Voila mon rapport list and kill them :
Merci !
List'em by g3n-h@ckm@n 1.0.5.0
Thx to Chiquitine29.....
User : Nicole (Administrateurs) # SYSTEM-LAP
Update on 05/11/2009 by g3n-h@ckm@n ::::: 19.00
Start at: 08:57:16 | 07.11.2009
Contact : g3n-h@ckm@n sur CCM
Intel(R) Core(TM)2 CPU T5600 @ 1.83GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 7.0.5730.11
Windows Firewall Status : Disabled
AV : Norton Internet Security 16.5.0.135 [ (!) Disabled | Updated ]
FW : Norton Internet Security[ (!) Disabled ]16.5.0.135
C:\ -> Disque fixe local | 141.15 Go (43.65 Go free) | NTFS
D:\ -> Disque CD-ROM
E:\ -> Disque fixe local | 7.9 Go (3.26 Go free) [HP_RECOVERY] | NTFS
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processus en cours
C:\WINDOWS\System32\smss.exe 776
C:\WINDOWS\system32\csrss.exe 1336
C:\WINDOWS\system32\winlogon.exe 1360
C:\WINDOWS\system32\services.exe 1404
C:\WINDOWS\system32\lsass.exe 1416
C:\WINDOWS\system32\svchost.exe 1572
C:\WINDOWS\system32\svchost.exe 1652
C:\WINDOWS\System32\svchost.exe 1692
C:\WINDOWS\system32\svchost.exe 1944
C:\WINDOWS\system32\svchost.exe 168
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe 484
C:\WINDOWS\system32\spoolsv.exe 632
C:\WINDOWS\System32\SCardSvr.exe 684
C:\WINDOWS\system32\svchost.exe 764
C:\WINDOWS\system32\msdtc.exe 2012
C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe 248
C:\WINDOWS\system32\agrsmsvc.exe 280
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe 292
C:\WINDOWS\System32\svchost.exe 324
C:\Program Files\Bonjour\mDNSResponder.exe 340
C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe 368
C:\WINDOWS\System32\svchost.exe 940
C:\WINDOWS\system32\IFXSPMGT.exe 952
C:\WINDOWS\system32\IFXTCS.exe 1000
C:\Program Files\Java\jre6\bin\jqs.exe 1008
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe 1064
C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe 1080
C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe 1096
C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe 1228
C:\Program Files\ProtectTools\Embedded Security Software\PSDsrvc.EXE 1264
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe 1300
C:\WINDOWS\system32\svchost.exe 1784
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe 1832
C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe 352
C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe 396
C:\WINDOWS\system32\mqsvc.exe 660
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe 1792
C:\Program Files\Windows Media Player\WMPNetwk.exe 2168
C:\WINDOWS\system32\wuauclt.exe 3012
C:\WINDOWS\system32\mqtgsvc.exe 3464
C:\Program Files\TeamViewer\Version4\TeamViewer.exe 3492
C:\WINDOWS\system32\wbem\wmiprvse.exe 3612
C:\WINDOWS\system32\wbem\unsecapp.exe 3816
C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe 2052
C:\Program Files\HPQ\IAM\bin\asghost.exe 2116
C:\Program Files\ProtectTools\Embedded Security Software\PSDrt.exe 2284
C:\WINDOWS\Explorer.EXE 2676
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 3980
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe 856
C:\WINDOWS\SMINST\Scheduler.exe 1744
C:\WINDOWS\AGRSMMSG.exe 1772
C:\WINDOWS\system32\hkcmd.exe 2784
