Bullguard Antivirus Forum Download A Free Copy Of Bullguard Antivirus Software
Free Antivirus Forum - Learn about antivirus, firewalls and personal security Free Antivirus Forum - Learn about antivirus, firewalls and personal security
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
Search engine redirect virus
   
BullGuard Antivirus Forum > Virus > Virus Questions > Search engine redirect virus  
Forum Quick Jump
 
New Topic Locked Topic Printable version of : Search engine redirect virus
28 posts in this thread.
Viewing Page :
 1  2 
[ << Previous Thread | Next Thread >> ]

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 10-29-2009 12:31 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Hello there, i seem to have this rather annoying search engine redirect virus. I have tried scanning my computer 3 times with my anti virus and malwarebytes program which i downloaded but they don't seem to detect anything even though i'm still being redirected by links. Any help please?
 
Heres the hijack this log:
 
Logfile of HijackThis v1.99.1
Scan saved at 23:38:54, on 28/10/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\CTXFIHLP.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\program files\ncsoft\launcher\NCLauncher.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O1 - Hosts: ::1 localhost
O1 - Hosts: 193.169.12.50 ossecure2009.microsoft.com
O1 - Hosts: 193.169.12.50 os-secure2009.com
O1 - Hosts: 193.169.12.50 www.os-secure2009.com
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [NCsoft Launcher] C:\program files\ncsoft\launcher\NCLauncher.exe /Minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O11 - Options group: [INTERNATIONAL] International
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20061205/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {138E6DC9-722B-4F4B-B09D-95D191869696} (Bebo Uploader Control) - http://www.bebo.com/files/BeboUploader.5.1.4.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/AutoDLDivXWebPlayerInstaller.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O20 - Winlogon Notify: LBTWlgn - c:\program files\common files\logitech\bluetooth\LBTWlgn.dll
O20 - Winlogon Notify: WB - C:\Program Files\AlienGUIse\fastload.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" -r (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
 

Post Edited (Ethan442) : 28-10-2009 23:39:29 GMT

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 10-29-2009 5:50 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Hello Ethan442 and welcome to BG smile


 
Please download combofix here ->
Before Saving it to Desktop, please rename it to alg.exe to stop malware from disabling it.
 
 
Open notepad and copy/paste the bold text in the codebox below into it:
Name the file as CFScript
and Save it on the desktop
 
Code:
Killall::
Snapshot::
Hosts::
 
 
Once saved, refering to the picture above, drag CFScript.txt into ComboFix.exe.
 
Combofix will create a logfile and display it after your computer has rebooted. Usually located in c:\combofix.txt, please post it to your next reply
 
Note.
Do not mouseclick combofix's window whilst it's running. That may cause it to stall
 


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 10-29-2009 8:13 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Hey Touch, thanks for the reply but i seem to be having some trouble with Combofix, i've had the scan running for about 2 hours now and i have looked at some screenshots from a forum explaining how to use combofix. These screenshots do say the scan may take sometime but they also say there are 50 satges to the scan. As i said mine has been running for 2 hours almost and stage 1 still hasn't appeared on the combofix window.
I haven't clicked the window as it's been running i've just left it on. I have disabled my firewall and anti-virus but when i installed the program my firewall was turned on and i'm thinking it could have blocked combofix. Any suggestions?
Back to Top
 

Graem
New Member


Date Joined Oct 2009
Total Posts : 1
 
   Posted 10-29-2009 11:23 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Thanks for this help, I had this redirect virus and your solution seems to have solved it perfectly. Thanks!
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 10-30-2009 6:27 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ethan442 ->  Let´s start from here then:
 
 
Download HostsExpert: http://www.majorgeeks.com/Hoster_d4626.html

Choose one of the servers at Majorgeeks....save the file on your desktop

Unzip HostsXpert 4.2 - Hosts File Manager to a convenient folder such as C:\HostsXpert 4.2 - Hosts File Manager
Run HostsXpert 4.2 - Hosts File Manager from its new home
Click on "File Handling".
Click on "Restore MS Hosts File".
Click OK on the Confirmation box.
Click on "Make Read Only?"
Click the X to exit the program.
 
 
Then please follow this guide:

 Follow the instructions and copy the logs here, in this Topic.
Nb. Delete the version of hijackthis you have, at it is outdated.
 
 
Graem - Glad to hear you´ve solved your problems smile


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 10-30-2009 8:33 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ok so i had combofix running all night but still nothing after 13 hours lol. I closed it,not sure if it might have messed something up. Seems any link i left press doesnt work i have to right click and go open new tab :S. Anyway...
 
 

Post Edited (Ethan442) : 30-10-2009 07:41:13 GMT

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 10-30-2009 10:02 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
The MBAM scan didn't pick up anything. After combofix didn't work i did a sytem restore and the search engine links no longer redirect me, i don't know if combofix actually removed it or whether the restore did it but it seems to be gone. I will post the logs anyway just incase you see something else.
 
Ok so heres the Hijackthis log:
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:48:11, on 30/10/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\CTXFIHLP.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\program files\ncsoft\launcher\NCLauncher.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [NCsoft Launcher] C:\program files\ncsoft\launcher\NCLauncher.exe /Minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20061205/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {138E6DC9-722B-4F4B-B09D-95D191869696} (Bebo Uploader Control) - http://www.bebo.com/files/BeboUploader.5.1.4.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/AutoDLDivXWebPlayerInstaller.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
--
End of file - 9077 bytes

 
The MBAM log, though the scan didn't pick up anything :S
 
Malwarebytes' Anti-Malware 1.41
Database version: 3059
Windows 5.1.2600 Service Pack 3
30/10/2009 08:56:45
mbam-log-2009-10-30 (08-56-45).txt
Scan type: Full Scan (C:\|)
Objects scanned: 249434
Time elapsed: 1 hour(s), 5 minute(s), 59 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
 
 
And the DDS log:
 

