windows\ehome\ehcett.dll [PX5: 08D29AE80060604BA23F00031AE95600CE40A37F] [G] c:\windows\system32\icardie.dll [PX5: 9F3D2ABC0046E765F21E0013E672C400A0C41354] [G] c:\program files\microsoft works\wkwztmpl.dll [PX5: CC2D9FAA004D3231406201FA6EA771005D1703A4] [G] c:\windows\system32\hypertrm.dll [PX5: 483C713800BAB17A4CCE051C7390A6004B355355] [G] c:\program files\common files\business objects\3.0\bin\crlov.dll [PX5: 2FC2CAE400253D8A90D815A4EF30AD00E07FD046] [G] c:\hp\kbd\kbdcpl.dll [PX5: E13E93E900A8BF1D40A102C53A88AC00F8CDD12E] [G] c:\windows\system32\btpanui.dll [PX5: 5A273DB700647E33C6750036C481BC004B54BCD4] [G] c:\windows\system32\comaddin.dll [PX5: 91A36E5D0012362364DC003629597F0002FE39E5] [G] c:\windows\system32\swfgen.dll [PX5: EDC21B0000DFC67D70E40B17B14003002FE8AFB8] [G] c:\program files\hp\digital imaging\bin\hpaddressbk.dll [PX5: F89DAB2B489422AAC049003B8C561500362DE15B] [G] c:\windows\ime\softkbd.dll [PX5: 02FB45C80024B1E3FC870103074A6A00BD7564A9] [G] c:\windows\system32\dmscript.dll [PX5: E7E927F000CCD1A042FF01E8028BA70080F39A8F] [G] c:\program files\common files\business objects\3.0\crystalreportviewers11\activexcontrols\cselexpt.ocx [PX5: 8F21291DA877FE05A42E01C87F639600EA68CC7C] [G] c:\windows\system32\objsel.dll [PX5: 5F21715800D559D05C3904300C19BD00DF0AF5ED] [G] c:\windows\system32\legitcheckcontrol.dll [PX5: DE549A7F286DD0A1963216B3C28B1700507DA5E6] [G] c:\program files\common files\speechengines\microsoft\sr\spsreng.dll [PX5: 4340D6F00052623B00C007B1C67A1D0064176E70] [G] c:\program files\common files\hp\memories disc\2.0\hpodmmc.dll [PX5: 6DC325C300BF637F404B0739306CFD005BDF2402] [G] c:\program files\common files\business objects\3.0\bin\webreporting.dll [PX5: 8B2539D600B5C55D784219F7D866D400EE43090E] [G] c:\program files\interactual\common\video\iadirectshow.dll [PX5: 5B4DB81838E12F967B9506178E1877006207818D] [G] c:\program files\microsoft sql server\80\com\repldist.dll [PX5: 2C8CCD584801B10D12BC01874D84210028A74097] [G] c:\program files\interactual\interactual player\bin\iaclientservices.dll [PX5: BA1C405140DAABF2ADC205D8FCD7C90090396DF7] [G] c:\program files\common files\business objects\3.0\bin\crtslv.dll [PX5: 68E80A2B00902CEDCA8B0142CC1F5C0078950D1B] [G] c:\program files\pinnacle\shared files\filter\audioresampler.ax [PX5: 79BB0D4200F7DE4DE06D0037B51D5500CD177413] [G] c:\program files\pinnacle\shared files\filter\pclempeg4audenc.ax [PX5: 4634D44C00148C72E02301113081CD00F535F5E7] [G] c:\program files\common files\hp\memories disc\2.0\hpodmpv_md.dll [PX5: 64AC6BC600242825E0CE0483DDDDE60053276E7E] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\ms outlook connector\ilxolkcompanion.fil [PX5: B7DC396000382FBE3016033CA68CA1008266B376] [G] c:\program files\nova development\video explosion deluxe\videxpk.dll [PX5: F0B905393C224F1560DA1F266DF1260000BD8840] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\infostor.dll [PX5: AF881245003A7843106E3362401AFB002FF33491] [G] c:\program files\common files\microsoft shared\msorun\msorun.dll [PX5: E1638205A0571375F5920540F1701F00C5C1486E] [G] c:\windows\system32\wmpsrcwp.dll [PX5: 48871BD700EFAB171E2203028FBA5B003F773E47] [G] c:\program files\common files\microsoft shared\mspaper\mspscan.exe [PX5: C7A2DB051081AA4561D102464FF85800FB875DD2] [G] c:\program files\microsoft works\wkwcewab.dll [PX5: 14F7D311006CADC1407B0108FC12FB00119E35F8] [G] c:\program files\symantec\liveupdate\netdetectcontroller_3_2.dll [PX5: 60529BE77807BC58762F031C69AA1D00F9513023] [G] c:\windows\system32\mscomctl.ocx [PX5: 4C94DAAA103F07B681A910D86FF4A0002647D282] [G] c:\program files\click'n design 3d (v5)\uitoolx.ocx [PX5: FA6A9AC7006CC9D280BD0255193769009A90F9F8] [G] c:\program files\common files\microsoft shared\works shared\numfmt80.dll [PX5: 692F043300E912F0C00A0121AAB37100D7616996] [G] c:\windows\system32\avtapi.dll [PX5: C5D0FEC500163E317A1D036A06964900F45B21C5] [G] c:\windows\system32\wbem\dsprov.dll [PX5: BC4B608B00A7A2D1D69801B85B442A00E50A7AFF] [G] c:\program files\common files\muvee technologies\030625\mvtimelineinfo.dll [PX5: C809D71359213A1E90E2015E0CEE7800067E8A1F] [G] c:\windows\system32\dataclen.dll [PX5: 54AAA47400927ED0D44D009B9E20A9009105C51E] [G] c:\windows\system32\webvw.dll [PX5: C98EA4250070F0F6129E02304FB05E0092316EB9] [G] c:\program files\pinnacle\shared files\filter\dwvideoresampler.ax [PX5: 6546C3EF00D358A7A075005D72F7E0008346CD21] [G] c:\program files\common files\roxio shared\10.0\sharedcom\leresourceidgenerator.dll [PX5: E48A5A4EF0745F4669D1015C498B9F001A74CAA3] [G] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomadaptec.dll [PX5: 41F95A38F048398E89AE0B221D5E8D00AA259437] [G] c:\program files\interactual\common\bin\iacommonservices.dll [PX5: 2A049C2140EDC134AD6506C23F59F300C068F041] [G] c:\program files\microsoft office\office10\mcps.dll [PX5: 2EC70219A06FDE7C655301F6D959E700C7A246A6] [G] c:\program files\pinnacle\shared files\filter\framegrab.ax [PX5: 7DE6D1DB009110DEC0D700A04943A900AE8D5B89] [G] c:\windows\system32\wmnetmgr.dll [PX5: 01BADB8B008514AC50430E1D0D3AE600EC218845] [G] c:\windows\system32\adsldp.dll [PX5: 7735694E00DE1E64AEFF02206DB7A7000FA8A947] [G] c:\program files\pinnacle\shared files\filter\pclempeg4videnc.ax [PX5: 6F386C35005BBED7102C023217058800DB307700] [G] c:\windows\system32\ntmsmgr.dll [PX5: A704257500D82BA174DF070FCF5C13007F13874A] [G] c:\windows\system32\capesnpn.dll [PX5: 29F63DEE00FCFBA02EFF02BD684B0D00AB7F1C3C] [G] c:\program files\pinnacle\shared files\filter\wavtompa.ax [PX5: DE2C130900857301F0FD00DF8F8CC900E0E33820] [G] c:\hp\kbd\msikbdif.dll [PX5: 43DB11D1006D258F10C001DC23660100E62ED52B] [G] c:\program files\pinnacle\shared files\mprprov.dll [PX5: 2EC63516555F263C4006052558F22D00A8F28BFC] [G] c:\program files\common files\system\ado\msadomd.dll [PX5: 10FB4F98002304C6C0AA029026FCA100EF55FC16] [G] c:\windows\system32\wmdmps.dll [PX5: 6F96AB06004CDB19923B00F08B25BA002D92BA73] [G] c:\windows\system32\langwrbk.dll [PX5: 4A596E8E005456345E8B01A59889CB0051F6065D] [G] c:\program files\roxio\videocore 10\lvmasync.ax [PX5: A8729649F07B309689EF026194E674006854AC39] [G] c:\program files\microsoft office\office10\msusp.dll [PX5: 6EE6C9824A22827FB0AC0CAB3AB0710081B82337] [G] c:\windows\system32\wbem\wmipiprt.dll [PX5: 55809CC900C1AC78F47F007ED79C1600BADC7CCF] [G] c:\program files\microsoft office\office10\outlacct.dll [PX5: B95333A8A05655F285E9003724A6EB0082A9ABF1] [G] c:\windows\system32\mscomct2.ocx [PX5: 7E3F143F10A11DE11BA10AAEB0B2BD00D46543BD] [G] c:\windows\system32\dpvvox.dll [PX5: EAC4FEBB0084F413C84001C68870B800BA6013B6] [G] c:\windows\system32\dfrgui.dll [PX5: A5214F5700A13E61E40B010CB6C011000DA2D5DE] [GP] c:\windows\system32\rlogg.ax [PX5: 0D8C59BF002AEF4DDAC3025AB5396B00BCF82C73] [G] c:\program files\pinnacle\shared files\filter\spectrumdisplay.ocx [PX5: B02D72C700EA5B5C9092137D9FBD84006562DA23] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\plugins\auth\secwinad\secwinad.dll [PX5: EEF809F600FED75690A92C9B98CD1D00FC6B5105] [G] c:\program files\quicktime\qtsystem\exportcontrollerps.dll [PX5: 229147C900DDEB28922500A4445C6E002626114F] [G] c:\program files\corel\wordperfect 10\programs\pdfpublish100.dll [PX5: C0FC635450125303C0070003C0A87900276CE28B] [G] c:\program files\hp\digital imaging\bin\hpqutil.dll [PX5: C1AA048A0074E2CAF0DC02B13C7C6200C9F0CA56] [G] c:\windows\system32\tapi3.dll [PX5: 5F3B6FB2002B2E5C1AE60DF4E110A30012E69738] [G] c:\windows\system32\ctmday.ocx [PX5: 79D5875100A4F50498D8021EDC206400FB14070B] [G] c:\program files\hp\digital imaging\unload\hpqcamun.dll [PX5: 81B5DD7D00C4A6BA5096034068493F0096FFCEC8] [GP] c:\windows\system32\rlvorbisdec.ax [PX5: 91EBF0600048C3486A9901AD7A21390043854D80] [GP] c:\windows\system32\realmediadx.ax [PX5: AC44D7B70000F820788602A6C5A78D0024608096] [G] c:\program files\pinnacle\shared files\filter\pclempeg4mux.ax [PX5: D20E352500D26B6F203D012D477D7A002A6815F8] [G] c:\windows\system32\vsflex3.ocx [PX5: 2239466E0005BB8470C403BD9F60D30065141EAB] [G] c:\program files\pinnacle\shared files\filter\cutlistsourcepixie.ax [PX5: F38525FC49DA8647005F058EA4153B009F02734B] [G] c:\program files\pinnacle\shared files\filter\dvc150\usbdvr2splt.ax [PX5: 703984E200D0826180B001A9D2C02900598B2D37] [G] c:\program files\common files\hp\digital imaging\bin\hpqpsb01.dll [PX5: A593DF1F001F068270230423060A9A0089E8CF5E] [G] c:\program files\pinnacle\shared files\filter\pinftee.ax [PX5: 6895320B00E7C8E7C06B00A1FBE8D500B8CEB922] [G] c:\program files\pinnacle\shared files\filter\dvc150\usbdvr2snk.ax [PX5: 55C835410081B707B0B90158B6593E00E7628AFA] [G] c:\program files\common files\microsoft shared\shoebox\stv7.dll [PX5: 897417310013021080AD02BB5CD4DF0025B27701] [G] c:\program files\common files\installshield\engine\6\intel 32\ikernel.exe [PX5: 1CCE7F70849A15CF60B80909710179009B62E028] [G] c:\program files\roxio\videoui 10\dschapterdetectdialog.dll [PX5: 7AAE5B0CF09DE5DB698D036510321E005299EEBC] [G] c:\program files\common files\ahead\dsfilter\nefsource.ax [PX5: 82DAA70100D2B192B0CE0239F7ED6700FAB84BAC] [G] c:\program files\hp\common\hpbasicdetection3.dll [PX5: EFC6BF6E3878060F4A1D05552CFF970053B0A9F8] [G] c:\windows\system32\msrating.dll [PX5: 7B34761A007A6577F26B02CF907DDD00EFDC24A3] [G] c:\program files\pinnacle\shared files\filter\pclempaencoder.ax [PX5: 68C062D35552920970AC012083B0B40046A29540] [T] c:\program files\common files\installshield\driver\10\intel 32\objpscnv.dll [PX5: 4ACDE0C900B3D8AD800B002DDDE82A007B611394] [G] c:\program files\pinnacle\shared files\filter\pclecapturepctv.dll [PX5: 043500DA00DD00F130F005A1C924D0006CF8B293] [G] c:\program files\common files\system\ole db\msmdgd80.dll [PX5: 9C0D56E645938028D0EA149C27C33400D1EB6DC9] [G] c:\program files\common files\ahead\dsfilter\nendaud.ax [PX5: 89D92F48004235AE608F04AA81BB65001FF73699] [G] c:\program files\pinnacle\shared files\filter\dwfieldreverser.ax [PX5: 145454920078C01630AE01AC9672AC00B0D8A3CD] [G] c:\windows\help\sniffpol.dll [PX5: 8CA44F68009E90B988FE001BDB88B4004B45F842] [G] c:\program files\common files\roxio shared\10.0\mpeg\mpegstreamanalyzer.dll [PX5: 62BB82DDF0B1DC6E39B40320F42DB300121D2E29] [G] c:\program files\interactual\interactual player\iaieplay.dll [PX5: 9992854B1841CDA2CD5F0345DFC158001D6F719C] [G] c:\program files\pinnacle\shared files\filter\pclempegenc.ax [PX5: 7919416A00B951F510060247B163830033919CEA] [G] c:\windows\system32\dsdmoprp.dll [PX5: 0C20023100D59A8D186601BF243E2200CAF06231] [G] c:\program files\common files\sonic shared\sonicmc02\sonic7mp4demux.ax [PX5: 4F7B69E1F0AE183854DA069383E434008A571045] [G] c:\program files\interactual\common\video\iaravisent.dll [PX5: F6E6020F38CC868CF37C034B5A6E4700603E8374] [G] c:\windows\system32\mswinsck.ocx [PX5: EB4D40B310A12F4CE70F01789A633C007F725764] [G] c:\windows\system32\nvmccs.dll [PX5: 118BE241003C88FD80AA03915CEEBD001204ED15] [G] c:\program files\roxio\videocore 10\vcgcapture.dll [PX5: 60039518F081FA86A9C40AB9E6020400FF695E4F] [G] c:\program files\common files\hp\digital imaging\bin\hpqcc3.dll [PX5: D3BAEFAE00B27D39A0790B309115A0001F843B7D] [G] c:\program files\common files\hp\memories disc\2.0\hpodmp.dll [PX5: 8F57454200942BC690400046E2C7870094D0C6A3] [G] c:\program files\click'n design 3d (v5)\actbar2.ocx [PX5: 8A0398C7C0EC53E93E060C6098FFC100E9C7F6BF] [G] c:\windows\system32\comsnap.dll [PX5: 69C035A2009C9DE340BC02B42E4E2D00DFD6F049] [G] c:\windows\system32\mswmdm.dll [PX5: 0CFD063B00390DF2E8FC0448DFBB0E0049D767B2] [G] c:\program files\roxio\photosuite 10\ppsprojectserverobjects.dll [PX5: CB52D877F04D6D0D69B9029D18ECBA00EBA66B27] [G] c:\windows\system32\danim.dll [PX5: D73A364100088B8D16321094F998A900C29821D7] [G] c:\program files\pinnacle\shared files\recordingapi\idiscsdk2.dll [PX5: 5599CDD1008E700C82E30A3811EFDA00B5CD2774] [G] c:\program files\common files\microsoft shared\msinfo\ieinfo5.ocx [PX5: BB99E61B005222746C1F015F936883004C402307] [G] c:\program files\hp\dvdplay\kernel\common\cldatasync.dll [PX5: FF0BF28D0072D41A608802061086A300718B31D0] [G] c:\program files\common files\sonic shared\plugincodecs\roxioac3enc.dll [PX5: 15BE55F4F8BFFDCA1ADA02BD29883B00C1E3C584] [G] c:\program files\messenger\msgsc.dll [PX5: 463E2263006D749844BC013384434D00918FF2D7] [G] c:\program files\quicktime\qtocontrol.dll [PX5: 56020CDE002F66CC70350B743FB0D5001B635A94] [G] c:\program files\real\realplayer\hxaudiodevicehook.dll [PX5: C77A472C00B359C8902801EAA137F40062BC4CDF] [G] c:\windows\srchasst\srchui.dll [PX5: 6D1ADFC03E25F6BD12480B961F2372009539C8A0] [G] c:\program files\pinnacle\shared files\filter\pclecapturedvxcel.dll [PX5: BE9631EC0066EBE0D03704D851AF3500E1888661] [G] c:\program files\common files\microsoft shared\works shared\wkapcomp.dll [PX5: 1DE76DE400B82C24503C03C09A034900B037E3F8] [G] c:\program files\nova development\video explosion deluxe\veddvcap.exe [PX5: 9C0C25173534AB7ED0722B02501DBA00D4FBF364] [G] c:\windows\system32\xmlprovi.dll [PX5: 188BDB3B002C407FC46F00DD00D44F004B7D06A7] [G] c:\program files\common files\microsoft shared\msclientdatamgr\mscdm.dll [PX5: D2327420009483E0F2CF057AE910D80073D52061] [G] c:\windows\system32\hnetwiz.dll [PX5: 0954744C00D157840C8505F2D7FEC9007D2025AB] [G] c:\program files\hp\digital imaging\unload\hpnkhta.dll [PX5: 70514CB60028F0F530190105A1B643002B080815] [G] c:\windows\pchealth\helpctr\binaries\msinfo.dll [PX5: 568E6C220057DE72BEBB05019B21F800270EAB8F] [G] c:\windows\system32\comuid.dll [PX5: 9AD1F1BB00FCE0EE3E6408C4C1F7C000179519C8] [G] c:\program files\common files\muvee technologies\030625\s00135_vacation5_fx.dll [PX5: 1816F443005E5F8670820150759C31005D1EDB20] [G] c:\program files\pinnacle\shared files\filter\mpegencoderlib.dll [PX5: 1A3F71FA003167B4801C061904A28C005F53B37B] [G] c:\program files\hp\dvdplay\kernel\movie\claudspa.ax [PX5: DDA239B500A5AEFE50E5017DA14F530050BFE616] [G] c:\windows\help\sstub.dll [PX5: 8CAF790400FB0A4482EF00A7E884BC00250559AC] [G] c:\windows\system32\wbem\scrcons.exe [PX5: 071289D300B9BD1E903F00BEB48D8400779DD360] [G] c:\program files\roxio\videocore 10\vcpoverlays.dll [PX5: E8BBFBAFF014A51D79C904FCC60A1600406B54D0] [G] c:\program files\microsoft office\office10\html\htmlmarq.ocx [PX5: E5E826C30088DAD0401A01A8F2363D00BA25F852] [G] c:\program files\common files\sonic shared\audioplayer.dll [PX5: 1E4866DBF86C83A3AAF8035A86B3D900B719447F] [G] c:\program files\pinnacle\shared files\filter\pcm2floatreblockerfilter.ax [PX5: E7FBCAC60032037E304E012FF33EB1006B5CA0E6] [G] c:\program files\common files\muvee technologies\030625\s00046_speed.dll [PX5: 6DB5ACD30055A931B0770792C58A2700FECCB535] [G] c:\program files\quicktime\qtuipanelcontrol.dll [PX5: 8F125D0700A0659FA0A80417B72989008FEB7AAA] [G] c:\program files\yahoo!\messenger\yacscom.dll [PX5: 15D17A4D00A5F0C4A00F0332C251E800E2B86AD1] [G] c:\program files\pinnacle\shared files\filter\pclecaptureemuzed.dll [PX5: 8EB383D30055FEB3F0C20492A6DAD1003DB0514D] [G] c:\program files\common files\microsoft shared\triedit\dhtmled.ocx [PX5: EBA5CD7000C3386AF623018F6B9DC300B97F01F1] [G] c:\windows\system32\dinput.dll [PX5: 4664B4510099BA0D6E6302C70D235C005FDB651C] [G] c:\program files\hp\digital imaging\bin\hposcn08.dll [PX5: DD77038100988BC2D0D30174CE8B6A008A7C73C6] [G] c:\program files\common files\muvee technologies\mainconcept\mceampeg.ax [PX5: 118349DB00F6D370F0BC0000F718BA0035546505] [G] c:\windows\system32\dinput8.dll [PX5: C46E2F44002ACF2EC69E026EA26EFB004DCAFC79] [G] c:\program files\avi mpeg video converter\nctvideocompress.dll [PX5: B7F456D10063CA4B301107DF832CEA00550E7EC5] [G] c:\program files\hp\common\rulesengine.dll [PX5: 3E1C9DDD38F02E1E388005F0B61480004191BDA5] [G] c:\windows\system32\dpnet.dll [PX5: 1AE63BC900A5A0F3BA76058B109FAF00F3DA2CF9] [G] c:\program files\common files\muvee technologies\divx\aviwriter.ax [PX5: 8E2584D200984435401901FCF4C1F00054AA0BCF] [G] c:\windows\system32\certmgr.dll [PX5: 8A022C7B0037E4B5FC9606F9222406009B848712] [G] c:\program files\common files\system\ole db\msdmine.dll [PX5: FE3FCF1251ED2936F0D6160DFD5F0100F141A258] [G] c:\program files\ahead\nero wave editor\recording.ocx [PX5: 33E2D5AC008C6CEAD0F90441FDAB3600476BFEE5] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsformatloaderbmp.dll [PX5: 7AA3E090F0E3E14A4995017DAF561C0041BCE99A] [G] c:\program files\common files\ahead\dsfilter\nendvid.ax [PX5: DD06D9FF003B28A5E01507DB3B9F4B002D16564F] [G] c:\program files\roxio\cineplayer\dvddrivecontrol.dll [PX5: 924E3581F0D55BA1ADD2003DDCE82700B8693DB6] [G] c:\windows\system32\adsnt.dll [PX5: DF662CEC00BBBD7B066604EEE87D0E003014FD30] [G] c:\program files\common files\ahead\dsfilter\neroformatconv.ax [PX5: B2620E2C007115D710270279E3A2BC007857D8AB] [G] c:\windows\system32\rdchost.dll [PX5: 09BFA3A400CFF3A742EB02FAAB5C53005F8FDDFE] [G] c:\program files\pinnacle\shared files\filter\pclempeg4viddec.ax [PX5: 287B4270008DD8BA60AF03C93386C3006142BE40] [G] c:\program files\hp\digital imaging\bin\hpotra08.dll [PX5: 21311B6000E91A0840E403CF9F5E720081CE7FAA] [G] c:\program files\common files\system\msadc\msdarem.dll [PX5: 2CD81D4F007E08BCD09B01CB7975FC006951FC56] [G] c:\program files\microsoft works\wkwzthm.dll [PX5: A7C50B470013C0A6A00D0276520C71002C7A7CD2] [G] c:\windows\ehome\ehkorime.dll [PX5: 55550E0000049540D2820047DFEC2F00B74556FA] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpshelpercontrols.dll [PX5: 5DE68A02F0764A2D49A90183C5CE320051DE1DE9] [G] c:\windows\system32\bidispl.dll [PX5: 9C45FC8200854926447000877D2AF900B894F750] [G] c:\program files\yahoo!\messenger\ft60.dll [PX5: 89261C2C008DDE542053038266066C00F0C13494] [G] c:\windows\system32\rsmui.exe [PX5: 6878236D00BD61ABC0D300A5320A7F008A018EDF] [G] c:\windows\system32\msaatext.dll [PX5: 58C533A000BCABE792C301A187F6BD00256FD2A1] [G] c:\program files\roxio\videoui 10\vcdbuilder.dll [PX5: D466462FF00EB10A59490369534D6600D47819AB] [G] c:\program files\hp\digital imaging\bin\hpqtao08.dll [PX5: 114C0E2A00145CE400D201FFCF14BA00FF816206] [G] c:\program files\pinnacle\shared files\filter\pclempeg4auddec.ax [PX5: D95FAE2B00B58E33F048011EB7FEB100F1C53AB2] [G] c:\program files\roxio\videocore 10\mginullip.ax [PX5: BC6E4634F0B8805D791E012A1E3CC9004238C3F5] [G] c:\windows\system32\msstdfmt.dll [PX5: 8AE9ED3D00652CF6D03501AA8FA151006C1F5C73] [G] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomconexant.dll [PX5: FC148115F0F5BA7649BD0BD02B304E0020828702] [G] c:\windows\system32\imagxpr5.dll [PX5: B0AF5774109A178D55DE0499C3255A00166F7073] [G] c:\program files\roxio\audiocodeccommon 10\dsfogmdecoder.dll [PX5: 461E2F08F0E458DE1949017F0ADCAA00FACC73C8] [G] c:\windows\ehome\ehplayer.dll [PX5: DF505A260077CD6CB2D9047303F50100CB5F99D7] [G] c:\program files\hp\digital imaging\bin\hposva08.dll [PX5: 115655C50030F03BA0310145BD529F00A0971653] [G] c:\windows\system32\datime.dll [PX5: 0BB920D800CD61515252025070AA32007B7BB6DC] [G] c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\plugin\scom.dll [PX5: 9AE6631900369EC2803900FD4FBF4D009D3A92B1] [G] c:\program files\roxio\photosuite 10\ppsbrightandcontrast.dll [PX5: 336071FCF0E76844F983057CD3602500A62CA9EE] [G] c:\program files\roxio\photosuite 10\ppsbrushshapecollection.dll [PX5: E590CF19F038348609C003CC80BF71004A2B4183] [G] c:\program files\pinnacle\shared files\filter\dvc150xformdeadcafe.ax [PX5: C2D8CC3000D0B040B06B01EAE0414C00B8ADC125] [G] c:\windows\system32\adsmsext.dll [PX5: FBE6B34B00792E0F0AD101D0D2E62B003F9801A7] [G] c:\windows\system32\mstscax.dll [PX5: 37B43E7F00927A9F008A0AD4DD10F5008424F843] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpscommonobjects.dll [PX5: AC358477F081C39BD94603CCC25DD4005BC36B7D] [G] c:\program files\panda security\activescan 2.0\as2stubie.dll [PX5: 6A8D002C00F0CD9BF5DE01D30B9045007C51CFD1] [G] c:\program files\common files\business objects\3.0\bin\undomanager.dll [PX5: C704CA82000ACD13CEDC014D699ABC00A3C6808A] [G] c:\program files\common files\system\msadc\msadds.dll [PX5: B0549D5B00749D1960740254AEC2B000AEDAA218] [G] c:\program files\pinnacle\shared files\filter\pclempadecoder.ax [PX5: A0159164552B878DD057017BA08644006D6FA433] [G] c:\program files\pinnacle\shared files\filter\dwcolorspaceconverter.ax [PX5: 616D7AB2003089CF3095054F3467C60092A29113] [G] c:\program files\common files\business objects\3.0\bin\crystalwizard.dll [PX5: E322A0EA005D3502609E0613B0AEEC00F025BF39] [G] c:\program files\microsoft office\office10\rexproxy.exe [PX5: C0E563A2006B83A3ECFE00A7C10F6E00E34CCB02] [G] c:\program files\pinnacle\shared files\filter\movieboxusb\usbdvr2src.ax [PX5: 6E5E92C9006E6CB2F058019445949D0035A101DE] [G] c:\program files\common files\roxio shared\10.0\dllshared\dshowencodemanager10.dll [PX5: 3916554CF02C5E7C39AA055E6A886F00518314C3] [G] c:\program files\common files\hp\memories disc\2.0\hpodthumb.ocx [PX5: D02BB69E00ADBEB010B5050B75F7CA007EFDD97F] [G] c:\windows\ehome\mstvcapn.dll [PX5: 558D90F300E7C0B8A25B01620B6A090012340734] [G] c:\program files\roxio\photosuite 10\ppspzpimporter.dll [PX5: 4CB0744BF071919C59C201CD93DE4000A50FE58C] [G] c:\program files\microsoft works\wkpjlink.dll [PX5: 8E8A84120032BB7670DB01929705F7007526A8A4] [G] c:\program files\hp\digital imaging\unload\hpqdevun.dll [PX5: 6E6165AB003DD0D3C0D4036C98F94C00BBB0189D] [G] c:\program files\common files\real\gtoolbar\barcontrol.dll [PX5: 6B13D84600C1EB0AB0C6012F7738D90091A73243] [G] c:\program files\common files\muvee technologies\030625\s00002_chaplinesque.dll [PX5: 7BEE5DE200E83F4D605807EA5B0FB000783090EC] [G] c:\windows\system32\dpvacm.dll [PX5: 3A2869E5002381FA5407008F07722300C37F2297] [G] c:\windows\system32\imgutil.dll [PX5: CAF7E19500E00DD38E9300C38F63CD008472484B] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\wince companion v3\ilxwincecompanion.fil [PX5: 65AA3A5200307D02205E038612361B00DEC99ECF] [G] c:\windows\system32\msscds32.ax [PX5: 40EDAAC900B8541C10190169AEDC0500A9312590] [G] c:\program files\hp\digital imaging\bin\hpoipw08.dll [PX5: 2A470E6900D35A1630370120DDD58400ACED14F0] [G] c:\program files\movie maker\wmm2fxa.dll [PX5: 7A3E77BB006F2721AAB7071B929CEC00B6F0D1CE] [G] c:\program files\common files\sonic shared\sonic central\home\homeplugin.dll [PX5: 889ABE0800786663201B03AD012AF000F3DC64A2] [G] c:\program files\pinnacle\shared files\filter\esinkaudio.ax [PX5: 78ED14910098DDE4A00F00D71F9D8C002E8BDDE8] [G] c:\program files\common files\muvee technologies\030625\s00152_christmas04_2.dll [PX5: 38CD1B2A007B8275603D07F63DAF9900C3119869] [G] c:\windows\system32\pythoncom22.dll [PX5: 523B6D95006AB86EF0F604FCF0B38D001BBD9310] [G] c:\program files\pinnacle\shared files\aviwavim.dll [PX5: 52CF77A600139FD3D0C904D3BDD77B00CB59CC10] [G] c:\program files\hp\common\internetutil.dll [PX5: B5D5F63E007E80D20056064B6E755600A574A7DA] [G] c:\windows\system32\nctaudiofile2.dll [PX5: A04BA5E6009073FC20851C8D89AA72001AF5BEF8] [G] c:\program files\microsoft works\wkwzaddr.dll [PX5: 73CF90FF0070E9F950D801B7BD09BB00055966D1] [G] c:\windows\system32\dplayx.dll [PX5: D1FF582200D413EB828403D79A2B4200730E1085] [G] c:\program files\roxio\photosuite 10\ppseffectholder.dll [PX5: DD514F7DF0513EDD199E022A406814003024806D] [G] c:\windows\help\tshoot.dll [PX5: 24C409160093DC4342D304E4F65A960091315E40] [G] c:\program files\hp\dvdplay\kernel\movie\cladr.ax [PX5: 1A69E1650030D892908E0382905F7400473D624F] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsstorageprotocolhandler.dll [PX5: 90FE70DCF0C6131AF9DB00AAA0A1D40068A41747] [G] c:\program files\common files\surething shared\stcd3control.dll [PX5: BC5D464E00BAEE8F002D0255D1BC71008FE2D6A5] [G] c:\program files\microsoft office\office10\1033\msohelp.exe [PX5: AF55702EA0A25C966575010A34CCA1000397695C] [G] c:\program files\common files\business objects\3.0\crystalreportviewers11\activexcontrols\crviewer.dll [PX5: 8B6031E988D44AAFD41313AB5DA5120049E82180] [G] c:\program files\common files\microsoft shared\smart tag\fperson.dll [PX5: 54518573A0069FF365E50429A9FD5600FA085E59] [G] c:\program files\common files\ahead\dsfilter\neaudioenc.ax [PX5: B5DD0A9600A99EE080380203B57287000B700686] [G] c:\program files\common files\microsoft shared\euro\msoeuro.dll [PX5: 38C3913498C7EEB58515002DDDE82A00D39663DB] [G] c:\windows\system32\wpdmtpus.dll [PX5: 1A31F12900C6DF9CF8BF00CB0D083900519EF708] [G] c:\program files\common files\roxio shared\10.0\sharedcom\leresourceloader.dll [PX5: F13FDF4CF0ACAF4429BD0293FF6C8F009060B19F] [G] c:\program files\pinnacle\shared files\filter\pclecapturezoran.dll [PX5: A413745F005AE190F0760452D1540D00CE9AFB4C] [G] c:\windows\system32\mshtmled.dll [PX5: 4C13435700D641334A4507327B274300986222E6] [G] c:\program files\common files\roxio shared\10.0\mpeg\mpeg1vidcodec.dll [PX5: B9971F4AF00D3683A9F50BCE6D9AFE00E667A6C8] [G] c:\program files\common files\installshield\driver\9\intel 32\idriver.exe [PX5: DA1E51E10079C1F6A0BA0B7BDDC08400F462BC7D] [G] c:\program files\common files\ahead\dsfilter\nerovideoproc.ax [PX5: 84A5AF0E00590C485085020D02DDE2002BA9E30E] [G] c:\windows\ehome\ehcyrtt.dll [PX5: EE17858F00471931A2AE00EF90BDCE005C19C3A1] [G] c:\program files\roxio\photosuite 10\ppsblureffect.dll [PX5: 4FDCF7D1F01BD055098F03CB8B7DDF00299EB9E7] [G] c:\program files\common files\microsoft shared\web folders\pkmtempl.dll [PX5: 2DE5592F00CA9910A066002DDDE82A0078951C45] [G] c:\program files\pinnacle\shared files\filter\dwaudiosceneanalyzer.ax [PX5: 26689FCA0042F13900DA01BE905484007CE5E225] [G] c:\windows\system32\iepeers.dll [PX5: 203CA2AC005F4E41EC6702AB4F31CE001E77FBDD] [G] c:\program files\quicktime\qtolibrary.dll [PX5: C5EB612A0039944070380A4CDB06B400C54F7C1D] [G] c:\program files\roxio\videoui 10\dvdmenueditor.dll [PX5: 0B8136FCF027326749B60588C6B26900EEB74D5F] [G] c:\windows\system32\tdc.ocx [PX5: 5B683F9E003AB5EC04FF01F7031A4500717F1821] [G] c:\program files\common files\system\mapi\1033\esconf.dll [PX5: D39A33B2109756D6BB5B017462540B00356960BA] [G] c:\program files\hp\dvdplay\kernel\movie\clline21.ax [PX5: 09AD015E00B5D524B6280071CDF4A000C1A22783] [G] c:\program files\roxio\audiocodeccommon 10\dsfflacdecoder.dll [PX5: 290B5D9BF0C513BA29AE0152C2595100182EA1BC] [G] c:\windows\ehome\ehglid.dll [PX5: A669C8A000C1F16F049A05A1718E3E0034CF1F8A] [G] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomhauppauge.dll [PX5: 3644D5C0F045932289450B8F4DB70A00BEB862E2] [G] c:\program files\common files\macromedia\scs dlls\vbaddin.dll [PX5: 5B491E6E0017E15660F3002DDDE82A00C98DBCEC] [G] c:\program files\pinnacle\shared files\filter\bsdvdec.ax [PX5: 9054F77E001CE30C30EE015516FB6300FFF0FF0F] [G] c:\program files\common files\ahead\lib\apreg.dll [PX5: 05A8A9F144A0302C8090012A40BCF600C6AEEEF9] [G] c:\windows\system32\hotplug.dll [PX5: D85B3F0B000875A136B50257FFC6320010698A9E] [G] c:\program files\quicken\olbservice.dll [PX5: 2DF2BAC500B1966530900208AA80AB008E268E93] [G] c:\program files\quicken\bpbox.ocx [PX5: 1EB7A16B002E6CA6BF1100B0AD4D6E00EEE90BA6] [G] c:\program files\hp\product assistant\bin\hprbeh.dll [PX5: 12EEBA50001E812810C2018A2A0BDA007A008678] [G] c:\windows\system32\richtx32.ocx [PX5: 161B8C48C848AA161CFF039E37539100DC0D6596] [G] c:\windows\system32\laprxy.dll [PX5: 3763F22F008A37632C8400FD3B81CB0046B01FCF] [G] c:\program files\microsoft office\office10\fpdtc.dll [PX5: 0AFDA78C00376B38203C036DB7922A004DBE77CE] [G] c:\program files\common files\business objects\3.0\bin\cdo32.dll [PX5: D163105B007C3EED603301357E151100E4C27DCD] [G] c:\windows\system32\cddbcontrol.dll [PX5: 06A7EE9200FB3970006A0A3F68A86D007AD28CF8] [G] c:\program files\common files\ahead\dsfilter\nerender.ax [PX5: CF54ACF10045FA5310BC0102DFD43C007CFBF466] [G] c:\program files\common files\muvee technologies\030625\mvcapturer.dll [PX5: F144C71C5524A8A740450202CC1E0300CD8E0520] [G] c:\program files\microsoft sql server\80\tools\binn\sqlvdi.dll [PX5: 0E65744B4C539D39B2E5001FD4E1E60021CFE6AE] [G] c:\program files\common files\muvee technologies\030625\hximagefilter.ax [PX5: DBDAB518006BF651606501764513AF009760A717] [G] c:\program files\common files\microsoft shared\works shared\wkswab.dll [PX5: 74050E3A0031429540B101F529D50D0066F16068] [G] c:\windows\system32\vbscript.dll [PX5: 701EA96400A441615057067848F52A0073789F12] [G] c:\program files\common files\roxio shared\10.0\mpeg\roxiompegdemuxer.dll [PX5: 38E302BAF0070D3279310340C3D06700959C1643] [G] c:\program files\pinnacle\shared files\filter\pclecsc.ax [PX5: E3D8A5BD00E09624C07001B1003E18000A774F83] [G] c:\windows\system32\wbem\cimwin32.dll [PX5: 39CD5CCD00765ECBA2C114CF782A8400BF07C489] [G] c:\program files\roxio\videocore 10\vcu3dcheck.dll [PX5: BC71E161F0EA6C7049A2087577F8390054348CD8] [G] c:\program files\roxio\videoui 10\dsburndialog.dll [PX5: 942BDEF4F002364AB9A80447D43C7D00AB8E2A9F] [G] c:\program files\microsoft office\office10\vs runtime\scriptle2.dll [PX5: 5F2F819200A77A2FE0910185E48CF200BB4B91C4] [G] c:\program files\sonic\mydvd\mydvd.exe [PX5: F760E1CE00EA3C2B90526BCD6C62CC019F87CC1E] [G] c:\program files\nova development\video explosion deluxe\axfwd.dll [PX5: E0D9703037CB37F8900F00942F45E500817B1DE2] [G] c:\windows\system32\oleprn.dll [PX5: A6A07809008AF79AA2B8011E8159DA006060148C] [G] c:\windows\system32\tscfgwmi.dll [PX5: 054B3BE000942F986EE5011ED7AD070095C5E903] [G] c:\program files\microsoft office\office10\blnmgr.dll [PX5: 0FD204D4A0C812A835DD012A62B16C008E87425E] [G] c:\program files\common files\microsoft shared\mspaper\mspthumb.ocx [PX5: 18E0AEA4100309E94110017763E34B006FE21A82] [GP] c:\windows\system32\rlapedec.ax [PX5: 8C7D2DBD00F65236D688001E88F88A005A8AC41E] [G] c:\windows\system32\hhctrl.ocx [PX5: 4595D7BD0018295D561208A0341579005F956785] [G] c:\windows\system32\l3codecx.ax [PX5: 5EE6C3BC0022166C80A701337C7DF0002DC5AFF3] [G] c:\program files\common files\roxio shared\dllshared\cddbmusicidroxio.dll [PX5: 93BF7E94F8B14E38153A09ADE889FE000CB38AF1] [G] c:\program files\roxio\videocore 10\rmfmediaobjects.dll [PX5: 01A249D3F0A7C320D9AC0FA4BA59410060A8DB9B] [G] c:\program files\common files\speechengines\microsoft\sr\1033\itngram.dll [PX5: F7D8005000EBCB52102E02B45D512200F4513708] [G] c:\windows\system32\dfrgsnap.dll [PX5: 5B23863100C7B9E298AB00554049110030B22CE6] [G] c:\program files\common files\system\mapi\1033\cdo.dll [PX5: 2CD61583103976165DE60CB9B484070074EB5A0F] [G] c:\windows\ehome\createdisc\sbeserver.exe [PX5: 3E184C6900879BE8C06F0795CEA69D007AAAD773] [G] c:\windows\system32\comdlg32.ocx [PX5: 6B5C63461028265F55E602D4BDA8C7000A811159] [G] c:\program files\hp\dvdplay\kernel\common\cldevicedetector.dll [PX5: 3B98429D002E859A80F00145604F900083142A03] [G] c:\program files\hp\digital imaging\bin\twainctrl.dll [PX5: BA6EE7AC00317DD2A0CF008B4A62E000810E0098] [G] c:\program files\pinnacle\shared files\filter\pcleac3enc5_1ch.ax [PX5: C1B1478900F4385B70B302B06FC246000A98203E] [G] c:\program files\pinnacle\shared files\filter\dwwavecapture.ax [PX5: 0E57748200E0E8844031013BB09C6100B8EC59D7] [G] c:\windows\system32\comct332.ocx [PX5: DF311F2F10D1B7F85B570691720648006646A975] [G] c:\program files\roxio\cineplayer\filters\cinemastervcdnav.dll [PX5: 2755ED1DF0BD6D52096702D081B2AF00509E6E5A] [G] c:\program files\microsoft office\office10\multimgr.dll [PX5: A26956C90070BFBAE047029EAC2D2400B9E3CF97] [G] c:\program files\common files\microsoft shared\works shared\wkhlp80.dll [PX5: 4C4E243700B2039320E3036399A53600F16549B5] [G] c:\program files\common files\microsoft shared\information retrieval\itircl54.dll [PX5: D16631CE007EE786E0970277B194FA00B5B6016D] [G] c:\program files\interactual\interactual player\iadefdvd.dll [PX5: 0EB9F80E30FC866F27B9034F1E28B7001E4C081D] [G] c:\windows\system32\dmstyle.dll [PX5: D7905FDD005900C99E74013DF577D00013447C7F] [G] c:\program files\pinnacle\shared files\filter\pclecapturepython.dll [PX5: E094E1A800F07E04A09604E7D7116400D701878E] [G] c:\windows\system32\wbem\trnsprov.dll [PX5: EC3497B500288A52EA07003BA297CA0001CC6166] [G] c:\program files\common files\microsoft shared\mspaper\mspvwctl.ocx [PX5: B38E6BF81089D59A51F503ADABAC960051A5DA52] [G] c:\program files\roxio\videocore 10\peakmeterax.dll [PX5: 3D884501F03234F8796A015604251B00A5D3D831] [G] c:\program files\common files\roxio shared\10.0\mpeg\tsmpegsource.dll [PX5: 0EA140A7F04EB5FC990E02270CCB2600A57066B3] [G] c:\program files\common files\roxio shared\10.0\dllshared\sndedit10.dll [PX5: 25A4089CF0C0B440D918081CAB482C005CDC4C69] [G] c:\windows\system32\mmcndmgr.dll [PX5: 59EC833B00DE6876341B127459CEDC00D6ED3294] [G] c:\program files\common files\microsoft shared\vs7debug\coloader.dll [PX5: 1A22570E0000E418D0FC00C6427D01008E1882A8] [G] c:\windows\system32\wiavideo.dll [PX5: E3024B3900517936B294018200EFCB0074A88703] [G] c:\program files\microsoft works\wkprjapi.dll [PX5: D8A9E45B00C45B5A70D5015E59388200DAEF3FA1] [G] c:\windows\system32\runclose.ocx [PX5: 565B1089007C887DB04A001395497900117F7F53] [G] c:\windows\system32\msxml.dll [PX5: E5551CD800C5C16CBA8D071206828E008459092B] [G] c:\program files\internet explorer\connection wizard\trialoc.dll [PX5: 333E5F5F00B1B2DFA0D4003BF55FF4008D19D348] [G] c:\program files\pinnacle\studio 9\programs\hhactivex.dll [PX5: 3EA65FDE006DFA36D080069509F5DE00619CBE91] [G] c:\program files\common files\system\msadc\msadce.dll [PX5: DBD2380700843A76103E052E1E36FA00A0169C3C] [G] c:\windows\system32\ciodm.dll [PX5: 7A296EC500FEBCD70E5C018167978F00F55FA64D] [G] c:\program files\pinnacle\shared files\filter\pclecapturegenericyuv.dll [PX5: 56132E1A0048E360A0D20509B2F529007B0112B6] [G] c:\program files\common files\muvee technologies\divx\divxenc.ax [PX5: 14D092C900398A2B70A10EF1ADFDF10058ACFACE] [G] c:\program files\pinnacle\shared files\filter\audiorenderer.ax [PX5: 09CB6F43003C4E642081013665C5560002E6163A] [G] c:\program files\common files\microsoft shared\web folders\promdemo.dll [PX5: 089067CE00001F48A03B03C0BC004800213C37AA] [G] c:\program files\microsoft works\wkwzwiz.dll [PX5: 95F68E6300C3DF9F00BB020F72E7410077277F08] [G] c:\windows\system32\acelpdec.ax [PX5: 13C6E04B007130F1F29200015592C90075491C47] [G] c:\program files\real\realplayer\rpau3260.dll [PX5: B8EFB42000B466B2D07500EAEE07E7008FD74BB4] [G] c:\windows\system32\wmstream.dll [PX5: 203C2A720032B6E8A2FE0476728F0F000547F82F] [G] c:\windows\system32\ipsink.ax [PX5: AF9F2AA100915F1C40550051C0FA5D002D6A9A19] [G] c:\program files\microsoft office\office10\1033\msuspint.dll [PX5: 804073E844AEB5C6806D03B953F89100D814D3A9] [G] c:\program files\updates from hp\9972322\program\vbfrext-9972322.dll [PX5: 3625A3BA27C05E80B0E8002DDDE82A00C91E9EBE] [G] c:\program files\pinnacle\shared files\filter\smartmessenger.dll [PX5: 6942C2BD0000EA53F0AC01E471284C0032EE0867] [G] c:\windows\msagent\agentmpx.dll [PX5: 2B7E4E0A00647EA8C05500C081001400E4E8149C] [G] c:\program files\roxio\videoui 10\dsprojectdata.dll [PX5: 024A19B9F0ED252109D70A056F4BE50038554FE1] [G] c:\program files\common files\hp\memories disc\2.0\hpodcrop.ocx [PX5: C83E4D1D0080D581808401AD34DF1200EE6531A1] [G] c:\program files\pinnacle\shared files\filter\pcledemux2mbox.ax [PX5: F5141AED003ACA164014033BB34B250092B2F804] [G] c:\program files\roxio\photosuite 10\stitchwizard.dll [PX5: 43E934AEF07EE7954915067AA5F2BC00EBA05A0B] [G] c:\program files\common files\muvee technologies\030625\mvimagefx.dll [PX5: 62B1E32C5A491A294049012716519800F8D7D10D] [G] c:\program files\movie maker\moviemk.exe [PX5: 3FDC8FF6005D402140CF360D39A3FE003F445B78] [G] c:\program files\ahead\nerovision\gclib.dll [PX5: ABB8FC5400A5B76150210701BD028900A38137CB] [G] c:\windows\system32\portabledevicewmdrm.dll [PX5: BFE2234B00DACCA70A0303D8D61D3F009EDDA9BF] [G] c:\program files\common files\ahead\dsfilter\nevcd.ax [PX5: 3B938DB0009F463F904C03B680783C00EE37E312] [G] c:\windows\ehome\ehchtime.dll [PX5: E12263B00033725FC05D001A9647C5006784A11F] [G] c:\program files\common files\ahead\dsfilter\neqtdec.ax [PX5: B876BF6A008A14CFF07100E5548D46009A476F27] [G] c:\program files\hp\digital imaging\bin\hpqvdcom.dll [PX5: 9827A0D90068E13F209A03342D10F40071F0B38F] [G] c:\program files\common files\roxio shared\dllshared\divxdec.ax [PX5: B94E88B810B53C54C6970AB0653BAD00AB6ECA7B] [G] c:\program files\pinnacle\shared files\filter\dvc150\usbdvr2src.ax [PX5: 5258450700A5ADA6F0F40144ED3AE0006BBC0AAB] [G] c:\program files\internet explorer\plugins\richfx\player\nprfxins.dll [PX5: C5EB16B8353C645AB0680876828650004945B124] [G] c:\program files\microsoft office\office10\msoauth.dll [PX5: 8FC62ED5376303DAC0E602268A1E150029C201FF] [G] c:\program files\common files\mssoap\binaries\mssoap1.dll [PX5: E2F669CD002A04C198140392C8C958009ADA5F10] [G] c:\program files\common files\muvee technologies\030625\quicktimesink.ax [PX5: E1F8C8DF00D29166E00E02B5EFF31200609FAC10] [G] c:\program files\common files\ahead\lib\advrcntr.dll [PX5: BD5E261F427399EB60610E2761B4FC00F72AB0E5] [G] c:\program files\roxio\photosuite 10\ppsshapemanager.dll [PX5: 74FFC639F08F8CC4498C01EFA4A44600A27F7B5E] [G] c:\program files\pinnacle\shared files\filter\dwwavetransform.ax [PX5: 2E15C9B600478B58C043001DC3B3D3008488AC25] [G] c:\windows\system32\wbem\wmipdskq.dll [PX5: 1E65964800A9BD17040602DBAED5010079ABAD65] [G] c:\windows\system32\cdintf250.dll [PX5: FE27123000A3F8C9702E19070F970600C9C6D0D7] [G] c:\program files\pinnacle\shared files\filter\dwaudiovarispeed.ax [PX5: 95B858AF0016F950500E01CB0D019C0007C69E94] [G] c:\windows\system32\msnp.ax [PX5: 7CC5A32500218F62FC9200B717DA2A00B1AF3A7A] [G] c:\program files\piolet\nctaudiovisualization.dll [PX5: 34505BD6005624BA509F0456C6F1D600454F0FFF] [G] c:\program files\common files\sonic shared\sonic central\copy\copynow.dll [PX5: 6E2271E000FF8B48704E041D5BDCD5004A60C652] [G] c:\windows\system32\d3drm.dll [PX5: 86C80A170028B0E35810056684D02B00C12FAACC] [G] c:\windows\system32\amstream.dll [PX5: F85EA48100A691D71423018CD0A9DA004C889EAF] [G] c:\windows\system32\cdintf.dll [PX5: 751104C600C9B69E80CE05F8FD1088009D2B6638] [G] c:\program files\ahead\nero wave editor\axis.ocx [PX5: 6D4A0138509E7CC080CB0681DF0BD100FFCCCE91] [G] c:\windows\system32\dmusic.dll [PX5: 9B96D1D700AB2BF9989301A9826830006F5D9AB4] [G] c:\windows\system32\portabledeviceclassextension.dll [PX5: 600BB415008EF0028EE301D4E739BD007E8CF52C] [G] c:\windows\system32\wmpasf.dll [PX5: DBB264A700B4147DB4A503BD56E1D00072BF6E38] [G] c:\windows\system32\camocx.dll [PX5: 6D58D678000889BCC6D8001C52B0690068F20F74] [G] c:\windows\system32\msfeedsbs.dll [PX5: F62FB1E0009FDBDDCC60008595B82D003C2C6A98] [G] c:\program files\pinnacle\shared files\filter\pclecapturedc10.dll [PX5: 25F0B8B2000D0554704204C6BFCF8000DED7928B] [G] c:\program files\common files\xing shared\mpeg encode\xmencmp3.dll [PX5: EE0877B300ACE2D360780571DD79DE004588693F] [GP] c:\windows\system32\coreaac.ax [PX5: 0D59008C0090DE11ACB702ADA7CA29003379F2F8] [G] c:\windows\system32\d3dxof.dll [PX5: ABB6990500332BACBAE10084A683EB00FA1D2948] [G] c:\program files\hp\digital imaging\bin\hpodio08.dll [PX5: B41E59BD00120E37F0FC09B3776FE00042587C62] [G] c:\program files\common files\ahead\dsfilter\nedvd.ax [PX5: BCE66B1C00FD8B7E70FD087938456500DCF90E1B] [G] c:\windows\system32\msinet.ocx [PX5: D29358D31076C2BC076402B5D428E400EF7EF4B2] [G] c:\windows\system32\racpldlg.dll [PX5: E357D8B10092A0C4AA8100610E2CC40066A3D356] [G] c:\program files\interactual\common\video\videox.ocx [PX5: 004B688D10FB4551519F039777A50000EFD84202] [G] c:\program files\hp\product assistant\bin\hprbxml.dll [PX5: 43120F5E0040DBF5B050001D15002600C45958AE] [G] c:\program files\common files\system\directdb.dll [PX5: 191A8C82001FA56252E201B7C318800051E2D5CB] [G] c:\program files\pinnacle\shared files\filter\pcm2float.ax [PX5: C731D18F00254CB3A0910021C0698A001AA1F779] [G] c:\program files\common files\microsoft shared\translat\esen\msb1esen.dll [PX5: 4F5CFD9700555C1C00D70106FC838A0071B9C6D5] [G] c:\windows\system32\itircl.dll [PX5: 315F7DA800A2235C5EF202F777CA18002466110C] [G] c:\windows\system32\mapi32.dll [PX5: 7019010400D9BA25B633012843A383002F7E88CB] [G] c:\program files\google\googletoolbar2user.exe [PX5: 59BA8F4E3042A846CC75002B76C6470024F5FCFB] [G] c:\windows\system32\bitsprx3.dll [PX5: 976A0BDD00B5A7121C90000A1B10960021ECC64B] [GP] c:\windows\system32\flvdx.dll [PX5: 28BE11F4009BCD457ED20246D762F60070E7C6EC] [G] c:\program files\common files\microsoft shared\works shared\wkcalpse.dll [PX5: 9323774D000E82BCF0D00A886A6381009AE25152] [G] c:\program files\common files\roxio shared\10.0\dllshared\sndappdll10.dll [PX5: 815587ABF004F871A9710F38B4CD2B00DE5C2715] [G] c:\windows\system32\wbem\unsecapp.exe [PX5: 6A13C739008CDA1D427F007D346608007266AF27] [G] c:\windows\system32\dmime.dll [PX5: 75AF45130064D332C43202BE429AC3000E867B55] [G] c:\windows\system32\g711codc.ax [PX5: A0A8E02E009BC28EA28500A572CB3D000E94336F] [G] c:\windows\system32\wbem\wmidcprv.dll [PX5: 143B6536005F88FA26CB024F535A0500261E84CF] [G] c:\windows\system32\termmgr.dll [PX5: EDD8E3A7002867D0781D05531A452F00704AAF7B] [G] c:\program files\common files\muvee technologies\sonic\launchmuvee.dll [PX5: 59CED59700C28832D0AC00EEFB96D8002A5AFB4C] [G] c:\program files\common files\muvee technologies\030625\mvstyleinfo.dll [PX5: DCD4CA3B575FEFFB40A301C3853B33002E04964C] [G] c:\program files\common files\ahead\dsfilter\nendgui.dll [PX5: 2E2593D0004E1115803E0EA8C3718E006E135C64] [G] c:\program files\google\googletoolbar1user.exe [PX5: 59BA8F4E3042A846CC75002B76C647008B66BC96] [G] c:\hp\kbd\redirect.ocx [PX5: 336CB39C004869D0B08200653D9BCA00FC8E771A] [G] c:\program files\pinnacle\shared files\filter\wmrenderer2.ax [PX5: F594BF2400022463807A02C2DE5EF9000B9F30F8] [G] c:\windows\system32\odbcconf.dll [PX5: A84011790075A4C2100402EB27E7FB001EFAC014] [G] c:\program files\common files\microsoft shared\smart tag\fplace.dll [PX5: B40925DFA04F004B65E6038D790A5F000BD84EE2] [G] c:\windows\system32\bitsprx2.dll [PX5: 1368E2B600C530D920A300E421F3A000BFBBBED2] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\pluginmanager.dll [PX5: 9F2FFB2A00E80474D01408C06B6ED30022420483] [G] c:\program files\roxio\videoui 10\vuimakemovie.dll [PX5: F1A680C4F0F082E089B90BDD25FDB10001A0B877] [G] c:\program files\microsoft works\wkwzsmpl.dll [PX5: 0A43E22E00867697208101CA796A16008412BB08] [G] c:\windows\system32\filemgmt.dll [PX5: F0C5828C005620A52833050A75018A008243C6DF] [G] c:\windows\system32\msutb.dll [PX5: FE3408C500974460FA2002A818776000F87F3970] [G] c:\program files\common files\microsoft shared\smart tag\fname.dll [PX5: 5E8D8973A05A4DA855CE0260EFFDB00002319DF7] [G] c:\program files\common files\roxio shared\10.0\sharedcom\roxshellview.dll [PX5: 9417822CF021D394492B07361B0B6400AD3EDDBE] [G] c:\program files\common files\hp\memories disc\2.0\hpodtrim.ocx [PX5: 45C687CA00338515109D0301282688008C25715C] [G] c:\program files\roxio\audiocodeccommon 10\dsfsubtitlevmr9.dll [PX5: 71D3666EF090F5B103B2016980D65B007B7B4095] [G] c:\program files\interactual\common\video\iaremote.dll [PX5: D3D36DC930CB22B0034406AEA6A3D00063388709] [G] c:\program files\microsoft works\wksabimp.dll [PX5: 47F0E849002AD475004A01C81EA268004A849A88] [G] c:\program files\common files\lightscribe\lscapi.dll [PX5: B5D05AC60043FB0560DB0215D0D63A00F26E4B29] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpssupporttwain.dll [PX5: E65DC752F017FFD2495001EDD81E150034CEF758] [G] c:\program files\microsoft office\office10\outlmime.dll [PX5: 3EA9A08CA02A9308656D015A7D6EC2005A5F2863] [G] c:\program files\microsoft office\office10\multiq.dll [PX5: C7AAFB4B0093483160720157AF3C4B009EE35BF1] [G] c:\windows\ehome\ehrec.exe [PX5: 3870FD5100242A58008201A6C8446F006E4F4E64] [G] c:\program files\hewlett-packard\sdp\hpdialer.dll [PX5: F9BB84D9558EA16D00CA08CB8B2ED100A7784982] [G] c:\program files\microsoft office\office10\msowcw.dll [PX5: 32B434AB311FE5BD505712E8B43E7100F36A52B3] [G] c:\program files\rhapsody\rhaphlpr.exe [PX5: 9F326D72000461CD90510280CD536500276F41D0] [G] c:\windows\microsoft.net\framework\v1.0.3705\netfxcfgprov.dll [PX5: 88359DD0002FAB0DACD202BEACB60C009A9E8F03] [G] c:\program files\hp\digital imaging\unload\hpqunapl.exe [PX5: 7AB1D221002A803AC088003A29CAB500FCFFA57C] [G] c:\program files\cleaner 5\cleaner 5.exe [PX5: 5B71C89900DB57636C66347651D3AD004162E935] [G] c:\windows\armcex.dll [PX5: D6C35D2B0034C29EC4B9005BACB1A6003A5CDF26] [G] c:\program files\common files\hp\memories disc\2.0\hpodlog3.exe [PX5: 8CA9757500877E8400D101B288C27800653ED9BF] [G] c:\program files\common files\microsoft shared\ink\penusa.dll [PX5: E3A736A04297A5A0B0330564A20AAC008DA0D16F] [G] c:\program files\common files\muvee technologies\030625\mvwriter.dll [PX5: B9D5C07B532FD91A10C2036A11B6440045C00906] [G] c:\program files\pinnacle\shared files\filter\mtrackredeye.scm [PX5: 68CB1FE9007A1494609701C067BD0600E1D557A1] [G] c:\program files\common files\microsoft shared\dw\dwtrig20.exe [PX5: 26B571CDC89A705E8C9A00C88D2981004A8DA4E2] [G] c:\windows\system32\msbind.dll [PX5: 80E1D10000BF526234A30176E5EA5500C1814733] [G] c:\windows\system32\ctmonth.ocx [PX5: 99D2D7E600D6539FA0C30110555A5100A4FA37F2] [G] c:\program files\adobe\photoshop 6.0\imageready.exe [PX5: 9B5268B54B5958DDE0BFE63C3CA4E3008DF1FDE7] [G] c:\program files\pinnacle\shared files\filter\dwscenedetect2.ax [PX5: 0B3CABAC0089399ED0D3023C01A54B000565FA82] [G] c:\program files\hp\digital imaging\bin\hpoutlookplugin.dll [PX5: 0ED498C95C1E21821093028961DF8500FC51A4D2] [G] c:\windows\system32\ddrawex.dll [PX5: 9177D55F00E923B36AE70041480755007F6D6882] [G] c:\program files\pinnacle\shared files\filter\mpegedit.ax [PX5: CB27A68900DB039540520309D9F31100E2A90727] [G] c:\windows\system32\wshcon.dll [PX5: 6630F2C90075590570C9005843DDE80043E5EBCE] [G] c:\program files\itunes\itunesphotosupport.dll [PX5: E4DDB363006D864F9AF8024CDCDD3100D7454E47] [G] c:\program files\hp\digital imaging\bin\hpqcbcnv.dll [PX5: 581C47B500575BA9C0400480AEE28700C4EC6FDA] [G] c:\program files\pinnacle\shared files\filter\pclecapturemicromv.dll [PX5: 04CC61F700D17BEB50C60408F58EE800CC635168] [G] c:\program files\roxio\media manager 10\emailwizard.dll [PX5: 707F4862F0D0053A29B2058958B04400CC029D3B] [G] c:\windows\system32\wavemsp.dll [PX5: B64AEFBF00ED9F4630D7037ED73B4700D5E14D01] [G] c:\program files\pinnacle\shared files\filter\pclemp4filereader.ax [PX5: 744A7706005958D9006C02A1BA760B00DF8010F3] [G] c:\windows\system32\rsfsaps.dll [PX5: 7852FD4B000DB44A70E1004BD83FAC00630E2CC0] [G] c:\program files\common files\roxio shared\10.0\roxio central36\tools\toolsplugin.dll [PX5: 8291F37EF0FC1037D9CC02130779B0004821C1A3] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdvdcapture10.dll [PX5: D57255FEF0175DBF49C707D47DC83C00E5946756] [G] c:\program files\pinnacle\shared files\filter\pclemp4filewriter.ax [PX5: CCABC49F0068550F309002B001E1D80083AF8675] [G] c:\program files\common files\roxio shared\10.0\dllshared\fileserver10.dll [PX5: 2BD98947F0DE3FF7B91503EF409F8F0061AFF362] [G] c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\plugin\modemutil.dll [PX5: 4415E53100B5C118F01600B6502DDF00A6354E99] [G] c:\program files\pinnacle\shared files\filter\pcledvbox.ax [PX5: C2F1E9F1006E4052107F02D4C2E92900DEBF63CC] [G] c:\program files\hewlett-packard\sdp\hpsdpapp.exe [PX5: E9A25EEA523663B0E08F0C2849DCB9003242E0B2] [G] c:\program files\hp\dvdplay\kernel\avsettings\emeraldps.dll [PX5: B308707000CC8545703E002DDDE82A00B0108B12] [G] c:\windows\system32\licmgr10.dll [PX5: 5A13277B0017F6B9A0CA004ADFB08C00B692A7DA] [G] c:\windows\system32\regwizc.dll [PX5: A640AE390089DC2E12AD063FA47F0C00C558D477] [G] c:\program files\ahead\ahead\data\xtras\autoplaycancel.dll [PX5: F06153FE00BC8F6EA04B01A010461000D6F77D54] [G] c:\program files\java\jre6\bin\wsdetect.dll [PX5: 2C9736F100D9873AB0D8011AEA932E007FDB2A5F] [G] c:\program files\pinnacle\shared files\filter\pclecapture2.dll [PX5: 4BE12223008945149034014E85825C00F05BF46B] [G] c:\program files\common files\microsoft shared\translat\msb1core.dll [PX5: F4F2598F00A03A6180CB021F4588F00084A72F93] [G] c:\program files\yahoo!