![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| HijackThis Log Help Get Rid Of Malware With Help From Our Analysts. Follow the "First Steps" link at the top right of each page before posting for help. |
![]() |
|
|
Thread Tools |
|
|
#21 (permalink) | |
|
Asst Manager Security, Expert Analyst, Moderator, Security Team; Rangemaster, Moderator, TSF Academy
Join Date: May 2005
Posts: 20,007
OS: XP
|
Quote:
Code:
@shutdown -a It should look like this: Each time your machine threatens to shutdown, double click on fix.bat & it shall abort the shutdown procedure. That should ease some of your current difficulties
__________________
我 看见 我 忘记。我 听见 我 记住。我 做 我 了解。 ![]() One who resists learning because he knows it all, often gets left behind. |
|
|
|
|
|
|
#22 (permalink) |
|
Registered User
Join Date: Nov 2006
Posts: 15
OS: XP
|
I can't attach for some reason, i can't click on any of the options in the reply box, maybe because i'm in firefox.
And i have had no alerts about a viking worm. and when i cancel the shutdown alot of programs do not work. |
|
|
|
|
|
#23 (permalink) |
|
Asst Manager Security, Expert Analyst, Moderator, Security Team; Rangemaster, Moderator, TSF Academy
Join Date: May 2005
Posts: 20,007
OS: XP
|
Try posting the logs instead of attaching them. If you cant fit all into 1 post, continue in the next post
__________________
我 看见 我 忘记。我 听见 我 记住。我 做 我 了解。 ![]() One who resists learning because he knows it all, often gets left behind. |
|
|
|
|
|
#24 (permalink) |
|
Registered User
Join Date: Nov 2006
Posts: 15
OS: XP
|
Start Dreck Log
StartDreck (build 2.1.7 public stable) - 2006-11-12 @ 19:58:45 (GMT +00:00) Platform: Windows XP (Win NT 5.1.2600 Service Pack 2) Internet Explorer: 6.0.2900.2180 Logged in as end-user at YOUR-98E6BEB9DA »Registry »Run Keys »Current User »Run »RunOnce »Default User »Run *CTFMON.EXE=C:\WINDOWS\system32\CTFMON.EXE *AVG7_Run=C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE »RunOnce »Local Machine »Run *Recguard=C:\WINDOWS\SMINST\RECGUARD.EXE *SiSRaid=C:\Program Files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe *SiSPower=Rundll32.exe SiSPower.dll,ModeAgent *RemoteControl="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" *Cmaudio=RunDll32 cmicnfg.cpl,CMICtrlWnd *SunJavaUpdateSched=C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe *Comodo Personal Firewall=C:\Program Files\Comodo\Personal Firewall\CPF.exe sysrestart *Comodo Launch Pad Tray=C:\Program Files\Comodo\LaunchPad\CLPTray.exe *AVG7_CC=C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP »RunOnce »RunServices »RunServicesOnce »RunOnceEx »RunServicesOnceEx »File Associations (CR) +.bat *batfile="%1" %* +.com *comfile="%1" %* +.disabled *SpybotSD.DisabledFile="C:\Program Files\Spybot - Search & Destroy\blindman.exe" "%1" +.exe *exefile="%1" %* +.hta *htafile=C:\WINDOWS\system32\mshta.exe "%1" %* +.htm *FirefoxHTML=C:\PROGRA~1\MOZILL~1\FIREFOX.EXE -url "%1" +.html *FirefoxHTML=C:\PROGRA~1\MOZILL~1\FIREFOX.EXE -url "%1" +.js *JSFile=%SystemRoot%\System32\WScript.exe "%1" %* +.jse *JSEFile=%SystemRoot%\System32\WScript.exe "%1" %* +.pif *piffile="%1" %* +.reg *regfile=regedit.exe "%1" +.scr *scrfile="%1" /S +.txt *txtfile=%SystemRoot%\system32\NOTEPAD.EXE %1 +.vbs *VBSFile=%SystemRoot%\System32\WScript.exe "%1" %* +.vbe *VBEFile=%SystemRoot%\System32\WScript.exe "%1" %* +.wsh *WSHFile=%SystemRoot%\System32\WScript.exe "%1" %* +.wsf *WSFFile=%SystemRoot%\System32\WScript.exe "%1" %* +.lnk `lnkfile= [key or value does not exist] »Active Setup (LM) +Internet Explorer/>{26923b43-4d38-484f-9b9e-de460746276c} *StubPath=%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE +Outlook Express/>{881dd1c5-3dcf-431b-b061-f3f88e8be88a} *StubPath=%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE +Themes Setup/{2C7339CF-2B09-4501-B3F3-F3508C9228ED} *StubPath=%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll +Microsoft Outlook Express 6/{44BBA840-CC51-11CF-AAFA-00AA00B6015C} *StubPath="%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install +NetMeeting 3.01/{44BBA842-CC51-11CF-AAFA-00AA00B6015B} *StubPath=rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT +Internet Explorer/{4b218e3e-bc98-4770-93d3-2731b9329278} *StubPath=%SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection MarketplaceLinkInstall 896 %systemroot%\inf\ie.inf +Windows Messenger 4.7/{5945c046-1e7d-11d1-bc44-00c04fd912be} *StubPath=rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser +Microsoft Windows Media Player/{6BF52A52-394A-11d3-B153-00C04F79FAA6} *StubPath=rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.inf,PerUserStub +Address Book 6/{7790769C-0471-11d2-AF11-00C04FA35D02} *StubPath="%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install +Windows Desktop Update/{89820200-ECBD-11cf-8B85-00AA005B4340} *StubPath=regsvr32.exe /s /n /i:U shell32.dll +Internet Explorer 6/{89820200-ECBD-11cf-8B85-00AA005B4383} *StubPath=%SystemRoot%\system32\ie4uinit.exe »Browser Helper Objects (LM) *ToolBand.XBTP05231.1/{031F120A-BBAF-45d8-B306-375F2A6B9398} `InprocServer32=C:\PROGRA~1\ALCOHO~1\ALCOHO~2\a120_tb.dll *AcroIEHelper.AcroIEHlprObj.1/{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} `InprocServer32=C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll *{53707962-6F74-2D53-2644-206D7942484F} `InprocServer32=C:\PROGRA~1\SPYBOT~1\SDHelper.dll *SSVHelper Class/{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} `InprocServer32=C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll *NXIEHelper.NXIECatcher.1/{83B80A9C-D91A-4F22-8DCF-EA7204039F79} `InprocServer32=C:\Program Files\Xi\NetXfer\NXIEHelper.dll *IDBHO.IDBrowserExtension.1/{9030D464-4C02-4ABF-8ECC-5164760863C6} `InprocServer32=C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll *Windows Live Toolbar Helper/{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} `InprocServer32=C:\Program Files\Windows Live Toolbar\msntb.dll »Internet