DDS (Ver_09-10-26.01) - NTFSx86 
Run by Ethan Sharp at  7:36:34.82 on 30/10/2009
Internet Explorer: 7.0.5730.11
Microsoft Windows XP Home Edition  5.1.2600.3.1252.44.1033.18.2046.1298 [GMT 0:00]
AV: Kaspersky Anti-Virus *On-access scanning enabled* (Updated)   {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Sygate Personal Firewall *enabled*   {BE898FE3-CD0B-4014-85A9-03DB9923DDB6}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Sygate\SPF\smc.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\CTXFIHLP.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\program files\ncsoft\launcher\NCLauncher.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
svchost.exe
C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Ethan Sharp\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.yahoo.com/
uSearch Page = hxxp://www.google.com
uWindow Title = Windows Internet Explorer provided by Yahoo!
uSearch Bar = hxxp://www.google.com/ie
mDefault_Page_URL = hxxp://www.yahoo.com
mDefault_Search_URL = hxxp://www.google.com/ie
mSearch Page = hxxp://www.google.com
mStart Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = *.local
mSearchAssistant = hxxp://www.google.com
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky anti-virus 2009\ievkbd.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
TB: {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No File
uRun: [PhotoShow Deluxe Media Manager] c:\progra~1\nero\data\xtras\mssysmgr.exe
uRun: [MsnMsgr] "c:\program files\windows live\messenger\MsnMsgr.Exe" /background
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [PlayNC Launcher]
uRun: [NCsoft Launcher] c:\program files\ncsoft\launcher\NCLauncher.exe /Minimized
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [CTHelper] CTHELPER.EXE
mRun: [CTxfiHlp] CTXFIHLP.EXE
mRun: [UpdReg] c:\windows\UpdReg.EXE
mRun: [<NO NAME>]
mRun: [NVIDIA nTune] "c:\program files\nvidia corporation\ntune\nTuneCmd.exe" clear
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [SkyTel] SkyTel.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_02\bin\jusched.exe"
mRun: [SmcService] c:\progra~1\sygate\spf\smc.exe -startgui
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [AVP] "c:\program files\kaspersky lab\kaspersky anti-virus 2009\avp.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\logite~2.lnk - c:\program files\logitech\desktop messenger\8876480\program\LogitechDesktopMessenger.exe
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - c:\program files\kaspersky lab\kaspersky anti-virus 2009\SCIEPlgn.dll
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://a1540.g.akamai.net/7/1540/52/20061205/qtinstall.info.apple.com/qtactivex/qtplugin.cab
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
DPF: {138E6DC9-722B-4F4B-B09D-95D191869696} - hxxp://www.bebo.com/files/BeboUploader.5.1.4.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
DPF: {48DD0448-9209-4F81-9F6D-D83562940134} - hxxp://lads.myspace.com/upload/MySpaceUploader1006.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - hxxp://download.divx.com/webplayer/stage6/windows/AutoDLDivXWebPlayerInstaller.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\logitech\desktop messenger\8876480\program\GAPlugProtocol-8876480.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: klogon - c:\windows\system32\klogon.dll
Notify: LBTWlgn - c:\program files\common files\logitech\bluetooth\LBTWlgn.dll
Notify: WB - c:\program files\alienguise\fastload.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
============= SERVICES / DRIVERS ===============
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-1-29 33808]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [2008-4-30 24592]
R3 Z302Mic;Vimicro Z302 Mic Audio Filter Driver;c:\windows\system32\drivers\UsbMicfilt.sys [2007-2-17 22571]
R3 ZSMC302;PCL-W310;c:\windows\system32\drivers\usbVM302.sys [2007-2-17 93962]
=============== Created Last 30 ================
2009-10-30 07:28:17 0 d-----w- c:\program files\CCleaner
2009-10-30 07:24:25 0 d-----w- C:\HostsXpert
2009-10-30 01:16:31 0 d-----w- c:\windows\system32\wbem\Repository
2009-10-29 13:45:04 0 d-sha-r- C:\cmdcons
2009-10-29 13:39:20 98816 ----a-w- c:\windows\sed.exe
2009-10-29 13:39:20 77312 ----a-w- c:\windows\MBR.exe
2009-10-29 13:39:20 236544 ----a-w- c:\windows\PEV.exe
2009-10-29 13:39:20 161792 ----a-w- c:\windows\SWREG.exe
2009-10-28 22:50:41 0 d-sh--w- c:\documents and settings\ethan sharp\IECompatCache
2009-10-28 22:50:05 0 d-sh--w- c:\documents and settings\ethan sharp\PrivacIE
2009-10-28 22:48:00 0 d-sh--w- c:\documents and settings\ethan sharp\IETldCache
2009-10-28 22:45:03 92160 -c----w- c:\windows\system32\dllcache\iecompat.dll
2009-10-28 22:44:47 0 d-----w- c:\windows\ie8updates
2009-10-28 22:44:08 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-10-28 22:44:06 246272 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-10-28 22:43:12 0 dc-h--w- c:\windows\ie8
2009-10-28 19:24:50 0 d-----w- c:\program files\FileASSASSIN
2009-10-28 18:25:56 0 d-----w- c:\program files\tenmpu
2009-10-19 15:52:41 0 d-----w- c:\program files\Portal
2009-10-14 12:48:23 0 d-----w- c:\program files\Lame for Audacity
2009-10-13 19:15:48 0 d-----w- c:\program files\Audacity
2009-10-08 10:30:40 18284 ---ha-w- c:\windows\system32\mlfcache.dat
2009-10-08 10:26:26 0 d-----w- c:\docume~1\alluse~1.win\applic~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}
==================== Find3M  ====================
2009-10-30 07:01:17 5003296 --sha-w- c:\windows\system32\drivers\fidbox.dat
2009-10-30 07:01:17 4832 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2009-10-30 07:01:17 40168 --sha-w- c:\windows\system32\drivers\fidbox.idx
2009-10-30 07:01:17 1097760 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2009-10-30 01:30:52 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2009-10-30 01:30:51 95259 ----a-w- c:\windows\system32\drivers\klick.dat
2009-10-30 01:30:51 108059 ----a-w- c:\windows\system32\drivers\klin.dat
2009-09-11 14:18:39 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-10 14:54:06 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 14:53:50 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-09-04 21:03:36 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-08-29 08:08:21 916480 ----a-w- c:\windows\system32\wininet.dll
2009-08-28 18:42:52 2065696 ----a-w- c:\windows\system32\usbaaplrc.dll
2009-08-26 08:00:21 247326 ----a-w- c:\windows\system32\strmdll.dll
2009-08-20 14:09:06 1193832 ----a-w- c:\windows\system32\FM20.DLL
2009-08-11 20:24:03 12498 -c--a-w- c:\windows\jicuqehif.exe
2009-08-11 20:24:02 19487 ----a-w- c:\windows\system32\uboh.sys
2009-08-11 20:24:02 19289 ----a-w- c:\windows\system32\oceritalom.pif
2009-08-11 20:24:02 18935 -c--a-w- c:\windows\hinug.com
2009-08-11 20:24:02 18530 -c--a-w- c:\windows\ukexevedem.scr
2009-08-11 20:24:02 17204 ----a-w- c:\windows\system32\furyvote.bat
2009-08-11 20:24:02 16655 ----a-w- c:\docume~1\ethans~1\applic~1\ceruzi.dat
2009-08-11 20:24:02 14748 ----a-w- c:\program files\common files\ivodededin.bat
2009-08-11 20:24:02 11680 ----a-w- c:\program files\common files\cukimytaqu.reg
2009-08-11 20:24:02 11236 ----a-w- c:\windows\system32\yravefoq.sys
2009-08-06 18:23:46 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-08-06 18:23:46 215920 ----a-w- c:\windows\system32\muweb.dll
2009-08-05 09:01:48 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-08-04 15:13:08 2145280 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-08-04 14:20:09 2023936 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-03-08 23:10:34 32768 -csha-w- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012009030820090309\index.dat
============= FINISH:  7:38:05.25 ===============
 
 
Second DDS Log:
 

