CobolGuy9
asked on
Something is wrong with my IE and my Win200 PC, please help
It is unbeliveable I can not delete cookies.dat and in process view tree I have 10 iexplorer.exe opened.
I am attaching the process tree for explorer.exe and iexplorer.exe.
Do I have anything in my computer?
Please help.
Thank you!
-------------------------- --
Process: IEXPLORE.EXE Pid: 1004
Handle Type Access Name
0x38 Desktop 0x000F01FF \Default
0x14 Directory 0x00000003 \KnownDlls
0x1C Directory 0x000F000F \Windows
0x54 Directory 0x0002000F \BaseNamedObjects
0x13C Event 0x00100000 \BaseNamedObjects\crypt32L ogoffEvent
0x260 Event 0x001F0003 \BaseNamedObjects\userenv: User Profile setup event
0x590 Event 0x00100002 \BaseNamedObjects\GuardEve ntmmGlobal PnpInfoGua rd
0x5C0 Event 0x00100002 \BaseNamedObjects\hardware mixercallb ack
0x5C4 Event 0x00100002 \BaseNamedObjects\mixercal lback
0x11C File 0x001F01FF \Device\Tcp
0x140 File 0x0012019F C:\Documents and Settings\Administrator\Loc al Settings\Temporary Internet Files\Content.IE5\index.da t
0x154 File 0x0012019F C:\Documents and Settings\Administrator\Coo kies\index .dat
0x15C File 0x0012019F C:\Documents and Settings\Administrator\Loc al Settings\History\History.I E5\index.d at
0x18 File 0x00100020 C:\Documents and Settings\Administrator\Des ktop
0x1E8 File 0x001F01FF \Device\Afd\Endpoint
0x1EC File 0x001F01FF \Device\Udp
0x250 File 0x0012019F \Device\NamedPipe\ROUTER
0x2B4 File 0x00100001 \Device\KsecDD
0x2D0 File 0x001F01FF \Device\Tcp
0x2D4 File 0x001F01FF \Device\Tcp
0x2D8 File 0x001200A0 \Device\Ip
0x2DC File 0x00100003 \Device\Ip
0x2E0 File 0x00100081 \Device\Ip
0x2F4 File 0x001F01FF \Device\Tcp
0x31C File 0x001F01FF \Device\Afd\AsyncConnectHl p
0x3A8 File 0x00100001 C:\Documents and Settings\Administrator\Fav orites
0x3B4 File 0x00120089 C:\Documents and Settings\Administrator\Loc al Settings\Temporary Internet Files\Content.IE5\MSG137CA \Operating _Systems[1 ].htm
0x3F8 File 0x0012019F \Device\NamedPipe\ntsvcs
0x3FC File 0x0012019F \Device\NamedPipe\WMIEP_3e c
0x400 File 0x0012019F \Device\NamedPipe\WMIEP_3e c
0x4F8 File 0x001F01FF \Device\Tcp
0x510 File 0x0012019F \Device\KSENUM#00000001\{9 B365890-16 5F-11D0-A1 95-0020AFD 156E4}
0x514 File 0x001F01FF \Device\Tcp
0x51C File 0x001F01FF \Device\Tcp
0x524 File 0x001F01FF \Device\Tcp
0x528 File 0x001F01FF \Device\Afd\Endpoint
0x52C File 0x00120089 C:\WINNT\system32\mshtml.t lb
0x53C File 0x00120089 C:\WINNT\system32\STDOLE2. TLB
0x558 File 0x001F01FF \Device\Afd\Endpoint
0x560 File 0x0012019F \Device\NamedPipe\ntsvcs
0x588 File 0x00120089 C:\Documents and Settings\Administrator\Loc al Settings\Temporary Internet Files\Content.IE5\ROQKUYGR \511762512 [1].htm
0x5B0 File 0x001F01FF \Device\Tcp
0x5C File 0x00100001 \Device\KsecDD
0x5D4 File 0x0012019F C:\Documents and Settings\Administrator\Loc al Settings\History\History.I E5\MSHist0 1200409292 0040930\in dex.dat
0x5E0 File 0x00120089 C:\WINNT\system32\Macromed \Flash\Fla sh.ocx
0x628 File 0x001F01FF \Device\Afd\Endpoint
0x124 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In ternet Explorer\SECURITY\P3Global
0x128 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In ternet Explorer\SECURITY\P3Sites
0x134 Key 0x00020019 HKCU
0x138 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings
0x17C Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ Shell Icons
0x180 Key 0x00020019 HKCU
0x188 Key 0x00020019 HKCU
0x18C Key 0x00020019 HKCU
0x194 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ Shell Icons
0x198 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ RunMRU
0x19C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In ternet Explorer\TypedURLs
0x1A8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Ac tive Setup\Installed Components\{89820200-ECBD- 11CF-8B85- 00AA005B43 83}
0x1B4 Key 0x00020019 HKCU
0x1C4 Key 0x000F003F HKLM\SYSTEM\ControlSet001\ Services\W inSock2\Pa rameters\P rotocol_Ca talog9
0x1CC Key 0x000F003F HKLM\SYSTEM\ControlSet001\ Services\W inSock2\Pa rameters\N ameSpace_C atalog5
0x1D4 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings\ZoneMap
0x1E0 Key 0x00020019 HKCU
0x214 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr acing\RASA PI32
0x230 Key 0x00020019 HKCU
0x244 Key 0x000F003F HKU
0x248 Key 0x00000003 HKCU
0x254 Key 0x000F003F HKLM\SYSTEM\ControlSet001\ Hardware Profiles\0001
0x25C Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings\ZoneMap
0x274 Key 0x00020019 HKCU
0x280 Key 0x00000001 HKLM\SYSTEM\ControlSet001\ Services\D nsCache\Pa rameters
0x284 Key 0x00020019 HKCU
0x2E4 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Services\T cpip\Linka ge
0x2E8 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Services\T cpip\Param eters
0x2EC Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Services\N etBT\Param eters\Inte rfaces
0x2F0 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Services\N etBT\Param eters
0x304 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr acing\RASA DHLP
0x30C Key 0x00020019 HKCU
0x310 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings\ZoneMap
0x320 Key 0x00020019 HKCU
0x328 Key 0x00020019 HKCU
0x330 Key 0x00020019 HKCU
0x334 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\WI NDOWS NT\CURRENTVERSION\DRIVERS3 2
0x338 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings\ZoneMap
0x344 Key 0x00020019 HKCU
0x348 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ UserAssist \{75048700 -EF1F-11D0 -9888-0060 97DEACF9}\ Count
0x34C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ UserAssist \{5E6AB780 -7743-11CF -A12B-00AA 004AE837}\ Count
0x350 Key 0x00020019 HKCU
0x368 Key 0x00020019 HKCU
0x36C Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings\ZoneMap
0x370 Key 0x00020019 HKCU
0x37C Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Ne tworkProvi der\HwOrde r
0x380 Key 0x00020019 HKCU
0x384 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\Shel lNoRoam\MU ICache
0x388 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\Shel lNoRoam
0x3BC Key 0x0000000C HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings\P3P\History
0x3E8 Key 0x00020019 HKCU
0x3F0 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Nl s\Locale
0x40 Key 0x000F003F HKLM
0x404 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Nl s\Locale\A lternate Sorts
0x408 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Nl s\Language Groups
0x44 Key 0x000F003F HKCU
0x468 Key 0x00020019 HKCU
0x48 Key 0x000F003F HKCU
0x48C Key 0x00020019 HKCU
0x4C Key 0x000F003F HKCU\CLSID
0x4E4 Key 0x00020019 HKCU
0x4E8 Key 0x00020019 HKCU
0x50 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer
0x538 Key 0x00020019 HKCU
0x548 Key 0x00020019 HKCU
0x570 Key 0x00020019 HKCU
0x574 Key 0x00020019 HKCU
0x598 Key 0x00020019 HKCU
0x5A8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\WI NDOWS NT\CURRENTVERSION\DRIVERS3 2
0x5B4 Key 0x00020019 HKCU
0x5EC Key 0x00020019 HKCU
0x600 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Di rectDraw
0x64 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer
0x70 Key 0x000F003F HKCR
0x78 Key 0x000F003F HKCU
0x80 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0x88 Key 0x00000010 HKU
0x90 Key 0x000F003F HKCR
0x98 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xA0 Key 0x00000010 HKU
0xA8 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xB0 Key 0x000F003F HKCR\CLSID
0xB8 Key 0x000F003F HKCR
0xC0 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xC8 Key 0x00000010 HKU
0xD0 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xD8 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xE0 Key 0x000F003F HKCR\CLSID
0xF0 Key 0x00020019 HKCU
0x144 Mutant 0x00100000 \BaseNamedObjects\_!MSFTHI STORY!_
0x148 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!loc al settings!temporary internet files!content.ie5!