\messenger\yahoobridgelib.dll [PX5: 10B2F7D600267FCA104701D349CEC900C742D0FC] [G] c:\program files\common files\muvee technologies\030625\mvaxcapturer.dll [PX5: BFDBFCC25C33BC10406701FF40D30B00172BCDB0] [G] c:\windows\system32\hpgwiamd.dll [PX5: 3BA4952B009407F0400D04BC2F24A600E9ABDDC3] [G] c:\program files\microsoft works\wkthemes.dll [PX5: 8911954B00E561CC80AC03971DC89100EB74353E] [G] c:\program files\common files\system\ole db\vfpoledb.dll [PX5: 8ACA9D3A007E6DB8D0DC169483C61100D7FAFBC1] [G] c:\windows\system32\dx8vb.dll [PX5: 85B57C1900C7A5AFBAB812427ADEF500B5C3AAB1] [G] c:\program files\real\realplayer\rpplugprot.dll [PX5: 2DB4781D006E4CDE50CA01741CECC8008A462FD4] [G] c:\windows\system32\wbocx.ocx [PX5: EF66E10E55612F2D403E098CE5C86600EF325A68] [G] c:\windows\system32\dpnhupnp.dll [PX5: 6B413086009BA144EEDB00D42F1FF2009E01ECCC] [G] c:\windows\system32\browsewm.dll [PX5: F1851765000EDAD032A001F6A3697000C2BD8001] [G] c:\windows\system32\wmidx.ocx [PX5: E134329D00B9DEC55CF201F07D255400189B6BFC] [G] c:\program files\cleaner 5\cleanerps.dll [PX5: 30F05A4A00AE14407013002DDDE82A002517AFA5] [G] c:\windows\system32\mimefilt.dll [PX5: 783F8B4F00FEF2E94A2E006C372ADF00DEEC6460] [G] c:\windows\system32\dmsynth.dll [PX5: 8EBE141300A49781941E01011D0D0400D1C7B20C] [G] c:\program files\common files\installshield\driver\9\intel 32\idriver2.exe [PX5: DA1E51E10079C1F6A0BA0B7BDDC08400F462BC7D] [G] c:\program files\nova development\shared plug-ins\video\vfplugs.dll [PX5: EC968B593BB8043630D30B466E0E5D00034E1872] [G] c:\program files\common files\ahead\dsfilter\ndparser.ax [PX5: A7363C830098E90BE09F03E860B6FC00863A540C] [G] c:\program files\ahead\coverdesigner\coveredctrl.ocx [PX5: D92566EA00CD8CA7A02521D5DD8BE000388B2E2F] [GP] c:\program files\divx\divx plus directshow filters\divxdech264.ax [PX5: 27FDF9AF003DCDF79CF5070C4D7A35000FBF40B8] [G] c:\program files\corel\wordperfect 10\programs\wpwin10.dll [PX5: 9E3F0C002FFE2D3C30D06B5135BE7100C94076AB] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdsaudiostreamreader.ax [PX5: D1616E5EF02CB28189E5013B337EFC00C53576CB] [G] c:\windows\system32\msr2c.dll [PX5: E43A668400BF6281108D01C2519C87008FB08BE5] [G] c:\program files\yahoo!\common\yverinfo.dll [PX5: 994A9D892050847F3652012A3FA3DF0048AFA6CC] [G] c:\program files\common files\speechengines\microsoft\tts\1033\spttseng.dll [PX5: A08BB5020067859DD0D20B442CA355000B4A5240] [G] c:\windows\system32\mobsync.exe [PX5: 4D52F3B40049272530860233FE44EC00D4309BD6] [G] c:\windows\system32\ptpusb.dll [PX5: 74A9A95F00AD710F16F6003B3C2E0700BBD2030A] [G] c:\windows\system32\localsec.dll [PX5: EEC6FBA0007FBA696230032DD62B58003FDF9729] [G] c:\program files\pinnacle\shared files\filter\movieboxusb\usbdvr2splt.ax [PX5: 703984E200B3576B800701AB63BF4100801B54B7] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsmemoryprotocolhandler.dll [PX5: 434F8179F018C90DB92900E2B68A6700BD96750F] [G] c:\program files\hp\digital imaging\bin\hpqss001.dll [PX5: A32E13A7009BBC2ED08A02EF075AE200CF5C41E2] [G] c:\windows\system32\wiaacmgr.exe [PX5: C2DB3C9D00C5BCC69EC506AB3C28860024815F5A] [G] c:\program files\google\google desktop search\googledesktopactions.dll [PX5: B8459F440094611C0A7B01F699858500FB0F9CE3] [G] c:\program files\hp\product assistant\bin\hprbevst.dll [PX5: 8C29B62E00929775A0C906C4E111350060ACB206] [G] c:\program files\common files\roxio shared\9.0\divx\resync.ax [PX5: 16207B9810AAAE1796F203ED5E32D10022E96B0D] [G] c:\windows\system32\itss.dll [PX5: 0A21EE5E00870FFC18C502B721C1FA0018ED15B1] [G] c:\program files\hp\digital imaging\bin\hpqeps.dll [PX5: DB95A0150005747E80A6002DDDE82A00D3E4DEDA] [G] c:\windows\system32\osuninst.dll [PX5: 01E868D100F5E46708C7011C3332BF0077FBBA82] [G] c:\program files\macromedia\flash 8\flash.exe [PX5: 9D81061E0094C6EF908D013D02D10301BC91663C] [G] c:\program files\google\google desktop search\googledesktopssd.dll [PX5: 3B033E17008D3E0462D6029E991A7B0079F540C9] [G] c:\program files\common files\ahead\dsfilter\neaudcd.ax [PX5: CB20C40700381E7550B50227D1368500FFB4145C] [G] c:\program files\common files\installshield\updateservice\isuspm.exe [PX5: E81DEF0BA8537C7C22F903934ECDC4008A3BBF43] [G] c:\program files\microsoft sql server\80\com\replprov.dll [PX5: 526EEA2348800DE8627E03E26D82F200D1F7A63E] [G] c:\windows\system32\fpalsu.dll [PX5: 376C638A00A824DB903E00E2BE98E00051C9B096] [G] c:\windows\system32\mobsync.dll [PX5: A4BDE99C004978CA2A320307EED1C100F4D6CE51] [G] c:\windows\system32\swprv.dll [PX5: 7FD7EA2600B246091E7D02731DAFDF00171D0304] [G] c:\program files\common files\system\ole db\msolui80.dll [PX5: 40D48FDF49F03B4F6036035761C57D00DCC0DF79] [G] c:\program files\hp\common\hpscripting.dll [PX5: 40131F643800803226C1023F7D943E00AB4D1385] [G] c:\program files\microsoft office\office10\powerpnt.exe [PX5: E7C0DE1D78B6930028B95BDA1D0482009252A07B] [G] c:\windows\system32\safrcdlg.dll [PX5: 8297956F002BA0CFAAA600737D72B700434E4C09] [G] c:\program files\common files\system\mapi\1033\cnfnot32.exe [PX5: 09359019A0FBDD9A253C024F880678000BA53366] [G] c:\program files\hp\digital imaging\bin\mcpc\hpdimgmgrprxy.dll [PX5: AFC4E5AE007E8507F04E00D60E3FC8003057B30F] [G] c:\windows\system32\wbem\xml\wmi2xml.dll [PX5: EF7CB8DC0057DB54B28000BD0D18CF0084A9FD9D] [G] c:\program files\common files\l&h\speechengines\enut3s51.dll [PX5: 5FC97B7300E8A757E01C0061E56C4800A6C99450] [G] c:\program files\pinnacle\shared files\filter\dwaudionoisereduction.ax [PX5: 4CADBE9F007D797D60DA01CEEA0B0600CFD73DCC] [G] c:\program files\common files\adobe\acrobat\activex\acropdf.dll [PX5: AD37D8BB70DB309BA67C0997A39C4D0023DEAB9D] [G] c:\windows\system32\wbem\wmipjobj.dll [PX5: B7895AF1006DE363F64C00C7309A6800D3B7B3F5] [G] c:\program files\microsoft works\wkdstore.exe [PX5: A13D95FF000E96B460870119437AC100E2B8C402] [G] c:\program files\common files\microsoft shared\smart tag\mofl.dll [PX5: 27E94754A04F44D6C537034010C3E000B5B243EA] [G] c:\program files\roxio\videocore 10\videoqualitycontrol.dll [PX5: 2B150B86F069D92309CE01A3949E50008545274C] [G] c:\windows\system32\wbem\wmimsg.dll [PX5: 86309B52007BE4CFF08200AE1901AE002DDA1821] [G] c:\program files\adobe\photoshop 6.0\photoshp.exe [PX5: 4A46769A0023F6280046D3C5B9A5B700838E805C] [G] c:\windows\system32\qmgrprxy.dll [PX5: 0DA5F1D5001855564AE00045B6F4D40047415E3A] [G] c:\program files\common files\roxio shared\10.0\roxio central36\copy\copynow.dll [PX5: 8012E9D1F0A2327DE97204F2F58E8400F2A996B8] [G] c:\program files\common files\roxio shared\dllshared\cddbuiroxio.dll [PX5: A8B3EE09F8B8C439D58E0B10C61AED0035523E98] [G] c:\windows\system32\msrdo20.dll [PX5: 67AA238F00FF573D107A06423B4D3B005790DF63] [G] c:\windows\system32\rcbdyctl.dll [PX5: A286587600DDEBB8907A01ED5B8228009BB329FC] [G] c:\program files\common files\palo alto software\qpas4.ocx [PX5: 41EDB8A5004DF84FE09900E774461100A5D43E34] [G] c:\windows\system32\ieaksie.dll [PX5: 50C70C8300D1CD4D84B103D335B75200BB211557] [G] c:\windows\system32\wbem\wbemcntl.dll [PX5: 8D7F49AC00D3F333000A03BF831FE800E76BB560] [G] c:\program files\roxio\label creator 10\lctaskassistant10.exe [PX5: A343EBB7F02F49F129D714ECF9CC62006D60206D] [G] c:\windows\system32\msctfp.dll [PX5: 426E5B5A00901B960EA1010CDC6D5C00EE19182D] [G] c:\program files\common files\microsoft shared\dashboard components\10\msddsc.dll [PX5: D39B42C248D92A78264906E62373AC003ACCF7FD] [G] c:\program files\common files\microsoft shared\vs7debug\vs7jit.exe [PX5: E8DBC4BC004B0CC2F04A018E8776350092B974A3] [G] c:\program files\msn\msninstaller\msninst.dll [PX5: 54A551760027DA89789705EF9A4F8000D3A307AD] [G] c:\program files\hp\digital imaging\bin\hpquio08.dll [PX5: 6A823E9F00EBFA6E900A019A650ED60068CBF526] [G] c:\program files\pinnacle\shared files\filter\pclempegdec.ax [PX5: B839C47272108BFED04A0147E479C5005922DE2A] [G] c:\windows\system32\rdshost.exe [PX5: 3B301650002C3A8106AA01996BC31F003A32297D] [G] c:\program files\hp\common\hpesupport.dll [PX5: FF04437F708C9DFEE471012E686F7D00CE0F096E] [G] c:\program files\microsoft office\office10\vs runtime\sdm2.dll [PX5: 0326C42700179295308002DF2F472B008C14DB00] [G] c:\program files\roxio\audiocodeccommon 10\dsfvorbisencoder.dll [PX5: 240BA951F0552566315101D2FA70450080B4D008] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsresourceprotocolhandler.dll [PX5: 17ACACF4F09A5B6BC97D00115F88BB00938FCAF3] [G] c:\program files\hp\product assistant\bin\hprblog.exe [PX5: B3092B010005D45F30720177895519001E678EAA] [G] c:\program files\pinnacle\shared files\filter\dwqualitycontrol.ax [PX5: 9BB9C6FA009E58D6202001FFF1AC3B0056CF6CA8] [G] c:\program files\common files\microsoft shared\dw\dwdcw20.dll [PX5: F6CF9CD5C8B08B5A9E2C0040253F77004EB0E9F1] [G] c:\windows\system32\shgina.dll [PX5: ACB9127C001B83CB0ABA01636F7FFD001C17950E] [G] c:\program files\common files\roxio shared\10.0\sharedcom\apstagmanagementpane.dll [PX5: 11129FCCF0D3AC0B79F503DCA6DBD000630D5E23] [G] c:\program files\roxio\videoui 10\dsthemeloader.dll [PX5: 08286246F03A0375990402A4C2593400BAA7E914] [G] c:\windows\system32\diskio.dll [PX5: 428C03335148C144208103BDA8510F001D9B201A] [G] c:\program files\updates from hp\9972322\program\bwfiles-9972322.dll [PX5: 3625A3BA27C05E80B0E8002DDDE82A00C91E9EBE] [G] c:\program files\pinnacle\shared files\filter\pcleac3enc2ch.ax [PX5: 9A760CD400CB773BA04F02067942F9002858BBE3] [G] c:\program files\roxio\audiocodeccommon 10\dsfspeexencoder.dll [PX5: 65AE7543F0F3C84BF9F102EABBA614005464D7BB] [G] c:\windows\system32\inseng.dll [PX5: 13C9C990003EE4726A54016E271A5B00898097E8] [G] c:\windows\system32\com\comadmin.dll [PX5: 5D04557B0064277FFA9B0277786B7E006E93F097] [G] c:\program files\common files\sonic shared\sonicmc02\sonic7daac.ax [PX5: DF32864DF096609FD466023C4458A4008E878A41] [G] c:\program files\pinnacle\shared files\filter\pclecapturecirrus2.dll [PX5: 3A41DF3000FF43ABC0ED04ACAF2590002D74F2F5] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpssupportwia.dll [PX5: 1F4D63F5F09378C2A96B0187D2BA98000544F5AE] [G] c:\windows\system32\wbem\wmipicmp.dll [PX5: 6C9F553700A4D4C926E201B88C8BD900CC7CB2E9] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsalbumobjects.dll [PX5: 5DB7552CF0EE801F6904010BDEAC3A006CB4CECB] [G] c:\program files\hp\dvdplay\kernel\movie\clvsd.ax [PX5: 43DCF3FE00F9AB80F02D07DCC85D5300BAF222D3] [G] c:\program files\adoragei-sal\adorage-dshow.dll [PX5: 20475E2A00237D9C20360139C4B3D200D711FC1B] [G] c:\program files\roxio\audiocodeccommon 10\dsfanxmux.dll [PX5: 5CE520F5F012E762498601764383BB004DC518DA] [G] c:\windows\system32\wbem\wmiprvse.exe [PX5: E873D435009B6F67547D03755F885300C4888BFB] [G] c:\program files\roxio\photosuite 10\ppscropping.dll [PX5: 3A6BC592F0B9404EA9A902DF4AFB65006B10618A] [G] c:\windows\system32\iasrecst.dll [PX5: 0BB9B0A2000B38F2281602FCD6B1C000F49F485A] [G] c:\program files\quicktime\qtsystem\exportcontroller.exe [PX5: E73D87D300C4566AA0720196FE52E0004B65B9BC] [G] c:\windows\system32\wbem\policman.dll [PX5: 67D91F6B000D37AD6AF801EB0041C0000027BBED] [G] c:\windows\system32\asctrls.ocx [PX5: 95C9083B00805FBFC00A016EC565D8000D6358F0] [G] c:\windows\system32\nctwmafile2.dll [PX5: D0F6F04200DF48D400B103ADC56B02008AC36952] [G] c:\program files\smartsound software\quicktracks\smartsound.dll [PX5: 4358CD860015B4F2D0113E4557E5B30047FB8CEA] [G] c:\program files\hp\digital imaging\bin\hpofsd08.dll [PX5: CA0C7269008FDCA8402C01E6CAAE1F00E683EBAC] [G] c:\windows\system32\wbem\stdprov.dll [PX5: C834439F00A638F85228012F166D5E000720158E] [G] c:\program files\microsoft sql server\80\com\repldsui.dll [PX5: 37390086482EDEA382F30035E1EE2F00D13080CA] [G] c:\program files\common files\speechengines\microsoft\spcommon.dll [PX5: 087B3A5500DCA63F306901D09242D4003C6B8A7F] [G] c:\program files\roxio\videocore 10\mvwcdsutil.dll [PX5: 1E788F7AF012EFAD4986020BDF4CEC00F62CC495] [G] c:\program files\pinnacle\shared files\audlii.dll [PX5: B1014524004F1FCC704A042B9C58220090F84351] [GP] c:\program files\divx\divx web player\npdivx32.dll [PX5: 424D1C4800BBC41B54C9142E0C9A9E003ECB6537] [G] c:\program files\windows plus\audio converter\acplugin.dll [PX5: 18EAF40F00B8EA698CE500663B3418008B35C89F] [G] c:\windows\system32\iasads.dll [PX5: 0707129F00D6D161A22B001D5B53B6003FF5633E] [G] c:\windows\system32\dmdlgs.dll [PX5: 3105B99F00BAF0002EB00419B89B670052486D3F] [G] c:\program files\microsoft works\wkwzlh.dll [PX5: 845CF0EA000B223D301101254EA07F00464E74AF] [G] c:\windows\system32\srclient.dll [PX5: 71E33BCF0057017A086001606F1A570089E4A25D] [G] c:\windows\system32\dxmasf.dll [PX5: AF266B9036AB97CE9C7407822E95930005B140E2] [G] c:\program files\hp\dvdplay\kernel\movie\cldemuxer.ax [PX5: FF06B22200403931D0240204EAF8DB00A62FBA1F] [G] c:\program files\smartsound software\quicktracks\sdsreader.dll [PX5: 8728F62A002FF4E740BA01DE16932800C820EBCB] [G] c:\program files\hp\digital imaging\bin\hpqips08.dll [PX5: 36BEB7F3004B3813802A002DDDE82A0048788C75] [G] c:\windows\system32\dsprop.dll [PX5: AA9C293E002CCA4C2C950280CBDE3100077902AB] [G] c:\windows\system32\iassvcs.dll [PX5: C659098500E4AF78E81A00B234256400F4B056CF] [G] c:\windows\system32\mpeg2data.ax [PX5: 3F4ADDA400EEB099F64300C8460C9800BF10DAE5] [G] c:\program files\common files\hp\memories disc\2.0\hpodmpv.dll [PX5: 3C10E6CC00A8C77A10E501BF665EA20000F25E3E] [G] c:\program files\common files\business objects\3.0\bin\saxserialize.dll [PX5: D355F39A003B75BF409303621025DC00EE2D92F8] [G] c:\program files\yahoo!\common\yunload.dll [PX5: 9C38D15B180627D00E4C01C354256C009EE96214] [G] c:\windows\system32\olsctrls.ocx [PX5: 1421204A0072787A82B40022D3092400A0F182D7] [G] c:\windows\system32\iasnap.dll [PX5: 3647B150004A5A48F4220081BB0F4700B123089D] [G] c:\program files\common files\real\update_ob\realsched.exe [PX5: A67AB29D284A1E55D6D90282BDCACF00FA95DCA6] [G] c:\program files\pinnacle\shared files\filter\videoinfochanger2.ax [PX5: BA09678A0006B6A0106902F9E436FA0066414FE5] [G] c:\program files\microsoft works\wksbdp.dll [PX5: 40EFEA6500D7DC1F4002033F61CFD400EB3DAA3C] [G] c:\windows\system32\wbem\mofd.dll [PX5: 649B0937005951EFE4F30129C389940020D22D22] [G] c:\windows\system32\portabledevicewiacompat.dll [PX5: D2E3B242002CB58E04C60258AB63F000394DEAA5] [G] c:\windows\system32\iasrad.dll [PX5: 8448F38F0009FFC5D43F018317C1B40036D81C72] [G] c:\program files\hp\digital imaging\bin\hpofxx08.dll [PX5: 6C02ABD400015B9D303804783E5BA70087D21722] [G] c:\program files\smartsound software\quicktracks\directqx.dll [PX5: 06E4A16C007D31F2702601B0C3EB5C0042FBD287] [G] c:\program files\roxio\photosuite 10\ppsedgefading.dll [PX5: 7181DBEBF08FD8AE09B202F0F254E30092801F3E] [G] c:\windows\system32\iaspolcy.dll [PX5: 822365B000302CE6469200C1C5E1D100519E754E] [G] c:\program files\hp\digital imaging\bin\hpqcob08.dll [PX5: 94AD120F004383E1D0EB0001B8D1FE00289A9627] [G] c:\program files\roxio\photosuite 10\ppsdropshadow.dll [PX5: 97786698F09F2C5F09B7024B355A7F00DEB57DD0] [G] c:\program files\malwarebytes' anti-malware\ssubtmr6.dll [PX5: 98897C80B05A5F79AE280051E4E68100ADC237DC] [G] c:\program files\common files\installshield\driver\1050\intel 32\idriver2.exe [PX5: 1243052C00FFE030D0360BDFC20A2E007526260B] [G] c:\windows\system32\iashlpr.dll [PX5: 0E810F7F002E3AFB7E1800597A1D760037B8BA38] [G] c:\windows\system32\upnpcont.exe [PX5: 732DC360009AE473421600EB569A3800793D17F0] [G] c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\plugin\uploadhsc.dll [PX5: B02C6FA2002C9006806E0050B8F8230024844EBB] [G] c:\program files\common files\muvee technologies\030625\s00021_angelic.dll [PX5: 58BDB1BE009AF8B4704507054ADAD4007BBA08FE] [G] c:\program files\pinnacle\shared files\filter\timefixer2.ax [PX5: 38C416F5000832FEB06001481A8F010070BF11FC] [G] c:\program files\google\picasa3\picasa3.exe [PX5: 55ABA3DB3834B86BD607897985D815004D74E032] [G] c:\program files\hp\digital imaging\bin\hpofxm08.exe [PX5: 2325C487008E63347071033C72EEE20049E8694F] [G] c:\program files\common files\microsoft shared\mspaper\mspcomn.ocx [PX5: 3A113102107F498761B10167AB16B30032869BB4] [G] c:\windows\system32\iasacct.dll [PX5: CC9BC22300BA3D115CA000DF52CEBA00411A050D] [G] c:\program files\hp\digital imaging\bin\hpocxi08.dll [PX5: CCB6A67B00E4C0C5203804254A623C00B8A6CEFD] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsnavigationbarcontrol.dll [PX5: 095310F0F0771082590C038B8B84B3004974231C] [G] c:\program files\microsoft sql server\80\com\rinitcom.dll [PX5: 5B09180348ABC14462D0049F0B6857007E482541] [G] c:\program files\common files\palo alto software\pas4.dll [PX5: F1E56A5F00F49C9EA09700AA24CBB8007ACA3DF7] [G] c:\windows\system32\wbem\wmipsess.dll [PX5: E372089B0064B32FA22E0001A92AFE00A8E58DB3] [G] c:\windows\system32\iassam.dll [PX5: 328836B6000300C5524801A5E490D30090BB0D1E] [G] c:\program files\common files\muvee technologies\030625\quicktimerenderer.ax [PX5: 89F0378700BB5C5B20200270AB680600AD4B9561] [G] c:\program files\common files\hp\memories disc\2.0\leadtools\lcodccmp.dll [PX5: EEBE687500B88827E02505E863DAAE00D7353253] [G] c:\program files\pinnacle\shared files\filter\atllightplugin.dll [PX5: 1ECD0B276A424119F05401310E04B3004FD0B87F] [G] c:\windows\system32\msstkprp.dll [PX5: 4C19220000D32D2B70E801964487050083D5F79F] [G] c:\program files\adobe\reader 8.0\reader\acrordif.dll [PX5: 20C64FF5704AE3C7A6A70114951155004C1B18C1] [G] c:\program files\microsoft office\office10\addins\outlvba.dll [PX5: 379CF325A04F48B5C52600BC785B0A0073C4A166] [GP] c:\program files\k-lite codec pack\filters\dcbasssource.ax [PX5: 2477275E00856BF0C046039593115B00FE8A54F0] [G] c:\windows\system32\dmband.dll [PX5: 3141AC59004B02A6707A00202296AA0088A14A58] [G] c:\program files\microsoft office\office10\html\htmlmm.ocx [PX5: 8E3450FC0048C58DB0F4014BCB2C3D00C02CDDE0] [G] c:\windows\system32\dfrgntfs.exe [PX5: 077D0DDF00872D239A40018DB7995A00D6D2AA83] [G] c:\program files\hp digitalmedia archive\dmascheduler.exe [PX5: 7923B2560037F1BB602D0171BEEB300031ACA102] [G] c:\program files\msn\msninstaller\msnsign.dll [PX5: C197BFF5005C6EA07A770C0D0B2D7400C1E43213] [G] c:\windows\system32\msmask32.ocx [PX5: A4C51309C86D3EC58A6C02150B3345005D63AD87] [G] c:\program files\microsoft sql server\80\com\impprov.dll [PX5: 653A50655081D81E9237011069E9630062E0B171] [G] c:\program files\quicktime\quicktimeplayer.exe [PX5: 5EEB609F3068178D05366A1DA2D3BC002A81E7A5] [G] c:\program files\common files\microsoft shared\proof\1033\msgr3en.dll [PX5: 7882062E00D6AF0A10B533E4BEEFB7006AE8CF4B] [G] c:\program files\hewlett-packard\sdp\hphttp.dll [PX5: AB0A9FA0518AB19340F1041CD1C8E500EB62EE65] [G] c:\windows\system32\dgnet.dll [PX5: 3C74ADCE00B9C619B257016A3E18BE00F683BDB6] [G] c:\program files\pinnacle\shared files\filter\framenotify.ax [PX5: 09D7F84000343FEEC0EB00955181F6002D6005CC] [G] c:\windows\system32\devmgr.dll [PX5: 4147604900218E24501C047823BC86003825B976] [G] c:\windows\system32\divxdec.ax [PX5: 19C37AFF001BB69C20050B1887AAB60083698D8D] [G] c:\program files\quicken\qwinver.dll [PX5: 871BA20C000C439F1012016E610CF50008ECA51B] [G] c:\program files\agentoffice\trueforms\csftxctl.ocx [PX5: 2F11D26600D21219254806A913B335005EEB45CB] [G] c:\windows\system32\wpdsp.dll [PX5: ED4D324700324D37703005F701D0C7002B5B47C4] [G] c:\program files\yahoo!\common\ydpctl.dll [PX5: B4CB6FF82851F02889150605C471F8004075A19A] [G] c:\program files\common files\microsoft shared\ink\skchobj.dll [PX5: AC960CF83B08CFC0B0BD01F856258B00766B511D] [G] c:\program files\pinnacle\shared files\filter\helper.dll [PX5: C169B2A200E6DC78E0AA001D067457000F6EB1CB] [G] c:\windows\system32\wmpps.dll [PX5: E6B45129003CEC1BFC7B014730057F002BBD4ED5] [G] c:\windows\system32\vbisurf.ax [PX5: 7AE1E03A001C613F78B900B546CF65007C22CF83] [G] c:\program files\common files\system\msadc\msdaprst.dll [PX5: 0C379E50006BD5A5108A03D2EA4407000B506243] [G] c:\program files\hewlett-packard\sdp\hpsender.dll [PX5: 7A42853855ACC495701905231A463800740645D6] [G] c:\program files\corel\wordperfect 10\programs\printengine100.dll [PX5: D994E4F94328369E80520BA1800A8700C879FE2A] [G] c:\program files\pinnacle\shared files\filter\pclecapturemarvin.dll [PX5: 3326C7EC00CEFBA7404E054A0D635B00ED725AD8] [G] c:\program files\microsoft office\office10\1033\msspc32.dll [PX5: C6C362D21042119D9D331AD302B5B2003C7314F5] [G] c:\program files\updates from hp\9972322\program\updates from hp.exe [PX5: D2F36D7727DB63ED9016002DDDE82A00A05FFB03] [G] c:\program files\common files\roxio shared\10.0\roxio central36\disc gallery\discgallery.dll [PX5: 47E3F32AF0961C28793904E2827C7F0054F9499A] [G] c:\program files\hp\digital imaging\bin\hpqmet08.dll [PX5: 250BFB90003F5785E07F009A025D3B00D8977A70] [G] c:\windows\system32\wbem\wbemperf.dll [PX5: DCA277C100362F1EA85A00F156346F004156A2AE] [G] c:\program files\roxio\audiocodeccommon 10\dsfspeexdecoder.dll [PX5: 30959D8CF0CF0D9E45CE02094090410092C62C5C] [G] c:\windows\system32\wmpeffects.dll [PX5: 548A9DB3000BDA3484EF04D4BC207400F90E1159] [G] c:\program files\microsoft works\wkshbsvc.dll [PX5: DC47A1EE00F9D06680620293E8A1F40039A4A93F] [G] c:\windows\system32\cdtextctl.dll [PX5: A1EB356300374C78F05F00E7FCC63500FA5394AA] [G] c:\program files\yahoo!\messenger\yacsui.dll [PX5: 4EB9DA1C002AB1E0B075048C149411006E80917C] [G] c:\windows\system32\rsmps.dll [PX5: 56E65247005353064A4B0072C5FE70005C94004B] [G] c:\program files\divx\divx plus directshow filters\dmfsource.ax [PX5: 32B496DF00EFF2E9107D06F28988A000E22379EF] [G] c:\program files\windows nt\accessories\wordpad.exe [PX5: B53B051100806242466F03954F618700D71262DE] [G] c:\windows\system32\dfrgfat.exe [PX5: 75253C8F0059506442A301BA2BF28000159B86F9] [G] c:\windows\system32\msnetobj.dll [PX5: C9EB170D00F0C6E7BE7802B9486BF200F1255905] [G] c:\program files\microsoft office\office10\nsrex.exe [PX5: 7B919BBC00F36E3FB6700F3D7E96AC00C4C5969B] [G] c:\program files\hp\digital imaging\docproc\dpeocrps.dll [PX5: 85B2A61100C57D267068002DDDE82A00B25505FE] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsformatloaderjpg2.dll [PX5: B8023A4FF04A0FB9292C03AC329A9A00499AE29C] [G] c:\program files\hp\digital imaging\bin\mcpc\hpzdevevnt.dll [PX5: 5AC88417007997385080012EAFB37800E48E7726] [G] c:\program files\roxio\photosuite 10\formatloadermps.dll [PX5: EC30C93DF0B22C65E9780076DB829A00BE9AEC6D] [G] c:\program files\interactual\interactual player\iarecord\iarecord.dll [PX5: 87E38F4E30D31DEA3757028E263251002DBDF618] [G] c:\program files\itunes\ituneshelper.exe [PX5: 6C58C424288F1612138D04760D35AD003D6B0262] [G] c:\windows\system32\catsrvps.dll [PX5: 30F47D4E003C04054E0A012B9C3B9400BA69AD3F] [G] c:\windows\system32\snmpsnap.dll [PX5: 23AC8A2F00D8428FC8D602500A1AC100FD5A9037] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\lo5 connector\oasisapi.dll [PX5: 7EE5C9AF003A9945D09901735664FF00D7520DCB] [G] c:\hp\bin\wshtools.dll [PX5: 1C9B73FD004CB59288C6024CF77895007311863D] [G] c:\windows\system32\scriptpw.dll [PX5: F107FFD4006D878628BF0031096C5000A72ECE1D] [G] c:\program files\pinnacle\shared files\filter\pclebenderaudioprefilter2.ax [PX5: F0F9008000FC256EA0D600D826C0C1005AE2D267] [G] c:\windows\system32\wbem\cmdevtgprov.dll [PX5: 07A58E30005F24F8B25000EB53E482002949D8A3] [G] c:\windows\system32\hlink.dll [PX5: A02AF27C008F66301C56016DC2DB0000296E8714] [G] c:\program files\common files\microsoft shared\mspaper\ocrps.dll [PX5: AAC1B36A105E4FFB617B004C478C0A00C85B4522] [G] c:\windows\system32\wbem\fwdprov.dll [PX5: 22A2C93F004A5993D0FD00464577A6002B154233] [G] c:\windows\system32\wbem\updprov.dll [PX5: 05D1AD1C00E7B00AC66B015A2D62D50032C814B4] [G] c:\windows\system32\smlogcfg.dll [PX5: A6C5A354006D41478A3405F2E6BCCF00FB9C88E6] [G] c:\program files\roxio\videocore 10\vcgoutput.dll [PX5: 4C39AF3BF031114019620C02978BE3000EE84237] [G] c:\program files\roxio\photosuite 10\simplecalendarobject.dll [PX5: A65BCAF5F06E9C7DC99403BC7D162B006D1ABB7A] [G] c:\program files\roxio\videocore 10\vcgproxyfilemanager10.exe [PX5: D31568D2F0D61D2B39E807D89767E4004B1BBB0A] [G] c:\windows\system32\wmvsdecd.dll [PX5: 47FFC6D6007D25DB1ADA15139A49CE00678D8B3E] [G] c:\program files\pinnacle\shared files\filter\mpegrender.ax [PX5: 37FB769000131BC52004012A9FBD8700530D81A1] [G] c:\program files\updates from hp\9972322\program\bwchelpr-9972322.dll [PX5: 3625A3BA27C05E80B0E8002DDDE82A00C91E9EBE] [G] c:\program files\updates from hp\9972322\program\frcom-9972322.dll [PX5: 3625A3BA27C05E80B0E8002DDDE82A00C91E9EBE] [G] c:\program files\common files\installshield\driver\1050\intel 32\idriver.exe [PX5: 1243052C00FFE030D0360BDFC20A2E007526260B] [G] c:\program files\updates from hp\9972322\program\frext-9972322.dll [PX5: 3625A3BA27C05E80B0E8002DDDE82A00C91E9EBE] [G] c:\program files\microsoft office\office10\webpage.dll [PX5: 60D109FA98821225D5AF0499242C950028708972] [G] c:\program files\common files\roxio shared\10.0\dllshared\dvdtranscode10.dll [PX5: 4BF3DA15F02E327999550B3529109F0044837D0A] [G] c:\windows\downloaded program files\dwusplay.exe [PX5: 3A28CCDA00D0922100A003924C0F17003373574B] [G] c:\program files\common files\installshield\engine\6\intel 32\ilog.dll [PX5: 0A2327E300D3D7F4408003C94396C100B91FD0C6] [G] c:\program files\common files\roxio shared\10.0\mpeg\lpcmsyncfilter.dll [PX5: 28B07F95F0ABF1BAD96802BFB7BD4B0066BD575C] [G] c:\program files\msn gaming zone\windows\zclientm.exe [PX5: 484AFA9C4901D7FD901900C56DBD8D00A42075D0] [G] c:\program files\yahoo!\messenger\ypagerps.dll [PX5: 0FBB7FCF0018073EC67000F94F0E560013B8FE8A] [G] c:\windows\system32\hpreg.dll [PX5: E3C32B7100891D52B06E0046398605009FBC0322] [G] c:\program files\hp\digital imaging\bin\hpqeaio.dll [PX5: 69720055006F1C9230C302865E2A2D00A6BF904D] [G] c:\windows\system32\dswave.dll [PX5: 7B6B2CB60024781C4C5D00F5ADA520003016861B] [G] c:\windows\system32\wmsdmoe.dll [PX5: 4F39CB0200BB33B6C20D01854ADB4D00E4348A29] [G] c:\program files\roxio\videocore 10\texteditoragent.dll [PX5: 03BFEAA9F0AFD01C39B00A4AA07EB200A6AE0EED] [G] c:\program files\common files\microsoft shared\msdraw\msdraw.exe [PX5: A99D04D20080581EFE6508467F2C51001BE9134F] [G] c:\windows\system32\popup.ocx [PX5: 3E89F02500CE2D9572270070F4AA820019C8A34A] [G] c:\program files\common files\installshield\driver\9\intel 32\objpscnv.dll [PX5: 4ACDE0C900B3D8AD800B002DDDE82A009BCFF4A4] [G] c:\program files\microsoft sql server\80\com\replagnt.dll [PX5: 26A62FF64866494A7252002DDDE82A0087E3BAAD] [G] c:\windows\system32\msxml6.dll [PX5: 26A5643B1018344B1BD11430AF170B00DBCF21B7] [G] c:\windows\system32\wmspdmod.dll [PX5: C4718CD300A7DDB636FA0903D8D6320053F8099A] [G] c:\program files\interactual\common\video\iasigma.dll [PX5: 4276DCA830AC203BE70B0323C8D117006F0021C8] [G] c:\program files\common files\muvee technologies\030625\mvimageanalyser.dll [PX5: 8B05C5AD5B1D49BBE01C000A74BE460080BD8B14] [S] c:\windows\downloaded program files\dwusplay.dll [PX5: 2758208700BA5B7B6091002DDDE82A0072A43B47] [G] c:\program files\pinnacle\shared files\filter\dvc120\usbdvr2splt.ax [PX5: 703984E2004B0FFF80D001B8880DBE00A7B397AC] [G] c:\windows\system32\vss_ps.dll [PX5: D7E8E1D400C4248C424B0042559E4100E04D4ECA] [G] c:\program files\common files\muvee technologies\030625\s00122_wedding4.dll [PX5: D8510F770081A30C40D807BF3782430093ADFD5C] [G] c:\windows\system32\inetcfg.dll [PX5: 7F1E3E9C000682323090048696389C007DAD9AF1] [G] c:\windows\system32\ciadmin.dll [PX5: 0208A6CE00F19E847E8B020DECF21600B5039E56] [G] c:\program files\common files\muvee technologies\030625\mvplayer.dll [PX5: 7282F567534F1B0D70940372DEC26500D92AD683] [G] c:\windows\system32\nctaudioplayer2.dll [PX5: 5C3EECBA00F72CFCD0A1042DECE54100ADD7977A] [G] c:\program files\windows media player\wmlaunch.exe [PX5: 9E7745A8007A53E9B01C03857CBF3F009F4DC94B] [GP] c:\windows\system32\rlmpcdec.ax [PX5: 0D7FF2BD002C8C249400005ED19196006049CE38] [G] c:\windows\system32\dpnhpast.dll [PX5: 20539B6800E80C688A2000EF7A7F0B00B9005D41] [G] c:\windows\system32\mras32.ocx [PX5: 43E311AAB0551F83DDAD00F76699EB00EB0BE400] [G] c:\program files\windows media player\wmpnssci.dll [PX5: 935C50760044A91F067B0356F18E580027F67C66] [G] c:\windows\system32\stclient.dll [PX5: 0DF4125A0074B0E6D493007DA4DCC700FA3CC1C4] [G] c:\program files\roxio\videocore 10\rxerrorreporting.dll [PX5: 0EE50B99F0586B16A9D7019B57736C00C2A5B33D] [G] c:\program files\common files\microsoft shared\works shared\wkproof.dll [PX5: 8FEA98560049620C50E2027666A8D0008FFB31F5] [G] c:\program files\common files\system\ado\msadrh15.dll [PX5: CA34887B00711F8BE03600D7022C7800B44689F8] [G] c:\windows\system32\wbem\krnlprov.dll [PX5: D03B8C1600B1D3326099005E45820A00A630A14B] [G] c:\windows\ime\mscandui.dll [PX5: 74F5014E0016E69F5C960339D1DA2B00B3A92189] [G] c:\windows\system32\omano.dll [PX5: 7FD4F4A9002DD9B1A00F003493E6E1009EE6909E] [G] c:\windows\system32\fde.dll [PX5: A0028EF800D7EF56CCF801EF9310F200DCC14500] [G] c:\windows\system32\clbcatex.dll [PX5: 1896201F0038E3E8AE610111D443D6008BD3E9A7] [G] c:\program files\microsoft office\office10\outlph.dll [PX5: 1FDF9228A0CDC8EEC54D011F6916F500193F4BDD] [G] c:\program files\common files\installshield\driver\8\intel 32\idriver.exe [PX5: F649E1B200FEBF1EE08709FE629EF8001C02EB84] [G] c:\windows\system32\mspmsp.dll [PX5: B6590F2D00342158AE5902FC435E8900319F6A2F] [G] c:\windows\system32\gcdef.dll [PX5: 3AF230750026E7F12C9C0194D989DD004A1873AB] [G] c:\program files\microsoft office\office10\rxcbprxy.exe [PX5: 2E30B8C000C9C6907CB2005BAF507800CA3FF902] [G] c:\program files\pinnacle\studio 9\programs\deko.ocx [PX5: 5769F2FF00FAA46A101622E4CD1D5C0001FFABFF] [G] c:\windows\system32\divxmedia.ax [PX5: E2CB3C2891578685600505BAD0C4FF001398A24E] [G] c:\program files\pinnacle\shared files\filter\msrepair.ax [PX5: AC47BF6F00A1F199C0DF0078C420730002F479EB] [G] c:\windows\system32\mscal.ocx [PX5: 8A135F2BB84D5EC7B3130197C2950D00EC640CEB] [G] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomhp.dll [PX5: 460154F3F0FA9D8C49500BD6892868002BB3E099] [G] c:\program files\roxio\photosuite 10\ppsformatloaderpzp.dll [PX5: FB731B0DF0355C2ED9E600EDD5AA7E0029486AA5] [G] c:\program files\common files\roxio shared\dllshared\rcsl.dll [PX5: 3038E478F09B714DD9100291310F2900C2BC6A31] [G] c:\hp\vinetlink\inetctrl.dll [PX5: 7873F31D00843BA5707D006557952B003515C8CC] [G] c:\program files\java\jre6\bin\npjpi160_10.dll [PX5: BD942C6B986EAB3905C702A1716BEA008F1AC07F] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\plugins\auth\secldap\secldap.dll [PX5: 81DA774900CB4BA340560F7A2226F7008A48CAD8] [G] c:\program files\common files\microsoft shared\web folders\pkmcore.dll [PX5: 5BB1F98800750BEB700702F43A2149003C8E671F] [G] c:\windows\system32\toc.ocx [PX5: 7D29A842008780BF20C702EAFF778A0016ADD072] [G] c:\windows\msagent\mslwvtts.dll [PX5: 5AD7B62500B7E2579CAC00A5FEB9B7002F8F22DC] [G] c:\windows\system32\dmdskmgr.dll [PX5: 616AE7E4005D0E71104303E527EDAC00C1655416] [G] c:\windows\system32\dmloader.dll [PX5: DDB0ED330043283D8CBF00F468A939005BA4C354] [G] c:\program files\yahoo!\intellisync for yahoo!\cxlserver.dll [PX5: 94DC549A0072F0FA905900E4FF5F03008983B015] [G] c:\windows\system32\comrepl.dll [PX5: 6E073C2E00B3268A7E8801D2CEA0F700CC5ED1B5] [G] c:\program files\hp\product assistant\bin\rbsdb.dll [PX5: 657C619700DD7CF3A08A05EBA7D4CA00DC0D22C2] [G] c:\program files\interactual\interactual player\iamce.dll [PX5: 0AB04FD510712A993791022068B3C800F44585B7] [G] c:\program files\piolet\smartui2.ocx [PX5: 4AC9D24110450FFD23730D126EE8F00083566F80] [G] c:\program files\common files\muvee technologies\030625\mvshell.dll [PX5: 853CFC975751DDE9103301D58E3AFD00F5CE1C4A] [G] c:\program files\yahoo!\messenger\yahoomessenger.exe [PX5: 6A05C581F09A5E9F24643A4A6D13FD0038FBFF7C] [G] c:\windows\system32\mmail32.ocx [PX5: E479A88EB013A2FF85A301C14CA40200DC3C0CDB] [G] c:\program files\hp digitalmedia archive\eafunctions.dll [PX5: 7EBB52D000A6B9B1D0B703F5D4A2FA0056EBA64D] [G] c:\program files\yahoo!\companion\installs\cpn\ymeremote.dll [PX5: 13BBF58940CD16902652036985F741003EA21001] [G] c:\program files\common files\system\msadc\msadcf.dll [PX5: F1603ECA00D2EAACF07700F3092AFE005448B7BC] [G] c:\windows\ehome\ehkeyctl.dll [PX5: 9DD53BB100874F98B8C0020623707E000D5991A1] [G] c:\windows\system32\fxscom.dll [PX5: D956CB4E00A22F7A1A160129A00D6E0099172965] [G] c:\program files\common files\system\ole db\msmdcb80.dll [PX5: 67FA553E476694A640F103A17C3A0C0029DD68E5] [G] c:\program files\common files\microsoft shared\works shared\wkcalps.dll [PX5: 92FA2040004E82C522910070D3288A0049A2B8C1] [G] c:\program files\common files\muvee technologies\030625\mvanalyser.dll [PX5: F55349F055FD0AB120DB036DE025AA0017ECDBA4] [G] c:\program files\roxio\videocore 10\vobformatter.ax [PX5: 317C4805F056B440390503F0FF5373004D3DD39A] [G] c:\program files\common files\system\msadc\msdfmap.dll [PX5: 23B9A493002AF5A4901C00ED139A0B00BF66B1E9] [G] c:\program files\real\realplayer\rpshellextension.dll [PX5: F7C9227600A753FC808E0194EC899E00F3BE140B] [G] c:\program files\updates from hp\9972322\program\hpclientext.dll [PX5: EC26C5B30053CA31F0960134EF23F300AD443528] [G] c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\plugin\scdmi.dll [PX5: 71C9BEB1009008F9A03C00C3DAC10F008BEBFDD4] [G] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomads_cirrus.dll [PX5: 93B260B8F05E6E2559F10B0D67D1020053E5AAB5] [G] c:\windows\system32\rolodex.ocx [PX5: A429542700622F3FB64D0986D710D0007669B77F] [G] c:\program files\avi mpeg video converter\nctmpegfile.dll [PX5: 310DE73C00C851B1609009702355AA0091CAF787] [G] c:\program files\common files\microsoft shared\works shared\wkscal.exe [PX5: F1231AF800CD03B4B04B01619341820041CE4701] [G] c:\windows\system32\nusrmgr.cpl [PX5: 7020E25A0005ED75EC44031D035517007EC30398] [G] c:\program files\common files\sonic shared\cinemasteraudio.dll [PX5: 5EE53B23F021CE6A4954185F8EB007009A83CDBA] [G] c:\windows\system32\pngfilt.dll [PX5: DD996BD000B62F17AE70009830B2BD0048905DC3] [G] c:\program files\common files\tivo shared\directshow\tivodirectshowfilter.dll [PX5: 71C1CE01001AE83F6E4205AA79EDDA000947170C] [G] c:\program files\pinnacle\shared files\filter\mjpgcompress.ax [PX5: AD80C22C00DAE95C90F5015356402E003FC76C07] [G] c:\program files\common files\microsoft shared\web folders\pkmforms.dll [PX5: 24470013008D44A7A03D01EB5DC531009C0F77DA] [G] c:\windows\system32\dxdiagn.dll [PX5: 0A1977000095D9C4407C2003794DA200C618DC5C] [G] c:\windows\system32\servdeps.dll [PX5: B17F70F400C1C7A8DC12003BB4EFCA00F9518D44] [G] c:\program files\hp\digital imaging\bin\hpqxml.dll [PX5: 0A07F1870033F498E0040134CFAF2800D323506C] [G] c:\program files\real\realplayer\rpshellsearch.dll [PX5: FDEC2B5B507CF9F6A880004AA687A800173F47C4] [G] c:\windows\system32\licwmi.dll [PX5: F2C8C784000561C9E645009574D5A700BCC09142] [G] c:\program files\steinberg\asio\asiodxfd.dll [PX5: 54BC2EF100C4787AC0A002604AC24300BFB4B347] [G] c:\program files\outlook express\oemiglib.dll [PX5: A09BB0B1001F14858AA600C8E42BA100429AE9B9] [T] c:\program files\common files\installshield\driver\8\intel 32\objps8.dll [PX5: 2A48E11F00F138858011002DDDE82A0068A7AC00] [G] c:\windows\ehome\ehjpnime.dll [PX5: 4D86958400D9AA17B07B00051A9A890031DAAAA4] [G] c:\program files\common files\microsoft shared\works shared\wkcalac.dll [PX5: 7498606B00EA63B560840B3B8DBE7E0008346E02] [G] c:\program files\common files\microsoft shared\textconv\wkcvqd.dll [PX5: AAC815423EB9E9DBD0200B927AE7D50086532E20] [G] c:\program files\corel\shared\writing tools\10.0\wt10li.dll [PX5: 63D1BEF3380EE7DC90D70C02B674060033DB1621] [G] c:\program files\hp\digital imaging\bin\hpotradd.dll [PX5: 68C2A34300F2B346D0D90072DCCD1600325543B7] [G] c:\windows\system32\wbem\evntrprv.dll [PX5: 389A3A5500658967562F0034029ACC0051FF4AA0] [T] c:\program files\common files\installshield\driver\10\intel 32\idriver.exe [PX5: 3F3EB5ED00EB0867A04D0B1622AF9E00AC3A3241] [G] c:\program files\pinnacle\shared files\filter\colorconvert.ax [PX5: 54B15592007A91FA904100B6CDB5B50041AFBA49] [G] c:\program files\windows plus\audio converter\acshellext3.dll [PX5: 925FD3A10050ED848ECC004264910100BFA12C07] [G] c:\program files\corel\shared\writing tools\10.0\wt10cbe.dll [PX5: 4EB40B803A966DA0801504BBD55B6900843967A6] [G] c:\program files\common files\system\ole db\msolap80.dll [PX5: 56DB9CCE5531A9F080071E868C97B100D697C912] [G] c:\windows\system32\wpdshextautoplay.exe [PX5: C95609E6008935F34410003E99D0D200B76BD34A] [G] c:\program files\common files\business objects\3.0\bin\saxmlserialize.dll [PX5: FD8A0456006F19C81EBD02752D1454003442E050] [G] c:\windows\system32\setup\fxsocm.dll [PX5: C4FABEC0005897320683027D92702C00990DBFE1] [G] c:\program files\adobe\reader 8.0\reader\acrord32info.exe [PX5: 3A30B7D77806BAD93866002FA06503007203D766] [G] c:\program files\common files\muvee technologies\030625\s00135_vacation5.dll [PX5: 91C9C42D007E414F60C6075FB586A300A5A22E6B] [G] c:\windows\system32\divxsm.exe [PX5: D7B3B29D00B29D3A007B084C3F882100ED1DF419] [G] c:\program files\pinnacle\shared files\mpaprov.dll [PX5: 473CE38D00D3B6EE20DC03A5AA82C80083221704] [G] c:\program files\hp\digital imaging\bin\hpqdirec.exe [PX5: 15E4A37600496BEAE0E003C88F888F00BA25E3D2] [G] c:\program files\corel\wordperfect 10\programs\cdrpdfui100.dll [PX5: 1273D9700066FD7D9072042AF8FDC7004E902F36] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsthumbcache.dll [PX5: 3ECBC3D9F0C08CE5296E014EC3106C001F513FB8] [G] c:\program files\corel\wordperfect 10\programs\prwin10.exe [PX5: 567B348A337F2E1100B94EB732FF4A000E0C85F5] [G] c:\windows\system32\sdpblb.dll [PX5: F1B42E0500755E8BFCFC010C1C8AD700C974B73E] [G] c:\program files\common files\microsoft shared\textconv\wkcvqrtf.dll [PX5: 86D6C4284163718EE08B015A9CD58000BFC5838C] [G] c:\program files\common files\microsoft shared\works shared\gtv7.dll [PX5: BF35E15B00640139902501A4AB06A40058A75189] [G] c:\program files\hp\dvdplay\kernel\movie\clnavx.ax [PX5: 22BC6796009C00FBA0D10ABE67FBD70072D335CD] [G] c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\plugin\modemcheck.dll [PX5: 06C6815100DCCFF480FF0282176B8F009D2C9B30] [G] c:\program files\common files\microsoft shared\msinfo\offprv10.exe [PX5: 8214325400EE7B6E00A901A657E69000EF88744E] [G] c:\program files\interactual\common\video\iarouter.dll [PX5: CF73806B30CF8481BDFA04B7632A9E00569A583F] [G] c:\program files\yahoo!