C:\WINDOWS\system32\igfxsrvc.exe 2828
C:\WINDOWS\system32\igfxpers.exe 2844
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe 2668
C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe 3588
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe 3948
C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe 3960
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe 3972
C:\Program Files\Java\jre6\bin\jusched.exe 900
C:\Program Files\Analog Devices\Core\smax4pnp.exe 2300
C:\Program Files\iTunes\iTunesHelper.exe 3172
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe 3336
C:\WINDOWS\system32\ctfmon.exe 3724
C:\Program Files\Skype\Phone\Skype.exe 3912
C:\Program Files\Logitech\Logitech Vid\vid.exe 4100
C:\Program Files\Windows Media Player\WMPNSCFG.exe 4116
C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe 4232
C:\Program Files\Hp\Digital Imaging\bin\hpqtra08.exe 4340
C:\Program Files\Fichiers communs\Nikon\Monitor\NkMonitor.exe 4360
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe 4588
C:\WINDOWS\system32\wbem\wmiapsrv.exe 4700
C:\WINDOWS\System32\alg.exe 5328
C:\Program Files\Skype\Plugin Manager\skypePM.exe 5620
C:\Program Files\Internet Explorer\iexplore.exe 4436
C:\Program Files\iPod\bin\iPodService.exe 2460
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe 3600
C:\Program Files\Java\jre6\bin\jucheck.exe 180
C:\WINDOWS\system32\wuauclt.exe 3916
C:\Documents and Settings\Nicole\Mes documents\Philippe\List_Killem.exe 596
C:\WINDOWS\system32\cmd.exe 4740
C:\WINDOWS\system32\wbem\wmiprvse.exe 2880
C:\Documents and Settings\Nicole\Local Settings\Temp\45.tmp\pv.exe 2912
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"NBJ"="\"C:\\Program Files\\Ahead\\Nero BackItUp\\NBJ.exe\""
"TomTomHOME.exe"="\"C:\\Program Files\\TomTom HOME 2\\TomTomHOMERunner.exe\""
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"Logitech Vid"="\"C:\\Program Files\\Logitech\\Logitech Vid\\vid.exe\" -bootmode"
"WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"
"swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsmqIntCert"="regsvr32 /s mqrt.dll"
"SoundMAX"="C:\\Program Files\\Analog Devices\\SoundMAX\\Smax4.exe /tray"
"SynTPEnh"="C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe"
"QlbCtrl"=hex(2):25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,00,69,00,\
6c,00,65,00,73,00,25,00,5c,00,48,00,65,00,77,00,6c,00,65,00,74,00,74,00,2d,\
00,50,00,61,00,63,00,6b,00,61,00,72,00,64,00,5c,00,48,00,50,00,20,00,51,00,\
75,00,69,00,63,00,6b,00,20,00,4c,00,61,00,75,00,6e,00,63,00,68,00,20,00,42,\
00,75,00,74,00,74,00,6f,00,6e,00,73,00,5c,00,51,00,6c,00,62,00,43,00,74,00,\
72,00,6c,00,2e,00,65,00,78,00,65,00,20,00,2f,00,53,00,74,00,61,00,72,00,74,\
00,00,00
"Cpqset"="C:\\Program Files\\HPQ\\Default Settings\\cpqset.exe"
"Recguard"="C:\\WINDOWS\\Sminst\\Recguard.exe"
"Scheduler"="C:\\WINDOWS\\SMINST\\Scheduler.exe"
"AGRSMMSG"="AGRSMMSG.exe"
"PTHOSTTR"="C:\\Program Files\\HPQ\\HP ProtectTools Security Manager\\PTHOSTTR.EXE /Start"
"igfxtray"="C:\\WINDOWS\\system32\\igfxtray.exe"
"igfxhkcmd"="C:\\WINDOWS\\system32\\hkcmd.exe"
"igfxpers"="C:\\WINDOWS\\system32\\igfxpers.exe"