0x150 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!coo kies!
0x158 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!loc al settings!history!history.i e5!
0x168 Mutant 0x00100000 \BaseNamedObjects\WininetS tartupMute x
0x170 Mutant 0x00100000 \BaseNamedObjects\WininetC onnectionM utex
0x178 Mutant 0x00100000 \BaseNamedObjects\WininetP roxyRegist ryMutex
0x1A0 Mutant 0x001F0001 \BaseNamedObjects\ZonesCou nterMutex
0x1A4 Mutant 0x001F0001 \BaseNamedObjects\ZonesCac heCounterM utex
0x21C Mutant 0x00100000 \BaseNamedObjects\RasPbFil e
0x33C Mutant 0x001F0001 \BaseNamedObjects\_SHuassi st.mtx
0x534 Mutant 0x00100000 \BaseNamedObjects\GuardMut exmmGlobal PnpInfoGua rd
0x578 Mutant 0x001F0001 \BaseNamedObjects\{1B65509 4-FE2A-433 c-A877-FF9 793445069}
0x5A4 Mutant 0x00100000 \BaseNamedObjects\mxrapi
0x5D0 Mutant 0x00100000 \BaseNamedObjects\_!SHMSFT HISTORY!_
0x5E8 Mutant 0x001F0001 \BaseNamedObjects\DDrawWin dowListMut ex
0x5F0 Mutant 0x001F0001 \BaseNamedObjects\DDrawDri verObjectL istMutex
0x5F4 Mutant 0x001F0001 \BaseNamedObjects\__DDrawE xclMode__
0x5F8 Mutant 0x001F0001 \BaseNamedObjects\__DDrawC heckExclMo de__
0x604 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!loc al settings!history!history.i e5!mshist0 1200409292 0040930!
0x110 Port 0x001F0001 \RPC Control\OLE179
0x14C Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Loc al Settings_Temporary Internet Files_Content.IE5_index.da t_163840
0x160 Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Loc al Settings_History_History.I E5_index.d at_491520
0x16C Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Coo kies_index .dat_32768
0x1B8 Section 0x000F0007 \BaseNamedObjects\UrlZones SM_Adminis trator
0x438 Section 0x000F0007 \BaseNamedObjects\MSIMGSIZ ECacheMap
0x518 Section 0x00000006 \BaseNamedObjects\WDMAUD_C allbacks
0x594 Section 0x00000004 \BaseNamedObjects\mmGlobal PnpInfo
0x644 Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Loc al Settings_History_History.I E5_MSHist0 1200409292 0040930_in dex.dat_49 152
0xE8 Section 0x00000004 \BaseNamedObjects\__R_0000 000000cc_S Mem__
0x12C Semaphore 0x001F0003 \BaseNamedObjects\shell.{A 48F1A32-A3 40-11D1-BC 6B-00A0C90 312E1}
0x190 Semaphore 0x001F0003 \BaseNamedObjects\shell.{0 90851A5-EB 96-11D2-8B E4-00C04FA 31A66}
0x1AC Semaphore 0x001F0003 \BaseNamedObjects\shell._i e_sessionc ount
0x58 Semaphore 0x001F0003 \BaseNamedObjects\shell.{2 10A4BA0-3A EA-1069-A2 D9-08002B3 0309D}
0x58C Semaphore 0x00100002 \BaseNamedObjects\GuardSem mmGlobalPn pInfoGuard
0x60 Semaphore 0x001F0003 \BaseNamedObjects\shell.{6 D5313C0-8C 62-11D1-B2 CD-006097D F8C11}
0x68 Semaphore 0x001F0003 \BaseNamedObjects\shell.{A 48F1A32-A3 40-11D1-BC 6B-00A0C90 312E1}
0x6C Semaphore 0x001F0003 \BaseNamedObjects\shell.{7 CB834F0-52 7B-11D2-9D 1F-0000F80 5CA57}
0x100 Thread 0x001F03FF IEXPLORE.EXE(1004): 752
0x1C0 Thread 0x001F03FF IEXPLORE.EXE(1004): 752
0x1D0 Thread 0x001F03FF IEXPLORE.EXE(1004): 744
0x1DC Thread 0x001F03FF IEXPLORE.EXE(1004): 744
0x240 Thread 0x001F03FF IEXPLORE.EXE(1004): 956
0x268 Thread 0x001F03FF IEXPLORE.EXE(1004): 672
0x294 Thread 0x001F03FF IEXPLORE.EXE(1004): 956
0x35C Thread 0x001F03FF IEXPLORE.EXE(1004): 844
0x364 Thread 0x001F03FF IEXPLORE.EXE(1004): 884
0x39C Thread 0x001F03FF IEXPLORE.EXE(1004): 508
0x3AC Thread 0x001F03FF IEXPLORE.EXE(1004): 508
0x3B0 Thread 0x001F03FF IEXPLORE.EXE(1004): 784
0x3D4 Thread 0x001F03FF IEXPLORE.EXE(1004): 916
0x414 Thread 0x001F03FF IEXPLORE.EXE(1004): 916
0x428 Thread 0x001F03FF IEXPLORE.EXE(1004): 248
0x440 Thread 0x001F03FF IEXPLORE.EXE(1004): 248
0x488 Thread 0x001F03FF IEXPLORE.EXE(1004): 756
0x490 Thread 0x001F03FF IEXPLORE.EXE(1004): 884
0x49C Thread 0x001F03FF IEXPLORE.EXE(1004): 784
0x4F4 Thread 0x001F03FF IEXPLORE.EXE(1004): 660
0x55C Thread 0x001F03FF IEXPLORE.EXE(1004): 540
0x638 Thread 0x001F03FF IEXPLORE.EXE(1004): 872
0x568 Token 0x0000000C BRIAN\Administrator
0x34 WindowStation 0x000F037F \Windows\WindowStations\Wi nSta0
0x3C WindowStation 0x000F037F \Windows\WindowStations\Wi nSta0
-------------------------- ---
Process: explorer.exe Pid: 740
Handle Type Access Name
0x38 Desktop 0x000F01FF \Default
0x14 Directory 0x00000003 \KnownDlls
0x20 Directory 0x000F000F \Windows
0x58 Directory 0x0002000F \BaseNamedObjects
0x18C Event 0x001F0003 \BaseNamedObjects\userenv: User Profile setup event
0x2A4 Event 0x001F0003 \BaseNamedObjects\ShellRea dyEvent
0x2F8 Event 0x001F0003 \BaseNamedObjects\Shell_No tification CallbacksO utstanding
0x358 Event 0x001F0003 \BaseNamedObjects\HPlugEje ctEvent
0x440 Event 0x00100000 \BaseNamedObjects\crypt32L ogoffEvent
0x1BC File 0x00100001 C:\Documents and Settings\Administrator\Sta rt Menu
0x1C0 File 0x00100001 C:\Documents and Settings\All Users.WINNT\Start Menu
0x1C4 File 0x00100001 C:\Documents and Settings\Administrator\Des ktop
0x1C8 File 0x00100001 C:\Documents and Settings\All Users.WINNT\Desktop
0x1D0 File 0x00100001 C:\Documents and Settings\Administrator\Des ktop
0x1F4 File 0x0012019F \Device\NamedPipe\ntsvcs
0x284 File 0x00100001 C:\Documents and Settings\Administrator\App lication Data\Microsoft\Internet Explorer\Quick Launch
0x2A0 File 0x0012019F C:\Documents and Settings\Administrator\Loc al Settings\History\History.I E5\MSHist0 1200409292 0040930\in dex.dat
0x360 File 0x0012019F \Device\NamedPipe\ntsvcs
0x364 File 0x0012019F \Device\NamedPipe\WMIEP_2e 4
0x368 File 0x0012019F \Device\NamedPipe\WMIEP_2e 4
0x42C File 0x0012019F \Device\NamedPipe\ROUTER
0x43C File 0x00100001 \Device\KsecDD
0x454 File 0x0012019F \Device\NamedPipe\WMIEP_2e 4
0x4FC File 0x0012019F C:\Documents and Settings\Administrator\Coo kies\index .dat
0x504 File 0x0012019F C:\Documents and Settings\Administrator\Loc al Settings\History\History.I E5\index.d at