\messenger\ywcvwr.dll [PX5: 13DF06A9003B9133501E033BE2A06E0012D1C207] [G] c:\program files\pinnacle\shared files\filter\pim1compress.ax [PX5: A722493C0025B269606E0165DB41B600C3ADBE7B] [G] c:\windows\system32\safrslv.dll [PX5: DB8AD7D60063DEADB20B00DBF6C09600FEA9910E] [G] c:\program files\interactual\common\video\video.ocx [PX5: 6D6E3761283FFDD46B0101D0A4F2C7004D585C08] [G] c:\program files\common files\installshield\driver\1050\intel 32\objpscnv.dll [PX5: 4ACDE0C900B3D8AD800B002DDDE82A009D8A3B40] [G] c:\program files\internet explorer\ieproxy.dll [PX5: 34FDA5BC00E33FFA64210444AC259B00288399D3] [G] c:\windows\system32\ils.dll [PX5: DB4CFE9400C8890D40AD0133535C2B00B22A4A27] [G] c:\program files\common files\muvee technologies\030625\mvtextinfo.dll [PX5: 809704F156BAEE39106D0166289161007338D516] [G] c:\program files\corel\wordperfect 10\programs\wpwin10.exe [PX5: 54AB91DD32852C85C0D8003A414FCB00147882BE] [G] c:\hp\kbd\keyroute.ocx [PX5: 06D3292C00FA0734904500BE8EE61E00F238F7C0] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\plugins\auth\secwindowsnt\secwindowsnt.dll [PX5: 968104CA0075A75DD0730729AFDE0800D1529B6B] [G] c:\program files\hp\digital imaging\unload\hpqhndun.dll [PX5: 8DDB716D0019E68C80B30247996D1F000DBBEA53] [G] c:\program files\corel\shared\writing tools\10.0\wt10cod.dll [PX5: AA72E07A3A1DB4D9B061025E3629BE00D76F97E9] [G] c:\program files\pinnacle\shared files\filter\dwalphatransform.ax [PX5: 6278A76E006DCFD4C0A2000281BCD50069B81158] [GP] c:\windows\system32\rlspeexdec.ax [PX5: 6980B1AA00576DE5CA6A00C7F8EE1600B24ACBDF] [G] c:\program files\roxio\videocore 10\dvdvideomanager.dll [PX5: E85326FAF0E1CD0229F80673895D0B00ED59F962] [G] c:\program files\hp\digital imaging\bin\hpqss002.dll [PX5: BB1E4DFA009910D3E01A02AF84109B0024045EA5] [G] c:\windows\system32\wups2.dll [PX5: 8F8648A158D15CF4A9FE004434B05300230EE2A8] [G] c:\program files\corel\wordperfect 10\programs\cdrpdf100.dll [PX5: BCB1961500FE4EE2B05B145004EEE300C07AFB80] [G] c:\windows\system32\syscheck2.dll [PX5: 4456D55A58F718873F5E0C0AE5FF4A00E262D854] [G] c:\program files\pinnacle\shared files\filter\iammixer2.dll [PX5: 6C6728940079F6EB70300172EE1F11008B7B387A] [G] c:\program files\common files\roxio shared\10.0\mpeg\mpeganalyzermgr.dll [PX5: 2E743BBCF08E52E1F94C00426A3DB400A8BDF046] [G] c:\program files\roxio\videocore 10\vcuselect.dll [PX5: BE77192FF096DFB8497B016958234E00D0362A37] [G] c:\windows\system32\wucltui.dll [PX5: 8A679F0A58AB3095F90D0438786EDD00EE35BF28] [G] c:\program files\adobe\reader 8.0\reader\acrord32.exe [PX5: 14B1D57F70D4C970368E05E929733300A0A3AB98] [G] c:\program files\google\google updater\2.4.1368.5602\googleupdateradminprefs.exe [PX5: 17E10199F014AEB07B5103C5D4228C00653B8185] [G] c:\windows\system32\hpotiop.dll [PX5: 516D018100CC2109D05E0A8F95E62600110DA4BE] [G] c:\windows\system32\iassdo.dll [PX5: F283E09C004FAB98C8B503CD05088B001940A9F9] [G] c:\program files\common files\muvee technologies\030625\mvdshowhelpvarmc2.dll [PX5: CD287F345C5C596C70E3011DD813C8007C70ED6B] [G] c:\program files\common files\system\msadc\msadco.dll [PX5: FF1F0531007F92A83045021CC36F7C00E132A854] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\act3 companion connector v3\ilxact3companion.fil [PX5: 647F668F004B8671106E049467AB6300AEF9B2E4] [G] c:\program files\microsoft office\office10\blnmgrps.dll [PX5: 4B5D13C4A017243BF58A008238898F008CECFB85] [G] c:\program files\common files\muvee technologies\030625\mvtextout.dll [PX5: C4071A915A6A2FD8A0B701F1061A43002D31E8B0] [G] c:\program files\microsoft works\wkwzlay.dll [PX5: 7FA1BFFA00D9595F302E017E85C5DD004ED277D9] [GP] c:\program files\divx\divx player\divx player.exe [PX5: 80A116F200E04AF5E4C42C1F2EB4820009BD04F0] [G] c:\windows\system32\ctlist.ocx [PX5: B0A46E8A008CB74FE0B502C764C58200D7964F82] [G] c:\program files\microsoft works\wkwpquil.dll [PX5: 9A3131AE00D3CDA250ED013FDE7AD300DC191798] [G] c:\program files\roxio\videoui 10\importv71.dll [PX5: FF0BF302F0FCE5C6291D019DF13FE4002F2F4F96] [G] c:\program files\common files\microsoft shared\translat\fren\msb1fren.dll [PX5: 787480BA005DD95D003801300F2B94007A2D8407] [G] c:\windows\system32\cfgbkend.dll [PX5: EE97183600D27D7D986B002DB95C1C00383B2BB0] [G] c:\program files\pinnacle\shared files\filter\pcledemux2.ax [PX5: DAF247E800EC9602404D0317AE3AA3001DA5B328] [G] c:\program files\quicken\qwapp.dll [PX5: 685D957F0075338B409F0330837D7E0083CABBE1] [G] c:\program files\sonic\mydvd\wiacom.dll [PX5: B257F83A0078DF62B09C017FA2F52D00D1558547] [G] c:\program files\nova development\video explosion deluxe\videxp.exe [PX5: 4180E1353257075530493EFCB39F8A006D93BEA8] [G] c:\program files\ahead\nerovision\nerovisionapi.dll [PX5: 83CC569900642D93905C04E1AE5EC90014EE5813] [G] c:\windows\system32\wbem\viewprov.dll [PX5: FFDAE6DC0094D67D028002D27BC18100C01BAC52] [G] c:\program files\hp\digital imaging\bin\hpqusg.dll [PX5: FE951143005F5072E0FA031D4C7B5B00FEE18202] [G] c:\program files\microsoft sql server\80\com\replprox.dll [PX5: F101CF9848A3E3BFE27C029FC5AD8F00CFC093D5] [G] c:\program files\roxio\videocore 10\vcgtemplatecustom.dll [PX5: 4FC68C41F07859CD69F10E2B42C2F40019E1C1AB] [G] c:\program files\common files\roxio shared\10.0\sharedcom\spaceindicator.dll [PX5: 757E2487F00E0E55192003B6880F19005ADE55E1] [G] c:\program files\divx\divx converter\mtw178.ddc [PX5: 323DE3F800C85A77E062004A1A8CEF00CBCAECBE] [G] c:\program files\common files\muvee technologies\030625\mvvanalyse.ax [PX5: 1C0CECAF56BA7B94203B01A51242670050E3EDDC] [G] c:\program files\microsoft office\office10\owssupp.dll [PX5: 84AF88D4A0EE8D96A5A800603C97F400FBFF1D80] [G] c:\program files\pinnacle\shared files\filter\mpegdecoder2.dll [PX5: 060CA8230092379930F602D2DC986500385CD2BC] [G] c:\windows\system32\panmap.dll [PX5: 91332631009C488328D000714DA25900473916A3] [G] c:\program files\common files\designer\msaddndr.dll [PX5: 4492C9E400A465D850B9010D0C0A6D00E25D7347] [G] c:\program files\interactual\common\bin\iasysteminfo.dll [PX5: DF4F0E6820F75A6B871307C366B4A800A0C6E04C] [G] c:\program files\pinnacle\shared files\filter\pclesync.ax [PX5: F60C5F800075F753A0B3009489211900110F67BC] [G] c:\windows\system32\dmview.ocx [PX5: EB5E380F00BA591AF07A00425F5DA200233D25B3] [G] c:\windows\system32\wbem\msiprov.dll [PX5: E87959EF00FE5EE62EDC04B48AA78C006F64E785] [G] c:\program files\common files\installshield\engine\6\intel 32\ctor.dll [PX5: 749D74C800C2097C30AB016AC763DE00CD060CAD] [G] c:\windows\system32\rtcom\rtcomdll.dll [PX5: D89F316E003FA95A202E04B9D9F8AF00A65831A1] [G] c:\program files\common files\business objects\3.0\bin\emfgen.dll [PX5: AE80D15E002D37A4A66A00AE47D704008A6E9D73] [G] c:\windows\system32\msident.dll [PX5: CE6D3BEF0035701DCA37003431494F0077A60847] [G] c:\program files\acoustica cd label maker\cdtextreader.dll [PX5: 52589AA0A86B5F0BE69D03ADE2E58900263E4BFF] [G] c:\program files\nova development\shared plug-ins\audio\sfxpfx1.dll [PX5: 1B324F8F3C52D37300B1073D87105F0062C8AD7F] [G] c:\program files\roxio\videoui 10\dssizeestimator.dll [PX5: 35043630F0075202F9A601C6124C020015EA5E5C] [G] c:\program files\business objects\businessobjects enterprise 11\win32_x86\plugins\auth\secenterprise\secenterprise.dll [PX5: 1EFC388800BB6EFBD03F03E07F481F00FCC839F5] [G] c:\program files\common files\microsoft shared\works shared\wkpr80.dll [PX5: 1B6F78FF00716E0810700200B0FD46001B575F88] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsformatloadermdc.dll [PX5: B33F15F1F0A463C119A60141334A06002DDAA748] [G] c:\windows\system32\wiasf.ax [PX5: 3BCF3FDF0043E0729E07002C3A43E700DF5A36F4] [G] c:\program files\common files\muvee technologies\mainconcept2\muveeeampeg.ax [PX5: 92D284D700C21AC0F0C1006BE9B4FB0097496EBB] [G] c:\program files\roxio\videoui 10\vuitemplateuser.dll [PX5: BF01C011F0BDC9E0095007595309930061CF7C75] [G] c:\program files\hp\digital imaging\bin\crm\hpqcrmcm.dll [PX5: 93B44A6F00C167C420260334D6504100C2BAE26A] [G] c:\program files\pinnacle\shared files\filter\mpeggoprenumber.ax [PX5: 7FB710FE00159C62D0A6000F21F4DA004029BB6F] [G] c:\program files\interactual\interactual player\bin\iamime.dll [PX5: FC21BDB210E37BA6F3E601E8CF8786007CCB8C62] [G] c:\program files\roxio\cineplayer\vistautil.dll [PX5: DA6DFD45F09F300C09FB01390D157600C05CC4BD] [G] c:\program files\hp\hp software update\hpufunction.dll [PX5: 95FDBB8D382F38AE4642035FBCD51E002D507991] [G] c:\program files\yahoo!\intellisync for yahoo!\yahooxlator.dll [PX5: B6F5986500399E3F400A025456EF81002D4DA119] [G] c:\program files\microsoft office\office10\owsclt.dll [PX5: 6B695070A09E745D35D709371D466200B57F3B37] [G] c:\program files\yahoo!\companion\installs\cpn\ytantispy.dll [PX5: 8743FEEBF84624D1C527000D13F53A00A1CD10A4] [G] c:\program files\windows media player\wmpenc.exe [PX5: 348EAD6F0075D176640B0062F8196D006F069956] [G] c:\program files\common files\muvee technologies\030625\mvdshowhelpvarmc.dll [PX5: 650E16835B12F14A704D012DDA0EAE00FA5A18E0] [GP] c:\windows\system32\licdll.dll [PX5: 325A5D540022FF4578AF06A4724A9D006CCC0931] [G] c:\program files\common files\business objects\3.0\crystalreportviewers11\activexcontrols\sviewhlp.dll [PX5: 389A49E9886FD4B5C228024B176DC1009037E6DA] [G] c:\windows\system32\sendcmsg.dll [PX5: 52A500F100928E36725F00E10F5620007FCB1CD3] [G] c:\program files\hp\digital imaging\bin\hpqvwocx.dll [PX5: 37D84A7861D6EAD990FC0260025F0F00F46AC222] [G] c:\program files\common files\muvee technologies\mainconcept2\muveespmpeg.ax [PX5: C11F09DF00188520E097019C2D8FD0000C9BDD0F] [G] c:\program files\common files\muvee technologies\030625\mvdshowhelpwm.dll [PX5: 525B4B2E5857D7EDF09B010AD6657D0052C2C6FE] [G] c:\windows\system32\ptpusd.dll [PX5: 3AE7D01D00D31A626E4502018CA4820029B22714] [G] c:\windows\system32\wbem\wmicookr.dll [PX5: 692A2E9A008BFF2BEE2800BA03D7630023F2333C] [G] c:\program files\common files\microsoft shared\web server extensions\50\bin\fp5awec.dll [PX5: 5F710438A0E545AD35D50911FFFDD200AE5AB93A] [G] c:\program files\common files\muvee technologies\030625\mvflash.dll [PX5: F9DD312458F15597F0F201C6C4974C007F3A6074] [G] c:\program files\common files\muvee technologies\030625\mvmanalyse.ax [PX5: AF4EFE8556E87ADB108E01FF7146540011D9AA0E] [G] c:\program files\muvee technologies\muvee autoproducer unplugged 2.0\up.dll [PX5: 36AF9CD94DE0465FA0E30CA91A1CBF00B6B8B988] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdsaudiosource.ax [PX5: DABE9740F0D496B6E990002C712C8200229817B5] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsemailobject.dll [PX5: ECEED524F071C2C769AA01B2FE740A00F7D1AF7F] [G] c:\windows\web\wallpaper\welcome\awhelper.dll [PX5: 002FF7F5004C96F070F7002DDDE82A006FCC8F3E] [G] c:\program files\hp\digital imaging\docproc\dpcps.dll [PX5: 802439F8004A33288060002DDDE82A00F7C22E04] [G] c:\program files\interactual\common\bin\iaagent.dll [PX5: 689D1634308B7230239204D541A81A0045745C59] [G] c:\program files\hp\digital imaging\docproc\docproc.exe [PX5: CADA4F470024E758D01600AD3070ED0042552DD5] [G] c:\program files\ahead\nerovision\gccore.dll [PX5: C0DBDEA30042DB7940780622DFD91800B099C8D1] [G] c:\program files\pinnacle\shared files\filter\axwavrender.ax [PX5: A101FE9400322F4EC066009C4E43D600F32FD45A] [G] c:\program files\common files\muvee technologies\030625\quicktimesource.dll [PX5: F62BC3AC5A913AE63099075E3DB8FE0051CB0862] [G] c:\windows\system32\dispex.dll [PX5: A22219711B8D15D5B0AD001A33C727005FF4BFD0] [G] c:\program files\corel\wordperfect 10\programs\pfpi100.pfc [PX5: E9A084493A41823A901C0B5F9E384A00DB47FE63] [G] c:\program files\microsoft office\office10\1033\msolang.dll [PX5: 5E65F98600F9E0B690B800C656BB1C00053BF5FA] [G] c:\program files\adobe\reader 8.0\reader\plug_ins\accessibility.api [PX5: E643E59B63AF789E6C24056426CA1E0007AF1E49] [G] c:\windows\srchasst\msgr3en.dll [PX5: CBA669F500B901CE50473062028D38000E08DB5E] [G] c:\program files\nova development\shared plug-ins\file formats\aviplug.dll [PX5: 720F5A7C379E5CA9503A0D8397134000DBF638DB] [G] c:\windows\system32\wbem\tmplprov.dll [PX5: 0E48F6D500CC2C6AF217003F98E0F400FBAE0ACC] [S] c:\windows\msagent\agtintl.dll [PX5: 160093C700BE11075E92004567AAC3000244645C] [G] c:\program files\corel\wordperfect 10\programs\pftb100.pfc [PX5: 831E41C83511C6EDA04900981232EC00B73626DF] [G] c:\program files\common files\muvee technologies\030625\mvplayermc2.dll [PX5: 8A792A2656AAE27570E403209EBC59002E7795CC] [G] c:\program files\corel\wordperfect 10\programs\ps100.exe [PX5: DE6B77D8373FE44400A40C86BFB2B400C313E280] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsimagepreview.dll [PX5: D1FE445DF0103022B95402077E1F14005ABD8E3F] [G] c:\program files\pinnacle\shared files\filter\movieboxusb\usbdvr2snk.ax [PX5: D091C46500EDECEFC0E9011E0AD7270019463884] [G] c:\program files\malwarebytes' anti-malware\vbalsgrid6.ocx [PX5: 928AD748B0B32EA38E2A072600C60C00AC623387] [G] c:\program files\microsoft works\wkgdips.dll [PX5: 13434BF300927AB61808008C59936500E517CA1E] [G] c:\program files\corel\wordperfect 10\programs\pfdt100.pfc [PX5: 112402A035580747E0A401B8916AEA00C76CC6BD] [G] c:\program files\common files\installshield\engine\6\intel 32\iuser.dll [PX5: 01A92D440074DF3BB06402DFAAE337008331976A] [G] c:\program files\corel\wordperfect 10\programs\viewers\pfvm100.pfc [PX5: 29BCA845356A57E660290209739B94007C83A32B] [G] c:\program files\common files\sonic shared\sonic central\launchbackup\launchbackup.dll [PX5: 93E3C2CB00477369706A011B2C82A60062FA384C] [G] c:\program files\roxio\videoui 10\dssessionserver.dll [PX5: 269E99A6F02C444ED90D006ED277910067551DCA] [G] c:\program files\common files\microsoft shared\mssearch\bin\srchadm.dll [PX5: C72DBD9400A9E9F6E0B803B7AC5FD60074D3FDCA] [G] c:\program files\common files\business objects\3.0\bin\objectfactory.dll [PX5: C16969A80045D20FA05102FFCB45CA00D24C4CE3] [G] c:\program files\corel\wordperfect 10\programs\uawin100.dll [PX5: 8345F5BB3C541587C0790738BBACC700F757E140] [G] c:\windows\system32\athprxy.dll [PX5: C44FC56A00676DDE80AA0030144A6000F197B931] [G] c:\windows\system32\deploytk.dll [PX5: FB25693A606ADEE445D206362AED0300BEC44A24] [G] c:\program files\nova development\shared plug-ins\file formats\novampeg\lmpgvd.ax [PX5: F5F827950013F750101D025B9A6DA600805D4926] [G] c:\program files\common files\microsoft shared\web folders\pkmcdo.dll [PX5: C43613FE00A281C250320D1543B7E100121BA236] [G] c:\program files\java\jre1.6.0_04\bin\npjpi160_04.dll [PX5: 5D140D1690133E370536026329747D004425FD9D] [G] c:\program files\corel\wordperfect 10\programs\ps100.dll [PX5: F6A6D97D373611ABE0580DEE63F8B200D5677131] [G] c:\program files\common files\microsoft shared\cdo\cdoex.dll [PX5: D09ADAF2102CEAB731A035AE6BD45B00D902E205] [G] c:\windows\ehome\ehentt.dll [PX5: 9BCF681E0007AC73A086003B471C6D000C156800] [G] c:\program files\pinnacle\shared files\filter\pcle_tsmux.ax [PX5: 59AA39370056AC2690A902F4C34BD200DF231F2B] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdsaudiostreamwriter.ax [PX5: 06B4DAF6F0BC4BB299B40180D6ADB6000CEE6C94] [G] c:\windows\system32\wbem\smtpcons.dll [PX5: CE5C8A0100FE06A7A07D00AE60E10A00B51134C8] [G] c:\program files\hp\digital imaging\bin\hpxmlpdf.exe [PX5: 4D66B02800A42D64700D01FCC5A58E0046C080CB] [G] c:\program files\common files\microsoft shared\vs7debug\msdbg2.dll [PX5: 8139199F00BAD6C080D7020E896A0500A6777F65] [G] c:\program files\java\jre1.5.0_06\bin\npjpi150_06.dll [PX5: B1C0419D72E2AAFA102C016CB6C6B10080A174A8] [G] c:\program files\movie maker\mui\0409\addontfx\wmm2fxpz.dll [PX5: 0008491D00702B7144E40628DDD246001A909C3A] [G] c:\program files\yahoo!\companion\installs\cpn\ytbm.dll [PX5: 25A1927930D3E21C71D505B45D9F5A00878A6421] [G] c:\windows\system32\ptxscp.ocx [PX5: 9ACB744B00CE67FCE28B0CA47A8E9A0047D9D271] [G] c:\windows\system32\dmocx.dll [PX5: BFCCD90300006C284CEB00E086CF7B00B653344B] [G] c:\program files\divx\divx content uploader\npupload.dll [PX5: 12444AD600863825C03114519CBB5200B9AB5E3B] [G] c:\program files\windows media player\visualizations\g-force_wmp.dll [PX5: F9F2F6CE00D2EECC107904E4C81F6E00950BDDA2] [G] c:\windows\system32\wbem\wmitimep.dll [PX5: 64C40B220072D8AACC5A00015FD19500B3F7F4F4] [G] c:\program files\pinnacle\shared files\recordingapi\dal.dll [PX5: D171FB4700A637FCE03204612C388100E9A1448C] [G] c:\program files\corel\wordperfect 10\programs\pfob100.pfc [PX5: 852DEC8C0087ACE9608107E06D234B004539A137] [G] c:\program files\corel\wordperfect 10\programs\pfbc100.pfc [PX5: AB612D9A3A10FCEE002D0A52DE74EB0090BA8469] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\lotus organizer 6.0 connector\ilxorg6.dll [PX5: 3935DF47002748DF606D04B709F8E500D1534997] [G] c:\program files\nova development\shared plug-ins\file formats\novampeg\lmpgspl.ax [PX5: 0D989209005EAE6870C901002F56590057C2664E] [G] c:\windows\system32\lmrt.dll [PX5: ACA182B000B2F6201A3C06182CA50500BB3DC72C] [G] c:\windows\system32\msrclr40.dll [PX5: 0CAECE1E4A26088C205901F2E00DCD00DCD6B0CA] [G] c:\program files\roxio\audiocodeccommon 10\dsfcmmldecoder.dll [PX5: 5D7E2FC8F04F3A0DE38200EA66F18500A62A4512] [G] c:\program files\microsoft office\office10\asfchop.ocx [PX5: 50B613CEB08FF72258EC01F7CBDE5F007775C306] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsformatloaderecdc.dll [PX5: 0DD528C9F00CE218191B01ED872B5D00B995833C] [G] c:\program files\common files\system\ole db\msdasql.dll [PX5: 55F8B482006AD33ED04204DB81C01800768E1D23] [G] c:\program files\corel\wordperfect 10\programs\uax100.dll [PX5: 290CAF8138A00A42301F0CA34FE04000090D2938] [G] c:\program files\common files\microsoft shared\smart tag\fdate.dll [PX5: C328DBC0A01470B185E3027CCCB36A0016D4A16C] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\oe connector\olkexpress5.dll [PX5: 4BC9FEA60092CBEBD0470B30E2C69C00E94FFB42] [G] c:\windows\system32\restore\rstrui.exe [PX5: 57138F8800B3E1A4CE6D05DAA56C7F0088F23110] [G] c:\program files\pinnacle\shared files\filter\mjpgdecompress.ax [PX5: F7C33C8760F74B8070100135112A3B00A624ECB3] [G] c:\program files\msn\msncorefiles\oobe\obemetal.dll [PX5: C430844700469150C0FA0E753D225000C977821E] [G] c:\program files\common files\microsoft shared\works shared\cpitv7.dll [PX5: 6323FB8B0064B711C085013EF966F80054481505] [G] c:\program files\roxio\videoui 10\dssourcearchiver.dll [PX5: A4573EC6F0F11D62391D0184F7748E00781FF04B] [G] c:\program files\click'n design 3d (v5)\ivmulti.ocx [PX5: BDE0BBA900D7FED35A130FAF12E009005D9A6434] [G] c:\program files\roxio\photosuite 10\ppswarp.dll [PX5: B4C5E448F02DD639792F02A2B4C07900E2F2C666] [G] c:\program files\roxio\videoui 10\dsspaceindicatorctl.dll [PX5: 3E0DCE79F00C394289AC02E07152E900967E475F] [G] c:\program files\common files\muvee technologies\030625\mvprvwnd.dll [PX5: 14D5089B58D06D9850E902C6D3165A0004527EB0] [G] c:\windows\msagent\agentdp2.dll [PX5: 9767F296001F5EA4A61200E2D7329300BBFD2D0F] [G] c:\windows\msagent\agentsvr.exe [PX5: E39441640011868BEA60031E489186009811D8B0] [G] c:\windows\system32\rsnotify.exe [PX5: 4933D5C7005A02D6A4C701F47D2941006BEDB41B] [G] c:\program files\common files\microsoft shared\mspaper\mspocrdc.exe [PX5: 9637F61A103A6C8A512D033B3CBB5E00B9A022C1] [G] c:\program files\common files\roxio shared\dllshared\divxdemux.ax [PX5: B47FC42810325C9A16D203C668C55B009A3CDD08] [G] c:\program files\pinnacle\shared files\filter\avsynchronizer.ax [PX5: 1EF68B9400F7307250ED01B2D47247005CED7C3D] [G] c:\program files\common files\system\ole db\msdaosp.dll [PX5: E3A4A70F00C52D0830F30166EBB63700B33C4FFE] [G] c:\program files\roxio\videocore 10\dvdminusvrmanager.dll [PX5: 4B481A31F0505013B91402B2BF6EED00CBF32E22] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsformatloadergif.dll [PX5: A267A90AF0593482696801FB356C7C00793DA637] [G] c:\program files\roxio\videoui 10\dvdprojectsettingsobj.dll [PX5: AB49C4C8F0160896E9AE0382BC110A00087B633F] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpsskinprotocolhandler.dll [PX5: 150DA938F045E9BDC97200CF5AAE60008FDEA5B5] [G] c:\program files\common files\muvee technologies\030625\s00007_overthetopmusicvideo.dll [PX5: 5E24176A0038D1D470B80729BA9F77004881B88F] [G] c:\windows\msagent\agentdpv.dll [PX5: 0310EEEF00E047AFE0D700B94A854600EC3C814D] [G] c:\windows\system32\wmiscmgr.dll [PX5: F313C90400DFC663DAF600FE75E7A70041D62AA5] [G] c:\program files\common files\roxio shared\dllshared\sonicupgrademanager.dll [PX5: 54F1BC96A8B4D04DC668012ADEF6F500BA7D4534] [G] c:\program files\hp\digital imaging\docproc\dpe_ocr.exe [PX5: 8255F11F4B549FC350FB390FF1E9D600AE1FA672] [G] c:\program files\common files\system\ado\msjro.dll [PX5: A84FD5D000BDCD499037014B115D3900038206BA] [G] c:\windows\system32\dx7vb.dll [PX5: FA96CD8300BBB1A972A0090B8098C20092FC9523] [G] c:\program files\google\google updater\2.4.1368.5602\ci.dll [PX5: E18D24A9000AFEEE14B0119042CACC008824A99D] [G] c:\program files\pinnacle\shared files\filter\surroundcontrol.ocx [PX5: 877D373900230AE290F80C95D2A00500E9180275] [G] c:\windows\system32\msjetoledb40.dll [PX5: 95DF589240EB0A457A5D05D5477716001D95585F] [G] c:\program files\itunes\itunes.exe [PX5: 18A5FAB92876047FBB66058F3AAD940157ACFB3E] [G] c:\program files\common files\muvee technologies\030625\mvanalysermc2.dll [PX5: 558723AD584BC330206703CCD720FB003E5D493A] [G] c:\program files\yahoo!\companion\installs\cpn\ytabbar.dll [PX5: 361E70F7409B380037A30358737B1A0019AA38CD] [G] c:\windows\system32\fsusd.dll [PX5: 06DD155E00969F2E3E23011632CA0200C7331E99] [G] c:\program files\common files\system\ole db\sqlxmlx.dll [PX5: F7D6F4960008747D501B03008339CA00A6C0DFAA] [G] c:\program files\pinnacle\shared files\filter\pcleneovideorepair.ax [PX5: 26D023C40085A465B02500C4A7CA5C0047F3675A] [GP] c:\windows\system32\rltheoradec.ax [PX5: F9576A9600E416E808CC01E95307BB0013E1A18A] [G] c:\program files\hp\digital imaging\bin\hpqtraps.dll [PX5: C13F23A6008B5A3370E0002DDDE82A006CCB44E4] [G] c:\windows\system32\dmremote.exe [PX5: 001E42DD00C3F3693E470097D2E42F005D2FD882] [G] c:\program files\avi mpeg video converter\nctrmfile.dll [PX5: 98ECFD730063749D60961266336467008A59664D] [G] c:\program files\quicktime\qtsystem\quicktimecheck.ocx [PX5: 0B9E096D30B0AE9A85D201DEEE9394008C20D789] [G] c:\program files\microsoft office\office10\nslsvps.dll [PX5: 1BE892EB006203016E45002DDDE82A0012C63B59] [G] c:\windows\system32\ipsecsnp.dll [PX5: 6A682A8000D342C0560A0597FA7170003ABD7FEA] [G] c:\program files\common files\microsoft shared\ink\skchui.dll [PX5: DC7F66403FD9F82E907805F9516B9D007360591B] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\lo5 connector\ilxoasis5.dll [PX5: C350DF12005486B9B04A02D15E392B0030AD478A] [G] c:\program files\piolet\nctaudioplayer.dll [PX5: 896F29E9005491513022040F41F2B30094518084] [G] c:\program files\yahoo!\messenger\ypagerchecker.dll [PX5: 5EABDDAAF09A0A6C945201A437037E00B3FDB0EE] [G] c:\program files\yahoo!\messenger\ywcupl.dll [PX5: D521C24B0058F109800C047FDE0AC9007AA009F2] [G] c:\windows\msagent\agentctl.dll [PX5: 1322ADD500ED6069445C0350949E88007B70F34B] [G] c:\program files\common files\hp\instantshare\hpodcpxe.dll [PX5: 2C2B68430000A955D0E70221587ED3009018F204] [G] c:\program files\interactual\interactual player\iakey.dll [PX5: 892178B710ADBB189722024AE2FB98006269DC78] [G] c:\program files\steinberg\asio\asiomme.dll [PX5: DAD4B04F004077DAD61005DA354FBE00CF0274D0] [G] c:\hp\bin\utility.dll [PX5: 656EAD05000F5D99706F002DDDE82A006AAB007C] [G] c:\windows\system32\mspaint.exe [PX5: B5DD8FA400AD5EE83CD205207C533200CC76A7AD] [G] c:\program files\microsoft office\office10\mstore.exe [PX5: 39780E4CA01EF7AF95CD01ED7C4D73000E330662] [G] c:\windows\system32\msvbvm60.dll [PX5: CDDAE47E00AB00D9284915FF9BB03E004472B69A] [G] c:\program files\hp\digital imaging\bin\hpiscnps.dll [PX5: BEA324EC005E02FCA090002DDDE82A000EFBFD53] [G] c:\program files\microsoft sql server\80\com\sqlinitx.dll [PX5: 6BBF787CA8A891FFFCBE01DCCA6B8B00999A465F] [G] c:\windows\system32\nlhtml.dll [PX5: 38352BE8007AF4AA96BF0158DEB42F007E1D2A25] [G] c:\windows\system32\mdhcp.dll [PX5: F95B38E10056BB15C4C5009735E1A20001B05E8A] [G] c:\program files\microsoft office\office10\msowcf.dll [PX5: 90D12783000498BAE08A03ED89CAF900619260CB] [G] c:\program files\common files\roxio shared\10.0\dllshared\dvdcheck10.dll [PX5: 47D542C3F07DC88099D704A6CC31E2008D6BB231] [G] c:\program files\hp\digital imaging\bin\hpzismgr.exe [PX5: F5003EA10060BE9B50670136F02BE20093C2637B] [G] c:\program files\microsoft silverlight\2.0.31005.0\npctrl.dll [PX5: 0B5B2E49402F4AA5F3380B8EA0CBFB00C7835898] [G] c:\program files\pinnacle\shared files\filter\mpegstreameditpixie.ax [PX5: 34B38CDA008D8C3B00E2022EC69007006A07342E] [G] c:\program files\hp\digital imaging\bin\hpqaiois.dll [PX5: ECCD46C100E9F146001701CE7835470052FEDE93] [G] c:\program files\microsoft works\wkwcecal.dll [PX5: 8A79611D00708A2960AA027593C68A005DE5FFAC] [G] c:\program files\common files\roxio shared\10.0\mpeg\subpictenc.dll [PX5: 32539BFDF09C7D99896D01F936B7AF003336DFB0] [G] c:\windows\system32\wiadefui.dll [PX5: 0DF7517F007C3979127C0760E49A80004A77290A] [G] c:\windows\system32\dmcompos.dll [PX5: 4AD8A9410066617BF04F002BECC0830004F55FD2] [G] c:\windows\system32\macromed\flash\flashutil9f.exe [PX5: 188B047E8039B36D5546032081EC1B00BD7ADC6D] [G] c:\program files\pinnacle\shared files\filter\avi_pass.ax [PX5: EAD20B470088BA5890A200300C22E7004C7206C3] [G] c:\program files\common files\ahead\dsfilter\nefilesrc.ax [PX5: F0A0B15C0024B9285003019F337E07008BE5038E] [G] c:\program files\corel\wordperfect 10\shared\textart\textart.exe [PX5: B57D82C100E0546310A606909887BC005E426D26] [G] c:\program files\hp\digital imaging\bin\hpqes002.dll [PX5: DF98B28B003C4EF040BE01FF167810001649B976] [G] c:\program files\common files\roxio shared\10.0\avcapture\avsoniccomnvidia.dll [PX5: C40F172CF028ACA0290A0BEC6ABFD0009F756FF1] [G] c:\program files\hp\digital imaging\bin\hpqmtdat.dll [PX5: 7AA80572004B43CA586B0006375504006C4A9924] [G] c:\windows\system32\ralmain.dll [PX5: 4D666E2C00C6B42CD08302871EFBC0008394B89F] [G] c:\windows\system32\macromed\flash\flash9f.ocx [PX5: A148090A80EBD137A5912D20AF85BC002F63E664] [G] c:\program files\itunes\itdetector.ocx [PX5: 73E5533F2847F961C53301EFE0BB88002D90ACBA] [G] c:\program files\roxio\photosuite 10\simpleshapeobject.dll [PX5: 3F447F33F02E3DF619AF03F3CAD694005C26127D] [G] c:\program files\hp\dvdplay\kernel\movie\clvidfx.ax [PX5: FF79389D4767220C1078015615F4AA008DC248F6] [G] c:\program files\microsoft office\office10\eefonts.dll [PX5: C8889B4D9827346F25A507322EDB5E00F97A8AD1] [G] c:\program files\updates from hp\9972322\program\bwdlg-9972322.dll [PX5: 3625A3BA27C05E80B0E8002DDDE82A00C91E9EBE] [G] c:\program files\roxio\videoui 10\dsformatter.dll [PX5: C1DA17A4F0317154093A0648DF91B600B838CBEE] [G] c:\program files\hp\digital imaging\unload\hpqunld.dll [PX5: C2EB9830001B941E107703F64FD280002E5B30E5] [G] c:\program files\roxio\photosuite 10\ppspaper.dll [PX5: 944CFC01F0EF1292F93301538E123D004A272118] [G] c:\program files\ahead\nero soundtrax\effectctrl.ocx [PX5: 15F6F89F5AC2F9FA50750649BB9A78000A3AE1E7] [G] c:\program files\pinnacle\shared files\filter\dwsource4.ax [PX5: BC72973149FE2FC6206B06D7658B690035ED1AC8] [G] c:\program files\common files\muvee technologies\030625\mvwritermc2.dll [PX5: E9FDD059563AFC09103A032E66835C00DA8D6E4D] [G] c:\program files\common files\muvee technologies\030625\s00128_kids4.dll [PX5: 959C8C920011048BD0B207A3497427009F403159] [G] c:\program files\roxio\videocore 10\cmddispatcher.dll [PX5: ED02A44FF03FD81F17F40191AD8040003D986786] [G] c:\program files\hp\dvdplay\kernel\common\clrcengine3.dll [PX5: 075DFFF9003724C4101001B6E5A5CD0037E14D1D] [G] c:\windows\system32\pid.dll [PX5: 0F429C5800E1E3938A53005E751DC90048492BD1] [G] c:\windows\system32\wbem\wbemads.dll [PX5: 80D8DBB100E8B80430F500C5FF11A6001152C238] [G] c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe [PX5: E63AEB0AF802D21F0C5B015CDCEDA80008569A7F] [G] c:\program files\hp\digital imaging\unload\hpqlog.dll [PX5: 4752D0DC00100346C08F00118F7464000E34D63F] [G] c:\program files\common files\roxio shared\dllshared\divxsubdec.ax [PX5: A34BE1BB102D061FD6DE009E7D82C500FC0A5125] [G] c:\program files\hp\digital imaging\bin\hpxtopps.dll [PX5: 8D3C36DD00B68D1C704F002DDDE82A00C5ACD909] [G] c:\program files\common files\hp\memories disc\2.0\hpodloc3.dll [PX5: 9975130500C4A9208AC0003F9EE696005E6A5ED2] [G] c:\program files\microsoft office\office10\msosvfbr.dll [PX5: 332B7984A02D8FE1D55C002312669000A1DA1514] [G] c:\program files\microsoft sql server\80\com\msgprox.dll [PX5: CB9F4D6D44F64AE96290017214565100FD68E958] [G] c:\program files\interactual\common\bin\itilog.dll [PX5: 1D8E37AF10EA0BAE0D7801949660A000DE2AA69A] [G] c:\program files\common files\installshield\iscript\iscript.dll [PX5: 9F60A15B00A1934870D70355434BDA002E6FE30A] [G] c:\windows\system32\wpdconns.dll [PX5: E18F0BE900DBD5238CE7003B22951E00726D1080] [G] c:\program files\windows plus\cdlm\cdlmplugin.dll [PX5: B9353A3600AC134C120701376FC763002759A3B2] [G] c:\program files\itunes\ipodupdaterext.dll [PX5: ACF03B6C0003455FD0D70994ED042700AAB63068] [G] c:\windows\system32\rtcom\rtlcpapi.dll [PX5: D2D68248003DA19910AC0291C8D73C006B86BF30] [G] c:\program files\microsoft works\wkwpqd.dll [PX5: 6B3CBAAB0023DC46E0B60D5E678CC80024F6EAF4] [G] c:\program files\yahoo!\companion\installs\cpn\ytmsgr.dll [PX5: 876639FC308F64E0BD980233900520007039EFEE] [G] c:\windows\system32\mpg4decd.dll [PX5: 7278911500BCF292F4C803E2DB92DE000D264EAA] [G] c:\program files\movie maker\wmm2fxb.dll [PX5: B69F59DB00AFE13EF8BC04E2065C0900F455397F] [G] c:\program files\hp\digital imaging\bin\hpiscn.dll [PX5: 7D7E61E45F053AC3D08110183239E10023006F80] [G] c:\program files\pinnacle\shared files\filter\mpg1_2decoder.ax [PX5: 26A507F70019F550F0500083C71093005571AB57] [G] c:\program files\movie maker\wmm2ae.dll [PX5: F0498AB40099005A90E002FCA89B7300CEAD6F35] [G] c:\windows\system32\url.dll [PX5: A018C934002933D49EA801539F87610019CA8845] [G] c:\program files\google\google earth\earthps.dll [PX5: D476BE0A005FCE46D616009E44263A00E1B0F8F2] [GP] c:\windows\system32\avisynth.dll [PX5: 727328AD000865D0AE9B04DCFBBB9900C4032BE7] [G] c:\program files\common files\system\ole db\msdaora.dll [PX5: D5F3366400E2503F9062034E171B8D00B2ACCA53] [G] c:\windows\system32\msdtcuiu.dll [PX5: 1686F99400E2D1B676CA029939690A008171BB82] [G] c:\program files\piolet\nctaudioinformation.dll [PX5: C116D05C00FB94C1A0500DEC04633A00A2C7F452] [G] c:\program files\pinnacle\shared files\mp2prov.dll [PX5: 337159F700B484FAD04D0375AB42EA0028FF1C7A] [G] c:\program files\hp\digital imaging\bin\hpqcldat.dll [PX5: 26D7443500741150506300B107E417008F5376C1] [G] c:\program files\roxio\cineplayer\interactual\iamanager.dll [PX5: 1FEF24043016A182A7B004B456719800B6621B69] [G] c:\program files\piolet\nctaudioburner.dll [PX5: FC942EA1002A664D005A147329C8080009A183FA] [G] c:\windows\system32\msxml2.dll [PX5: 05E901D400384D39B4480AF58E5558009A1235A0] [G] c:\program files\hp\digital imaging\bin\hpqdstcp.exe [PX5: 90357BDD00B8F19070DE02B3B8041900118CCB72] [G] c:\windows\system32\cpc_dmird.dll [PX5: 86CA60FB000C50E9207C080635EC230025EE5895] [G] c:\windows\system32\wmvsencd.dll [PX5: 976410F600B913BBB6400BC1D781CD0035E14428] [G] c:\windows\ehome\ehchhime.dll [PX5: E147C01500FB0481F690037AEFDDF1006E72EC43] [G] c:\windows\ehome\ehtktt.dll [PX5: 3F37F95F002BA0E8A00400E4C6D65D00BC57AC52] [G] c:\windows\system32\ieapfltr.dll [PX5: AC36A66A0027232FDA1F05C343DF7E00DEDD8D29] [G] c:\program files\common files\microsoft shared\web server extensions\40\bin\fp4awec.dll [PX5: A6A73D246D8D1A0AE02106D895FF8C00F6CACDF0] [G] c:\program files\hewlett-packard\sdp\hpwriter.exe [PX5: 985D17810093EC172076019B393B4C003CE28403] [G] c:\program files\hp\digital imaging\bin\hposvi08.dll [PX5: 4EE44FC6001EA0D3802F055983F1AD00889E9BD3] [G] c:\program files\quicken\qshowhelp.dll [PX5: 6F3D782200948274A60F00770DF217008BDB70D7] [G] c:\program files\roxio\videoui 10\vuiscenedetectdialog.dll [PX5: 9E5C115FF092FBF25964047F3E7A5800044162C9] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdsamrwriter.dll [PX5: D64AAF8EF02E304C3928010DADA9B400DC3A607A] [G] c:\program files\microsoft works\wkwpqrtf.dll [PX5: AAEF52E8009114DFF0DB01ABA7BFAB000E5BC397] [G] c:\program files\roxio\videoui 10\dvdpreview.dll [PX5: DB2D9CB5F076B692096504AC377F3A00CD4227BA] [G] c:\windows\system32\rend.dll [PX5: EAB1B9CA00A147B0A4CC01D3E9EC2D00AB1D7120] [G] c:\program files\roxio\videocore 10\vcfgraphdistributor.dll [PX5: B72A07AFF0FD3AF009BF01F294B20C0023E3DB99] [G] c:\program files\pinnacle\shared files\filter\dwsink2.ax [PX5: 838B6013006F8A3CF0F10341F1DFA30075A8703F] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\lotus organizer 6.0 connector\org6api.dll [PX5: 4558143C49E84418E0470181D3BA3E00FF7C0C3B] [G] c:\windows\pchealth\helpctr\binaries\brpinfo.dll [PX5: DB61F4A60016A8B554C4009B0C6B1D007E1737B9] [G] c:\program files\common files\hp\memories disc\2.0\hpodrend.exe [PX5: CC8CBEBA005516B7901B0101F8FB3F009F839F7F] [G] c:\program files\roxio\videocore 10\plasma.dll [PX5: 4A04CABFF0973ABF4977029EAB8CAD00085E403F] [G] c:\windows\system32\wbem\ntevt.dll [PX5: 65DCD2F200E99F88407003204D9AC70054602588] [G] c:\program files\common files\microsoft shared\translat\msb1xtor.dll [PX5: DC67927A00575B8ED0180076523EB000EA20B31D] [G] c:\program files\common files\roxio shared\10.0\sharedcom\rxdsamrsplitter.ax [PX5: 43B5FD11F0BBFEA78975012185BAF000DB7F31F4] [G] c:\program files\common files\muvee technologies\030625\s00122_wedding4_fx.dll [PX5: 9D20575B00118B2D805101FCB4F41E00B7AFACF9] [G] c:\program files\sonic\mydvd\getrecordedshows.dll [PX5: E3F000760003A70E209E0122DDBB7200C65F865E] [G] c:\windows\system32\offfilt.dll [PX5: 4D6BF07200A5F185D8BE019BBBB27300E81D1700] [G] c:\program files\common files\ahead\dsfilter\necapture.ax [PX5: 2022909C00F91A76103302C61419EE00E9C6222A] [G] c:\windows\system32\wpdmtp.dll [PX5: 4726949500D987045CE20281BA37CF00645A93BB] [G] c:\program files\google\google updater\2.4.1368.5602\googleupdaterinstallmgr.exe [PX5: 2E631377F008017AB9F10C7DBF21C700081F348F] [G] c:\program files\common files\installshield\professional\runtime\objectps.dll [PX5: 4ACDE0C900B3D8AD800B002DDDE82A0037F99A84] [G] c:\windows\system32\drivers\enum1394.sys [PX5: 4E7FF71200A58CFF197100D1CCE6B600C8D9E0FF] [G] c:\program files\real\realplayer\rpplugins\ierpplug.dll [PX5: 94650A7E58C4AF0666410465700A0600D0A75AED] [G] c:\windows\system32\drivers\mbamswissarmy.sys [PX5: 980187E68004A2499637002917ED42005FA584C5] [G] c:\windows\system32\drivers\hidclass.sys [PX5: 800EAA28801FAC928DC800F3F0296600134890AF] [G] c:\windows\system32\drivers\modem.sys [PX5: F22F2ACE8067686F7517004AA04CD40013D08F0F] [G] c:\windows\system32\drivers\mountmgr.sys [PX5: 7309084F00AE944FA5B9001585E15200FF872CDC] [G] c:\windows\system32\drivers\cdaudio.sys [PX5: 7D0D30B9001A5352491B006D9C79D000079079B1] [G] c:\program files\google\google desktop search\googledesktopoffice.dll [PX5: 5A95A239009B4AF4AEDD03DEE65056006DEA59AA] [G] c:\windows\system32\drivers\ksecdd.sys [PX5: 774C935980F76922670D01959D71E6009D9267E6] [G] c:\windows\system32\drivers\classpnp.sys [PX5: 61280642007AE0BEC20400D8EC4D8200079FF3CE] [G] c:\windows\system32\drivers\atmlane.sys [PX5: 823332B380717184DAFD00B035ED9500F95C0458] [G] c:\windows\system32\drivers\atmuni.sys [PX5: 92E7BF650082565E607E05AD216E0900953642D5] [G] c:\windows\system32\drivers\drmk.sys [PX5: 73B664558055CFD9EB9800CC44976A00031F37A9] [G] c:\windows\system32\drivers\cdfs.sys [PX5: 0225C13D004CC9CDF93000922132D000BA57D976] [G] c:\windows\system32\drivers\imagedrv.sys [PX5: E383C2F480AFC2491541008E40C3620095FC446B] [G] c:\windows\system32\drivers\beep.sys [PX5: F62FA4F780D77A5110B2005CD7507900637E04C1] [G] c:\windows\system32\drivers\fs_rec.sys [PX5: 2E3179C900CB71741FBA004F645EEB00865149D3] [G] c:\windows\system32\drivers\marvinbus.sys [PX5: 9AF38FB300BE8E789CC00251745253009E4EDF9E] [G] c:\windows\system32\drivers\fips.sys [PX5: 1007D8C58089CEC888D600EFFDE6B8003C78B4CE] [G] c:\windows\system32\tlntsvrp.dll [PX5: 7619EF44009D95E91C4E0026F8FC8900E0477376] [G] c:\windows\system32\drivers\crusoe.sys [PX5: E4FE1A7080AF31428EBC00A26129360098E31808] [G] c:\windows\system32\drivers\hdaudio.sys [PX5: B7BDAA0200E26E383AB10225F4727C00EB8C3B5A] [G] c:\program files\pinnacle\shared files\filter\mpg1_2decodesample.ax [PX5: 08B69DB300651CE1E0E1002D90B0BB008DE4C1E6] [G] c:\windows\system32\drivers\1394bus.sys [PX5: A01D29000095FDD3D05B00D74275E7003170E933] [G] c:\program files\yahoo!\intellisync for yahoo!