Help!

  1. #1
    ron30189 is offline Valued Member

    Unhappy Help!

    Hi,
    Yesterday night while downloading some wallpapers my doctor spyware suddenly
    showed some malicious code blocked. I later scanedmy pc and found 65 infections. but since it was a free trail version of doctor spyware i could not remove it.
    My avast 4.7 could not find anything but i feel the rougue spyware (as shown by doctor spyware) is still there
    here's my hijackthis log

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:08:14 AM, on 8/18/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\acs.exe
    C:\WINDOWS\RTHDCPL.EXE
    C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
    C:\WINDOWS\ATK0100\HControl.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\Program Files\Google\Google Talk\googletalk.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Program Files\OneStepSearch\onestep.exe
    C:\Program Files\CyberLink\Shared Files\RichVideo.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\ATK0100\ATKOSD.exe
    C:\Program Files\OneStepSearch\onestep.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Sify Broadband\BBClient.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Sify Broadband\BBImpSec.exe
    C:\Documents and Settings\Admin\Desktop\HiJackThis.exe
    C:\Program Files\Mozilla Firefox\firefox.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sify.com
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\sw g.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
    O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [SifyBB] C:\Program Files\Sify Broadband\BBImpSec.exe
    O4 - HKCU\..\Run: [RegPowerClean] "C:\Program Files\Winferno\RegistryPowerCleaner\RegPowerClean. exe"
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Bluetooth Manager.lnk = ?
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O17 - HKLM\System\CCS\Services\Tcpip\..\{B89AA107-0301-40ED-9DC1-596413156F6B}: NameServer = 202.144.95.4,202.144.66.6
    O23 - Service: Atheros Configuration Service (acs) - Atheros - C:\WINDOWS\system32\acs.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    O23 - Service: OneStep Search Service - OneStepSearch.net, Inc. - C:\Program Files\OneStepSearch\onestep.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
    O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe

    --
    End of file - 7154 bytes

    Plz help me.


  2. #2
    ron30189 is offline Valued Member
    Hi,
    This is my ad aware log

    Scan Results
    Ad-Aware 2007 Free Edition
    Log File Created on:2007-08-1822:51:28
    Using Definitions File:C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware 2007\core.aawdef
    Computer name:HCL
    Name of user performing scan:SYSTEM
    Name of user ordering scan:Admin
    Scan completed successfully

    System Information
    File Version Information
    Ad-Aware 2007 Settings
    Extended Ad-Aware 2007 Settings
    Database Information
    Scan Statistics
    Scan Detailed Statistics
    Infections Found
    Listing of running processes
    System Information
    Number of processors:2
    Processor type:Genuine Intel(R) CPU T2080 @ 1.73GHz
    Memory Available:38%
    Total Physical Memory:938618880 Bytes
    Available Physical Memory:348930048 Bytes
    Total Page File Size:1179574272 Bytes
    Available On Page File:637239296 Bytes
    Total Virtual Memory:2147352576 Bytes
    Available Virtual Memory:1989087232 Bytes
    OS:Microsoft Windows XP 5.1 (Build 2600)
    [to top]
    File Verion Information
    File Version
    CEAPI.dll 7, 0, 1, 6
    aawservice.exe 7, 0, 1, 6
    Ad-Aware2007.exe 7.0.1.6
    [to top]
    Ad-Aware 2007 Settings
    Skipping files larger than:1048576 Bytes
    Ignoring infections with lower TAI than:3
    Safe Mode:False
    [to top]
    Extended Ad-Aware 2007 Settings
    Unload malicious processes and modules
    Unload Modules
    Let Windows remove files at Start-Up
    Deactivate Ad-Watch
    Re-analyze Scan Result
    Update Definitions on startup
    Delete Restored Items
    Permanent Archive Caching
    Write Protect System Files
    Create Log file
    Include basic settings
    Include advanced settings
    Include user and computer name
    Environment information
    Running processes
    Running processes and modules
    Include info about ignored objects in log file
    Consider definitions File Outdated after x days
    Proxy URL
    Proxy Port
    [to top]
    Database Info
    Version number:15
    Build Number:0
    Build Date and Time:2007/08/1312:15:06
    [to top]
    Scan Statistics
    Method:Full

    Items Scanned:149002
    Infections Detected:47
    Infections Removed:0
    Infections Quarantined:0
    Infections Ignored:0
    [to top]
    Scan Detailed Statistics
    Type Critical Total
    Process Scan 0 0
    Registry Scan 0 0
    Registry PE Scan 0 0
    Hosts Scan 0 0
    File Scan 0 0
    Folder Scan 0 0
    LSP Scan 0 0
    ADS Scan 0 0
    Cookie Scan 44 44
    File Hash Scan 0 0
    [to top]
    Infections Found
    Family Id Name Category TAI
    725 Tracking Cookie DataMiner 3
    [600000190] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.googleadservices.com Conversion /pagead/conversion/1072273079/
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIBanners755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com lastInviteTime /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIinvited755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIBannerCounter20555 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIFirstHit755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAILastHit755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAICampaignCounter755 /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat real.com RNsites /
    [600000190] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.googleadservices.com Conversion /pagead/conversion/1067912086/
    [600000050] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat tribalfusion.com ANON_ID /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net NETID01 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net NETSEGS_J05532 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net rsi_cls_1000000 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net rsi_segs_1000000 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net NETSEGS_K05540 /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.realarcade.com DiscKnown /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.realarcade.com NSC_hbnft-bqq.sfbm.dpn-80 /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat realarcadebundles.real.com NSC_hbnft-bqq.sfbm.dpn-80 /
    [600000144] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat doubleclick.net id /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net rsi_segs_1000000 /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net rsi_cls_1000000 /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net NETSEGS_K05540 /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net NETID01 /
    [600000050] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt tribalfusion.com ANON_ID /
    [600000661] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt kontera.com imprs /
    [600000661] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt kontera.com cluid /
    [600000460] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt ad.yieldmanager.com flashInstalled /
    [600000460] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt ad.yieldmanager.com rmCookiesChecked /
    [600000126] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt hitbox.com WSS_GW /
    [600000126] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt ehg-eset.hitbox.com DM570707NKNSV6 /
    [600000126] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt hitbox.com CTG /
    [600000457] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt adopt.euroclick.com LO /
    [600000457] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt adopt.euroclick.com UI /
    [600000457] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt adopt.euroclick.com NSC_mc-bepqu.fvspdmjdl.dpn-iuuq /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIBanners755 /
    [600000190] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt www.googleadservices.com Conversion /pagead/conversion/1072273079/
    [600000190] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt www.googleadservices.com Conversion /pagead/conversion/1067912086/
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAICampaignCounter755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAILastHit755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIFirstHit755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIBannerCounter20555 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIinvited755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com lastInviteTime /