0x51C File 0x0012019F \Device\NamedPipe\WMIEP_2e 4
0x608 File 0x0012019F C:\Documents and Settings\Administrator\Loc al Settings\Temporary Internet Files\Content.IE5\index.da t
0x63C File 0x0012019F \Device\NamedPipe\WMIEP_2e 4
0x6FC File 0x0012019F D:\WS_FTP\ssl.log
0x7BC File 0x0012019F \Device\NamedPipe\WMIEP_2e 4
0x864 File 0x00100020 C:\Program Files\Common Files\System\Mapi\1033
0x88 File 0x00100001 \Device\KsecDD
0x124 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0x134 Key 0x00020019 HKCU
0x138 Key 0x00020019 HKCU
0x148 Key 0x000F003F HKCR\CLSID
0x150 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In ternet Explorer\SECURITY\P3Global
0x154 Key 0x00020019 HKCU
0x160 Key 0x00020019 HKCU
0x170 Key 0x00020019 HKCU
0x174 Key 0x00020019 HKCU
0x178 Key 0x00020019 HKCU
0x17C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In ternet Explorer\SECURITY\P3Sites
0x180 Key 0x00020019 HKCU
0x188 Key 0x00000010 HKCR
0x190 Key 0x000F003F HKCU\CLSID
0x194 Key 0x00000010 HKCR\CLSID
0x198 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu
0x19C Key 0x00020019 HKCU
0x1AC Key 0x00020019 HKCU
0x1B0 Key 0x00020019 HKCU
0x1B4 Key 0x00020019 HKCU
0x1D8 Key 0x00020019 HKCU
0x1DC Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\D
0x1E0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\Shel lNoRoam
0x1E8 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\Shel lNoRoam\MU ICache
0x1F8 Key 0x00020019 HKCU
0x1FC Key 0x00020019 HKCU
0x208 Key 0x00020019 HKCU
0x21C Key 0x00000001 HKLM\SYSTEM\ControlSet001\ Services\D nsCache\Pa rameters
0x220 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer
0x224 Key 0x00020019 HKCU
0x228 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\A
0x22C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\A
0x230 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Ne tworkProvi der\HwOrde r
0x234 Key 0x00020019 HKCU
0x238 Key 0x00020019 HKCU
0x23C Key 0x00020019 HKCU
0x248 Key 0x000F003F HKLM\SYSTEM\ControlSet001\ Hardware Profiles\0001
0x268 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x27C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\E
0x28 Key 0x000F003F HKLM
0x280 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\E
0x28C Key 0x00020019 HKCU
0x290 Key 0x00020019 HKCU
0x294 Key 0x00020019 HKCU
0x2B0 Key 0x00020019 HKCU
0x2B8 Key 0x00020019 HKCU
0x2C0 Key 0x00020019 HKCU
0x2C8 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x2CC Key 0x000F003F HKU
0x2EC Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\WI NDOWS NT\CURRENTVERSION\DRIVERS3 2
0x300 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs
0x310 Key 0x00020019 HKCU
0x320 Key 0x00020019 HKCU
0x328 Key 0x00020019 HKCU
0x32C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ UserAssist \{75048700 -EF1F-11D0 -9888-0060 97DEACF9}\ Count
0x330 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ UserAssist \{5E6AB780 -7743-11CF -A12B-00AA 004AE837}\ Count
0x390 Key 0x00020019 HKCU
0x39C Key 0x00020019 HKCU
0x3C0 Key 0x00020019 HKCU
0x3CC Key 0x00020019 HKCU
0x3D8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr acing\RASA PI32
0x3F8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr acing\RASD LG
0x40 Key 0x000F003F HKCU
0x410 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Entertainm ent
0x414 Key 0x000F003F HKLM\SYSTEM\ControlSet001\ Services\W inSock2\Pa rameters\P rotocol_Ca talog9
0x41C Key 0x000F003F HKLM\SYSTEM\ControlSet001\ Services\W inSock2\Pa rameters\N ameSpace_C atalog5
0x420 Key 0x00020019 HKCU
0x448 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ FindExtens ions
0x45C Key 0x00020019 HKCU
0x468 Key 0x00020019 HKCU
0x47C Key 0x00020019 HKCU
0x484 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs
0x488 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\utilities
0x494 Key 0x00020019 HKCU
0x498 Key 0x00020019 HKCU
0x49C Key 0x00020019 HKCU
0x4AC Key 0x00020019 HKCU
0x4B0 Key 0x00020019 HKCU
0x4B4 Key 0x00020019 HKCU
0x4C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer
0x4C8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Internet Settings
0x4CC Key 0x00020019 HKCU
0x4D0 Key 0x00020019 HKCU
0x4D4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\VisualMill 5.0
0x4D8 Key 0x00020019 HKCU
0x4E4 Key 0x00020019 HKCU
0x4E8 Key 0x00020019 HKCU
0x520 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Games
0x538 Key 0x00020019 HKCU
0x53C Key 0x00020019 HKCU
0x54 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\WI NDOWS NT\CURRENTVERSION\Extensio ns
0x540 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Accessibil ity
0x54C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\E
0x550 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\A
0x554 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Communicat ions\Fax
0x558 Key 0x00020019 HKCU
0x55C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer
0x560 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x568 Key 0x00020019 HKCU
0x570 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x578 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Communicat ions
0x584 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Communicat ions
0x588 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\utilities
0x59C Key 0x00020019 HKCU
0x5A4 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\E
0x5BC Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ FindExtens ions\Stati c\ShellSea rch\1
0x5C8 Key 0x00020019 HKCU
0x5CC Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x5D0 Key 0x00020019 HKCU
0x5E0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\D
0x60 Key 0x000F003F HKCU
0x604 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\C
0x618 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories
0x61C Key 0x00020019 HKCU
