To: XpUser4Real
Thank you for your time.
Have downloaded all suggested software, some nasties showed up in scans, but even with pop-up blocker on high they still come through.
Ad-Aware Log:
Ad-Aware 2007 Build
Log File Created on: 2007-08-02 06:26:29
Using Definitions File: C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware 2007\core.aawdef
Computer name: HAL
Name of user performing scan: SYSTEM
System information
===========================
Number of processors: 2
Processor type: Intel(R) Pentium(R) 4 CPU 3.00GHz
Memory Available: 16%
Total Physical Memory: 535818240 Bytes
Available Physical Memory: 82137088 Bytes
Total Page File Size: 1039683584 Bytes
Available On Page File: 428539904 Bytes
Total Virtual Memory: 2147352576 Bytes
Available Virtual Memory: 1991913472 Bytes
OS: Microsoft Windows XP Service Pack 2 (Build 2600)
Ad-Aware 2007 Settings
===========================
Skipping files larger than 1048576 kB
Ignoring infections with lower TAI than: 3
Extended Ad-Aware 2007 Settings
===========================
Unloading known modules during scan
Ignoring spanned files when scanning cab archives
Scanning registry for all users
Using permanent archive caching
Reanalyzing results after scanning before displaying results
Trying to unload modules prior to removal
Let Windows remove files currently in use at next reboot
Removing quarantined objects after restore
Logging Ad-Aware events
Blocking Pop-Ups aggressively
Deactivating Ad-Watch during scans
Writeprotecting system files after repairs
Including Ad-aware command line parameters in log file
Include info about ignored objects in log file
Including basic settings in log file
Including advanced settings in log file
Including user and computer name in log file
Include reference summary in log file
Creating log file for removal operations
Including module info in log file
Include Alternate Data Stream details in log file
Create and save WebUpdate log file
Databaseinfo
===========================
Version number: 12
Build Number: 0
Build Date and Time: 2007/07/31 11:15:42
Scan Statistics
===========================
Method: Full
Scan tracking cookies.............................: On
Scan ADS filestreams..............................: Off
Item Scanned: 267857
Infections Detected: 91
Infections Ignored: 0
Scan detailed statistics
===========================
Type Critical Total
Process Scan....: 0 0
Registry Scan...: 59 59
Registry PE Scan: 0 0
Hosts File Scan.: 0 0
File Scan.......: 0 0
Folder Scan.....: 0 0
LSP Scan........: 0 0
ADS Scan........: 0 0
Cookie Scan.....: 30 30
File Hash Scan..: 0 0
Infections Found
===========================
Family Id: 1040 Name: Win32.Trojandownloader.Zlob Category: Malware TAI:10
Item Id: 300027650 Value: Root: HKCR Path: clsid\{29c5a3b6-9a8d-4fa0-b5ad-3e20f4aa5c00}
Item Id: 300027615 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\contraviruspro.com
Item Id: 300027616 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\freepornmoviesworld.net
Item Id: 300027617 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\freerealitympegs.com
Item Id: 300027618 Value: Root: HKU Path: .DEFAULT\software\microsoft\windows\currentversion\internet settings\zonemap\domains\funcodec.com
Item Id: 300027618 Value: Root: HKU Path: S-1-5-19\software\microsoft\windows\currentversion\internet settings\zonemap\domains\funcodec.com
Item Id: 300027618 Value: Root: HKU Path: S-1-5-20\software\microsoft\windows\currentversion\internet settings\zonemap\domains\funcodec.com
Item Id: 300027618 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\funcodec.com
Item Id: 300027618 Value: Root: HKU Path: S-1-5-18\software\microsoft\windows\currentversion\internet settings\zonemap\domains\funcodec.com
Item Id: 300027619 Value: Root: HKU Path: .DEFAULT\software\microsoft\windows\currentversion\internet settings\zonemap\domains\gocodec.com
Item Id: 300027619 Value: Root: HKU Path: S-1-5-19\software\microsoft\windows\currentversion\internet settings\zonemap\domains\gocodec.com
Item Id: 300027619 Value: Root: HKU Path: S-1-5-20\software\microsoft\windows\currentversion\internet settings\zonemap\domains\gocodec.com
Item Id: 300027619 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\gocodec.com
Item Id: 300027619 Value: Root: HKU Path: S-1-5-18\software\microsoft\windows\currentversion\internet settings\zonemap\domains\gocodec.com
Item Id: 300027620 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\gomyron.com