    9999 MRU Object MRU Object 0
    [1] MRU Path: C:\Documents and Settings\Admin\Recent Count: 53
    [2] MRU Registry Key: S-1-5-21-789336058-884357618-839522115-1002\Software\Microsoft\Search Assistant\ACMru\5603 Count: 2
    [3] MRU Registry Key: S-1-5-21-789336058-884357618-839522115-1002\Software\Microsoft\Internet Explorer\TypedURLs Count: 23


    Quarantined Objects
    Family Id Name Category TAI

    Removed Objects
    Family Id Name Category TAI
    725 Tracking Cookie DataMiner 3
    [600000190] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.googleadservices.com Conversion /pagead/conversion/1072273079/
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIBanners755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com lastInviteTime /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIinvited755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIBannerCounter20555 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAIFirstHit755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAILastHit755 /
    [600000555] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat insightexpressai.com IXAICampaignCounter755 /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat real.com RNsites /
    [600000190] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.googleadservices.com Conversion /pagead/conversion/1067912086/
    [600000050] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat tribalfusion.com ANON_ID /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net NETID01 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net NETSEGS_J05532 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net rsi_cls_1000000 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net rsi_segs_1000000 /
    [600000415] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat revsci.net NETSEGS_K05540 /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.realarcade.com DiscKnown /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat www.realarcade.com NSC_hbnft-bqq.sfbm.dpn-80 /
    [600000083] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat realarcadebundles.real.com NSC_hbnft-bqq.sfbm.dpn-80 /
    [600000144] Browser: Internet Explorer Cookie: C:\Documents and Settings\Admin\Cookies\index.dat doubleclick.net id /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net rsi_segs_1000000 /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net rsi_cls_1000000 /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net NETSEGS_K05540 /
    [600000415] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt revsci.net NETID01 /
    [600000050] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt tribalfusion.com ANON_ID /
    [600000661] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt kontera.com imprs /
    [600000661] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt kontera.com cluid /
    [600000460] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt ad.yieldmanager.com flashInstalled /
    [600000460] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt ad.yieldmanager.com rmCookiesChecked /
    [600000126] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt hitbox.com WSS_GW /
    [600000126] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt ehg-eset.hitbox.com DM570707NKNSV6 /
    [600000126] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt hitbox.com CTG /
    [600000457] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt adopt.euroclick.com LO /
    [600000457] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt adopt.euroclick.com UI /
    [600000457] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt adopt.euroclick.com NSC_mc-bepqu.fvspdmjdl.dpn-iuuq /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIBanners755 /
    [600000190] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt www.googleadservices.com Conversion /pagead/conversion/1072273079/
    [600000190] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt www.googleadservices.com Conversion /pagead/conversion/1067912086/
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAICampaignCounter755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAILastHit755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIFirstHit755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIBannerCounter20555 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com IXAIinvited755 /
    [600000555] Browser: Firefox Cookie: C:\Documents and Settings\Admin\Application Data\Mozilla\Firefox\Profiles/s7e0yrls.default\cookies.txt insightexpressai.com lastInviteTime /

    9999 MRU Object MRU Object 0
    [1] MRU Path: C:\Documents and Settings\Admin\Recent Count: 53
    [2] MRU Registry Key: S-1-5-21-789336058-884357618-839522115-1002\Software\Microsoft\Search Assistant\ACMru\5603 Count: 2
    [3] MRU Registry Key: S-1-5-21-789336058-884357618-839522115-1002\Software\Microsoft\Internet Explorer\TypedURLs Count: 23