0x620 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ BitBucket
0x624 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ BitBucket
0x630 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ BitBucket\ C
0x634 Key 0x00000003 HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ BitBucket\ C
0x64 Key 0x000F003F HKCU\CLSID
0x64C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Entertainm ent
0x650 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\C
0x658 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ FindExtens ions\Stati c\ShellSea rch\1
0x65C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Communicat ions\Fax\E ng
0x668 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ FindExtens ions\Stati c\ShellSea rch\2
0x674 Key 0x00020019 HKCU
0x678 Key 0x00020019 HKCU
0x67C Key 0x00020019 HKCU
0x68 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer
0x680 Key 0x00020019 HKCU
0x688 Key 0x00020019 HKCU
0x68C Key 0x00000003 HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ BitBucket\ D
0x69C Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ BitBucket\ D
0x6A4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ FindExtens ions\Stati c\ShellSea rch\2
0x6A8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Macromedia\R eadme Files
0x6B0 Key 0x00020019 HKCU
0x6B4 Key 0x00020019 HKCU
0x6B8 Key 0x00020019 HKCU
0x6C0 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories
0x6E0 Key 0x00020019 HKCU
0x6F0 Key 0x00020019 HKCU
0x6F4 Key 0x00020019 HKCU
0x6F8 Key 0x00020019 HKCU
0x700 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x71C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Macromedia
0x734 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x738 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x74C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Macromedia
0x76C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Communicat ions\Fax
0x770 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\C
0x78C Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Nl s\Language Groups
0x79C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Communicat ions
0x7A0 Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Nl s\Locale\A lternate Sorts
0x7AC Key 0x00020019 HKLM\SYSTEM\ControlSet001\ Control\Nl s\Locale
0x7B0 Key 0x00020019 HKCU
0x7B4 Key 0x00020019 HKCU
0x7C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs
0x7C4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\utilities
0x7C8 Key 0x00020019 HKCU
0x7E4 Key 0x00020019 HKCU
0x7EC Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\The MetaCut Utilities
0x814 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\G
0x818 Key 0x00020019 HKCR\MIME\Database\Content Type
0x830 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories
0x83C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs
0x84 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ Shell Icons
0x844 Key 0x00020019 HKCU
0x858 Key 0x00020019 HKCU
0x868 Key 0x00020019 HKCR\MIME\Database\Content Type
0x880 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s
0x898 Key 0x00020019 HKCU
0x89C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\E
0x8A4 Key 0x00020019 HKCU
0x8A8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories\ Communicat ions\Fax\E ng
0x8B0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\C
0x8B4 Key 0x00020019 HKCU
0x8C Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0x8C4 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\E
0x8C8 Key 0x00020019 HKCU
0x8D4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Startup
0x8D8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Macromedia\R eadme Files
0x8DC Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\C
0x8F0 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories
0x8F4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs
0x930 Key 0x00020019 HKCU
0x93C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\D
0x94C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\Accessories
0x958 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\D
0x964 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MenuOrder\ Start Menu\Programs\utilities
0x978 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\D
0x984 Key 0x00020019 HKCU
0x9A8 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\A
0x9B8 Key 0x00020019 HKCU
0x9C Key 0x00000010 HKU
0x9C0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ MountPoint s\D
0x9D4 Key 0x00020019 HKCU
0x9E0 Key 0x00020019 HKCU
0xA4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xAC Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xB4 Key 0x000F003F HKCR\CLSID
0xBC Key 0x000F003F HKCR
0xC4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xCC Key 0x00000010 HKU
0xD4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO M3
0xD8 Key 0x000F003F HKCU
0xDC Key 0x00000010 HKU
0xE4 Key 0x000F003F HKCR
0xEC Key 0x000F003F HKCR
0xF8 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi ndows\CURR ENTVERSION \Explorer\ Shell Icons
0x2AC Mutant 0x001F0001 \BaseNamedObjects\_SHuassi st.mtx
0x2B4 Mutant 0x00100000 \BaseNamedObjects\WininetC onnectionM utex
0x3E0 Mutant 0x00100000 \BaseNamedObjects\RasPbFil e
0x400 Mutant 0x00100000 \BaseNamedObjects\RasPbFil e
0x470 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!loc al settings!history!history.i e5!mshist0 1200409292 0040930!
0x4DC Mutant 0x00100000 \BaseNamedObjects\WininetS tartupMute x
0x4EC Mutant 0x00100000 \BaseNamedObjects\_!MSFTHI STORY!_
0x4F4 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!loc al settings!temporary internet files!content.ie5!
0x4F8 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!coo kies!
0x500 Mutant 0x00100000 \BaseNamedObjects\c:!docum ents and settings!Administrator!loc al settings!history!history.i e5!