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-10-26.01)
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 08/02/2007 14:46:29
System Uptime: 30/10/2009 07:15:59 (0 hours ago)
Motherboard: alienware |  | alienware
Processor: Intel(R) Core(TM)2 CPU          6400  @ 2.13GHz | Socket 775 | 2133/266mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 233 GiB total, 11.632 GiB free.
D: is CDROM ()
==== Disabled Device Manager Items =============
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: NVIDIA nForce Networking Controller
Device ID: {1A3E09BE-1E45-494B-9174-D7385B45BBF5}\NVNET_DEV0373\4&575C2CF&0&00
Manufacturer: NVIDIA
Name: NVIDIA nForce Networking Controller #2
PNP Device ID: {1A3E09BE-1E45-494B-9174-D7385B45BBF5}\NVNET_DEV0373\4&575C2CF&0&00
Service: NVENETFD
==== System Restore Points ===================
RP391: 30/07/2009 20:08:26 - Software Distribution Service 3.0
RP392: 31/07/2009 20:26:38 - System Checkpoint
RP393: 03/08/2009 12:34:55 - System Checkpoint
RP394: 04/08/2009 13:02:36 - System Checkpoint
RP395: 05/08/2009 20:12:14 - System Checkpoint
RP396: 07/08/2009 17:42:06 - System Checkpoint
RP397: 09/08/2009 12:21:27 - Software Distribution Service 3.0
RP398: 10/08/2009 14:00:49 - System Checkpoint
RP399: 11/08/2009 13:02:33 - Software Distribution Service 3.0
RP400: 13/08/2009 13:35:00 - Software Distribution Service 3.0
RP401: 14/08/2009 18:37:09 - System Checkpoint
RP402: 17/08/2009 13:21:45 - Software Distribution Service 3.0
RP403: 18/08/2009 14:14:05 - System Checkpoint
RP404: 20/08/2009 15:39:00 - System Checkpoint
RP405: 21/08/2009 16:45:56 - System Checkpoint
RP406: 22/08/2009 18:58:57 - System Checkpoint
RP407: 23/08/2009 21:28:04 - System Checkpoint
RP408: 24/08/2009 22:05:11 - System Checkpoint
RP409: 25/08/2009 23:28:01 - System Checkpoint
RP410: 26/08/2009 23:38:46 - System Checkpoint
RP411: 27/08/2009 11:03:04 - Software Distribution Service 3.0
RP412: 28/08/2009 13:43:39 - System Checkpoint
RP413: 29/08/2009 19:16:18 - System Checkpoint
RP414: 30/08/2009 19:37:55 - System Checkpoint
RP415: 31/08/2009 19:47:52 - System Checkpoint
RP416: 02/09/2009 16:18:54 - System Checkpoint
RP417: 03/09/2009 22:00:46 - System Checkpoint
RP418: 05/09/2009 14:57:42 - System Checkpoint
RP419: 08/09/2009 12:46:34 - System Checkpoint
RP420: 09/09/2009 20:06:18 - System Checkpoint
RP421: 10/09/2009 14:01:50 - Software Distribution Service 3.0
RP422: 11/09/2009 16:20:07 - System Checkpoint
RP423: 12/09/2009 22:20:01 - System Checkpoint
RP424: 14/09/2009 21:39:58 - System Checkpoint
RP425: 16/09/2009 12:03:46 - System Checkpoint
RP426: 08/10/2009 11:11:00 - System Checkpoint
RP427: 10/10/2009 11:48:47 - System Checkpoint
RP428: 12/10/2009 13:21:11 - System Checkpoint
RP429: 14/10/2009 15:02:43 - System Checkpoint
RP430: 15/10/2009 13:14:32 - Software Distribution Service 3.0
RP431: 16/10/2009 13:21:06 - System Checkpoint
RP432: 17/10/2009 18:16:29 - System Checkpoint
RP433: 21/10/2009 14:25:52 - System Checkpoint
RP434: 22/10/2009 17:24:38 - System Checkpoint
RP435: 24/10/2009 16:17:13 - System Checkpoint
RP436: 27/10/2009 04:29:24 - System Checkpoint
RP437: 28/10/2009 22:39:05 - Software Distribution Service 3.0
RP438: 30/10/2009 01:16:02 - Restore Operation
RP439: 30/10/2009 01:19:53 - Software Distribution Service 3.0
==== Installed Programs ======================
Ad-Aware SE Personal
Adobe Flash Player 10 ActiveX
Adobe Reader 7.0
AlienGUIse Theme Manager
Amazon MP3 Downloader 1.0.4
Apple Application Support
Apple Mobile Device Support
Apple Software Update
µTorrent
Audacity 1.2.6
Bonjour
CCleaner
CDDRV_Installer
Champions Online
City of Heroes (European) (remove only)
Creative MediaSource 5
Creative Software AutoUpdate
Creative System Information
Critical Update for Windows Media Player 11 (KB959772)
DivX Codec
DivX Content Uploader
DivX Version Checker
DivX Web Player
ESET Online Scanner v3
Exteel
Fraps (remove only)
Guild Wars
GW Team Builder 1.2.1
High Definition Audio Driver Package - KB888111
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
iTunes
Java(TM) 6 Update 2
Kaspersky Anti-Virus 2009
KhalInstallWrapper
LAME v3.98.2 for Audacity
Logitech Desktop Messenger
Logitech Registration
Logitech SetPoint
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB953297)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft National Language Support Downlevel APIs
Microsoft Office XP Professional with FrontPage
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Mids' Hero/Villain Designer
MobileMe Control Panel
NCsoft Launcher
Nero PhotoShow Express
Nero Suite
NVIDIA Drivers
NVIDIA nTune
NVIDIA PhysX
Paint.NET v3.36
PCL-W310
Portal
QuickTime
Realtek High Definition Audio Driver
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 7 (KB972260)
Security Update for Windows Internet Explorer 7 (KB974455)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Skype™ 4.0
Sound Blaster X-Fi
Station Launcher
Sygate Personal Firewall
TeamSpeak 2 RC2
The Sims 2
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB973815)
URGE
Ventrilo Client
VentriloMIX
VideoLive Mail 4.0
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Internet Explorer 7
Windows Live installer
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
Yahoo! Toolbar
Yahoo! Toolbar for Internet Explorer
==== Event Viewer Messages From Past Week ========
29/10/2009 13:32:46, error: Service Control Manager [7011]  - Timeout (30000 milliseconds) waiting for a transaction response from the NVSvc service.
28/10/2009 22:10:52, error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  Beep
28/10/2009 18:55:25, error: Ftdisk [49]  - Configuring the Page file for crash dump failed. Make sure there is a page file on the boot partition and that is large enough to contain all physical memory.
28/10/2009 18:55:25, error: Ftdisk [45]  - The system could not sucessfully load the crash dump driver.
==== End Of File ===========================
 
Edit: Erm seems the redirect virus is still there, ignore what i wrote at the top. Also i can't open any link still. Still having to right-click and open new tab, any reason why this is happening?