Explorer »Current User *Local Page=C:\WINDOWS\system32\blank.htm *Search Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch *Start Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome +SearchUrl »Default User *Start Page=http://www.pcservicecall.co.uk »Local Machine *Default_Page_URL=http://www.pcservicecall.co.uk *Default_Search_URL=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch *Local Page=%SystemRoot%\system32\blank.htm *Search Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch *Start Page=http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home *CustomizeSearch=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm *SearchAssistant=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm »ShellServiceObjectDelayLoad (LM) *PostBootReminder={7849596a-48ea-486e-8937-a2a3009f31a9} `InprocServer32=%SystemRoot%\system32\SHELL32.dll *CDBurn={fbeb8a05-beee-4442-804e-409d6c4515e9} `InprocServer32=%SystemRoot%\system32\SHELL32.dll *WebCheck={E6FB5E20-DE35-11CF-9C87-00AA005127ED} `InprocServer32=%SystemRoot%\system32\webcheck.dll *SysTray={35CEC8A3-2BE6-11D2-8773-92E220524153} `InprocServer32=C:\WINDOWS\system32\stobject.dll »Special NT Values »Current User *Load= *Run= *Programs=com exe bat pif cmd *SHELL= »Default User *Load= *Run= *Programs=com exe bat pif cmd *SHELL= »Local Machine *AppInit_DLLs= *SHELL=Explorer.exe *Userinit=C:\WINDOWS\system32\userinit.exe, »Files »Autostart Folders »Current User *C:\Documents and Settings\end-user\Start Menu\Programs\Startup\desktop.ini »Default User »Local Machine *C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini *C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Utility Tray.lnk »INI-Files »WIN.INI\[windows] *LOAD= *RUN= »SYSTEM.INI\[boot] *SHELL=Explorer.exe »Text Files *C:\boot.ini `[boot loader] `timeout=30 `default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS `[operating systems] `multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect *C:\msdos.sys *C:\config.sys *C:\WINDOWS\system32\config.nt `dos=high, umb `device=%SystemRoot%\system32\himem.sys `files=40 *C:\autoexec.bat *C:\WINDOWS\system32\autoexec.nt `@echo off `lh %SystemRoot%\system32\mscdexnt.exe `lh %SystemRoot%\system32\redir `lh %SystemRoot%\system32\dosx `SET BLASTER=A220 I5 D1 P330 T3 *C:\WINDOWS\wininit.ini `[rename] `nul=C:\DOCUME~1\end-user\LOCALS~1\Temp\AQ3DUN~1.EXE `NUL=C:\DOCUME~1\end-user\LOCALS~1\Temp\nstmp\uninstall.exe `NUL=C:\DOCUME~1\end-user\LOCALS~1\Temp\nstmp\uninstall.ini `NUL=C:\DOCUME~1\end-user\LOCALS~1\Temp\nstmp *C:\WINDOWS\system32\drivers\etc\hosts `127.0.0.1 localhost »Program Files *C:\ntldr *C:\ntdetect.com *C:\io.sys *C:\WINDOWS\system32\win.com *C:\WINDOWS\explorer.exe »%PATH% Companion Files +C:\WINDOWS\system32\cmirmdrv.exe *C:\WINDOWS\CMIRMDRV.EXE +C:\WINDOWS\system32\notepad.exe *C:\WINDOWS\NOTEPAD.EXE +C:\WINDOWS\system32\taskman.exe *C:\WINDOWS\TASKMAN.EXE +C:\WINDOWS\system32\winhlp32.exe *C:\WINDOWS\winhlp32.exe »System/Drivers »Running Processes +0=<idle> +4=<system> +676=\SystemRoot\System32\smss.exe *C:\WINDOWS\system32\ntdll.dll +724=\??\C:\WINDOWS\system32\csrss.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\CSRSRV.dll *C:\WINDOWS\system32\basesrv.dll *C:\WINDOWS\system32\winsrv.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\KERNEL32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\sxs.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\Apphelp.dll *C:\WINDOWS\system32\VERSION.dll +748=\??\C:\WINDOWS\SYSTEM32\winlogon.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\AUTHZ.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\NDdeApi.dll *C:\WINDOWS\system32\PROFMAP.dll *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\PSAPI.DLL *C:\WINDOWS\system32\REGAPI.dll *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\SETUPAPI.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\WINSTA.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\IMAGEHLP.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\SYSTEM32\MSGINA.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\SYSTEM32\ODBC32.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\SYSTEM32\odbcint.dll *C:\WINDOWS\SYSTEM32\SHSVCS.dll *C:\WINDOWS\system32\sfc.dll *C:\WINDOWS\SYSTEM32\sfc_os.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\Apphelp.dll *C:\WINDOWS\SYSTEM32\WINSCARD.DLL *C:\WINDOWS\SYSTEM32\WTSAPI32.dll *C:\WINDOWS\SYSTEM32\sxs.dll *C:\WINDOWS\SYSTEM32\WINMM.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\SYSTEM32\cscdll.dll *C:\WINDOWS\SYSTEM32\WlNotify.dll *C:\WINDOWS\SYSTEM32\WINSPOOL.DRV *C:\WINDOWS\system32\MPR.dll *C:\WINDOWS\SYSTEM32\rsaenh.dll *C:\WINDOWS\SYSTEM32\WgaLogon.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\SYSTEM32\NTMARTA.DLL *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\SYSTEM32\SAMLIB.dll *C:\WINDOWS\SYSTEM32\CLBCATQ.DLL *C:\WINDOWS\SYSTEM32\COMRes.dll *C:\WINDOWS\SYSTEM32\cscui.dll *C:\WINDOWS\system32\msv1_0.dll *C:\WINDOWS\SYSTEM32\iphlpapi.dll *C:\WINDOWS\SYSTEM32\xpsp2res.dll *C:\WINDOWS\SYSTEM32\wdmaud.drv *C:\WINDOWS\SYSTEM32\msacm32.drv *C:\WINDOWS\SYSTEM32\MSACM32.dll *C:\WINDOWS\SYSTEM32\midimap.dll +808=C:\WINDOWS\system32\lsass.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\LSASRV.dll *C:\WINDOWS\system32\MPR.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\system32\NTDSAPI.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\SAMLIB.dll *C:\WINDOWS\system32\SAMSRV.dll *C:\WINDOWS\system32\cryptdll.dll *C:\WINDOWS\system32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\UxTheme.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\system32\msprivs.dll *C:\WINDOWS\system32\kerberos.dll *C:\WINDOWS\system32\msv1_0.dll *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\system32\netlogon.dll *C:\WINDOWS\system32\w32time.dll *C:\WINDOWS\system32\MSVCP60.dll *C:\WINDOWS\system32\schannel.