Item Id: 300027621 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\hollywoodfiles.tv
Item Id: 300027622 Value: Root: HKU Path: .DEFAULT\software\microsoft\windows\currentversion\internet settings\zonemap\domains\inc-codec.com
Item Id: 300027622 Value: Root: HKU Path: S-1-5-19\software\microsoft\windows\currentversion\internet settings\zonemap\domains\inc-codec.com
Item Id: 300027622 Value: Root: HKU Path: S-1-5-20\software\microsoft\windows\currentversion\internet settings\zonemap\domains\inc-codec.com
Item Id: 300027622 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\inc-codec.com
Item Id: 300027622 Value: Root: HKU Path: S-1-5-18\software\microsoft\windows\currentversion\internet settings\zonemap\domains\inc-codec.com
Item Id: 300027623 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\net-codec.com
Item Id: 300027624 Value: Root: HKU Path: .DEFAULT\software\microsoft\windows\currentversion\internet settings\zonemap\domains\nmextensions.com
Item Id: 300027624 Value: Root: HKU Path: S-1-5-19\software\microsoft\windows\currentversion\internet settings\zonemap\domains\nmextensions.com
Item Id: 300027624 Value: Root: HKU Path: S-1-5-20\software\microsoft\windows\currentversion\internet settings\zonemap\domains\nmextensions.com
Item Id: 300027624 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\nmextensions.com
Item Id: 300027624 Value: Root: HKU Path: S-1-5-18\software\microsoft\windows\currentversion\internet settings\zonemap\domains\nmextensions.com
Item Id: 300027625 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\playjust.com
Item Id: 300027626 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\play-mega.com
Item Id: 300027627 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\plus-codec.com
Item Id: 300027628 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\porndrive.net
Item Id: 300027629 Value: Root: HKU Path: .DEFAULT\software\microsoft\windows\currentversion\internet settings\zonemap\domains\the-codec.com
Item Id: 300027629 Value: Root: HKU Path: S-1-5-19\software\microsoft\windows\currentversion\internet settings\zonemap\domains\the-codec.com
Item Id: 300027629 Value: Root: HKU Path: S-1-5-20\software\microsoft\windows\currentversion\internet settings\zonemap\domains\the-codec.com
Item Id: 300027629 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\the-codec.com
Item Id: 300027629 Value: Root: HKU Path: S-1-5-18\software\microsoft\windows\currentversion\internet settings\zonemap\domains\the-codec.com
Item Id: 300027630 Value: Root: HKU Path: .DEFAULT\software\microsoft\windows\currentversion\internet settings\zonemap\domains\web-codec.com
Item Id: 300027630 Value: Root: HKU Path: S-1-5-19\software\microsoft\windows\currentversion\internet settings\zonemap\domains\web-codec.com
Item Id: 300027630 Value: Root: HKU Path: S-1-5-20\software\microsoft\windows\currentversion\internet settings\zonemap\domains\web-codec.com
Item Id: 300027630 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\web-codec.com
Item Id: 300027630 Value: Root: HKU Path: S-1-5-18\software\microsoft\windows\currentversion\internet settings\zonemap\domains\web-codec.com
Item Id: 300027631 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\domains\wmvmedialease.com
Item Id: 300027632 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\contraviruspro.com
Item Id: 300027633 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\freepornmoviesworld.net
Item Id: 300027634 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\freerealitympegs.com
Item Id: 300027635 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\funcodec.com
Item Id: 300027636 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\gocodec.com
Item Id: 300027637 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\gomyron.com
Item Id: 300027638 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\hollywoodfiles.tv
Item Id: 300027639 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\inc-codec.com
Item Id: 300027640 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\net-codec.com
Item Id: 300027641 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\nmextensions.com
Item Id: 300027642 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\playjust.com
Item Id: 300027643 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\play-mega.com
Item Id: 300027644 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\plus-codec.com
Item Id: 300027645 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\porndrive.net
Item Id: 300027646 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\the-codec.com
