Voili
List'em by g3n-h@ckm@n 1.0.5.2
Thx to Chiquitine29.....
User : Rose (Administrateurs) # PC-DE-ROSE
Update on 07/11/2009 by g3n-h@ckm@n ::::: 20.00
Start at: 11:23:58 | 08/11/2009
Contact : g3n-h@ckm@n sur CCM
AMD Athlon(tm) Dual Core Processor 4450e
Microsoft® Windows Vista™ Édition Familiale Basique (6.0.6001 32-bit) # Service Pack 1
Internet Explorer 7.0.6001.18000
Windows Firewall Status : Enabled
C:\ -> Disque fixe local | 113,36 Go (31,76 Go free) [ACER] | NTFS
D:\ -> Disque fixe local | 170,08 Go (169,99 Go free) [DATA] | NTFS
E:\ -> Disque CD-ROM
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque amovible | 1,83 Go (1,83 Go free) | FAT
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processus en cours
C:\Windows\System32\smss.exe 496
C:\Windows\system32\csrss.exe 568
C:\Windows\system32\wininit.exe 628
C:\Windows\system32\csrss.exe 640
C:\Windows\system32\services.exe 672
C:\Windows\system32\winlogon.exe 700
C:\Windows\system32\lsass.exe 716
C:\Windows\system32\lsm.exe 728
C:\Windows\system32\svchost.exe 892
C:\Windows\system32\svchost.exe 968
C:\Windows\System32\svchost.exe 1008
C:\Windows\system32\Ati2evxx.exe 1096
C:\Windows\System32\svchost.exe 1132
C:\Windows\System32\svchost.exe 1216
C:\Windows\system32\svchost.exe 1228
C:\Windows\system32\SLsvc.exe 1368
C:\Windows\system32\svchost.exe 1400
C:\Windows\system32\svchost.exe 1540
C:\Windows\system32\Ati2evxx.exe 1636
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe 1676
C:\Program Files\Alwil Software\Avast4\ashServ.exe 1732
C:\Windows\system32\Dwm.exe 1936
C:\Windows\Explorer.EXE 1964
C:\Program Files\Windows Defender\MSASCui.exe 344
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe 536
C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe 644
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe 720
C:\Windows\RtHDVCpl.exe 1224
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe 1920
C:\Windows\vsnp2uvc.exe 880
C:\Windows\tsnp2uvc.exe 1508
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exe 1752
C:\Program Files\Alwil Software\Avast4\ashDisp.exe 1056
C:\Program Files\Java\jre6\bin\jusched.exe 2056
C:\Program Files\Common Files\Real\Update_OB\realsched.exe 2124
C:\Windows\System32\spoolsv.exe 2140
C:\Windows\system32\svchost.exe 2164
C:\Program Files\Windows Live\Messenger\msnmsgr.exe 2192
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe 2224
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe 2232
C:\Users\Rose\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe 2248
C:\Program Files\Windows Media Player\wmpnscfg.exe 2256
C:\Windows\system32\taskeng.exe 2276
C:\Windows\System32\rundll32.exe 2348
C:\Program Files\palmOne\HOTSYNC.EXE 2396
C:\Users\Rose\AppData\Local\Temp\b.exe 2620
C:\Windows\system32\taskeng.exe 2912
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe 2952
C:\Program Files\Bonjour\mDNSResponder.exe 3336
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe 3384
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe 3408
C:\Program Files\Acer\Empowering Technology\Service\ETService.exe 3428
C:\Program Files\Common Files\LightScribe\LSSrvc.exe 3600
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe 3648