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\wdigest.dll *C:\WINDOWS\system32\rsaenh.dll *C:\WINDOWS\system32\scecli.dll *C:\WINDOWS\system32\SETUPAPI.dll *C:\WINDOWS\system32\ipsecsvc.dll *C:\WINDOWS\system32\AUTHZ.dll *C:\WINDOWS\system32\oakley.DLL *C:\WINDOWS\system32\WINIPSEC.DLL *C:\WINDOWS\system32\pstorsvc.dll *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll *C:\WINDOWS\system32\psbase.dll *C:\WINDOWS\system32\dssenh.dll +960=C:\WINDOWS\system32\svchost.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\UxTheme.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\system32\NTMARTA.DLL *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\SAMLIB.dll *c:\windows\system32\rpcss.dll *c:\windows\system32\Secur32.dll *c:\windows\system32\WS2_32.dll *c:\windows\system32\WS2HELP.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *c:\windows\system32\termsrv.dll *c:\windows\system32\ICAAPI.dll *c:\windows\system32\SETUPAPI.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\IMAGEHLP.dll *c:\windows\system32\AUTHZ.dll *c:\windows\system32\mstlsapi.dll *c:\windows\system32\ACTIVEDS.dll *c:\windows\system32\adsldpc.dll *C:\WINDOWS\system32\NETAPI32.dll *c:\windows\system32\ATL.DLL *C:\WINDOWS\system32\REGAPI.dll *C:\WINDOWS\system32\rsaenh.dll *C:\WINDOWS\system32\Apphelp.dll +1040=C:\WINDOWS\system32\svchost.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\UxTheme.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *c:\windows\system32\rpcss.dll *c:\windows\system32\Secur32.dll *c:\windows\system32\WS2_32.dll *c:\windows\system32\WS2HELP.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\rsaenh.dll *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\system32\aelupsvc32.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\MFC42.DLL *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\System32\winrnr.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\rasadhlp.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll +1144=C:\WINDOWS\System32\svchost.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\System32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\System32\WINMM.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\System32\MSACM32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\System32\UxTheme.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\System32\NTMARTA.DLL *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\System32\SAMLIB.dll *C:\WINDOWS\System32\xpsp2res.dll *c:\windows\system32\shsvcs.dll *C:\WINDOWS\System32\WINSTA.dll *C:\WINDOWS\system32\NETAPI32.dll *c:\windows\system32\dhcpcsvc.dll *c:\windows\system32\DNSAPI.dll *c:\windows\system32\WS2_32.dll *c:\windows\system32\WS2HELP.dll *c:\windows\system32\iphlpapi.dll *c:\windows\system32\Secur32.dll *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\System32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll *c:\windows\system32\wzcsvc.dll *c:\windows\system32\rtutils.dll *c:\windows\system32\WMI.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *c:\windows\system32\WTSAPI32.dll *c:\windows\system32\ESENT.dll *c:\windows\system32\ATL.DLL *C:\WINDOWS\System32\rsaenh.dll *C:\WINDOWS\System32\rastls.dll *C:\WINDOWS\system32\CRYPTUI.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\IMAGEHLP.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\System32\MPRAPI.dll *C:\WINDOWS\System32\ACTIVEDS.dll *C:\WINDOWS\System32\adsldpc.dll *C:\WINDOWS\System32\SETUPAPI.dll *C:\WINDOWS\System32\RASAPI32.dll *C:\WINDOWS\System32\rasman.dll *C:\WINDOWS\System32\TAPI32.dll *C:\WINDOWS\System32\SCHANNEL.dll *C:\WINDOWS\System32\WinSCard.dll *C:\WINDOWS\System32\CLBCATQ.DLL *C:\WINDOWS\System32\COMRes.dll *C:\WINDOWS\System32\raschap.dll *c:\windows\system32\schedsvc.dll *c:\windows\system32\NTDSAPI.dll *C:\WINDOWS\system32\msv1_0.dll *C:\WINDOWS\System32\MSIDLE.DLL *c:\windows\system32\audiosrv.dll *c:\windows\system32\wkssvc.dll *c:\windows\system32\cryptsvc.dll *c:\windows\system32\certcli.dll *c:\windows\system32\srvsvc.dll *c:\windows\pchealth\helpctr\binaries\pchsvc.dll *c:\windows\system32\es.dll *c:\windows\system32\ersvc.dll *c:\windows\system32\srsvc.dll *c:\windows\system32\POWRPROF.dll *c:\windows\system32\seclogon.dll *c:\windows\system32\trkwks.dll *c:\windows\system32\w32time.dll *c:\windows\system32\MSVCP60.dll *c:\windows\system32\wbem\wmisvc.dll *C:\WINDOWS\system32\VSSAPI.DLL *c:\windows\system32\sens.dll *c:\windows\system32\browser.dll *c:\windows\system32\wuauserv.dll *c:\windows\system32\wscsvc.dll *c:\windows\system32\msi.dll *c:\windows\system32\netshell.dll *c:\windows\system32\credui.dll *C:\WINDOWS\system32\wuaueng.dll *C:\WINDOWS\System32\ADVPACK.dll *C:\WINDOWS\System32\SHFOLDER.dll *C:\WINDOWS\System32\WINSPOOL.DRV *C:\WINDOWS\System32\WINHTTP.dll *C:\WINDOWS\System32\Cabinet.dll *C:\WINDOWS\System32\mspatcha.dll *C:\WINDOWS\System32\sfc.dll *C:\WINDOWS\System32\sfc_os.dll *C:\WINDOWS\system32\wbem\wbemcomn.dll *C:\WINDOWS\SYSTEM32\WBEM\wbemcore.dll *C:\WINDOWS\SYSTEM32\WBEM\esscli.dll *C:\WINDOWS\SYSTEM32\WBEM\FastProx.dll *C:\WINDOWS\System32\SXS.DLL *C:\WINDOWS\system32\wbem\wbemsvc.dll *C:\WINDOWS\system32\comsvcs.dll *C:\WINDOWS\system32\colbact.DLL *C:\WINDOWS\system32\MTXCLU.DLL *C:\WINDOWS\system32\WSOCK32.dll *C:\WINDOWS\System32\CLUSAPI.DLL *C:\WINDOWS\System32\RESUTILS.DLL *C:\WINDOWS\system32\aelupsvc32.dll *C:\WINDOWS\System32\MFC42.DLL *C:\WINDOWS\system32\wbem\wmiutils.dll *C:\WINDOWS\system32\wbem\repdrvfs.dll *C:\WINDOWS\system32\wbem\wmiprvsd.dll *C:\WINDOWS\system32\NCObjAPI.DLL *C:\WINDOWS\system32\wbem\wbemess.dll *c:\windows\system32\netman.dll *c:\windows\system32\WZCSAPI.DLL *C:\WINDOWS\system32\wbem\ncprov.dll *C:\WINDOWS\System32\RASDLG.dll *C:\WINDOWS\System32\rasadhlp.dll *C:\WINDOWS\system32\Apphelp.dll *C:\WINDOWS\system32\wups.dll *C:\WINDOWS\System32\winrnr.dll *C:\WINDOWS\system32\urlmon.dll *C:\WINDOWS\System32\mlang.dll +1212=C:\WINDOWS\system32\svchost.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\UxTheme.