0x50C Mutant 0x00100000 \BaseNamedObjects\WininetP roxyRegist ryMutex
0x518 Mutant 0x001F0001 \BaseNamedObjects\ZonesCou nterMutex
0x534 Mutant 0x001F0001 \BaseNamedObjects\ZonesCac heCounterM utex
0x5C Mutant 0x001F0001 \BaseNamedObjects\Explorer IsShellMut ex
0x60C Mutant 0x00100000 \BaseNamedObjects\_!SHMSFT HISTORY!_
0x12C Port 0x001F0001 \RPC Control\OLE5
0x1A4 Process 0x00100000 explorer.exe(740)
0x5B4 Process 0x00100000 explorer.exe(740)
0x744 Process 0x00100000 explorer.exe(740)
0x780 Process 0x00100000 explorer.exe(740)
0x104 Section 0x00000004 \BaseNamedObjects\__R_0000 000000cc_S Mem__
0x508 Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Loc al Settings_History_History.I E5_index.d at_491520
0x514 Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Coo kies_index .dat_32768
0x524 Section 0x000F0007 \BaseNamedObjects\UrlZones SM_Adminis trator
0x6D8 Section 0x000F0007 \BaseNamedObjects\DfShared Heap1ABCB2
0x70 Section 0x00000004 \BaseNamedObjects\RotHintT able
0x894 Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Loc al Settings_Temporary Internet Files_Content.IE5_index.da t_163840
0x98C Section 0x00000002 \BaseNamedObjects\C:_Docum ents and Settings_Administrator_Loc al Settings_History_History.I E5_MSHist0 1200409292 0040930_in dex.dat_49 152
0x168 Semaphore 0x001F0003 \BaseNamedObjects\shell.{7 CB834F0-52 7B-11D2-9D 1F-0000F80 5CA57}
0x1CC Semaphore 0x001F0003 \BaseNamedObjects\shell.{A 48F1A32-A3 40-11D1-BC 6B-00A0C90 312E1}
0x2E0 Semaphore 0x001F0003 \BaseNamedObjects\PowerPro fileRegist rySemaphor e
0x4C0 Semaphore 0x001F0003 \BaseNamedObjects\shell.{6 D5313C0-8C 62-11D1-B2 CD-006097D F8C11}
0x5C0 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi tBucket.Gl obalDirtyC ount
0x628 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi tBucket.Nu mDeleters
0x62C Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi tBucket.C. DirtyCount
0x638 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi tBucket.C. NextFileNu m
0x684 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi tBucket.D. DirtyCount
0x6A0 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi tBucket.D. NextFileNu m
0x6C Semaphore 0x001F0003 \BaseNamedObjects\shell.{A 48F1A32-A3 40-11D1-BC 6B-00A0C90 312E1}
0x94 Semaphore 0x001F0003 \BaseNamedObjects\shell.{0 90851A5-EB 96-11D2-8B E4-00C04FA 31A66}
0xF4 Semaphore 0x001F0003 \BaseNamedObjects\shell.{2 10A4BA0-3A EA-1069-A2 D9-08002B3 0309D}
0x11C Thread 0x001F03FF explorer.exe(740): 736
0x164 Thread 0x001F03FF explorer.exe(740): 760
0x1A0 Thread 0x001F03FF explorer.exe(740): 780
0x29C Thread 0x001F03FF explorer.exe(740): 780
0x2F4 Thread 0x001F03FF explorer.exe(740): 820
0x334 Thread 0x001F03FF explorer.exe(740): 824
0x348 Thread 0x001F03FF explorer.exe(740): 792
0x370 Thread 0x001F03FF explorer.exe(740): 836
0x3BC Thread 0x001F03FF explorer.exe(740): 856
0x4F0 Thread 0x001F03FF explorer.exe(740): 692
0x52C Thread 0x001F03FF explorer.exe(740): 608
0x75C Thread 0x001F03FF explorer.exe(740): 968
0x794 Thread 0x001F03FF explorer.exe(740): 848
0x8F8 Thread 0x001F03FF explorer.exe(740): 640
0x13C Token 0x0000000C NT AUTHORITY\SYSTEM
0x324 Token 0x0000000C BRIAN\Administrator
0x464 Token 0x0000000C NT AUTHORITY\SYSTEM
0x750 Token 0x0000000C BRIAN\Administrator
0x34 WindowStation 0x000F037F \Windows\WindowStations\Wi nSta0
0x3C WindowStation 0x000F037F \Windows\WindowStations\Wi nSta0
I am attaching the process tree for explorer.exe and iexplorer.exe.
Do I have anything in my computer?
Please help.
Thank you!
--------------------------
Process: IEXPLORE.EXE Pid: 1004
Handle Type Access Name
0x38 Desktop 0x000F01FF \Default
0x14 Directory 0x00000003 \KnownDlls
0x1C Directory 0x000F000F \Windows
0x54 Directory 0x0002000F \BaseNamedObjects
0x13C Event 0x00100000 \BaseNamedObjects\crypt32L
0x260 Event 0x001F0003 \BaseNamedObjects\userenv:
0x590 Event 0x00100002 \BaseNamedObjects\GuardEve
0x5C0 Event 0x00100002 \BaseNamedObjects\hardware
0x5C4 Event 0x00100002 \BaseNamedObjects\mixercal
0x11C File 0x001F01FF \Device\Tcp
0x140 File 0x0012019F C:\Documents and Settings\Administrator\Loc
0x154 File 0x0012019F C:\Documents and Settings\Administrator\Coo
0x15C File 0x0012019F C:\Documents and Settings\Administrator\Loc
0x18 File 0x00100020 C:\Documents and Settings\Administrator\Des
0x1E8 File 0x001F01FF \Device\Afd\Endpoint
0x1EC File 0x001F01FF \Device\Udp
0x250 File 0x0012019F \Device\NamedPipe\ROUTER
0x2B4 File 0x00100001 \Device\KsecDD
0x2D0 File 0x001F01FF \Device\Tcp
0x2D4 File 0x001F01FF \Device\Tcp
0x2D8 File 0x001200A0 \Device\Ip
0x2DC File 0x00100003 \Device\Ip
0x2E0 File 0x00100081 \Device\Ip
0x2F4 File 0x001F01FF \Device\Tcp
0x31C File 0x001F01FF \Device\Afd\AsyncConnectHl
0x3A8 File 0x00100001 C:\Documents and Settings\Administrator\Fav
0x3B4 File 0x00120089 C:\Documents and Settings\Administrator\Loc
0x3F8 File 0x0012019F \Device\NamedPipe\ntsvcs
0x3FC File 0x0012019F \Device\NamedPipe\WMIEP_3e
0x400 File 0x0012019F \Device\NamedPipe\WMIEP_3e
0x4F8 File 0x001F01FF \Device\Tcp
0x510 File 0x0012019F \Device\KSENUM#00000001\{9
0x514 File 0x001F01FF \Device\Tcp
0x51C File 0x001F01FF \Device\Tcp
0x524 File 0x001F01FF \Device\Tcp
0x528 File 0x001F01FF \Device\Afd\Endpoint
0x52C File 0x00120089 C:\WINNT\system32\mshtml.t
0x53C File 0x00120089 C:\WINNT\system32\STDOLE2.