Item Id: 300027647 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\web-codec.com
Item Id: 300027648 Value: Root: HKU Path: S-1-5-21-1275210071-746137067-839522115-1006\software\microsoft\windows\currentversion\internet settings\zonemap\escdomains\wmvmedialease.com
Family Id: 725 Name: Tracking Cookie Category: DataMiner TAI:3
Item Id: 600000142 Value: Browser: Internet Explorer Cookie: C:\Documents and Settings\Nicholas\Cookies\index.dat int.sitestat.com s1 /cassava/888/
Item Id: 600000142 Value: Browser: Internet Explorer Cookie: C:\Documents and Settings\Nicholas\Cookies\index.dat int.sitestat.com c1 /cassava/
Item Id: 600000409 Value: Browser: Internet Explorer Cookie: C:\Documents and Settings\Nicholas\Cookies\index.dat server.iad.liveperson.net HumanClickID /
Item Id: 600000409 Value: Browser: Internet Explorer Cookie: C:\Documents and Settings\Nicholas\Cookies\index.dat server.iad.liveperson.net HumanClickACTIVE /
Item Id: 600000513 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt adbrite.com fq /
Item Id: 600000513 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt adbrite.com Apache /
Item Id: 600000513 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt adbrite.com b /
Item Id: 600000449 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt adultfriendfinder.com ffadult_tr /
Item Id: 600000449 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt adultfriendfinder.com HISTORY /
Item Id: 600000179 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt atdmt.com AA002 /
Item Id: 600000212 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt partygaming.122.2o7.net s_vi /
Item Id: 600000420 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt partypoker.com PPWMID /
Item Id: 600000420 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt partypoker.com PPID /
Item Id: 600000098 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt paycounter.com pctrackd2 /
Item Id: 600000212 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt pch.122.2o7.net s_vi /
Item Id: 600000085 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt questionmarket.com BS1 /
Item Id: 600000085 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt questionmarket.com ES /
Item Id: 600000460 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ad.yieldmanager.com liday1 /
Item Id: 600000460 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ad.yieldmanager.com vuday1 /
Item Id: 600000460 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ad.yieldmanager.com uid /
Item Id: 600000460 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ad.yieldmanager.com bh /
Item Id: 600000460 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ad.yieldmanager.com ih /
Item Id: 600000513 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ads.adbrite.com ihc_235712 /
Item Id: 600000513 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ads.adbrite.com ihc_235716 /
Item Id: 600000513 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt ads.adbrite.com ihc_369033 /
Item Id: 600000251 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt redeye.willhill.com NetOutcome /
Item Id: 600000409 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt server.iad.liveperson.net HumanClickACTIVE /
Item Id: 600000409 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt server.iad.liveperson.net HumanClickID /
Item Id: 600000142 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt uk.sitestat.com s1 /savills/couk/
Item Id: 600000385 Value: Browser: Firefox Cookie: C:\Documents and Settings\Nicholas\Application Data\Mozilla\Firefox\Profiles/8jesap1u.default\cookies.txt www.zango.com SaneID /
Family Id: 9999 Name: MRU Object Category: MRU Object TAI:0
Item Id: 1 Value: MRU Path: C:\Documents and Settings\Nicholas\Recent Count: 7
Item Id: 2 Value: MRU Registry Key: S-1-5-21-1275210071-746137067-839522115-1006\Software\Microsoft\Search Assistant\ACMru\5603 Count: 17
Items Ignored During Scan
===========================
Listing of running processes
===========================
C:\WINDOWS\SYSTEM32\SMSS.EXE
c:\windows\system32\smss.exe
c:\windows\system32\ntdll.dll
C:\WINDOWS\SYSTEM32\CSRSS.EXE
c:\windows\system32\csrss.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\csrsrv.dll
c:\windows\system32\basesrv.dll
c:\windows\system32\winsrv.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\sxs.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
C:\WINDOWS\SYSTEM32\WINLOGON.EXE