"CognizanceTS"="rundll32.exe C:\\PROGRA~1\\HPQ\\IAM\\Bin\\AsTsVcc.dll,RegisterModule"
"hpWirelessAssistant"="C:\\Program Files\\hpq\\HP Wireless Assistant\\HP Wireless Assistant.exe"
"WatchDog"="C:\\Program Files\\InterVideo\\DVD Check\\DVDCheck.exe"
"SCS'in - www.scsin.ch"="c:\\dokan\\dokan.exe /AUTO"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Elements 4.0\\apdproxy.exe\""
"HP Software Update"="\"C:\\Program Files\\Hp\\HP Software Update\\HPWuSchd2.exe\""
"Symantec PIF AlertEng"="\"C:\\Program Files\\Fichiers communs\\Symantec Shared\\PIF\\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\\PIFSvc.exe\" /a /m \"C:\\Program Files\\Fichiers communs\\Symantec Shared\\PIF\\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\\AlertEng.dll\""
"AppleSyncNotifier"="C:\\Program Files\\Fichiers communs\\Apple\\Mobile Device Support\\bin\\AppleSyncNotifier.exe"
"LogitechQuickCamRibbon"="\"C:\\Program Files\\Logitech\\Logitech WebCam Software\\LWS.exe\" /hide"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre6\\bin\\jusched.exe\""
"QuickTime Task"="\"C:\\Program Files\\QuickTime Alternative\\qttask.exe\" -atboottime"
"SynTPStart"="C:\\Program Files\\Synaptics\\SynTP\\SynTPStart.exe"
"SoundMAXPnP"="C:\\Program Files\\Analog Devices\\Core\\smax4pnp.exe"
"Picasa Media Detector"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe"
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Adobe ARM"="\"C:\\Program Files\\Fichiers communs\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"DWQueuedReporting"="\"C:\\PROGRA~1\\FICHIE~1\\MICROS~1\\DW\\dwtrig20.exe\" -t"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
===============
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableRegistryTools"=dword:00000000
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
"UPnPMonitor"="{e57ce738-33e8-4c51-8354-bb4de9d215d1}"
===============
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E8A6170-7264-4D0F-BEAE-D42A53123C75}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
@="Skype add-on (mastermind)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
"NoExplorer"=dword:00000001
@="Symantec NCO BHO"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
"NoExplorer"=dword:00000001
@="Symantec Intrusion Prevention"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
@="HP Credential Manager for ProtectTools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
@="JQSIEStartDetectorImpl"
"NoExplorer"=dword:00000001
==========================
contenu des autoruns presents
-----------------------------
E:\Autorun.inf :
----------------
[autorun]
OPEN=setupSNK.exe
ICON=\SMRTNTKY\fcw.ico
ACTION=Assistant Réseau sans fil
===============
Path : C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\wbem;C:\Program Files\HPQ\IAM\bin;C:\Program Files\QuickTime Alternative\QTSystem;C:\WINDOWS\system32\WindowsPowerShell\v1.0
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
C:\WINDOWS\System32\drivers\etc\hosts.msn
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
AAWSERVICE.EXE-3B93EBA3.pf
AAWTRAY.EXE-1858AE3F.pf
AAWWSC.EXE-248CAA52.pf
ACRORD32INFO.EXE-242CE4AA.pf
AD-AWAREADMIN.EXE-102E374C.pf