    [to top]
    Listing of Running Processes
    C:\WINDOWS\SYSTEM32\SMSS.EXE
    c:\windows\system32\smss.exe
    c:\windows\system32\ntdll.dll
    C:\WINDOWS\SYSTEM32\CSRSS.EXE
    c:\windows\system32\csrss.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\csrsrv.dll
    c:\windows\system32\basesrv.dll
    c:\windows\system32\winsrv.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\sxs.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\version.dll
    C:\WINDOWS\SYSTEM32\WINLOGON.EXE
    c:\windows\system32\winlogon.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\authz.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\nddeapi.dll
    c:\windows\system32\profmap.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\regapi.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\version.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\msgina.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\odbc32.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\odbcint.dll
    c:\windows\system32\shsvcs.dll
    c:\windows\system32\sfc.dll
    c:\windows\system32\sfc_os.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\sxs.dll
    c:\windows\system32\winscard.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\ati2evxx.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\cscdll.dll
    c:\windows\system32\wlnotify.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\mpr.dll
    c:\windows\system32\wgalogon.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\cscui.dll
    c:\windows\system32\wdmaud.drv
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\ntmarta.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\msacm32.drv
    c:\windows\system32\msacm32.dll
    c:\windows\system32\midimap.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\wbem\wbemprox.dll
    c:\windows\system32\wbem\wbemcomn.dll
    c:\windows\system32\wbem\wbemsvc.dll
    c:\windows\system32\wbem\fastprox.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\ntdsapi.dll
    c:\windows\system32\dnsapi.dll
    C:\WINDOWS\SYSTEM32\SERVICES.EXE
    c:\windows\system32\services.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\scesrv.dll
    c:\windows\system32\authz.dll
    c:\windows\system32\umpnpmgr.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\ncobjapi.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\eventlog.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\wtsapi32.dll
    C:\WINDOWS\SYSTEM32\LSASS.EXE
    c:\windows\system32\lsass.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\lsasrv.dll
    c:\windows\system32\mpr.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\ntdsapi.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\samsrv.dll
    c:\windows\system32\cryptdll.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\msprivs.dll
    c:\windows\system32\kerberos.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\netlogon.dll
    c:\windows\system32\w32time.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\schannel.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\wdigest.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\nwprovau.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\scecli.dll
    c:\windows\system32\ipsecsvc.dll
    c:\windows\system32\authz.dll
    c:\windows\system32\oakley.dll
    c:\windows\system32\winipsec.dll
    c:\windows\system32\pstorsvc.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\psbase.dll
    c:\windows\system32\dssenh.dll
    c:\windows\system32\xpsp2res.dll
    C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
    c:\windows\system32\ati2evxx.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\powrprof.dll
    c:\windows\system32\cfgmgr32.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\ati2edxx.dll
    c:\windows\system32\atipdlxx.dll
    c:\windows\system32\uxtheme.dll
    C:\WINDOWS\SYSTEM32\SVCHOST.EXE
    c:\windows\system32\svchost.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\ntmarta.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\rpcss.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\termsrv.dll
    c:\windows\system32\icaapi.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\authz.dll
    c:\windows\system32\mstlsapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\regapi.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\svchost.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\rpcss.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\wshisn.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\svchost.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\ntmarta.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\shsvcs.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\dhcpcsvc.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\wzcsvc.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\wmi.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\esent.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\rastls.dll
    c:\windows\system32\cryptui.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\mprapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\rasapi32.dll
    c:\windows\system32\rasman.dll
    c:\windows\system32\tapi32.dll
    c:\windows\system32\schannel.dll
    c:\windows\system32\winscard.dll
    c:\windows\system32\raschap.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\schedsvc.dll
    c:\windows\system32\ntdsapi.dll
    c:\windows\system32\msidle.dll
    c:\windows\system32\audiosrv.dll
    c:\windows\system32\wkssvc.dll
    c:\windows\system32\nwwks.dll
    c:\windows\system32\nwprovau.dll
    c:\windows\system32\mpr.dll
    c:\windows\system32\nwapi32.dll
    c:\windows\system32\qmgr.dll
    c:\windows\system32\shfolder.dll
    c:\windows\system32\winhttp.dll
    c:\windows\system32\srvsvc.dll
    c:\windows\pchealth\helpctr\binaries\pchsvc.dll
    c:\windows\system32\ersvc.dll
    c:\windows\system32\cryptsvc.dll
    c:\windows\system32\certcli.dll
    c:\windows\system32\hidserv.dll
    c:\windows\system32\hid.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\es.dll
    c:\windows\system32\dmserver.dll
    c:\windows\system32\netman.dll
    c:\windows\system32\netshell.dll
    c:\windows\system32\credui.dll
    c:\windows\system32\wzcsapi.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\mprdim.dll
    c:\windows\system32\iprtrmgr.dll
    c:\windows\system32\rtm.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\iprtprio.dll
    c:\windows\system32\seclogon.dll
    c:\windows\system32\ipxrtmgr.dll
    c:\windows\system32\adptif.dll
    c:\windows\system32\sens.dll
    c:\windows\system32\rasppp.dll
    c:\windows\system32\ntlsapi.dll
    c:\windows\system32\sxs.dll
    c:\windows\system32\ipxwan.dll
    c:\windows\system32\srsvc.dll
    c:\windows\system32\powrprof.dll
    c:\windows\system32\trkwks.dll
    c:\windows\system32\w32time.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\wbem\wmisvc.dll
    c:\windows\system32\vssapi.dll
    c:\windows\system32\browser.dll
    c:\windows\system32\wuauserv.dll
    c:\windows\system32\wuaueng.dll
    c:\windows\system32\cabinet.dll
    c:\windows\system32\mspatcha.dll
    c:\windows\system32\ipnathlp.dll
    c:\windows\system32\authz.dll
    c:\windows\system32\wscsvc.dll
    c:\windows\system32\msi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\wbem\wbemcomn.dll
    c:\windows\system32\wbem\wbemcore.dll
    c:\windows\system32\wbem\esscli.dll
    c:\windows\system32\wbem\fastprox.dll
    c:\windows\system32\comsvcs.dll
    c:\windows\system32\colbact.dll
    c:\windows\system32\mtxclu.dll
    c:\windows\system32\clusapi.dll
    c:\windows\system32\resutils.dll
    c:\windows\system32\upnp.dll
    c:\windows\system32\ssdpapi.dll
    c:\windows\system32\sfc.dll
    c:\windows\system32\sfc_os.dll
    c:\windows\system32\wbem\wmiutils.dll
    c:\windows\system32\wbem\repdrvfs.dll
    c:\windows\system32\wbem\wmiprvsd.dll
    c:\windows\system32\ncobjapi.dll
    c:\windows\system32\wbem\wbemess.dll
    c:\windows\system32\netcfgx.dll
    c:\windows\system32\wbem\ncprov.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\tapisrv.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\rasmans.dll
    c:\windows\system32\winipsec.dll
    c:\windows\system32\rastapi.dll
    c:\windows\system32\ipxrip.dll
    c:\windows\system32\ipxsap.dll
    c:\windows\system32\mprddm.dll
    c:\windows\system32\iashlpr.dll
    c:\windows\system32\iasrad.dll
    c:\windows\system32\iaspolcy.dll
    c:\windows\system32\iassvcs.dll
    c:\windows\system32\unimdm.tsp
    c:\windows\system32\uniplat.dll
    c:\windows\system32\unimdmat.dll
    c:\windows\system32\modemui.dll
    c:\windows\system32\kmddsp.tsp
    c:\windows\system32\ndptsp.tsp
    c:\windows\system32\ipconf.tsp
    c:\windows\system32\h323.tsp
    c:\windows\system32\hidphone.tsp
    c:\windows\system32\kerberos.dll
    c:\windows\system32\cryptdll.dll
    c:\windows\system32\iassdo.dll
    c:\program files\common files\system\ole db\oledb32.dll
    c:\windows\system32\msdart.dll
    c:\windows\system32\comdlg32.dll
    c:\program files\common files\system\ole db\oledb32r.dll
    c:\windows\system32\rasdlg.dll
    c:\windows\system32\rasauto.dll
    c:\windows\system32\icmp.dll
    c:\windows\system32\vbajet32.dll
    c:\windows\system32\upnphost.dll
    c:\windows\system32\iasnap.dll
    c:\windows\system32\iassam.dll
    c:\windows\system32\iasacct.dll
    c:\windows\system32\msxml3.dll
    c:\windows\system32\urlmon.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\wups2.dll
    c:\windows\system32\dssenh.dll
    c:\windows\system32\advpack.dll
    c:\windows\system32\netrap.dll
    c:\windows\system32\rasmxs.dll
    c:\windows\system32\catsrvut.dll
    c:\windows\system32\catsrv.dll
    c:\windows\system32\mfcsubs.dll
    c:\windows\system32\svchost.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\dnsrslvr.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
    c:\windows\system32\ati2evxx.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\powrprof.dll
    c:\windows\system32\cfgmgr32.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\ati2edxx.dll
    c:\windows\system32\atipdlxx.dll
    c:\windows\system32\ati2evxx.dll
    c:\windows\system32\uxtheme.dll
    C:\WINDOWS\SYSTEM32\SVCHOST.EXE
    c:\windows\system32\svchost.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\ntmarta.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\lmhsvc.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\webclnt.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\regsvc.dll
    c:\windows\system32\ssdpsrv.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\upnphost.dll
    c:\windows\system32\winhttp.dll
    c:\windows\system32\ssdpapi.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\msxml3.dll
    c:\windows\system32\urlmon.dll
    c:\windows\system32\mlang.dll
    c:\windows\system32\httpapi.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\udhisapi.dll
    c:\windows\system32\rasapi32.dll
    c:\windows\system32\rasman.dll
    c:\windows\system32\tapi32.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\sensapi.dll
    c:\windows\system32\winrnr.dll
    C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE
    c:\program files\alwil software\avast4\aswupdsv.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\program files\alwil software\avast4\aswcmns.dll