c:\windows\system32\winlogon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\authz.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\nddeapi.dll
c:\windows\system32\profmap.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\regapi.dll
c:\windows\system32\secur32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\version.dll
c:\windows\system32\winsta.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\shell32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msgina.dll
c:\windows\system32\odbc32.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\odbcint.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\winscard.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\sxs.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\winmm.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\ati2evxx.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\wlnotify.dll
c:\windows\system32\winspool.drv
c:\windows\system32\mpr.dll
c:\windows\system32\wgalogon.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\wrlogonntf.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\cscui.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\atl.dll
c:\windows\system32\xpsp2res.dll
C:\WINDOWS\SYSTEM32\SERVICES.EXE
c:\windows\system32\services.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\scesrv.dll
c:\windows\system32\authz.dll
c:\windows\system32\umpnpmgr.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\eventlog.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
C:\WINDOWS\SYSTEM32\LSASS.EXE
c:\windows\system32\lsass.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\lsasrv.dll
c:\windows\system32\mpr.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\samsrv.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msprivs.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\netlogon.dll
c:\windows\system32\w32time.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\schannel.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\wdigest.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\scecli.dll
c:\windows\system32\ipsecsvc.dll
c:\windows\system32\authz.dll
c:\windows\system32\oakley.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\pstorsvc.dll
c:\windows\system32\psbase.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dssenh.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\secur32.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\termsrv.dll
c:\windows\system32\icaapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\mstlsapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\atl.dll
c:\windows\system32\regapi.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\secur32.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshisn.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\msi.dll
C:\PROGRAM FILES\WINDOWS DEFENDER\MSMPENG.EXE
c:\program files\windows defender\msmpeng.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcr80.dll
c:\windows\system32\msvcrt.dll
c:\program files\windows defender\mpsvc.dll
c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\msvcp80.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\version.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\program files\windows defender\mpclient.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\secur32.dll
c:\windows\system32\netapi32.dll
c:\documents and settings\all users\application data\microsoft\windows defender\definition updates\{8878cbec-1a6e-40b7-83c1-bf36ddd00be7}\mpengine.dll
c:\windows\system32\psapi.dll
c:\windows\system32\iphlpapi.dll
c:\program files\windows defender\mprtplug.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\program files\windows defender\mpasdesc.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\secur32.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wzcsvc.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\wmi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\esent.dll
c:\windows\system32\atl.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rastls.dll
c:\windows\system32\cryptui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\schannel.dll
c:\windows\system32\winscard.dll
c:\windows\system32\raschap.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\schedsvc.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\msidle.dll
c:\windows\system32\audiosrv.dll
c:\windows\system32\wkssvc.dll
c:\windows\system32\qmgr.dll
c:\windows\system32\mpr.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\ersvc.dll
c:\windows\system32\cryptsvc.dll