Post Edited (Ethan442) : 30-10-2009 14:44:46 GMT

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 10-31-2009 7:46 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ok so i turned on my computer today and forgot i even had this redirect virus, didn't watch what i was clicking and picked up another. I ran a MBAM scan and it did pick up 1 virus. I have removed it but i though i would post the log here as an update to the one posted above.
Malwarebytes' Anti-Malware 1.41
Database version: 3070
Windows 5.1.2600 Service Pack 3
31/10/2009 18:44:46
mbam-log-2009-10-31 (18-44-46).txt
Scan type: Full Scan (C:\|)
Objects scanned: 252094
Time elapsed: 1 hour(s), 10 minute(s), 38 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\wbem\proquota.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-1-2009 5:57 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
to perform an online scan. Please use Internet Explorer as it uses ActiveX.
Check (tick) this box: YES, I accept the Terms of Use.
Click on the Start button next to it.
When prompted to run ActiveX. click Yes.
You will be asked to install an ActiveX. Click Install.
Once installed, the scanner will be initialized.
After the scanner is initialized, click Start.
Check (tick) Remove found threats box.
Check (tick) Scan unwanted applications.
Click on Scan.
It will start scanning. Please be patient.
Once the scan is done, you will find a log in C:\Program Files\esetonlinescanner\log.txt.
 
 
Please post this log in your next reply.


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-1-2009 5:05 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ok so i ran the ESET scanner you said but again no threats found. I did have to run this in Firefox because in Internet Explorer i couldn't click the link to open the scanner. In IE some links just don't seem to open when i click them, i guess something has been changed in my system files. Anyway heres the log..

ESETSmartInstaller@High as downloader log:
all ok
esets_scanner_update returned -1 esets_gle=53251
# version=6
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6050
# api_version=3.0.2
# EOSSerial=b054edd32374f44ca2e4b48bffbbb77f
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2009-11-01 04:02:34
# local_time=2009-11-01 04:02:34 (+0000, GMT Standard Time)
# country="United Kingdom"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1281 21 100 100 88340822500000
# scanned=108012
# found=0
# cleaned=0
# scan_time=2629
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-2-2009 6:12 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ok. Let´s see a File Lister log ->
 
 
 and download File Lister.
Save it to your Desktop
Rightlick ->> Extract all ->> And extract it to your Desktop
Open the File Lister Folder.
Note: Leave the FileLister.vbe file in the folder and run it from there.
Rightclick FileLister.vbe ->>Select Open Then Open to confirm.
When the program is fnished it will produce a log for you C:\Files.txt
 
Copy and paste the contents of that log in your reply.
 
The log will be reasonably large so you may have to divide it into sections and make several posts to post it.


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-2-2009 4:43 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Heres the FileLister log:

+++++++++++++++++++++++++++++++++
+ File Lister  Version 1.1.1                                 +
+                                                                    +
+  By bamajim / SpywareHammer.com                 +
+++++++++++++++++++++++++++++++++
Report ran on --->>>  02/11/2009 15:34:16