    c:\program files\alwil software\avast4\aswcmnos.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\msvcp71.dll
    c:\windows\system32\msvcr71.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\program files\alwil software\avast4\aswcmnb.dll
    C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE
    c:\program files\alwil software\avast4\ashserv.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\advapi32.dll
    c:\program files\alwil software\avast4\aswaux.dll
    c:\windows\system32\msvcp71.dll
    c:\windows\system32\msvcr71.dll
    c:\program files\alwil software\avast4\aswcmnb.dll
    c:\program files\alwil software\avast4\aswcmnos.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\program files\alwil software\avast4\aswengin.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\ole32.dll
    c:\program files\alwil software\avast4\aswscan.dll
    c:\program files\alwil software\avast4\aswcmns.dll
    c:\windows\system32\oleaut32.dll
    c:\program files\alwil software\avast4\ashbase.dll
    c:\windows\system32\version.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\program files\alwil software\avast4\ashtask.dll
    c:\program files\alwil software\avast4\aswinteg.dll
    c:\program files\alwil software\avast4\aswidle.dll
    c:\program files\alwil software\avast4\aavm4h.dll
    c:\windows\system32\dbghelp.dll
    c:\program files\alwil software\avast4\english\base.dll
    c:\program files\alwil software\avast4\unacev2.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\netapi32.dll
    c:\program files\alwil software\avast4\ahresmai.dll
    c:\program files\alwil software\avast4\ahresmes.dll
    c:\program files\alwil software\avast4\ahresns.dll
    c:\program files\alwil software\avast4\ahresout.dll
    c:\program files\alwil software\avast4\ahresp2p.dll
    c:\program files\alwil software\avast4\ahresstd.dll
    c:\program files\alwil software\avast4\ahresws.dll
    c:\program files\alwil software\avast4\ashssqlt.dll
    c:\windows\system32\icmp.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\perfos.dll
    c:\windows\system32\rasadhlp.dll
    C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
    c:\windows\system32\spoolsv.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\spoolss.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\localspl.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\sfc_os.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\netapi32.dll
    c:\windows\system32\cnbjmon.dll
    c:\windows\system32\mdimon.dll
    c:\windows\system32\msi.dll
    c:\windows\system32\pjlmon.dll
    c:\windows\system32\tcpmon.dll
    c:\windows\system32\tbtmon.dll
    c:\windows\system32\tosbthcrpapi.dll
    c:\windows\system32\tosbtapi.dll
    c:\windows\system32\tosbdapi.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\tbtmon98language.dll
    c:\windows\system32\usbmon.dll
    c:\windows\system32\spool\prtprocs\w32x86\mdippr.d ll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\nwprovau.dll
    c:\windows\system32\mpr.dll
    c:\windows\system32\win32spl.dll
    c:\windows\system32\netrap.dll
    c:\windows\system32\ntdsapi.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\inetpp.dll
    c:\windows\system32\xpsp2res.dll
    C:\WINDOWS\SYSTEM32\ACS.EXE
    c:\windows\system32\acs.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\athcfg20u.dll
    c:\windows\system32\cfgmgr32.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\mfc42u.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\athcfg20resu.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\pdh.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\odbc32.dll
    c:\windows\system32\odbcbcp.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\msvcirt.dll
    c:\windows\system32\odbcint.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\wsfwds.dll
    c:\windows\system32\wsimd.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\dsa.dll
    c:\windows\system32\winscard.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    C:\WINDOWS\RTHDCPL.EXE
    c:\windows\rthdcpl.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\dsound.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\version.dll
    c:\windows\system32\hhctrl.ocx
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\mpr.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\comdlg32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\wdmaud.drv
    c:\windows\system32\msacm32.drv
    c:\windows\system32\msacm32.dll
    c:\windows\system32\midimap.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\ksuser.dll
    C:\PROGRAM FILES\MOTOROLA\SMSERIAL\SM56HLPR.EXE
    c:\program files\motorola\smserial\sm56hlpr.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\version.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\oledlg.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\olepro32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\program files\motorola\smserial\sm56eng.dll
    c:\program files\motorola\smserial\sm56fra.dll
    c:\program files\motorola\smserial\sm56brz.dll
    c:\program files\motorola\smserial\sm56chs.dll
    c:\program files\motorola\smserial\sm56cht.dll
    c:\program files\motorola\smserial\sm56ger.dll
    c:\program files\motorola\smserial\sm56ita.dll
    c:\program files\motorola\smserial\sm56jpn.dll
    c:\program files\motorola\smserial\sm56esp.dll
    c:\program files\motorola\smserial\sm56kor.dll
    c:\program files\motorola\smserial\sm56dnk.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\mslbui.dll
    C:\WINDOWS\ATK0100\HCONTROL.EXE
    c:\windows\atk0100\hcontrol.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\atk0100\cmssc.dll
    c:\windows\system32\setupapi.dll
    c:\windows\atk0100\inter_f2.dll
    c:\windows\atk0100\atkwlioc.dll
    c:\windows\atk0100\sispkt.dll
    c:\windows\system32\mfc42.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\winmm.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\atk0100\asusnet.dll
    c:\windows\atk0100\asw32n50.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\wdmaud.drv
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\msacm32.drv
    c:\windows\system32\msacm32.dll
    c:\windows\system32\midimap.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\version.dll
    C:\PROGRAM FILES\CYBERLINK\POWERDVD\PDVDSERV.EXE
    c:\program files\cyberlink\powerdvd\pdvdserv.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\ole32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\version.dll
    c:\program files\cyberlink\powerdvd\clrcengine3.dll
    c:\program files\cyberlink\powerdvd\msvcr71.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\msctf.dll
    C:\PROGRAM FILES\GOOGLE\GOOGLE TALK\GOOGLETALK.EXE
    c:\program files\google\google talk\googletalk.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\riched20.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\msimg32.dll
    c:\windows\system32\urlmon.dll
    c:\windows\system32\version.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\sensapi.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\oleacc.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\wsock32.dll
    c:\windows\winsxs\x86_microsoft.windows.gdiplus_65 95b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
    c:\windows\system32\mshtml.dll
    c:\windows\system32\msls31.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\shdocvw.dll
    c:\windows\system32\cryptui.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\sxs.dll
    c:\windows\system32\mlang.dll
    c:\program files\common files\microsoft shared\vs7debug\pdm.dll
    c:\windows\system32\shdoclc.dll
    c:\program files\common files\microsoft shared\vs7debug\msdbg2.dll
    c:\windows\system32\msimtf.dll
    c:\windows\system32\mslbui.dll
    c:\windows\ime\sptip.dll
    c:\windows\ime\spgrmr.dll
    c:\windows\system32\msi.dll
    c:\program files\common files\microsoft shared\ink\skchui.dll
    c:\windows\system32\jscript.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\schannel.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\dssenh.dll
    c:\windows\system32\perfos.dll
    c:\windows\system32\wdmaud.drv
    c:\windows\system32\msacm32.drv
    c:\windows\system32\midimap.dll
    c:\windows\system32\apphelp.dll
    C:\PROGRAM FILES\DAEMON TOOLS\DAEMON.EXE
    c:\program files\daemon tools\daemon.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\ntmarta.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\samlib.dll
    c:\program files\daemon tools\daemon.dll
    c:\windows\system32\cfgmgr32.dll
    c:\windows\system32\setupapi.dll
    c:\program files\daemon tools\pfctoc.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\winspool.drv
    c:\program files\daemon tools\plugins\images\bw5mount.dll
    c:\program files\daemon tools\plugins\images\ccdmount.dll
    c:\program files\daemon tools\plugins\images\mdsmount.dll
    c:\program files\daemon tools\plugins\images\nrgmount.dll
    c:\program files\daemon tools\plugins\images\pdimount.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    C:\PROGRAM FILES\JAVA\JRE1.6.0_02\BIN\JUSCHED.EXE
    c:\program files\java\jre1.6.0_02\bin\jusched.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\shell32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\uxtheme.dll
    C:\PROGRA~1\ALWILS~1\AVAST4\ASHDISP.EXE
    c:\progra~1\alwils~1\avast4\ashdisp.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\advapi32.dll
    c:\progra~1\alwils~1\avast4\aswcmnos.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\msvcp71.dll
    c:\windows\system32\msvcr71.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\progra~1\alwils~1\avast4\ashbase.dll
    c:\windows\system32\version.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\progra~1\alwils~1\avast4\aswcmnb.dll
    c:\progra~1\alwils~1\avast4\aswcmns.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\shlwapi.dll
    c:\progra~1\alwils~1\avast4\ashtask.dll
    c:\progra~1\alwils~1\avast4\aswaux.dll
    c:\windows\system32\shell32.dll
    c:\progra~1\alwils~1\avast4\aavm4h.dll
    c:\windows\system32\dbghelp.dll
    c:\program files\alwil software\avast4\english\base.dll
    c:\program files\alwil software\avast4\english\lang.dll
    c:\windows\system32\mfc71.dll
    c:\progra~1\alwils~1\avast4\aavmrpch.dll
    c:\program files\alwil software\avast4\ahruimai.dll
    c:\progra~1\alwils~1\avast4\ashuint.dll
    c:\progra~1\alwils~1\avast4\xt1922.dll
    c:\program files\alwil software\avast4\ahruimes.dll
    c:\program files\alwil software\avast4\ahruins.dll
    c:\program files\alwil software\avast4\ahruiout.dll
    c:\windows\system32\mapi32.dll
    c:\program files\alwil software\avast4\ahruip2p.dll
    c:\program files\alwil software\avast4\ahruistd.dll
    c:\program files\alwil software\avast4\ahruiws.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\secur32.dll
    C:\WINDOWS\SYSTEM32\CTFMON.EXE
    c:\windows\system32\ctfmon.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\msutb.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBARNOTIFIER\GOOGLETOOLBARNO TIFIER.EXE
    c:\program files\google\googletoolbarnotifier\googletoolbarno tifier.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\program files\google\googletoolbarnotifier\2.1.615.5858\gt n.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\rasapi32.dll