c:\windows\system32\certcli.dll
c:\windows\system32\dmserver.dll
c:\windows\system32\es.dll
c:\windows\pchealth\helpctr\binaries\pchsvc.dll
c:\windows\system32\srvsvc.dll
c:\windows\system32\netman.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
c:\windows\system32\wzcsapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\ipxsap.dll
c:\windows\system32\rtm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\adptif.dll
c:\windows\system32\sens.dll
c:\windows\system32\seclogon.dll
c:\windows\system32\srsvc.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\tapisrv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\trkwks.dll
c:\windows\system32\w32time.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\wbem\wmisvc.dll
c:\windows\system32\vssapi.dll
c:\windows\system32\wuauserv.dll
c:\windows\system32\wuaueng.dll
c:\windows\system32\cabinet.dll
c:\windows\system32\mspatcha.dll
c:\windows\system32\browser.dll
c:\windows\system32\sxs.dll
c:\windows\system32\comsvcs.dll
c:\windows\system32\colbact.dll
c:\windows\system32\mtxclu.dll
c:\windows\system32\clusapi.dll
c:\windows\system32\resutils.dll
c:\windows\system32\ipnathlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\6to4svc.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\wship6.dll
c:\windows\system32\unimdm.tsp
c:\windows\system32\uniplat.dll
c:\windows\system32\unimdmat.dll
c:\windows\system32\modemui.dll
c:\windows\system32\kmddsp.tsp
c:\windows\system32\ndptsp.tsp
c:\windows\system32\ipconf.tsp
c:\windows\system32\h323.tsp
c:\windows\system32\hidphone.tsp
c:\windows\system32\hid.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\wbem\wbemcore.dll
c:\windows\system32\wbem\esscli.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\wbem\wmiutils.dll
c:\windows\system32\wbem\repdrvfs.dll
c:\windows\system32\wbem\wmiprvsd.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\wbem\wbemess.dll
c:\windows\system32\rasmans.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\netcfgx.dll
c:\windows\system32\rastapi.dll
c:\windows\system32\rasppp.dll
c:\windows\system32\ntlsapi.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\ipxwan.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\upnp.dll
c:\windows\system32\ssdpapi.dll
c:\windows\system32\msi.dll
c:\windows\system32\rasdlg.dll
c:\windows\system32\wbem\ncprov.dll
c:\windows\system32\catsrvut.dll
c:\windows\system32\catsrv.dll
c:\windows\system32\mfcsubs.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbem\wbemcons.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\dnsrslvr.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lmhsvc.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\webclnt.dll
c:\windows\system32\secur32.dll
c:\windows\system32\ssdpsrv.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCSVCHST.EXE
c:\program files\common files\symantec shared\ccsvchst.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\msvcr71.dll
c:\program files\common files\symantec shared\ccl60u.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\shell32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\windows\system32\xpsp2res.dll
c:\program files\common files\symantec shared\ccvrtrst.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\program files\common files\symantec shared\ccsvc.dll
c:\windows\system32\secur32.dll
c:\program files\common files\symantec shared\ccset.dll
c:\progra~1\common~1\symant~1\ccsetplg.dll
c:\progra~1\norton~1\norton~1\avpsvc32.dll
c:\progra~1\norton~1\norton~1\avpsvc32.loc
c:\program files\norton internet security\norton antivirus\avsubmit.dll
c:\program files\norton internet security\norton antivirus\avsubmit.loc
c:\progra~1\norton~1\isdatasv.dll
c:\progra~1\common~1\symant~1\npc\npcwmimn.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\progra~1\common~1\symant~1\sndsvc.dll
c:\windows\system32\iphlpapi.dll
c:\program files\common files\symantec shared\ccl60.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\progra~1\common~1\symant~1\submis~1\subeng.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\winmm.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\progra~1\common~1\symant~1\submis~1\subres.loc
c:\windows\system32\netman.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\atl.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
c:\windows\system32\wzcsapi.dll
c:\windows\system32\wzcsvc.dll
c:\windows\system32\wmi.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\esent.dll
c:\progra~1\common~1\symant~1\spbbc\tprocplg.dll