====== Running Processes ======
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\CTXFIHLP.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\program files\ncsoft\launcher\NCLauncher.exe
C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\distnoted.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\SyncServer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\WScript.exe
C:\Program Files\Internet Explorer\iexplore.exe
====== BHO's ======
BHO: (NO NAME) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
BHO: (NO NAME) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
====== HKLM\~\Run Keys ======
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
[CTHelper] = CTHELPER.EXE
[CTxfiHlp] = CTXFIHLP.EXE
[UpdReg] = C:\WINDOWS\UpdReg.EXE
[NVIDIA nTune] = "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
[NeroFilterCheck] = C:\WINDOWS\system32\NeroCheck.exe
[Logitech Hardware Abstraction Layer] = KHALMNPR.EXE
[RTHDCPL] = RTHDCPL.EXE
[SkyTel] = SkyTel.EXE
[Alcmtr] = ALCMTR.EXE
[SmcService] = C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
[AppleSyncNotifier] = C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
[Kernel and Hardware Abstraction Layer] = KHALMNPR.EXE
[AVP] = "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
[NvCplDaemon] = RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
[nwiz] = nwiz.exe /install
[NvMediaCenter] = RunDLL32.exe NvMCTray.dll,NvTaskbarInit
[QuickTime Task] = "C:\Program Files\QuickTime\qttask.exe" -atboottime
[iTunesHelper] = "C:\Program Files\iTunes\iTunesHelper.exe"
[SunJavaUpdateSched] = "C:\Program Files\Java\jre6\bin\jusched.exe"
[Malwarebytes Anti-Malware (reboot)] = "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
====== HKCU\~\Run Keys ======
[PhotoShow Deluxe Media Manager] = C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
[MsnMsgr] = "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
[MSMSGS] = "C:\Program Files\Messenger\msmsgs.exe" /background
[PlayNC Launcher] =
[NCsoft Launcher] = C:\program files\ncsoft\launcher\NCLauncher.exe /Minimized
[ctfmon.exe] = C:\WINDOWS\system32\ctfmon.exe
[SpybotSD TeaTimer] = C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
====== DNS Info (List may be empty) ======
HKEY_LOCAL_MACHINE\CCS\~\{0F89A899-8E06-461D-A3C7-C3AD085675F1}\  NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{5592F752-8C32-4243-B390-1F35B1CD6582}\  NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{69591F6D-AE63-43A2-B867-5529A83C8F0B}\  NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{7F595B82-7110-4D8C-BDFD-3B93935243CA}\  NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{D6F6E39B-2495-4D55-94D7-9468CC80B98C}\  NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{E80E0574-EA42-4436-AEB2-96B3F0B18168}\  NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{4AFBB5BC-0374-4FB4-A97C-EEDF4168B76C}\  NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{69591F6D-AE63-43A2-B867-5529A83C8F0B}\  NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{7F595B82-7110-4D8C-BDFD-3B93935243CA}\  NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{8A517CF2-AE3A-41A0-9A09-F246361E628D}\  NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{D6F6E39B-2495-4D55-94D7-9468CC80B98C}\  NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{E80E0574-EA42-4436-AEB2-96B3F0B18168}\  NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{0F89A899-8E06-461D-A3C7-C3AD085675F1}\  NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{5592F752-8C32-4243-B390-1F35B1CD6582}\  NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{69591F6D-AE63-43A2-B867-5529A83C8F0B}\  NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{7F595B82-7110-4D8C-BDFD-3B93935243CA}\  NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{D6F6E39B-2495-4D55-94D7-9468CC80B98C}\  NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{E80E0574-EA42-4436-AEB2-96B3F0B18168}\  NameServer=
HKEY_LOCAL_MACHINE\CS003\~\{0F89A899-8E06-461D-A3C7-C3AD085675F1}\  NameServer=
HKEY_LOCAL_MACHINE\CS003\~\{5592F752-8C32-4243-B390-1F35B1CD6582}\  NameServer=
HKEY_LOCAL_MACHINE\CS003\~\{69591F6D-AE63-43A2-B867-5529A83C8F0B}\  NameServer=
HKEY_LOCAL_MACHINE\CS003\~\{7F595B82-7110-4D8C-BDFD-3B93935243CA}\  NameServer=
HKEY_LOCAL_MACHINE\CS003\~\{D6F6E39B-2495-4D55-94D7-9468CC80B98C}\  NameServer=
HKEY_LOCAL_MACHINE\CS003\~\{E80E0574-EA42-4436-AEB2-96B3F0B18168}\  NameServer=
====== Folders and Files from "%\" and "%\Windows" Created Last 60 Days ======
29/10/2009 13:45:04    8100361    C:\cmdcons
29/10/2009 13:45:04    860672    C:\cmdcons\SYSTEM32
30/10/2009 07:24:25    371575    C:\HostsXpert
29/10/2009 13:45:10    211    32    C:\Boot.bak
29/10/2009 13:45:05    260272    32    C:\cmldr
02/11/2009 15:34:16    0    32    C:\Files.txt
15/10/2009 12:17:52    1228135    C:\WINDOWS\$NtUninstallKB954155_WM9$
15/10/2009 12:17:52    624487    C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst
10/09/2009 13:02:37    777429    C:\WINDOWS\$NtUninstallKB956844$
10/09/2009 13:02:37    624341    C:\WINDOWS\$NtUninstallKB956844$\spuninst
15/10/2009 12:19:32    624317    C:\WINDOWS\$NtUninstallKB958869$