    c:\windows\system32\rasman.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\tapi32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\ole32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\msv1_0.dll
    c:\program files\google\googletoolbarnotifier\2.1.615.5858\sw g.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\version.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\sxs.dll
    c:\windows\system32\mprapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\setupapi.dll
    C:\PROGRAM FILES\MESSENGER\MSMSGS.EXE
    c:\program files\messenger\msmsgs.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\winmm.dll
    c:\windows\winsxs\x86_microsoft.windows.gdiplus_65 95b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
    c:\windows\system32\msimg32.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\cryptdll.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\xpob2res.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\sxs.dll
    c:\windows\system32\es.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\credui.dll
    c:\windows\system32\secur32.dll
    C:\PROGRAM FILES\TOSHIBA\BLUETOOTH TOSHIBA STACK\TOSBTMNG.EXE
    c:\program files\toshiba\bluetooth toshiba stack\tosbtmng.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\program files\toshiba\bluetooth toshiba stack\toscpsapi.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\program files\toshiba\bluetooth toshiba stack\tosbtmnghelp.dll
    c:\windows\system32\hhctrl.ocx
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\tosavapi.dll
    c:\windows\system32\tosbtsddb.dll
    c:\program files\toshiba\bluetooth toshiba stack\tosbtmnglang.dll
    c:\windows\system32\mfc42.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\tosbdapi.dll
    c:\windows\system32\toscommapi.dll
    c:\windows\system32\toslaneapi.dll
    c:\windows\system32\tosbtapi.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\lcwizard.dll
    c:\windows\system32\cfgmgr32.dll
    c:\windows\system32\toshidapi.dll
    c:\windows\system32\tosgnsapi.dll
    c:\windows\system32\tosacpiapi.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\program files\toshiba\bluetooth toshiba stack\tosbtload.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\mslbui.dll
    c:\windows\system32\apphelp.dll
    c:\program files\toshiba\bluetooth toshiba stack\tosbtafh.dll
    c:\program files\sunbelt software\personal firewall\gkh.dll
    C:\PROGRAM FILES\TOSHIBA\BLUETOOTH TOSHIBA STACK\TOSA2DP.EXE
    c:\program files\toshiba\bluetooth toshiba stack\tosa2dp.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\tosbteccapi.dll
    c:\windows\system32\tosbtapi.dll
    c:\windows\system32\tosbdapi.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\tosavdtapi.dll
    c:\windows\system32\tossndapi.dll
    c:\windows\system32\tossndplug.dll
    c:\windows\system32\winspool.drv
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    C:\PROGRAM FILES\COMMON FILES\LIGHTSCRIBE\LSSRVC.EXE
    c:\program files\common files\lightscribe\lssrvc.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\program files\common files\lightscribe\lssproxy.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\shell32.dll
    c:\program files\common files\lightscribe\lslog.dll
    c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a 1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcr80.dll
    c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a 1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcp80.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    C:\PROGRAM FILES\TOSHIBA\BLUETOOTH TOSHIBA STACK\TOSBTHID.EXE
    c:\program files\toshiba\bluetooth toshiba stack\tosbthid.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\msctf.dll
    C:\PROGRAM FILES\TOSHIBA\BLUETOOTH TOSHIBA STACK\TOSBTHSP.EXE
    c:\program files\toshiba\bluetooth toshiba stack\tosbthsp.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\tosbteccapi.dll
    c:\windows\system32\tosbtapi.dll
    c:\windows\system32\tosbdapi.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\lcwizard.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\hhctrl.ocx
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\tossndapi.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\tossndplug.dll
    c:\windows\system32\winspool.drv
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\VS7DEBUG\MDM.EXE
    c:\program files\common files\microsoft shared\vs7debug\mdm.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\version.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\program files\common files\microsoft shared\vs7debug\msdbg2.dll
    C:\PROGRAM FILES\CYBERLINK\SHARED FILES\RICHVIDEO.EXE
    c:\program files\cyberlink\shared files\richvideo.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\winmm.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\version.dll
    C:\PROGRAM FILES\SUNBELT SOFTWARE\PERSONAL FIREWALL\KPF4SS.EXE
    c:\program files\sunbelt software\personal firewall\kpf4ss.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\program files\sunbelt software\personal firewall\pocofoundation.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\msvcp71.dll
    c:\windows\system32\msvcr71.dll
    c:\program files\sunbelt software\personal firewall\pocoxml.dll
    c:\program files\sunbelt software\personal firewall\pocoext.dll
    c:\windows\system32\version.dll
    c:\program files\sunbelt software\personal firewall\kfe.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\program files\sunbelt software\personal firewall\libeay32.dll
    c:\program files\sunbelt software\personal firewall\ssleay32.dll
    c:\windows\system32\userenv.dll
    c:\program files\sunbelt software\personal firewall\curllib.dll
    c:\windows\system32\winmm.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\program files\sunbelt software\personal firewall\kwsapi.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\rasapi32.dll
    c:\windows\system32\rasman.dll
    c:\windows\system32\tapi32.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\netman.dll
    c:\windows\system32\mprapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\netshell.dll
    c:\windows\system32\credui.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\wzcsapi.dll
    c:\windows\system32\wzcsvc.dll
    c:\windows\system32\wmi.dll
    c:\windows\system32\dhcpcsvc.dll
    c:\windows\system32\esent.dll
    c:\windows\system32\apphelp.dll
    C:\WINDOWS\SYSTEM32\SVCHOST.EXE
    c:\windows\system32\svchost.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\wiaservc.dll
    c:\windows\system32\cfgmgr32.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\mscms.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\winsta.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\wiavusd.dll
    c:\windows\winsxs\x86_microsoft.windows.gdiplus_65 95b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
    c:\windows\system32\shfolder.dll
    c:\windows\system32\actxprxy.dll
    c:\windows\system32\sti.dll
    C:\WINDOWS\SYSTEM32\WDFMGR.EXE
    c:\windows\system32\wdfmgr.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    C:\PROGRAM FILES\SUNBELT SOFTWARE\PERSONAL FIREWALL\KPF4GUI.EXE
    c:\program files\sunbelt software\personal firewall\kpf4gui.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\version.dll
    c:\program files\sunbelt software\personal firewall\libeay32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\msvcr71.dll
    c:\program files\sunbelt software\personal firewall\ssleay32.dll
    c:\program files\sunbelt software\personal firewall\pocofoundation.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\msvcp71.dll
    c:\program files\sunbelt software\personal firewall\pocoxml.dll
    c:\program files\sunbelt software\personal firewall\pocoext.dll
    c:\windows\system32\mfc71.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\ole32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\iphlpapi.dll
    C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE
    c:\program files\alwil software\avast4\ashmaisv.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\program files\alwil software\avast4\ashbase.dll
    c:\windows\system32\version.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msvcp71.dll
    c:\windows\system32\msvcr71.dll
    c:\program files\alwil software\avast4\aswcmnos.dll
    c:\program files\alwil software\avast4\aswcmnb.dll
    c:\program files\alwil software\avast4\aswcmns.dll
    c:\windows\system32\comctl32.dll
    c:\program files\alwil software\avast4\aavm4h.dll
    c:\program files\alwil software\avast4\ashtask.dll
    c:\program files\alwil software\avast4\aswaux.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\program files\alwil software\avast4\ahresmai.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\dbghelp.dll
    c:\program files\alwil software\avast4\english\base.dll
    c:\program files\alwil software\avast4\aswengin.dll
    c:\program files\alwil software\avast4\aswscan.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\rasadhlp.dll
    c:\program files\alwil software\avast4\ashuint.dll
    c:\program files\alwil software\avast4\xt1922.dll
    c:\windows\system32\mfc71.dll
    c:\windows\system32\riched20.dll
    c:\program files\alwil software\avast4\english\lang.dll
    c:\windows\system32\uxtheme.dll
    c:\program files\alwil software\avast4\english\langmai.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE
    c:\program files\alwil software\avast4\ashwebsv.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\program files\alwil software\avast4\ashbase.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msvcp71.dll
    c:\windows\system32\msvcr71.dll
    c:\program files\alwil software\avast4\aswcmnos.dll
    c:\program files\alwil software\avast4\aswcmnb.dll
    c:\program files\alwil software\avast4\aswcmns.dll
    c:\windows\system32\comctl32.dll
    c:\program files\alwil software\avast4\aavm4h.dll
    c:\program files\alwil software\avast4\ashtask.dll
    c:\program files\alwil software\avast4\aswaux.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\dbghelp.dll
    c:\program files\alwil software\avast4\english\base.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\security.dll
    c:\windows\system32\secur32.dll
    c:\program files\alwil software\avast4\ashwsftr.dll
    c:\program files\alwil software\avast4\aswscan.dll
    c:\windows\system32\oleacc.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\winspool.drv
    c:\progra~1\alwils~1\avast4\ahresws.dll
    c:\program files\alwil software\avast4\aswengin.dll
    C:\WINDOWS\ATK0100\ATKOSD.EXE
    c:\windows\atk0100\atkosd.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\msctf.dll
    C:\WINDOWS\SYSTEM32\ALG.EXE
    c:\windows\system32\alg.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    C:\PROGRAM FILES\SUNBELT SOFTWARE\PERSONAL FIREWALL\KPF4GUI.EXE
    c:\program files\sunbelt software\personal firewall\kpf4gui.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\version.dll
    c:\program files\sunbelt software\personal firewall\libeay32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\msvcr71.dll
    c:\program files\sunbelt software\personal firewall\ssleay32.dll
    c:\program files\sunbelt software\personal firewall\pocofoundation.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\msvcp71.dll
    c:\program files\sunbelt software\personal firewall\pocoxml.dll