ADOBEARM.EXE-1095AC0A.pf
AGRSMMSG.EXE-0034A7F7.pf
ALG.EXE-0F138680.pf
APDPROXY.EXE-0DF66F23.pf
APPLESYNCNOTIFIER.EXE-38620255.pf
ASGHOST.EXE-073D1344.pf
AUPDATE.EXE-2253CB60.pf
BTTRAY.EXE-16EEC97F.pf
CCSEUPDT.EXE-03F5E803.pf
CCSVCHST.EXE-20373D14.pf
CLTLMH.EXE-05130B96.pf
COCIMANAGER.EXE-046DBC57.pf
CPQSET.EXE-2B4136E6.pf
CTFMON.EXE-0E17969B.pf
DEFRAG.EXE-273F131E.pf
DFRGNTFS.EXE-269967DF.pf
DIFXINSTALL32.EXE-2C1A388E.pf
DLLHOST.EXE-205D880D.pf
DOKAN.EXE-34E9B693.pf
DUMPREP.EXE-1B46F901.pf
DVDCHECK.EXE-210ADC09.pf
DW20.EXE-0F7C73AD.pf
DWTRIG20.EXE-1B5A890A.pf
DWWIN.EXE-30875ADC.pf
EPSCANSV.EXE-2F22B574.pf
EXPLORER.EXE-082F38A9.pf
FOIENUM.EXE-10A47BDE.pf
HELPSVC.EXE-2878DDA2.pf
HIJACKTHIS-2.0.2.EXE-367CC699.pf
HKCMD.EXE-1D05234B.pf
HP WIRELESS ASSISTANT.EXE-16269BEA.pf
HPQGALRY.EXE-07140C25.pf
HPQTHB08.EXE-060DCF16.pf
HPQTRA08.EXE-17E37E7E.pf
HPRBLOG.EXE-35C0D80C.pf
HPRBUPDATE.EXE-2A868BA4.pf
HPWUSCHD2.EXE-02F6D2DD.pf
HPZENG12.EXE-07E42CEC.pf
HPZIPM12.EXE-145E7369.pf
HPZSTC12.EXE-2A807C2C.pf
HPZTBX12.EXE-1D337D89.pf
IEXPLORE.EXE-27122324.pf
IGFXPERS.EXE-2C07C174.pf
IGFXSRVC.EXE-2FB63FE8.pf
IGFXTRAY.EXE-3391579A.pf
IMAPI.EXE-0BF740A4.pf
INSTALL.DLL-1C3EBFA1.pf
IPODSERVICE.EXE-3192DE38.pf
ITUNES.EXE-1A268432.pf
ITUNESHELPER.EXE-15823303.pf
ITUNESPHOTOPROCESSOR.EXE-24970A75.pf
JAVA.EXE-0C263507.pf
JAVAW.EXE-2DC32ABC.pf
JAVAWS.EXE-021AC9A9.pf
JUCHECK.EXE-395165C8.pf
JUSCHED.EXE-25206883.pf
Layout.ini
LIST_KILLEM.EXE-004F21A2.pf
LOGITECHUPDATE.EXE-09DF4673.pf
LOGON.SCR-151EFAEA.pf
LUCOMS~1.EXE-02DB5950.pf
LULNCHR.EXE-016ABA85.pf
LWS.EXE-0829AF3E.pf
MODE.COM-31685BAE.pf
MPNOTIFY.EXE-3631A846.pf
MSFEEDSSYNC.EXE-25E13438.pf
MSIEXEC.EXE-2F8A8CAE.pf
MSOHTMED.EXE-1BD4AAD2.pf
NBJ.EXE-157B039B.pf
NDP1.1SP1-KB953297-X86.EXE-33E8E47A.pf
NEROCHECK.EXE-092C6DFA.pf
NKMONITOR.EXE-2F5083F8.pf
NOTEPAD.EXE-336351A9.pf
NTOSBOOT-B00DFAAD.pf
OUTLOOK.EXE-106351DB.pf
PIFSVC.EXE-2CA08DB5.pf
POWERPNT.EXE-2F940E7E.pf
PSDRT.EXE-159F01F6.pf
PTHOSTTR.EXE-2A14C485.pf
PTSERVS.EXE-3040B05D.pf
QLBCTRL.EXE-0325C50A.pf
QLBPRES.EXE-34B537FB.pf
QTTASK.EXE-0E9D96C5.pf
READER_SL.EXE-2B4EA1CB.pf
RECGUARD.EXE-3990548D.pf
REGSVR32.EXE-25EEFE2F.pf
RUNDLL32.EXE-13761084.pf
RUNDLL32.EXE-1F45243D.pf
RUNDLL32.EXE-2576181F.pf
RUNDLL32.EXE-268BFF96.pf
RUNDLL32.EXE-2DE3B28B.pf
RUNDLL32.EXE-3179E190.pf
RUNDLL32.EXE-41070E42.pf
RUNDLL32.EXE-43CFFEB8.pf
SAFARI.EXE-238FF382.pf
SCHEDULER.EXE-129B180F.pf
SETUPADMIN.EXE-3351DAA3.pf
SETUP_WM.EXE-3135CBD6.pf
SKYPE.EXE-30AE1A60.pf
SKYPEPM.EXE-2BC7DD5C.pf
SMAX4.EXE-3ABA87F8.pf
SMAX4PNP.EXE-381239AF.pf
SOFTWAREUPDATE.EXE-1415D1B8.pf
SOL.EXE-1C0C14EB.pf
SPUPGRADE.EXE-1EAE8B19.pf
SYKNLU.EXE-1CAFF01B.pf
SYNTPENH.EXE-315D3ABC.pf
SYNTPSTART.EXE-25038CFE.pf
THREATWORK.EXE-0F50642D.pf
TOMTOMHOMERUNNER.EXE-27D8E119.pf
UNSECAPP.EXE-1A95A33B.pf
UPDATE.EXE-38080E46.pf
USERINIT.EXE-30B18140.pf
VERCLSID.EXE-3667BD89.pf
VID.EXE-1FC712A3.pf
WGATRAY.EXE-0ED38BED.pf
WIAACMGR.EXE-212ED878.pf
WINWORD.EXE-37F6AE09.pf
WMIADAP.EXE-2DF425B2.pf
WMIAPSRV.EXE-1E2270A5.pf
WMIPRVSE.EXE-28F301A9.pf
WMPLAYER.EXE-18DDEFA3.pf
WMPLAYER.EXE-18DDEFA5.pf
WMPNSCFG.EXE-18926138.pf
WUAUCLT.EXE-399A8E72.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