0x558 File 0x001F01FF \Device\Afd\Endpoint
0x560 File 0x0012019F \Device\NamedPipe\ntsvcs
0x588 File 0x00120089 C:\Documents and Settings\Administrator\Loc
0x5B0 File 0x001F01FF \Device\Tcp
0x5C File 0x00100001 \Device\KsecDD
0x5D4 File 0x0012019F C:\Documents and Settings\Administrator\Loc
0x5E0 File 0x00120089 C:\WINNT\system32\Macromed
0x628 File 0x001F01FF \Device\Afd\Endpoint
0x124 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In
0x128 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In
0x134 Key 0x00020019 HKCU
0x138 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x17C Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x180 Key 0x00020019 HKCU
0x188 Key 0x00020019 HKCU
0x18C Key 0x00020019 HKCU
0x194 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x198 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x19C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In
0x1A8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Ac
0x1B4 Key 0x00020019 HKCU
0x1C4 Key 0x000F003F HKLM\SYSTEM\ControlSet001\
0x1CC Key 0x000F003F HKLM\SYSTEM\ControlSet001\
0x1D4 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi
0x1E0 Key 0x00020019 HKCU
0x214 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr
0x230 Key 0x00020019 HKCU
0x244 Key 0x000F003F HKU
0x248 Key 0x00000003 HKCU
0x254 Key 0x000F003F HKLM\SYSTEM\ControlSet001\
0x25C Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi
0x274 Key 0x00020019 HKCU
0x280 Key 0x00000001 HKLM\SYSTEM\ControlSet001\
0x284 Key 0x00020019 HKCU
0x2E4 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x2E8 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x2EC Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x2F0 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x304 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr
0x30C Key 0x00020019 HKCU
0x310 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi
0x320 Key 0x00020019 HKCU
0x328 Key 0x00020019 HKCU
0x330 Key 0x00020019 HKCU
0x334 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\WI
0x338 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi
0x344 Key 0x00020019 HKCU
0x348 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x34C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x350 Key 0x00020019 HKCU
0x368 Key 0x00020019 HKCU
0x36C Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\Wi
0x370 Key 0x00020019 HKCU
0x37C Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x380 Key 0x00020019 HKCU
0x384 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x388 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x3BC Key 0x0000000C HKCU\SOFTWARE\MICROSOFT\Wi
0x3E8 Key 0x00020019 HKCU
0x3F0 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x40 Key 0x000F003F HKLM
0x404 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x408 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x44 Key 0x000F003F HKCU
0x468 Key 0x00020019 HKCU
0x48 Key 0x000F003F HKCU
0x48C Key 0x00020019 HKCU
0x4C Key 0x000F003F HKCU\CLSID
0x4E4 Key 0x00020019 HKCU
0x4E8 Key 0x00020019 HKCU
0x50 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x538 Key 0x00020019 HKCU
0x548 Key 0x00020019 HKCU
0x570 Key 0x00020019 HKCU
0x574 Key 0x00020019 HKCU
0x598 Key 0x00020019 HKCU
0x5A8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\WI
0x5B4 Key 0x00020019 HKCU
0x5EC Key 0x00020019 HKCU
0x600 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Di
0x64 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x70 Key 0x000F003F HKCR
0x78 Key 0x000F003F HKCU
0x80 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0x88 Key 0x00000010 HKU
0x90 Key 0x000F003F HKCR
0x98 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xA0 Key 0x00000010 HKU
0xA8 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xB0 Key 0x000F003F HKCR\CLSID
0xB8 Key 0x000F003F HKCR
0xC0 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xC8 Key 0x00000010 HKU
0xD0 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xD8 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xE0 Key 0x000F003F HKCR\CLSID
0xF0 Key 0x00020019 HKCU
0x144 Mutant 0x00100000 \BaseNamedObjects\_!MSFTHI
0x148 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x150 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x158 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x168 Mutant 0x00100000 \BaseNamedObjects\WininetS
0x170 Mutant 0x00100000 \BaseNamedObjects\WininetC
0x178 Mutant 0x00100000 \BaseNamedObjects\WininetP
0x1A0 Mutant 0x001F0001 \BaseNamedObjects\ZonesCou
0x1A4 Mutant 0x001F0001 \BaseNamedObjects\ZonesCac
0x21C Mutant 0x00100000 \BaseNamedObjects\RasPbFil
0x33C Mutant 0x001F0001 \BaseNamedObjects\_SHuassi
0x534 Mutant 0x00100000 \BaseNamedObjects\GuardMut
0x578 Mutant 0x001F0001 \BaseNamedObjects\{1B65509
0x5A4 Mutant 0x00100000 \BaseNamedObjects\mxrapi
0x5D0 Mutant 0x00100000 \BaseNamedObjects\_!SHMSFT
0x5E8 Mutant 0x001F0001 \BaseNamedObjects\DDrawWin
0x5F0 Mutant 0x001F0001 \BaseNamedObjects\DDrawDri
0x5F4 Mutant 0x001F0001 \BaseNamedObjects\__DDrawE
0x5F8 Mutant 0x001F0001 \BaseNamedObjects\__DDrawC
0x604 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x110 Port 0x001F0001 \RPC Control\OLE179
0x14C Section 0x00000002 \BaseNamedObjects\C:_Docum
0x160 Section 0x00000002 \BaseNamedObjects\C:_Docum
0x16C Section 0x00000002 \BaseNamedObjects\C:_Docum
0x1B8 Section 0x000F0007 \BaseNamedObjects\UrlZones
0x438 Section 0x000F0007 \BaseNamedObjects\MSIMGSIZ
0x518 Section 0x00000006 \BaseNamedObjects\WDMAUD_C
0x594 Section 0x00000004 \BaseNamedObjects\mmGlobal
0x644 Section 0x00000002 \BaseNamedObjects\C:_Docum
0xE8 Section 0x00000004 \BaseNamedObjects\__R_0000
0x12C Semaphore 0x001F0003 \BaseNamedObjects\shell.{A
0x190 Semaphore 0x001F0003 \BaseNamedObjects\shell.{0
0x1AC Semaphore 0x001F0003 \BaseNamedObjects\shell._i
0x58 Semaphore 0x001F0003 \BaseNamedObjects\shell.{2
0x58C Semaphore 0x00100002 \BaseNamedObjects\GuardSem
0x60 Semaphore 0x001F0003 \BaseNamedObjects\shell.{6
0x68 Semaphore 0x001F0003 \BaseNamedObjects\shell.{A
0x6C Semaphore 0x001F0003 \BaseNamedObjects\shell.{7
0x100 Thread 0x001F03FF IEXPLORE.EXE(1004): 752
0x1C0 Thread 0x001F03FF IEXPLORE.EXE(1004): 752
0x1D0 Thread 0x001F03FF IEXPLORE.EXE(1004): 744
0x1DC Thread 0x001F03FF IEXPLORE.EXE(1004): 744
0x240 Thread 0x001F03FF IEXPLORE.EXE(1004): 956
0x268 Thread 0x001F03FF IEXPLORE.EXE(1004): 672
0x294 Thread 0x001F03FF IEXPLORE.EXE(1004): 956
0x35C Thread 0x001F03FF IEXPLORE.EXE(1004): 844
0x364 Thread 0x001F03FF IEXPLORE.EXE(1004): 884
0x39C Thread 0x001F03FF IEXPLORE.EXE(1004): 508
0x3AC Thread 0x001F03FF IEXPLORE.EXE(1004): 508
0x3B0 Thread 0x001F03FF IEXPLORE.EXE(1004): 784
0x3D4 Thread 0x001F03FF IEXPLORE.EXE(1004): 916
0x414 Thread 0x001F03FF IEXPLORE.EXE(1004): 916
0x428 Thread 0x001F03FF IEXPLORE.EXE(1004): 248
0x440 Thread 0x001F03FF IEXPLORE.EXE(1004): 248
0x488 Thread 0x001F03FF IEXPLORE.EXE(1004): 756
0x490 Thread 0x001F03FF IEXPLORE.EXE(1004): 884
0x49C Thread 0x001F03FF IEXPLORE.EXE(1004): 784
0x4F4 Thread 0x001F03FF IEXPLORE.EXE(1004): 660
0x55C Thread 0x001F03FF IEXPLORE.EXE(1004): 540
0x638 Thread 0x001F03FF IEXPLORE.EXE(1004): 872
0x568 Token 0x0000000C BRIAN\Administrator
0x34 WindowStation 0x000F037F \Windows\WindowStations\Wi
0x3C WindowStation 0x000F037F \Windows\WindowStations\Wi
--------------------------
Process: explorer.exe Pid: 740
Handle Type Access Name
0x38 Desktop 0x000F01FF \Default
0x14 Directory 0x00000003 \KnownDlls