    c:\program files\sunbelt software\personal firewall\pocoext.dll
    c:\windows\system32\mfc71.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\ole32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\iphlpapi.dll
    c:\program files\sunbelt software\personal firewall\gkh.dll
    c:\windows\system32\mslbui.dll
    C:\WINDOWS\SYSTEM32\SVCHOST.EXE
    c:\windows\system32\svchost.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\ntmarta.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\w3ssl.dll
    c:\windows\system32\strmfilt.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\httpapi.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    C:\PROGRAM FILES\SIFY BROADBAND\BBCLIENT.EXE
    c:\program files\sify broadband\bbclient.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\shlwapi.dll
    c:\program files\sify broadband\bbappdll.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\mfc42.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\olepro32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\msvcirt.dll
    c:\windows\system32\comctl32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\version.dll
    c:\progra~1\sifybr~1\bbconfig.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\mprapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\msxml3.dll
    c:\windows\system32\mslbui.dll
    c:\program files\sunbelt software\personal firewall\gkh.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\schannel.dll
    c:\windows\system32\rasapi32.dll
    c:\windows\system32\rasman.dll
    c:\windows\system32\tapi32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\sensapi.dll
    c:\windows\system32\urlmon.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\dssenh.dll
    c:\windows\system32\xpsp2res.dll
    C:\WINDOWS\SYSTEM32\WUAUCLT.EXE
    c:\windows\system32\wuauclt.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\wucltui.dll
    c:\windows\system32\msimg32.dll
    c:\windows\system32\cabinet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\wups2.dll
    C:\PROGRAM FILES\SIFY BROADBAND\BBIMPSEC.EXE
    c:\program files\sify broadband\bbimpsec.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\mfc42.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\version.dll
    c:\windows\system32\msxml3.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\urlmon.dll
    c:\windows\system32\mlang.dll
    c:\program files\common files\microsoft shared\office11\msoxmlmf.dll
    c:\windows\system32\mslbui.dll
    c:\windows\system32\rasadhlp.dll
    C:\WINDOWS\EXPLORER.EXE
    c:\windows\explorer.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\browseui.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\shdocvw.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\cryptui.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\userenv.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\cscui.dll
    c:\windows\system32\cscdll.dll
    c:\windows\system32\themeui.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\msimg32.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\actxprxy.dll
    c:\windows\system32\msutb.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\mpr.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\ntshrui.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\linkinfo.dll
    c:\windows\system32\msi.dll
    c:\windows\system32\netshell.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\credui.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\mslbui.dll
    c:\windows\system32\winsta.dll
    c:\windows\system32\webcheck.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\stobject.dll
    c:\windows\system32\batmeter.dll
    c:\windows\system32\powrprof.dll
    c:\windows\system32\wtsapi32.dll
    c:\windows\system32\browselc.dll
    c:\windows\system32\urlmon.dll
    c:\program files\adobe\acrobat 7.0\activex\acroiehelper.dll
    c:\windows\system32\msvcr71.dll
    c:\windows\system32\imm32.dll
    c:\windows\system32\sxs.dll
    c:\windows\system32\wdmaud.drv
    c:\windows\system32\duser.dll
    c:\windows\system32\msacm32.drv
    c:\windows\system32\midimap.dll
    c:\windows\system32\mlang.dll
    c:\windows\system32\rasapi32.dll
    c:\windows\system32\rasman.dll
    c:\windows\system32\tapi32.dll
    c:\windows\system32\msv1_0.dll
    c:\windows\system32\nwprovau.dll
    c:\windows\system32\drprov.dll
    c:\windows\system32\ntlanman.dll
    c:\windows\system32\netui0.dll
    c:\windows\system32\netui1.dll
    c:\windows\system32\netrap.dll
    c:\windows\system32\davclnt.dll
    c:\windows\system32\wzcsapi.dll
    c:\windows\system32\rasdlg.dll
    c:\windows\system32\mprapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\netcfgx.dll
    c:\windows\system32\clusapi.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\cabinet.dll
    c:\windows\system32\msgina.dll
    c:\windows\system32\odbc32.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\odbcint.dll
    c:\windows\system32\shdoclc.dll
    c:\windows\system32\mydocs.dll
    c:\program files\nero\nero 7\nero backitup\nbshell.dll
    c:\program files\nero\nero 7\nero backitup\mfc71u.dll
    c:\program files\nero\nero 7\nero backitup\msvcp71.dll
    c:\windows\system32\tosbtshell.dll
    c:\program files\alwil software\avast4\ashshell.dll
    c:\program files\adobe\acrobat 7.0\activex\pdfshell.dll
    c:\windows\system32\wzcdlg.dll
    c:\windows\system32\winhttp.dll
    c:\windows\system32\sensapi.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wbem\wbemprox.dll
    c:\windows\system32\wbem\wbemcomn.dll
    c:\windows\system32\wbem\wbemsvc.dll
    c:\windows\system32\wbem\fastprox.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\ntdsapi.dll
    C:\WINDOWS\SYSTEM32\MSIEXEC.EXE
    c:\windows\system32\msiexec.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\msi.dll
    c:\windows\system32\shimeng.dll
    c:\windows\apppatch\acgenral.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\msacm32.dll
    c:\windows\system32\version.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\userenv.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\xpsp2res.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\sfc_os.dll
    c:\windows\system32\wintrust.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\imagehlp.dll
    c:\windows\system32\srclient.dll
    c:\windows\system32\wbem\framedyn.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\linkinfo.dll
    c:\windows\system32\ntshrui.dll
    c:\windows\system32\atl.dll
    C:\PROGRAM FILES\LAVASOFT\AD-AWARE 2007\AAWSERVICE.EXE
    c:\program files\lavasoft\ad-aware 2007\aawservice.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\program files\lavasoft\ad-aware 2007\ceapi.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\program files\lavasoft\ad-aware 2007\pkarchive84cb.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\crypt32.dll
    c:\windows\system32\msasn1.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\psapi.dll
    c:\windows\system32\version.dll
    c:\windows\system32\wininet.dll
    c:\windows\system32\oleaut32.dll
    c:\program files\lavasoft\ad-aware 2007\update.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\rsaenh.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    C:\PROGRAM FILES\LAVASOFT\AD-AWARE 2007\AD-AWARE2007.EXE
    c:\program files\lavasoft\ad-aware 2007\ad-aware2007.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\shell32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\inetmib1.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\snmpapi.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\mprapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\version.dll
    c:\windows\system32\mpr.dll
    c:\windows\system32\imm32.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\oleacc.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\apphelp.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\windows\system32\olepro32.dll
    c:\windows\system32\secur32.dll
    c:\windows\system32\mslbui.dll
    c:\windows\system32\urlmon.dll
    C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
    c:\program files\mozilla firefox\firefox.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\program files\mozilla firefox\js3250.dll
    c:\program files\mozilla firefox\nspr4.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\program files\mozilla firefox\xpcom_core.dll
    c:\program files\mozilla firefox\plc4.dll
    c:\program files\mozilla firefox\plds4.dll
    c:\windows\system32\shell32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\version.dll
    c:\program files\mozilla firefox\smime3.dll
    c:\program files\mozilla firefox\nss3.dll
    c:\program files\mozilla firefox\softokn3.dll
    c:\program files\mozilla firefox\ssl3.dll
    c:\program files\mozilla firefox\xpcom_compat.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\winspool.drv
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\clbcatq.dll
    c:\windows\system32\comres.dll
    c:\program files\mozilla firefox\components\myspell.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    c:\windows\system32\iphlpapi.dll
    c:\program files\mozilla firefox\components\jar50.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\msimtf.dll
    c:\windows\system32\xpsp2res.dll
    c:\program files\mozilla firefox\freebl3.dll
    c:\program files\mozilla firefox\nssckbi.dll
    c:\program files\mozilla firefox\components\spellchk.dll
    c:\program files\mozilla firefox\plugins\npnul32.dll
    c:\windows\system32\mslbui.dll
    c:\windows\system32\msimg32.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\imm32.dll
    c:\program files\sunbelt software\personal firewall\gkh.dll
    C:\PROGRAM FILES\LAVASOFT\AD-AWARE 2007\LSUPDATEMANAGER.EXE
    c:\program files\lavasoft\ad-aware 2007\lsupdatemanager.exe
    c:\windows\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\comctl32.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\comdlg32.dll
    c:\windows\system32\shlwapi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\shell32.dll
    c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
    c:\windows\system32\oleaut32.dll
    c:\windows\system32\ole32.dll
    c:\windows\system32\ws2_32.dll
    c:\windows\system32\ws2help.dll
    c:\windows\system32\inetmib1.dll
    c:\windows\system32\iphlpapi.dll
    c:\windows\system32\snmpapi.dll
    c:\windows\system32\wsock32.dll
    c:\windows\system32\mprapi.dll
    c:\windows\system32\activeds.dll
    c:\windows\system32\adsldpc.dll
    c:\windows\system32\netapi32.dll
    c:\windows\system32\wldap32.dll
    c:\windows\system32\atl.dll
    c:\windows\system32\rtutils.dll
    c:\windows\system32\samlib.dll
    c:\windows\system32\setupapi.dll
    c:\windows\system32\version.dll
    c:\windows\system32\imm32.dll
    c:\windows\system32\oleacc.dll
    c:\windows\system32\msvcp60.dll
    c:\windows\system32\winmm.dll
    c:\windows\system32\uxtheme.dll
    c:\windows\system32\msctf.dll
    c:\windows\system32\olepro32.dll
    c:\program files\lavasoft\ad-aware 2007\upmanager.dll
    c:\program files\lavasoft\ad-aware 2007\update.dll
    c:\windows\system32\mslbui.dll
    c:\windows\system32\mswsock.dll
    c:\windows\system32\dnsapi.dll
    c:\windows\system32\winrnr.dll
    c:\windows\system32\rasadhlp.dll
    c:\windows\system32\hnetcfg.dll
    c:\windows\system32\wshtcpip.dll
    [to top]