15/10/2009 12:19:32    624317    C:\WINDOWS\$NtUninstallKB958869$\spuninst
15/10/2009 12:15:08    2132449    C:\WINDOWS\$NtUninstallKB968389$
15/10/2009 12:15:08    628065    C:\WINDOWS\$NtUninstallKB968389$\spuninst
10/09/2009 13:02:41    3082081    C:\WINDOWS\$NtUninstallKB968816_WM9$
10/09/2009 13:02:41    623969    C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst
15/10/2009 12:18:14    2060357    C:\WINDOWS\$NtUninstallKB969059$
15/10/2009 12:18:14    624709    C:\WINDOWS\$NtUninstallKB969059$\spuninst
15/10/2009 12:15:56    13220669    C:\WINDOWS\$NtUninstallKB971486$
15/10/2009 12:15:56    627133    C:\WINDOWS\$NtUninstallKB971486$\spuninst
10/09/2009 13:02:26    1139504    C:\WINDOWS\$NtUninstallKB971961$
10/09/2009 13:02:26    627504    C:\WINDOWS\$NtUninstallKB971961$\spuninst
15/10/2009 12:15:28    762700    C:\WINDOWS\$NtUninstallKB973525$
15/10/2009 12:15:28    623436    C:\WINDOWS\$NtUninstallKB973525$\spuninst
15/10/2009 12:17:49    872029    C:\WINDOWS\$NtUninstallKB974112$
15/10/2009 12:17:49    624703    C:\WINDOWS\$NtUninstallKB974112$\spuninst
15/10/2009 12:16:58    681811    C:\WINDOWS\$NtUninstallKB974571$
15/10/2009 12:16:58    624467    C:\WINDOWS\$NtUninstallKB974571$\spuninst
15/10/2009 12:17:44    919167    C:\WINDOWS\$NtUninstallKB975025$
15/10/2009 12:17:44    624255    C:\WINDOWS\$NtUninstallKB975025$\spuninst
15/10/2009 12:15:21    896816    C:\WINDOWS\$NtUninstallKB975467$
15/10/2009 12:15:21    624432    C:\WINDOWS\$NtUninstallKB975467$\spuninst
29/10/2009 13:39:02    49859926    C:\WINDOWS\ERDNT
29/10/2009 13:39:02    49859926    C:\WINDOWS\ERDNT\Hiv-backup
30/10/2009 14:24:51    7950336    C:\WINDOWS\ERDNT\Hiv-backup\Users
30/10/2009 14:24:51    229376    C:\WINDOWS\ERDNT\Hiv-backup\Users\00000001
30/10/2009 14:24:51    8192    C:\WINDOWS\ERDNT\Hiv-backup\Users\00000002
30/10/2009 14:24:51    229376    C:\WINDOWS\ERDNT\Hiv-backup\Users\00000003
30/10/2009 14:24:51    8192    C:\WINDOWS\ERDNT\Hiv-backup\Users\00000004
30/10/2009 14:24:51    7274496    C:\WINDOWS\ERDNT\Hiv-backup\Users\00000005
30/10/2009 14:24:51    200704    C:\WINDOWS\ERDNT\Hiv-backup\Users\00000006
28/10/2009 22:43:12    45185217    C:\WINDOWS\ie8
28/10/2009 22:43:12    1174812    C:\WINDOWS\ie8\spuninst
28/10/2009 22:44:47    27105535    C:\WINDOWS\ie8updates
30/10/2009 01:20:25    1351786    C:\WINDOWS\ie8updates\KB971961-IE8
30/10/2009 01:20:25    625258    C:\WINDOWS\ie8updates\KB971961-IE8\spuninst
28/10/2009 22:44:47    25127484    C:\WINDOWS\ie8updates\KB974455-IE8
28/10/2009 22:44:47    634761    C:\WINDOWS\ie8updates\KB974455-IE8\spuninst
28/10/2009 22:45:07    626265    C:\WINDOWS\ie8updates\KB975364-IE8
28/10/2009 22:45:07    624217    C:\WINDOWS\ie8updates\KB975364-IE8\spuninst
29/10/2009 13:39:20    80412    32    C:\WINDOWS\grep.exe
28/10/2009 22:42:58    83777    32    C:\WINDOWS\ie8.log
28/10/2009 22:39:34    72361    32    C:\WINDOWS\ie8_main.log
15/10/2009 12:17:52    16029    32    C:\WINDOWS\KB954155.log
10/09/2009 13:02:36    8656    32    C:\WINDOWS\KB956844.log
15/10/2009 12:19:31    16123    32    C:\WINDOWS\KB958869.log
12/10/2009 19:19:27    25278    32    C:\WINDOWS\KB968389.log
10/09/2009 13:02:41    6205    32    C:\WINDOWS\KB968816.log
14/10/2009 12:02:25    25464    32    C:\WINDOWS\KB969059.log
15/10/2009 12:15:52    13414    32    C:\WINDOWS\KB971486.log
30/10/2009 01:20:12    9042    32    C:\WINDOWS\KB971961-IE8.log
10/09/2009 13:02:10    9115    32    C:\WINDOWS\KB971961.log
15/10/2009 12:15:26    11784    32    C:\WINDOWS\KB973525.log
14/10/2009 12:02:08    25471    32    C:\WINDOWS\KB974112.log
14/10/2009 12:01:57    103826    32    C:\WINDOWS\KB974455-IE7.log
28/10/2009 22:44:20    94876    32    C:\WINDOWS\KB974455-IE8.log
14/10/2009 12:01:56    19429    32    C:\WINDOWS\KB974571.log
14/10/2009 12:02:06    25406    32    C:\WINDOWS\KB975025.log
28/10/2009 22:45:04    73695    32    C:\WINDOWS\KB975364-IE8.log
14/10/2009 12:00:25    19504    32    C:\WINDOWS\KB975467.log
29/10/2009 13:39:20    77312    32    C:\WINDOWS\MBR.exe
29/10/2009 13:39:20    31232    32    C:\WINDOWS\NIRCMD.exe
01/11/2009 02:01:58    0    32    C:\WINDOWS\nsreg.dat
29/10/2009 13:39:20    236544    32    C:\WINDOWS\PEV.exe
29/10/2009 13:39:20    98816    32    C:\WINDOWS\sed.exe
29/10/2009 13:39:20    161792    32    C:\WINDOWS\SWREG.exe
29/10/2009 13:39:20    136704    32    C:\WINDOWS\SWSC.exe
29/10/2009 13:39:20    212480    32    C:\WINDOWS\SWXCACLS.exe
29/10/2009 13:39:20    68096    32    C:\WINDOWS\zip.exe
30/10/2009 07:45:56    411368    32    C:\WINDOWS\system32\deploytk.dll
30/10/2009 07:45:56    145184    32    C:\WINDOWS\system32\java.exe
30/10/2009 07:45:56    73728    32    C:\WINDOWS\system32\javacpl.cpl
30/10/2009 07:45:56    145184    32    C:\WINDOWS\system32\javaw.exe
30/10/2009 07:45:56    149280    32    C:\WINDOWS\system32\javaws.exe
08/10/2009 10:30:40    18284    34    C:\WINDOWS\system32\mlfcache.dat
05/09/2009 00:54:48    69632    32    C:\WINDOWS\system32\QuickTime.qts
05/09/2009 00:54:48    94208    32    C:\WINDOWS\system32\QuickTimeVR.qtx
====== Files under "\Administrator\Startup" Last 60 Days======