0x20 Directory 0x000F000F \Windows
0x58 Directory 0x0002000F \BaseNamedObjects
0x18C Event 0x001F0003 \BaseNamedObjects\userenv:
0x2A4 Event 0x001F0003 \BaseNamedObjects\ShellRea
0x2F8 Event 0x001F0003 \BaseNamedObjects\Shell_No
0x358 Event 0x001F0003 \BaseNamedObjects\HPlugEje
0x440 Event 0x00100000 \BaseNamedObjects\crypt32L
0x1BC File 0x00100001 C:\Documents and Settings\Administrator\Sta
0x1C0 File 0x00100001 C:\Documents and Settings\All Users.WINNT\Start Menu
0x1C4 File 0x00100001 C:\Documents and Settings\Administrator\Des
0x1C8 File 0x00100001 C:\Documents and Settings\All Users.WINNT\Desktop
0x1D0 File 0x00100001 C:\Documents and Settings\Administrator\Des
0x1F4 File 0x0012019F \Device\NamedPipe\ntsvcs
0x284 File 0x00100001 C:\Documents and Settings\Administrator\App
0x2A0 File 0x0012019F C:\Documents and Settings\Administrator\Loc
0x360 File 0x0012019F \Device\NamedPipe\ntsvcs
0x364 File 0x0012019F \Device\NamedPipe\WMIEP_2e
0x368 File 0x0012019F \Device\NamedPipe\WMIEP_2e
0x42C File 0x0012019F \Device\NamedPipe\ROUTER
0x43C File 0x00100001 \Device\KsecDD
0x454 File 0x0012019F \Device\NamedPipe\WMIEP_2e
0x4FC File 0x0012019F C:\Documents and Settings\Administrator\Coo
0x504 File 0x0012019F C:\Documents and Settings\Administrator\Loc
0x51C File 0x0012019F \Device\NamedPipe\WMIEP_2e
0x608 File 0x0012019F C:\Documents and Settings\Administrator\Loc
0x63C File 0x0012019F \Device\NamedPipe\WMIEP_2e
0x6FC File 0x0012019F D:\WS_FTP\ssl.log
0x7BC File 0x0012019F \Device\NamedPipe\WMIEP_2e
0x864 File 0x00100020 C:\Program Files\Common Files\System\Mapi\1033
0x88 File 0x00100001 \Device\KsecDD
0x124 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0x134 Key 0x00020019 HKCU
0x138 Key 0x00020019 HKCU
0x148 Key 0x000F003F HKCR\CLSID
0x150 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In
0x154 Key 0x00020019 HKCU
0x160 Key 0x00020019 HKCU
0x170 Key 0x00020019 HKCU
0x174 Key 0x00020019 HKCU
0x178 Key 0x00020019 HKCU
0x17C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\In
0x180 Key 0x00020019 HKCU
0x188 Key 0x00000010 HKCR
0x190 Key 0x000F003F HKCU\CLSID
0x194 Key 0x00000010 HKCR\CLSID
0x198 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x19C Key 0x00020019 HKCU
0x1AC Key 0x00020019 HKCU
0x1B0 Key 0x00020019 HKCU
0x1B4 Key 0x00020019 HKCU
0x1D8 Key 0x00020019 HKCU
0x1DC Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x1E0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x1E8 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x1F8 Key 0x00020019 HKCU
0x1FC Key 0x00020019 HKCU
0x208 Key 0x00020019 HKCU
0x21C Key 0x00000001 HKLM\SYSTEM\ControlSet001\
0x220 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x224 Key 0x00020019 HKCU
0x228 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x22C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x230 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x234 Key 0x00020019 HKCU
0x238 Key 0x00020019 HKCU
0x23C Key 0x00020019 HKCU
0x248 Key 0x000F003F HKLM\SYSTEM\ControlSet001\
0x268 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x27C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x28 Key 0x000F003F HKLM
0x280 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x28C Key 0x00020019 HKCU
0x290 Key 0x00020019 HKCU
0x294 Key 0x00020019 HKCU
0x2B0 Key 0x00020019 HKCU
0x2B8 Key 0x00020019 HKCU
0x2C0 Key 0x00020019 HKCU
0x2C8 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x2CC Key 0x000F003F HKU
0x2EC Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\WI
0x300 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x310 Key 0x00020019 HKCU
0x320 Key 0x00020019 HKCU
0x328 Key 0x00020019 HKCU
0x32C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x330 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x390 Key 0x00020019 HKCU
0x39C Key 0x00020019 HKCU
0x3C0 Key 0x00020019 HKCU
0x3CC Key 0x00020019 HKCU
0x3D8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr
0x3F8 Key 0x00020019 HKLM\SOFTWARE\MICROSOFT\Tr
0x40 Key 0x000F003F HKCU
0x410 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x414 Key 0x000F003F HKLM\SYSTEM\ControlSet001\
0x41C Key 0x000F003F HKLM\SYSTEM\ControlSet001\
0x420 Key 0x00020019 HKCU
0x448 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x45C Key 0x00020019 HKCU
0x468 Key 0x00020019 HKCU
0x47C Key 0x00020019 HKCU
0x484 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x488 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x494 Key 0x00020019 HKCU
0x498 Key 0x00020019 HKCU
0x49C Key 0x00020019 HKCU
0x4AC Key 0x00020019 HKCU
0x4B0 Key 0x00020019 HKCU
0x4B4 Key 0x00020019 HKCU
0x4C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x4C8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x4CC Key 0x00020019 HKCU
0x4D0 Key 0x00020019 HKCU
0x4D4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x4D8 Key 0x00020019 HKCU
0x4E4 Key 0x00020019 HKCU
0x4E8 Key 0x00020019 HKCU
0x520 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x538 Key 0x00020019 HKCU
0x53C Key 0x00020019 HKCU
0x54 Key 0x00020019 HKCU\SOFTWARE\MICROSOFT\WI
0x540 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x54C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x550 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x554 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x558 Key 0x00020019 HKCU
0x55C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x560 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x568 Key 0x00020019 HKCU
0x570 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x578 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x584 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x588 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x59C Key 0x00020019 HKCU
0x5A4 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x5BC Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x5C8 Key 0x00020019 HKCU
0x5CC Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x5D0 Key 0x00020019 HKCU
0x5E0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x60 Key 0x000F003F HKCU
0x604 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x618 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x61C Key 0x00020019 HKCU
0x620 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x624 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x630 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x634 Key 0x00000003 HKCU\SOFTWARE\MICROSOFT\Wi
0x64 Key 0x000F003F HKCU\CLSID
0x64C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x650 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x658 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x65C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x668 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x674 Key 0x00020019 HKCU
0x678 Key 0x00020019 HKCU
0x67C Key 0x00020019 HKCU
0x68 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x680 Key 0x00020019 HKCU
0x688 Key 0x00020019 HKCU
0x68C Key 0x00000003 HKCU\SOFTWARE\MICROSOFT\Wi
0x69C Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x6A4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x6A8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x6B0 Key 0x00020019 HKCU
0x6B4 Key 0x00020019 HKCU
0x6B8 Key 0x00020019 HKCU
0x6C0 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x6E0 Key 0x00020019 HKCU
0x6F0 Key 0x00020019 HKCU
0x6F4 Key 0x00020019 HKCU
0x6F8 Key 0x00020019 HKCU