  3. #3
    Neal is offline Dedicated Member
    Save 20% on AVG Internet Security 2012 Suite!
    You may want to printout the following instructions:

    Please download AVG Anti-Spyware to your Desktop or to your usual Download Folder.
    • Install AVG Anti-Spyware by double clicking the installer.
    • Follow the prompts. Make sure that Launch AVG Anti-Spyware is checked.
    • On the main screen under Your Computer's security.
      • Click on Change state next to Resident shield. It should now change to inactive.
      • Click on Change state next to Automatic updates. It should now change to inactive.
      • Next to the words Last Update, click on Update now. (You will need an active internet connection to perform this)
      • Wait until you see the Update successful message.
      • Click on Scanner on the toolbar at top of this screen.
      • Click on the Settings tab.
        • Under How to act?
          • Click on Recommended Action and choose Quarantine from the popup menu.
        • Under How to scan?
          • All checkboxes should be ticked.
        • Under Possibly unwanted software:
          • All checkboxes should be ticked.
        • Under Reports:
          • Select Automatically generate report after every scan and uncheck Only if threats were found.
        • Under What to scan?
          • Select Scan every file.
      • Close AVG Anti-Spyware without running yet.
    Now disable (turn off AVG Anti-Spyware)
    • Right-click the AVG Anti-Spyware Tray Icon (Bottom right corner of computer screen near clock) and uncheck Start with Windows.
    • Right-click the AVG Anti-Spyware Tray Icon again and select Exit. Confirm by clicking Yes.
    If you are having problems with the updater, you can use this link to manually update AVG Anti-Spyware.
    AVG Anti-Spyware manual updates.
    Download the Full database to your Desktop or to your usual Download Folder and install it by double clicking the file. Make sure that AVG Anti-Spyware is closed before installing the update.
    ______________________________