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *c:\windows\system32\dnsrslvr.dll *c:\windows\system32\DNSAPI.dll *c:\windows\system32\WS2_32.dll *c:\windows\system32\WS2HELP.dll *c:\windows\system32\iphlpapi.dll *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll +1348=C:\WINDOWS\system32\svchost.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\UxTheme.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\system32\NTMARTA.DLL *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\SAMLIB.dll *C:\WINDOWS\system32\xpsp2res.dll *c:\windows\system32\lmhsvc.dll *c:\windows\system32\iphlpapi.dll *c:\windows\system32\WS2_32.dll *c:\windows\system32\WS2HELP.dll *c:\windows\system32\webclnt.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\wsock32.dll +1576=C:\WINDOWS\Explorer.EXE *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\BROWSEUI.dll *C:\WINDOWS\system32\SHDOCVW.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\CRYPTUI.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\IMAGEHLP.dll *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\UxTheme.dll *C:\WINDOWS\system32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\system32\appHelp.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\System32\cscui.dll *C:\WINDOWS\System32\CSCDLL.dll *C:\WINDOWS\system32\themeui.dll *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\MSIMG32.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\LINKINFO.dll *C:\WINDOWS\system32\ntshrui.dll *C:\WINDOWS\system32\ATL.DLL *C:\WINDOWS\system32\msi.dll *C:\WINDOWS\system32\SETUPAPI.dll *C:\WINDOWS\system32\WINSTA.dll *C:\WINDOWS\system32\webcheck.dll *C:\WINDOWS\system32\WSOCK32.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\NETSHELL.dll *C:\WINDOWS\system32\credui.dll *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\system32\rtutils.dll *C:\WINDOWS\system32\stobject.dll *C:\WINDOWS\system32\BatMeter.dll *C:\WINDOWS\system32\POWRPROF.dll *C:\WINDOWS\system32\WTSAPI32.dll *C:\WINDOWS\system32\urlmon.dll *C:\WINDOWS\system32\wdmaud.drv *C:\WINDOWS\system32\msacm32.drv *C:\WINDOWS\system32\midimap.dll *C:\WINDOWS\system32\rsaenh.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\WINDOWS\system32\MPR.dll *C:\WINDOWS\System32\drprov.dll *C:\WINDOWS\System32\ntlanman.dll *C:\WINDOWS\System32\NETUI0.dll *C:\WINDOWS\System32\NETUI1.dll *C:\WINDOWS\System32\NETRAP.dll *C:\WINDOWS\System32\SAMLIB.dll *C:\WINDOWS\System32\davclnt.dll *C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll *C:\Program Files\OpenOffice.org 2.0\program\shlxthdl.dll *C:\Program Files\OpenOffice.org 2.0\program\uwinapi.dll *C:\Program Files\OpenOffice.org 2.0\program\MSVCR71.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll *C:\Program Files\OpenOffice.org 2.0\program\stlport_vc7145.dll *C:\Program Files\OpenOffice.org 2.0\program\MSVCP71.dll *C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll *C:\WINDOWS\system32\zipfldr.dll *C:\Program Files\WinRAR\rarext.dll *C:\WINDOWS\system32\NTMARTA.DLL *C:\WINDOWS\system32\browselc.dll *C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll *C:\PROGRA~1\SPYBOT~1\SDHelper.dll *C:\WINDOWS\system32\olepro32.dll *C:\WINDOWS\system32\SXS.DLL *C:\WINDOWS\system32\DUSER.dll *C:\WINDOWS\system32\mydocs.dll *C:\WINDOWS\system32\shdoclc.dll +1604=C:\WINDOWS\system32\spoolsv.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\ShimEng.dll *C:\WINDOWS\AppPatch\AcGenral.DLL *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\UxTheme.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\system32\SPOOLSS.DLL *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\system32\rasadhlp.dll *C:\WINDOWS\system32\localspl.dll *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\sfc_os.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\IMAGEHLP.dll *C:\WINDOWS\system32\winspool.drv *C:\WINDOWS\system32\netapi32.dll *C:\WINDOWS\system32\cnbjmon.dll *C:\WINDOWS\system32\CNBJMON2.DLL *C:\WINDOWS\system32\pjlmon.dll *C:\WINDOWS\system32\tcpmon.dll *C:\WINDOWS\system32\usbmon.dll *C:\WINDOWS\System32\mswsock.dll *C:\WINDOWS\System32\winrnr.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\win32spl.dll *C:\WINDOWS\system32\NETRAP.dll *C:\WINDOWS\system32\NTDSAPI.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\inetpp.dll +1952=C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\engine.dll *C:\WINDOWS\system32\SHFOLDER.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\PSAPI.DLL *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\system32\NTMARTA.DLL *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\SAMLIB.dll +1996=C:\Program Files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\WINSPOOL.DRV *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll +2008=C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSVCP71.dll *C:\WINDOWS\system32\MSVCR71.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\avglog.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\Program Files\Grisoft\AVG Free\avgcfg.dll *C:\Program Files\Grisoft\AVG Free\avgklib.dll *C:\WINDOWS\system32\SHFOLDER.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\system32\psapi.dll *C:\WINDOWS\system32\wbem\wbemprox.dll *C:\WINDOWS\system32\wbem\wbemcomn.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\wbem\wbemsvc.dll *C:\WINDOWS\system32\wbem\fastprox.dll *C:\WINDOWS\system32\MSVCP60.dll *C:\WINDOWS\system32\NTDSAPI.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\system32\Secur32.dll *C:\Program Files\Grisoft\AVG Free\avglng.dll +2020=C:\Program Files\Winamp\winamp.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\Program Files\Winamp\NSCRT.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\Program Files\Winamp\System\aacPlusDecoder.w5s *C:\Program Files\Winamp\System\jnetlib.w5s *C:\WINDOWS\system32\WSOCK32.