\connectors\pilot connector\pilotconnector.fil [PX5: D23E890300CF95A1A0461620D0A3E600ED9F82DA] [G] c:\windows\system32\drivers\diskdump.sys [PX5: 6D7A5F848072A37B37EB00C342763700264F9014] [G] c:\windows\system32\drivers\cdr4_xp.sys [PX5: 709628C170015024230200E79AD2AF007D9D5EF5] [T] c:\program files\common files\installshield\driver\8\intel 32\iuser8.dll [PX5: 24F3C96E00F85279E0DF0200EEB38100CEDA29C2] [G] c:\windows\system32\drivers\flpydisk.sys [PX5: 60E1171000EEA79E50BF00391F7EE000F2860CEC] [G] c:\windows\system32\drivers\cinemst2.sys [PX5: 7C4B5F6480542F0A010D0467679A3400290828AB] [G] c:\windows\system32\drivers\amdk7.sys [PX5: EABF85AE00CF7D2B92F600B95331A0006187D7DB] [G] c:\windows\system32\drivers\bridge.sys [PX5: 69CABDC3803104ED17D001BEA902E2004A7836B0] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdate.dll [PX5: BE228E15F0D179A5D96009253ECF5D00030834D9] [G] c:\windows\system32\drivers\aspi32.sys [PX5: FFECA31D9CC7FD7C6269005019C788008125D2E7] [G] c:\program files\pinnacle\shared files\filter\mpegencoderlib.ax [PX5: F9B9FA0B00B3D9B72086047168C47F007C23815B] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\npgoogleoneclick7.dll [PX5: 71BB17BDF0704DAA837B03D35CC859000E4B8D87] [G] c:\windows\system32\drivers\mnmdd.sys [PX5: 33A41DEC8064684210700001C4EA1400320E2D4F] [G] c:\windows\system32\drivers\fastfat.sys [PX5: 1E68B78D00BA4E2F30E102605EF38B00BED2E67D] [G] c:\windows\pchealth\helpctr\binaries\helpctr.exe [PX5: 21D97936006462ECBAF30B10C931BB006922EA04] [G] c:\windows\system32\drivers\cbidf2k.sys [PX5: 7B8DA5F780B7DA7536FE00ABA71B6C00B12776D7] [G] c:\program files\hp\digital imaging\bin\hpodprint2.dll [PX5: BCBF24EC00F968B100AB0EA51452CD00D3A73C89] [G] c:\windows\system32\drivers\hidparse.sys [PX5: 202AE5AF805FDB4161470039E900C0009EB401B0] [G] c:\windows\system32\drivers\mcd.sys [PX5: 874B185900D5916B1EF900C2FE181D00136FAB22] [G] c:\windows\system32\drivers\msfs.sys [PX5: 075BA4B3803111464A9700E6E20263008B5F85A4] [G] c:\windows\system32\drivers\dxg.sys [PX5: 3F54B7A780F0ED98157C011AE18D4A00EE6485EB] [G] c:\windows\system32\drivers\mup.sys [PX5: 488AE40380446D0EA57D014A890CCF00C681450A] [G] c:\windows\system32\drivers\dxapi.sys [PX5: D0E069F50027643C29470029619BD400B7B7054A] [G] c:\program files\java\jre6\bin\jp2iexp.dll [PX5: 3643F37B000382937049016A0E532F00EBF2905D] [G] c:\windows\system32\drivers\ks.sys [PX5: 78D9F49380D52F3B2603022FFE8CE100B4CA1585] [T] c:\program files\common files\installshield\driver\8\intel 32\iscript8.dll [PX5: DC5F2928007A438CA061036EED82F2006F929A77] [G] c:\windows\system32\drivers\mbam.sys [PX5: 5B28E81C301AD8ED43A9006623B31500096921DD] [G] c:\windows\system32\drivers\acpiec.sys [PX5: F21BE3DC800E8A0A2D3C009238A73C00F1A65562] [G] c:\program files\pinnacle\shared files\filter\audiograb.ax [PX5: 285F1B024D1BE01E60DF01D79FC94D009E4EA749] [G] c:\windows\system32\drivers\mf.sys [PX5: F49C56310087ADB9F998009652109C00BB35FCB1] [G] c:\windows\system32\drivers\fsvga.sys [PX5: 78ACD409808333CF2FC90046F776F800D0E19428] [G] c:\windows\system32\drivers\cdralw2k.sys [PX5: 6D61C560F0BB541C231B00C19BEC9900A4BF61E6] [G] c:\windows\system32\drivers\amdk6.sys [PX5: 4242D904806C60F8908300740C09B40085E06DD8] [G] c:\windows\system32\drivers\mqac.sys [PX5: A4B93ADE00A3CC201DAC01B48E57ED0024CEA9D4] [G] c:\windows\system32\drivers\atmepvc.sys [PX5: 7363E81E80EDA4EC7A0200CE34E22400450A279B] [G] c:\windows\system32\drivers\imagesrv.sys [PX5: 765B695900F122C8E91A01E15C4A6300587F7CC0] [G] c:\windows\system32\drivers\marvinusb.sys [PX5: A26221088056E245FD0406CBBB17CB002C7555AE] [G] c:\windows\system32\drivers\cpqdap01.sys [PX5: C60D75F500CE16D02E4100D9B4337E008A228DE3] [G] c:\windows\system32\drivers\fdc.sys [PX5: 030113CC009ED3836B77000B64308F0030511E66] [G] c:\windows\microsoft.net\framework\v2.0.50727\mmcaspext.dll [PX5: 3910DBA700EB0F2C561801814A7F1F00FFA96823] [G] c:\windows\system32\drivers\dxgthk.sys [PX5: 0164AB8900598A330DE900E4FEF37900B79BCD14] [G] c:\windows\system32\drivers\smclib.sys [PX5: 8A9722BD003AC63939580092009AC20088FC78D8] [G] c:\windows\system32\drivers\nwlnkipx.sys [PX5: B455E8AE80D2C31959AC01662F7EE7009B9C1B54] [G] c:\windows\system32\drivers\tsbvcap.sys [PX5: 87882BA880A89CF8537500BE0BB03800CD0425CD] [G] c:\windows\system32\access.cpl [PX5: 13C4B0780057B2E40C480161E64CE500825EF5D6] [G] c:\windows\system32\acctres.dll [PX5: DCC775F8008B19BBFC9E003A2B84EE00157E5117] [G] c:\windows\system32\drivers\usbd.sys [PX5: F328D8568037A02F12FA00A0B0E095005A1BACA9] [G] c:\windows\system32\drivers\p3.sys [PX5: BC6A682300C862C2A66A0022A0FE9B0009DB47FE] [G] c:\windows\system32\drivers\nvsnpu.sys [PX5: ABD32F668077E02C659F032CCEB068001C980581] [G] c:\windows\system32\drivers\tcpip6.sys [PX5: 5D79645C800A9DEE710003BFD457ED00F0D2E94E] [G] c:\windows\system32\drivers\rio8drv.sys [PX5: 689BF8B80051228F2F8000540597A5009049C8B5] [G] c:\windows\system32\drivers\vdmindvd.sys [PX5: 5DFBB3300012B79DE3E300778EC928004FCDB2AF] [G] c:\windows\system32\drivers\sffdisk.sys [PX5: AF380F15808E7A972B3D001ABF251400652E930D] [G] c:\windows\system32\drivers\nwrdr.sys [PX5: 83E10CED0073D0907FCD02CE4498B500A105309E] [G] c:\windows\system32\drivers\rmcast.sys [PX5: 51F889B700FC9166166A03256E7AAC00D3C16FD6] [G] c:\windows\system32\drivers\partmgr.sys [PX5: CD5C0D6C00BC0D35496D00DCA66DE800E5B26EF9] [G] c:\windows\system32\advpack.dll.mui [PX5: F9A4BD3D002F02DE287800CBF7A4B300336C1EE2] [G] c:\windows\system32\drivers\parvdm.sys [PX5: D78233F280E873FD1A40001BF0D2FD00FFED26EF] [G] c:\windows\system32\drivers\wmilib.sys [PX5: 7A1B707D0098974111DB00C8E2E10C00FCC422B3] [G] c:\windows\system32\drivers\rdpwd.sys [PX5: F059F0E3086A11EC2111023C258C8900CFC29C24] [G] c:\windows\system32\drivers\ndis.sys [PX5: D3D6286080F2E0F0CA7A02249DEC7F001D734284] [G] c:\windows\system32\drivers\tunmp.sys [PX5: CBD0AEE38035D6A5300B00CF5C419100CB427E52] [G] c:\windows\system32\drivers\npfs.sys [PX5: 20DA5FD280719B5A789A008E44C90300CCA72CD2] [G] c:\windows\system32\drivers\rawwan.sys [PX5: 3623B25780ED679386B1006F511AA700A8DBED63] [G] c:\windows\system32\drivers\usbcamd2.sys [PX5: D11C923080C0476E5DDA002FC1E34E002B3DC035] [G] c:\windows\system32\drivers\tdtcp.sys [PX5: 8942980688A6EF76558200032BC6D800A375DA91] [G] c:\windows\system32\drivers\ndproxy.sys [PX5: FB8873A080F72F00942D005DFF5068001A60ED1C] [G] c:\windows\system32\drivers\pciidex.sys [PX5: DD4713DB00668128625F00A6F0879B00FA781103] [G] c:\windows\system32\activeds.tlb [PX5: 10C26EAA000E131CB251013AAA5AF100A6E55102] [G] c:\windows\system32\drivers\volsnap.sys [PX5: AC3AFD0E80294768CC3200EE1153E40070B62EFA] [G] c:\windows\system32\drivers\oprghdlr.sys [PX5: 691E96B980EF4DD30D2300DD63265E00B79BCD14] [G] c:\windows\system32\drivers\nvnrm.sys [PX5: 3DBE4A3180AD154FA774049784A36A00E2C7F679] [G] c:\windows\system32\drivers\scdemu.sys [PX5: 44C8B15E3CBE8BD77BE70097F5594A00B5AFEA3A] [G] c:\windows\system32\drivers\nikedrv.sys [PX5: 31AFD82600B7B0E92F3400332F79D6008B90E2A9] [G] c:\windows\system32\drivers\stream.sys [PX5: E9758E5F00F11219BE3300252F112F00F38A6C5B] [G] c:\windows\system32\drivers\nvtcp.sys [PX5: 5205321B006616DB8E5501BCBAD8DF003653DBCF] [G] c:\windows\system32\drivers\riodrv.sys [PX5: 31AFD82600B7B0E92F3400332F79D600DA0E26E7] [G] c:\windows\system32\drivers\sdbus.sys [PX5: BA494C87000D7A4F08B4013D43118E00EBAF0531] [G] c:\windows\system32\drivers\pcmcia.sys [PX5: 1E5E2DAE80A234A7D4E1011E8065A700A21D09BC] [G] c:\windows\system32\drivers\tape.sys [PX5: 1278B1EF80B32A683A3F0096934CD200746C2998] [G] c:\windows\system32\drivers\rootmdm.sys [PX5: F3E7979300A8EEA3177100743639FF0080591A18] [G] c:\windows\system32\acledit.dll [PX5: A84D82300026833AFA8301391D250A0043FA3563] [G] c:\windows\system32\alsndmgr.cpl [PX5: 007EA59F00ABCE4D908004056629380079111086] [G] c:\windows\system32\admparse.dll [PX5: C1571718000ABA0A18990109280F480032EEA6D4] [G] c:\windows\system32\drivers\wpdusb.sys [PX5: E04E67C68020394F960F004FBC02B000DC6FED3C] [G] c:\windows\system32\drivers\usbintel.sys [PX5: 46A2709480A8B9863E99007B5ED70B000E5AFC3D] [G] c:\windows\system32\ahui.exe [PX5: 47C44E5300FCD246801B01EEE587120081000EFC] [G] c:\windows\system32\drivers\nwlnknb.sys [PX5: 04BB889700AAB944F73D0096D8122400A0912260] [G] c:\windows\system32\drivers\usbkey.sys [PX5: 98A31C94B0ADEA40704C004D99AD4700E0C4C069] [G] c:\windows\system32\drivers\rndismp.sys [PX5: F5E4CD0480C828137517005714D7F1002CA246EF] [G] c:\windows\system32\drivers\videoprt.sys [PX5: BBE87C52808D55E2379801ACFA738900C0632DEC] [G] c:\windows\system32\drivers\ntfs.sys [PX5: F6D2D4BD008F0B21C44F08EC65529C002F16FA15] [G] c:\windows\system32\drivers\null.sys [PX5: 7047032880E19D2B0B4300F23A496700B79BCD14] [G] c:\windows\system32\drivers\sffp_sd.sys [PX5: 35A841FC0030CAF028AD002AAB39F600184DF1C4] [G] c:\windows\system32\aclui.dll [PX5: CF6D818700CFC03BC0B001F4A791A000FF2BB169] [G] c:\windows\system32\aaaamon.dll [PX5: 7B1DF5DD00F73C6564DA002F8D6E2E00F283C3CC] [G] c:\windows\system32\drivers\usb8023.sys [PX5: 6C38C2AE8005B13A31EC001CD2E193004FD5788A] [G] c:\windows\system32\drivers\usbcamd.sys [PX5: D11C923000C0476E5DDA002FC1E34E00BC32EEBC] [G] c:\windows\system32\drivers\scsiport.sys [PX5: BAEDAB6C00163F8D78C6012DFF6A240038CAB5E8] [G] c:\windows\system32\drivers\serial.sys [PX5: 84269A0C80DA4AE9FD0E00315B99420020A1D4D6] [G] c:\windows\system32\drivers\udfs.sys [PX5: 5FD2643980FF4C93024701049FF5A900913F1B6B] [G] c:\windows\system32\adptif.dll [PX5: CE5359030054E3D566750004C190D0000D718CCE] [G] c:\windows\system32\drivers\tosdvd.sys [PX5: 628D18D7002B7E40CAFC00177DE27100B717B0CE] [G] c:\windows\system32\drivers\tdi.sys [PX5: D2E197368059988748C500010EF1F2006AC8B3D9] [G] c:\windows\system32\6to4svc.dll [PX5: 24C0F0FD00BA71A088360181B752300076D33773] [G] c:\windows\system32\drivers\usbport.sys [PX5: A1EF174180FC34972E3902AA15903200854523B2] [G] c:\windows\system32\drivers\nmnt.sys [PX5: 4F6E51DE803D5E299DD30090E39024009FB3BD94] [G] c:\windows\system32\drivers\serenum.sys [PX5: 4F3C7EAD801665B83CEF00E324D68C009966C2DD] [G] c:\windows\system32\drivers\ws2ifsl.sys [PX5: E3FE23AC0026FAFE2FF10052E88519002DA1A545] [G] c:\windows\system32\accwiz.exe [PX5: 6A52E78100B936BDCEFD02975AAA1F00EB167518] [G] c:\windows\system32\drivers\pcdrndisuio.sys [PX5: 9C9DB3A4809D5F9034E300B4F9469A00F3A5B82E] [G] c:\windows\system32\drivers\tdpipe.sys [PX5: 3FCBC6C1086354332FFD003DE3512D00CB438F2A] [G] c:\windows\system32\actmovie.exe [PX5: 3545C997001354F4107F0027CC807900B79BCD14] [G] c:\windows\system32\drivers\portcls.sys [PX5: 4C3FDB6000983D64179702C05212D30014AEE1A4] [G] c:\windows\system32\drivers\sonydcam.sys [PX5: 0B9EAE4180F27A6F636900C11EF4E3002F2E7423] [G] c:\windows\system32\drivers\nwlnkspx.sys [PX5: 38D410228045AB3DDA820098A4E752008EA9780C] [G] c:\windows\system32\apcups.dll [PX5: E25B16D60071AD9992AD0123C2DBE800AEC4F4F4] [G] c:\windows\system32\arp.exe [PX5: 03C6BC9C00D2308B4C4200977B246F008169E48E] [G] c:\windows\system32\asfsipc.dll [PX5: 299B214D000BFCD33C76000DA7DB9A00340AC672] [G] c:\windows\system32\autochk.exe [PX5: 37A4961F00760B77FC86086430A56A00E956D2A1] [G] c:\windows\system32\bfc42.dll [PX5: 2DB4DD7500F5C31F969719CAB0AB3200BDF1E953] [G] c:\windows\system32\autoconv.exe [PX5: BB6D83840056EC7B32BB0908F42FC500427FEF73] [G] c:\windows\system32\cipher.exe [PX5: 44180F9C00BA1610DC4000139DBFEC008B6D3923] [G] c:\windows\system32\cddblanges.dll [PX5: 2C0DED7B007BF6B880DE013BDB39510044A43053] [G] c:\windows\system32\cc3250.dll [PX5: 4658CFF4003B07EA6E4C15690E6A5D00BC603542] [G] c:\windows\system32\ckcnv.exe [PX5: FD6346DE003758241E9400619EF00C0015948C66] [G] c:\windows\system32\chkdsk.exe [PX5: CBCFBA7000E415602E7900AC8CF8A600AFD01845] [G] c:\windows\system32\asr_ldm.exe [PX5: 3BDE3776002C268D7ED500B692AD260043EEFB00] [G] c:\windows\system32\asferror.dll [PX5: 0A5C4DC9004CF7ED1C3B00F6B715E4001F91C653] [G] c:\windows\system32\asycfilt.dll [PX5: 76F0450200C9B3E2FE280088603D9800CE0B5ECF] [G] c:\windows\system32\avicap32.dll [PX5: EE408ED80092ED20FAE600843F1A1700337C624F] [G] c:\windows\system32\atkctrs.dll [PX5: 39C0618D0051B057343E000BD0B34900D27C8D34] [G] c:\windows\system32\cdosys.dll [PX5: D8EA8D1600494AB08E351FA47BBF1D0031F8F9F4] [G] c:\windows\system32\awdcxc32.dll [PX5: C4A9940F00C6D0AD1821009D54C4CB00F02B4CE8] [G] c:\windows\system32\bootok.exe [PX5: 74344CDB00CA7FC2125100A1B459000059DA416D] [G] c:\windows\system32\blastcln.exe [PX5: EA02EE1F00B2E5D51809018CACB08300D255D38E] [G] c:\windows\system32\ccfgnt.dll [PX5: D227CB3900C650516C21007071250C004BF00597] [G] c:\windows\system32\cddblangja.dll [PX5: 2C0DED7B007BF6B830DE013BDB395100532838FE] [G] c:\windows\system32\atrace.dll [PX5: D322C48C00D3554A2CA600E616D5BD00ADED86A6] [G] c:\windows\system32\charmap.exe [PX5: 21B69B8900117FE93AB201F2CEF5910086A83767] [G] c:\windows\system32\cachex.dll [PX5: 00BDD7D700507BD9487A0059E7D2F100644CE5C6] [G] c:\windows\system32\atl71.dll [PX5: E909302D009C54105C6B0151449A85009FE0FD3B] [G] c:\windows\system32\cddblangfr.dll [PX5: 2C0DED7B007BF6B880DE013BDB395100137B7B9E] [G] c:\windows\system32\chcp.com [PX5: 0844187F004172551EE000230CC13000B2805639] [G] c:\windows\system32\cacls.exe [PX5: F1F3B1B900CD2F6C487F009318B15A0038397505] [G] c:\windows\system32\bdco1.dll [PX5: 3E6CD9BF008D97042692005E367CDE00680FB1E6] [G] c:\windows\system32\bdco1ins.dll [PX5: 3E6CD9BF008D97042692005E367CDE00680FB1E6] [G] c:\windows\system32\cdmodem.dll [PX5: AF1AB2DF002E316A3ED50097014092007C338B2A] [G] c:\windows\system32\batt.dll [PX5: 25899D7600B9127F2256003E5230E300F548934A] [G] c:\windows\system32\bthprops.cpl [PX5: F6A18F950011D0E5B0EA01D8646C48006A7F2944] [G] c:\windows\system32\asr_fmt.exe [PX5: 4CEA09E7000022477601002D718CCA008F416A12] [G] c:\windows\system32\awdenc32.dll [PX5: 86B0F7BC00367D262E2200DE32164700EA28D61F] [G] c:\windows\system32\atmlib.dll [PX5: 954A340500103EB976D6009E1A2A07000E86BD2B] [G] c:\windows\system32\bthci.dll [PX5: 1DC6AB3100A715215239003256886400F4B2F809] [G] c:\windows\system32\borlndmm.dll [PX5: 1516B4AD0013009C75280085C95F0400F05C8D15] [G] c:\windows\system32\bootcfg.exe [PX5: 53EF9D280019DE72168702F5BA49FF00ED17097C] [G] c:\windows\system32\atmfd.dll [PX5: 800CFF5E0018D2B45C2A04E84F524A00BEA95785] [G] c:\windows\system32\avwav.dll [PX5: 4BF98F3000F8D5791E300173040BD6000B35A58E] [G] c:\windows\system32\atmadm.exe [PX5: 38DAF96F003B7F7B2C4A00F7E778D30049B8EF0C] [G] c:\windows\system32\chkntfs.exe [PX5: 108ECE8E005098632C3F00575B81370045FDA0AE] [GP] c:\windows\system32\avsredirect.dll [PX5: B091759400C402D96C4D00F37D5EF7002239EF96] [G] c:\windows\system32\cards.dll [PX5: 6AE2A02400D5EFD37E3C0581D18B9E00BA668563] [G] c:\windows\system32\avmeter.dll [PX5: 95D1829900B4FDBA40830076B936C000D5698763] [G] c:\windows\system32\bootvrfy.exe [PX5: 8CFF2C17003799C61412008215242C00FDDCAA29] [G] c:\windows\system32\bthserv.dll [PX5: 9965B5C500A0E193760B00FD72D69F007447C48E] [G] c:\windows\system32\auditusr.exe [PX5: 68424EED005108A538EB00B985E9E9007D02AB35] [G] c:\windows\system32\cidaemon.exe [PX5: 04D08A450067C14D209300448CFCAF003D6B1037] [G] c:\windows\system32\aviprax.dll [PX5: DBEC0F5547890F9CC02B01BA25ECB600B6EB8058] [G] c:\windows\system32\append.exe [PX5: C8DBBDF7D2349894303A0088C4F8980082E18F26] [G] c:\windows\system32\awresx32.dll [PX5: 52AC686600170F94687C00E251529000773D82D9] [G] c:\windows\system32\cddblangnl.dll [PX5: 2C0DED7B007BF6B880DE013BDB395100A775C658] [G] c:\windows\system32\atl70.dll [PX5: E285C84E0075DD944C7B01F60653B8000CC031C6] [G] c:\windows\system32\asapi.dll [PX5: 89F0CEB800E6784A4C2D008B442F8700788EA96B] [G] c:\windows\system32\awcodc32.dll [PX5: 975F432600CBDA5E6017003492734B0037D56840] [G] c:\windows\system32\autofmt.exe [PX5: 008856FE00F7A4FBDC0708E7D8E3D80067B810E5] [G] c:\windows\system32\cddblangit.dll [PX5: 2C0DED7B007BF6B890DE013BDB395100841D1CF7] [G] c:\windows\system32\bfc42d.dll [PX5: 6B0C895300B9ACF7C6A22181573E370069831CDC] [G] c:\windows\system32\cddblangde.dll [PX5: 2C0DED7B007BF6B880DE013BDB395100AF1F2FE5] [G] c:\windows\system32\at.exe [PX5: 1728CD5800DCDBEF62750001FD99710086F56714] [G] c:\windows\system32\cc3250mt.dll [PX5: F9921BE700BE55F2D4B3162C191E6A00C9611D66] [G] c:\windows\system32\bootvid.dll [PX5: 2B718647003A024E30B7006F67D1AD00D793384A] [G] c:\windows\system32\attrib.exe [PX5: CFED8639005EE64A2CE6001AFE8E9700026A3E95] [G] c:\windows\system32\calc.exe [PX5: 7B086A01001A8363C02501E8D53F030083890626] [G] c:\windows\system32\cdm.dll [PX5: A75D27095806E31369690162EB7CB700AB07311B] [G] c:\windows\system32\asr_pfu.exe [PX5: 61A2C36E00973D168036000B4C80D00089A3F228] [G] c:\windows\system32\bcbmm.dll [PX5: E2C4AD49003CC7714205001F0EE3FA00FB2110D6] [G] c:\windows\system32\atmpvcno.dll [PX5: 6886BC7E0088DB70883D00F7964E1500C89B5F2E] [G] c:\windows\system32\awview32.dll [PX5: 4EF4483E00BB477D28390045B496F400D71E955C] [G] c:\windows\system32\bcbsmp50.bpl [PX5: 150A1B490092ED174012020E3A5197008840868B] [G] c:\windows\system32\autolfn.exe [PX5: C2D513A3009C1D192C500096B4B90200124CCCA3] [G] c:\windows\system32\d3d9.dll [PX5: C67FA8CB00156B90C64919B9C83EEF00AE1EE9A4] [G] c:\windows\system32\cmdvdpak.cpl [PX5: 25707173F0AFB542596E180CFBBA6700F607598D] [G] c:\windows\system32\dbmsgnet.dll [PX5: 0A85E7D500AF4B48602B0090F3240D0014335780] [G] c:\windows\system32\cliconfg.exe [PX5: E98384AF00AC692C50CE002DDDE82A004661A1B9] [G] c:\windows\system32\corpol.dll [PX5: E556F087003F809F441F00072DA5BB007B1A2EB5] [G] c:\windows\system32\dcomcnfg.exe [PX5: 7718B45800403A13148300708C958D0023AE9C2E] [G] c:\windows\system32\cliconfg.dll [PX5: E45A0C3800D2AE4E301B014E26E0A800C262765B] [G] c:\windows\system32\dbnmpntw.dll [PX5: B2ACDF6700928750706600A13880BA00C9EBE70F] [G] c:\windows\system32\dgsetup.dll [PX5: 1D6CBC651CBCBECD4CE301498EBF8F00BB92AA9E] [G] c:\windows\system32\compstui.dll [PX5: 91A82A7100EE111980230350307832008750CF1A] [G] c:\windows\system32\ddeshare.exe [PX5: C69B3C6600E4C62E764100B94C193000FC1FE735] [G] c:\windows\system32\dbnetlib.dll [PX5: 3D7467D9002BC3A7B03601D01374EE008C1A0B8B] [G] c:\windows\system32\devil.dll [PX5: 4063DB510041A8CFFCEA0A5E2A32BE009220A244] [G] c:\windows\system32\d3dcompiler_33.dll [PX5: 370C1CFD70E8AB8525D511CE54E43A00347EE1A7] [G] c:\windows\system32\clb.dll [PX5: A756E91B0089CE772AE500E4712A410034A1B731] [G] c:\windows\system32\control.exe [PX5: 7ACC803500D7FEE920C900E6B3BA7000E7AE45D1] [G] c:\windows\system32\cmutil.dll [PX5: 8BF82F1B005298429CC2004C52C7B0002A3B8BDB] [G] c:\windows\system32\ctl3d32.dll [PX5: 1CA2206D005300866A02008C2FFB3900ECC94104] [G] c:\windows\system32\dimap.dll [PX5: 3AB8D322006E0961AC3700F36E4BC000308F618E] [G] c:\windows\system32\cscript.exe [PX5: A244862700741F8780AA0183D83245002BF425A2] [G] c:\windows\system32\cmstp.exe [PX5: A5E9A5C300177A0EF86100907D89CC00692A0721] [G] c:\windows\system32\d3dim700.dll [PX5: F2F2FE9F00D9E5E698850C740D45DD0098D6E14B] [G] c:\windows\system32\d3d8thk.dll [PX5: 7D4E2D60001F64E6206300360D52B20089B88F1D] [G] c:\windows\system32\dbmsqlgc.dll [PX5: 395DC7C63C58A3A582F40039F8AF99006B31A8A8] [G] c:\windows\system32\compact.exe [PX5: 8748F8F100679CF544B900DC3BCE680009E121B1] [G] c:\windows\system32\cmcfg32.dll [PX5: C0EBFD970093D0C93EFB00F7F87CCC0079ED5742] [G] c:\windows\system32\d3dramp.dll [PX5: 8247C93B00446AA2022809CC681F7C003145F6D1] [G] c:\windows\system32\cxlibw-2-6.dll [PX5: 7E8A2EF8000CFBFA509713FB85F77A0094CF4ADC] [G] c:\windows\system32\cmdl32.exe [PX5: C45149D1000D60FBB8F100CC63A934000A9A33A3] [G] c:\windows\system32\cmpbk32.dll [PX5: 473C9147004E605A38270047BA561600365F000C] [G] c:\windows\system32\cliconfg.rll [PX5: BEA3E7A300E4A05460BF007E4ABA470021E9E307] [G] c:\windows\system32\d3d8.dll [PX5: D1FB01EC00627F5A00B0121E24B72D00D3D2F137] [G] c:\windows\system32\comp.exe [PX5: 368BF22A00763B5D3ED700D961B0D80007AC0308] [G] c:\windows\system32\dhcpmon.dll [PX5: 18CE8D1D00175B9DA60205FC5F166700FC5C367B] [G] c:\windows\system32\conime.exe [PX5: 03F652A8001440A96C0E00F7C658AF0064FC740A] [G] c:\windows\system32\daxctle.ocx [PX5: 44E08DC1000B2331565F02065E1D0B009DC269A0] [G] c:\windows\system32\delphimm.dll [PX5: E2C4AD49003CC7714605001F0EE3FA00E6166C5C] [G] c:\windows\system32\dbmslpcn.dll [PX5: ADE507573C48E39A727B0003A33CF5003CFA3331] [G] c:\windows\system32\cxlib-2-6.dll [PX5: C6B703850068180A70411394D710E300261C5B0F] [G] c:\windows\system32\diskcomp.com [PX5: 1986147F00E33AB824A100536EC85C00C60A6DAC] [G] c:\windows\system32\cslibu-2-0-0.dll [PX5: 741353F80068CDE440511945AC7DF200D45D6350] [G] c:\windows\system32\desk.cpl [PX5: 20C38A3800CD1FF2108C0283680A2C0069854E15] [G] c:\windows\system32\d3dim.dll [PX5: 595D9392008F9488A87406D5A0940A00E2343D69] [G] c:\windows\system32\d3dx9_33.dll [PX5: 2EEE6ACF68AB2F14571735C68DF4AC00BB187797] [S] c:\windows\system32\cmsetacl.dll [PX5: D9BF8FCA0010815B36150053233C380091855DD5] [G] c:\windows\system32\dfrgres.dll [PX5: 2A4660C100D15103C87100F0EAC2A500680BC1BA] [G] c:\windows\system32\d3dpmesh.dll [PX5: BF90855300EF56158889009756B762007B039E2C] [G] c:\windows\system32\d3dx10_33.dll [PX5: BA062C7F68D2CD76C55E06A1650ED200E3CF220A] [G] c:\windows\system32\dbghelp.dll [PX5: 6C73D0A400F60316C48B0920BAF3A8006CEDB931] [G] c:\windows\system32\comcat.dll [PX5: 0246801000C0A6C80E5A003B3C2E0700B79BCD14] [G] c:\windows\system32\clipbrd.exe [PX5: 574D2E3D0067182C92EC011988946100491CD7AF] [G] c:\windows\system32\davinci.scr [PX5: AB89699600494F7158EE4DDBCD3A8E005336266F] [G] c:\windows\system32\defrag.exe [PX5: 5F7F31A700172248627900CBF021080019B397B0] [G] c:\windows\system32\ctfmon.exe [PX5: 5CAFEB7D00E5509F3C0D00F14B5A5100A007D8EF] [G] c:\windows\system32\diskcopy.com [PX5: 1E19D4430016CEF71C05003B3C2E07003DA77CBF] [G] c:\windows\system32\dbmsrpcn.dll [PX5: 4AE4365800CC7D6D6045009A563D5E00991539FD] [G] c:\windows\system32\dbgeng.dll [PX5: CE5A87CC009E75A0F0770C41511D9E005100D6F3] [G] c:\windows\system32\cnetcfg.dll [PX5: 7C60155A00B0092180D700786A5A2D0098F3D8DF] [G] c:\windows\system32\diantz.exe [PX5: 269EBC1B00DDF2974E0C01F223A5CA009C1C242C] [G] c:\windows\system32\console.dll [PX5: 7A6EC21A00E291AF04710154DDEF65004D0D9E35] [G] c:\windows\system32\cryptdlg.dll [PX5: 2E8E789E00DEA16124920128B3892E00D25B83F1] [G] c:\windows\system32\convert.exe [PX5: 3119E51A0039A1473628002D124449007DA286CD] [G] c:\windows\system32\cmdial32.dll [PX5: FC65905D0047286A3C5F05CA49E085005142B240] [G] c:\windows\system32\cleaner export.qtx [PX5: 8D28932A00AED51B342A07E00E70CA005CDDD0FD] [G] c:\windows\system32\cnvfat.dll [PX5: DD0E1772008354A168B000E22BC6E100E4A6594D] [G] c:\windows\system32\dhcpsapi.dll [PX5: 97A384BC00320279221F0142CA7E2100BA7EF4B6] [G] c:\windows\system32\diskpart.exe [PX5: 9DE62BBE000E617B808502EA62947D000605FFDA] [G] c:\windows\system32\dgrpsetu.dll [PX5: F4BFDE6B1DA600EEB02F02110486CA003FE3BCB4] [G] c:\windows\system32\cmmon32.exe [PX5: 1F64D1AC00C341A49CEE00B196F83C00E658226D] [G] c:\windows\system32\diskperf.exe [PX5: 6066779A00BF4230466500D46E5909003AEA945C] [G] c:\windows\system32\crtdll.dll [PX5: 248674641B838D3E46F90208AEFA8B000069A20C] [G] c:\windows\system32\debug.exe [PX5: 86F2D4969A46C66C509E009B9BAE1E001C81D7FC] [G] c:\windows\system32\doskey.exe [PX5: 877CE51F00B2A3A62AB7004F29AEE20045C2DA27] [G] c:\windows\system32\dplaysvr.exe [PX5: 23D1C1B9009B004E7635001B7257C4008172C198] [G] c:\windows\system32\esent97.dll [PX5: 4E117F42100AE25C03CD111E47AFB300B078597D] [G] c:\windows\system32\etc-1-0-12-3.dll [PX5: DF49CB8A00B366CC503901F01D69DC00F27DDCE5] [G] c:\windows\system32\dpnsvr.exe [PX5: CAB5F7D300279F4948EF00F7174F2B000B885513] [G] c:\windows\system32\drmupgds.exe [PX5: AAE159760032FE78D03903DA4F734D009005F26B] [G] c:\windows\system32\fdco_l1028.dll [PX5: FF06E6D60097A74660940281402AEE0095799D63] [G] c:\windows\system32\fdco1.dll [PX5: 4E2EE62900FE50121CF5030A2719970000549B29] [G] c:\windows\system32\fdco1ins.dll [PX5: 4E2EE62900FE50121CF5030A2719970000549B29] [G] c:\windows\system32\ebus-3-3-2-4.dll [PX5: CF79E6FD0061FBC460B11A1147E5E200C57878B0] [G] c:\windows\system32\dpv11.dll [PX5: 88D410D600D3F4D1E02000E2854E30004D5F079D] [G] c:\windows\system32\dpnlobby.dll [PX5: 84EB2F4E00514A980E6E003B3C2E0700B79BCD14] [G] c:\windows\system32\divx_xx11.dll [PX5: AD284E5B0092A92140080CD60B49CE00DB21A4C0] [G] c:\windows\system32\dplay.dll [PX5: DE7C0601107D7ED5818C00190DC82A0031D0A117] [G] c:\windows\system32\dpnwsock.dll [PX5: F9A3AABF00D02D8EF2F4001971291000847F239D] [G] c:\windows\system32\dpugui11.dll [PX5: 84CF957500C20A0310D7096337169F00C2EAE936] [G] c:\windows\system32\esentprf.dll [PX5: D4A315070020025B44D600FE6F33FE00AD46B3F9] [G] c:\windows\system32\extrac32.exe [PX5: BABD65B900952701B21E00D69262DD007A2B29CA] [G] c:\windows\system32\dsound3d.dll [PX5: 41742278006C2F38C0A913867AB51E001CA24B32] [G] c:\windows\system32\esentutl.exe [PX5: 47C6101A006043B39A0D00C22981B2009B3ACC12] [G] c:\windows\system32\drmclien.dll [PX5: CD5A51F700D064D1C2350320342F04006890042D] [G] c:\windows\system32\dsprpres.dll [PX5: F039CEAF005690EF105100EAA235BD00B79BCD14] [G] c:\windows\system32\dvdplay.exe [PX5: D8443212002A7F0FD80800F92FFA110003DB83B9] [G] c:\windows\system32\divx_xx0c.dll [PX5: AD284E5B0092A92190080CD60B49CE009744F933] [G] c:\windows\system32\dmutil.dll [PX5: 1B68C99D00F57378CC5400432EDEDA00AE096A41] [G] c:\windows\system32\dosx.exe [PX5: 5507FD0F50D6009CD29800CDFA2EBC00BBB3D044] [G] c:\windows\system32\drmstor.dll [PX5: 326C698C0002038B6A1E01A8A37223005C37536B] [G] c:\windows\system32\dpwsock.dll [PX5: 7522782F10E02549A7F0001DA750A900B7DB561E] [G] c:\windows\system32\expsrv.dll [PX5: 711053231D670552D0F105E3C6F13900FF16CD94] [G] c:\windows\system32\eventcls.dll [PX5: 534E69D0009547C782B3002DEF5BBF001742DC9F] [G] c:\windows\system32\divxdec_0407.dll [PX5: 010FB2D900EA0E7D70EC0174F86E720015672ADA] [G] c:\windows\system32\ds16gt.dll [PX5: 06D51EF7304C4B9C12E2008B39F2D2002D2A8608] [G] c:\windows\system32\divx_xx0a.dll [PX5: AD284E5B0092A92170080CD60B49CE006681668B] [G] c:\windows\system32\dpwsockx.dll [PX5: A910B83C00FA72CFE04000F14CC7E600F825D2EE] [G] c:\windows\system32\expand.exe [PX5: 82ECF60C0077778E3E18008D1F34CC0037BB10F4] [G] c:\windows\system32\drwatson.exe [PX5: 76A8D502D0AF31A86D16002F16810100A203D5D3] [G] c:\windows\system32\dpus11.dll [PX5: 68E7973B007B8024403B058FCF0E1F00D04954CF] [G] c:\windows\system32\edlin.exe [PX5: 413087F36217D5E431060051C2DD5700951D9F6A] [G] c:\windows\system32\dwwin.exe [PX5: 4EC4DD6D002D6A3DC06802B62E989F00F239239F] [G] c:\windows\system32\divx_xx07.dll [PX5: AD284E5B0092A92190080CD60B49CE00E5857B05] [G] c:\windows\system32\divxdec_040c.dll [PX5: 010FB2D900EA0E7D70EC0174F86E720030DED6B3] [G] c:\windows\system32\fdco_l1031.dll [PX5: BC4213E400DC62B36E46028F0FF801001B5CBD22] [G] c:\windows\system32\efsadu.dll [PX5: 3E9BE915001B8FC168DC00800300C0002666E5FD] [G] c:\windows\system32\dpu11.dll [PX5: 3BA9D60E00DEA37280BA049326036C0020DA5782] [G] c:\windows\system32\driverquery.exe [PX5: 1D05EA0000D43464E4F600C174C7C1004E810F7A] [G] c:\windows\system32\dpnaddr.dll [PX5: 4EA7E30C0043C1CE0EC9003B3C2E0700B79BCD14] [G] c:\windows\system32\dpmodemx.dll [PX5: 7D0D6A5100DEFA3C5C21001B8709080082520AE0] [G] c:\windows\system32\ds32gt.dll [PX5: 6B9C14A000AF894440C9002DDDE82A001A9ED1E7] [G] c:\windows\system32\eventtriggers.exe [PX5: 79D181880088D6BE303D01C7E7033500864A3785] [G] c:\windows\system32\edit.com [PX5: B542A12FFE6E0DA410520148D184580078170B6B] [G] c:\windows\system32\dsauth.dll [PX5: 9F2DDBEB003BDE49F6C1003A3E0A2500EFC2B38B] [G] c:\windows\system32\drvins64.exe [PX5: 5D393C7DF05B0382099D011FC48C2800EF394434] [G] c:\windows\system32\dpcdll.dll [PX5: AB679F220036DCE57AC901FB6ACCF600167A6D61] [G] c:\windows\system32\divxwmpexttype.dll [PX5: C0EC59580067EBAA30EF00816E2085008BAD252A] [G] c:\windows\system32\dpl100.dll [PX5: 686B364700EE05F550AF01792D4BC2008806A537] [G] c:\windows\system32\fastopen.exe [PX5: 68062C0E72CE86AB03780001B5B47F00DC855A06] [G] c:\windows\system32\dpvsetup.exe [PX5: 5D18E377003DEE9246F3019E4A853B00A4381F1C] [G] c:\windows\system32\dmdskres.dll [PX5: C1DA243000FDCDD5D0FE012C57CBFD00D9A03785] [G] c:\windows\system32\dmconfig.dll [PX5: 91760A4A00B7164A0C5005F6E3DCBE00FC6D3275] [G] c:\windows\system32\dpnmodem.dll [PX5: 5F3013F70060F46BF48600E5423C8800F6E413A9] [G] c:\windows\system32\divxdec_0411.dll [PX5: 010FB2D900EA0E7D70EC0174F86E7200A4C39A3B] [G] c:\windows\system32\fc.exe [PX5: 28E6033A002C473C3A740081C9ECE800E5A8EEA7] [G] c:\windows\system32\eudcedit.exe [PX5: F3A5068200A8AE1CF269022CC59D02000B602E0E] [G] c:\windows\system32\exe2bin.exe [PX5: 5F77C1D8E8F1754E20FC006C71A9DD00D2484FED] [G] c:\windows\system32\dtu100.dll [PX5: 1FAA318A000E4DD510F20384F7CE2800616F2D5A] [G] c:\windows\system32\exts.dll [PX5: F0A3FD590084049DDCE40104A59D95005D2A765A] [G] c:\windows\system32\dllhst3g.exe [PX5: 65825BAA0053B59412CE00667D2C730038B94BFF] [G] c:\windows\system32\eventvwr.exe [PX5: DDD196F100A5237522930017AA36FA006B31FEF8] [G] c:\windows\system32\dxdiag.exe [PX5: 18AACE1300ED2042D0CB137A9455F500524B835D] [G] c:\windows\system32\dvdupgrd.exe [PX5: 0EC275640011899446FE005FF9BC60007E373F17] [G] c:\windows\system32\eqnclass.dll [PX5: A0506D640095274D940501BBE07290006572CC5B] [G] c:\windows\system32\dpserial.dll [PX5: 2753BD531081DAE2D128003B51C9950062D3006E] [G] c:\windows\system32\eventcreate.exe [PX5: CD997508009E3CF5C47A004CC57484008AC33440] [G] c:\windows\system32\hal.dll [PX5: 2994A75C000A6D2E0DF00244B5240B0035081E42] [G] c:\windows\system32\fxsdrv.dll [PX5: 2689429600930A216AD2003980B44F006DFC1DFB] [G] c:\windows\system32\fltlib.dll [PX5: 3650BB5A00CBC1264244000AA145360008A1E688] [G] c:\windows\system32\gpupdate.exe [PX5: 34DFEF82008C54ADE01E00A6195AA300FF40FEA6] [G] c:\windows\system32\gdiplus.dll [PX5: 221491A80896B6071B0119D37DDB5A005C35FA30] [G] c:\windows\system32\find.exe [PX5: 63A24C1F00504A2E244900DFA0ADA500DC0312CB] [G] c:\windows\system32\gpkrsrc.dll [PX5: FC3F1F6300B06673266A006DF634FB003754F7B9] [G] c:\windows\system32\fdco_l1042.dll [PX5: 7605AD34008D4E5364110298027EBA00CB9B39C8] [G] c:\windows\system32\hdaudres.dll [PX5: D29C721800E804D614BA00FCFD537E006AA4EF0A] [G] c:\windows\system32\hcwutl32.dll [PX5: F059D44D00315971E03902E270089A00B575935C] [G] c:\windows\system32\hccoin.dll [PX5: 50D0E80E005463061CCC00A8E1BF4F006A72690E] [G] c:\windows\system32\format.com [PX5: 21662ED600F19B6C6414002263F4F700B82D5863] [G] c:\windows\system32\ftsrch.dll [PX5: FCC5E63C005A97EFB0A402A9C70BB5006FF88ABB] [G] c:\windows\system32\grpconv.exe [PX5: 95D6380500A9E64C9A1900D3B8F70A000DD69273] [G] c:\windows\system32\freecell.exe [PX5: 403AAAC000A89970D8BA0061D34EDA00F3566931] [G] c:\windows\system32\getuname.dll [PX5: 66BC369A00CC449B3E3909C7DF5B6700129EDBFF] [G] c:\windows\system32\fxsclnt.exe [PX5: BDDEDD4300583CA2304702081EBA8400B24B2931] [G] c:\windows\system32\gphotos.scr [PX5: 5682E6003B3B3D60400C39E331298F00134BFA8B] [G] c:\windows\system32\feclient.dll [PX5: 0D2F726E002D337A541700648EE0FE00501CCDAC] [G] c:\windows\system32\fxsclntr.dll [PX5: 5872F758002A8AAA069F0287782D85006449C9E6] [G] c:\windows\system32\fsutil.exe [PX5: B69C4D8500D893E9DCD9005AF7677700675981F9] [G] c:\windows\system32\gdi.exe [PX5: FC1FF7C400FB641B60350044D7FA8100EFF43048] [G] c:\windows\system32\fxsroute.dll [PX5: C41F1C2B0022ADCF7C6A00FA3F4FBF002C446112] [G] c:\windows\system32\fxscfgwz.dll [PX5: DC4F58A70082A19EB2EB011E3B03EE0042B79CE3] [G] c:\windows\system32\fixmapi.exe [PX5: 3B5A429600F071AD0CF200150530FA00B79BCD14] [G] c:\windows\system32\gpkcsp.dll [PX5: E7C60D730067FCF78EC401C8F7F9160057E52E49] [G] c:\windows\system32\fdco_l1034.dll [PX5: 870D0FE1003D99656E590266E9AEDE0001541AF4] [G] c:\windows\system32\fxssend.exe [PX5: A4A8F3D000DDFC9F2CA600A8A5268D00F615BD54] [G] c:\windows\system32\fwcfg.dll [PX5: EA6B4C4600369E1FEC640010DEE3A30064BC5907] [G] c:\windows\system32\hdashcut.exe [PX5: 0064B7DB00B79510F2D500E0EB5E75000A48DE57] [G] c:\windows\system32\hdaprop.dll [PX5: FD0D6D9E0050A97662350035D1B87C000066A468] [G] c:\windows\system32\findstr.exe [PX5: D88BEBCB00FA59EE6A3A00A1936EFA007CC9DA33] [G] c:\windows\system32\fxstiff.dll [PX5: 498AA62C0025493A10670628F2FF340088F8185D] [G] c:\windows\system32\gearaspi.dll [PX5: 5C31D2513001F02AAB2E01BEA56DD900AF1CBAD9] [G] c:\windows\system32\fxsapi.dll [PX5: 3409775000AF5E05E633066E3B9D4F00A73868FE] [G] c:\windows\system32\fdco_l1040.dll [PX5: 5C17C17F00ADCC1F6CF602426C419D000DF798B8] [G] c:\windows\system32\glu32.dll [PX5: FD0F9C5B00DDCD95E017010767489800A30D7B18] [G] c:\windows\system32\fdco_l1036.dll [PX5: 7BC8053C008EC55D6E56024FAF90D800E089521E] [G] c:\windows\system32\fmifs.dll [PX5: EBD8FFFC00D6E9EC40CE0086CBB555009BF989E9] [G] c:\windows\system32\getmac.exe [PX5: 4FB8E53500094573D8C700DFCD2E150013C06273] [G] c:\windows\system32\fm20enu.dll [PX5: 7838AC021033653767D500A53FC91000D77BA27A] [G] c:\windows\system32\framebuf.dll [PX5: B665D13080B266BA240C009DA73557003C4FDDD6] [G] c:\windows\system32\fxsst.dll [PX5: CBCA615A00D13C5394EB08B34F55720092C757D2] [G] c:\windows\system32\graftabl.com [PX5: 9687C634007A5D06668800223CE4390031ECD817] [G] c:\windows\system32\fxsui.dll [PX5: CFF8082E0025BCEE5A3902E02030B60098C512F1] [G] c:\windows\system32\fssl-1-2-1-1.dll [PX5: 8C9F6E57003A8E46F03308898DE417009539ED2A] [G] c:\windows\system32\finger.exe [PX5: C9404E1C00A95856242400D882689600605B7600] [G] c:\windows\system32\fldrclnr.dll [PX5: DC9C45FF001DBDA6566101641DEEB0006CA857B1] [G] c:\windows\system32\gpresult.exe [PX5: 9B0440DB00246838D4CA01E242034D00D9AF3A70] [G] c:\windows\system32\fdco_l1041.dll [PX5: 358D0BC8001A2EC764D80209BCC06B0063D362FD] [G] c:\windows\system32\fxsres.dll [PX5: 2F6924F4005318701AC500C0AEB01A0022B5BA27] [G] c:\windows\system32\fxsext32.dll [PX5: 5C1B4DFC00E9CEAE5C2200E2D84820003896FE56] [G] c:\windows\system32\fxscover.exe [PX5: 4585E5050003EFA6807E0370EF4BF40083056F82] [G] c:\windows\system32\hdwwiz.cpl [PX5: 8B972B290080BAA45EA0026F6FC8DB008446289B] [G] c:\windows\system32\ftutil2.dll [PX5: FA36213200124AFCA014014617463D0014ECFE56] [G] c:\windows\system32\ftp.exe [PX5: E50BCCE600D79D1AA60F0054712D8E00C116FD9D] [G] c:\windows\system32\fdco_l2052.dll [PX5: B6C57E8A003CD54F5E2F02EEF7F8CF00C617484C] [G] c:\windows\system32\fxst30.dll [PX5: 38A7CACB0036796EC2B10396403E5F009DE209D9] [G] c:\windows\system32\fdco_l1046.dll [PX5: D811C30F0010450B6C5102BE53A4040065124B7B] [G] c:\windows\system32\fxsxp32.dll [PX5: 335ED81E005E33721CB506290DD4FE00E80D0A10] [G] c:\windows\system32\fontview.exe [PX5: 52B6D15800A0A3C0522700652EEACB0012CEEB63] [G] c:\windows\system32\fsquirt.exe [PX5: 080CC11400F1C24DF2610222856218001F2B3DE3] [G] c:\windows\system32\glmf32.dll [PX5: EE5772D50079B7FE5A0004B9D44EB600C1B8C2D4] [G] c:\windows\system32\fontsub.dll [PX5: 1C3F434600654FE43C10012A1267150093C13E82] [G] c:\windows\system32\fxswzrd.dll [PX5: 2C2EE64A00C6729DF060028A7081B500B0462140] [G] c:\windows\system32\forcedos.exe [PX5: 386F83D200A4FC401CA400DE9B71E100B1ECB37A] [G] c:\windows\system32\fltmc.exe [PX5: 2060B7CE00A58F3F5AE7006990FD98007D289863] [G] c:\windows\system32\imeshare.dll [PX5: 92A7FC9739D4A7CB902700A6C07F9A00932501DE] [G] c:\windows\system32\idq.dll [PX5: 4F7F2EC3005FF7EAD80701F485BECE0090F4C12E] [G] c:\windows\system32\htmlres110_nl.dll [PX5: D61F796000FDF833208716EE8C8AC300DC874E16] [GP] c:\windows\system32\imagxr7.dll [PX5: 05B3860A00307B1B00B604D702139100BEF81A43] [G] c:\windows\system32\ieakui.dll [PX5: A41AA836003E30A6788F02527D9628009DC13C69] [G] c:\windows\system32\ifsutil.dll [PX5: FDA277A200DF8987143A011893D43F00FFC8B413] [G] c:\windows\system32\icuuc30.dll [PX5: 0FF5D59400C887CD30F30978DBB1A0008E259EAA] [G] c:\windows\system32\inetcpl.cpl [PX5: 66F863A9006F1106D6F11B930007F100E0EB8485] [G] c:\windows\system32\iexpress.exe [PX5: 7260BF88002ADEECC06C01362FCD520089495808] [G] c:\windows\system32\help.exe [PX5: B1361D8300645E003A1E00B4A016370088177A8A] [G] c:\windows\system32\iesetup.dll [PX5: 5A831D4B00CDED7DD81500267DA3AB00ADD43188] [G] c:\windows\system32\igmpagnt.dll [PX5: C1F080E8009D713F209500ABBF9D0D0046F8BAA8] [G] c:\windows\system32\igdetect.dll [PX5: 92210B650043DD0A22DD00AE8970D900B032BAE1] [G] c:\windows\system32\hpzcon12.dll [PX5: 21DDFBE300C71AAB00C006777D8CA00082FBAC1D] [G] c:\windows\system32\inetclnt.dll [PX5: 9BC730E549219A11F0E219C93E959900EA0BEB05] [G] c:\windows\system32\hpzcoi12.dll [PX5: 78186E6D008C2AE3004303D94459D600CF8D0893] [G] c:\windows\system32\hpzipt12.dll [PX5: DB539CAE00A28EEA708E01D67D0703008F6CB238] [G] c:\windows\system32\htmlres110_jp.dll [PX5: 9DB616DD003EF7BDC01216809B6FA000EE381FD8] [G] c:\windows\system32\htmlres110_en.dll [PX5: 9999A1AB00C9DD196077166A31FF060022FE4FEE] [G] c:\windows\system32\icfgnt5.dll [PX5: 5DC4665C008320574056008C85606300DCCFB308] [G] c:\windows\system32\inetwh32.dll [PX5: E343B515001B32EDC02D0039920DCA00641FB8CD] [G] c:\windows\system32\inetmib1.dll [PX5: 803BEBAA00EB38B8824800DDDFE6A000B962707E] [G] c:\windows\system32\icm32.dll [PX5: EC9B7A98009783F5E4C8034FDDD5AE0099DC1873] [G] c:\windows\system32\ieapfltr.dat [PX5: 4D34BBA8C04296CC773225E823C13D0086F70D2E] [G] c:\windows\system32\html.iec [PX5: 09BD930D00D34D07C62E060C21EB7D00F94F3A47] [G] c:\windows\system32\icwdial.dll [PX5: 560BFBF20073B4F6209201CD1FD74F007B560CB7] [G] c:\windows\system32\htui.dll [PX5: 5C983F5E003370B1A4F5002FA32ECD009B3150F3] [G] c:\windows\system32\inetdb50.bpl [PX5: C28CB13600DF1703B6E40000535716009E979468] [G] c:\windows\system32\ibevnt50.bpl [PX5: 61CA02E100B84B29900F0048219EF2001247527D] [G] c:\windows\system32\inet50.bpl [PX5: 220C2B4A0061A6E2FE19004B4DDA1900ED571CA1] [G] c:\windows\system32\hostname.exe [PX5: 9EFCF8D20000463F1E0B00B871FA56004174920A] [G] c:\windows\system32\hpzinw12.exe [PX5: 0A361181001ABB4FF06E00C99ADD3200C40ADDEE] [G] c:\windows\system32\hnetmon.dll [PX5: 2F9C3E57008FC3CC3A9C0032FD1A7400C401B616] [G] c:\windows\system32\ieframe.dll.mui [PX5: 9CD6813500FD1D1020170FDB40B84C005F91026A] [G] c:\windows\system32\hhsetup.dll [PX5: 87760AC1005A2042A2AA00FFD7645600A34177CA] [G] c:\windows\system32\imagx5.dll [PX5: BA07AABF00604ADB50FC08DC77673900B161A159] [G] c:\windows\system32\hpzisn12.dll [PX5: D6147D77008F249BE07600B77BE38300B7A6FBE9] [G] c:\windows\system32\htmlres110_chs.dll [PX5: 8E2757DC002DA2CE10A4168743DFBF00831AB74B] [G] c:\windows\system32\hlp95en.dll [PX5: 0E34BA3000DA94747C2B00296E362F002BE56658] [G] c:\windows\system32\ifmon.dll [PX5: EFA269D900587BB612420293C6CF510032C74B06] [G] c:\windows\system32\icudt30.dll [PX5: 2C7DCFEE00624C79C0AC823E13E9F70063C605DA] [G] c:\windows\system32\inetres.dll [PX5: E6D7460D00FBF331BCF5005CD69AD300F21C74D2] [G] c:\windows\system32\icuin30.dll [PX5: 5AC4DDB100646E25906D0A9E3F927C00B8457A96] [G] c:\windows\system32\imagedrive.cpl [PX5: 58EB12E34579DCA750A601F9DFD56300F20EC158] [G] c:\windows\system32\idndl.dll [PX5: 61E0320500ECAE9B66FE004F233969009BE70567] [G] c:\windows\system32\inetppui.dll [PX5: 1F28BEC6006BC7333E9E00704420E000D516FB4F] [G] c:\windows\system32\httpapi.dll [PX5: 32D8318A0067B65360C10012A97F2900A46AEC08] [GP] c:\windows\system32\imagr5.dll [PX5: 462EA8220004CE78B0AD08BB6D299700F06B670A] [G] c:\windows\system32\htmlres110_fr.dll [PX5: 12DE461000BFC76BD063167DD9A6D1008F914F1F] [G] c:\windows\system32\icmp.dll [PX5: F545FE720065B38D0E01007E40893D00B79BCD14] [G] c:\windows\system32\hpzidr12.dll [PX5: F95AC56B389A9EFA408404579E7D1F005A136DF1] [G] c:\windows\system32\ieui.dll [PX5: D0F6CF36001F9714C22802861E743B00CD0093F8] [G] c:\windows\system32\ieakeng.dll [PX5: E6B482EB00E8767E5697022BF542B900FF62E40C] [G] c:\windows\system32\htmlres110_it.dll [PX5: E800B75100D6299690FB16DA7041DF009F4B0210] [G] c:\windows\system32\ieencode.dll [PX5: B50BB1500005334032A3012E963509004AF4BEB3] [G] c:\windows\system32\iissuba.dll [PX5: 990C19C100221A0A2469008F7A454B00BEA1B47F] [G] c:\windows\system32\iernonce.dll [PX5: F9AC2AB4007E8307AEE300FE8CCE30009A604917] [G] c:\windows\system32\htmlres110_ko.dll [PX5: FE702DB300627F6990F316904288B600258B7399] [G] c:\windows\system32\icwphbk.dll [PX5: A146919C0015C2FD009F01813E32B0002C278455] [G] c:\windows\system32\imagx7.dll [PX5: E51633E2004D2524F0D717E71945ED00E94E4F2E] [G] c:\windows\system32\htmlres110_de.dll [PX5: 90A115F200387CDEA030164F231149003CDF2E3F] [G] c:\windows\system32\hpodxpat.dll [PX5: 95F185400084E699D08201EE3C7CF700064D0077] [GP] c:\windows\system32\imagxra7.dll [PX5: 16F200EE00FA1AEF30A007C9A416DD00D4B4F4D2] [G] c:\windows\system32\htmlres110_cht.dll [PX5: 1685E29C0048EDCF2006169773367700DD0BEB2E] [G] c:\windows\system32\hpzc3212.dll [PX5: ED797BCB00C05060300004C6863EAB00C20EA23B] [G] c:\windows\system32\htmlres110_es.dll [PX5: 23DA9BF200E5BACAB0F216C1B9E69400441CC900] [G] c:\windows\system32\inetcplc.dll [PX5: 1C5CCB5A000342F0B0EE011E33FBB7002552BA85] [G] c:\windows\system32\hpzipr12.dll [PX5: 0B73795500D7081320EF03C15C52DB0036F39EBA] [G] c:\windows\system32\java.exe [PX5: 9A7C7F450040D9B5206D02981605E800D0F99798] [G] c:\windows\system32\kbdbu.dll [PX5: BA8C93540032EFE2167E0013D1916A00447F56A2] [G] c:\windows\system32\ir41_qcx.dll [PX5: 44ADBA9C00F7AA1D2A6705BDC18A3100514381DB] [G] c:\windows\system32\javaw.exe [PX5: 69B00A69007C6DAB20EA0220697FBA00E3447F94] [G] c:\windows\system32\iprtprio.dll [PX5: 2FE0C43B00E1039110BE003169015500B79BCD14] [G] c:\windows\system32\kbdda.dll [PX5: 24881EF000533D04186F006E8E5F5600C3AAD043] [G] c:\windows\system32\jsproxy.dll [PX5: EAB7D3F300F52E846C150066C1CD7F008EE6373F] [G] c:\windows\system32\joy.cpl [PX5: F8AD384C002DFBD10CA8016FEE4A67000FA252FE] [G] c:\windows\system32\ipmontr.dll [PX5: 08113C6D00EE3C685AE8023D6C7F7700ECCF7B72] [G] c:\windows\system32\kbdfi.dll [PX5: 48EE580D00FA4A861834002C6F0F8800375CF580] [S] c:\windows\system32\iuengine.dll [PX5: FB4B3C1418B97E5907A203D670325E006DEEE6B1] [G] c:\windows\system32\jgsd400.dll [PX5: CA4433430011E2F3B29C000F65DA00000094D97A] [G] c:\windows\system32\jgpl400.dll [PX5: 3329CC580079BE096C8B00E7C944F900FCC10452] [G] c:\windows\system32\inloader.dll [PX5: 9DA9C45900F14C6B3441013A129769003141CF51] [G] c:\windows\system32\initpki.dll [PX5: AF1A91F800DA705E405502A29C481500C2AF9EAF] [G] c:\windows\system32\kbdazel.dll [PX5: 6A4E30150066EEEB16170058FBDA52009B32C958] [G] c:\windows\system32\irclass.dll [PX5: F4EA4EA4000B0BAD349200CC6DD7CD007A190A12] [G] c:\windows\system32\ir50_qcx.dll [PX5: 15F221E0001C8DDDCE1E02844EC2E20088DDE468] [G] c:\windows\system32\ipxpromn.dll [PX5: 9EE70A1C00C3DF8F0E010117E7E8CC002BC63063] [G] c:\windows\system32\kbdcan.dll [PX5: CAA133DE00AAFC421E1300B54A38DF0007D9EFA6] [G] c:\windows\system32\kbdest.dll [PX5: E116298600C4CE7C1838009D2C83880001C10E05] [G] c:\windows\system32\kbdbene.dll [PX5: FE3101B600DD63A218C80009E1A04B002AE7F7EB] [G] c:\windows\system32\jgmd400.dll [PX5: 5FFB60E700EB7AD98CEC00B70CF1DA003A0658C3] [G] c:\windows\system32\is-usqhp.tmp [PX5: A2FA01D3003B2343D09C01B8E0445B008811098A] [G] c:\windows\system32\kbdca.dll [PX5: B92ED5B9005792E61812006E944F61000D940D14] [G] c:\windows\system32\kbdcz.dll [PX5: D5903214009B0FB91C1C00EA04AA5F0003E0340A] [G] c:\windows\system32\iologmsg.dll [PX5: 4E2A08D400E68C7D785500AF8F07F1003AF6EABB] [G] c:\windows\system32\jgdw400.dll [PX5: 84498D7600B6EEE2809E028C005E95005C9E92C8] [G] c:\windows\system32\ipsec6.exe [PX5: 78AB74F3004F6932AC1F001651F946003BF2443C] [G] c:\windows\system32\jgsh400.dll [PX5: 29004882007D4F56000F018F6327A900BF8F5EF8] [G] c:\windows\system32\ir50_qc.dll [PX5: 2C03B1A300421F410EEB03B3BA3EC0000257BC54] [G] c:\windows\system32\kbdbr.dll [PX5: 74070A8C000919F6185500B353B4DE0006588985] [G] c:\windows\system32\intl.cpl [PX5: 9EC6009B00830D8DFA890171058C1F0026513F8C] [G] c:\windows\system32\kbd106.dll [PX5: F095175200DFD8601808005550975A006FC1438F] [G] c:\windows\system32\ipv6mon.dll [PX5: 0650EECD000D6554EA4B0062F0E54A0089A9692C] [G] c:\windows\system32\ivfsrc.ax [PX5: 64C73FBD008ED1B05CFD0279D0833E0011EBEB47] [G] c:\windows\system32\kbdfc.dll [PX5: DF58154C0001E3F8181F007524BE200037E64113] [G] c:\windows\system32\irprops.cpl [PX5: 37FE3DA9007021AFCEA10537BB9F310039F37172] [G] c:\windows\system32\jgaw400.dll [PX5: 333F83FE0094FCB4AE3200A0606B9A0022983A60] [G] c:\windows\system32\kbdbe.dll [PX5: 48FDB2CB00F2B06518CA009E462900005E1643BF] [G] c:\windows\system32\itiimg3.dll [PX5: 50C747962003BDFE5B9D04B6A315900066759A6D] [G] c:\windows\system32\jobexec.dll [PX5: 405D53E250F823E1BB0400034B8A7600439B30E7] [G] c:\windows\system32\isrdbg32.dll [PX5: 5C8062570001FBAA806900787EB06400F87C1DF2] [G] c:\windows\system32\ipxroute.exe [PX5: EE30E30B00D9F3F35CF600D85DC6A50068015AF3] [G] c:\windows\system32\ir41_qc.dll [PX5: B65BF11200927F02D64401D70EDE7300373D5739] [G] c:\windows\system32\kbdes.dll [PX5: 01EDE1B000E0CA0118A600B2E97B8C00E65CBEF1] [G] c:\windows\system32\javaws.exe [PX5: 504CA06100E27A9A307202B7E24C1C00DCDD293F] [G] c:\windows\system32\kbdcz2.dll [PX5: 23F543570066FA9B1A2C00FF9EA367007232852E] [G] c:\windows\system32\kbdblr.dll [PX5: 3A6EE5860029A0B51678008DE1F1DE0042AF5F06] [G] c:\windows\system32\ippromon.dll [PX5: 39BA3BDF00AB639B0CD00563E7A405005E779C84] [G] c:\windows\system32\iprop.dll [PX5: 9A8A1BED009D498F0E1300CF73583500B79BCD14] [G] c:\windows\system32\isign32.dll [PX5: CC0DA462004549A3408B01988BF08A00B04B9632] [G] c:\windows\system32\ipv6.exe [PX5: 2ACA7A2900FF8A8AD07600A256AA610086B1BF29] [G] c:\windows\system32\jet500.dll [PX5: 2E74CE2E0000732D88BA05CF09F3190043506204] [G] c:\windows\system32\kbdal.dll [PX5: 2A3A405B0066D3521A2400E6B5F7B0007FCCF863] [G] c:\windows\system32\kbddv.dll [PX5: ED34EFC80039728214BF0032CFF4740071E095D3] [G] c:\windows\system32\javacpl.cpl [PX5: E28878BA00957E52207A01BDCDBC3A002C0030BB] [G] c:\windows\system32\isuspm.cpl [PX5: 854C4362006D1D1F209501D3C6EF360022023C8E] [G] c:\windows\system32\kbdcr.dll [PX5: 4932668100EA297A1AA9004FCBAE8900AB423266] [G] c:\windows\system32\kbdcz1.dll [PX5: A20065170067FDB11AEA00CF0F132D00990736EE] [G] c:\windows\system32\input.dll [PX5: 43E6526000808EBBE2D701F510F4CE007FD158FF] [G] c:\windows\system32\ipxwan.dll [PX5: E05E7F3E003410C052ED001F217426005210EF09] [G] c:\windows\system32\ipconfig.exe [PX5: 96869CA60041B23EDAF700A5BF3AB50063828649] [G] c:\windows\system32\ipxmontr.dll [PX5: 7BD77D780077E2F24870015EFA182700B05A21C6] [G] c:\windows\system32\kbdaze.dll [PX5: 9B72CA830012D1061679007C84FE8800C4F6549E] [G] c:\windows\system32\kbdfi1.dll [PX5: 98AAB1F800FFC68B1CA7000F73A063003389F766] [G] c:\windows\system32\kbdmon.dll [PX5: 22C6B8B6007126B11647006FA39E4700ABFD0209] [G] c:\windows\system32\kbdsl.dll [PX5: 145ADDF700F6168C1A2B0081E8BCC300990D1E88] [G] c:\windows\system32\kbdla.dll [PX5: A782AF5C002D56391AB8009D936AAA00646DF1FA] [G] c:\windows\system32\kbdsmsfi.dll [PX5: 4B55D284009B86901E9000E69691A100D42A1271] [G] c:\windows\system32\kbdpo.dll [PX5: 66DAE7380041832E184800C349947E002B6C82B9] [G] c:\windows\system32\kbdic.dll [PX5: 55372CE0006CADDD18E60006EECB72006BA6A430] [G] c:\windows\system32\kdcom.dll [PX5: 12E7268780F563E41B7100673A053D00DE215002] [G] c:\windows\system32\kbdpl.dll [PX5: 33F32BA800D76CE91A6E0052F0753C00E01145C9] [G] c:\windows\system32\kbdhu.dll [PX5: 5B53418900EAC0081AEA008A0D04B700DFB202B5] [G] c:\windows\system32\kbdtuf.dll [PX5: 5E97C80A00BD3806181F0076B5392A004331B501] [G] c:\windows\system32\kbdkyr.dll [PX5: 857912830061C06016C9006AC4A59C0050F5F2EC] [G] c:\windows\system32\kbdlv1.dll [PX5: E11F1CEA009A124B187000A9A615FE00BEA1FC63] [G] c:\windows\system32\kbdpl1.dll [PX5: DC40C258003DC2F1162100591EEA55004279E313] [G] c:\windows\system32\kbdhe220.dll [PX5: 551994EC00551FCC162200A78039EF0034063AD4] [G] c:\windows\system32\kbdit142.dll [PX5: 413B35DE003D58931634005028DDC7001F6B26BC] [G] c:\windows\system32\kbdru1.dll [PX5: F78CD54300BE7A5716410073AD735B00BC18AAD7] [G] c:\windows\system32\kbdlv.dll [PX5: 