    Reboot your computer in Safe Mode.If you can't go to safe mode or run from safe mode, use NORMAL MODE.
    • If the computer is running, shut down Windows, and then turn off the power.
    • Wait 30 seconds, and then turn the computer on.
    • Start tapping the F8 key. The Windows Advanced Options Menu appears. If you begin tapping the F8 key too soon, some computers display a "keyboard error" message. To resolve this, restart the computer and try again.
    • Ensure that the Safe Mode option is selected.
    • Press Enter. The computer then begins to start in Safe mode.
    • Login on your usual account.
    ______________________________


    Close ALL open Windows / Programs / Folders. Please start AVG Anti-Spyware and run a full scan.
    Note: If AVG Anti-Spyware screen does not fit your monitor screen Hold down the Alt button on keyboard then tap spacebar, menu should pop up then choose maximize. AVG Anti-Spyware screen should now fit to the screen a lot better.
    • Click on the Scan tab.
    • Click on Complete System Scan to start the scan process.
    • Let the program scan the machine.
    • When the scan has finished, follow the instructions below.


    IMPORTANT : Don't click on the "Save Scan Report" button before you hit the "Apply all Actions" button.
    • Make sure that Set all elements to: shows Quarantine (1), if not click on the link and choose Quarantine from the popup menu. (2)
    • At the bottom of the window click on the Apply all Actions button.(3)
    • When done, click the Save Scan Report button. (4)
      • Click the Save Report as button.
      • Save the report to your Desktop. I will need you to post this in your next reply.
    • Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
    Reboot in Normal Mode.



    Also...



    Open Hijackthis.

    Click the "Open the Misc Tools" section Button.

    Click the "Open Uninstall Manager" Button.

    Click the "Save list..." Button.

    Save it to your desktop. Copy and paste the contents into your reply.


    New hijackthis log also please.

+ Reply to Thread