c:\windows\system32\msi.dll
c:\progra~1\common~1\symant~1\ccevtplg.dll
c:\windows\system32\mswsock.dll
c:\progra~1\common~1\symant~1\opc\{31011~1\cltnetcn.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wship6.dll
c:\progra~1\common~1\symant~1\pif\{b8e1d~1\pifeng.dll
c:\windows\system32\userenv.dll
c:\program files\common files\symantec shared\ccevtcli.dll
c:\progra~1\common~1\symant~1\firewall\fwagent.dll
c:\progra~1\common~1\symant~1\spbbc\spbbcevt.dll
c:\progra~1\common~1\symant~1\srtsp\srtsp32.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\uxtheme.dll
c:\program files\common files\symantec shared\ccprosub.dll
c:\progra~1\common~1\symant~1\ccsetevt.dll
c:\windows\system32\atl71.dll
c:\progra~1\norton~1\issvc.dll
c:\progra~1\norton~1\norton~1\navevent.dll
c:\windows\system32\symneti.dll
c:\program files\norton internet security\isdatacl.dll
c:\program files\common files\symantec shared\antivirus\avifc.dll
c:\program files\common files\symantec shared\appcore\appmgr32.dll
c:\program files\common files\symantec shared\firewall\fwhelper.dll
c:\program files\norton internet security\fwplugin.dll
c:\program files\norton internet security\setevthp.dll
c:\program files\norton internet security\fwevent.dll
c:\program files\common files\symantec shared\antivirus\avexclu.dll
c:\program files\common files\symantec shared\ncoitf.dll
c:\program files\norton internet security\imcfg.dll
c:\program files\common files\symantec shared\spbbc\bbrgen.dll
c:\program files\common files\symantec shared\npc\npcwmidt.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\ntdsapi.dll
c:\program files\common files\symantec shared\defutdcd.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\apphelp.dll
c:\progra~1\common~1\symant~1\pif\{b8e1d~1\pollmgr.dll
c:\progra~1\common~1\symant~1\submis~1\subconn.dll
c:\program files\common files\symantec shared\ccaleng.dll
c:\program files\common files\symantec shared\spbbc\cctrstpc.dll
c:\program files\common files\symantec shared\ccscanw.dll
c:\program files\common files\symantec shared\ecmldr32.dll
c:\program files\common files\symantec shared\msl\msl.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\mscoree.dll
c:\windows\microsoft.net\framework\v1.1.4322\fusion.dll
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\APPCORE\APPSVC32.EXE
c:\program files\common files\symantec shared\appcore\appsvc32.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\atl71.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\program files\common files\symantec shared\ccl60u.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\windows\system32\xpsp2res.dll
c:\program files\common files\symantec shared\ccvrtrst.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\program files\common files\symantec shared\appcore\appmgr32.dll
c:\program files\common files\symantec shared\appcore\appset32.dll
c:\program files\common files\symantec shared\ccset.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\program files\common files\symantec shared\ccsvc.dll
c:\program files\common files\symantec shared\antivirus\avscan.dll
c:\windows\system32\userenv.dll
c:\program files\common files\symantec shared\antivirus\av.loc
c:\program files\common files\symantec shared\antivirus\avdefmgr.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\rasadhlp.dll
c:\program files\common files\symantec shared\antivirus\avmodule.dll
c:\windows\system32\uxtheme.dll
c:\program files\common files\symantec shared\qbackup.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\secur32.dll
c:\windows\system32\netapi32.dll
c:\program files\common files\symantec shared\antivirus\avexclu.dll
c:\program files\common files\symantec shared\srtsp\srtsp32.dll
c:\program files\common files\symantec shared\ccprosub.dll
c:\windows\system32\msi.dll
c:\progra~1\common~1\symant~1\ccevtcli.dll
c:\program files\common files\symantec shared\spbbc\spbbccli.dll
c:\program files\common files\symantec shared\ccscanw.dll
c:\program files\common files\symantec shared\ecmldr32.dll
c:\program files\common files\symantec shared\msl\msl.dll
c:\progra~1\common~1\symant~1\virusd~1\20070801.048\cceraser.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\linkinfo.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\atl.dll
c:\program files\common files\symantec shared\dec_abi.dll
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCPD-LC\SYMLCSVC.EXE