40E0A1EE0045151318C800CABDBAE700BE898FE2] [G] c:\windows\system32\kbdus.dll [PX5: 1C8DFBD6007B7263161C00B564992B00403FEB69] [G] c:\windows\system32\kbdukx.dll [PX5: EE4CEDD5001891981C7000092534B3008DF9CD42] [G] c:\windows\system32\kbdtuq.dll [PX5: 24D02187006F9CFB187400D3B721FF00E36ED8DF] [G] c:\windows\system32\kbdsl1.dll [PX5: 8C0E8540008FB0631A4A0094A8DA1900C0B62EAD] [G] c:\windows\system32\kbdycc.dll [PX5: D5D525F30029A795163300526880C200CEFEEB97] [G] c:\windows\system32\kbdno.dll [PX5: A133804400BBA4A1186200204D642800A4FFC514] [G] c:\windows\system32\kbdgr.dll [PX5: 4DF569E700DDEF701857000515A4BD009E9A507D] [G] c:\windows\system32\kbdusl.dll [PX5: ECD942B7004D75CF18740098D9D9F600E199B78A] [G] c:\windows\system32\kbdinmal.dll [PX5: F99474710065898B1A7400FE095A9E0088E378C7] [G] c:\windows\system32\kbdgkl.dll [PX5: 1E510FC80051AF8118E600DCE1E1380042A79445] [G] c:\windows\system32\kbdinbe1.dll [PX5: 6FE8B7CC00153D1E185B00E8C253F70003202B38] [G] c:\windows\system32\keystone.exe [PX5: CA2D2E220094BABC80760696FC970E006EBD9406] [G] c:\windows\system32\kbdhept.dll [PX5: E93F35D10027B5DD2038004332ADF00068E58029] [G] c:\windows\system32\kbdno1.dll [PX5: 482DE41E00DF04661C20008B018E87002A0B8248] [G] c:\windows\system32\kbdinben.dll [PX5: E28B3CE200CC40B11A0C008E773C6A00F77E57ED] [G] c:\windows\system32\kbduk.dll [PX5: A085C50C0063ABE816A700AD836F5200D503ABC4] [G] c:\windows\system32\kbdru.dll [PX5: 7E9E7F6F00689AD216A800B9E05CFE007379647D] [G] c:\windows\system32\kbdhu1.dll [PX5: C00A14A300D3BF6516C400206D4C0900C4797A49] [G] c:\windows\system32\kbduzb.dll [PX5: 08CBFA1B009B5FC9162B00341E918C00437DEA64] [G] c:\windows\system32\kd1394.dll [PX5: 723041D400FCB6291DF100710A4388007E0E0223] [G] c:\windows\system32\kbdsw.dll [PX5: 70FEA55C00F764DC18BE000C911EAA004C6FF86D] [G] c:\windows\system32\kbdhela3.dll [PX5: 97A7DD97003D3E721A6200E48EAD4F009D3F20AC] [G] c:\windows\system32\kbdfr.dll [PX5: DEC48D3900347DDF18ED005F331E3F00B4872F43] [G] c:\windows\system32\kbdsmsno.dll [PX5: 3285861800772A451EA500515E846B00470276B3] [G] c:\windows\system32\kbdhela2.dll [PX5: 26CCBAC60094B58718C8000DF737D4007069556D] [G] c:\windows\system32\kbdusr.dll [PX5: 4002D2E900F6D8061892000AE393F800DDA2AFB7] [G] c:\windows\system32\kbdkaz.dll [PX5: 9C60E7270020E3381611009CFCA71800B367CE4F] [G] c:\windows\system32\kbdmaori.dll [PX5: 0626481100C41ACB16D100A2D62C9B00F9486475] [G] c:\windows\system32\kbdlt.dll [PX5: 98DE2BC100DAF049162600040FAE1300DAAD8044] [G] c:\windows\system32\kbdur.dll [PX5: F67486210059386D16530005D2674D0049AFC121] [G] c:\windows\system32\kbdycl.dll [PX5: E82543E9001C48FB1AE100DB66B55C003CDC71CA] [G] c:\windows\system32\kbdmac.dll [PX5: E08CD36F00422D15180100CFAAD195008FE0678E] [G] c:\windows\system32\kbdfo.dll [PX5: DEE8FDE6002F2C97189B00C43AC78500739A4BF6] [G] c:\windows\system32\kbdir.dll [PX5: AD3FC81F00A34AFC1695004F6DE2EF00725D3CD6] [G] c:\windows\system32\kbdgr1.dll [PX5: 02EEA6A0005F3E741851005D3FDF7500C13DD479] [G] c:\windows\system32\kbdmlt47.dll [PX5: 8B573C700064017018C5003E3BCBA600D8F9C217] [G] c:\windows\system32\kbdsf.dll [PX5: 6EA394E80094BFD4183A0046A2D29E0088783429] [G] c:\windows\system32\kbdgae.dll [PX5: F3512D80001A356F16DA00323386BA002E2F5555] [G] c:\windows\system32\kbdne.dll [PX5: 19C8E4DD00463E6A186A00C65262CD00BB11DB57] [G] c:\windows\system32\kbdusx.dll [PX5: 38E4317A003AC90F18CE006CD6D0E200133C6897] [G] c:\windows\system32\kbdnec.dll [PX5: 7430877B00359E851C7100D6A5861000A49BC692] [G] c:\windows\system32\kbdlt1.dll [PX5: C364AEEA001388C0167F00F451F5EE00C776935E] [G] c:\windows\system32\kbdit.dll [PX5: 00E5758400A8F11216040010CCD3DB00ECA7BCD5] [G] c:\windows\system32\kbdjpn.dll [PX5: 0D7AA7060086FB5122E40068B07FAE008233C8D1] [G] c:\windows\system32\kbdsg.dll [PX5: 1428B5DE00FED1001A8300A507FDC000681433B7] [G] c:\windows\system32\kbdsp.dll [PX5: 782E990F000A4D37182F008DCC476C00EEAB2228] [G] c:\windows\system32\keymgr.dll [PX5: 4E22223D00DA58AF4CAF028AC0B31500B498BA52] [G] c:\windows\system32\kbdmlt48.dll [PX5: B082AC9500E864AC180700EBF9E109008C386AB3] [G] c:\windows\system32\kbdtat.dll [PX5: 57244493000E4A0A166900B8D1F1A400CB7C2EEE] [G] c:\windows\system32\kbdro.dll [PX5: 17D729040061F89916AB004D55CDD900B2ACDAF8] [G] c:\windows\system32\kbdhe319.dll [PX5: 45D2F5BD00FB0AB416E300CD07651A003913BACE] [G] c:\windows\system32\kbdhe.dll [PX5: 38F9A1C8006E27EF16EB00188F1CF7000D9F3564] [G] c:\windows\system32\lflmb13n.dll [PX5: E64B713A00E373907CDD00E33D6F6000E2A79276] [G] c:\windows\system32\lfcmp10n.dll [PX5: 11B785B2009EC4E32438045451740D004B22C2C5] [G] c:\windows\system32\lfdwf13n.dll [PX5: 0B0360BF00C7467B503A07456C6D530075B83DB9] [G] c:\windows\system32\lfbmp13n.dll [PX5: FD742B720030799F765200029805B60041C923C1] [G] c:\windows\system32\lfpcd13n.dll [PX5: A7126AA8001017244E05007D603BE800EC0F6900] [G] c:\windows\system32\lffpx90n.dll [PX5: 2BCEAE79002E93C35A7801FFF3977B0089E8BC3E] [G] c:\windows\system32\lfj2k13n.dll [PX5: 151218A4003834AF3E8D04356652F500865B9BC0] [G] c:\windows\system32\lfpcx11n.dll [PX5: 71FCC77C00A9236982D1006E459A3000B95D5F37] [G] c:\windows\system32\lfgif90n.dll [PX5: EE68149D00807B079C1000AA60013C00B5C7D1F8] [G] c:\windows\system32\label.exe [PX5: 674834B20038E51F26C200B58B3D60003C1334FD] [G] c:\windows\system32\lfpct13n.dll [PX5: 6D6BA8B700AE766D008101408F0FD000633F4D5C] [G] c:\windows\system32\lfpsd11n.dll [PX5: 60ACEBEA002B9546DCB10089470B6E0017744185] [G] c:\windows\system32\lfdic90n.dll [PX5: CC8B02BD00FB0642A034034C6631AE0047251203] [G] c:\windows\system32\lffax13n.dll [PX5: 55EA6BBF0071598520AC0107995D110004A93914] [G] c:\windows\system32\lfcal90n.dll [PX5: 4B33622B0024DF036AC7002A28269100FE2AB63E] [G] c:\windows\system32\lflma90n.dll [PX5: 6D9CB06A002580728C13000024505A006EFDA8E7] [G] c:\windows\system32\lfimg90n.dll [PX5: D1F18DDA001D261F6ABC00891854F10030E4F95B] [G] c:\windows\system32\lfflc13n.dll [PX5: 194FFC190022B75796E60007A876CF003FE67FB3] [G] c:\windows\system32\lfcut13n.dll [PX5: 18F4CE2E00F8FBE852D600DA6E8D9600B9CB3E8A] [G] c:\windows\system32\lfmac90n.dll [PX5: 06D7EC8A00002E096428002DDDF9AE004DBFE79A] [G] c:\windows\system32\lfpcx90n.dll [PX5: C6903D380094F31278EF007F31186800C88C6911] [G] c:\windows\system32\lffpx13n.dll [PX5: 3654F9C200E649924A820136207DC2004B9ED3AE] [G] c:\windows\system32\lfpcx13n.dll [PX5: 9E4721AF0046F977669E00AA9AE9320044BD1303] [G] c:\windows\system32\lfpdf13n.dll [PX5: EF59DD5F004C5788B0200245E56210001302763B] [G] c:\windows\system32\lfmsp13n.dll [PX5: 3BBC8377004D58FC4AD200F3E2F6E400EDAC60D0] [G] c:\windows\system32\ldkrn13n.dll [PX5: B1DD84270029C6D9701403FEEF774400568A48A0] [G] c:\windows\system32\langserv.dll [PX5: 6F5C4670009C09DFA084009EAC32F900639A2D7D] [G] c:\windows\system32\lfgbr13n.dll [PX5: 129CEE4F001E4232A48C01584E20000012347CD5] [G] c:\windows\system32\lfbmp11n.dll [PX5: 2DE66AFD002C9FFD9083003FD98F9B005BD97B96] [G] c:\windows\system32\lfavi13n.dll [PX5: DEF4AF370033BE154AD700855E9CA7009B25BEE3] [G] c:\windows\system32\lflma13n.dll [PX5: BDD4172E00B1CC1672C60062E0F7C30056BEE97A] [G] c:\windows\system32\lfcgm13n.dll [PX5: 3A88FE4C00A14C2E5ADE01C922C72200BEC5FDC8] [G] c:\windows\system32\lfgif13n.dll [PX5: A5438BAD00D9228FB80D00516B94910085A3F053] [G] c:\windows\system32\lffpx7.dll [PX5: A706D3D90009CB062CA805CC73C4E6005B88974E] [G] c:\windows\system32\lfeps13n.dll [PX5: 2AE2CB9300A1911A980200EE1EB0A30082EA98CE] [G] c:\windows\system32\lfawd90n.dll [PX5: 83E6DF340076A2CD700A007F0F77CE001DD5A3F5] [G] c:\windows\system32\lfcmp11n.dll [PX5: A567245500D475B05A3B04EFF0508E00A23EB28F] [G] c:\windows\system32\lfmpg13n.dll [PX5: 6B7397C300C3F0CD8E1101579AF00000B83576C4] [G] c:\windows\system32\lfmac13n.dll [PX5: CBE1A69E002451DC4A06006BEE16CE0060E8CB54] [G] c:\windows\system32\lfani13n.dll [PX5: 5D692FA20058CD31648F006C32629D0046C69DE2] [G] c:\windows\system32\lfpsd13n.dll [PX5: AF4A3B240001B9C7DA0700A4B2CD8700D3E36440] [G] c:\windows\system32\lfeps11n.dll [PX5: F6B8245100E4397A7AB000706EFE89006447C5FF] [G] c:\windows\system32\lfica13n.dll [PX5: 959BF1FE00519DFBBC4A0023C633CB0094D211A2] [G] c:\windows\system32\lfbmp10n.dll [PX5: 3A945C2C00F89640865900A95190730085DD26D8] [G] c:\windows\system32\lfjbg13n.dll [PX5: 50B3DBBD00D9F5786027019979BA6B00DA9F5873] [G] c:\windows\system32\lfpcd11n.dll [PX5: 1FBC37B8003F3878662700A74B3F2200A3E9DE99] [G] c:\windows\system32\lfcal13n.dll [PX5: 043FF616007AA9758C9600E1456A25005263D981] [G] c:\windows\system32\lfkodak.dll [PX5: AED7C3C400C53AA5D0CF01ED8735B000D54D8B27] [G] c:\windows\system32\lffax11n.dll [PX5: 4526C5C1000405EC3E3D01093FD0A60053284C6A] [G] c:\windows\system32\lfcmp90n.dll [PX5: C328090A0092FBCB965D039799145700D3C5DD34] [G] c:\windows\system32\lfpng13n.dll [PX5: 46FBB4C6005060A4C49102B85CD442007352D1E8] [G] c:\windows\system32\lfcmp13n.dll [PX5: A865275900E1DFCB22D9062C05EB8B0013ED4196] [G] c:\windows\system32\lfiff13n.dll [PX5: DFC16F1F009E1CFC6AC600A2DDAF3F00C43FF197] [G] c:\windows\system32\lfimg13n.dll [PX5: 56A49512002C8168520700B3BD6FE500CE5C8413] [G] c:\windows\system32\l3codecp.acm [PX5: 4D8AC979006AFF4E8C2703B84BC6600010E96A91] [G] c:\windows\system32\lfpcd90n.dll [PX5: 7B3803DF001967676861003A6FA05A0085BD5909] [G] c:\windows\system32\lfpng90n.dll [PX5: D705DC1D000527220A4802B24A1BE40027CFD0BE] [G] c:\windows\system32\lfpng11n.dll [PX5: 2D6FE50F009A70D2A0C40241845A1D00DF8D6943] [G] c:\windows\system32\lfeps90n.dll [PX5: 34D042B300310D9B7AF600D0563A7000A6528D23] [G] c:\windows\system32\lfawd13n.dll [PX5: 02E6575D007C43135A8B007F7F3068000A0AC96D] [G] c:\windows\system32\lffax90n.dll [PX5: 7938641100D300BFFCA500A9F0BA06008D87049E] [G] c:\windows\system32\lfdxf13n.dll [PX5: 7B9B467300045343CA560244AB719600043473CF] [G] c:\windows\system32\lfclp13n.dll [PX5: EFD80F3400F1D1A67C47002BA170CF00B2D027D9] [G] c:\windows\system32\lfpnm13n.dll [PX5: 437E49BC007D8FDD7A11009EC2220900F54429F7] [G] c:\windows\system32\lfcmw13n.dll [PX5: 89A82F83004762BEB2B207A6FE7C5800DA66FA54] [G] c:\windows\system32\lfdrw13n.dll [PX5: 93009017008B4D55707401AC26DDBE00F223328E] [G] c:\windows\system32\lfmsp90n.dll [PX5: E8D0C6D8001DFC116606002F8368650057CA2673] [G] c:\windows\system32\lfica90n.dll [PX5: F042DA6500936B64B6EE0062549D9A001BF566B1] [G] c:\windows\system32\lfpcl13n.dll [PX5: 24FE0207006A1D852C92028A7BF041000E6C35C4] [G] c:\windows\system32\lfgif11n.dll [PX5: A78DF798006500C2A2ED000713716B00F066B739] [G] c:\windows\system32\lfpct90n.dll [PX5: B478A89E006B9D2E7AB50079F857A200B01E278A] [G] c:\windows\system32\lfdwg13n.dll [PX5: A9958CA5004CFD7EEEC701C6C6C64500A25974FB] [G] c:\windows\system32\lfitg13n.dll [PX5: 1AB6AD9300EDF4464E8D001157DA56008FC3EAB6] [G] c:\windows\system32\lfavi90n.dll [PX5: 034F499A00DC86F26080005E9B4AA900236213D0] [G] c:\windows\system32\lfdgn13n.dll [PX5: 60EFEAAA004EC62338C1012094BFE0001BEBB821] [G] c:\windows\system32\lflmb90n.dll [PX5: 582B52180044E10A7AB400E303DA9A007DDC8A91] [G] c:\windows\system32\lfbmp90n.dll [PX5: 6E7648A50033AF7984FF000B12205D004DA59DC1] [G] c:\windows\system32\lpins03n.dll [PX5: CB3F57E600D74DCE9AC500B9D580F800BBB06E2A] [G] c:\windows\system32\lftif11n.dll [PX5: EE8F4C1900DF091B524D02B7C6CB5E0009F3F670] [G] c:\windows\system32\ltdis13n.dll [PX5: 3DA9205A00484FD4189F04DF562570007E97D8C6] [G] c:\windows\system32\logman.exe [PX5: 8D8E9BAB00724B86E8E3005D0543E800B24F2CF4] [G] c:\windows\system32\ltdis90n.dll [PX5: 7A18DD6A00A1642D5C9D03730167D4001F3F4D00] [G] c:\windows\system32\lpdoc03n.dll [PX5: CDB5A4DF00FE9A0820710246D596F900839D1B80] [G] c:\windows\system32\lfpsd90n.dll [PX5: 9B454F300021BF7A722900F7DF1A5000597AC5B1] [G] c:\windows\system32\lpumd03n.dll [PX5: FA2B42DF247737E1A2910182C0555A00D390BAA9] [G] c:\windows\system32\ltefx90n.dll [PX5: E6572FCC00ABBE513E6B02F11C061100773152F8] [G] c:\windows\system32\lprmonui.dll [PX5: 934F5E030080CBD0246400D92C057F000FF2123D] [G] c:\windows\system32\lights.exe [PX5: DD16C08A005510D574B600F420A96700F1B47BDD] [G] c:\windows\system32\lpemf03n.dll [PX5: 87B6B8A300C66F11B07E019CEAF816001784114B] [G] c:\windows\system32\lfwmf13n.dll [PX5: FACBAFD5007581862C7B014D423CB800A577555D] [G] c:\windows\system32\lfraw13n.dll [PX5: 881A173F0098B71D46E100C9CE10C90090555FE2] [G] c:\windows\system32\libdivx.dll [PX5: 03D6361E00D2951BF0E20F3BBF5C6A0019FF1BA1] [G] c:\windows\system32\lpepd03n.dll [PX5: 04E41E7100FA9DF96054067441DF5400ED9CD91F] [G] c:\windows\system32\lprpc03n.dll [PX5: 1DD6710FFC37E3EA0B8204643357D200C44CFBDB] [G] c:\windows\system32\lfsmp13n.dll [PX5: 7F5E7A770072C209840700B2F449CC003684F189] [G] c:\windows\system32\lfxbm13n.dll [PX5: 83E0FE0100167338B09600EC71BD30009135EFB0] [G] c:\windows\system32\lfshp13n.dll [PX5: 968B4E0C0007747D449E01E1A1571600D434D4E4] [G] c:\windows\system32\libocahelper-2-13.dll [PX5: 52FD307900B1AC5140AE17DAFA8C22006AFD917E] [G] c:\windows\system32\lfwmf90n.dll [PX5: F01021E200C032247053006E2F3459002542A2CA] [G] c:\windows\system32\lfras90n.dll [PX5: 92ACB53900167634669A0051AB279A00AA512956] [G] c:\windows\system32\lfxwd13n.dll [PX5: 9AE53E33008BAF5464460005A3461400F49FDDC9] [G] c:\windows\system32\lftga90n.dll [PX5: DCF96DBB00561F166C4200089718D60022EF76F3] [G] c:\windows\system32\lpr.exe [PX5: F6648E110053180D201E00948AE4CC00889D9EEC] [G] c:\windows\system32\lphtm03n.dll [PX5: 95BDBFD400BB3CADD01001C488793000F6AE34F8] [G] c:\windows\system32\lfsvg13n.dll [PX5: 3696E39D00E35AE8264208AAA87E240045F5B050] [G] c:\windows\system32\libocasecurityw-1-6.dll [PX5: 127869A5006808CBC0880BB9E2907000527E0EF6] [G] c:\windows\system32\lftga11n.dll [PX5: 1C8E319600C539BE6C5A006F50B935009A678810] [G] c:\windows\system32\lpcom03n.dll [PX5: 71BC2D8756CB914060F30124680985007215747B] [G] c:\windows\system32\lftga13n.dll [PX5: 3D53083D009D074E602A00BA9FF0A0006A8EC0C7] [G] c:\windows\system32\lpcpl03n.cpl [PX5: F3037DE300709F20003A0107B959BF00ED29329E] [G] c:\windows\system32\localui.dll [PX5: C4E5F4B900EBB0CE2E0B00CE6318A300C3401EC7] [G] c:\windows\system32\loghours.dll [PX5: B523E89400F6231EC4D90029D57D01002C7FE99C] [G] c:\windows\system32\lprhelp.dll [PX5: EA24A08500841E6C2882001D89609D00D2AF54DA] [G] c:\windows\system32\lodctr.exe [PX5: 96FA3A3F007330DA1430001888D3DF00EF032A9B] [G] c:\windows\system32\lfvec13n.dll [PX5: 08FB93FA00D4038A824000D98765160034D7A6F3] [G] c:\windows\system32\ltclr13n.dll [PX5: 2ABEAB6A00ABAEA9D8BF1970CF268400440F9CA6] [G] c:\windows\system32\ltann90n.dll [PX5: 7D00AEF400B829FBA48003EC93A48800AFD32135] [G] c:\windows\system32\lfwpg90n.dll [PX5: 7784F636005494D86CB50063586BC500DDFF7A6B] [G] c:\windows\system32\lfwfx90n.dll [PX5: B5C7990600482575641B004DE812BF00B7D2BC71] [G] c:\windows\system32\lnkstub.exe [PX5: 557E2E3200145875627200521BB55C0023D6E045] [G] c:\windows\system32\ltdis10n.dll [PX5: EEF05551009ACB9982C603A877690A00EF9D050D] [G] c:\windows\system32\ltdlg13n.dll [PX5: 8A97BB9000C4094B662D15A6FC723B0020C6B37C] [G] c:\windows\system32\lftif90n.dll [PX5: 7DD1E5A100C1E207CE5E017AE32057008B69C3B5] [G] c:\windows\system32\libmp3lame-0.dll [PX5: F80B32520620CC73D966059E70DA1200726A5E6A] [G] c:\windows\system32\lptxt03n.dll [PX5: A783F4F80052FD1DF0030051E464850034B199B4] [G] c:\windows\system32\lfxpm13n.dll [PX5: AC226807006CFF8AB821003CAC721B0009742FE8] [G] c:\windows\system32\lfwpg13n.dll [PX5: 43DA1173004A9BA45036008928B5C3005BBAFC69] [G] c:\windows\system32\libmmd.dll [PX5: 19446B525C0338AD60A6197E5447BD007CBB96D3] [G] c:\windows\system32\lfsgi13n.dll [PX5: D82C16BA000635E9500C002174A3F6006EBACE9E] [G] c:\windows\system32\lpq.exe [PX5: 1A8F355100E3B48F183E00282F2C29002CD1B418] [G] c:\windows\system32\lprtf03n.dll [PX5: 2C589A59007185E490A601E73443FF00839C6B0C] [G] c:\windows\system32\lpepn03n.dll [PX5: 03AF522100F62D490053020ECC391C00C8AB1656] [G] c:\windows\system32\ltdis11n.dll [PX5: 5386448700B7540B02F8049ECCD6E900D3503BF2] [G] c:\windows\system32\lfras13n.dll [PX5: 97FC9E35008AEC9250C90079A02B3F0089F6BD79] [G] c:\windows\system32\lppdf03n.dll [PX5: B08C30F80054B65BE0680224CC8E1000B8F44A61] [G] c:\windows\system32\lftif13n.dll [PX5: CC555AB3003AD221306602ADC5C8F100DC0F9088] [G] c:\windows\system32\ltdic13n.dll [PX5: 65F15CCD00D1B44EF8360E364815B300C2716B5C] [G] c:\windows\system32\lfwmp13n.dll [PX5: 9A5BA48200DD12C7822C00677AEC8100F7DBBF61] [G] c:\windows\system32\lpuid03n.dll [PX5: 6E4C70DC3CACF23328AE0374A414BB00223D76A5] [G] c:\windows\system32\libocahelperw-2-13.dll [PX5: CD1C585A006A9CA9708D16ED22782F00A6091086] [G] c:\windows\system32\lpdrv03n.dll [PX5: 35BE936EF8662288EE980120B9B70200EE211CEC] [G] c:\windows\system32\lfwmf11n.dll [PX5: 9FFC865200420685E84200EDF2BE6900CA7CD6F5] [G] c:\windows\system32\loadperf.dll [PX5: E5D8237E00A6D5F47C42018CAA0EF9002CECB230] [G] c:\windows\system32\ltdlg90n.dll [PX5: 8C4B5A85008E088A3A8D0244363E2A00C76B595F] [G] c:\windows\system32\lfwfx13n.dll [PX5: 2636A1330066A9B44E6E005F7A79F30045956413] [G] c:\windows\system32\lfvpg13n.dll [PX5: 9AF62F9700CAD7788C6D015C228B6500F10D3691] [G] c:\windows\system32\ltfil10n.dll [PX5: D822E0C400C94571A41E01C8F6948E001EAFB1DB] [G] c:\windows\system32\ltefx13n.dll [PX5: D870373A00CCE2A928FB0311ABB6A800E76CA2F6] [G] c:\windows\system32\logoff.exe [PX5: BCCBC02200B725623CA700B65DAB6B00BDCA8568] [G] c:\windows\system32\lpk.dll [PX5: 69AC235B0023C42156600035DD6E6B0048BBA14E] [G] c:\windows\system32\lfsct13n.dll [PX5: 202794F80048746EE45F007E6AF3C20021E81380] [G] c:\windows\system32\mapistub.dll [PX5: 7019010400D9BA25B633012843A383002F7E88CB] [G] c:\windows\system32\mciseq.dll [PX5: 928AE3ED001BD6955A0D00775AB00100262694EA] [G] c:\windows\system32\mfc70.dll [PX5: 9261F223004F40B8E0460E9DBB8B1100EBA4234E] [G] c:\windows\system32\ltimg90n.dll [PX5: E01EB520001B54FE98B3014C7108970011EB2EA8] [G] c:\windows\system32\mmaviax.dll [PX5: DCD6804F009CD8CF202301A4773B9900166C1A28] [G] c:\windows\system32\mfc71.dll [PX5: CFDA0CFC00A2277630D610C3630A04008989B89C] [G] c:\windows\system32\mag_hook.dll [PX5: CFEE0D2F00DAB49F20920015EE4079003765BAF3] [G] c:\windows\system32\mfc40u.dll [PX5: 69A4465C103B7EC527500E27C1A8A200A9B5D0C6] [G] c:\windows\system32\mcd32.dll [PX5: A9D92A8600C3457228AD00B6FADBE9003A77343E] [G] c:\windows\system32\mfc71cht.dll [PX5: 9C6443AC00E23F77B0FC00A37F2CAB00882F9B7C] [G] c:\windows\system32\miglibnt.dll [PX5: 6C5302E9008991E7EEBD00F2FC238100815BA3A4] [G] c:\windows\system32\ltimg13n.dll [PX5: 8C075B0E000FEC6AD6EA064B3C8E05008CB161A6] [G] c:\windows\system32\mfc71fra.dll [PX5: 6F99E13700EF17AEF02500881E050300FFD71233] [G] c:\windows\system32\mfc42u.dll [PX5: 74A4697B00B6ECC7FB5E0E2428CECF00BE23B318] [G] c:\windows\system32\mfc70u.dll [PX5: 83E0723100A88198B83A0E1ABA42EC00115854DA] [G] c:\windows\system32\mfc71chs.dll [PX5: 24B565F40029EF17A00800E59A4BC30099FE8A35] [G] c:\windows\system32\mciqtz32.dll [PX5: 0D5DBFF900D68F538ABA004447C6B300FFA1E79A] [G] c:\windows\system32\mfcuia32.dll [PX5: 8FE73E6A003146CA16B400641A22F800E6EFE770] [G] c:\windows\system32\mciwave.dll [PX5: E30DCFBA007D5F6F5C650086482011006E870B2A] [G] c:\windows\system32\mll_qic.dll [PX5: 16B59D820070AC9F16EF0085CE9DF00049D0B7FB] [G] c:\windows\system32\ltisi90n.dll [PX5: 29CB565D00F27F179699000D19B61C0077073911] [G] c:\windows\system32\ltfil11n.dll [PX5: ACB2B8F000285F2CD0F401149D46E60018B46F62] [G] c:\windows\system32\lz32.dll [PX5: 93670382006E627E0AA70031FB056300B79BCD14] [G] c:\windows\system32\mf3216.dll [PX5: 8D26DFF3003B7982A096009C28C1730048A8121B] [G] c:\windows\system32\migpwd.exe [PX5: 5BF5B8E100F484F6CA3500BCD8526500976B02C6] [G] c:\windows\system32\lvkrn13n.dll [PX5: 589F1FBA0035E8A7C20D03E25981C200CECA97B4] [G] c:\windows\system32\mfc71deu.dll [PX5: 1E3DB771008F2839007201814869760068719E00] [G] c:\windows\system32\ltscr13n.dll [PX5: 6F16BDE100F35ACD98AE027E6FCE1000EC6BBD74] [G] c:\windows\system32\mfc42d.dll [PX5: A95F846734DB8B8930610E03D3BA840087EA08F8] [G] c:\windows\system32\mciole16.dll [PX5: 60D6406C00FB0E4220DE00EE027C8A002D7CC3BB] [G] c:\windows\system32\mfc40.dll [PX5: F99508CD10E6FE2C1B360EC7FBA72000C6AD3D08] [G] c:\windows\system32\ltkrn90n.dll [PX5: 505E9E87005644C06EDB043218E10D000C755F99] [G] c:\windows\system32\ltfil90n.dll [PX5: 311409D3008E342C848D01769120C400FA9C0A80] [G] c:\windows\system32\main.cpl [PX5: 41E2D76000A76D7FDE3C026C7C6EDD0057F0CC7C] [G] c:\windows\system32\mdminst.dll [PX5: A2ED062A00612E72CE3701397B9AE50090BA3D4F] [G] c:\windows\system32\ltkrn13n.dll [PX5: 3F74F6040075F055EA080657DA18200077A75F52] [G] c:\windows\system32\mgmtapi.dll [PX5: C46C72AC006439163AED0019B285C1003AB565CB] [G] c:\windows\system32\mdmxsdk.dll [PX5: 6242B90E00A3EBE3500C01F4337E9B00DE0A7B9A] [G] c:\windows\system32\mfco42d.dll [PX5: F472917A3566920F30660CD98E475D00E88BE59A] [G] c:\windows\system32\mmcbase.dll [PX5: 6E0F70A70029418A140B013B3A30080074FBDD6E] [G] c:\windows\system32\ltimg11n.dll [PX5: CFAB06CC002B91A2F2AE018284B92E00F7B6DACA] [G] c:\windows\system32\mem.exe [PX5: D69796816A4000CF996A00E88DC7DA000C063E98] [G] c:\windows\system32\mfc71esp.dll [PX5: 0864BF830009A174F01E00D548E3EC0043284099] [G] c:\windows\system32\mciole32.dll [PX5: 91AF5F9C00A468C91E00003B3C2E07009959CB9E] [G] c:\windows\system32\mfc71enu.dll [PX5: 54BFB26A00BC1407E09D0097B52AC40032F2553C] [G] c:\windows\system32\mfc42enu.dll [PX5: D953994200B02592D0AB00DC14C0BA005E1438B7] [G] c:\windows\system32\mcastmib.dll [PX5: A91521D6004A47753A4C005626CDB1003B12E403] [G] c:\windows\system32\mlpagax.dll [PX5: B8F903C90082E9AF808B0009DD93AE000EB8604E] [G] c:\windows\system32\lzexpand.dll [PX5: 91470E2FD0E18E01263D006490DF71006BAC8026] [G] c:\windows\system32\mfc71u.dll [PX5: 037598C700D68B82FC2F0F8DECC9D10082E94C28] [G] c:\windows\system32\ltthk90w.dll [PX5: 7494AE54F0D3FF820EA7009DC7CBD400341DA43B] [G] c:\windows\system32\lttwn90n.dll [PX5: 49A6CE3B006ADA5E8ACC008A5D75CD00D7859820] [G] c:\windows\system32\ltkrn10n.dll [PX5: 583E73A9001CE62E8CDD042791B1B200C6ED1A1D] [G] c:\windows\system32\mfcans32.dll [PX5: 14900AFD10D8C91F0BD1023984DF4E00B56F0480] [G] c:\windows\system32\mfc71jpn.dll [PX5: 16F26AAD00338E09C074009E22BD7B00AEBF80FD] [G] c:\windows\system32\mchgrcoi.dll [PX5: 2B449D4B00FF7DE212FF009CF11C9300483BB9F4] [G] c:\windows\system32\ltkrn11n.dll [PX5: 67ADAF7800CF7F0CFC6B0502B4280F0010A7B45E] [G] c:\windows\system32\mfc71kor.dll [PX5: 90078F9C009B118CC04B00F7363F6A00AB4C0982] [G] c:\windows\system32\mcicda.dll [PX5: 3BC95F51006492A44490007B2E0D3F0012304AF8] [G] c:\windows\system32\mdwmdmsp.dll [PX5: 24E7642200AB3F764212022227DC6400422B57A1] [G] c:\windows\system32\ltlst13n.dll [PX5: 45CFF68900855F5AC88A00E6B2A53800A82E8486] [G] c:\windows\system32\mfcsubs.dll [PX5: 06A1416500FC8E0758910018517B2700070A007C] [G] c:\windows\system32\ltwvc11n.dll [PX5: CA4E5A8C00243896EE390AAB58BD0800E8F76A75] [G] c:\windows\system32\mll_hp.dll [PX5: C8943029009615970E3D008C7B221C00B79BCD14] [G] c:\windows\system32\ltwnd90n.dll [PX5: BBA49EA100F879E3909D00B2581F9500DCAE7F12] [G] c:\windows\system32\makecab.exe [PX5: D3E4D8E3006D06324E7C01F223A5CA007F0D148F] [G] c:\windows\system32\mll_mtf.dll [PX5: 56FDF0C6000C60AB1E55003B3C2E0700A23BBED9] [G] c:\windows\system32\mfc71ita.dll [PX5: 8C47BF9900C00236F0DE00B45623C60074094F00] [G] c:\windows\system32\ltfil13n.dll [PX5: D8E34EA300B5359D56790281A61105005620EDA4] [G] c:\windows\system32\mcdsrv32.dll [PX5: AC1B62C900A6751929F000CAA4211200005F1832] [G] c:\windows\system32\mciavi32.dll [PX5: B48E12C400967DCF4A050156018FF8003B6374E6] [G] c:\windows\system32\msvcr71.dll [PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7] [G] c:\windows\system32\msjet40.dll [PX5: 59C967851CB189A40066179296ACBA009FC71A9B] [G] c:\windows\system32\mqdscli.dll [PX5: 8C475534006EA518B85D00F364DD0D00A113FC1B] [G] c:\windows\system32\mqrtdep.dll [PX5: 262E3BCD00AFBDC3E24F0131A1FAB100EF0414B6] [G] c:\windows\system32\mscat32.dll [PX5: FE69D3E6006D84011CD9000A3C3556008613BBB6] [G] c:\windows\system32\msltus40.dll [PX5: 6F1F8A881F5DEFBB40460326C853030069689884] [G] c:\windows\system32\msdadiag.dll [PX5: B5FA5F2E00A807EED01B01C4AB128D00CFD32217] [G] c:\windows\system32\msoert2.dll [PX5: E70BB2B8007FAEAA9E060135B27340007BDE59E8] [G] c:\windows\system32\mmfutil.dll [PX5: A6C35F5B00A1F42844840032E776410069F18615] [G] c:\windows\system32\msdatsrc.tlb [PX5: 7D8987B500FCD33A30AE00633130C10095C1A472] [G] c:\windows\system32\msexch40.dll [PX5: FD0759FB1DA82653D09307A51129F500E3BF6D15] [G] c:\windows\system32\msafd.dll [PX5: 0B1F110900476ECF0E1300490D95D000B79BCD14] [G] c:\windows\system32\msobjs.dll [PX5: 53380908001EC557824900B5C08E00009D80356C] [G] c:\windows\system32\mmdrv.dll [PX5: E1A8972900D1283A30B700C0C7FB870050857EAA] [G] c:\windows\system32\msdxmlc.dll [PX5: 3C290E6D1E39FF3410E0003B3C2E0700C38EC6FC] [G] c:\windows\system32\mprui.dll [PX5: 972F026100C8E885B8CD001B8E77D700FA9842E0] [G] c:\windows\system32\mqtrig.dll [PX5: 5DC9669400EA8B68DA2D021516768E00E2B9B398] [G] c:\windows\system32\msihnd.dll [PX5: 637C24C2003A577224930427D5EB87000DF9FF0E] [G] c:\windows\system32\mslbui.dll [PX5: 8B3A9188000CEF92622A00EBC9DEB20033501E47] [G] c:\windows\system32\mnmdd.dll [PX5: 839709710060C4F987C4000E0F73A20069AC3AF6] [G] c:\windows\system32\mpnotify.exe [PX5: 1EA80A9E00FBCDFB56B7003B7441B300FF0AFD9E] [G] c:\windows\system32\mshearts.exe [PX5: E5A701F300435440F07E0185465A09006C8CFB7F] [G] c:\windows\system32\mqoa.tlb [PX5: 8312043700FA29423EC8014E4E2C9C000754A541] [G] c:\windows\system32\mprmsg.dll [PX5: 1CAE20A5008C419586CB019ECC203700524A83E6] [G] c:\windows\system32\mqad.dll [PX5: F8760B5C00D104511C0B0278F5566700F986F8F0] [G] c:\windows\system32\msdart.dll [PX5: 65E22B370005A4F850E6023A86A15600E34B80E1] [G] c:\windows\system32\msls2.dll [PX5: 6DF6F52F00B719DA642101C71B387E0000A739D6] [G] c:\windows\system32\msftedit.dll [PX5: 5061808B0042F0CC3A2308CC29C4910061FB1CD2] [G] c:\windows\system32\mode.com [PX5: ECF9935200625BBF4CE400E712EA29005FA9C37C] [G] c:\windows\system32\mqoa10.tlb [PX5: 890539B100B9EDB7901000117E1B4900F43C71DE] [G] c:\windows\system32\msaudite.dll [PX5: 831EDB6D00C92700FE0A002DC8278D008C0C7340] [G] c:\windows\system32\msdtclog.dll [PX5: E7EF253200D2F364E6C000163EE4C600DCE63E77] [G] c:\windows\system32\mqise.dll [PX5: 9D060D30009DCB2742EA000F2E825F00E1A5A25F] [G] c:\windows\system32\mqrt.dll [PX5: 99C983A700E9F308B4B2021B6DBABE0090D0F3B3] [G] c:\windows\system32\msjint40.dll [PX5: C1C523D51F0EAEE85077022DDDE82A009D49F7B8] [G] c:\windows\system32\mqgentr.dll [PX5: 97E4AE6A006DB870EE7F00678375A800EABD8802] [G] c:\windows\system32\mscdexnt.exe [PX5: EC63595D3172A69F03B500B4E481A700B90CB513] [G] c:\windows\system32\msimsg.dll [PX5: 5C24081A00BEB465804F0D845D6E6500CD68D8D2] [G] c:\windows\system32\mqoa20.tlb [PX5: 225AC36C00DB27AED80E002EE74ADF0006AD44A3] [GP] c:\windows\system32\msfdx.dll [PX5: 19D69CB000A9C6FF7CD500963C7E8B00734E3C5E] [G] c:\windows\system32\msencode.dll [PX5: C24345944A341276703601D391F9D500BCF31785] [G] c:\windows\system32\msdbg2.dll [PX5: 83ED520BF8C007220DF904A44A471100AA4ABBBA] [G] c:\windows\system32\msdelta.dll [PX5: 1CBAE4D240E94995C383046B5645C80088FAA3AB] [G] c:\windows\system32\mrinfo.exe [PX5: 2E5E11F500C2E80E3266008DB4842B000F700704] [G] c:\windows\system32\mp43dmod.dll [PX5: 0D15BE6E00EE7A7210C600200DAF4A00B79BCD14] [G] c:\windows\system32\mqperf.dll [PX5: 08B3DD5100278C9320A800EF715280001F540C98] [G] c:\windows\system32\msisip.dll [PX5: 1DFE06F3000AE2803CD200116C557E001624597B] [G] c:\windows\system32\msexcl40.dll [PX5: E99CF3B81D529E8EE0530405FF692300598014D0] [G] c:\windows\system32\mqutil.dll [PX5: 0E5007AC00AB05B532400768161C68000CA6A783] [G] c:\windows\system32\mqcertui.dll [PX5: 8F60BBB5004D84342A4C0062E46D5A0082995532] [G] c:\windows\system32\mshtml.tlb [PX5: 32D3E277007C4EE21CDD15B00110AA007068C573] [G] c:\windows\system32\mpg4dmod.dll [PX5: E32CB1C400C75E3C103D00200DAF4A00B79BCD14] [G] c:\windows\system32\msdtc.exe [PX5: 719093C500A6C61E1815000639E3D800BF6823A8] [G] c:\windows\system32\mqsec.dll [PX5: 2C522A7D00195A93762301E60FFDC1007932BDE8] [G] c:\windows\system32\mqbkup.exe [PX5: E25FFA8A001BDD424E5D003C6BE287008CC3BB7A] [G] c:\windows\system32\msidntld.dll [PX5: 2106D30A009FA3683AD300A36A78E9002C48A96B] [G] c:\windows\system32\mqtgsvc.exe [PX5: 80EDCC7B00F51B8DCA2C012555ADC10085316DCE] [G] c:\windows\system32\mqsnap.dll [PX5: A9480442008F0285E6E8079EEEB52500980585B1] [G] c:\windows\system32\msjter40.dll [PX5: B30524391FFA5B19D0CD001E0B7E5B001943496D] [G] c:\windows\system32\mqsvc.exe [PX5: 680947EA0032A30612F8003017489B006F1EC1B4] [G] c:\windows\system32\modex.dll [PX5: 93D2AE938070B81D2730006C5CB7550084C88212] [G] c:\windows\system32\mountvol.exe [PX5: ACEDD9D2002324CB20DE006B5E8AEA008329C567] [G] c:\windows\system32\mqupgrd.dll [PX5: 917A0D6F00CBEA38BE29001A6CC90B0022E5221D] [G] c:\windows\system32\mp4sdmod.dll [PX5: CB8F346500CD63A8105500200DAF4A00B79BCD14] [G] c:\windows\system32\more.com [PX5: 38B50DE200723D1B3EDF009652606F0085260EE2] [G] c:\windows\system32\msflxgrd.ocx [PX5: 6151F917C08ED56DBAD40309CC130900B391E063] [G] c:\windows\system32\mmutilse.dll [PX5: 4C0B81EA00E4AA75D4D4014C38C95F00D755F53A] [G] c:\windows\system32\msdvbnp.ax [PX5: 8AF662D100484CB4E4FB006BB126DC00EC2871E2] [G] c:\windows\system32\mqqm.dll [PX5: 7B43B5C6002598E216750ADC0F8E1B0010ED99FC] [G] c:\windows\system32\mscpx32r.dll [PX5: DB7DA34D00DB143C307F00816E2085008035042F] [G] c:\windows\system32\mshtmler.dll [PX5: 2BE7EB47004F84A2BCA700658C2C2B00D2BCA37D] [G] c:\windows\system32\msg.exe [PX5: BE1B5B14005DCE2752ED007F7427F200114D0627] [G] c:\windows\system32\mqlogmgr.dll [PX5: B04750C7003BA54E5CA401FE67B67F00B5836213] [G] c:\windows\system32\moricons.dll [PX5: 5344D96100ADCC044CBD03DA545BE0000CDEA5EE] [G] c:\windows\system32\mscorier.dll [PX5: E3AC677F009C56D74A9C025DAB95E60090A2FE28] [G] c:\windows\system32\mqoa.dll [PX5: 48A8A5920049FFCF709B03B929A04D0047C89F41] [G] c:\windows\system32\mscpxl32.dll [PX5: D937D60800BC2A35900400EA0BDF85006AC8E149] [G] c:\windows\system32\mmtask.tsk [PX5: AAB73D4B80F9CFED040D00CDD00A1100133751C6] [G] c:\windows\system32\msvcrt40.dll [PX5: F25F0D70008C3F24F07D00A7A7A5CE00E5F08A9B] [G] c:\windows\system32\msrepl40.dll [PX5: 2FA6F17E1D88D3DC70DE08FF8BB45C00EB900D53] [G] c:\windows\system32\msorcl32.dll [PX5: E43B9845001BD4F6302A025C900B5900AD51AECF] [G] c:\windows\system32\npptools.dll [PX5: 49BB0E07002694B7D6C200CEABC0F100032253C1] [G] c:\windows\system32\newdev.dll [PX5: 73546CED00F36B6DC808036CE73FD600838BCE7B] [G] c:\windows\system32\msw3prt.dll [PX5: 45CE0B5F00FF9D881CF80166B2114100ADE795BA] [G] c:\windows\system32\msxml2r.dll [PX5: DCB03B101C8536DF942C003B3C2E07009C01DD5F] [G] c:\windows\system32\msvcp70.dll [PX5: 97FD0832003018F270F607F09DF447007EAD100A] [G] c:\windows\system32\msr2cenu.dll [PX5: 9C5FE7B200518C421C8800724B743F00B86DB58D] [G] c:\windows\system32\nmfast50.bpl [PX5: 855205920053BCE802B4037BA635BF00FC6518B5] [G] c:\windows\system32\mswdat10.dll [PX5: AE70FCD71F6C0652B0780C2C2558A50018784C74] [G] c:\windows\system32\nsclient110w.dll [PX5: D58D748900E75CF1F08F036EDDDB2000F4BA6128] [G] c:\windows\system32\narrhook.dll [PX5: A578800E00322A068C740053271AE500C1031BF8] [G] c:\windows\system32\msvci70.dll [PX5: CB5F78EB009603A0D675009DE322D60079224884] [G] c:\windows\system32\mstinit.exe [PX5: A37CFEBE004D26F830BC00482B5DAB00A557F34B] [G] c:\windows\system32\mspbde40.dll [PX5: BDB916831DC0771C50480589AC0FD3007F6C4F61] [G] c:\windows\system32\mssign32.dll [PX5: 1ECE522E000C63008C09008C8633F0000F51F8F2] [G] c:\windows\system32\msswchx.exe [PX5: 1B0B541C00F84AB81A6F00C101B17F002D11789A] [G] c:\windows\system32\msvcp71.dll [PX5: ECD4D63500CEF392B07B0763A30232007858E0CD] [G] c:\windows\system32\nmmkcert.dll [PX5: 0B5BCE4E001D9509703D005237A28200A977649C] [G] c:\windows\system32\npwmsdrm.dll [PX5: 49682BD500B3B80522ED00FADD7C000082DE47DE] [G] c:\windows\system32\msswch.dll [PX5: 5B37CBCA00DABB4F34D300472E08E900CB5B6232] [G] c:\windows\system32\mssap.dll [PX5: EB0617A700D3BE4F0E390231699E0E005E124CBF] [G] c:\windows\system32\netmsg.dll [PX5: 8D21325B000692149C5102AAEAB7370028A0AAA8] [G] c:\windows\system32\netui2.dll [PX5: 2694C36800173588B47C043A1F03650097B89A6A] [G] c:\windows\system32\nserror.dll [PX5: 43B2FBD1C040D58C855C001B089B1000125A3268] [G] c:\windows\system32\ncpa.cpl [PX5: 1821E3C8007D4B718C2C005728E754002D7CD81A] [G] c:\windows\system32\msvcrtd.dll [PX5: 3FF45EF54C26C1A1A0400660D375DC00954C4D2F] [G] c:\windows\system32\msvcp50.dll [PX5: 4BB90EF900B92922A216081EDED87300DFFD73D3] [G] c:\windows\system32\nsclient110.dll [PX5: C4D8F21E00F96B76E04C036920708800AA8EA949] [G] c:\windows\system32\msxbde40.dll [PX5: 852207181DD9788750C7056D43DC3700C2B32A37] [G] c:\windows\system32\msrd3x40.dll [PX5: 0BF7C8331F5CD3D7D08904A45D2981002E4CB38B] [G] c:\windows\system32\nlsfunc.exe [PX5: 7F0054418C12F01C1B1500C834485200F7F0C204] [G] c:\windows\system32\mswstr10.dll [PX5: 1D9201C11DB9591D605D091C0CFDC40015A7DD6E] [G] c:\windows\system32\nerocheck.exe [PX5: 0A1755890076B4FC600C028A81C92900BA5A263E] [G] c:\windows\system32\netid.dll [PX5: 5E21E5B000FA0BB2202B0260CC291E002D05A6E5] [G] c:\windows\system32\msratelc.dll [PX5: AA15592500B27E98EC8600AE5FE39200D2528811] [G] c:\windows\system32\msxml3a.dll [PX5: 3EE57A0E0011B273603E00398E1D6B008B4E272C] [G] c:\windows\system32\nlsdl.dll [PX5: A241FEE800B5407C605300CCC4620600715D2FFE] [G] c:\windows\system32\net1.exe [PX5: 8295883F005E4960E88D017A54056400CA82F5AB] [G] c:\windows\system32\msvcp60d.dll [PX5: 54554E964D07942AE05607F5B78EFE002792AFF9] [G] c:\windows\system32\msorc32r.dll [PX5: DEFA4FB300F87FC750B100BB8A762D0075B36E36] [G] c:\windows\system32\netware.drv [PX5: EDF56E466001B55B0AA60041140247008D222BEB] [G] c:\windows\system32\msvcr70.dll [PX5: 557F46BF00B8F62240C40522AB7B720047DFA04B] [G] c:\windows\system32\mtxlegih.dll [PX5: 220CDAB40058582D629D001BB49E500073D4CC94] [G] c:\windows\system32\mtxoci.dll [PX5: 8FD18CA000F792C764BD01D3D4A66800F4367D31] [G] c:\windows\system32\msxml4a.dll [PX5: 1A79CE450033D32DAE4900D4239A45007C80976E] [G] c:\windows\system32\msrd2x40.dll [PX5: 14349B951F404209705406F6D1EA540056CACC11] [G] c:\windows\system32\msvcrt20.dll [PX5: 868B27FA0018FC9AE0D703570B90A100300F7A02] [G] c:\windows\system32\msports.dll [PX5: 5DB9943600062CCFA4FE00A7347F6600B5F67EF6] [G] c:\windows\system32\netstat.exe [PX5: 84815E0F00ABC611903500FC114A8D005FA1DB1A] [G] c:\windows\system32\nmevtmsg.dll [PX5: FFE90828008952AA30A200816E208500FCA12A76] [G] c:\windows\system32\netsh.exe [PX5: 3C5B6E3500490B6250AD01F111D3A000EBA4C13B] [G] c:\windows\system32\msxmlr.dll [PX5: 004C6D93003550EF68410084C1683000811CCE8C] [G] c:\windows\system32\nddeapir.exe [PX5: 66102A6000E8388F10ED0027CC807900B79BCD14] [G] c:\windows\system32\mssip32.dll [PX5: 4A93820A00BC48D81218002CBACA7F00E8A2F7A1] [G] c:\windows\system32\msrecr40.dll [PX5: 8713FF0D4A8F84F970B1008FBC4042008D92F865] [G] c:\windows\system32\net.exe [PX5: 12EB5ED900765514A65A001C77F88100B2EA2E9E] [G] c:\windows\system32\nbtstat.exe [PX5: 287A8798005F4021509800FC697D4B009A27CB33] [G] c:\windows\system32\msxml3r.dll [PX5: 05EF1A3B0006749EAC170053C6162C00E97C751A] [G] c:\windows\system32\netsetup.exe [PX5: B2E18278000D700C0837053601D7CE0030C19606] [G] c:\windows\system32\nscmps.dll [PX5: C3CC314E0005D3824A9A01EBAFB05700922B0D39] [G] c:\windows\system32\msxml6r.dll [PX5: 87A9363A0049826D3899010D63D210002EBC2044] [G] c:\windows\system32\netevent.dll [PX5: 38AE4CF2001BE32244E4037744BD6A00C24753E0] [G] c:\windows\system32\mypixdx.scr [PX5: 27594DC200CB5A1C96B91AE03FDF4A00D2015AE8] [G] c:\windows\system32\nddenb32.dll [PX5: 7E2DD1E200C347B04A0900F5CA1CBA0089C97334] [G] c:\windows\system32\msvbvm50.dll [PX5: B6B8CAAD0074257DB02314D4071803007F85C118] [G] c:\windows\system32\neth.dll [PX5: 79C1C8AB00C3DAB8E07A0312C3E8C000E9148CB2] [G] c:\windows\system32\msxml4r.dll [PX5: C82EFC7600CA883242FC01997ED3CB0007986FEA] [G] c:\windows\system32\ncxpnt.dll [PX5: 81A3ECB4004225C51EC00003BE72030023844E9B] [G] c:\windows\system32\mtxdm.dll [PX5: ACDDCD9100277A01505400C855562D00231F90BB] [G] c:\windows\system32\mstext40.dll [PX5: 2275105D1D1DCD8DF0AC03379B37AB000F13E879] [G] c:\windows\system32\mtxex.dll [PX5: BC107AC200B42C67107100AA5E36EB00B79BCD14] [G] c:\windows\system32\mstsc.exe [PX5: 17F7547C002B1C2C38F2060FAD866E008D18E7BD] [G] c:\windows\system32\nvrses.dll [PX5: 78BCBE0600531FB7305904DD532F5B00E8FCD989] [G] c:\windows\system32\nview.dll [PX5: 1A2776ED009B1431602816F3093C3100D068EAE1] [G] c:\windows\system32\ntsdexts.dll [PX5: 33CF7B0000900C5090F600EDFD758000A377C210] [G] c:\windows\system32\nvwrsda.dll [PX5: E1860AF9003BCE8A80B204DB4B12F6001EC4E5E2] [G] c:\windows\system32\ntprint.dll [PX5: 83296ACD0023384C6466010DD8AD6200DB2214AD] [G] c:\windows\system32\nvrsfr.dll [PX5: 2B18C0A500F302FB4063041297C414009A5958FC] [G] c:\windows\system32\nvrssl.dll [PX5: B201358F001F885BD0D203D9CAADB8007345E1EF] [G] c:\windows\system32\ntmsevt.dll [PX5: 0A659E6800AA51EB90BB00E180369600C40260F0] [G] c:\windows\system32\nvrshu.dll [PX5: 80D0C4DF003DFFBEE04F0317FF98480074962475] [G] c:\windows\system32\nvwrscs.dll [PX5: CB2C1E1C00CCD59A605C045AE0709F005F6E60E6] [G] c:\windows\system32\nvwrsel.dll [PX5: 72ECFB5B00B0D1FF201D0508D05BDB0019ADF58C] [G] c:\windows\system32\nvrstr.dll [PX5: 21EB92FE00DC9A9AD09E0333E2B17600DDAF74EF] [G] c:\windows\system32\nsldap32v50.dll [PX5: D9501B39008E156B2041027420BDDE00BCF3DE50] [G] c:\windows\system32\nvappbar.exe [PX5: 82395B3F0022CC83C01806C0431CB300F0F914F9] [G] c:\windows\system32\nvrsesm.dll [PX5: 382A89F700602A3F104904C537715200D0684A4A] [G] c:\windows\system32\nvrsja.dll [PX5: 0260E19100FE1DE3F042034E9F8B17001025183E] [G] c:\windows\system32\nvrseng.dll [PX5: FCB20D8000047E04B0700351D5EBFC00EBF1C7A1] [G] c:\windows\system32\nvrsno.dll [PX5: B712BD98009365FED0970315C1A59800B5579B1D] [G] c:\windows\system32\ntmsapi.dll [PX5: 9A2BA8310065B8B1A0AB00C71FCF1C00D721F8F1] [G] c:\windows\system32\nvrsit.dll [PX5: F122244B002A3DE830BA04031D2F4400C2620C8F] [GP] c:\windows\system32\nvwimg.dll [PX5: 98E70E370070E150907C0F3FD279E70066AEA6A7] [G] c:\windows\system32\nvwrsfi.dll [PX5: 2BAA60F2003F336FA0300453E86CB70085E96404] [G] c:\windows\system32\nvcolor.exe [PX5: AD2EDFBE009509D2405A02B19FB087003F7FEB25] [G] c:\windows\system32\ntoskrnl.exe [PX5: D947282D00A17866988920DAF88246005E1AF1B4] [G] c:\windows\system32\nvwrsfr.dll [PX5: 19EAE6A400A5087D009F052DD51A96002EAC58A1] [G] c:\windows\system32\nvwrsar.dll [PX5: 75C0EAAB006FA4EB5097041E1F837E00F38111AB] [G] c:\windows\system32\nv4_disp.dll [PX5: FF3DDE9F00FF014E5AD33C0251333600886AD8F4] [G] c:\windows\system32\nvdspsch.exe [PX5: 84751A46002C5F79702C149A28AACD00C72D2586] [G] c:\windows\system32\nvrshe.dll [PX5: AAA8761900588A13E08204E6ACF35600D1EC5559] [G] c:\windows\system32\nvrsel.dll [PX5: 8B33AD9C00F71F9D30C304C600DB9A005C4C05BE] [G] c:\windows\system32\nvwddi.dll [PX5: F009963300E1F5644003019BCBCC410019F921BC] [G] c:\windows\system32\nvmctray.dll [PX5: B8F271AD005E169C50F80128F8B7AD00972CD8CD] [G] c:\windows\system32\nvwrseng.dll [PX5: B5E59FE300F3793560D10479DE4E0B00F2A46207] [G] c:\windows\system32\nvwrsko.dll [PX5: D300A0B6004FDB2B00B7035911FF7900AF45697F] [G] c:\windows\system32\nvmccsrs.dll [PX5: 70AFF03E00934281B0CA00C58D052B0030E694F0] [G] c:\windows\system32\nvwrsno.dll [PX5: BCD3062200FC105490FE040AA8195C0039906E60] [G] c:\windows\system32\nvwrses.dll [PX5: BCA767A1008EAF3A20830508FC22A600E1E66027] [G] c:\windows\system32\nvrspt.dll [PX5: A9A645000017F171101B04D2D04EE80069E70B73] [G] c:\windows\system32\nsldapssl32v50.dll [PX5: A7A0A6E000D6A005A043002DDDE82A00FF4A6CD5] [G] c:\windows\system32\nvrsde.dll [PX5: 21618F8500613353205504D82029FD0013213F7E] [G] c:\windows\system32\nvwrsesm.dll [PX5: 37BE6C6800284993005F055452AA3000D2F8D1F3] [G] c:\windows\system32\ntdsbcli.dll [PX5: 1849E50A00373ED0669F00BC7CEF7B00D1CA1503] [G] c:\windows\system32\nvoglnt.dll [PX5: 44D45CF100910632702F52708691E500F6BC9D06] [G] c:\windows\system32\nvrssk.dll [PX5: 5B4C7AC00075C670D03D030CEEA8B0008109B45F] [G] c:\windows\system32\nvcod.dll [PX5: B18D8D88007BFE808C28000CB7D22A00C4095A6C] [G] c:\windows\system32\nvcodins.dll [PX5: B18D8D88007BFE808C28000CB7D22A00C4095A6C] [G] c:\windows\system32\nvwrshe.dll [PX5: C5D272B700603266407C04596B798300AC92BACF] [G] c:\windows\system32\nsldappr32v50.dll [PX5: DF27CE160081C60B60DE002DDDE82A009CC9514D] [G] c:\windows\system32\nvwrspl.dll [PX5: 1DD698BC0094E7D7801504A44486330050955D1F] [G] c:\windows\system32\nvtuicpl.cpl [PX5: A29231AF00D8F2B620E50127C7882C00DA969BC5] [G] c:\windows\system32\nvwrshu.dll [PX5: 2A57D75300DDD5A9D0EB046715992700301237C2] [G] c:\windows\system32\ntkrnlpa.exe [PX5: BF117A1D00A4E1FBC2BA1E72621F920064E09D85] [G] c:\windows\system32\nvrsfi.dll [PX5: B9B9AC14002405C0B06C031781119A00E9FDA2DB] [G] c:\windows\system32\nvnt4cpl.dll [PX5: BDB9022700D93438603904885AD61A004A61DC7C] [G] c:\windows\system32\nvrscs.dll [PX5: 7A6947630090A078B0F90310FD1C4A00C02A64A3] [G] c:\windows\system32\nvrsda.dll [PX5: 70DE9D9F00F18AF0C0AF03DBC88E2D00949A49EC] [G] c:\windows\system32\nvrssv.dll [PX5: 37675DEA00954C91C03C039657F32100B723CB10] [G] c:\windows\system32\nvrszhc.dll [PX5: 0680D8EF00BDFD9450C803811C9FA700DCC144EC] [G] c:\windows\system32\nvrsko.dll [PX5: DD1E1DEC0021C61BE04C03E68967AA00DE5B1B64] [G] c:\windows\system32\nvrsptb.dll [PX5: A80CC66F0029EB1600A9048B2C938A00534ABEBE] [G] c:\windows\system32\nvrspl.dll [PX5: CABA148B00F42430D01E039C7EEE9300A0FF0877] [G] c:\windows\system32\nvrsar.dll [PX5: 26F7230C00B6D8E2E06504C19616AB001DB350BE] [G] c:\windows\system32\nvrszht.dll [PX5: DB4AAEC7006051B2D0B101296BDC0500080FEF2A] [G] c:\windows\system32\nvwrsde.dll [PX5: C59CB9A500231FE0C088044CCABF06003CD82F36] [G] c:\windows\system32\nvapi.dll [PX5: 7C12E8D300A97104A0F501367C78300097165917] [G] c:\windows\system32\nvwrsja.dll [PX5: 5F9F8316002EFF3140D1030CD5689C002FDFBE1F] [G] c:\windows\system32\nvhwvid.dll [PX5: EA026EE2009D0E7CC01408698030760065FD532E] [G] c:\windows\system32\nslookup.exe [PX5: A03DF7AC0019699A2CCA019302056B003F57E0BC] [G] c:\windows\system32\nvrsru.dll [PX5: CFCBA17F00CAF14B007904894594FD008F8F2406] [G] c:\windows\system32\nss3.dll [PX5: E9B8A6B00041EA6E404C07EB4B1C9F0091ABDFCD] [G] c:\windows\system32\nspr4.dll [PX5: 0D9E8DDE004059FE808A044E245315002CDCF753] [G] c:\windows\system32\nvudisp.exe [PX5: E14B137000827F3FB0A00257062045003345D65D] [G] c:\windows\system32\nvunrm.exe [PX5: E14B137000827F3FB0A00257062045003345D65D] [G] c:\windows\system32\ntmsdba.dll [PX5: 954DB5960015E3ACBE81027CE182C7005C8CF25A] [G] c:\windows\system32\nvwrsnl.dll [PX5: 9E92723900D489A0E04904FE681F54002FD485BB] [G] c:\windows\system32\ntvdmd.dll [PX5: B12B10A500308D2E343200BBD52614002078883B] [G] c:\windows\system32\nvwrsit.dll [PX5: 4852F1AC008E9583F0C804A6DF2A070066144E49] [G] c:\windows\system32\nvrsnl.dll [PX5: E94ECC5700FF432510160416288F6E005E0F97D4] [G] c:\windows\system32\nvconrm.dll [PX5: 4447D4B3007522418C06006ABF96C100D258D8B8] [G] c:\windows\system32\ntlanui.dll [PX5: BDB7010400375DECE2FB0064EFDE8000F0CE534B] [G] c:\windows\system32\perfnw.dll [PX5: 0DD9A45A00D02AB8165C00CABD24FF008943EA0F] [G] c:\windows\system32\osuninst.exe [PX5: ED9FEE9C0001B9CA9E8400A32D10BF00B7750620] [G] c:\windows\system32\p2psvc.dll [PX5: 48A1C33200F7ADB30AEE08557C6FBE000D2D0604] [G] c:\windows\system32\nwscript.exe [PX5: 3D8C8D8C00D6782AEE8C01016864D5001FAA2787] [G] c:\windows\system32\pentnt.exe [PX5: DBF1276A000CEBD83CF700A20578F600140873BE] [G] c:\windows\system32\oleaccrc.dll [PX5: 181225A6005129CF425D00DE1AAE4B00F3A96F2E] [G] c:\windows\system32\nvwrszht.dll [PX5: 8E7C973900D480BB90F502A1487BCF00F83FEB5B] [G] c:\windows\system32\oddbse32.dll [PX5: 8AA9A3ED1F86A4F95016002DDDE82A00AE3897D2] [G] c:\windows\system32\olepro32.dll [PX5: E3EEFF4200276BC3464D01FA17870D000BC48EDF] [G] c:\windows\system32\pautoenr.dll [PX5: 261369340037DB98F6FC00317BDC810018AF8B01] [G] c:\windows\system32\odbccp32.cpl [PX5: 12E5204E0096DF4380D8002DDDE82A00E7644CAE] [G] c:\windows\system32\nvwrspt.dll [PX5: 23FA583D0024790AF058042C37192A00EFBD8AF9] [G] c:\windows\system32\picn20.dll [PX5: FA4EA42C00EA4ED7983200C350BB450029D3CB71] [G] c:\windows\system32\nwprovau.dll [PX5: C22CD28B001E36952C840251677550008FB3292E] [G] c:\windows\system32\opengl32.dll [PX5: 0F7E0D87009C8A05E4140AA9C93E82001535B76C] [G] c:\windows\system32\odbccp32.dll [PX5: 322A537000851538A09F01C01746700079C9ECF9] [G] c:\windows\system32\olethk32.dll [PX5: CEC8999C003288860E0C0128F5CE08009A1EC821] [G] c:\windows\system32\nvwrssk.dll [PX5: 9BCD38C600B45E8D90D2044E89148100E28FB075] [G] c:\windows\system32\olecli32.dll [PX5: A0AE5E72002FE592248301352033A90015C802AA] [G] c:\windows\system32\nvwrsru.dll [PX5: ABCA3E5600826DE7D05404D5B092B100D58EA9DE] [G] c:\windows\system32\pidgen.dll [PX5: 0AB9CE1A003392985E290083C64A250076E45DF8] [G] c:\windows\system32\perfmon.exe [PX5: A7DD340000552D433EB800D3495D1F009C1E66AB] [G] c:\windows\system32\odbcad32.exe [PX5: DE0B93560086C6258035002DDDE82A00C42AB502] [G] c:\windows\system32\odbccr32.dll [PX5: D74AB39B003B1886007C01EE08788A0064E60D95] [G] c:\windows\system32\oledlg.dll [PX5: D1AC056400637176E03601987DE6BC007BA7167D] [G] c:\windows\system32\ochlp30e.dll [PX5: 708F1D1E00B5905B94F5003CCE432C0082660AD6] [G] c:\windows\system32\pnrpnsp.dll [PX5: 05187346003F11A3BE23002049D93E005D0C4BED] [G] c:\windows\system32\odbctrac.dll [PX5: 0317910500F578994081029CB65B3B00176B192B] [G] c:\windows\system32\odexl32.dll [PX5: 8C6047E01EF2ED325044002DDDE82A00DD9AF284] [G] c:\windows\system32\p2pgasvc.dll [PX5: 30FEE7F6004ECCC05052019004C4C100D0F46AE6] [G] c:\windows\system32\pndx5032.dll [PX5: 8314C5EB00C6E0AD16FE002E54F5E2008B5F67CE] [G] c:\windows\system32\p2p.dll [PX5: 7445A58E00B5F178C6DB0164DFE125003DD1CEF5] [G] c:\windows\system32\nwapi16.dll [PX5: 760AA975000BBAD844BC00F3B4A4F600B7A8A937] [G] c:\windows\system32\nvwrssv.dll [PX5: 486359550009A3C280D904ABBF11270042217EFC] [G] c:\windows\system32\odtext32.dll [PX5: 17FEA89C1F8B16F250E8002DDDE82A00EB074E4A] [G] c:\windows\system32\odfox32.dll [PX5: 097569191EB9161750B3002DDDE82A003593ED6B] [G] c:\windows\system32\nvwrssl.dll [PX5: D9E2178E00E5046EA0F70406FC57560086A1952D] [G] c:\windows\system32\polstore.dll [PX5: A43E382100B562619CD601439880AD00E1C9A91F] [G] c:\windows\system32\odbc32gt.dll [PX5: 6203343500D2BD4C401A002DDDE82A00ED24A2C1] [G] c:\windows\system32\p2pnetsh.dll [PX5: 1C91F37B0001ABBD58CF0137DAF10200B869E95D] [G] c:\windows\system32\plc4.dll [PX5: 4BD2389800D027C96E58007A4EC31700F292A611] [G] c:\windows\system32\nwapi32.dll [PX5: B0F086EF002D9C4CFA790041025CA4008DB9D176] [G] c:\windows\system32\nvwrsptb.dll [PX5: 179A302200CDD017E08D049C81DD8B0003DC86B4] [G] c:\windows\system32\plustab.dll [PX5: 18B5C4160069952878570047B7499E00A573B934] [G] c:\windows\system32\openfiles.exe [PX5: 22FD399900BA977C08D0015ABBA32000B01A775C] [G] c:\windows\system32\pncrt.dll [PX5: 075D86280003017340A404F66F95A3006892D13F] [G] c:\windows\system32\odbcjt32.dll [PX5: 2E1A458E1F1DA38F40A104D9BDD7B6001D68C554] [G] c:\windows\system32\odpdx32.dll [PX5: FD3B179D1E78369C50CE002DDDE82A000D4A591F] [G] c:\windows\system32\pathping.exe [PX5: 2BA4EA5600CAC0BD54E800597717C400DA32F9E1] [G] c:\windows\system32\odbcp32r.dll [PX5: 1CF46F87007B476230EA00816E208500ADBD4794] [G] c:\windows\system32\nwevent.dll [PX5: B5C5839A005E4EB5188900868D78710055D65D43] [G] c:\windows\system32\odbcji32.dll [PX5: 22C435851FFB9CF2D01B00746136F700F5DC3085] [G] c:\windows\system32\nvwrszhc.dll [PX5: 7CB42782009E97BF80A302530134FE008BF6B517] [G] c:\windows\system32\paqsp.dll [PX5: C559C08100F04428683102C6BD6EA700283573FB] [G] c:\windows\system32\nw16.exe [PX5: 113976FDB48FE7E30C9500888AEBAF00AD83D8F7] [G] c:\windows\system32\ocmanage.dll [PX5: 4C13B9D2004722D5EE97003B27561B00E47ADA5D] [G] c:\windows\system32\nwwks.dll [PX5: 598BDA0C001EE800002D012E96C0500066D0A64F] [G] c:\windows\system32\p2pgraph.dll [PX5: 576C46730040AE7EC42A0433B223CC00CEC192FE] [G] c:\windows\system32\pcdlib32.dll [PX5: A722C04E0055EABE3E2903EE54537C00E6644ECF] [G] c:\windows\system32\ping6.exe [PX5: 48442BC200A1BA7E82A80030DFE16B00A9C580D7] [G] c:\windows\system32\pifmgr.dll [PX5: E4AEAC0E0004602E8AD200A417A7930056A66F2F] [G] c:\windows\system32\nwiz.exe [PX5: 1E879BC100EF3AFB302017FD136095005431E534] [G] c:\windows\system32\packager.exe [PX5: 2CDBABDC0003E167E49A008EDB266300CD2B1C63] [G] c:\windows\system32\pclegetguid.dll [PX5: E3FC9D2F000BB990C09D009FEA898F00B6731AAE] [G] c:\windows\system32\olesvr32.dll [PX5: 7E62B1ED007B08F8568600C754444A00560D8BDA] [G] c:\windows\system32\pndx5016.dll [PX5: 33833B3E00DA1B071AEB00D367FA9B0038B23E60] [G] c:\windows\system32\plds4.dll [PX5: 5442FA3500D3D4E5549F007EC9E2FC0054F4865E] [G] c:\windows\system32\nwc.cpl [PX5: 115B4ACF003B22FF90C1005E6FEEC300A186B75E] [G] c:\windows\system32\ping.exe [PX5: 26B0437600ED600346EE001C2E34A000398A1E1D] [G] c:\windows\system32\odbcconf.exe [PX5: B8EF54C60079AF1210B401D0EC49BB000CBC294B] [G] c:\windows\system32\odbccu32.dll [PX5: B6825F890042FD5400630144E246070021F1497C] [G] c:\windows\system32\odbc16gt.dll [PX5: 5E76DC9A709504556614001934387F00AA78A375] [G] c:\windows\system32\olecnv32.dll [PX5: DF335414002F6B0694690040CC09930044C4A683] [G] c:\windows\system32\nvwrstr.dll [PX5: 092ED6F4003AB258A06204B7C5FE2B00626DC2E1] [G] c:\windows\system32\nwcfg.dll [PX5: B110BC2500B1F5E1505D00069476C8004296BA21] [G] c:\windows\system32\qtexporter.dll [PX5: 8D28932A00AED51B302A07E00E70CA00066C4E9C] [G] c:\windows\system32\qprocess.exe [PX5: F0FFCB7800E2234A504B0054C065B0002F6685BD] [G] c:\windows\system32\raddvcodec.qtx [PX5: D729444F004D7991E055044CE9091A00051BA71F] [G] c:\windows\system32\qwinsta.exe [PX5: D7EADB370090F01E5659008FFC02AF0042A05EB9] [G] c:\windows\system32\psisrndr.ax [PX5: 677CB80E0060EC876C3B03CF11191700B7410840] [G] c:\windows\system32\rdpdd.dll [PX5: B11695820884AACE680A01DA84A9A500E6CA599C] [G] c:\windows\system32\rassapi.dll [PX5: 688E365100573CA3424400C30BA46F00B6E67BEA] [G] c:\windows\system32\pxhpinst.exe [PX5: CBD6DAECF8068B391AA2012E2A5506004650773D] [G] c:\windows\system32\replace.exe [PX5: B63CA315006A9B2A3299003E2DA87B00325D8B7F] [G] c:\windows\system32\pxwma.dll [PX5: 59F52D81F049173D694B02EC9E8C28005B8ED708] [G] c:\windows\system32\pxmas.dll [PX5: D28A2E1CF0F08FD8D96C020CB40DFB00340CF214] [G] c:\windows\system32\regini.exe [PX5: 9997FB4900504E9784330033792D6C006AB2F7C4] [G] c:\windows\system32\qt-dx331.dll [PX5: C9F371530031E58DE000360B1F59620004BE1690] [G] c:\windows\system32\qosname.dll [PX5: 85347A22005AC05320D10035335850005DA730BE] [G] c:\windows\system32\psdrvcheck.exe [PX5: 4E60A44B00DD8D46326E06E09914CE001F095D30] [G] c:\windows\system32\redir.exe [PX5: D6AEA0E20AD8C8500D8600A9AA5BE700E7CB167A] [G] c:\windows\system32\rasphone.exe [PX5: 5DF34CF60099BB20DEAA007A547E19003BCC9113] [G] c:\windows\system32\rdsaddin.exe [PX5: 4ED2AE71005ACB9E36B400893B596E007A643334] [G] c:\windows\system32\recover.exe [PX5: 74418C2C001F25BA1CD20093F9699A00898FD61E] [G] c:\windows\system32\rasmxs.dll [PX5: E684EB9B007D89DF58E000A949D53B005A518287] [G] c:\windows\system32\pxdrv.dll [PX5: 87DA61A4F83393562A4D0840D678F3007B67975B] [G] c:\windows\system32\qappsrv.exe [PX5: 5F12FE1A001676DE42A400ACDCE3B0002606B54A] [G] c:\windows\system32\riched20.dll [PX5: F38F8ACD000D82EB9CB206BA95FA1000172ACF73] [G] c:\windows\system32\psdrvcheck.chs [PX5: 6CE848BF00A04569660E00D882219D0081050D56] [G] c:\windows\system32\rdocurs.dll [PX5: 4CEFE96F0051C04C503E0293B1CC0F00B41D98D6] [G] c:\windows\system32\proxycfg.exe [PX5: 2254FD5C00C0D309248500F27CE26B005E816085] [G] c:\windows\system32\relog.exe [PX5: F55D0C03005019B8807D00F136A51A00DC07A50D] [G] c:\windows\system32\rasmontr.dll [PX5: 6F31B32B001F59DA30BC024B1AC036004AC488B7] [G] c:\windows\system32\rcp.exe [PX5: 5B0B3C8B006846AD54DB0044E26F1B007D9EE5EF] [G] c:\windows\system32\rasser.dll [PX5: B6A4D904008B6124320E00C987563A009BECB28D] [G] c:\windows\system32\pxcpyi64.exe [64] [PX5: CB21F219F0193B02D5A80141E200B500C97272C9] [G] c:\windows\system32\pubole32.dll [PX5: 6C2814E10023C5CE2A0B01399049C400A28F82E0] [G] c:\windows\system32\pxsfs.dll [PX5: 79E61123F0833DCD297A19B65FA03A00FAA35D96] [G] c:\windows\system32\psisdecd.dll [PX5: 4A168E1D000E870996A103A1A26D530080C2B251] [G] c:\windows\system32\regedt32.exe [PX5: 1FB6A94D008E637D0E4300DEA6EA0000B79BCD14] [G] c:\windows\system32\psdrvcheck.fr [PX5: 6CE848BF00A04569680E00D882219D00777FCDF4] [G] c:\windows\system32\psdrvcheck.fra [PX5: 6CE848BF00A04569680E00D882219D00777FCDF4] [G] c:\windows\system32\rcimlby.exe [PX5: 6B8113FD007BACA68C6F00393A10C30068DB21F3] [G] c:\windows\system32\psdrvcheck.es [PX5: 6CE848BF00A04569680E00D882219D005FC64ACD] [G] c:\windows\system32\psdrvcheck.esp [PX5: 6CE848BF00A04569680E00D882219D005FC64ACD] [G] c:\windows\system32\pywintypes22.dll [PX5: 59F8D90F004503DA709A018A792B4700F6CA0BBA] [G] c:\windows\system32\rnr20.dll [PX5: 3261CA9200FE2CE40CCD008EBFD8A800B79BCD14] [G] c:\windows\system32\qrpt50.bpl [PX5: F9C758C800C5DEFC7E18082C82561400C7A08D27] [G] c:\windows\system32\proquota.exe [PX5: D90394620076534FC4F5002741FA24004EEB64BA] [G] c:\windows\system32\psdrvcheck.nl [PX5: 1FD38AE40080310C4219007998D4B60086D988EB] [G] c:\windows\system32\psdrvcheck.nld [PX5: 1FD38AE40080310C4219007998D4B60086D988EB] [G] c:\windows\system32\psdrvcheck.kor [PX5: 6CE848BF00A04569680E00D882219D00A10F0478] [G] c:\windows\system32\quicktimevr.qtx [PX5: E768070200C9E1E1005F013E2F2AC3005D53D40B] [G] c:\windows\system32\remotesp.tsp [PX5: 8C3A2012001B96842C18011DF0E0FA00C9EBF814] [G] c:\windows\system32\reg.exe [PX5: FD7617B400B4B179C43100A799BE5F009B372BA9] [G] c:\windows\system32\rewire.dll [PX5: C9CB775700D57E2B70D303CA503BC400B3533BF0] [G] c:\windows\system32\pxcpya64.exe [64] [PX5: BC289D01F07162C403AD017FD1289400E13A3845] [G] c:\windows\system32\pxinsa64.exe [64] [PX5: E0CFDEB4F0DC989CFDC7002B636D95002A411227] [G] c:\windows\system32\riched32.dll [PX5: 0785233100BF81190E9500044BCB3C00B79BCD14] [GP] c:\windows\system32\qedwipes.dll [PX5: E5A59F880006777B32BE0B490F398500147C8A76] [G] c:\windows\system32\reset.exe [PX5: C5C9F6430018D2A72657007CF67DD10050CBC79C] [G] c:\windows\system32\powercfg.exe [PX5: 97347AD500FC4927C0F400A132844100D5CE98BA] [G] c:\windows\system32\psdrvcheck.cht [PX5: 6CE848BF00A04569660E00D882219D00B57E9E3E] [G] c:\windows\system32\quicktime.qts [PX5: D526A824006A9631C0A100A1C398EC002FF308C8] [G] c:\windows\system32\prflbmsg.dll [PX5: 780F0327006028DE4009002803C76300D26932AC] [G] c:\windows\system32\pxinsi64.exe [64] [PX5: 0D996220F07B1742CD24016FE4E661009D131E95] [G] c:\windows\system32\rasautou.exe [PX5: 2DAC5D93002FAA822EB30020FA40FF0098961BA2] [G] c:\windows\system32\psdrvcheck.de [PX5: 6CE848BF00A04569680E00D882219D009D7ADDC6] [G] c:\windows\system32\psdrvcheck.deu [PX5: 6CE848BF00A04569680E00D882219D009D7ADDC6] [G] c:\windows\system32\regwiz.exe [PX5: 655E4756007C6EDB12AA007D29C16F00B284CAC7] [G] c:\windows\system32\rasdlg.dll [PX5: B2A29089001A45C20ABB0A96CE6E6F0074DA4BA4] [G] c:\windows\system32\print.exe [PX5: DE51251700E46753241F0026DEFDC4000EA0CC77] [G] c:\windows\system32\powercfg.cpl [PX5: 30C1853000651625C00B01AB1050920098EDAB84] [G] c:\windows\system32\rasdial.exe [PX5: E6AD684B0027E8D42C16003F40470300CCCF150E] [G] c:\windows\system32\psdrvcheck.jp [PX5: 6CE848BF00A04569680E00D882219D00019EEDA4] [G] c:\windows\system32\psdrvcheck.jpn [PX5: 6CE848BF00A04569680E00D882219D00019EEDA4] [G] c:\windows\system32\rexec.exe [PX5: 9759F2F000C0A3293614003F91D1200042CF44A7] [G] c:\windows\system32\psdrvcheck.it [PX5: 6CE848BF00A04569680E00D882219D00CF5A2D18] [G] c:\windows\system32\psdrvcheck.ita [PX5: 6CE848BF00A04569680E00D882219D00CF5A2D18] [G] c:\windows\system32\pxafs.dll [PX5: CC9300BBF01C8515F9210134ABC237005952D021] [G] c:\windows\system32\pxwave.dll [PX5: E05D047BF0840058C91C0539FC7C7200817B2CF2] [G] c:\windows\system32\px.dll [PX5: 027AFFE4F03DF743A93A080BDD6C1B005E910EC9] [G] c:\windows\system32\set2e.tmp [PX5: 3FEB685100A7F8027AA3196B9760EE0088CCA79B] [G] c:\windows\system32\psnppagn.dll [PX5: 196822EE0059EFCD205600EB2A810300B04193D1] [G] c:\windows\system32\proctexe.ocx [PX5: 12C549A4005463CC402401BFAD9C3E0089366FD7] [G] c:\windows\system32\psdrvcheck.ko [PX5: 1FD38AE40080310C4219007998D4B6009B4418A3] [G] c:\windows\system32\set2f.tmp [PX5: F9018F48001C526574A90482B7E7A700F86EDFB1] [G] c:\windows\system32\set31.tmp [PX5: EBF6177900EF47F2F62206E75C757200D3D523EE] [G] c:\windows\system32\set84.tmp [PX5: 578E0C29002120243A4E039858A85C0002C3734C] [G] c:\windows\system32\set85.tmp [PX5: BB8D717C00E4F5868E730B495132020057624EA5] [G] c:\windows\system32\set86.tmp [PX5: 778F1EE6002079780E3811298E956800E7A2C352] [G] c:\windows\system32\set87.tmp [PX5: 1C8EBDA500BD427C64A1039E43D83D00C16E57A8] [G] c:\windows\system32\set90.tmp [PX5: C3E4512600BB5DF1486E14AA1FC06F00877719F0] [G] c:\windows\system32\set93.tmp [PX5: 21E5EED200E4BAA9664525EF6856730017F9BD30] [G] c:\windows\system32\setdc.tmp [PX5: A257F2F40064E0C786EE01FC6369D9005D6B5CD4] [G] c:\windows\system32\share.exe [PX5: 68062C0E72CE86AB03780001B5B47F00DC855A06] [G] c:\windows\system32\scredir.dll [PX5: E1CC1A130077EB5568A10083B1716A00E3CF36D8] [G] c:\windows\system32\sccbase.dll [PX5: F4549BE6000C371398E90204A7D88700453539E9] [G] c:\windows\system32\spmsg.dll [PX5: A7053C0A308902543931009B5B50900069401806] [G] c:\windows\system32\sol.exe [PX5: 744E2F240079E79BDE49002FD274C40091B63639] [G] c:\windows\system32\setdd.tmp [PX5: 68DE29AA00DA345E9CC87D913B696700587898B5] [G] c:\windows\system32\set8e.tmp [PX5: C6D9AABE0042B9E710DB00200DAF4A00B79BCD14] [G] c:\windows\system32\sethc.exe [PX5: 8DACB78900F828C97A8A002692A0030090E63F17] [G] c:\windows\system32\sbtrvd32.dll [PX5: 21490C7600E441D6604B006197BEF70086420564] [G] c:\windows\system32\sccsccp.dll [PX5: BFCB5E7B002D70AA9C9502B4ADEFEE005AC01951] [G] c:\windows\system32\shellstyle.dll [PX5: 2A191A230001B305A65F060778D95A000C93B545] [G] c:\windows\system32\set92.tmp [PX5: D650C45700BCB4AD109500200DAF4A00B79BCD14] [G] c:\windows\system32\sdbinst.exe [PX5: AEEA18CC0088D5F42E7401D2A6F2B200564A4C9E] [G] c:\windows\system32\secedit.exe [PX5: 0B75BBE400D196A94867006563CF0A004C250503] [G] c:\windows\system32\slbiop.dll [PX5: F5E16CA800509DA08028013B8A38E800A07F7271] [G] c:\windows\system32\softpub.dll [PX5: 0C0AD506005DAF3B168900B78E47550018F835F3] [G] c:\windows\system32\shutdown.exe [PX5: B2AAE75E00D065E74CDC009947127A0024DB0699] [G] c:\windows\system32\shellvrtf64.dll [64] [PX5: F2DA7C18000F20B5107D0437E8EBAB0028F7D10C] [G] c:\windows\system32\sort.exe [PX5: 2E7AF2B3007BBD8C5C6200C10A8CD100AD23A9A9] [G] c:\windows\system32\shdoclc.dll [PX5: C83D676000EA40D8624F08321D726700F5AF1FC7] [G] c:\windows\system32\sigverif.exe [PX5: D989318C00570986127101A914232B00BDD58BC2] [G] c:\windows\system32\slbrccsp.dll [PX5: 6CA5A8090016DB263AF4000935DE7A00B343245B] [G] c:\windows\system32\roboex32.dll [PX5: 0469929800B2BE05F0880FAAF4D10D00E7C8DF82] [G] c:\windows\system32\setver.exe [PX5: B5F1C526E98AC7222DDB0033AE11A700D6A65EC5] [G] c:\windows\system32\rtm.dll [PX5: CEE8E44D000C59C6806E011BD6A1CF006AEC084D] [G] c:\windows\system32\setd8.tmp [PX5: E639B6D2008F148E5212A5C0B561EE002EDE3225] [G] c:\windows\system32\rwinsta.exe [PX5: 62FCEAD5001968043E9B000D1ECF3200D8E5FBDB] [G] c:\windows\system32\sfc.exe [PX5: 096455EE002FA96026650020F754BC0073C09C01] [G] c:\windows\system32\sdhcinst.dll [PX5: F376CB64008B133D721900E62220280028DF58F5] [G] c:\windows\system32\rsopprov.exe [PX5: B024E59500A753C7F64A00BC5F3FED003D6C5422] [G] c:\windows\system32\setupdll.dll [PX5: 70869D49004FEB9A52D006B165B2110019D6813A] [G] c:\windows\system32\scrnsave.scr [PX5: 0C62F00500879461246B003B3C2E070095DA84D8] [G] c:\windows\system32\skeys.exe [PX5: 6C2E79EE00A4BB4E663200FC47ABDF008AA2B2CE] [G] c:\windows\system32\sisbkup.dll [PX5: 0B7CB74700CCDFA936C2006728C212002FDE63C2] [S] c:\windows\system32\spiisupd.exe [PX5: 6CF16E7F007CB48632DE00C58EB6950032B352E8] [G] c:\windows\system32\rsm.exe [PX5: C316B359000B02A4C0630054E512E200C97CED26] [G] c:\windows\system32\rpcns4.dll [PX5: 60F7CFA2006073CF5632006758120300841349C8] [GP] c:\windows\system32\senscfg.dll [PX5: DDDB856000A44298368E00DF3FEBE1001D1D1D94] [G] c:\windows\system32\set96.tmp [PX5: 0FDA19B100FB560710EB00200DAF4A00B79BCD14] [G] c:\windows\system32\smagentapi.dll [PX5: DE8A7B5500EC0043B0570478DFF4E000273382F6] [G] c:\windows\system32\runonce.exe [PX5: 441C354800534C2F380C0090BF002800D48CCC88] [G] c:\windows\system32\rsvpmsg.dll [PX5: 04CA9A5C0046A01F5CE8006130730E00B33ED9EC] [G] c:\windows\system32\rtipxmib.dll [PX5: 77FA36B400F7B9547C8800CFE7FA7E0009596252] [G] c:\windows\system32\rsh.exe [PX5: 7C535D3D00AB2AF73A7D002E0EEC7B007B69CC8F] [G] c:\windows\system32\shadow.exe [PX5: 9A6BC40200305E993A75009C1FBF8F0002006200] [G] c:\windows\system32\setup.exe [PX5: 20299E4E009ACDAC5ADE0080387D3B00750450F9] [G] c:\windows\system32\sfcfiles.dll [PX5: 10A3CE770029E8301E9D18EBE438A4004D79C3D0] [G] c:\windows\system32\scarddlg.dll [PX5: D43EB12C00FA0C6A108C0146E76D5900759D2199] [G] c:\windows\system32\simpdata.tlb [PX5: 8E31CC98005AD5D64061002AC31AAC003E7876A7] [G] c:\windows\system32\set95.tmp [PX5: E1833154005058C610D800200DAF4A00B79BCD14] [G] c:\windows\system32\schtasks.exe [PX5: A332B446005479DBDCB201717E7A3F0004C39F3D] [G] c:\windows\system32\rtsndmgr.cpl [PX5: F4F0BE07005A39AF10F204F3DEEA1500244AAB8F] [G] c:\windows\system32\smbinst.exe [PX5: 71F9D802000DF056202700B42FC6F7005CA31D1A] [G] c:\windows\system32\routetab.dll [PX5: 77B512C800EC09001A2800AE094E8A0016ACDD75] [G] c:\windows\system32\serwvdrv.dll [PX5: 35041E0D006CCDC23A74004F2E64220004688E67] [G] c:\windows\system32\spider.exe [PX5: C208983200841EF0384508FFE3BEA9003AA8908C] [G] c:\windows\system32\sfmapi.dll [PX5: B6F874B900958D155C000066585D760035C8ADB2] [G] c:\windows\system32\skdll.dll [PX5: F571DECF00EB1E06160C006D674A2A003E8902C0] [G] c:\windows\system32\sc.exe [PX5: A0D79D3600FD9A7B7A3E0057919B9000BB4F57E1] [G] c:\windows\system32\runas.exe [PX5: 9000418B0070554B40CE005983C0F100C400C526] [G] c:\windows\system32\sigtab.dll [PX5: 10818D0100228C25343900649301A800280F1FAE] [G] c:\windows\system32\spnike.dll [PX5: E468406700BEEB8A10FA012E50D36C008A3007CD] [G] c:\windows\system32\scp32.dll [PX5: 2AC1B62200F5D0DE3E2D00C8080E5900D8850BA7] [G] c:\windows\system32\savedump.exe [PX5: D0163EFD00E185B034960003D014AF003EFC164F] [G] c:\windows\system32\shrpubw.exe [PX5: 605030B0000D24CF3078018071D075003D5F1F5D] [G] c:\windows\system32\slbcsp.dll [PX5: E3185D8900355076ACDE042FB605B700E5755D1F] [G] c:\windows\system32\sndvol32.exe [PX5: 4CEBBE93006E7A811E2602D8A8714400B1310284] [G] c:\windows\system32\s2dtconv.dll [PX5: 541E83A00042D6D504E6013001AA3100DDE212AB] [G] c:\windows\system32\serialui.dll [PX5: B5ABD850008C69283817009D8CAFB000F031C5C8] [G] c:\windows\system32\routemon.exe [PX5: 81654E380085F58A64BD0070A6DB9F00E034385D] [G] c:\windows\system32\snmpapi.dll [PX5: ABE3815100BA58274A0B00BB79545B0065DD40E6] [G] c:\windows\system32\rtcshare.exe [PX5: 50C22E2400B62C082E3F01BF33C7E700655F4A9C] [G] c:\windows\system32\route.exe [PX5: AF0BB1AD00289CDA4EA6001BCA4EB400586D5169] [G] c:\windows\system32\tcpmonui.dll [PX5: 1EA055BF00D1B90CB295005B0C5B2C0076D5F6F1] [G] c:\windows\system32\ssstars.scr [PX5: D7040D2000A7E479388300A62F34FD00F087786B] [G] c:\windows\system32\sysedit.exe [PX5: 586F1FE1D050881B497C001E2DF0C400D13281BE] [G] c:\windows\system32\stringres110_en.dll [PX5: 9F4988AF000FC283D04C07976CBBA700A05A622C] [G] c:\windows\system32\ssmypics.scr [PX5: 21B1855D00657683B80900B86AB64F000F83CE8C] [G] c:\windows\system32\teeqr50.bpl [PX5: 2B0A966E000660B99CBF00B2EF537800DE537EE6] [G] c:\windows\system32\sysdm.cpl [PX5: B5081F6E00EDF01B8EEC0474356E2000492B33C3] [G] c:\windows\system32\stringres110_chs.dll [PX5: 4B6080CF00D74067F04302F74053DD00CCFC15D2] [G] c:\windows\system32\sqlwid.dll [PX5: B093CF0A1B5445C96052006431D8C70077D3D46E] [G] c:\windows\system32\synceng.dll [PX5: 49E77B67001411FCE2F200E27CD867003A972E47] [G] c:\windows\system32\taskman.exe [PX5: 9D0687DA00E022653CEA00BD2EAB56003DEA4215] [G] c:\windows\system32\strmfilt.dll [PX5: 65A7311B0050ABBE28F8018E433431003F9B5804] [G] c:\windows\system32\strmdll.dll [PX5: 0FDA77091EEEB26CC4070329461C0B00B7247D1C] [G] c:\windows\system32\stringres110_fr.dll [PX5: B358810300217D2420CC0753DB08C30080260F18] [G] c:\windows\system32\syssetup.dll [PX5: CB38EBDF00A8213B062A0F05EE7D5000034D2AEB] [G] c:\windows\system32\stringres110_cht.dll [PX5: E5E17E6200E47BF3008D031671895D00F0C1A459] [G] c:\windows\system32\ter32.dll [PX5: D0B055AD007FFD8CE0DE0FB0BCA3EE0000EB178A] [G] c:\windows\system32\spoonuninstall.exe [PX5: CD36569300C6CB6C0240023D9A5BAE005EC52A49] [G] c:\windows\system32\storprop.dll [PX5: A212FEA600CF1C8D246E016D3F1D76005941D424] [G] c:\windows\system32\streamci.dll [PX5: 38E791430016D7FB20040012B9016100CA2CDA85] [G] c:\windows\system32\sqlsrv32.rll [PX5: CC0E2D390021FF69608B0170A006F8001944417A] [G] c:\windows\system32\sysocmgr.exe [PX5: 8BDE68C1001370349E61012ED3D2DA0087303931] [G] c:\windows\system32\stdole2.tlb [PX5: 903E2468001F3EA4460A0078E4CC520056990236] [G] c:\windows\system32\tapiui.dll [PX5: 112F1B8500ACB26F345F0100ABB39500D13EFDCB] [G] c:\windows\system32\svcpack.dll [PX5: 15082FCF00AB20EB18CE0041C8198B00BFC03F62] [G] c:\windows\system32\stdole32.tlb [PX5: 2F24AD8E00F4C4D01CE700D40B28E900F7B89065] [G] c:\windows\system32\systray.exe [PX5: FD5D178300DE12410CDB00C49B4F0500B79BCD14] [G] c:\windows\system32\spxcoins.dll [PX5: 6062178A55F1B29460190027D05E1400012CA488] [G] c:\windows\system32\telnet.exe [PX5: 93A142BB004C92CD28C8013094ACDD00A44BBDFD] [G] c:\windows\system32\syskey.exe [PX5: 866F52380092A668904800A1C95DD300114AD769] [G] c:\windows\system32\ssbezier.scr [PX5: F1EE18D300FF24894EE800DA5D9A29009862D95F] [G] c:\windows\system32\spr32d35.dll [PX5: 54B2CC38003D6C84209A0CBBF9677D00484001F1] [G] c:\windows\system32\ssldivx.dll [PX5: 2B5064B000BEF4D3107603FF1E984800D76847DF] [G] c:\windows\system32\syncapp.exe [PX5: 3C9F1250003E8C6EC8FA00E884C83D0022E55316] [G] c:\windows\system32\t2embed.dll [PX5: DF2664590079BA5DCEC801ED1DEAA600B6A55741] [G] c:\windows\system32\stmpcdtx.dll [PX5: 103329E6001935D4560D115DA19AB0006994F0FB] [G] c:\windows\system32\sprestrt.exe [PX5: 86E81F950018F0E9262100BF9FBAF50054B81F4A] [G] c:\windows\system32\sstext3d.scr [PX5: 5F314DAA0019534060320AE3EAE06C00AD63423D] [G] c:\windows\system32\ssmarque.scr [PX5: 894AB12F003EC5E052A200786665F90088657D7B] [G] c:\windows\system32\tee50.bpl [PX5: 995A1517003694B8264A08D7B6369100E0C81FA6] [G] c:\windows\system32\stringres110_jp.dll [PX5: 3BE0315D00989DC0101404E04104D400EB65D435] [G] c:\windows\system32\teeui50.bpl [PX5: 43B4340400A36F77947104F454087E00774B8715] [G] c:\windows\system32\sysinv.dll [PX5: 639F715300C2AEC23E1400DC53C07E001D569C41] [G] c:\windows\system32\stimon.exe [PX5: BEF8FEE20005E58C3A67000ED1AA670062EEBA51] [G] c:\windows\system32\syschkvc.dll [PX5: A110FBBC50BA6D29DD890086E074DE005A68869D] [G] c:\windows\system32\space.scr.old [PX5: 7A7A0A97007947973EB06CA6C11EAA00FC736AAE] [G] c:\windows\system32\sprio600.dll [PX5: 01F9693800E9B04D14300195405DA60065B8E7E1] [G] c:\windows\system32\sqlunirl.dll [PX5: 14C463E0406D0C7BC24D02EAC4776400CDF43686] [G] c:\windows\system32\sprio800.dll [PX5: B30814EF0000A7451A6601519750C1007A0DD1DC] [G] c:\windows\system32\sqlwoa.dll [PX5: 69487F1D1B401CB7C0C2005765E5B1005EC2274D] [G] c:\windows\system32\sqlsrv32.dll [PX5: 4BD90D8D00111E27C02606B5B53E9600F5654C9A] [G] c:\windows\system32\telephon.cpl [PX5: BE2A6EAD00D280216E1A008543C54B00B292C8AC] [G] c:\windows\system32\taskmgr.exe [PX5: 3D6146FB0076F5DF12D80225C1918B00B7DF0E93] [G] c:\windows\system32\tapi.dll [PX5: EE5CF04A00F6C1534B5500976A056A00B9458478] [G] c:\windows\system32\tcpsvcs.exe [PX5: 4B5FB411004C70D04C7F00C5C1C4F700A832296C] [G] c:\windows\system32\ssmyst.scr [PX5: 7E36CC9900B6577E4AE6006DFF0912008B73B9CD] [G] c:\windows\system32\systeminfo.exe [PX5: 8CBFD42100AA9D490A82011CA91A10007A10AE9A] [G] c:\windows\system32\spupdsvc.exe [PX5: C733466D2007D09D66FE0068A5948100497CEB11] [G] c:\windows\system32\ssl3.dll [PX5: 83FDD8B900508699A0BD01AE4CAFF500215A29B8] [G] c:\windows\system32\srrstr.dll [PX5: 63416417005575B2A62B035ACBAF2200F57E72D9] [G] c:\windows\system32\stringres110_nl.dll [PX5: 4D2B23C400BFB97DE031061ED87F6B005CD2E8A3] [G] c:\windows\system32\tcpmib.dll [PX5: 468EC61D0017D2653A8300029DB1D8004004A0C9] [G] c:\windows\system32\taskkill.exe [PX5: 310C9F5400932C7A1A7B01A9DB49F80064BF1D14] [G] c:\windows\system32\subst.exe [PX5: 7676899E005AD7C924CD0036E3ACC60078DBA75D] [G] c:\windows\system32\sspipes.scr [PX5: 04AA3547001CBEC950F1096F84303700E76D7C78] [G] c:\windows\system32\teedb50.bpl [PX5: 2084E2B3001496CFA4FE006A569E5600028D5E86] [G] c:\windows\system32\ssflwbox.scr [PX5: FA4CE36A00A78759000E067DB311C600C232713E] [G] c:\windows\system32\ss3dfo.scr [PX5: 0199132900F29C21C0F10AD67BD6C4003043400E] [G] c:\windows\system32\spnpinst.exe [PX5: 8C498CB9005E01C02EB500705499A5003C0AFEC9] [G] c:\windows\system32\stringres110_ko.dll [PX5: 1776CC8600F0303E000504742596070066EC93CE] [G] c:\windows\system32\stringres110_it.dll [PX5: 359C9D1E0051EC35E0FA068B8B2FFD0064AB0943] [G] c:\windows\system32\tasklist.exe [PX5: E5BEEFB20035280B1A0801BCA04B46000A953C55] [G] c:\windows\system32\stringres110_es.dll [PX5: 2B04DFD500443225206E0743EBE10B00A25EC2B0] [G] c:\windows\system32\stringres110_de.dll [PX5: FDDAF6210045712630E707702694D600CB5DBE6E] [G] c:\windows\system32\sti_ci.dll [PX5: 0A8BD42000E370D31678026A7D43D6004CC1713A] [G] c:\windows\system32\tcmsetup.exe [PX5: 37D8485F004EF5EC3038005BF620B4002717C0D5] [G] c:\windows\system32\usrcoina.dll [PX5: E20320334301DCB6101D014DD6F2A000091716C3] [G] c:\windows\system32\usrv80a.dll [PX5: 621D1F7639E1D45DC03000D62677A400D14EFE77] [G] c:\windows\system32\ulib.dll [PX5: 2D1FF95200F15AC634DE04A086537F0006C2649D] [G] c:\windows\system32\traffic.dll [PX5: 77B45F9200229DA37A5500BD20E3E3000824B6EB] [G] c:\windows\system32\usrcntra.dll [PX5: 2DA56D183C19767CF02B001560B19400131286EC] [G] c:\windows\system32\ureg.dll [PX5: CFB88B740082D6B546B10099BDAFA700DF170A75] [G] c:\windows\system32\tsappcmp.dll [PX5: 8A17061700427BD7CC2200522D88DE006B0B9A46] [G] c:\windows\system32\unlodctr.exe [PX5: 0876935500A1A879107C0077FDE76000B79BCD14] [G] c:\windows\system32\usrvoica.dll [PX5: A9638F5B3C489819B0F1008F54E03000D5073899] [G] c:\windows\system32\tracert.exe [PX5: 06EB3F53000A8E2230A8005D1AB31300EE9CB003] [G] c:\windows\system32\user.exe [PX5: 4476B60B001C9F47BB0F0064A026B500B1F50A74] [G] c:\windows\system32\umdmxfrm.dll [PX5: B9C306DC002C0A7934FF003509DBCE00648F45B7] [G] c:\windows\system32\usrsvpia.dll [PX5: 58D6737F3BEF427AA0A900C50D866000DC0AC5A2] [G] c:\windows\system32\unicows.dll [PX5: 2D1310C1A0078787BE7B03B16F0C6700F938DC59] [G] c:\windows\system32\uci32103.dll [PX5: E7B1A2400019C8E4C07201F21245B000639CD7AA] [G] c:\windows\system32\tscon.exe [PX5: 7BB0D5E90083DD023AB0001694D78200DEB92DD5] [G] c:\windows\system32\tsddd.dll [PX5: 39DA14F488F5DC5D2F5A00435E3DFA008F15B37F] [G] c:\windows\system32\tskill.exe [PX5: 595F6AFA0012BD82400600033E170200AA9D0B6E] [G] c:\windows\system32\tftp.exe [PX5: FAFBE4EA00B0226D42F100D59B3E04004EE21468] [G] c:\windows\system32\twnlib4.dll [PX5: 7392579D0024802190F20546875340009FD938E2] [G] c:\windows\system32\tourstart.exe [PX5: 3F538D0400B36A754C1C055787256F00EE6418D7] [G] c:\windows\system32\tsdiscon.exe [PX5: 8F642FE5005C98113A2300F1A0A5510096C6DC9C] [G] c:\windows\system32\usrmlnka.exe [PX5: 875743FC4374140730F5013A65F26900A14E1E29] [G] c:\windows\system32\usbui.dll [PX5: 13E533C000A9DCF62266011F6A7AC4004AF0A08C] [G] c:\windows\system32\usrvpa.dll [PX5: 0BC156FA3BD9970CC0DA000727D1330017DEC02D] [G] c:\windows\system32\usrv42a.dll [PX5: 81602A0A399D66C090A601272C57AB004852BC28] [G] c:\windows\system32\timedate.cpl [PX5: 6E2039AE00DA248C704301B66C0E500044B75199] [G] c:\windows\system32\usrsdpia.dll [PX5: 62216AA43BA52694C067006BF09CB40045DFEB94] [G] c:\windows\system32\tlntadmn.exe [PX5: 75385CE000B929E3F085000055CC93001EA8584A] [G] c:\windows\system32\typeperf.exe [PX5: B925FF21004686818EF2006CF0460F00CC5E81E0] [G] c:\windows\system32\tscupgrd.exe [PX5: 96D9AEE500AC457BAE7E0047A234C3004BB52066] [G] c:\windows\system32\umloader.dll [PX5: 95CC160FF08308B049B001EB7CB33700CB4D90EB] [G] c:\windows\system32\tracert6.exe [PX5: 2EB0615B0004AA7D7C39000D5F25EB00C8DE30D7] [G] c:\windows\system32\unrar.dll [PX5: 2478C99100133F3A82200284AC266F00A4CE4E84] [G] c:\windows\system32\tracerpt.exe [PX5: 93C24DD5000998BEF6E203E9A7D45C003B02F842] [G] c:\windows\system32\tsshutdn.exe [PX5: C3E7B1BF003284B34299009B57578800B40406CF] [G] c:\windows\system32\usrlbva.dll [PX5: 4E93139239101C56D0AD0029EE2C4A00F21AB98E] [G] c:\windows\system32\usrfaxa.dll [PX5: EFE5C42339D3A90D50830102D63F3A00A314E444] [G] c:\windows\system32\tsd32.dll [PX5: 99E0A00600B055B33C8D008753AD1300F385A522] [G] c:\windows\system32\tzchange.exe [PX5: 58E14E30001B017EEC3200B5A1698600197A7657] [G] c:\windows\system32\untfs.dll [PX5: 6B4F073300EB5DEAD48804718FCD5B00D5F97F81] [G] c:\windows\system32\usrdtea.dll [PX5: FFE30B5D39DCDC6AF0A904C71CDDBD00E53F4AF6] [G] c:\windows\system32\tree.com [PX5: 59B22DBD00B3F5F62C6000C07C036500F1D7B3A2] [G] c:\windows\system32\tlntsess.exe [PX5: 2C8C5DBF00F1409F3289010956960900CE8B5018] [G] c:\windows\system32\usrrtosa.dll [PX5: 849600B13B64898E307901EC9F46890011E21136] [G] c:\windows\system32\usrshuta.exe [PX5: BF8E9F49445F76501093018A4F91D70037D3568C] [G] c:\windows\system32\usrprbda.exe [PX5: 2DE730A944775F19F07C0038288B24002BC0F600] [G] c:\windows\system32\ufat.dll [PX5: BD1D6F3300E96C95421501CF193F510092FB9746] [G] c:\windows\system32\udhisapi.dll [PX5: CD94CBB500948DE764E000CDA4A3BC00E154F0B4] [G] c:\windows\system32\usrdpa.dll [PX5: 7917C1414221400B308B0191330316002AF29C16] [G] c:\windows\system32\umandlg.dll [PX5: 0660852C000A05738CA7002CB3D5EB00F4314FF0] [G] c:\windows\system32\twnlib20.dll [PX5: 903886C30070C6C9A09C0142431EA6000FD5F206] [G] c:\windows\system32\wmploc.dll [PX5: 68DE29AA00DA345E9CC87D913B696700587898B5] [G] c:\windows\system32\wmsdmoe2.dll [PX5: C6D9AABE0042B9E710DB00200DAF4A00B79BCD14] [G] c:\windows\system32\wmvadve.dll [PX5: D650C45700BCB4AD109500200DAF4A00B79BCD14] [G] c:\windows\system32\wmvdmod.dll [PX5: E1833154005058C610D800200DAF4A00B79BCD14] [G] c:\windows\system32\wmvdmoe2.dll [PX5: 0FDA19B100FB560710EB00200DAF4A00B79BCD14] [G] c:\windows\system32\vb5db.dll [PX5: 32D5A3CC101F07995DD801EBCA1270009B8898E2] [G] c:\windows\system32\vcldbx50.bpl [PX5: 4AB8E34400DAEBF44EDE01DB39772E0065D69847] [G] c:\windows\system32\wdfapi.dll [PX5: 05CEE91E00FDFCEB108200200DAF4A00B79BCD14] [G] c:\windows\system32\webhits.dll [PX5: 1AF0557100F681239EB2006A868D0A000E3E738D] [G] c:\windows\system32\vbame.dll [PX5: C3139D24009F93FDA0C3002FE1BBEF0085D62681] [G] c:\windows\system32\wgatray.exe [PX5: FA038D4F803D513A23930548E7AE3F00FBCA88D3] [G] c:\windows\system32\winmsd.exe [PX5: CE18430F0007524F2EEA003A8F5AE30015C57235] [G] c:\windows\system32\vdmredir.dll [PX5: 2B1AA2A5001633EECA3000B6D8BAA000B6A22E93] [G] c:\windows\system32\wmerrenu.dll [PX5: 39DF17C8005D4210C824003C43608A004AABAEC2] [G] c:\windows\system32\utilman.exe [PX5: B5D2624E00D79760C45C008D0AD2F0001A881FF9] [G] c:\windows\system32\ven2232.olb [PX5: 08611AC3007E944C92C7003997635D0062FCF5F5] [G] c:\windows\system32\wmiprop.dll [PX5: EAEC9A160070AADB4A010089BAE52B005E50566D] [G] c:\windows\system32\wgalogon.dll [PX5: 89BDBABD808784849D2F0363E75E1B007BD74EA0] [G] c:\windows\system32\vbrun300.dll [PX5: D379B7D150709A6F1443066B3BF3FD00A1836DEB] [G] c:\windows\system32\winnls.dll [PX5: 8500E4F2005A058614340026359C42006D64FDE6] [G] c:\windows\system32\w32topl.dll [PX5: FFD5867A00B232CD563F004C44DF0A000412C0B9] [G] c:\windows\system32\wbdbv32i.dll [PX5: 1DC55D466BEFBE4628BD04BEE3BFB400B40EC29B] [G] c:\windows\system32\wmerror.dll [PX5: D922CFD70049BC3678110322E9FC8A0033912EF4] [G] c:\windows\system32\vclx50.bpl [PX5: 7E6FA4D5005E27C9CC40036CD50F4C005F33D863] [G] c:\windows\system32\wmdrmnet.dll [PX5: 3F646A6E00A0000152CB05B1E3881500FD9C01E6] [G] c:\windows\system32\vbar332.dll [PX5: A420808B10E02E4FA1F80573F5E152004904ED77] [G] c:\windows\system32\vbajet32.dll [PX5: 05C0D1BC1D0A9A3D782600663D273500CB548C55] [G] c:\windows\system32\winmine.exe [PX5: 52F0627C0031322CD40D0193E78B8A0077E0877B] [G] c:\windows\system32\winhlp32.exe [PX5: 821EFD6F00AC1A0B200400DF4BE16100E572C6FD] [G] c:\windows\system32\verifier.dll [PX5: 8AA04DEE00CE0CE63476003992F84C000AC23E6C] [G] c:\windows\system32\vcldb50.bpl [PX5: 0006A1DF007F2278840508D991BD7600EF498903] [G] c:\windows\system32\vcl50.bpl [PX5: 67A76DB10089CCD1E01C1E5B0C4BA800747EC61B] [G] c:\windows\system32\winfax.dll [PX5: 423F955E0009050E24C200B8704D5100882B6B31] [G] c:\windows\system32\vga64k.dll [PX5: 738820B600F6744147D200A6A0EEC0004D9F4C4D] [G] c:\windows\system32\wmidx.dll [PX5: 2C06E4C200D4900C66AC022441DEFB00D25485B6] [G] c:\windows\system32\vdrmux.dll [PX5: D1824DEA007A39F64008011B052316009D90C295] [G] c:\windows\system32\vclib50.bpl [PX5: FE34A6F000FFFF39B6FC057DE742450094308EA3] [G] c:\windows\system32\vjoy.dll [PX5: AF060ADF00519FF31254009C87EF4C006B18D642] [G] c:\windows\system32\vga.dll [PX5: EA5C65F680EA04662480004AB7EE0A00F84220A7] [G] c:\windows\system32\wmdrmdev.dll [PX5: 01362FA900FFB7B88C7606D8F7F73A00D903AF27] [G] c:\windows\system32\vclsmp50.bpl [PX5: 94A54B4400A7E358026501FDC0CFCA000BB894E7] [G] c:\windows\system32\vbaen32.olb [PX5: 47D6AFA410D94B1F61B70058AC7408001D8DB1FE] [G] c:\windows\system32\utildll.dll [PX5: 2A725311003C1D68641F00A68CE468009E6B2478] [G] c:\windows\system32\winbrand.dll [PX5: 2EDC733700491C45504D0E2CABE54300CA721DF2] [G] c:\windows\system32\watchdog.sys [PX5: A5490EC7005C2AF84570001E79455E0011553B7B] [G] c:\windows\system32\winstrm.dll [PX5: 3FF98B1B00B978214A9D0013A4711B0011456875] [G] c:\windows\system32\vclie50.bpl [PX5: C893923C00C79BFCB05003C557CDFD0036CBF756] [G] c:\windows\system32\vdmdbg.dll [PX5: 7D66A14700C2464266AA00F559D3E2005E7895B0] [G] c:\windows\system32\vcljpg50.bpl [PX5: 351525700087E0F48ECA01A9E25F1E006A3B72EB] [G] c:\windows\system32\verclsid.exe [PX5: 76A297D100FDFCD570A60062B051DA0064AD6F0D] [G] c:\windows\system32\vwipxspx.dll [PX5: E205E5AD003C7E884CB300CD3E514B00ED80CB80] [G] c:\windows\system32\vssadmin.exe [PX5: 0EA0EA6200A711D18448004A4C3BDF00DE09BF5F] [G] c:\windows\system32\vfpodbc.dll [PX5: 8D89E13037A1B4C450B1002DDDE82A0010EA4823] [G] c:\windows\system32\win.com [PX5: 0539DC1200A1B00F481B003D92602E005BA68229] [G] c:\windows\system32\wextract.exe [PX5: 718BB364007F1CDA0086011497B9C20087B29261] [G] c:\windows\system32\wmp.ocx [PX5: 0C8292B50060EBC950C2002DDDE82A00810D6C19] [G] c:\windows\system32\wifeman.dll [PX5: 53606854009CB9F224E800CD95A0FD00F0CD8E74] [G] c:\windows\system32\vxblock.dll [PX5: 66B5C722F0CFB465590401080B9C6D00E774084E] [G] c:\windows\system32\winshfhc.dll [PX5: 658290F100A500774424007A9EEA21004E7FBC51] [G] c:\windows\system32\verifier.exe [PX5: 4FD372F1004E293080700172438703000E3557DF] [G] c:\windows\system32\ver.dll [PX5: A50093D33098FFF8230800F66811DA0063D52A78] [G] c:\windows\system32\winntbbu.dll [PX5: EE369C2600829571ACCB0B62B4A4690038D0D5F2] [G] c:\windows\system32\winchat.exe [PX5: ED169CB7008824368A8C00C4E05C6200C31BC87A] [G] c:\windows\system32\wbdbt32i.dll [PX5: EFD5D59800EE9EA65617070F2628C700C0435CD4] [G] c:\windows\system32\wiadss.dll [PX5: D7F60A7C00F0C923E67C01851FE879008F14CF79] [G] c:\windows\system32\vbaend32.olb [PX5: BA9E95AE10B3A7DF619D00B122D6BB00640746B3] [G] c:\windows\system32\winver.exe [PX5: 3AF2AE040013E70016A50092DED33500B14B17BA] [G] c:\windows\system32\wbhelp2.dll [PX5: 64012926003D6ED3C6F00002E2ECD2001CCCF337] [G] c:\windows\system32\vga256.dll [PX5: 458E4E65003489DFC95100D2E36BD500405F519B] [G] c:\windows\system32\w32tm.exe [PX5: 7F7A20FE00672B9FC2CC001305D6EA00F60B7410] [G] c:\windows\system32\vclbde50.bpl [PX5: 73DCF19B000E6AC39490046F19637200E8C469A3] [G] c:\windows\system32\vcdex.dll [PX5: 548682A200A896FB1E4E003B3C2E0700EB7C21A1] [G] c:\windows\system32\win32k.sys [PX5: AF40E9838058D78E21CB1CA5532593007CDDD71E] [G] c:\windows\system32\uwdf.exe [PX5: DDAC8269006ACE8B2242003B3C2E0700014048E1] [G] c:\windows\system32\wdfmgr.exe [PX5: DDAC8269006ACE8B2242003B3C2E0700014048E1] [G] c:\windows\system32\vwipxspx.exe [PX5: 0D75044F6970A016044800B2638CDE00B79BCD14] [G] c:\documents and settings\hp_administrator\local settings\temp\mfc80u.dll [PX5: 4A2EABCA00EEEF38AEDF10453CA10400EACE2231] [G] c:\documents and settings\hp_administrator\local settings\temp\msvcp80.dll [PX5: 1CD79A6B00ACCCBD60660869F17C0900CE4B6B7D] [G] c:\documents and settings\hp_administrator\local settings\temp\msvcr80.dll [PX5: 9A45456900EE9D7990C909755A3A5C00A6DAF154] [G] c:\documents and settings\hp_administrator\local settings\temp\nlsdl.dll [PX5: A241FEE800B5407C605300CCC4620600715D2FFE] [G] c:\documents and settings\hp_administrator\local settings\temp\pxinstall531.exe [PX5: 3FBBB7F23829381956FE3FD6DA407C00AB2D9B1E] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\googleupdate.exe [PX5: 65EBCD15F0656C910766029245C27200AA9C273C] [G] c:\documents and settings\hp_administrator\local settings\temp\n1setup.exe [PX5: 35D0B9D3989CB46EABF90AA5EE8240004428805D] [G] c:\windows\system32\wmpcore.dll [PX5: 0802AE5100F9AEC950C9002DDDE82A007A23B80C] [G] c:\documents and settings\hp_administrator\local settings\temp\ttconvert.exe [PX5: 2785D45600AFEF2FEC2F6265268EF400519DF439] [G] c:\windows\system32\xpsp3res.dll [PX5: D85534C8002DAA17CAE003D3F05578008B8C0C4D] [G] c:\windows\system32\write.exe [PX5: 2DB7DA1E00DC91B9161A008D3B23F700419F89B4] [G] c:\documents and settings\hp_administrator\local settings\temp\tismsi.dll.mui [PX5: 54CA4AAD00E0365AA078035763BB0E002E821F4D] [G] c:\documents and settings\hp_administrator\local settings\temp\mfcm80.dll [PX5: 175A10A600E92FA9106E01CF7DBCC600F54B73F8] [G] c:\windows\system32\wzcdlg.dll [PX5: 34B10C3400AB9795DAAF05746B4D0600E0A0E2E6] [G] c:\windows\system32\wshrm.dll [PX5: D9049AFF00E6C48B2E2A003834EFE400D3CA2206] [G] c:\windows\system32\wmpmde.dll [PX5: 0B38295300E36CED5C81091122D6D700A73216A3] [G] c:\documents and settings\hp_administrator\local settings\temp\symlcsvc.exe [PX5: 46107F1888DE16C1EC04117D8C8A6F0011415408] [G] c:\windows\system32\wmpcd.dll [PX5: 7CA5733B006F856E503C002DDDE82A0061BAAF47] [G] c:\windows\system32\xcopy.exe [PX5: 55016A4B006EDDFE787D00417274C100EF72C227] [G] c:\windows\system32\wuweb.dll [PX5: 2856E7F458DF1A97199D03C7049719000A965E88] [G] c:\windows\system32\wpdshserviceobj.dll [PX5: 7176B495005E12B50A520234E7E1AF00FB8DD268] [G] c:\windows\system32\wudfcoinstaller.dll [PX5: 1B25AB2370F7B28174BA017DF2B1D70092011056] [G] c:\windows\system32\wship6.dll [PX5: EE696C4300D1E2FF38F10019033167007A3D644E] [G] c:\windows\system32\wpnpinst.exe [PX5: 118614370053811A7E9000002905E700FDE1F76A] [G] c:\documents and settings\hp_administrator\local settings\temp\tmdbg32.dll [PX5: 40449D94004D723AEDC7017249AEC600082A9ADF] [G] c:\windows\system32\wpdtrace.dll [PX5: CAB1D1CE00D5375D2A690024E5636F00AA460180] [G] c:\program files\flock\gm.exe [PX5: 7D4E6690386DDA8B4BAF2BA027201300418508B7] [G] c:\windows\system32\wpabaln.exe [PX5: BB66978600C2C1B17E9C0080CCAB0A009D8DA658] [G] c:\windows\system32\wshbth.dll [PX5: DB83E0EF00406789A62E013B9F5FFA009C683046] [G] c:\windows\system32\wowfaxui.dll [PX5: 3F2767AC0073134B360B00847CF74200862E5792] [G] c:\windows\system32\wuaucpl.cpl.mui [PX5: BE2B42EB58F0D1FC65D500F3F222F300A624A989] [G] c:\windows\system32\wuauclt.exe [PX5: 8FEE32AE58BBA23ACF080068F5F6DC003A478EA6] [GP] c:\documents and settings\hp_administrator\desktop\97a5278b67d741f883c5.exe [PX5: 630ACB8B38FFACDD38AF0D2FE0D48F0017D52872] [G] c:\windows\system32\wucltui.dll.mui [PX5: E30354A25835CEC8857200BBF163D5001F2E6B77] [G] c:\windows\system32\wsnmp32.dll [PX5: 61511CFA003BA302A6A800BC33D8EF005CC87C79] [G] c:\windows\system32\wowfax.dll [PX5: 85B4D4C0806C5BDD0CF1005A67425900B79BCD14] [G] c:\windows\system32\wnaspint.dll [PX5: 0F297FAD00BBA0D3E08F0035EF28C8007CE4C1F4] [G] c:\documents and settings\hp_administrator\local settings\temp\msi20.tmp [PX5: 49DEFEF4D0BDFEBEE49011050EBFD600FAF2F040] [G] c:\documents and settings\hp_administrator\local settings\temp\libexpat.dll [PX5: 8533DC62C04E0FA76D65024410077F00391EFB9B] [G] c:\documents and settings\hp_administrator\local settings\temp\mfc80.dll [PX5: C2148C6300282B34D02310815560F00037CA9FFC] [G] c:\windows\system32\wpd_ci.dll [PX5: B1EBE84D002038989C57092A8F715C0099B2308A] [GP] c:\windows\system32\x.264.exe [PX5: 7FC4D2A90019C2A5AA78034BE3D80600A72C547D] [G] c:\documents and settings\hp_administrator\local settings\temp\_iu14d2n.tmp [PX5: 5489F0725AAB8782692E0A8C36F4280001A2B960] [G] c:\windows\system32\wudfhost.exe [PX5: B93447A60093127F3C5F021B9EDF6500F526AF09] [G] c:\windows\system32\wuapi.dll.mui [PX5: 15B24FB75881688B65B8003BBBFEF7008A2D6E08] [G] c:\windows\system32\wscntfy.exe [PX5: BAF451B700E6E09B3694008A88863A0038245C86] [G] c:\windows\system32\xpob2res.dll [PX5: 5CE139150073C96CB2910676F4D0660076E54EE0] [G] c:\windows\system32\xactsrv.dll [PX5: 119C67C40014B5056612011E1030DB00F9AF5C1F] [S] c:\windows\system32\wuaueng1.dll [PX5: 64B7AC0D18F89EE1F75002860C4AE4006040E312] [G] c:\windows\system32\xmllite.dll [PX5: EC0D44A9006BAFEDDC1F01F8C226B700BDB8EEA0] [G] c:\documents and settings\hp_administrator\local settings\temp\mfcm80u.dll [PX5: 53A980DE002B6D45E211000EF9432D00CC79A121] [GP] c:\documents and settings\hp_administrator\local settings\temp\cygwin1.dll [PX5: 0CA075D70080CFCD68DE09978CA31E00D18EDAD0] [G] c:\windows\system32\wmpui.dll [PX5: 1BAC8AF90055E303501F002DDDE82A001E11C499] [G] c:\windows\system32\xolehlp.dll [PX5: 3F668EAA00FD5BF82E56007B76DA680082DA962E] [G] c:\windows\system32\xpsp1res.dll [PX5: F4AB64CE00F6965FDCBE023B51AB4300E9865669] [G] c:\windows\system32\wshatm.dll [PX5: AFDE9EF900E36AAE247C001B0A9A62003029CC00] [G] c:\windows\system32\wudfx.dll [PX5: 2DDF47BA00C1087ED4EC047679EE51007EFC9551] [G] c:\windows\system32\wowexec.exe [PX5: CF8B480C80CC42FA2892000ABCF146006CB87E25] [G] c:\windows\system32\wuaueng.dll.mui [PX5: 0D2E73A658AF67784F4800C6B823B10039A3C882] [G] c:\windows\system32\wpdmtpdr.dll [PX5: 9A2325FB00FB4E1B10D9058873B92900AD49CA36] [G] c:\documents and settings\hp_administrator\local settings\temp\msvcm80.dll [PX5: C7DFDAD600D49B7D50CA07921EE05A008C11099E] [G] c:\windows\system32\wpgldfsh.scr [PX5: 5324849F0039BEC816BE43C58E2F2900B67BBDF5] [S] c:\windows\system32\wuauclt1.exe [PX5: 2F540777182FDFCDA1CF02FC64ABB800D13DA740] [G] c:\windows\system32\wow32.dll [PX5: 93A52C7F006566D208D804ED362A7A00382B7BC2] [G] c:\windows\system32\wshisn.dll [PX5: DC352A250054CFB52E56005B77A90C00F3165B81] [G] c:\windows\system32\xvidcore.dll [PX5: 28045548536BD0C385930B8F2F751100FBF01271] [G] c:\windows\system32\wpdshextres.dll [PX5: 4979753900EB894A961300B5FE44670065BA1B44] [G] c:\windows\system32\wudfplatform.dll [PX5: 5C735F2900597AFA86ED021F9440FD00675FCD07] [G] c:\windows\system32\wmsdmod.dll [PX5: 6C11BA3D00E4BE77107C00200DAF4A00B79BCD14] [G] c:\windows\system32\ysys.dll [PX5: 1DDBB9CA00B629BB3E8A09FFE6EC92005F96FB78] [S] c:\windows\system32\wupdmgr.exe [PX5: 6549B5C90034D0917E2900E678870400644B3FFC] [GP] c:\documents and settings\hp_administrator\local settings\temp\cygz.dll [PX5: A67EF2160007D162B2BF00D2A5CEE000D2CF1109] [G] c:\windows\system32\wscui.cpl [PX5: 6081DD9E00B2F922445D02449757AC00FBAD1D77] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_es.dll [PX5: 14FE6CA4F0D4A9326F5F001A4E5BEB008AA4D4D3] [G] c:\windows\assembly\gac\hpqgldlg\3.0.0.0__a53cf5803f4c3827\hpqgldlg.dll [PX5: 73E6F4740026D731F0F801BDEB671F00666A1644] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_fi.dll [PX5: 7DFF6DFFF0517CCF67E800E87B06680054385109] [G] c:\program files\internet explorer\custsat.dll [PX5: 4BE7EAAB0029E5D784000049585386007432663A] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_el.dll [PX5: 2011241FF005CFDE6F910002F0A8A500749A2F0B] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_et.dll [PX5: C3485427F0DF042767180032F0940300091944B9] [G] c:\windows\system32\macromed\flash\npswf32.dll [PX5: A03046F5A0A4BFF8616B3824CA4B37008262FC22] [G] c:\program files\google\google updater\2.4.1368.5602\cires.dll [PX5: F78E9D3E00DB64F470D301EE6127C0007FDE649E] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_id.dll [PX5: E09B386CF065C5C86528005416A99500A004A86E] [GP] c:\program files\hijackthis\hijackthis.exe [PX5: 4023E87700E448C5549C03184818E700453AE43A] [G] c:\documents and settings\hp_administrator\local settings\application data\google\chrome\application\chrome.exe [PX5: 010FB20EF04E13A6B19D0B21EC576400F75274CF] [G] c:\windows\assembly\gac\hpqccrsc\3.0.0.0__a53cf5803f4c3827\hpqccrsc.dll [PX5: 595B5E890096074000650357CE072F00CEFB14A4] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_sv.dll [PX5: 73C60204F0756D7867D1008873B950001818A8EB] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_en-gb.dll [PX5: 8FC374F6F0C7E67B639F00D78ECE9800FA7EE033] [G] c:\windows\assembly\gac\hpqglutl.resources\3.0.0.0_en_a53cf5803f4c3827\hpqglutl.resources.dll [PX5: 9C3DF8EB00B19B71806C00B28F1381007042606D] [G] c:\windows\assembly\gac\hpqfmrsc.resources\3.0.0.0_en_a53cf5803f4c3827\hpqfmrsc.resources.dll [PX5: DCCAACA00015C9F81A0D00CA4A0FE800F94EDC6D] [G] c:\windows\assembly\gac\hpqasset\3.0.0.0__a53cf5803f4c3827\hpqasset.dll [PX5: 06EC6F0800C8E5F7604A0011D6D7E40064F89D30] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_es-419.dll [PX5: 810CE818F0B52C3769AF00DCCF5780004E785A4A] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_uk.dll [PX5: 81BF965EF054A9BA67D8002B5B0C3C000E695AB1] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_de.dll [PX5: A48BFB57F01364BE6DC900619020FD005B7632A7] [G] c:\windows\system32\1033\dwintl.dll [PX5: 76FE7E4850271DD3D92600FA7CAFDE0069E2F07C] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_bg.dll [PX5: 5AE5053FF0B2D82A6D4500E408D58D00DDD2BE76] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdatebho.dll [PX5: 539A1DE2F0708D261766028B3DBC63003C48D279] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_no.dll [PX5: D7060D3BF0439F6269C200E619FED5006B1EB724] [G] c:\windows\assembly\gac\hpqtray\3.0.0.0__a53cf5803f4c3827\hpqtray.dll [PX5: C224DF17001F0CDE809E0311974BD200C383A991] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_ja.dll [PX5: 8BBB90CCF05635A2594C0081711904002DD951FA] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_hr.dll [PX5: 921AB7A2F0D7713C6951006543A55300C260A73B] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_ar.dll [PX5: 8AEC8F0AF073EA7561950025B5CAE20042183B75] [G] c:\program files\adobe\reader 8.0\reader\agm.dll [PX5: 364733F2000EC435DCDD4ACC19E1010009577489] [G] c:\windows\assembly\gac\hpqfmrsc\3.0.0.0__a53cf5803f4c3827\hpqfmrsc.dll [PX5: EF6631170095DCE970E400B19AD82A00B8E44532] [G] c:\program files\adobe\reader 8.0\reader\acrord32.dll [PX5: 785782CE7056EF18A542C91CBE5FF100D22D18FA] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_en.dll [PX5: 08883733F0079C07634000347FEF3F00B7CFC620] [G] c:\windows\assembly\gac\hpqalb\3.0.0.0__a53cf5803f4c3827\hpqalb.dll [PX5: D07BB80F0055B6A2702600F158A5B000E18AA559] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_sl.dll [PX5: F3B89D98F014046669E100E5E7F658009CF956FD] [G] c:\windows\assembly\gac\hpqimgrc\3.0.0.0__a53cf5803f4c3827\hpqimgrc.dll [PX5: 0921115E001ACA5E906202F034E0FC00AB8D2181] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_sk.dll [PX5: 8E7095E2F0CE5EA769100099AE13D800D4A58FEF] [G] c:\program files\adobe\reader 8.0\reader\bib.dll [PX5: 99CD440900A7FF43825401BAA89238007CB734B3] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_zh-tw.dll [PX5: 1768F824F069FD18512700ED30C80900B42A8486] [G] c:\windows\assembly\gac\hpqiface\3.0.0.0__a53cf5803f4c3827\hpqiface.dll [PX5: 8E2F0BCB003A0DF2402C005B28490A0054AA0F14] [G] c:\program files\adobe\reader 8.0\reader\cooltype.dll [PX5: 1CEE2522004E51C4D05622BDB7E14A00FF631880] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_tr.dll [PX5: 51D91B9EF0B0C47C694B002986421600310FC030] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_lv.dll [PX5: 9F6BA60DF02D39FE69A9006B5CD501007A3557A4] [GP] c:\program files\trend micro\hijackthis\hijackthis.exe [PX5: 3DF7D3A40061C4A70C8E069553313F002B40F674] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_nl.dll [PX5: E528BB44F0B559286BF600973A0B5000845D460C] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_vi.dll [PX5: D27384D4F053240565DD000AE9E2170006711F1C] [GP] c:\program files\erunt\erunt.exe [PX5: FE61AD1600E06F3E686D0279B8F7850086E0CE56] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_sr.dll [PX5: 985FBD3DF0F2AABC698C001DBC651A009FD29B7A] [G] c:\windows\assembly\gac\hpqcmctl.resources\3.0.0.0_en_a53cf5803f4c3827\hpqcmctl.resources.dll [PX5: C38000340092D84080B601C8337957007027FEFF] [G] c:\documents and settings\hp_administrator\local settings\application data\google\google talk plugin\googletalkplugin.exe [PX5: 3722DFB3F0F7920E458D0112E98F16001EA2A14F] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_ca.dll [PX5: 388DB34DF0A7325F6BC3001DECE7E7003F27305A] [G] c:\windows\assembly\gac\hpqutils\3.0.0.0__a53cf5803f4c3827\hpqutils.dll [PX5: FE91FA4A00FE05448099027A55A4E0009686B66C] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_it.dll [PX5: 52C1B1B0F07076C96B5E00E9C0FEB500DFD1CA98] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_hi.dll [PX5: F5E56199F0E76C1B671C000BB5055900AB058747] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_pt-pt.dll [PX5: 4E73BAF1F0106B08693300E9910BBF0053BFF09F] [G] c:\program files\google\google updater\googleupdater.exe [PX5: FA436D75F0B1372875CF02BD3BDD0E0002A25825] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_da.dll [PX5: 38B9FD7DF089642B67C90080DA383500E407A307] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_cs.dll [PX5: 224F03D9F02933DE6969001E294C67009AB8BA02] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_ro.dll [PX5: 430997FFF06F5F766B7C0076B788C2003791390F] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_pt-br.dll [PX5: 4440FCD1F0E25BD2691100B7C88486000576FB76] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_pl.dll [PX5: F0C5ADC6F0A9E7CD6B7A009666EC1E007ED349FC] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_fr.dll [PX5: B5AC7629F0E6E5B86DC3002E63F3B200E7106CCC] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_zh-cn.dll [PX5: F21DD7ACF0E56BBF516400CD2EABF0001A4783EA] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_lt.dll [PX5: 50B35DCEF01EBE1567420081B803C9007CE9387D] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_fil.dll [PX5: 44E09653F080E0786B5E00CC686A00000A49FEAB] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_th.dll [PX5: BB559542F03D111163410000DC500300F3E81F44] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_iw.dll [PX5: 66EF7C44F04A95815DB30088DA7C4500BA667EB5] [G] c:\windows\assembly\gac\hpqglutl\3.0.0.0__a53cf5803f4c3827\hpqglutl.dll [PX5: E4D1709D00F7E9A400EF01CBF0C40600BEF9C9AC] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_ru.dll [PX5: 2C541E2AF010F297650F006FA6034800FE16A6AB] [G] c:\windows\assembly\gac\hpqcmctl\3.0.0.0__a53cf5803f4c3827\hpqcmctl.dll [PX5: 7D5FA30000848E85409D076E27E8AA00EC1971C6] [G] c:\windows\assembly\gac\hpqccrsc.resources\3.0.0.0_en_a53cf5803f4c3827\hpqccrsc.resources.dll [PX5: CDB602C1006C1AC3D0B202C5C7243F00F224E54D] [G] c:\program files\real\realplayer\realplay.exe [PX5: 0C1E369E20398A13461A03766D1003002BAE9FD6] [G] c:\windows\assembly\gac\hpqgldlg.resources\3.0.0.0_en_a53cf5803f4c3827\hpqgldlg.resources.dll [PX5: 4EC4CD3700139365F0EA00F77FDDCE005D091A88] [G] c:\program files\adobe\reader 8.0\reader\ace.dll [PX5: 8B75E6C600F458FD4CD80AD29A308A003E433A20] [G] c:\windows\microsoft.net\framework\v2.0.50727\fusion.dll [PX5: 8784E1E200EB3F242414004AA2356000095FA2A7] [G] c:\windows\microsoft.net\framework\v2.0.50727\mscorwks.dll [PX5: DFB285E200B23539B00B5531E4979700FF745D7A] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_hu.dll [PX5: DA3A524CF05A797D6B9000093337A6008FE1EBA6] [G] c:\documents and settings\hp_administrator\local settings\application data\google\update\1.2.133.37\goopdateres_ko.dll [PX5: 10A0D622F0BC9CDF57D80072787C1100DDC2BB55] [G] c:\program files\k-lite codec pack\media player classic\mplayerc.exe [PX5: 7CAD91A500BC64AE400642F82D60B300BAD85034] [G] c:\windows\microsoft.net\framework\v1.1.4322\msvcr71.dll [PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7] [G] c:\windows\assembly\gac\interop.hpqcldat\1.0.0.0__a53cf5803f4c3827\interop.hpqcldat.dll [PX5: BCE1610B007B462816D4001B3BC90D00D9897737] [G] c:\windows\ehome\bdatunepia.dll [PX5: F05910F5009C19EFCA4201F01A343C006C804DC0] [G] c:\windows\assembly\gac\bdatunepia\6.0.3000.0__31bf3856ad364e35\bdatunepia.dll [PX5: F05910F5009C19EFCA4201F01A343C006C804DC0] [G] c:\windows\assembly\gac\lead.wrapper\13.0.0.89__9cf889f53ea9b907\lead.wrapper.dll [PX5: 7CCD21DA00859E9890A6060BE8C8CC0075F7C183] [G] c:\program files\common files\ahead\audioplugins\aac.dll [PX5: 3B772D1500428E89D0971059F0A9BD00C866845B] [G] c:\windows\assembly\gac\hpqgskin\3.0.0.0__a53cf5803f4c3827\hpqgskin.dll [PX5: 6F2E22A3008F00E320670149510B860023D56129] [G] c:\windows\assembly\gac\interop.hpodeb08\3.0.0.0__a53cf5803f4c3827\interop.hpodeb08.dll [PX5: 62FF402A00B68BF7703F01B00BC70E00EF0EC0FD] [G] c:\windows\assembly\gac\interop.hpodaud\2.0.588.1728__a53cf5803f4c3827\interop.hpodaud.dll [PX5: 5E19ED1F00D62D27326700C58B0F89003E113FEF] [G] c:\program files\common files\ahead\audioplugins\mp3pro.dll [PX5: 25B17D3500A597A440DA08CAF370660063E61C5B] [G] c:\windows\assembly\gac\interop.hpodmpv_md\2.0.588.1728__a53cf5803f4c3827\interop.hpodmpv_md.dll [PX5: F454327C009ACFF932B000A3EDAA7D00FA4906EA] [G] c:\program files\common files\ahead\audioplugins\lame_enc.dll [PX5: F3BA551D000E601D30E80398C6DD3300DC6F1DA0] [GP] c:\program files\norton security scan\scanres.dll [PX5: 083B3BF1700C964CB1430BD3F3F6E50086E8893A] [G] c:\program files\common files\ahead\audioplugins\defconvertor.dll [PX5: 6E32E559007510CEC07600EA1AC001004450935C] [G] c:\program files\common files\ahead\audioplugins\mp3pp.dll [PX5: 6E6EB09800F5DEEF203405C1E58B44006E061CBC] [G] c:\program files\norton security scan\ccl70u.dll [PX5: 00B184996810A9227D3B093B75D56F009DECEE84] [G] c:\windows\assembly\gac\hpqtray.resources\3.0.0.0_en_a53cf5803f4c3827\hpqtray.resources.dll [PX5: 9F4EB5A100162933505101D909496800D75D4D2E] [G] c:\windows\assembly\gac\policy.13.0.lead.drawing.imaging.imageprocessing\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.drawing.imaging.imageprocessing.dll [PX5: 6E396EED001353D00E9000973A186A00B79BCD14] [G] c:\program files\common files\ahead\audioplugins\vqfdeclib.dll [PX5: 4D8059B7005B891D30900A65DB799600507228D1] [G] c:\windows\assembly\gac\interop.hpodtrk\2.0.588.1728__a53cf5803f4c3827\interop.hpodtrk.dll [PX5: 7CEC12B9008EAA3234990087A85AFE008362A61A] [G] c:\windows\assembly\gac\lead.drawing.imaging.codecs\13.0.0.89__9cf889f53ea9b907\lead.drawing.imaging.codecs.dll [PX5: C6CDDC87003F5305405901B657C3A700DD8F3194] [G] c:\windows\assembly\gac\hpqmdmr.resources\3.0.0.0_en_a53cf5803f4c3827\hpqmdmr.resources.dll [PX5: 766591650029571522BE00F53A2DF90077507784] [G] c:\program files\common files\ahead\audioplugins\midi.dll [PX5: C53F01AD00541DEC80360155C6F37E00817BEB3A] [G] c:\windows\microsoft.net\framework\v1.1.4322\mscorsvr.dll [PX5: 664434F4006844BB801926793C1048003A608BF2] [G] c:\program files\common files\ahead\lib\neroipp.dll [PX5: 076610EE00B5AAEAC0F3106CC2FB940057C94379] [G] c:\program files\common files\ahead\audioplugins\vqfenclib.dll [PX5: DE20F48C00CF868EA0A20C276042600068F7DEDE] [GP] c:\program files\norton security scan\skures.dll [PX5: 25FF665A705571E767BB0889C72791007C8B6862] [G] c:\windows\assembly\gac\policy.13.0.lead.wrapper\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.wrapper.dll [PX5: 6648C63B005DAF020CBF0023E7CBC700B79BCD14] [G] c:\windows\assembly\gac\policy.13.0.lead.windows.forms.drawingcontainer\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.windows.forms.drawingcontainer.dll [PX5: 8F17CA7200EC95AF0E54005B273E8B00B79BCD14] [G] c:\program files\ahead\neromix\services\inetcddb.dll [PX5: BF97773A0034F21F30B902BB2F675700634E8D10] [G] c:\program files\norton security scan\ccvrtrst.dll [PX5: 72932766688849A2D72E01583400650070EC3A05] [G] c:\program files\norton security scan\symhtml.dll [PX5: 1E5DE7D658CE6D0B9BEE1C91085CF30017ED9AB8] [G] c:\windows\assembly\gac\policy.13.0.lead.drawing\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.drawing.dll [PX5: 6AD413A500883E4A0CC00085F527CA00B79BCD14] [G] c:\windows\assembly\gac\lead.drawing.imaging.twain\13.0.0.89__9cf889f53ea9b907\lead.drawing.imaging.twain.dll [PX5: 8795150800451F7490AD016E00CB07004F7277A6] [G] c:\windows\microsoft.net\framework\v1.1.4322\fusion.dll [PX5: 2123929800EC6BF8507B04CB6847AA005FCEF14A] [GP] c:\windows\assembly\gac\hpqthumb\3.0.0.0__a53cf5803f4c3827\hpqthumb.dll [PX5: D87DA69300D24A7E302D01CF08D17B0044795E20] [G] c:\windows\winhlp32.exe [PX5: CCE40A2600F27638549204B01E5361003EE19FD4] [G] c:\windows\assembly\gac\hpodmmclib\1.0.0.0__a53cf5803f4c3827\hpodmmclib.dll [PX5: 11676CFC0036480D7070004ACDA7C000A219F4D3] [G] c:\windows\assembly\gac\lead.drawing\13.0.0.89__9cf889f53ea9b907\lead.drawing.dll [PX5: 3E0BB2630056C0B850F601737D180A005CA64A3A] [G] c:\program files\common files\ahead\audioplugins\downloaders.dll [PX5: EDC650DF00FDDD2850D901C4D91562007CDB445E] [G] c:\windows\assembly\gac\interop.hpodmpv\2.0.588.1728__a53cf5803f4c3827\interop.hpodmpv.dll [PX5: 1FA3D023006756091E330064CBAE61000A062745] [G] c:\windows\assembly\gac\interop.hpodio08\3.0.0.0__a53cf5803f4c3827\interop.hpodio08.dll [PX5: 888B638C0024DC72202C035176F0B600FF4406A3] [G] c:\program files\ahead\neromix\neromix.exe [PX5: C5A29BB10067A65130A8112E643909002F8259C7] [G] c:\windows\assembly\gac\lead.windows.forms.drawingcontainer\13.0.0.89__9cf889f53ea9b907\lead.windows.forms.drawingcontainer.dll [PX5: 5341CA1200C326C410A6015FFC407A00108DF39B] [G] c:\windows\assembly\gac\interop.hpodmmc\1.0.0.0__a53cf5803f4c3827\interop.hpodmmc.dll [PX5: 1EB1B91800D0087B3C160083D80FD300E887D9BD] [G] c:\windows\assembly\gac\interop.hpodev08\3.0.0.0__a53cf5803f4c3827\interop.hpodev08.dll [PX5: 3D367A7C00AB013928C200D935DEDC00633C6837] [G] c:\program files\ahead\neromix\msvcp60.dll [PX5: A9396C0F36D6F6A32005061020F81C0065397B42] [G] c:\windows\assembly\gac\policy.13.0.lead.windows.forms.commondialogs\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.windows.forms.commondialogs.dll [PX5: 8D3A7DF600C90E420E750071AB10D800B79BCD14] [G] c:\windows\assembly\gac\interop.hpqvideo\3.0.0.0__a53cf5803f4c3827\interop.hpqvideo.dll [PX5: A81D43DF00FF5B7F1E0000F2B8D36800D04B40C3] [G] c:\windows\assembly\gac\interop.hpodmp\2.0.588.1728__a53cf5803f4c3827\interop.hpodmp.dll [PX5: F95E885C00B790711A0E009945057200D0678AEF] [G] c:\windows\assembly\gac\interop.hpdarc\1.0.0.0__19565c63d39c2842\interop.hpdarc.dll [PX5: 4B69682E001EC3AB90EE00034AAB27000436185F] [G] c:\windows\assembly\gac\interop.hpodae\2.0.588.1728__a53cf5803f4c3827\interop.hpodae.dll [PX5: 0F0822630045149160FC0032F96E3C00CC8228E9] [G] c:\program files\common files\ahead\audioplugins\vqf.dll [PX5: 3E180846009D0FFD30F501A94283EE00EC8973B1] [G] c:\windows\assembly\gac\interop.hpqcxm08\3.0.0.0__a53cf5803f4c3827\interop.hpqcxm08.dll [PX5: B34530B1006AB043901400DE1BFF5C00A738DB1E] [G] c:\windows\assembly\gac\policy.13.0.lead\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.dll [PX5: F821648E007B5EC90C07002B15FD4200B79BCD14] [GP] c:\program files\common files\ahead\audioplugins\msa.dll [PX5: D2519112001311274460035874B93E00D879D8C4] [G] c:\program files\ahead\neromix\mfc42.dll [PX5: F1462400370DFF2E30CD0F8C2ADFA400A34B8197] [G] c:\program files\common files\ahead\audioplugins\aiff.dll [PX5: 5CD70FC8004906C4100401F29193AA00F4144C4D] [G] c:\windows\assembly\gac\hpqthrsc.resources\3.0.0.0_en_a53cf5803f4c3827\hpqthrsc.resources.dll [PX5: 61B29EFD008C5C1B0E66004ABE5D7100B79BCD14] [G] c:\windows\assembly\gac\hpqmdmr\3.0.0.0__a53cf5803f4c3827\hpqmdmr.dll [PX5: C88DD0B4008B2E7E0001014D9805EA008C25E936] [G] c:\windows\assembly\gac\policy.13.0.lead.windows.forms\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.windows.forms.dll [PX5: C4E49A6A0016F4C70C6F00DDDFB64D00B79BCD14] [G] c:\program files\ahead\neromix\services\audiopluginmgr.dll [PX5: 151BF99600C6E6EB60200152DA0DEB003B87B4E3] [GP] c:\windows\assembly\gac\hpqthrsc\3.0.0.0__a53cf5803f4c3827\hpqthrsc.dll [PX5: FF5ABAC5003F142C70CA00CED9749800E4705FF4] [G] c:\windows\assembly\gac\interop.hpodvid\2.0.588.1728__a53cf5803f4c3827\interop.hpodvid.dll [PX5: CCC5804800CFB6453439006C79507D00F3ED2ECE] [G] c:\program files\common files\ahead\audioplugins\aacenc32.dll [PX5: 7E3073A400D87850000B0FD9B6F11B00B9A20FBC] [G] c:\windows\assembly\gac\policy.13.0.lead.drawing.imaging.codecs\13.0.0.89__9cf889f53ea9b907\policy.13.0.lead.drawing.imaging.codecs.dll [PX5: 2D6C4795006581B20EB30058F72C2500B79BCD14] [G] c:\windows\microsoft.net\framework\v1.1.4322\mscorlib.dll [PX5: E65D52060042C450B08520DCA2642C00328CC46F] [G] c:\program files\common files\ahead\audioplugins\video.dll [PX5: B95DB72C00B4B3F2102C0128BB051100032A44B7] [G] c:\program files\norton security scan\defutdcd.dll [PX5: 0DC6996178CA4694A53009352C0E0B0050F06335] [G] c:\windows\assembly\gac\interop.hpodai\2.0.588.1728__a53cf5803f4c3827\interop.hpodai.dll [PX5: 913FA5C800E06910D03A00AC0CE95400FD0CDEDE] [G] c:\windows\assembly\gac\lead\13.0.0.89__9cf889f53ea9b907\lead.dll [PX5: AB09424F00567F4E30FE01D6A5EAED00CB45A3B3] [G] c:\windows\assembly\gac\lead.windows.forms\13.0.0.89__9cf889f53ea9b907\lead.windows.forms.dll [PX5: DD782E1800259458A0F000E17FFB6D00D421C99A] [G] c:\program files\ahead\neromix\services\nerodb.dll [PX5: D4247DB400A3844040F5029016C38A0069DC4BD0] [G] c:\windows\assembly\gac\interop.hpqimgr\1.0.0.0__a53cf5803f4c3827\interop.hpqimgr.dll [PX5: FE3827690066333828E40032035D4A00C0A73BD4] [G] c:\program files\common files\ahead\audioplugins\ogg.dll [PX5: 61D9222B0090FF1D905414DDE5CB41009DF7DDD9] [G] c:\windows\assembly\gac\interop.hpodxmlutil\2.0.588.1728__a53cf5803f4c3827\interop.hpodxmlutil.dll [PX5: 52D5C33000EDE76C3E09004BB5048000871E1587] [G] c:\windows\assembly\gac\interop.hpocxi08\1.0.0.0__3b766a3b3d2dc385\interop.hpocxi08.dll [PX5: 5F8135C2002F484A809E011BCA7E3800AF9D54C5] [G] c:\windows\assembly\gac\lead.windows.forms.commondialogs\13.0.0.89__9cf889f53ea9b907\lead.windows.forms.commondialogs.dll [PX5: F8AC456300474FB7A00501C127C99C00C04715C7] [G] c:\program files\ahead\neromix\services\nmpeqlz.dll [PX5: 0F05FD6B00749C97009401E597D5ED00E0C96D9F] [G] c:\windows\assembly\gac\lead.drawing.imaging.imageprocessing\13.0.0.89__9cf889f53ea9b907\lead.drawing.imaging.imageprocessing.dll [PX5: 93E0A64600CA4F4D602C018A6178A7005A1B483D] [G] c:\windows\ehome\sqlse20.dll [PX5: 644B35B400D6019EB039017787A907008650A197] [G] c:\hp\vinetlink\vinetlink.exe [PX5: 85B00C8900325174606500995397F2007DCB5457] [G] c:\program files\agentoffice\planim32.exe [PX5: 6E025679007CD8CE70280104E73D32002D3A6A2E] [G] c:\windows\microsoft.net\framework\v1.1.4322\mscorjit.dll [PX5: 2F4601B300158762D00C041754821C006CBBBB16] [G] c:\windows\ehome\ehepg.dll [PX5: F1982FFB0042125E405A0D4F9A5FDB0072517F6B] [G] c:\windows\assembly\gac\ehepg\6.0.3000.0__31bf3856ad364e35\ehepg.dll [PX5: F1982FFB0042125E405A0D4F9A5FDB0072517F6B] [G] c:\program files\pinnacle\studio 9\programs\studio.exe [PX5: 7A66C760004BC492F00745808FCAB5008D07578D] [G] c:\windows\assembly\gac\system.enterpriseservices\1.0.5000.0__b03f5f7f11d50a3a\system.enterpriseservices.dll [PX5: 6EABE2F800EAF3B6B0AF03FA009D88005268F0FA] [G] c:\windows\ehome\sqldb20.dll [PX5: 2A470A1500A0FEA7509502CA063FC4007731E0CB] [G] c:\windows\ehome\ehdebug.dll [PX5: E8938C87009E02FF502E000B3E8C100025749205] [G] c:\windows\microsoft.net\framework\v1.1.4322\mscorrc.dll [PX5: 15A57D3200E00F8730DE022DDDE82A006AC7EF6A] [G] c:\windows\microsoft.net\framework\v2.0.50727\culture.dll [PX5: D1FF2FF2002AF339467C00B06B61570081F767DB] [G] c:\program files\hp\dvdplay\dvdplay.exe [PX5: 777C0C04005F6BC3E051002DDDE82A0066B00648] [G] c:\windows\help\sbsi\training\orun32.exe [PX5: CE20C86349EFD73C70CB10E267FB4F004445770D] [G] c:\program files\agentoffice\olaimp32.exe [PX5: 079F8975009D45007036026778203C0007CC0AC5] [G] c:\windows\ehome\ehui.dll [PX5: E5ED780E0025A553869B089E4DC5F4008969C878] [G] c:\windows\microsoft.net\framework\v2.0.50727\shfusion.dll [PX5: 923FAE2800BBDDABA44301359BB7FC00F4909104] [G] c:\program files\hp\digital imaging\bin\hpqthb08.exe [PX5: EFE7E68300460C592001018A9BEC9E001E30F8EC] [G] c:\windows\assembly\gac\ehepgdat\6.0.3000.0__31bf3856ad364e35\ehepgdat.dll [PX5: AC6EC9C5006AE2BAF00301950F0F5D00F9CC6D81] [G] c:\windows\ehome\custsat.dll [PX5: C2BF4F7000712E1070FF007CA62306008D656C46] [G] c:\windows\ehome\sqlqp20.dll [PX5: 0F20FA4800556D60100407BA39CF5900D1AD9032] [G] c:\windows\installer\{913d0409-6000-11d3-8cfe-0050048383c9}\wordicon.exe [PX5: C71AFF7200E4C034B07F002DDDE82A007E88FAC0] [G] c:\program files\windows nt\hypertrm.exe [PX5: B1DC079C00042D126E91004E483784006179C6DE] [G] c:\program files\rhapsody\rhapsody.exe [PX5: D44A005F009B08FDF0A45542E1539100822E89E3] [G] c:\windows\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll [PX5: 4DA3EA4A003CBC77D0DB1288759A96005E9C967B] [G] c:\windows\microsoft.net\framework\v1.1.4322\configwizards.exe [PX5: 3559A8C600A0D6E7C0DF00B3E52649008AC2F3B9] [G] c:\windows\microsoft.net\framework\v1.1.4322\mscorsn.dll [PX5: 17792AC6001E46E4309501ADD189730029C88BC1] [G] c:\windows\assembly\gac\ehiproxy\6.0.3000.0__31bf3856ad364e35\ehiproxy.dll [PX5: 1E118F900046B883F0FA051ACEC68F00F5D5A135] [GP] c:\documents and settings\hp_administrator\desktop\stinger10000482.exe [PX5: 74D7916007199E26488A28F41B23C400796E0A6E] [G] c:\program files\hp\product assistant\bin\hprbui.exe [PX5: 602A05F2002F1A6E3067028B4A6B170018551C8D] [GP] c:\program files\erightsoft\super\setup.exe [PX5: F04F136000279BF61CA401255DA74B00FB41C14D] [G] c:\program files\windows media player\wmplayer.exe [PX5: 3F8CE510004F3C32FA0B00EFD191E50075C32627] [G] c:\windows\microsoft.net\framework\v2.0.50727\shfusres.dll [PX5: AEFE8EF800D475634EBB01E6909996003913766E] [G] c:\windows\microsoft.net\framework\v1.1.4322\diasymreader.dll [PX5: 003890CD00EE9AA8000208C8426E490091A8C649] [G] c:\program files\common files\roxio shared\dllshared\homeutils10.dll [PX5: DB9E789BF0C9109ED98E081173B0F600E499F1FA] [G] c:\program files\stoik imaging\stoik video converter 2\stoikstarter.exe [PX5: 56A597080065B28AD002001880B006002E04246E] [G] c:\windows\assembly\gac\ehcm\6.0.3000.0__31bf3856ad364e35\ehcm.dll [PX5: D519C2E500CB826170891C866FAAF40075AE01B7] [G] c:\program files\ahead\nero startsmart\nerostartsmart.exe [PX5: 22F32AE14DC538E23056295AD91B3A000FDC5157] [G] c:\windows\installer\{18388ef8-e0a3-442b-8bfe-e2f1b3d05c91}\itunesico.exe [PX5: C8ABE7DC00FA47D590380159196C830095E720C5] [G] c:\program files\microsoft sql server\mssql$retsdata\binn\sqlboot.dll [PX5: ECF2976F3C7158A082E000AC960A7700AE90DC02] [G] c:\windows\installer\{ed439a64-f018-4dd4-8ba5-328d85ab09ab}\roxiocentral.exe [PX5: 7EDF4D1B00FE75A27ED0049F080D440013D1571C] [G] c:\program files\common files\roxio shared\10.0\dllshared\cpscommontools10.dll [PX5: 033040D9F00B325CA9D205FC16459300CDCFA56C] [G] c:\program files\maxtor\sync\synconf.dll [PX5: 4D241E01581F851535820377968AA300DA93542D] [G] c:\windows\system32\wbem\mofcomp.exe [PX5: BE765B1C004E474340BE0011B47D85007C085D38] [G] c:\windows\system32\spool\drivers\w32x86\3\hpzrm312.dll [PX5: 64CE46D300D291ECE0861A7D268C2D00CF892F57] [G] c:\program files\agentoffice\olsbck32.exe [PX5: E01BB2D100076577A00B01750B29AF00329CF19E] [G] c:\program files\common files\roxio shared\dllshared\rsl.dll [PX5: D1453FD4F027016EE948026AC11D3D00609E78A6] [G] c:\windows\assembly\gac\system.data\1.0.5000.0__b77a5c561934e089\system.data.dll [PX5: 83CEF94200F83601C05513E718DA420046206FAB] [G] c:\windows\system32\wbem\provthrd.dll [PX5: 3CC1422700E3885A9E720369253DD000E0DAEF61] [G] c:\documents and settings\hp_administrator\desktop\arnieboard.exe [PX5: 358D4027148B954845C00B78BB89CF00A18F2729] [GP] c:\program files\common files\roxio shared\10.0\dllshared\roxipp52.dll [PX5: AE0156FDF0DD0FFE59795337AC2CD2001709445A] [G] c:\program files\maxthon2\maxthon.exe [PX5: 2C6F8AC400A59662D01931866D505C00FDA662EC] [GP] c:\program files\piolet\piolet.exe [PX5: DB3C112900F5BAD120555556A8408D00CA62404C] [G] c:\windows\assembly\gac\ehcir\6.0.3000.0__31bf3856ad364e35\ehcir.dll [PX5: E9C6853A00B78CC190EA01F36554F0003AA86A5D] [G] c:\program files\online services\ebay\wizlink.exe [PX5: 68190440005CA547A02A004402BE6B00E12E9CC3] [G] c:\windows\assembly\gac\system.enterpriseservices\1.0.5000.0__b03f5f7f11d50a3a\system.enterpriseservices.thunk.dll [PX5: 604B322B00D214B2046E016DE41120004B698180] [G] c:\windows\assembly\gac\ehrecobj\6.0.3000.0__31bf3856ad364e35\ehrecobj.dll [PX5: EAD8C2C000D45902F0FD05DD75E0C800F657747F] [G] c:\windows\assembly\gac\system.xml\1.0.5000.0__b77a5c561934e089\system.xml.dll [PX5: 37B936D600E9E0A0704814170B365B00E2A3106F] [G] c:\program files\agentoffice\olautl32.exe [PX5: B6F8062A0045D60920E403DFEFCE4000B08832D9] [G] c:\program files\hp\digital imaging\help\cuetour\start.exe [PX5: 6E6A6B6AC9639227DEE10FDB5B3A82004268932D] [G] c:\windows\microsoft.net\framework\v1.1.4322\mscorwks.dll [PX5: 43D5E03F00BFAAD2601C26EA2A0194008FF90ECC] [G] c:\windows\installer\{4d36e953-4456-4f8f-bc44-90bc4aa59889}\newshortcut2_60eeb642e9e045a2a676b9d8fe17c4a9.exe [PX5: 00D8E06B0033AE28F0C20631601FE500E112903B] [G] c:\program files\windows nt\pinball\pinball.exe [PX5: B642504B004D243E4ABF040846BBFD00409DBA83] [G] c:\windows\system32\wbem\framedyn.dll [PX5: 6F5E9BFF00AC305ED66B0252FB6AC500E235E8BD] [GP] c:\windows\ehome\ehres.dll [PX5: EC0DEC6500A966CDF28C86C8B887930028163B0C] [G] c:\program files\fxhome compositelab pro\fxhome compositelab pro.exe [PX5: 14D63EE008FACC85D1755F28C3B31900A1796F7F] [G] c:\program files\malwarebytes' anti-malware\mbam.exe [PX5: E59814FEB08DC9171EA813DC3F3C5A005E523456] [GP] c:\program files\erunt\ntregopt.exe [PX5: B8EA9DDA0068DC4324FA029114B8C900E19015CA] [G] c:\program files\common files\roxio shared\10.0\sharedcom\cpscommonenglish.dll [PX5: 784529C9F05736DB19F6022DDDE82A00714B1773] [G] c:\windows\regedit.exe [PX5: 485D3516005E087C3C080210F294BD00151D98B5] [G] c:\program files\hp\digital imaging\bin\hpqwrg.exe [PX5: 56352357009C0AC0B01B04390BE54200550AFC5B] [G] c:\program files\hp\digital imaging\unload\hpqphunl.exe [PX5: 42CB8EE20036276AB04401C3F5E3B40093DF901A] [G] c:\program files\online services\zipca\wizlink.exe [PX5: 68190440005CA547A02A004402BE6B00E12E9CC3] [G] c:\program files\online services\vonage\vonage.exe [PX5: 14D63EE0D4FACC85A0753028C3B3190017F8A0E4] [G] c:\program files\pinnacle\studio 9\guidedtour\tutorial.exe [PX5: 6E6A6B6A3E63922732E131DB5B3A820029286DBE] [G] c:\program files\ahead\nero recode\recode.exe [PX5: 5B72F4E44AD60DBAF00896FEB7BC8D0036A1948F] [G] c:\program files\pinnacle\hollywood fx for studio\5.5\easy_fx.exe [PX5: 5991CD7C00E3F0B75010016A1F781F00A0604B11] [G] c:\program files\serious magic\ultra\wiseupdt2.exe [PX5: 3CE30B1F62D6D0CC946902EE9969BE0093740670] [G] c:\program files\click'n design 3d (v5)\unwise.exe [PX5: 48464B2F007C1ADC840C0297FAA81800CFD6ED16] [G] c:\program files\online services\msn90\launchmsn.exe [PX5: B962E6750061A8D0007B0211D5D6EF00B3162AF4] [G] c:\program files\corel\shared\writing tools\10.0\wt10sptlen.exe [PX5: C2E87C1C3FABFEDF605C022CD802A200515D9133] [G] c:\program files\rhapsody\unwise32.exe [PX5: 8730CAEA004CD65F7AF502198F79210037A1E134] [G] c:\program files\netscape\netscape browser\netscape.exe [PX5: B61EA31E0007386920F804404D6AAB00F133B6F8] [G] c:\program files\rhapsody\wiseupd2.exe [PX5: 3F725D7F8A0B04F41F67036C83852300A3843F35] [G] c:\program files\ahead\nero backitup\backitup.exe [PX5: 17DFF30D0090B0E730905689254BA200CB6A2B50] [G] c:\program files\windows plus\dancer\dancer.exe [PX5: 7735F26800691220E0C50279CF4BBC0061EB0565] [GP] c:\hp\recovery\wizard\swr_wizard.exe [PX5: 6B810CEA00507F12A06116B7DBA20B005BE87E44] [G] c:\program files\outlook express\wab.exe [PX5: 2F504B3700AC6C85B47300517C3BE60061DD486A] [G] c:\program files\netscape\netscape browser\nsuninst.exe [PX5: 43A93BCAF8F265451095017620FACC00AEDA494D] [G] c:\program files\quicken\billmind.exe [PX5: E5F362430011187B4404001D380DC700EBD52178] [G] c:\program files\pinnacle\studio 9\instantinfo\instantinfo.exe [PX5: E112EFD500436B2986F60DEF512ACB005F5E7F51] [G] c:\windows\corel\stplnch.exe [PX5: F58235B200B2F7CD000903A229F47600B9D683B1] [GP] c:\program files\online services\canada\kol\setup.exe [PX5: 0564E4C478839533FF2F017E7E03FB0029004F33] [G] c:\program files\corel\wordperfect 10\programs\carmorganizer.exe [PX5: 363F66E758D888F400C601297DE0CB003B576A13] [G] c:\program files\online services\netscapeonline\nssetup.exe [PX5: 006B59E9B8667AECD82014D445EDDA00C59325E1] [G] c:\hp\bin\cloaker.exe [PX5: 6D91FAE1006266BE6AC900D417F0F2003CCBBE3A] [G] c:\program files\ahead\nerovision\nerovision.exe [PX5: 4DE6D0600057FA268015059D00567E00677BCDF6] [G] c:\program files\pinnacle\studio 9\ppe115.exe [PX5: B1F68E5FBF1EBAFC755C3842D10648003B3FB9E3] [G] c:\program files\ahead\nero toolkit\infotool.exe [PX5: 9598ADCC00C5A3CDF0F70790028B1700784D6BE1] [G] c:\program files\pc-doctor 5 for windows\pcdr5cuiw32.exe [PX5: B8966274000D0961AA3BA3F3C0B2E40088D4F87D] [G] c:\program files\corel\wordperfect 10\programs\ua100.exe [PX5: 5CA031233BFAEF4450C50266868FAE0021551988] [G] c:\program files\ahead\nero\nero.exe [PX5: FD626CCF3AA4BCE2D059D6877FE38200782C2C4B] [G] c:\program files\pc-doctor for dos\offline\pc doctor offline.exe [PX5: 8E6CFE64D077AB1287D607186B67B900067DBE61] [G] c:\windows\creator\toolscdlauncher.exe [PX5: E0FC442200BF350710FE0D7F619E6300359CF2CD] [G] c:\program files\hewlett-packard\diagnostics\hpsysdig.exe [PX5: 2C517F2500D3D194D05005F92AD71A006A055B60] [G] c:\windows\sminst\install_app.exe [PX5: 132A329C00D90959000F133F1B422E00D85D0593] [GP] c:\hp\support\hpsysinfo.exe [PX5: 4191ED63001A9CC2AC7E07EB1D0127001B2636DE] [G] c:\program files\common files\lightscribe\lslauncher.exe [PX5: 775C7A1A0001CC8EB0020268F253E90000B1FADE] [G] c:\program files\ahead\nero showtime\showtime.exe [PX5: 3680D95400693363003915BEA59582009B054EAE] [G] c:\program files\pinnacle\studio 9\programs\vercheck.exe [PX5: 29DC595103F0D44E91100054AF07C0006D1FE77E] [G] c:\program files\online services\canada\netscapeonline\nssetup.exe [PX5: 6E6A6B6A756392272CE10FDB5B3A820027FFE02E] [G] c:\program files\secondlifeaditi\secondlifepreview.exe [PX5: 3868499000FF4E6180ABBEF551FDA400ECB47CA6] [G] c:\program files\hp\digital imaging\{342c7c88-d335-4bc2-8cf1-281857629ce2}\setup\hpzscr01.exe [PX5: D5CDE9220085B3F490590B5116F3D700E86EC533] [G] c:\program files\ahead\nero toolkit\drivespeed.exe [PX5: DFF6757D000CDD9FF08108396BEC63003B3D8B7E] [G] c:\windows\piolet_toolbar_uninstaller_8828.exe [PX5: 6C05775CA7F05C13C5F803846A906D0012DABEA9] [G] c:\program files\ahead\nero soundtrax\soundtrax.exe [PX5: 2304AA2C4E198E47F0FF1AAD3EAA9200BDCFFCA9] [G] c:\program files\macromedia\director 8\shockwave multiuser server 2.1\multiuserserver.exe [PX5: 01C45E91002097C060BE05697731ED00AABF91CB] [G] c:\windows\corel\uninst32.exe [PX5: B94012E800731BF9B02A0C9D4A132A007F4CB21F] [G] c:\program files\ahead\imagedrive\imagedrive.exe [PX5: FA0CD2384FFA5CB3B0790CB9F075A7008E6E665F] [G] c:\program files\sonic\express labeler 2\stax.exe [PX5: B48BC4EB0036D88E6C7E12CD8D258300FD80F228] [G] c:\program files\windows plus\audio converter\audioconverter.exe [PX5: E6DFA32900F20DC0580B03454A75E70017CCC57B] [G] c:\program files\macromedia\director 8\director.exe [PX5: F47C0EA10015054FE0F048E79E27EA00D94B1B40] [G] c:\program files\outlook express\msimn.exe [PX5: 73A5F01A00B66EAEEC1A000D7D657F00FD635E20] [G] c:\windows\creator\cd creator.exe [PX5: 63C760AE00A03C27F06B12B6A59C52000C0A9393] [G] c:\program files\common files\sonic shared\sonic central\main\mediahub.exe [PX5: 0F897345002D57AE50AD2395DE4F1600398571CA] [G] c:\program files\ahead\nero toolkit\cdspeed.exe [PX5: 226DCD0A00126439F0731257D26E81009B040B14] [G] c:\program files\updates from hp\9972322\program\hpoovclient.exe [PX5: A75BAF7D00D1E980505F015D41C116002BE5A0F9] [G] c:\program files\online services\peoplepc\hppeoplepc.exe [PX5: 8CEA68770096442F502C019303DF2D002DB95A38] [G] c:\windows\unvise32.exe [PX5: D3E7D9FD00F9729F60F601C45321A2000A8B804C] [G] c:\program files\pinnacle\studio 9\bin\amcap.exe [PX5: A3B56A700331B153D1BE00F099E9380067537A96] [G] c:\program files\windows plus\cdlm\cdlm.exe [PX5: 22D8107E002DAE526ABC024192FB7C0000486FD1] [G] c:\program files\corel\wordperfect 10\register\navbrowser.exe [PX5: D535E96A006CE7B640F803E91E5944000037EB1F] [G] c:\windows\sminst\start.exe [PX5: EA76398A003E17C900BB04097EA59B00F7FCE079] [G] c:\program files\ahead\coverdesigner\coverdes.exe [PX5: A3FE167000E5094310A022BF01B9C80049647986] [G] c:\program files\online services\aol\installaol.exe [PX5: A49DDE8400837984C0A802A9ECA52D005343D0A8] [G] c:\program files\quicken\qw.exe [PX5: AEA7F6E9004EF421340200205143A400CB8E9728] [G] c:\program files\yahoo!\intellisync for yahoo!\is4yahoo.exe [PX5: E9D1F073005E7AE3802801B8F0E097005CCCAD6F] [G] c:\program files\pinnacle\hollywood fx for studio\5.5\hfxserial.exe [PX5: 851945F40091970AF04D00882C94BD00316552D9] [G] c:\program files\ultra video to flash converter\unins000.exe [PX5: FF9643140AF25F6047DE0AC85542A7006BF098DF] [G] c:\program files\ahead\nero wave editor\waveedit.exe [PX5: 39D5E3D95416C4A8D03801CD511B5C00FD69180D] [G] c:\program files\online services\earthlink\installearthlink.exe [PX5: 45ABE9A200D5FC50902200151024F900985C7848] [G] c:\program files\windows plus\party mode\partymode.exe [PX5: D1A026790097FEC444F8020E545CDA0012B05DEC] [G] c:\program files\adobe\illustrator 9.0\illustrator.exe [PX5: 610ADAFD30BC5280705E405A7B03C9004E68F8C5] [G] c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_68c931f9\system.dll [PX5: C459B1DC00653FB500781E0AE7E13B00C7BB82E1] [G] c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_141cd152\mscorlib.dll [PX5: BCDA7F9000858EC0C0A733E599ADBA005549C3E0] [G] c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_04e01ded\system.xml.dll [PX5: 7FEFCA8B00F70406E0781F6F4CEB930021B629E5] Previously Detected Files: [B] (ACTIVE) c:\windows\temp\9e0840922.tmp [PX5: 0D954EAB00B2B0D6FC3E007572D2AA005535018D] Malware Group: Medium Risk Malware [B] (ACTIVE) c:\documents and settings\hp_administrator\local settings\temp\9e0840922.tmp [PX5: 0D954EAB00B2B0D6FC3E007572D2AA005535018D] Malware Group: Medium Risk Malware End of Prevx Scan Log - http://www.prevx.com ________________________________________________________________________________ _____ HERE IS THE HIJACK LOG RAN RIGHT AFTER THE ROOT KIT LOG Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:32:15 PM, on 3/2/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\arservice.exe C:\Program Files\Prevx\prevx.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Maxtor\Sync\SyncServices.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Prevx\prevx.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\ehome\mcrdsvc.exe C:\WINDOWS\system32\dllhost.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Flock\flock.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\notepad.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank O4 - HKLM\..\Run: [CPM25cc8a14] Rundll32.exe "c:\windows\system32\sikizela.dll",a O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [26ffb988] rundll32.exe "C:\WINDOWS\system32\zelojive.dll",b O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKUS\S-1-5-19\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [reroramafi] Rundll32.exe "C:\WINDOWS\system32\poyimimu.dll",s (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user') O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user') O20 - AppInit_DLLs: c:\windows\system32\sikizela.dll c:\windows\system32\hulifeki.dll O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\sikizela.dll O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\sikizela.dll O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image005.jpg O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg O24 - Desktop Component 2: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg -- End of file - 5532 bytes |
|
|
|
Mar 2 2009, 02:52 PM
Post
#5
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
HI OM I forgot TWO THINGS .... 1) this is what happened in the HIJACK LOG I JUST SENT YOU AFTER I CLICKED THE ONES SUGGESTED BY YOU: O4 - HKLM\..\Run: [CPM25cc8a14] Rundll32.exe "c:\windows\system32\sikizela.dll",a NOT PRESENT PRESENT BUT NO PAREN ON THE END of the one you sent me but present in the one i checked ---the one you sent me-----: O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM' and 2) your inquiry: I see remnant of Symantec (Norton) in your log. Did you use it previous to AVG and uninstalled it? answer is ----i used to use NORTON .... I MAY have tried to uninstall it to use AVG because COX had their own Antivirus System wide internal set up (I guess) and NOW as mentioned AVG doesn't run I dont think nor can i run MALWAREBYTES ... Hope that helps us thnx topband |
|
|
|
Mar 2 2009, 02:53 PM
Post
#6
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
REDRAFT OF THE LAST MESSAGE :
HI OM I forgot TWO THINGS .... 1) this is what happened in the HIJACK LOG I JUST SENT YOU AFTER I CLICKED THE ONES SUGGESTED BY YOU: O4 - HKLM\..\Run: [CPM25cc8a14] Rundll32.exe "c:\windows\system32\sikizela.dll",a NOT PRESENT PRESENT BUT NO PAREN ON THE END of the one you sent me but present in the one i checked ---the one you sent me-----: O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM' 2) your inquiry: I see remnant of Symantec (Norton) in your log. Did you use it previous to AVG and uninstalled it? answer is ----i used to use NORTON .... I MAY have tried to uninstall it to use AVG because COX had their own Antivirus System wide internal set up (I guess) and NOW as mentioned AVG doesn't run I dont think nor can i run MALWAREBYTES ... Hope that helps us thnx topband |
|
|
|
Mar 2 2009, 06:51 PM
Post
#7
|
|
|
SuperHelper Group: Classroom Teacher Posts: 5,770 Joined: 27-April 08 Member No.: 78,707 Operating System: win98se, XP pro |
Hi topband,
It is important that you run only the Tools we ask you to use. This will save a lot of confusion and time. We will also be sure we are getting the imformation that we need in order to best help you. It is equally important that you follow all instructions relating to the tools that I am going to have you run this time. Let's start.... Open hijackthis, do a system scan only and checkmark these lines, if present O4 - HKLM\..\Run: [CPM25cc8a14] Rundll32.exe "c:\windows\system32\sikizela.dll",a O4 - HKLM\..\Run: [26ffb988] rundll32.exe "C:\WINDOWS\system32\zelojive.dll",b O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKUS\S-1-5-19\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [reroramafi] Rundll32.exe "C:\WINDOWS\system32\poyimimu.dll",s (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM') O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKUS\S-1-5-19\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [reroramafi] Rundll32.exe "C:\WINDOWS\system32\poyimimu.dll",s (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM') O20 - AppInit_DLLs: c:\windows\system32\sikizela.dll c:\windows\system32\hulifeki.dll O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\sikizela.dll O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\sikizela.dll Close ALL other windows/browsers and click Fix Checked. Answer Yes if prompted. Close HJT. Please give this next tool at least 30 minutes to complete. It is vitally important that combofix is renamed before it is even started to download Please download ComboFix from Here or Here to your Desktop. **Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved directly to your desktop**