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe 3688
C:\Windows\system32\svchost.exe 3708
C:\Program Files\Cyberlink\Shared files\RichVideo.exe 3764
C:\Windows\system32\svchost.exe 3812
C:\Windows\System32\svchost.exe 3856
C:\Windows\system32\SearchIndexer.exe 3916
C:\Windows\system32\WUDFHost.exe 2640
C:\Program Files\Windows Media Player\wmpnetwk.exe 1292
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe 2296
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe 5160
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe 5228
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe 5256
C:\Windows\system32\wmdtc.exe 5936
C:\Windows\system32\svchost.exe 4408
C:\Windows\system32\FastNetSrv.exe 2020
C:\Windows\servicing\TrustedInstaller.exe 664
C:\Windows\system32\wuauclt.exe 5516
C:\Program Files\Internet Explorer\iexplore.exe 4824
C:\Windows\system32\SearchProtocolHost.exe 2300
C:\Windows\system32\SearchFilterHost.exe 5612
C:\Windows\system32\lsm32.sys 4244
C:\Users\Rose\Desktop\List_Killem.exe 4120
C:\Windows\system32\conime.exe 5980
C:\Windows\system32\cmd.exe 5768
C:\Windows\system32\wbem\wmiprvse.exe 3820
C:\Users\Rose\AppData\Local\Temp\D74B.tmp\pv.exe 332
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="\"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe\" /background"
"swg"="\"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\""
"PC Suite Tray"="\"C:\\Program Files\\Nokia\\Nokia PC Suite 7\\PCSuite.exe\" -onlytray"
"SansaDispatch"="C:\\Users\\Rose\\AppData\\Roaming\\SanDisk\\Sansa Updater\\SansaDispatch.exe"
"WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"
"TurboNet"="C:\\Users\\Rose\\AppData\\Local\\Temp\\b.exe"
"ter8m"="RUNDLL32.EXE C:\\Windows\\TEMP\\msxm192z.dll,w"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\AdobeUpdater]
@=""
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=hex(2):25,00,50,00,72,00,6f,00,67,00,72,00,61,00,6d,00,46,\
00,69,00,6c,00,65,00,73,00,25,00,5c,00,57,00,69,00,6e,00,64,00,6f,00,77,00,\
73,00,20,00,44,00,65,00,66,00,65,00,6e,00,64,00,65,00,72,00,5c,00,4d,00,53,\
00,41,00,53,00,43,00,75,00,69,00,2e,00,65,00,78,00,65,00,20,00,2d,00,68,00,\
69,00,64,00,65,00,00,00
"Acer Empowering Technology Monitor"="C:\\Program Files\\Acer\\Empowering Technology\\SysMonitor.exe"
"EmpoweringTechnology"="C:\\Program Files\\Acer\\Empowering Technology\\Framework.Launcher.exe boot"
"eDataSecurity Loader"="C:\\Program Files\\Acer\\Empowering Technology\\eDataSecurity\\x86\\eDSloader.exe"
"RemoteControl"="\"C:\\Program Files\\CyberLink\\PowerDVD\\PDVDServ.exe\""
"LanguageShortcut"="\"C:\\Program Files\\CyberLink\\PowerDVD\\Language\\Language.exe\""
"BkupTray"="\"C:\\Program Files\\NewTech Infosystems\\NTI Backup Now 5\\BkupTray.exe\""
"RtHDVCpl"="RtHDVCpl.exe"
"StartCCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\Core-Static\\CLIStart.exe\""
"eRecoveryService"=""
"WarReg_PopUp"="C:\\Program Files\\Acer\\WR_PopUp\\WarReg_PopUp.exe"
"Google Desktop Search"="\"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup"
"SearchSettings"="C:\\Program Files\\pdfforge Toolbar\\SearchSettings.exe"
"snp2uvc"="C:\\Windows\\vsnp2uvc.exe"