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\Program Files\Winamp\System\playlist.w5s *C:\Program Files\Winamp\System\tagz.w5s *C:\Program Files\Winamp\System\xml.w5s *C:\Program Files\Winamp\Plugins\in_cdda.dll *C:\Program Files\Winamp\Plugins\in_flac.dll *C:\Program Files\Winamp\Plugins\in_mp3.dll *C:\Program Files\Winamp\Plugins\in_wave.dll *C:\Program Files\Winamp\libsndfile.dll *C:\Program Files\Winamp\Plugins\out_ds.dll *C:\Program Files\Winamp\Plugins\out_gapless.dll *C:\Program Files\Winamp\plugins\out_wave.dll *C:\WINDOWS\system32\ddraw.dll *C:\WINDOWS\system32\DCIMAN32.dll *C:\WINDOWS\system32\aelupsvc32.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\MFC42.DLL *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\Program Files\Winamp\Plugins\gen_hotkeys.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\Program Files\Winamp\Plugins\gen_jumpex.dll *C:\WINDOWS\system32\POWRPROF.DLL *C:\Program Files\Winamp\Plugins\gen_msn.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\Program Files\Winamp\Plugins\gen_tips.dll *C:\Program Files\Winamp\Plugins\gen_tray.dll *C:\Program Files\Winamp\Plugins\gen_wa2_scrobbler.dll *C:\WINDOWS\system32\netapi32.dll *C:\WINDOWS\system32\appHelp.dll *C:\WINDOWS\system32\shdocvw.dll *C:\WINDOWS\system32\CRYPTUI.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\IMAGEHLP.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll *C:\WINDOWS\system32\SETUPAPI.dll *C:\WINDOWS\system32\urlmon.dll *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\dsound.dll *C:\WINDOWS\system32\wdmaud.drv *C:\WINDOWS\system32\msacm32.drv *C:\WINDOWS\system32\midimap.dll *C:\WINDOWS\System32\winrnr.dll *C:\WINDOWS\system32\rasadhlp.dll *C:\WINDOWS\system32\KsUser.dll +2032=C:\Program Files\Mozilla Firefox\firefox.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\Program Files\Mozilla Firefox\js3250.dll *C:\Program Files\Mozilla Firefox\nspr4.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\WSOCK32.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\Program Files\Mozilla Firefox\xpcom_core.dll *C:\Program Files\Mozilla Firefox\plc4.dll *C:\Program Files\Mozilla Firefox\plds4.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\VERSION.dll *C:\Program Files\Mozilla Firefox\smime3.dll *C:\Program Files\Mozilla Firefox\nss3.dll *C:\Program Files\Mozilla Firefox\softokn3.dll *C:\Program Files\Mozilla Firefox\ssl3.dll *C:\Program Files\Mozilla Firefox\xpcom_compat.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\WINSPOOL.DRV *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\SETUPAPI.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\WINDOWS\system32\aelupsvc32.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\MFC42.DLL *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll *C:\Program Files\Mozilla Firefox\components\jar50.dll *C:\WINDOWS\system32\msimtf.dll *C:\WINDOWS\system32\MSCTF.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\System32\winrnr.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\rasadhlp.dll *C:\WINDOWS\system32\msimg32.dll *C:\WINDOWS\system32\IMM32.DLL *C:\WINDOWS\system32\appHelp.dll *C:\WINDOWS\System32\cscui.dll *C:\WINDOWS\System32\CSCDLL.dll *C:\WINDOWS\system32\browseui.dll *C:\WINDOWS\system32\ntshrui.dll *C:\WINDOWS\system32\ATL.DLL *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\system32\USERENV.dll *C:\WINDOWS\system32\LINKINFO.dll *C:\Program Files\OpenOffice.org 2.0\program\shlxthdl.dll *C:\Program Files\OpenOffice.org 2.0\program\uwinapi.dll *C:\Program Files\OpenOffice.org 2.0\program\MSVCR71.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll *C:\Program Files\OpenOffice.org 2.0\program\stlport_vc7145.dll *C:\Program Files\OpenOffice.org 2.0\program\MSVCP71.dll *C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll *C:\WINDOWS\system32\SHDOCVW.dll *C:\WINDOWS\system32\CRYPTUI.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\IMAGEHLP.dll *C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll +180=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\VERSION.dll *C:\Program Files\CyberLink\PowerDVD\CLRCEngine2.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll +208=C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll +268=C:\Program Files\Comodo\Personal Firewall\CPF.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\Program Files\Comodo\Personal Firewall\clicapi.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\iphlpapi.dll *C:\Program Files\Comodo\Personal Firewall\dbghelp.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\WINSPOOL.DRV *C:\WINDOWS\system32\oledlg.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\wtsapi32.dll *C:\WINDOWS\system32\WINSTA.dll *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\NTMARTA.DLL *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\SAMLIB.dll *C:\WINDOWS\system32\RICHED32.DLL *C:\WINDOWS\system32\RICHED20.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\system32\asycfilt.dll *C:\WINDOWS\system32\rsaenh.dll +272=C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\MSVCR71.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\system32\Secur32.dll +296=C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\libsasl.dll *C:\WINDOWS\system32\WSOCK32.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\MSVCR71.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\MSVCP71.dll *C:\WINDOWS\system32\SHFOLDER.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\comctl32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\Program Files\Grisoft\AVG Free\avgcfg.dll *C:\Program Files\Grisoft\AVG Free\avgklib.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\avglog.dll *C:\Program Files\Grisoft\AVG Free\avglng.dll *C:\Program Files\Grisoft\AVG Free\avgscan.dll *C:\Program Files\Grisoft\AVG Free\avgunarc.dll *C:\WINDOWS\system32\RASAPI32.DLL *C:\WINDOWS\system32\rasman.dll *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\system32\TAPI32.dll *C:\WINDOWS\system32\rtutils.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\SCHANNEL.DLL *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\USERENV.