====== Files under "\All Users\Startup" Last 60 Days======

====== Files and Folders under "\Program Files" Last 60 Days======
13/10/2009 19:15:48    8691211    C:\Program Files\Audacity
30/10/2009 07:28:17    2780336    C:\Program Files\CCleaner
28/10/2009 19:24:50    319032    C:\Program Files\FileASSASSIN
14/10/2009 12:48:23    1226537    C:\Program Files\Lame for Audacity
01/11/2009 02:01:48    26655821    C:\Program Files\Mozilla Firefox
19/10/2009 15:52:41    1558710608    C:\Program Files\Portal
30/10/2009 14:58:26    60194525    C:\Program Files\Spybot - Search & Destroy
28/10/2009 18:25:56    0    C:\Program Files\tenmpu
30/10/2009 07:47:07    405366    C:\Program Files\Trend Micro
====== Files under "\System32\Drivers" Last 60 Days======

====== Files Deleted under "%Temp%" ======

53 Files deleted
====== Files and Folders under "All Users\Application Data" Last 60 Days======

====== Values under HKLM\Software\microsoft\shared tools\msconfig\startupreg ======
HKLM\Software\microsoft\shared tools\msconfig\startupreg\4oD
HKLM\Software\microsoft\shared tools\msconfig\startupreg\kdx
HKLM\Software\microsoft\shared tools\msconfig\startupreg\Skype
====== Services ( Services that are Whitelisted are not shown) ======
ctac32k (Creative AC3 Software Decoder)- C:\WINDOWS\system32\drivers\ctac32k.sys - Manual/Running
ctaud2k (Creative Audio Driver (WDM))- C:\WINDOWS\system32\drivers\ctaud2k.sys - Manual/Running
ctdvda2k (Creative DVD-Audio Device Driver)- C:\WINDOWS\system32\drivers\ctdvda2k.sys - Manual/Stopped
ctprxy2k (Creative Proxy Driver)- C:\WINDOWS\system32\drivers\ctprxy2k.sys - Manual/Running
ctsfm2k (Creative SoundFont Management Device Driver)- C:\WINDOWS\system32\drivers\ctsfm2k.sys - Manual/Running
emupia (E-mu Plug-in Architecture Driver)- C:\WINDOWS\system32\drivers\emupia2k.sys - Manual/Running
ha20x2k (Creative 20X HAL Driver)- C:\WINDOWS\system32\drivers\ha20x2k.sys - Manual/Running
klbg (Kaspersky Lab Boot Guard Driver)- C:\WINDOWS\system32\drivers\klbg.sys - Boot/Running
klim5 (Kaspersky Anti-Virus NDIS Filter)- C:\WINDOWS\system32\DRIVERS\klim5.sys - Manual/Running
L8042Kbd (Logitech SetPoint Keyboard Driver)- C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys - Manual/Stopped
L8042mou (Logitech SetPoint PS/2 Mouse Filter Driver)- C:\WINDOWS\system32\Drivers\L8042mou.sys - Manual/Stopped
LHidFilt (Logitech SetPoint KMDF HID Filter Driver)- C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys - Manual/Running
LHidKe (Logitech SetPoint HID Mouse Filter Driver)- C:\WINDOWS\system32\DRIVERS\LHidKE.Sys - Manual/Stopped
LMouFilt (Logitech SetPoint KMDF Mouse Filter Driver)- C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys - Manual/Running
LMouKE (Logitech SetPoint Mouse Filter Driver)- C:\WINDOWS\system32\Drivers\LMouKE.sys - Manual/Stopped
LUsbKbd (Logitech SetPoint USB Filter Driver)- C:\WINDOWS\system32\drivers\LUsbKbd.sys - Manual/Stopped
NdisIP (Microsoft TV/Video Connection)- C:\WINDOWS\system32\DRIVERS\NdisIP.sys - Manual/Stopped
NVR0Dev (NVR0Dev)- \??\C:\WINDOWS\nvoclock.sys - Manual/Running
ossrv (Creative OS Services Driver)- C:\WINDOWS\system32\drivers\ctoss2k.sys - Manual/Running
SLIP (BDA Slip De-Framer)- C:\WINDOWS\system32\DRIVERS\SLIP.sys - Manual/Stopped
tunmp (Microsoft Tun Miniport Adapter Driver)- C:\WINDOWS\system32\DRIVERS\tunmp.sys - Manual/Stopped
USBAAPL (Apple Mobile USB Driver)- C:\WINDOWS\system32\Drivers\usbaapl.sys - Manual/Running
usbcm (USB Cable Modem 351000 NDIS Driver)- C:\WINDOWS\system32\DRIVERS\usbcm.sys - Manual/Stopped
Wdf01000 (Wdf01000)- C:\WINDOWS\system32\DRIVERS\Wdf01000.sys - Manual/Running
wg3n (SyGate for NT, wg3n)- C:\WINDOWS\system32\Drivers\wg3n.sys - Auto/Running
wg4n (SyGate for NT, wg4n)- C:\WINDOWS\system32\Drivers\wg4n.sys - Auto/Running
wg5n (SyGate for NT, wg5n)- C:\WINDOWS\system32\Drivers\wg5n.sys - Auto/Running
wg6n (SyGate for NT, wg6n)- C:\WINDOWS\system32\Drivers\wg6n.sys - Auto/Running
wpsdrvnt (wpsdrvnt)- \??\C:\WINDOWS\system32\drivers\wpsdrvnt.sys - System/Running
XTrapD12 (XTrapD12)- \??\C:\WINDOWS\system32\XTrapD12.sys - Manual/Stopped
Z302Mic (Vimicro Z302 Mic Audio Filter Driver)- C:\WINDOWS\system32\drivers\UsbMicfilt.sys - Manual/Stopped
ZSMC302 (PCL-W310)- C:\WINDOWS\system32\Drivers\usbvm302.sys - Manual/Stopped
====== Uninstall List ======
Ad-Aware SE Personal
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
AlienGUIse Theme Manager
Amazon MP3 Downloader 1.0.4
Audacity 1.2.6
CCleaner
Creative Software AutoUpdate
ESET Online Scanner v3
City of Heroes (European) (remove only)
Fraps (remove only)
Guild Wars
GW Team Builder 1.2.1
HijackThis 2.0.2
Microsoft Internationalized Domain Names Mitigation APIs
Windows Internet Explorer 7
NVIDIA nTune
Kaspersky Anti-Virus 2009
High Definition Audio Driver Package - KB888111
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923689)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Internet Explorer 7 (KB928090)
Hotfix for Windows Media Format 11 SDK (KB929399)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows Internet Explorer 7 (KB939653)
Hotfix for Windows Media Player 11 (KB939683)
Security Update for Windows XP (KB941569)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows XP (KB946648)
Hotfix for Windows Internet Explorer 7 (KB947864)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Update for Windows XP (KB951072-v2)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Update for Windows XP (KB951978)
Security Update for Windows XP (KB952004)
Security Update for Windows Media Player (KB952069)
Hotfix for Windows XP (KB952287)
Security Update for Windows XP (KB952954)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows XP (KB953839)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player (KB954155)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Hotfix for Windows XP (KB954550-v5)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Update for Windows XP (KB955839)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Critical Update for Windows Media Player 11 (KB959772)
Security Update for Windows XP (KB960225)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Hotfix for Windows XP (KB961118)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows Internet Explorer 7 (KB963027)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Security Update for Windows XP (KB968537)
Security Update for Windows Media Player (KB968816)
Security Update for Windows XP (KB969059)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB970238)
Hotfix for Windows XP (KB970653-v3)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 7 (KB972260)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows Media Player (KB973540)
Update for Windows XP (KB973815)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB974112)
Security Update for Windows Internet Explorer 7 (KB974455)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
LAME v3.98.2 for Audacity
Microsoft .NET Framework 1.1 Security Update (KB953297)
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1
Microsoft .NET Framework 3.5 SP1
Mids' Hero/Villain Designer
Mozilla Firefox (3.5.4)
Microsoft Compression Client Pack 1.0 for Windows XP
Nero PhotoShow Express
Nero Suite
Microsoft National Language Support Downlevel APIs
NVIDIA Drivers
PCL-W310
Portal
Station Launcher
Creative System Information
TeamSpeak 2 RC2
VentriloMIX
VideoLive Mail 4.0
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Windows Genuine Advantage Notifications (KB905474)
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
Windows Media Format 11 runtime
Windows Media Player 11
Microsoft User-Mode Driver Framework Feature Pack 1.0
Yahoo! Toolbar for Internet Explorer
Yahoo! Toolbar
Bonjour
Apple Application Support
CDDRV_Installer
Sound Blaster X-Fi
Skype™ 4.0
Java(TM) 6 Update 16
KhalInstallWrapper
WebFldrs XP
MobileMe Control Panel
Logitech Registration
DivX Version Checker
Paint.NET v3.36
Windows Live Messenger
NCsoft Launcher
Kaspersky Anti-Virus 2009
Apple Software Update
The Sims 2
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Ventrilo Client
DivX Codec
NVIDIA nTune
URGE
Logitech Desktop Messenger
Microsoft Office XP Professional with FrontPage
Windows Live Sign-in Assistant
Microsoft .NET Framework 3.0 Service Pack 2
QuickTime
Microsoft Visual C++ 2005 Redistributable
Windows Live installer
Apple Mobile Device Support
Adobe Reader 7.0
Spybot - Search & Destroy
DivX Web Player
Creative MediaSource 5
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 1.1
Microsoft .NET Framework 3.5 SP1
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
DivX Content Uploader
iTunes
NVIDIA PhysX
Realtek High Definition Audio Driver
Logitech SetPoint
Sygate Personal Firewall
======== Other Info ========
TOTAL PHYSICAL RAM: 2146 MB
Boot Info
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

OS Type:  Microsoft Windows XP Home Edition
Build:  5.1.2600
Service Pack:  3.0

====== Files with Hidden Attributes======
C:\hiberfil.sys
C:\IO.SYS
C:\MSDOS.SYS
C:\pagefile.sys
C:\NTDETECT.COM
C:\Documents and Settings\Administrator\ntuser.dat
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat
==End of Report==
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-2-2009 5:00 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Looks clean.
 
 
Please follow this guide:

 Follow the instructions and copy the logs here, in this Topic.
 
 
Nb. You don´t need to download DDS.
 
Just post logs from malwarebyte and hijackthis.


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-2-2009 6:49 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Heres the MBAM Log, no threats:


Malwarebytes' Anti-Malware 1.41
Database version: 3086
Windows 5.1.2600 Service Pack 3
02/11/2009 17:40:22
mbam-log-2009-11-02 (17-40-22).txt
Scan type: Full Scan (C:\|)
Objects scanned: 250131
Time elapsed: 1 hour(s), 16 minute(s), 43 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
And the Hijackthis Log:


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:41:20, on 02/11/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\CTXFIHLP.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\program files\ncsoft\launcher\NCLauncher.exe
C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\distnoted.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Ventrilo\Ventrilo.exe
C:\Program Files\Guild Wars\Gw.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [NCsoft Launcher] C:\program files\ncsoft\launcher\NCLauncher.exe /Minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20061205/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {138E6DC9-722B-4F4B-B09D-95D191869696} (Bebo Uploader Control) - http://www.bebo.com/files/BeboUploader.5.1.4.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/AutoDLDivXWebPlayerInstaller.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
--
End of file - 9682 bytes


Seems to be no viruses but im still being redirected on occasion from sarch engine links. This whole crap started when i updated to IE 8 i did try rolling back but i can't :S. I'm using firefox now but do you think IE 8 might be corrupted in some way?
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-3-2009 6:33 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
but im still being redirected on occasion from sarch engine links
That´s odd rolleyes
 
Let´s see a combofix log ->
 
Please download Combofix from:
 
 And save to the desktop.

Close all other browser windows.
 
Double-click on the combofix icon found on your desktop.
 
Please note, that once you start combofix you should not click anywhere on the combofix window as it can cause the program to stall. In fact, when combofix is running, do not touch your computer at all and just take a break as it may take a while for it to complete.