0x700 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x71C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x734 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x738 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x74C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x76C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x770 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x78C Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x79C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x7A0 Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x7AC Key 0x00020019 HKLM\SYSTEM\ControlSet001\
0x7B0 Key 0x00020019 HKCU
0x7B4 Key 0x00020019 HKCU
0x7C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x7C4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x7C8 Key 0x00020019 HKCU
0x7E4 Key 0x00020019 HKCU
0x7EC Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x814 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x818 Key 0x00020019 HKCR\MIME\Database\Content
0x830 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x83C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x84 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x844 Key 0x00020019 HKCU
0x858 Key 0x00020019 HKCU
0x868 Key 0x00020019 HKCR\MIME\Database\Content
0x880 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x898 Key 0x00020019 HKCU
0x89C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x8A4 Key 0x00020019 HKCU
0x8A8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x8B0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x8B4 Key 0x00020019 HKCU
0x8C Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0x8C4 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x8C8 Key 0x00020019 HKCU
0x8D4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x8D8 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x8DC Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x8F0 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x8F4 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x930 Key 0x00020019 HKCU
0x93C Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x94C Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x958 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x964 Key 0x0002001F HKCU\SOFTWARE\MICROSOFT\Wi
0x978 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x984 Key 0x00020019 HKCU
0x9A8 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x9B8 Key 0x00020019 HKCU
0x9C Key 0x00000010 HKU
0x9C0 Key 0x000F003F HKCU\SOFTWARE\MICROSOFT\Wi
0x9D4 Key 0x00020019 HKCU
0x9E0 Key 0x00020019 HKCU
0xA4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xAC Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xB4 Key 0x000F003F HKCR\CLSID
0xBC Key 0x000F003F HKCR
0xC4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xCC Key 0x00000010 HKU
0xD4 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\CO
0xD8 Key 0x000F003F HKCU
0xDC Key 0x00000010 HKU
0xE4 Key 0x000F003F HKCR
0xEC Key 0x000F003F HKCR
0xF8 Key 0x000F003F HKLM\SOFTWARE\MICROSOFT\Wi
0x2AC Mutant 0x001F0001 \BaseNamedObjects\_SHuassi
0x2B4 Mutant 0x00100000 \BaseNamedObjects\WininetC
0x3E0 Mutant 0x00100000 \BaseNamedObjects\RasPbFil
0x400 Mutant 0x00100000 \BaseNamedObjects\RasPbFil
0x470 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x4DC Mutant 0x00100000 \BaseNamedObjects\WininetS
0x4EC Mutant 0x00100000 \BaseNamedObjects\_!MSFTHI
0x4F4 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x4F8 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x500 Mutant 0x00100000 \BaseNamedObjects\c:!docum
0x50C Mutant 0x00100000 \BaseNamedObjects\WininetP
0x518 Mutant 0x001F0001 \BaseNamedObjects\ZonesCou
0x534 Mutant 0x001F0001 \BaseNamedObjects\ZonesCac
0x5C Mutant 0x001F0001 \BaseNamedObjects\Explorer
0x60C Mutant 0x00100000 \BaseNamedObjects\_!SHMSFT
0x12C Port 0x001F0001 \RPC Control\OLE5
0x1A4 Process 0x00100000 explorer.exe(740)
0x5B4 Process 0x00100000 explorer.exe(740)
0x744 Process 0x00100000 explorer.exe(740)
0x780 Process 0x00100000 explorer.exe(740)
0x104 Section 0x00000004 \BaseNamedObjects\__R_0000
0x508 Section 0x00000002 \BaseNamedObjects\C:_Docum
0x514 Section 0x00000002 \BaseNamedObjects\C:_Docum
0x524 Section 0x000F0007 \BaseNamedObjects\UrlZones
0x6D8 Section 0x000F0007 \BaseNamedObjects\DfShared
0x70 Section 0x00000004 \BaseNamedObjects\RotHintT
0x894 Section 0x00000002 \BaseNamedObjects\C:_Docum
0x98C Section 0x00000002 \BaseNamedObjects\C:_Docum
0x168 Semaphore 0x001F0003 \BaseNamedObjects\shell.{7
0x1CC Semaphore 0x001F0003 \BaseNamedObjects\shell.{A
0x2E0 Semaphore 0x001F0003 \BaseNamedObjects\PowerPro
0x4C0 Semaphore 0x001F0003 \BaseNamedObjects\shell.{6
0x5C0 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi
0x628 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi
0x62C Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi
0x638 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi
0x684 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi
0x6A0 Semaphore 0x001F0003 \BaseNamedObjects\shell.Bi
0x6C Semaphore 0x001F0003 \BaseNamedObjects\shell.{A
0x94 Semaphore 0x001F0003 \BaseNamedObjects\shell.{0
0xF4 Semaphore 0x001F0003 \BaseNamedObjects\shell.{2
0x11C Thread 0x001F03FF explorer.exe(740): 736
0x164 Thread 0x001F03FF explorer.exe(740): 760
0x1A0 Thread 0x001F03FF explorer.exe(740): 780
0x29C Thread 0x001F03FF explorer.exe(740): 780
0x2F4 Thread 0x001F03FF explorer.exe(740): 820
0x334 Thread 0x001F03FF explorer.exe(740): 824
0x348 Thread 0x001F03FF explorer.exe(740): 792
0x370 Thread 0x001F03FF explorer.exe(740): 836
0x3BC Thread 0x001F03FF explorer.exe(740): 856
0x4F0 Thread 0x001F03FF explorer.exe(740): 692
0x52C Thread 0x001F03FF explorer.exe(740): 608
0x75C Thread 0x001F03FF explorer.exe(740): 968
0x794 Thread 0x001F03FF explorer.exe(740): 848
0x8F8 Thread 0x001F03FF explorer.exe(740): 640
0x13C Token 0x0000000C NT AUTHORITY\SYSTEM
0x324 Token 0x0000000C BRIAN\Administrator
0x464 Token 0x0000000C NT AUTHORITY\SYSTEM
0x750 Token 0x0000000C BRIAN\Administrator
0x34 WindowStation 0x000F037F \Windows\WindowStations\Wi
0x3C WindowStation 0x000F037F \Windows\WindowStations\Wi
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Hi:
agree with Jupiler78
Can try:
Run SpyBot
http://spybot.eon.net.au/index.php?lang=en&page=download
HijackThis
http://www.webattack.com/download/dlhijackthis.shtml
mc
agree with Jupiler78
Can try:
Run SpyBot
http://spybot.eon.net.au/index.php?lang=en&page=download
HijackThis
http://www.webattack.com/download/dlhijackthis.shtml
mc
Welcome to the world of spyware. Use adaware and spybot and hijackthis to get rid of that crap. Make sure you keep it off the network after you download and update these programs. Sometimes a good format and putting in place preventive measures is the easiest way to go.
ASKER
None of those detect an AD-aware
I do not know what is.
I do not know what is.
ASKER
And I also must mention something that there are three URL stuck in history and any time I type their URL it is displayed automatically. This happens even after I cleared history of IE.
And you didn't find a virus either? And how do you mean: "I do not know what is."
For Ad-Aware: did you used the latest definitions?
Do you also have the problem in safe mode? And what if you scan then ?
For Ad-Aware: did you used the latest definitions?
Do you also have the problem in safe mode? And what if you scan then ?
Thqnx for the points, but why the low grade?
Jupiler78
Jupiler78
Sure, you must make some "administrative" things: AV scan, Spy/trojan/etc. remove ... etc.
Let me know ...