c:\program files\common files\symantec shared\ccpd-lc\symlcsvc.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\shell32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\program files\common files\symantec shared\ccpd-lc\symlcnet.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\secur32.dll
C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
c:\windows\system32\spoolsv.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\spoolss.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\localspl.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\winspool.drv
c:\windows\system32\netapi32.dll
c:\windows\system32\cnbjmon.dll
c:\windows\system32\hpzlnt04.dll
c:\windows\system32\fxsmon.dll
c:\windows\system32\fxsevent.dll
c:\windows\system32\pjlmon.dll
c:\windows\system32\tcpmon.dll
c:\windows\system32\usbmon.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\win32spl.dll
c:\windows\system32\netrap.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\inetpp.dll
C:\PROGRAM FILES\SYMANTEC\LIVEUPDATE\ALUSCHEDULERSVC.EXE
c:\program files\symantec\liveupdate\aluschedulersvc.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\shlwapi.dll
c:\program files\symantec\liveupdate\msvcp71.dll
c:\program files\symantec\liveupdate\msvcr71.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\shell32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\uxtheme.dll
c:\program files\common files\symantec shared\ccvrtrst.dll
c:\program files\common files\symantec shared\ccl60u.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\userenv.dll
c:\windows\system32\version.dll
c:\windows\system32\secur32.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\program files\symantec\liveupdate\pslucomserver_3_2.dll
c:\windows\system32\msi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\rasadhlp.dll
C:\PROGRAM FILES\ONTRACK\INTERNET CLEANUP\ICSERV.EXE
c:\program files\ontrack\internet cleanup\icserv.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\msctfime.ime
C:\PROGRAM FILES\MAXTOR\MAXTOR BACKUP\MAXBACKSERVICEINT.EXE
c:\program files\maxtor\maxtor backup\maxbackserviceint.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\maxtor\maxtor backup\drvifnt.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\mfc42u.dll
c:\windows\system32\winspool.drv
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\version.dll
c:\windows\system32\msi.dll
C:\PROGRAM FILES\MAXTOR\UTILS\SYNCSERVICES.EXE
c:\program files\maxtor\utils\syncservices.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\program files\maxtor\utils\drvifnt.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\mfc42u.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\imm32.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
C:\PROGRAM FILES\ANALOG DEVICES\SOUNDMAX\SPKRMON.EXE
c:\program files\analog devices\soundmax\spkrmon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\atl.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wiaservc.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\mscms.dll
c:\windows\system32\winspool.drv
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\actxprxy.dll
C:\WINDOWS\SYSTEM32\WDFMGR.EXE
c:\windows\system32\wdfmgr.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\secur32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\shell32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
C:\WINDOWS\SYSTEM32\FXSSVC.EXE
c:\windows\system32\fxssvc.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\winmm.dll
c:\windows\system32\winspool.drv
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\credui.dll
c:\windows\system32\shell32.dll
c:\windows\system32\fxsevent.dll
c:\windows\system32\fxstiff.dll
c:\windows\system32\fxsapi.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imm32.dll
c:\windows\system32\__c00ecf46.dat
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\fxst30.dll
c:\windows\system32\fxsroute.dll
c:\windows\system32\mpr.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\secur32.dll
C:\WINDOWS\SYSTEM32\ALG.EXE
c:\windows\system32\alg.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\atl.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\system32\serwvdrv.dll
c:\windows\system32\umdmxfrm.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
C:\PROGRAM FILES\LOGITECH\MOUSEWARE\SYSTEM\EM_EXEC.EXE
c:\program files\logitech\mouseware\system\em_exec.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\logitech\mouseware\system\eventex.dll
c:\windows\system32\comnctr.dll
c:\program files\logitech\mouseware\system\mfc42.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c