"tsnp2uvc"="C:\\Windows\\tsnp2uvc.exe"
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 8.0\\Acrobat\\Acrotray.exe\""
@=""
"Adobe_ID0EYTHM"="C:\\PROGRA~1\\COMMON~1\\Adobe\\ADOBEV~1\\Server\\bin\\VERSIO~2.EXE"
"avast!"="C:\\PROGRA~1\\ALWILS~1\\Avast4\\ashDisp.exe"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre6\\bin\\jusched.exe\""
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"Malwarebytes Anti-Malware (reboot)"="\"C:\\Program Files\\Malwarebytes' Anti-Malware\\mbam.exe\" /runcleanupscript"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=dword:00000002
"ConsentPromptBehaviorUser"=dword:00000001
"EnableInstallerDetection"=dword:00000001
"EnableLUA"=dword:00000000
"EnableSecureUIAPaths"=dword:00000001
"EnableVirtualization"=dword:00000001
"PromptOnSecureDesktop"=dword:00000001
"ValidateAdminCodeSignatures"=dword:00000000
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"scforceoption"=dword:00000000
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"FilterAdministratorToken"=dword:00000000
"EnableUIADesktopToggle"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\UIPI]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\UIPI\Clipboard]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\UIPI\Clipboard\ExceptionFormats]
"CF_TEXT"=dword:00000001
"CF_BITMAP"=dword:00000002
"CF_OEMTEXT"=dword:00000007
"CF_DIB"=dword:00000008
"CF_PALETTE"=dword:00000009
"CF_UNICODETEXT"=dword:0000000d
"CF_DIBV5"=dword:00000011
===============
===============
===============
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\NoExplorer]
@=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{074C1DC5-9320-4A9A-947D-C042949C6216}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
@="Google Dictionary Compression sdch"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
@=""
==========================
contenu des autoruns presents
-----------------------------
J:\Autorun.inf :
----------------
[autorun]
open=DLLHOST.EXE
===============
Path : C:\Program Files\PC Connectivity Solution\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Program Files\Acer\Empowering Technology\eDataSecurity\;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\ESTsoft\ALZip\;C:\Program Files\ESTsoft\ALZip\
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\ProgramData\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\ProgramData\Application Data\Microsoft\Network\Downloader\qmgr1.dat
C:\Program Files\pdfforge Toolbar\SearchSettings.dll
C:\Windows\System32\477,671.exe
C:\Windows\System32\1897,547.exe
C:\Windows\System32\6542,475.exe
C:\Users\Rose\Application Data\.#
C:\Users\Rose\LOCAL Settings\Temp\a.exe
C:\Users\Rose\LOCAL Settings\Temp\b.exe
C:\Users\Rose\LOCAL Settings\Temp\c.exe
C:\Users\Rose\LOCAL Settings\Temp\caxsonwerm.exe
C:\Users\Rose\LOCAL Settings\Temp\Nokia_PC_Suite_7_1_30_8_wu_fre.exe
C:\Users\Rose\LOCAL Settings\Temp\wlsetup-cvr.exe
C:\Users\Rose\LOCAL Settings\Temp\_isD6BE.exe
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
"HKLM\Software\Search Settings"
HKCR\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4}
HKCU\SOFTWARE\XML
HKLM\Software\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