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\saslcrammd5.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\sasldigestmd5.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\sasllogin.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\saslplain.dll *C:\Program Files\Grisoft\AVG Free\avgmail.dll *C:\WINDOWS\system32\SensAPI.DLL *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\system32\wtsapi32.dll *C:\WINDOWS\system32\WINSTA.dll *C:\WINDOWS\system32\psapi.dll *C:\WINDOWS\system32\aelupsvc32.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\MFC42.DLL *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\avgemcps.dll +336=C:\Program Files\Comodo\LaunchPad\CLPTray.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\WINSPOOL.DRV *C:\WINDOWS\system32\oledlg.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll +464=C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTMgr.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\AvgCtrl.dll *C:\WINDOWS\system32\MFC71.DLL *C:\WINDOWS\system32\MSVCR71.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\MSVFW32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\MSVCP71.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\system32\SHFOLDER.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\AvgAbout.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTest.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\AvgTRes.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\AvgSet.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\avglog.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\SETUPAPI.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\Program Files\Grisoft\AVG Free\avgcfg.dll *C:\Program Files\Grisoft\AVG Free\avgklib.dll *C:\Program Files\Grisoft\AVG Free\avglng.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\psapi.dll *C:\Program Files\Grisoft\AVG Free\avgf.dll *C:\Program Files\Grisoft\AVG Free\AVGRES.DLL *C:\Program Files\Grisoft\AVG Free\avgcckrn.dll *C:\Program Files\Grisoft\AVG Free\avgvault.dll *C:\Program Files\Grisoft\AVG Free\avgrep.dll *C:\Program Files\Grisoft\AVG Free\avgunarc.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\avgemsui.dll *C:\PROGRA~1\Grisoft\AVGFRE~1\avgemcps.dll +472=C:\Program Files\Comodo\Personal Firewall\cmdagent.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\PSAPI.DLL *C:\WINDOWS\system32\VERSION.dll *C:\Program Files\Comodo\Personal Firewall\dbghelp.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\WINSPOOL.DRV *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\OLEACC.dll *C:\WINDOWS\system32\MSVCP60.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\WtsApi32.dll *C:\WINDOWS\system32\WINSTA.dll *C:\WINDOWS\system32\NETAPI32.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\system32\wbem\wbemprox.dll *C:\WINDOWS\system32\wbem\wbemcomn.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\WINDOWS\system32\wbem\wbemsvc.dll *C:\WINDOWS\system32\wbem\fastprox.dll *C:\WINDOWS\system32\NTDSAPI.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\Secur32.dll +484=C:\WINDOWS\system32\CTsvcCDA.EXE *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll +528=C:\WINDOWS\system32\sistray.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\SiSApCom.dll *C:\WINDOWS\system32\DDRAW.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\DCIMAN32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\system32\SiSBase.dll *C:\WINDOWS\system32\MFC42.DLL *C:\WINDOWS\system32\WINSPOOL.DRV *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\OLEAUT32.dll +668=C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\System32\mswsock.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\System32\winrnr.dll *C:\WINDOWS\system32\WLDAP32.dll *C:\WINDOWS\system32\rasadhlp.dll *C:\WINDOWS\system32\aelupsvc32.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\WINDOWS\system32\MFC42.DLL *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll +968=C:\WINDOWS\system32\wdfmgr.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\SETUPAPI.dll *C:\WINDOWS\system32\Secur32.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\IMAGEHLP.dll +1756=C:\Program Files\Last.fm\LastFM.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\Program Files\Last.fm\LastFMTools1.dll *C:\Program Files\Last.fm\SHFOLDER.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\SHELL32.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\SHLWAPI.dll *C:\Program Files\Last.fm\QtXml4.dll *C:\Program Files\Last.fm\QtCore4.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\WS2_32.dll *C:\WINDOWS\system32\WS2HELP.dll *C:\Program Files\Last.fm\MSVCP71.dll *C:\Program Files\Last.fm\MSVCR71.dll *C:\Program Files\Last.fm\QtGui4.dll *C:\WINDOWS\system32\comdlg32.dll *C:\WINDOWS\system32\COMCTL32.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\IMM32.dll *C:\WINDOWS\system32\WINMM.dll *C:\WINDOWS\system32\WINSPOOL.DRV *C:\Program Files\Last.fm\QtNetwork4.dll *C:\WINDOWS\system32\VERSION.dll *C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\Program Files\Last.fm\services\service_settings.dll *C:\WINDOWS\system32\usp10.dll *C:\WINDOWS\system32\xpsp2res.dll *C:\Program Files\Last.fm\imageformats\qjpeg1.dll *C:\Program Files\Last.fm\services\service_web.dll *C:\Program Files\Last.fm\services\input_http.dll *C:\Program Files\Last.fm\services\transcode_mp3.dll *C:\Program Files\Last.fm\services\playback_rtaudio.dll *C:\WINDOWS\system32\DSOUND.dll *C:\WINDOWS\system32\WINTRUST.dll *C:\WINDOWS\system32\CRYPT32.dll *C:\WINDOWS\system32\MSASN1.dll *C:\WINDOWS\system32\IMAGEHLP.dll *C:\WINDOWS\system32\wdmaud.drv *C:\WINDOWS\system32\msacm32.drv *C:\WINDOWS\system32\MSACM32.dll *C:\WINDOWS\system32\midimap.dll *C:\WINDOWS\system32\KsUser.dll *C:\Program Files\Last.fm\extensions\extension_metadata.dll *C:\Program Files\Last.fm\extensions\extension_search.dll *C:\Program Files\Last.fm\extensions\extension_sidebar.dll *C:\WINDOWS\system32\aelupsvc32.dll *C:\WINDOWS\system32\WININET.dll *C:\WINDOWS\system32\MFC42.DLL *C:\WINDOWS\system32\iphlpapi.dll *C:\WINDOWS\system32\mswsock.dll *C:\WINDOWS\system32\hnetcfg.dll *C:\WINDOWS\System32\wshtcpip.dll *C:\WINDOWS\system32\DNSAPI.dll *C:\WINDOWS\system32\rasadhlp.dll *C:\WINDOWS\System32\winrnr.dll *C:\WINDOWS\system32\WLDAP32.dll +1564=C:\Documents and Settings\end-user\Desktop\start\StartDreck.exe *C:\WINDOWS\system32\ntdll.dll *C:\WINDOWS\system32\kernel32.dll *C:\Documents and Settings\end-user\Desktop\start\VB40032.DLL *C:\WINDOWS\system32\ADVAPI32.dll *C:\WINDOWS\system32\RPCRT4.dll *C:\WINDOWS\system32\GDI32.dll *C:\WINDOWS\system32\USER32.dll *C:\WINDOWS\system32\MSVCRT20.dll *C:\WINDOWS\system32\ole32.dll *C:\WINDOWS\system32\msvcrt.dll *C:\WINDOWS\system32\OLEAUT32.dll *C:\WINDOWS\system32\OLEPRO32.DLL *C:\Program Files\Comodo\Personal Firewall\appguard.dll *C:\Documents and Settings\end-user\Desktop\start\VB4DE32.DLL *C:\WINDOWS\SYSTEM32\uxtheme.dll *C:\WINDOWS\system32\CLBCATQ.DLL *C:\WINDOWS\system32\COMRes.dll *C:\WINDOWS\system32\VERSION.dll *C:\Documents and Settings\end-user\Desktop\start\PSAPI.DLL »NT Services »VMM32Files (LM) »%System%\VMM32 »%System%\IOSUBSYS »Application specific »MS Office 97/8.0 STARTUP-PATH »Current User »Default User »Local Machine »ICQ NetDetect »Current User »Default User |
|
|
|
|
|
#25 (permalink) |
|
Registered User
Join Date: Nov 2006
Posts: 15
OS: XP
|
Autostart log
end-user - 06-11-12@19:48:08.73 running from C:\Documents and Settings\end-user\Desktop\New Folder\ HKLM\System\CurrentControlSet\Services AVG Anti-Spyware Guard AVG Anti-Spyware guard (Not verified) Anti-Malware Development a.s. c:\program files\grisoft\avg anti-spyware 7.5\guard.exe Avg7Alrt AVG Alert Manager (Not verified) GRISOFT, s.r.o. c:\program files\grisoft\avg free\avgamsvr.exe Avg7UpdSvc AVG Update Service (Not verified) GRISOFT, s.r.o. c:\program files\grisoft\avg free\avgupsvc.exe AVGEMS AVG E-Mail Scanner (Not verified) GRISOFT, s.r.o. c:\program files\grisoft\avg free\avgemc.exe CmdAgent Comodo Personal Firewall Application Agent (Verified) Comodo CA Limited c:\program files\comodo\personal firewall\cmdagent.exe Creative Service for CDROM Access Creative Service for CDROM Access (Not verified) Creative Technology Ltd c:\windows\system32\ctsvccda.exe MouTALS ¹ÜÀíϵͳµÄ°²È«Ä¿Â¼£¬´æ´¢¹Ø¼üµÄ°²È«ÐÅÏ¢¡£ File not found: C:\WINDOWS\SYSTEM32\WBEM\SMTPCONFS.DLL PNMSRV File not found: c:\program files\panda software\panda antivirus + firewall 2007\firewall\PNMSRV.EXE StarWindService Enables network access to local devices via iSCSI protocol. (Not verified) Rocket Division Software c:\program files\alcohol soft\alcohol 120\starwind\starwindservice.exe HKLM\System\CurrentControlSet\Services ALCXWDM File not found: system32\drivers\ALCXWDM.SYS APPFLT Panda APPFLT (Not verified) Panda Software c:\windows\system32\drivers\appflt.sys AVG Anti-Spyware Driver c:\program files\grisoft\avg anti-spyware 7.5\guard.sys Avg7Core AVG Scanning Engine (Not verified) GRISOFT, s.r.o. c:\windows\system32\drivers\avg7core.sys Avg7RsW AVG Resident Shield Unload Helper (Not verified) GRISOFT, s.r.o. c:\windows\system32\drivers\avg7rsw.sys Avg7RsXP AVG Resident Anti-Virus Shield (Not verified) GRISOFT, s.r.o. c:\windows\system32\drivers\avg7rsxp.sys AvgAsCln AVG7 Clean Driver (Not verified) GRISOFT, s.r.o. c:\windows\system32\drivers\avgascln.sys AvgClean AVG7 Clean Driver (Not verified) GRISOFT, s.r.o. c:\windows\system32\drivers\avgclean.sys AvgTdi AVG Network connection watcher (Not verified) GRISOFT, s.r.o. c:\windows\system32\drivers\avgtdi.sys CmdMon Comodo Personal Firewall Application Engine (Not verified) Comodo Research Lab., Inc. c:\windows\system32\drivers\cmdmon.sys DSAFLT (Not verified) Panda Software International c:\windows\system32\drivers\dsaflt.sys FNETMON Panda FNetMon (Not verified) Panda Software c:\windows\system32\drivers\fnetmon.sys GEARAspiWDM CDRom Class Filter Driver (Verified) GEAR Software Inc. c:\windows\system32\drivers\gearaspiwdm.sys IDSFLT Intrusion Detection System (Not verified) Panda Software International c:\windows\system32\drivers\idsflt.sys Inspect Comodo Personal Firewall Network Engine (Not verified) Comodo Research Labs, Inc. c:\windows\system32\drivers\inspect.sys MZU_RK File not found: C:\WINDOWS\system32\MZU_DRV.sys NETFLTDI File not found: C:\WINDOWS\system32\Drivers\NETFLTDI.SYS nwlnksipx NWLINK2 SIPX Protocol Driver (Not verified) Microsoft Corporation c:\windows\system32\drivers\nwlnksipx.sys PavProc Panda Process Protection driver (Not verified) Panda Software c:\windows\system32\drivers\pavproc.sys Pcouffin Patin-Couffin low level access layer for CD devices (Not verified) VSO Software c:\windows\system32\drivers\pcouffin.sys PfModNT PCI/ISA Device Info. Service (Not verified) Creative Technology Ltd. c:\windows\system32\drivers\pfmodnt.sys Secdrv SafeDisc driver (Not verified) Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. c:\windows\system32\drivers\secdrv.sys sisperf SiS Filter Driver (Not verified) Silicon Integrated Systems Corp. c:\windows\system32\drivers\sisperf.sys SMSFLT (Not verified) Panda Software International c:\windows\system32\drivers\smsflt.sys sptd c:\windows\system32\drivers\sptd.sys vaxscsi c:\windows\system32\drivers\vaxscsi.sys WNMFLT (Not verified) Panda Software International c:\windows\system32\drivers\wnmflt.sys HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9 MSTCPChain Provider MFClDLL c:\windows\system32\aelupsvc32.dll MSTCP Provider MFClDLL c:\windows\system32\aelupsvc32.dll HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Recguard Recguard MFC Application c:\windows\sminst\recguard.exe SiSRaid Sraid Application (Not verified) SiS c:\program files\silicon integrated systems\sisraidpackage\sraid.exe SiSPower Dynamic link library for setting Power Scheme (Not verified) Silicon Integrated Systems