![]() ![]()
-----------------------------------------------------------
**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures. ![]() Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message: ![]() Please post back with
Let us know how your computer is at the moment. REMEMBER-no unecessary internet activity. |
|
|
|
Mar 2 2009, 09:01 PM
Post
#8
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
HI OM
OK i changed the name and ran the file .... i have FLOCK so the file name did not change the first 2 times so i moved the file to the trash and finally figured out how to change it in FLOCK .... I disabled the Windows firewall and looked for AVG ...but could not find it ... also tried to disable NORTON ...but i couldn't see how to do that with what i had coming up ... i believe it is only a 'SALES' remnant remaining .... the COMBO-FIX displayed this prompt before it restarted and asked me to WRITE IT DOWN so here are the files listed by COMBO-FIX C:\WINDOWS\system32\drivers\TDSSpaxt.Sys " " \ TDSSofxh.dll " " \ TDSSosvd.dat " " \TDSSnrsr.dll " " \TDSSriqp.dll " " \TDSScfum.dll " " \TDSSfxwp.dll " " \TDSStkdv.log " " \TDSSsbhc.dll " " \TDSSrhym.log UPON the restart a DATA EXECUTION PREVENTION Prompt turned up "Windows has closed this Program" WMI Microsoft Corporation THATS about what happened HERE IS THE LOG FROM COMBO-FIX ComboFix 09-03-02.01 - HP_Administrator 2009-03-02 18:24:09.1 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1982.1546 [GMT -8:00] Running from: c:\documents and settings\HP_Administrator\Desktop\Combo-Fix.exe . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\documents and settings\All Users\Application Data\CrucialSoft Ltd c:\documents and settings\All Users\Application Data\CrucialSoft Ltd\MS AntiSpyware 2009\LOG\20090124111710265.log c:\documents and settings\All Users\Application Data\Microsoft\Internet Explorer\DLLs\c.cgm c:\documents and settings\All Users\Application Data\Microsoft\Protect\svhost.exe c:\documents and settings\All Users\Application Data\Microsoft\Protect\track.sys c:\program files\Spyware Guard 2008 c:\program files\Spyware Guard 2008\conf.cfg c:\program files\Spyware Guard 2008\queue.vdb c:\program files\Spyware Guard 2008\spywareguard.exe c:\program files\Spyware Guard 2008\uninstall.exe c:\windows\aazalirt.exe c:\windows\iddqdops.exe c:\windows\jikglond.exe c:\windows\jiklagka.exe c:\windows\jungertab.exe c:\windows\klopnidret.exe c:\windows\reged.exe c:\windows\ronitfst.exe c:\windows\salrtybek.exe c:\windows\seeukluba.exe c:\windows\skaaanret.exe c:\windows\spoolsystem.exe c:\windows\sys.com c:\windows\syscert.exe c:\windows\sysguard.exe c:\windows\system32\a.exe c:\windows\system32\adiduyag.ini c:\windows\system32\afevupug.ini c:\windows\system32\aghdff.dll c:\windows\system32\agironof.ini c:\windows\system32\agowefuw.ini c:\windows\system32\ahabuyug.ini c:\windows\system32\akehatow.ini c:\windows\system32\akswir.dll c:\windows\system32\alanebor.ini c:\windows\system32\aleyahet.ini c:\windows\system32\amapohur.ini c:\windows\system32\anuvahih.ini c:\windows\system32\apajusuy.ini c:\windows\system32\apunegiw.ini c:\windows\system32\argxmq.dll c:\windows\system32\asiwebap.ini c:\windows\system32\atezedif.ini c:\windows\system32\awfrrf.dll c:\windows\system32\azizowok.ini c:\windows\system32\azumasin.ini c:\windows\system32\bajukeko.dll c:\windows\system32\bewudogi.dll c:\windows\system32\bfcrjn.dll c:\windows\system32\bunuzope.dll c:\windows\system32\buzrat.dll c:\windows\system32\cmunvb.dll c:\windows\system32\cmxyic.dll c:\windows\system32\czhpou.dll c:\windows\system32\dapipobi.dll c:\windows\system32\demayoha.dll c:\windows\system32\dewezuwa.dll c:\windows\system32\dijekaha.dll c:\windows\system32\divasalo.dll c:\windows\system32\doluwuhi.dll c:\windows\system32\dositesu.dll c:\windows\system32\drivers\TDSSpaxt.sys c:\windows\system32\dukakame.dll c:\windows\system32\dumavuja.dll c:\windows\system32\edefibuj.ini c:\windows\system32\edihonay.ini c:\windows\system32\edojukiy.ini c:\windows\system32\eduhisiy.ini c:\windows\system32\efemiviy.ini c:\windows\system32\egijiroh.ini c:\windows\system32\elqdjw.dll c:\windows\system32\emakakud.ini c:\windows\system32\eotivv.dll c:\windows\system32\eripijid.ini c:\windows\system32\erofisup.ini c:\windows\system32\evijolez.ini c:\windows\system32\evokerad.ini c:\windows\system32\ewajemaw.ini c:\windows\system32\ewuhopah.ini c:\windows\system32\eyibebuv.ini c:\windows\system32\ezalujaj.ini c:\windows\system32\ezomugar.ini c:\windows\system32\fcsstu.dll c:\windows\system32\fefiweta.dll c:\windows\system32\fituzafi.dll c:\windows\system32\gadibure.dll c:\windows\system32\gadisiva.dll c:\windows\system32\gayudida.dll c:\windows\system32\gebegimi.dll c:\windows\system32\geleboje.dll c:\windows\system32\gopigede.dll c:\windows\system32\gthicl.dll c:\windows\system32\hapohuwe.dll c:\windows\system32\hdkied.dll c:\windows\system32\hefakola.dll c:\windows\system32\hidisuza.dll c:\windows\system32\hidujuku.dll c:\windows\system32\higawaka.dll c:\windows\system32\hihavuna.dll c:\windows\system32\hokipofu.dll c:\windows\system32\howokogu.dll c:\windows\system32\hulifeki.dll c:\windows\system32\hxbecv.dll c:\windows\system32\hztled.dll c:\windows\system32\ibeyemew.ini c:\windows\system32\ibitawum.ini c:\windows\system32\ibopipad.ini c:\windows\system32\idipemil.ini c:\windows\system32\iehelper.dll c:\windows\system32\ifuvejit.ini c:\windows\system32\igoduweb.ini c:\windows\system32\ihbqmf.dll c:\windows\system32\ijipdp.dll c:\windows\system32\ilusudem.ini c:\windows\system32\imamagad.ini c:\windows\system32\iorbkx.dll c:\windows\system32\ipanolet.ini c:\windows\system32\ipobayaf.ini c:\windows\system32\irobabew.ini c:\windows\system32\isohodiv.ini c:\windows\system32\itenegow.ini c:\windows\system32\itihazon.ini c:\windows\system32\iudfiz.dll c:\windows\system32\ivujabek.ini c:\windows\system32\izowehaw.ini c:\windows\system32\jagepeyu.dll c:\windows\system32\jajulaze.dll c:\windows\system32\jamamafo.dll c:\windows\system32\jamazote.dll c:\windows\system32\jbngyc.dll c:\windows\system32\jevujuza.dll c:\windows\system32\jifetahi.dll c:\windows\system32\jisopisi.dll c:\windows\system32\jogejopi.dll c:\windows\system32\jqygga.dll c:\windows\system32\juvokose.dll c:\windows\system32\kahowuhi.dll c:\windows\system32\kamileva.dll c:\windows\system32\kanhzh.dll c:\windows\system32\kasiyebo.dll c:\windows\system32\kcxiok.dll c:\windows\system32\kebajuvi.dll c:\windows\system32\kebikagu.dll c:\windows\system32\kewowupa.dll c:\windows\system32\khuoxt.dll c:\windows\system32\kiganopo.dll c:\windows\system32\kivumolo.dll c:\windows\system32\kowoziza.dll c:\windows\system32\kubiwipi.dll c:\windows\system32\kupirire.dll c:\windows\system32\kzdwee.dll c:\windows\system32\lasefoye.dll c:\windows\system32\lccdvg.dll c:\windows\system32\lenisako.dll c:\windows\system32\libodiwa.dll c:\windows\system32\ligijupu.dll c:\windows\system32\lijaduhi.dll c:\windows\system32\limepidi.dll c:\windows\system32\lkoeod.dll c:\windows\system32\lomokafu.dll c:\windows\system32\ludiyofu.dll c:\windows\system32\lufesoko.dll c:\windows\system32\luwtvv.dll c:\windows\system32\lxdynh.dll c:\windows\system32\magiduko.dll c:\windows\system32\mamotapi.dll c:\windows\system32\mapenelo.dll c:\windows\system32\mawijeho.dll c:\windows\system32\meacvn.dll c:\windows\system32\mezeweku.dll c:\windows\system32\mibewoja.dll c:\windows\system32\mitapimu.dll c:\windows\system32\miziwiva.dll c:\windows\system32\mnmuno.dll c:\windows\system32\modabura.dll c:\windows\system32\mohafilu.dll c:\windows\system32\muwatibi.dll c:\windows\system32\natulevo.dll c:\windows\system32\nazofafo.dll c:\windows\system32\nhnhtr.dll c:\windows\system32\niejex.dll c:\windows\system32\nifisofo.dll c:\windows\system32\nobawitu.dll c:\windows\system32\nojuvuva.dll c:\windows\system32\norobeta.dll c:\windows\system32\nozahiti.dll c:\windows\system32\nukizani.dll c:\windows\system32\nupikufo.dll c:\windows\system32\nusoyeta.dll c:\windows\system32\nuyakete.dll c:\windows\system32\nxrepf.dll c:\windows\system32\obeyisak.ini c:\windows\system32\obkgse.dll c:\windows\system32\odavizos.ini c:\windows\system32\odekikag.ini c:\windows\system32\ofczam.dll c:\windows\system32\ofukipun.ini c:\windows\system32\ogelapiw.ini c:\windows\system32\ogunefat.ini c:\windows\system32\ojipowav.ini c:\windows\system32\okasinel.ini c:\windows\system32\okekujab.ini c:\windows\system32\olomuvik.ini c:\windows\system32\omutovis.ini c:\windows\system32\orinarep.ini c:\windows\system32\orunitag.ini c:\windows\system32\osopazov.ini c:\windows\system32\otusidoh.ini c:\windows\system32\ouwfly.dll c:\windows\system32\pawasonu.dll c:\windows\system32\peraniro.dll c:\windows\system32\pisiluvu.dll c:\windows\system32\pusifore.dll c:\windows\system32\qagvfc.dll c:\windows\system32\qgofof.dll c:\windows\system32\qnyrrq.dll c:\windows\system32\qoeedn.dll c:\windows\system32\qvigdz.dll c:\windows\system32\raditile.dll c:\windows\system32\ragumoze.dll c:\windows\system32\rayedutu.dll c:\windows\system32\rhleud.dll c:\windows\system32\robenala.dll c:\windows\system32\robuteza.dll c:\windows\system32\rogiwunu.dll c:\windows\system32\rtufso.dll c:\windows\system32\ruyutego.dll c:\windows\system32\sabafiru.dll c:\windows\system32\semasema.dll c:\windows\system32\sesotoja.dll c:\windows\system32\sikizela.dll c:\windows\system32\sivotumo.dll c:\windows\system32\slnrvg.dll c:\windows\system32\sozivado.dll c:\windows\system32\suamnd.dll c:\windows\system32\suluyeba.dll c:\windows\system32\sxctkc.dll c:\windows\system32\tafenugo.dll c:\windows\system32\tateputu.dll c:\windows\system32\tazobogi.dll c:\windows\system32\TDSScfum.dll c:\windows\system32\TDSSfxwp.dll c:\windows\system32\TDSSnmxh.log c:\windows\system32\TDSSnrsr.dll c:\windows\system32\TDSSofxh.dll c:\windows\system32\TDSSosvd.dat c:\windows\system32\TDSSrhym.log c:\windows\system32\TDSSriqp.dll c:\windows\system32\TDSSsbhc.dll c:\windows\system32\TDSStkdv.log c:\windows\system32\tegavipo.dll c:\windows\system32\tenolabo.dll c:\windows\system32\tidadegi.dll c:\windows\system32\tijevufi.dll c:\windows\system32\tizuluke.dll c:\windows\system32\toraheke.dll c:\windows\system32\tvheku.dll c:\windows\system32\twlovv.dll c:\windows\system32\uamynt.dll c:\windows\system32\udokalul.ini c:\windows\system32\ukujudih.ini c:\windows\system32\umegizul.ini c:\windows\system32\unosawap.ini c:\windows\system32\upedidub.ini c:\windows\system32\vajetezo.dll c:\windows\system32\vavusani.dll c:\windows\system32\vawopijo.dll c:\windows\system32\vcmuao.dll c:\windows\system32\velefusi.dll c:\windows\system32\vinomisu.dll c:\windows\system32\vnquig.dll c:\windows\system32\vomuganu.dll c:\windows\system32\vozaposo.dll c:\windows\system32\vuboduje.dll c:\windows\system32\vufurajo.dll c:\windows\system32\vzchwy.dll c:\windows\system32\wakatuha.dll c:\windows\system32\wcibow.dll c:\windows\system32\wctymg.dll c:\windows\system32\wemeyebi.dll c:\windows\system32\wfwindowp32.dll c:\windows\system32\wigudozi.dll c:\windows\system32\winscenter.exe c:\windows\system32\wipalego.dll c:\windows\system32\wogeneti.dll c:\windows\system32\wufewoga.dll c:\windows\system32\wuleluzu.dll c:\windows\system32\xccefy.dll c:\windows\system32\xxuxsm.dll c:\windows\system32\xyyivm.dll c:\windows\system32\yijazowi.dll c:\windows\system32\yikujode.dll c:\windows\system32\yinuyoni.dll c:\windows\system32\yisihude.dll c:\windows\system32\yozakapa.dll c:\windows\system32\yvqewa.dll c:\windows\system32\ywlnha.dll c:\windows\system32\zakupuju.dll c:\windows\system32\zehejevo.dll c:\windows\system32\zelojive.dll c:\windows\system32\ziyiwori.dll c:\windows\system32\zizwpz.dll c:\windows\system32\zjdwaf.dll c:\windows\system32\zkyyko.dll c:\windows\system32\zqhpnc.dll c:\windows\system32\zugowuva.dll c:\windows\system32\zxxtit.dll c:\windows\Tasks\whqznqrt.job c:\windows\tobmygers.exe c:\windows\tobykke.exe c:\windows\vmreg.dll c:\windows\zibaglertz.exe D:\Autorun.inf D:\install.exe . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Service_TDSSserv.sys -------\Legacy_TDSSserv.sys ((((((((((((((((((((((((( Files Created from 2009-02-03 to 2009-03-03 ))))))))))))))))))))))))))))))) . 2009-03-02 11:18 . 2009-03-02 11:18 <DIR> d-------- c:\program files\Prevx 2009-03-02 11:18 . 2009-03-02 11:19 <DIR> d-------- c:\documents and settings\All Users\Application Data\PrevxCSI 2009-03-02 11:18 . 2009-03-02 11:18 22,536 --a------ c:\windows\system32\drivers\pxscan.sys 2009-03-01 18:51 . 2009-03-01 18:51 <DIR> d-------- c:\program files\Trend Micro 2009-03-01 15:25 . 2009-03-01 15:25 <DIR> d-------- c:\program files\ERUNT 2009-02-28 16:00 . 2009-02-28 16:02 <DIR> d--h----- C:\$AVG8.VAULT$ 2009-02-28 15:44 . 2009-02-28 17:00 <DIR> d-------- c:\documents and settings\All Users\Application Data\avg8 2009-02-27 01:29 . 2009-02-27 01:29 <DIR> d-------- c:\documents and settings\HP_Administrator\Application Data\NCH Swift Sound 2009-02-27 01:28 . 2009-02-27 01:28 <DIR> d-------- c:\program files\NCH Swift Sound 2009-02-27 01:28 . 2009-02-27 01:28 <DIR> d-------- c:\documents and settings\All Users\Application Data\NCH Swift Sound 2009-02-27 01:04 . 2009-02-27 01:04 <DIR> d-------- c:\program files\Panda Security 2009-02-26 22:57 . 2009-02-28 16:58 <DIR> d-------- c:\program files\Spybot - Search & Destroy 2009-02-26 22:57 . 2009-02-28 16:58 <DIR> d-------- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy 2009-02-26 21:36 . 2009-02-26 21:37 <DIR> d-------- c:\documents and settings\HP_Administrator\.housecall6.6 2009-02-26 21:36 . 2009-02-26 21:36 102,664 --a------ c:\windows\system32\drivers\tmcomm.sys 2009-02-25 22:50 . 2009-02-26 11:50 <DIR> d-------- C:\MyAudio 2009-02-25 22:49 . 2009-02-25 23:10 <DIR> d-------- c:\program files\AoA Audio Extractor 2009-02-19 02:14 . 2009-02-19 02:14 <DIR> d-------- c:\documents and settings\All Users\Application Data\PC Tools 2009-02-19 02:14 . 2009-02-02 14:04 12,560 --a------ c:\windows\system32\drivers\TfKbMon.sys 2009-02-16 01:18 . 2009-02-16 01:18 <DIR> d-------- C:\TubeTilla Free 2009-02-16 01:01 . 2009-02-16 01:01 <DIR> d-------- c:\documents and settings\HP_Administrator\Application Data\Media Player Classic 2009-02-16 01:00 . 2009-02-16 01:57 <DIR> d-------- C:\CoolOutput 2009-02-16 00:59 . 2009-02-26 21:57 <DIR> d-------- c:\program files\Cool Free All Video to Mp4 MPEG Converter 2009-02-16 00:59 . 2009-02-16 00:59 34 --ah----- c:\windows\system32\Converter_sysquict.dat 2009-02-16 00:57 . 2009-02-16 00:57 <DIR> d-------- c:\program files\K-Lite Codec Pack 2009-02-16 00:57 . 2008-07-03 22:34 860,160 --a------ c:\windows\system32\lameACM.acm 2009-02-16 00:57 . 2009-02-16 00:57 823,296 --a------ c:\windows\is-NNSGC.exe 2009-02-16 00:57 . 2007-09-04 08:56 164,352 --a------ c:\windows\system32\unrar.dll 2009-02-16 00:57 . 2007-09-20 16:52 118,784 --a------ c:\windows\system32\is-USQHP.tmp 2009-02-16 00:57 . 2009-02-16 00:57 10,665 --a------ c:\windows\is-NNSGC.msg 2009-02-16 00:57 . 2009-02-16 00:57 1,773 --a------ c:\windows\is-NNSGC.lst 2009-02-16 00:57 . 2007-10-03 07:03 414 --a------ c:\windows\system32\lame_acm.xml 2009-02-15 19:03 . 2004-09-07 11:42 86,085 --a------ c:\windows\system32\ImageDrive.cpl 2009-02-12 19:58 . 2009-02-28 17:05 <DIR> d-------- c:\program files\SpywareGuard 2009-02-12 19:55 . 2009-02-26 21:56 <DIR> d-------- c:\program files\SpywareBlaster 2009-02-12 01:32 . 2009-02-12 01:32 <DIR> d-------- c:\documents and settings\Guest\Application Data\Flock 2009-02-10 18:59 . 2009-02-10 18:59 <DIR> d-------- c:\documents and settings\All Users\Application Data\Pinnacle VideoSpin 2009-02-10 18:57 . 2009-02-10 18:57 <DIR> d-------- c:\documents and settings\All Users\Application Data\VideoSpin . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-03-03 02:08 --------- d-----w c:\program files\Norton Security Scan 2009-03-03 01:37 --------- d-----w c:\program files\Flock 2009-03-02 08:19 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP 2009-03-02 02:15 --------- d-----w c:\documents and settings\All Users\Application Data\Google Updater 2009-03-01 01:17 --------- d-----w c:\program files\Sun 2009-03-01 00:59 --------- d-----w c:\program files\WildTangent 2009-02-27 05:46 --------- d-----w c:\program files\Common Files\Symantec Shared 2009-02-27 05:46 --------- d-----w c:\documents and settings\All Users\Application Data\Symantec 2009-02-27 05:45 --------- d-----w c:\program files\Symantec 2009-02-27 05:45 --------- d-----w c:\program files\Norton 360 2009-02-26 10:05 --------- d-----w c:\program files\Click'N Design 3D (V5) 2009-02-26 09:03 --------- d-----w c:\program files\Piolet 2009-02-19 10:46 --------- d-----w c:\program files\Malwarebytes' Anti-Malware 2009-02-16 19:29 193,640 ----a-w c:\documents and settings\HP_Administrator\Application Data\GDIPFONTCACHEV1.DAT 2009-02-13 22:42 --------- d-----w c:\documents and settings\HP_Administrator\Application Data\muvee Technologies 2009-02-11 04:39 --------- d-----w c:\program files\AviSynth 2.5 2009-02-11 02:57 --------- d-----w c:\program files\Pinnacle 2009-02-07 22:08 --------- d-----w c:\program files\SecondLife 2009-02-02 21:05 --------- d-----w c:\program files\Roxio 2009-02-02 20:12 --------- d-----w c:\program files\DivX 2009-01-24 19:40 --------- d-----w c:\program files\MalwareRemovalBot 2009-01-24 19:35 --------- d-----w c:\documents and settings\HP_Administrator\Application Data\MalwareRemovalBot 2009-01-22 03:49 864 --sha-w C:\3whjawja.sys 2009-01-13 01:56 --------- d-----w c:\program files\FXhome CompositeLab Pro 2009-01-11 23:08 --------- d-----w c:\documents and settings\HP_Administrator\Application Data\MSNInstaller 2009-01-11 22:36 --------- d-----w c:\documents and settings\HP_Administrator\Application Data\Flock 2009-01-10 04:07 --------- d-----w c:\program files\AdorageI-SAL 2008-10-06 01:33 170 ----a-w c:\documents and settings\HP_Administrator\Application Data\wklnhst.dat 2007-08-31 09:08 135,680 ----a-w c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll 2006-05-03 10:06 163,328 --sha-r c:\windows\system32\flvDX.dll 2007-02-21 11:47 31,744 --sha-r c:\windows\system32\msfDX.dll 2007-03-02 03:31 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "rundll32.exe"="c:\documents and settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll" [2009-02-25 64512] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "UserFaultCheck"="c:\windows\system32\dumprep 0 -u" [X] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-05-09 7311360] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "rundll32.exe"="c:\documents and settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll" [2009-02-25 64512] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "RunNarrator"="Narrator.exe" [2004-08-09 c:\windows\system32\narrator.exe] c:\documents and settings\Guest\Start Menu\Programs\Startup\ PinMcLnk.lnk - c:\hp\bin\cloaker.exe [2006-08-18 27136] c:\documents and settings\HPLAPTOP\Start Menu\Programs\Startup\ PinMcLnk.lnk - c:\hp\bin\cloaker.exe [2006-08-18 27136] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "wave1"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "midi1"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "mixer1"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "aux1"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "wave2"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "midi2"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "mixer2"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "aux2"= c:\docume~1\HP_ADM~1\APPLIC~1\MACROM~1\Common\9e0840921.dll "VIDC.PIM1"= pclepim1.dll "VIDC.I420"= i420vfw.dll "VIDC.MJPG"= pvmjpg21.dll [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Notification Packages REG_MULTI_SZ cli [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusDisableNotify"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Updates from HP\\9972322\\Program\\Updates from HP.exe"= "c:\\Program Files\\Piolet\\Piolet.exe"= "c:\\Program Files\\Azureus\\Azureus.exe"= "c:\\Documents and Settings\\All Users\\Application Data\\vt3studio\\vt3mws\\VT3MWS.EXE"= "c:\\Program Files\\iTunes\\iTunes.exe"= "c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"= "c:\\Program Files\\Messenger\\msmsgs.exe"= "c:\\WINDOWS\\system32\\fxsclnt.exe"= "c:\\Documents and Settings\\HP_Administrator\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.dll"= "c:\\Documents and Settings\\HP_Administrator\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.exe"= "c:\\Program Files\\Common Files\\Symantec Shared\\CCPD-LC\\symlcsvc.exe"= "c:\\WINDOWS\\system32\\spoolsv.exe"= "c:\\WINDOWS\\ehome\\ehrecvr.exe"= "c:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe"= "c:\\WINDOWS\\system32\\dllhost.exe"= "c:\\WINDOWS\\system32\\dwwin.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009 R0 pxscan;pxscan;c:\windows\system32\drivers\pxscan.sys [2009-03-02 22536] R2 CSIScanner;CSIScanner;c:\program files\Prevx\prevx.exe [2009-03-02 4150840] R2 MSSQL$RETSDATA;MSSQL$RETSDATA;c:\program files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe -sRETSDATA --> c:\program files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe -sRETSDATA [?] S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?] S0 TfSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?] S2 RoxLiveShare10;LiveShare P2P Server 10;c:\program files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe [2007-08-24 309744] S2 RoxWatch10;Roxio Hard Drive Watcher 10;c:\program files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe [2007-08-24 166384] S3 SQLAgent$RETSDATA;SQLAgent$RETSDATA;c:\program files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlagent.EXE -i RETSDATA --> c:\program files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlagent.EXE -i RETSDATA [?] S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\TfNetMon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?] S4 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10;c:\program files\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [2007-08-24 72176] S4 Roxio Upnp Server 10;Roxio Upnp Server 10;c:\program files\Roxio\Digital Home 10\RoxioUpnpService10.exe [2007-08-24 362992] S4 RoxMediaDB10;RoxMediaDB10;c:\program files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2007-08-24 1083888] S4 SessionLauncher;SessionLauncher;c:\docume~1\HP_ADM~1\LOCALS~1\Temp\DX9\SessionLauncher.exe --> c:\docume~1\HP_ADM~1\LOCALS~1\Temp\DX9\SessionLauncher.exe [?] S4 ThreatFire;ThreatFire;c:\program files\ThreatFire\TFService.exe service --> c:\program files\ThreatFire\TFService.exe service [?] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{575046a8-3b27-11dd-a840-0018f3308545}] \Shell\AutoRun\command - c:\windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL autorun.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cbc8f6e4-b328-11dc-a81f-0018f3308545}] \Shell\AutoRun\command - M:\setupSNK.exe . Contents of the 'Scheduled Tasks' folder 2009-03-02 c:\windows\Tasks\Backup.job - c:\windows\system32\ntbackup.exe [2004-08-09 20:00] 2009-03-03 c:\windows\Tasks\Disk Cleanup.job - c:\windows\system32\cleanmgr.exe [2004-08-09 20:00] 2009-03-03 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2769080022-1748412195-781348209-1007.job - c:\documents and settings\HP_Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2008-09-02 19:02] 2009-03-02 c:\windows\Tasks\MalwareRemovalBot Scheduled Scan.job - c:\program files\MalwareRemovalBot\MalwareRemovalBot.exe [] 2009-03-02 c:\windows\Tasks\MalwareRemovalBot Scheduled Scan.job - c:\program files\MalwareRemovalBot [2009-01-24 11:40] 2009-03-02 c:\windows\Tasks\Norton 360.job - c:\progra~1\NORTON~2\MainStub.exe [] 2009-03-02 c:\windows\Tasks\Norton Security Scan for HP_Administrator.job - c:\program files\Norton Security Scan\Nss.exe [2008-09-19 04:18] 2009-02-20 c:\windows\Tasks\Rescue Reminder for 2HAPX1GZ.job - c:\program files\Maxtor\ManagerApp\MaxUtilities.exe [2008-07-21 16:52] 2009-03-02 c:\windows\Tasks\User_Feed_Synchronization-{17F015C8-57FA-45D9-B2E3-851F92A5E8AA}.job - c:\windows\system32\msfeedssync.exe [2006-10-17 11:58] . - - - - ORPHANS REMOVED - - - - WebBrowser-{C75C8E7E-5059-4469-AC11-D7544B260382} - c:\program files\Piolet Toolbar\v3.0.0.0\Piolet_Toolbar.dll WebBrowser-{74CC49F7-EB32-4A08-B204-948962A6E3DB} - (no file) HKLM-Run-PCDrProfiler - (no file) SharedTaskScheduler-{EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\sikizela.dll . ------- Supplementary Scan ------- . uStart Page = hxxp://www.google.com/ uDefault_Search_URL = hxxp://www.google.com/ie mStart Page = about:blank . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-03-02 18:32:19 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... ************************************************************************** . --------------------- LOCKED REGISTRY KEYS --------------------- [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{399560AD-16A1-1C42-B8ABCDA82BB95BD1}\{612A140D-0F00-4178-3873E27B58551793}\{AE627BFA-B567-4F9A-57DD34442A0D5150}*] "S6KI1YERXJTIP3T5RVDI41UR2G1"=hex:01,00,01,00,00,00,00,00,26,ff,b1,c2,08,0b,50, 9e,35,81,92,71,e8,29,5a,84,14,35,16,70,d8,6e,ff,61 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "cd042efbbd7f7af1647644e76e06692b"=hex:e2,63,26,f1,3f,c8,ff,68,fc,ef,e8,e9,7c, ff,43,27,e2,63,26,f1,3f,c8,ff,68,fb,33,8c,4a,9e,64,42,81,e2,63,26,f1,3f,c8,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "bca643cdc5c2726b20d2ecedcc62c59b"=hex:71,3b,04,66,8b,46,0d,96,12,86,46,05,e6, 38,11,ea,6a,9c,d6,61,af,45,84,18,45,18,ae,a1,d8,39,24,d2,6a,9c,d6,61,af,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2c81e34222e8052573023a60d06dd016"=hex:ff,7c,85,e0,43,d4,0e,fe,35,86,2b,34,64, 4a,c2,2e,ff,7c,85,e0,43,d4,0e,fe,db,ee,69,9c,4c,9e,de,7d,ff,7c,85,e0,43,d4,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2582ae41fb52324423be06337561aa48"=hex:6b,65,49,6a,7e,99,74,f7,40,d3,67,de,f0, f1,a8,13,86,8c,21,01,be,91,eb,e7,76,7e,8c,b6,be,b0,b2,cc,86,8c,21,01,be,91,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "caaeda5fd7a9ed7697d9686d4b818472"=hex:cd,44,cd,b9,a6,33,6c,cd,35,02,df,b7,65, 04,57,cd,f5,1d,4d,73,a8,13,5c,05,cd,9b,c2,5c,1b,39,eb,0c,f5,1d,4d,73,a8,13,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "a4a1bcf2cc2b8bc3716b74b2b4522f5d"=hex:b0,18,ed,a7,3f,8d,37,a4,1e,07,a0,03,90, cd,ff,74,df,20,58,62,78,6b,cf,c8,29,c2,31,07,a1,43,51,73,df,20,58,62,78,6b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "4d370831d2c43cd13623e232fed27b7b"=hex:fb,a7,78,e6,12,2f,9a,ea,e3,7a,80,db,bb, 25,3c,88,fb,a7,78,e6,12,2f,9a,ea,74,c0,dd,e3,a7,67,2d,7a,fb,a7,78,e6,12,2f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1d68fe701cdea33e477eb204b76f993d"=hex:83,6c,56,8b,a0,85,96,ab,04,2a,84,28,a2, 00,7c,04,01,3a,48,fc,e8,04,4a,f1,0d,25,ec,95,21,64,ad,fa,01,3a,48,fc,e8,04,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1fac81b91d8e3c5aa4b0a51804d844a3"=hex:f6,0f,4e,58,98,5b,89,c9,1c,c0,ba,99,3e, 4b,c2,8b,f6,0f,4e,58,98,5b,89,c9,e3,88,43,0c,f8,7e,eb,7f,f6,0f,4e,58,98,5b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{EA0A4278-51A3-7709-84DDEF02950ADF94}\{11936336-4B9A-79DD-A94F2AD208D83E94}\{0A7B61F5-80AE-3EB6-867F93DE000E0517}*] "S6KI1YERXJTIP3T5RVDI41UR2G1"=hex:01,00,01,00,00,00,00,00,26,ff,b1,c2,08,0b,50, 9e,35,81,92,71,e8,29,5a,84,14,35,16,70,d8,6e,ff,61 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "f5f62a6129303efb32fbe080bb27835b"=hex:3d,ce,ea,26,2d,45,aa,78,98,33,8a,df,25, 0d,ee,b0,3d,ce,ea,26,2d,45,aa,78,58,61,28,d9,e7,af,91,d2,3d,ce,ea,26,2d,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "fd4e2e1a3940b94dceb5a6a021f2e3c6"=hex:e3,0e,66,d5,eb,bc,2f,6b,4a,e8,8c,a7,ad, 03,d8,eb,2a,b7,cc,b5,b9,7f,41,e7,fb,44,43,05,dc,54,7f,19,2a,b7,cc,b5,b9,7f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "8a8aec57dd6508a385616fbc86791ec2"=hex:6c,43,2d,1e,aa,22,2f,9c,91,f6,16,78,56, 1e,b8,d0,6c,43,2d,1e,aa,22,2f,9c,36,2e,2f,93,ff,71,0b,5a,6c,43,2d,1e,aa,22,\ . ------------------------ Other Running Processes ------------------------ . c:\windows\arservice.exe c:\windows\ehome\ehrecvr.exe c:\windows\ehome\ehSched.exe c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe c:\program files\Java\jre6\bin\jqs.exe c:\program files\Common Files\LightScribe\LSSrvc.exe c:\program files\Maxtor\Sync\SyncServices.exe c:\program files\Common Files\Microsoft Shared\VS7Debug\mdm.exe c:\program files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe c:\windows\system32\nvsvc32.exe c:\windows\ehome\mcrdsvc.exe c:\windows\system32\dllhost.exe c:\windows\system32\dumprep.exe c:\windows\system32\wscntfy.exe c:\windows\system32\rundll32.exe . ************************************************************************** . Completion time: 2009-03-02 18:37:51 - machine was rebooted ComboFix-quarantined-files.txt 2009-03-03 02:36:34 Pre-Run: 179,478,622,208 bytes free 615 --- E O F --- 2007-08-31 10:00:49 HERE IS THE LOG FROM THE HIJACK THIS RERUN RIGHT AFTER Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 6:47:56 PM, on 3/2/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\arservice.exe C:\Program Files\Prevx\prevx.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Maxtor\Sync\SyncServices.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\dllhost.exe C:\Program Files\Prevx\prevx.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\explorer.exe C:\Program Files\Flock\flock.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user') O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user') O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image005.jpg O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg O24 - Desktop Component 2: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg -- End of file - 4706 bytes |
|
|
|
Mar 3 2009, 10:13 AM
Post
#9
|
|
|
SuperHelper Group: Classroom Teacher Posts: 5,770 Joined: 27-April 08 Member No.: 78,707 Operating System: win98se, XP pro |
Hi Topband,
Let's see what else is going on. Download Rooter.exe to your desktop
Please post back with the Rooter log and a ne HJT log. Thanks |
|
|
|
Mar 3 2009, 01:23 PM
Post
#10
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
Good AM OM
I downloaded and ran ROOTER Twice ...cuz it was so quick i thought it was wrong ....the symptoms now are the computer is faster and EXPLORER is now working where it did not work ... CHROME is not working however ... SYMPTOM 2 : I still get the prompt when I go into a file that usually has a video in it ....that gives me just the screen background graphics and then a PROMPT that when I click out of it ..... it also closes the file I am in ...but it does not go to the DESKTOP RECOVERY WHITE SCREEN it used to ... where i would just open control panel and change the desktop graphic .... SYMPTOM 3 : the desk ICONS have a DARKENED TEXT BOX on them which has been there for a while ...otherwise it seems right now to be pretty fast ...but there are a few items that are existent . RE: the anti virus ... i saw a commercial about COX, my internet provider, and they spoke of a FREE DOWNLOADABLE ANTI VIRUS SOFTWARE FOR MEMBERS from Macafee ... should I go look for that and install It? THNX OM ...so far we are swimming out of this and the data is safe for now ... Appreciate your work and assistance John Hancock here are those two LOGS : ROOTER FIRST LOG Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2 X86-based PC ( Multiprocessor Free : ) BIOS : Phoenix - AwardBIOS v6.00PG USER : HP_Administrator ( Administrator ) BOOT : Normal boot Tue 03/03/2009|11:05 ----------------------\\ Search.. ----------------------\\ Cracks & Keygens.. C:\DOCUME~1\HP_ADM~1\Application Data\Azureus\torrents\Macromedia_Flash_Professional_8_with_KeyGen_^mininova.org^[1].torrent C:\DOCUME~1\HP_ADM~1\My Documents\Azureus Downloads\PowerISO 3.9\PowerISO_keygen.exe 1 - "C:\Rooter$\Rooter_1.txt" - Tue 03/03/2009|11:06 ----------------------\\ Scan completed at 11:06 and the SECOND LOG : Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2 X86-based PC ( Multiprocessor Free : ) BIOS : Phoenix - AwardBIOS v6.00PG USER : HP_Administrator ( Administrator ) BOOT : Normal boot C:\ (Local Disk) - NTFS - Total:289 Go (Free:168 Go) D:\ (Local Disk) - FAT32 - Total:8 Go (Free:0 Go) E:\ (CD or DVD) F:\ (USB) G:\ (USB) H:\ (USB) I:\ (USB) J:\ (USB) Tue 03/03/2009|11:08 ----------------------\\ Search.. ----------------------\\ Cracks & Keygens.. C:\DOCUME~1\HP_ADM~1\Application Data\Azureus\torrents\Macromedia_Flash_Professional_8_with_KeyGen_^mininova.org^[1].torrent C:\DOCUME~1\HP_ADM~1\My Documents\Azureus Downloads\PowerISO 3.9\PowerISO_keygen.exe 1 - "C:\Rooter$\Rooter_1.txt" - Tue 03/03/2009|11:06 2 - "C:\Rooter$\Rooter_2.txt" - Tue 03/03/2009|11:08 ----------------------\\ Scan completed at 11:08 Here is The HIJACK LOG : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 11:09:51 AM, on 3/3/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\arservice.exe C:\Program Files\Prevx\prevx.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Maxtor\Sync\SyncServices.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\dllhost.exe C:\Program Files\Prevx\prevx.exe C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe C:\WINDOWS\explorer.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user') O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user') O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image005.jpg O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg O24 - Desktop Component 2: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg -- End of file - 4897 bytes |
|
|
|
Mar 3 2009, 05:42 PM
Post
#11
|
|
|
SuperHelper Group: Classroom Teacher Posts: 5,770 Joined: 27-April 08 Member No.: 78,707 Operating System: win98se, XP pro |
Hi Topband,
Cracks/keygens-probably how you got infected. Check to make sure System Restore is turned ON Click your start button, right click on My Computer, click Prorerties When the System Properties box appears,
Please go to Add/Remove programs and uninstall these programs if present MalwareRemovalBOT Anything with Norton or Symantec in the name Next Download the Norton Removal Tool from HERE and save it to your desktop. Next Double click on Norton_Removal_Tool.exe to run the tool. Follow the on-screen instructions. Your computer may be restarted more than once, and you may be asked to repeat some steps after the computer restarts. Open hijackthis, do a system scan only and checkmark these lines, if present O4 - HKCU\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll"" O4 - HKUS\S-1-5-18\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'Default user') O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing) O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe Close ALL other windows/browsers and click Fix Checked. Answer Yes if prompted. Close HJT. Next We'll use combofix again, but run it a different way. Please follow all previous instructions regarding security programs. Open a new Notepad session
CODE http://forums.whatthetech.com/Malwarebytes_not_working_Plus_More_t100548.html&pid=534309#entry534309 Collect::[4] C:\3whjawja.sys c:\documents and settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll c:\documents and settings\HP_Administrator\Application Data\Macromedia\Common\9e0840921.dll File:: c:\windows\Tasks\MalwareRemovalBot Scheduled Scan.job c:\program files\MalwareRemovalBot\MalwareRemovalBot.exe c:\program files\MalwareRemovalBot c:\windows\Tasks\Norton 360.job c:\progra~1\NORTON~2\MainStub.exe c:\windows\Tasks\Norton Security Scan for HP_Administrator.job c:\program files\Norton Security Scan\Nss.exe C:\DOCUME~1\HP_ADM~1\Application Data\Azureus\torrents\Macromedia_Flash_Professional_8_with_KeyGen_^mininova.org^[1].torrent C:\DOCUME~1\HP_ADM~1\My Documents\Azureus Downloads\PowerISO 3.9\PowerISO_keygen.exe Folder:: c:\program files\MalwareRemovalBot c:\documents and settings\HP_Administrator\Application Data\MalwareRemovalBot c:\program files\Norton Security Scan c:\program files\Common Files\Symantec Shared c:\documents and settings\All Users\Application Data\Symantec c:\program files\Symantec c:\program files\Norton 360 Registry:: [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "wave1"="" "midi1"="" "mixer1"="" "aux1"="" "wave2"="" "midi2"="" "mixer2"="" "aux2"="" [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{575046a8-3b27-11dd-a840-0018f3308545}] In the notepad
Using your mouse left button, drag the new file CFscript.txt and drop it on the ComboFix.exe icon as shown below. This will start ComboFix again.Close all browser/windows first. **Note: Do not mouseclick combofix's window while it's running. That may cause it to stall** ![]() **Note** When CF finishes running, the ComboFix log will open along with a message box--do not be alarmed. With the above script, ComboFix will capture files to submit for analysis. Ensure you are connected to the internet and click OK on the message box. Please post back with
Thanks |
|
|
|
Mar 3 2009, 07:09 PM
Post
#12
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
PROCEDURES SUGGESTED EXCEPT THE LAST ONE
System Restore ON YES Live Update for SYMANTIc WOULD NOT REMOVE from program removal YES MALWAREBYTES REMOVED YES Norton apparently finally removed by the download provided YES upon restart Prevxcsi occcurs this time with 19 FIXES ---i did not activate (the freeware gives 20 fixes) also the DATA EXECUTION PREVENTION PROMPT WITH WMI and Microsoft Corporation appeared again When I attempted the left click drag of the "CFScript.txt" file : A Prompt came up saying "you cannot rename COMBOFIX as COMBO-FIX Please use another name preferrably made up of alphanumeric characters " OM I dont want to make the wrong move at this stage so whats the procedure please? JH |
|
|
|
Mar 3 2009, 07:17 PM
Post
#13
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
OM i forgot one thing: I also did the HIJACK LOG all in the order suggested ...here it is :
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 4:43:32 PM, on 3/3/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\arservice.exe C:\Program Files\Prevx\prevx.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Maxtor\Sync\SyncServices.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\dllhost.exe C:\WINDOWS\Explorer.EXE C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe C:\Program Files\Prevx\prevx.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKUS\S-1-5-19\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user') O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user') O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image005.jpg O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg O24 - Desktop Component 2: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg -- End of file - 4198 bytes |
|
|
|
Mar 3 2009, 07:18 PM
Post
#14
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 82 Joined: 17-August 08 Member No.: 81,037 Operating System: xp pro |
OM i forgot one thing: I also did the HIJACK LOG all in the order suggested ...here it is :
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 4:43:32 PM, on 3/3/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\arservice.exe C:\Program Files\Prevx\prevx.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Maxtor\Sync\SyncServices.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Microsoft SQL Server\MSSQL$RETSDATA\Binn\sqlservr.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\dllhost.exe C:\WINDOWS\Explorer.EXE C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe C:\Program Files\Prevx\prevx.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKUS\S-1-5-19\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\LocalService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [rundll32.exe] rundll32.exe "C:\Documents and Settings\NetworkService\Application Data\Macromedia\Common\9e0840921.dll"" (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user') O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user') O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe O23 - Service: Roxio Hard Drive Watcher 10 (RoxWatch10) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image005.jpg O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg O24 - Desktop Component 2: (no name) - file:///C:/DOCUME~1/HP_ADM~1/LOCALS~1/Temp/msohtml1/01/clip_image001.jpg -- End of file - 4198 bytes |
|
|
|
Mar 4 2009, 10:12 AM
Post
#15
|
|
|
SuperHelper Group: Classroom Teacher Posts: 5,770 Joined: 27-April 08 Member No.: 78,707 Operating System: win98se, XP pro |
Hi Topband,
Let's do it ths way instead. Please download the OTMoveIt3 by OldTimer.
Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes. In this case, after the reboot, open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTMoveIt\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post. Next, Please download Malwarebytes Anti-Malware and save it to your desktop.please double Click mbam-setup.exe to install the application.
Extra Note: If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly. Please post back with
Thanks |
|
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
16 | Tim F. | 203 | Yesterday, 03:30 PM Last post by: MrCharlie |
|||
![]() |
15 | tiancheng | 479 | Yesterday, 06:46 AM Last post by: Blade81 |
|||
![]() |
15 | Angel2121 | 495 | Yesterday, 05:46 AM Last post by: jpshortstuff |
|||
![]() |
16 | jester421 | 359 | 20th March 2010 - 09:18 AM Last post by: CatByte |
|||
|
Time is now: 22nd March 2010 - 03:54 AM |