¤¤¤¤¤¤¤¤¤¤ C:\Windows\Prefetch :
1123,098.EXE-539830FC.pf
477,671.EXE-2344BD84.pf
814,2596.EXE-B01D5C1B.pf
A.EXE-E57741BB.pf
ACRODIST.EXE-9531DF40.pf
ADOBE AIR APPLICATION INSTALL-71A174CE.pf
AgAppLaunch.db
AgCx_SC1.db
AgCx_SC1.db.trx
AgCx_SC2.db
AGENTSVR.EXE-1ADDF55B.pf
AgGlFaultHistory.db
AgGlFgAppHistory.db
AgGlGlobalHistory.db
AgGlUAD_P_S-1-5-21-1009173658-238255549-617314782-1000.db
AgGlUAD_S-1-5-21-1009173658-238255549-617314782-1000.db
AgRobust.db
ALZIP.EXE-4808CE6A.pf
ASHMAISV.EXE-2A45B8D1.pf
ASHWEBSV.EXE-67F8F104.pf
ATI2EVXX.EXE-0327F1E7.pf
AVAST.SETUP-499863F4.pf
B.EXE-F8CCFC40.pf
BAYARDKIDS.EXE-F8463DB2.pf
BCDEDIT.EXE-10FC5AAB.pf
C.EXE-0C22B6C5.pf
CAXSONWERM.EXE-BA02B021.pf
CCC.EXE-AE792174.pf
CMD.EXE-4A81B364.pf
CONIME.EXE-9781FD5F.pf
CONTROL.EXE-817F8F1D.pf
CSCRIPT.EXE-D1EF4768.pf
CSRSS.EXE-3FE41F7E.pf
CTFMON.EXE-9450846B.pf
DLLHOST.EXE-5E46FA0D.pf
DLLHOST.EXE-766398D2.pf
DRVINST.EXE-4CB4314A.pf
EDSDTS.EXE-B5D9A1D2.pf
FASTNETSRV.EXE-2F3119E0.pf
FIREFOX.EXE-A606B53C.pf
FNPLICENSINGSERVICE.EXE-FAD19408.pf
GOOGLEDESKTOP.EXE-C9B032BF.pf
GOOGLEUPDATERSERVICE.EXE-09540BCD.pf
IEXPLORE.EXE-908C99F8.pf
JAVA.EXE-E27B75C2.pf
JAVAW.EXE-91B81925.pf
JAVAWS.EXE-5FA6EB7C.pf
JP2LAUNCHER.EXE-7C1F11C1.pf
Layout.ini
LIST_KILLEM.EXE-7E493839.pf
LOGONUI.EXE-09140401.pf
LSM32.SYS-5B1CF046.pf
MALWAREBYTES-ANTI-MALWARE_MAL-2EB73316.pf
MALWAREBYTES-ANTI-MALWARE_MAL-576C8CD7.pf
MALWAREBYTES-ANTI-MALWARE_MAL-66EB891A.pf
MALWAREBYTES-ANTI-MALWARE_MAL-BFAB7A7B.pf
MBAM.EXE-305FF92C.pf
MBAMGUI.EXE-4FE652ED.pf
MFPMP.EXE-26F35380.pf
MMLOADDRV.EXE-5475B7CC.pf
MOBSYNC.EXE-C5E2284F.pf
MODE.COM-DB34C082.pf
MSA.EXE-86A123B7.pf
MSHTA.EXE-A970B441.pf
MSIEXEC.EXE-A2D55CB6.pf
NCLINSTALLER.EXE-6C3DC8E0.pf
NCLRSSRV.EXE-5A857AD6.pf
NCLUSBSRV.EXE-EC4FC96F.pf
NET.NET-04693D54.pf
NOTEPAD.EXE-D8414F97.pf
NTOSBOOT-B00DFAAD.pf
NXCAWMRSEO.EXE-D7C218A1.pf
OPEIA.EXE-F56B4386.pf
PfSvPerfStats.bin
PHOTOSHOP.EXE-B0641B9D.pf
PING.EXE-7E94E73E.pf
PV.EXE-ED755968.pf
RACAGENT.EXE-A0EB3811.pf
ReadyBoot
REALONEMESSAGECENTER.EXE-9A1F2949.pf
REALPLAY.EXE-A09C7945.pf
REALSCHED.EXE-A91B3084.pf
REG.EXE-E7E8BD26.pf
REGSVR32.EXE-8461DBEE.pf
ROXSMANECW.EXE-7A32D5A9.pf
RPHELPERAPP.EXE-7719CDA2.pf
RUNDLL32.EXE-230FC512.pf
RUNDLL32.EXE-6D2968F1.pf
RUNDLL32.EXE-B81157C1.pf
RUNDLL32.EXE-E8AC3089.pf
SEARCHFILTERHOST.EXE-77482212.pf
SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
SERVICELAYER.EXE-5436186F.pf
SERVICES.EXE-511D36F4.pf
SMSS.EXE-E9C28FC6.pf
SNDVOL.EXE-5D4CC7D6.pf
SSVAGENT.EXE-42E515EF.pf
SVCHOST.EXE-7CFEDEA3.pf
SVCHOST.EXE-A1476A17.pf
TASKENG.EXE-48D4E289.pf
TASKMGR.EXE-5F5F473D.pf
TRUSTEDINSTALLER.EXE-3CC531E5.pf
VERCLSID.EXE-7C52E31C.pf
VLC.EXE-A11F73EE.pf
VRT116E.TMP-38E37514.pf
VRT15C3.TMP-07AA54A7.pf
VRT4FA8.TMP-B2591092.pf
VRT6220.TMP-BF490E8D.pf
VSSVC.EXE-B8AFC319.pf
WERFAULT.EXE-E69F695A.pf
WERMGR.EXE-0F2AC88C.pf
WININIT.EXE-5322684A.pf
WINLOGON.EXE-B020DC41.pf
WINWORD.EXE-CD3EED7A.pf
WMDTC.EXE-2E5DD6DB.pf
WMIADAP.EXE-F8DFDFA2.pf
WMIPRVSE.EXE-1628051C.pf
WMPLAYER.EXE-BAD6BD53.pf
WMPNETWK.EXE-D9F2A96F.pf
WMPNSCFG.EXE-FC0D39BF.pf
WSQMCONS.EXE-118B52B7.pf
WUAUCLT.EXE-70318591.pf
WUDFHOST.EXE-AFFEF87C.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