Corporation c:\windows\system32\sispower.dll RemoteControl PowerDVD RC Service (Not verified) Cyberlink Corp. c:\program files\cyberlink\powerdvd\pdvdserv.exe SunJavaUpdateSched Java(TM) 2 Platform Standard Edition binary (Not verified) Sun Microsystems, Inc. c:\program files\java\jre1.5.0_06\bin\jusched.exe Comodo Personal Firewall Comodo Firewall (Verified) Comodo CA Limited c:\program files\comodo\personal firewall\cpf.exe Comodo Launch Pad Tray Comodo Launch Pad Tray Application (Verified) Comodo CA Limited c:\program files\comodo\launchpad\clptray.exe AVG7_CC AVG Control Center (Not verified) GRISOFT, s.r.o. c:\program files\grisoft\avg free\avgcc.exe HKLM\SOFTWARE\Classes\Protocols\Filter application/octet-stream Microsoft .NET Runtime Execution Engine (Not verified) Microsoft Corporation c:\windows\system32\mscoree.dll application/x-complus Microsoft .NET Runtime Execution Engine (Not verified) Microsoft Corporation c:\windows\system32\mscoree.dll application/x-msdownload Microsoft .NET Runtime Execution Engine (Not verified) Microsoft Corporation c:\windows\system32\mscoree.dll HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components 0 File not found: about:Home HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components n/a Microsoft .NET IE SECURITY REGISTRATION (Not verified) Microsoft Corporation c:\windows\system32\mscories.dll C:\Documents and Settings\All Users\Start Menu\Programs\Startup Utility Tray.lnk SiS Compatible Super VGA Tray Application (Not verified) Silicon Integrated Systems Corporation c:\windows\system32\sistray.exe Task Scheduler Check Updates for Windows Live Toolbar.job MSN Search Toolbar Scheduled Update Utility (Not verified) Microsoft Corporation c:\program files\windows live toolbar\msntbup.exe HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects XBTP05231 Class File not found: C:\PROGRA~1\ALCOHO~1\ALCOHO~2\a120_tb.dll AcroIEHlprObj Class Adobe Acrobat IE Helper Version 7.0 for ActiveX (Verified) Adobe Systems, Incorporated c:\program files\adobe\acrobat 7.0\activex\acroiehelper.dll SSVHelper Class Java(TM) 2 Platform Standard Edition binary (Not verified) Sun Microsystems, Inc. c:\program files\java\jre1.5.0_06\bin\ssv.dll NXIECatcher Class NetXfer IE Helper Module (Not verified) Xi c:\program files\xi\netxfer\nxiehelper.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks AVG Anti-Spyware 7.5 AVG Anti-Spyware shellexecutehook (Not verified) Anti-Malware Development a.s. c:\program files\grisoft\avg anti-spyware 7.5\shellexecutehook.dll HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved Display Panning CPL Extension File not found: deskpan.dll Fusion Cache Microsoft .NET Runtime Execution Engine (Not verified) Microsoft Corporation c:\windows\system32\mscoree.dll SampleView ShellvRTF (Not verified) XSS c:\windows\system32\shellvrtf.dll AlcoholShellEx AXShlEx.dll (Verified) Alcohol Soft Code Signing Services c:\program files\alcohol soft\alcohol 120\axshlex.dll Shell Extensions for RealOne Player RealPlayer Shell Extensions (Not verified) RealNetworks, Inc. c:\program files\real\realplayer\rpshell.dll WinRAR shell extension c:\program files\winrar\rarext.dll OpenOffice.org Column Handler (Not verified) Sun Microsystems, Inc. c:\program files\openoffice.org 2.0\program\shlxthdl.dll OpenOffice.org Infotip Handler (Not verified) Sun Microsystems, Inc. c:\program files\openoffice.org 2.0\program\shlxthdl.dll OpenOffice.org Property Sheet Handler (Not verified) Sun Microsystems, Inc. c:\program files\openoffice.org 2.0\program\shlxthdl.dll OpenOffice.org Thumbnail Viewer (Not verified) Sun Microsystems, Inc. c:\program files\openoffice.org 2.0\program\shlxthdl.dll iTunes iTunes Mini Player DLL (Verified) Apple Computer, Inc. c:\program files\itunes\itunesminiplayer.dll NOMAD Explorer Creative Jukebox Explorer Plugin (Not verified) Creative Technology Ltd c:\program files\creative\creative zen touch\nomad explorer\ctjbns.dll Panda Antivirus File not found: C:\Program Files\Panda Software\Panda Antivirus + Firewall 2007\ShellTit.DLL AVG7 Shell Extension AVG Shell Extension (Not verified) GRISOFT, s.r.o. c:\program files\grisoft\avg free\avgse.dll AVG7 Find Extension AVG Shell Extension (Not verified) GRISOFT, s.r.o. c:\program files\grisoft\avg free\avgse.dll a-squared Context Menu Shell Extension File not found: C:\PROGRA~1\A-SQUA~1\A2CONT~1.DLL HKLM\Software\Classes\Folder\Shellex\ColumnHandlers {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} (Not verified) Sun Microsystems, Inc. c:\program files\openoffice.org 2.0\program\shlxthdl.dll PDF Shell Extension PDF Shell Extension (Not verified) Adobe Systems, Inc. c:\program files\adobe\acrobat 7.0\activex\pdfshell.dll HKLM\Software\Microsoft\Internet Explorer\Toolbar a120_tb.dll File not found: C:\Program Files\Alcohol Soft\Alcohol 120% Toolbar\a120_tb.dll NetXfer NetXfer IE Toolbar (Not verified) Xi c:\program files\xi\netxfer\nxtoolbar.dll |
|
|
|
|
|
#26 (permalink) |
|
Asst Manager Security, Expert Analyst, Moderator, Security Team; Rangemaster, Moderator, TSF Academy
Join Date: May 2005
Posts: 20,007
OS: XP
|
I apologise. There was a mistake in my startdreck instructions.
I meant to say ... Press 'Config' Press 'unmark all' check the following box only:- NT Kernel & FS Driver
__________________
我 看见 我 忘记。我 听见 我 记住。我 做 我 了解。 ![]() One who resists learning because he knows it all, often gets left behind. |
|
|
|
|
|
#27 (permalink) |
|
Registered User
Join Date: Nov 2006
Posts: 15
OS: XP
|
tartDreck (build 2.1.7 public stable) - 2006-11-12 @ 20:27:42 (GMT +00:00) Platform: Windows XP (Win NT 5.1.2600 Service Pack 2) Internet Explorer: 6.0.2900.2180 Logged in as end-user at YOUR-98E6BEB9DA »Registry »Files »System/Drivers »NT Kernel- and FS-drivers *Abiosdsk Abiosdsk - disabled *abp480n5 abp480n5 running boot *Microsoft ACPI Driver ACPI running boot *ACPIEC ACPIEC - disabled *adpu160m adpu160m running boot *Microsof |