 When finished, it will produce a logfile located at C:\combofix.txt.
 

Post the contents of that log in your next reply
 
The logs will be reasonably large so you may have to divide them into sections and make several posts to post them.
BTW. I Assume Kaspersky have a Firewall ? If it have, you should uninstall Sygate Personal Firewall from add/remove programs.



Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-3-2009 4:25 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
I tried running combofix the first time but the scanning screen just doesn't move. Last time i had it running for about 13 hours with no signs of progression. I will try again later but i really don't think combofix is going to work. Not sure why. I'm not touching anything when it's running and applications and protection is closed. Should i run it in Safe mode instead?

Edit: Nevermind i just tried to run my computer in safe mode and it won't work :S. My computer just seems to keep restarting itself whenever i choose safe mode.

Post Edited (Ethan442) : 03-11-2009 15:37:26 GMT

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-3-2009 5:05 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Download & run this tool > SafeBootKeyRepair-CF
(http://download.bleepingcomputer.com/sUBs/SafeBootKeyRepair-CF.exe)
It will only take a short moment for it to finish running.
A log will be produced at C:\SafeBoot_Repair.txt.
Please post it in newxt reply


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-3-2009 6:27 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ok heres the Safeboot log:

Reg export of SafeBoot key after repair:
========================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot]
"AlternateShell"="cmd.exe"
@=""

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\AppMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Base]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Boot Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Boot file system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\CryptSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\DcomLaunch]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmadmin]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmboot.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmio.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmload.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\dmserver]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\EventLog]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\File system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\HelpSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Netlogon]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PCI Configuration]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PEVSystemStart]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PlugPlay]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\PNP Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\Primary disk]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\procexp90.Sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\RpcSs]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\SCSI Class]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\sermouse.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\sr.sys]
@="FSFilter System Recovery"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\SRService]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\System Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\vds]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\vga.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\vgasave.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\WdfLoadGroup]
@=""

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\WinMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
@="Universal Serial Bus controllers"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
@="CD-ROM Drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
@="DiskDrive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
@="Hdc"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
@="Keyboard"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
@="Mouse"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
@="PCMCIA Adapters"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
@="SCSIAdapter"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
@="System"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
@="Volume"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
@="Human Interface Devices"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AFD]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\AppMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Base]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Boot Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Boot file system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Browser]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\CryptSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\DcomLaunch]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Dhcp]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmadmin]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmboot.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmio.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmload.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\dmserver]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\DnsCache]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\EventLog]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\File system]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\HelpSvc]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\ip6fw.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\ipnat.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LanmanServer]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LanmanWorkstation]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\LmHosts]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Messenger]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NDIS]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NDIS Wrapper]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Ndisuio]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBIOS]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBIOSGroup]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetBT]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetDDEGroup]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Netlogon]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetMan]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Network]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NetworkProvider]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\nm]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\nm.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\NtLmSsp]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PCI Configuration]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PEVSystemStart]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PlugPlay]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PNP Filter]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\PNP_TDI]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Primary disk]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\procexp90.Sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpcdd.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpdd.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdpwd.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\rdsessmgr]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\RpcSs]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SCSI Class]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\sermouse.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SharedAccess]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\sr.sys]
@="FSFilter System Recovery"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\SRService]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Streams Drivers]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\System Bus Extender]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\Tcpip]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\TDI]
@="Driver Group"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\tdpipe.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\tdtcp.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\termservice]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\vga.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\vgasave.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\WdfLoadGroup]
@=""

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\WinMgmt]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\WZCSVC]
@="Service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{36FC9E60-C465-11CF-8056-444553540000}]
@="Universal Serial Bus controllers"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
@="CD-ROM Drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
@="DiskDrive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
@="Standard floppy disk controller"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
@="Hdc"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
@="Keyboard"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
@="Mouse"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
@="Net"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
@="NetClient"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
@="NetService"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
@="NetTrans"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
@="PCMCIA Adapters"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
@="SCSIAdapter"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
@="System"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
@="Floppy disk drive"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
@="Volume"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
@="Human Interface Devices"

========================

HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\PEVSystemStart
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\procexp90.Sys
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\WdfLoadGroup
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-4-2009 6:01 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
It looks like you can boot to safe mode without restarting ?


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-4-2009 6:58 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Hmm i tab F8 on startup and select Safe Mode it then goes onto another screen where i'm asked to choose between Windows recovery consolde or Windows XP. I chose XP and this is when it keeps restarting. On restart it says Windows did not startup properly choose an option below; Im given Safe mode, last known configuration and start normally. I choose safe mode but it just keeps restarting and the same screen appears.

This isn't really whats bugging me though. I'm still being redirected on occassion by these links and no threats are detected, the only thing i haven't done from what you have told me is the combofix. Simply because once it's on the scanning screen it doesn't progress through the scan. Even after 15 hours.

I haven't yet thanked you got your help. I greatly appreciate the help and thank you alot. It's just wierd this redirecting thing is still happening if from these logs you see that my system is clean.
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-4-2009 8:36 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ok. Let´s see if you any rootkits ->
 
 
and download the installer for Gmer to your desktop, then click that file to run Gmer.


If on it's opening scan Gmer locates items shown in red or indicates "hidden" or "rootkit", stop there, and click on the Copy button and rightclick on your Desktop, choose "New" > Text document. Once the file is created, open it and rightclick again and choose Paste. Copy the information and post it here please. We don't want any crashes just from taking an initial look at things.

If not, then click on Scan (before scanning, make sure all other running programs are closed and no other actions like a scheduled antivirus scan will occur while this scan completes. Also do not use your computer during the scan).

When completed, click on the Copy button and rightclick on your Desktop, choose "New" > Text document. Once the file is created, open it and rightclick again and choose Paste. Copy the information and post it here please.
 
You can break logs into parts and use separate posts here when replying and posting the log files, if needed.


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-4-2009 7:06 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
I will post this log in two parts, it's fairly big:

GMER 1.0.15.15163 - http://www.gmer.net
Rootkit scan 2009-11-04 17:42:20
Windows 5.1.2600 Service Pack 3
Running: 9tc7fsl0.exe; Driver: C:\DOCUME~1\ETHANS~1\LOCALS~1\Temp\ffdiipob.sys


---- System - GMER 1.0.15 ----

SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwAdjustPrivilegesToken [0xAF5A6A72]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwClose [0xAF5A701E]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwConnectPort [0xAF5A8A82]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwCreateFile [0xAF5A8438]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwCreateKey [0xAF5A61E8]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwCreateSymbolicLinkObject [0xAF5AA3E4]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwCreateThread [0xAF5A6E1A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwDeleteKey [0xAF5A662A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwDeleteValueKey [0xAF5A682A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwDeviceIoControlFile [0xAF5A8744]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwDuplicateObject [0xAF5AA8F0]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwEnumerateKey [0xAF5A6940]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwEnumerateValueKey [0xAF5A69A8]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwFsControlFile [0xAF5A85FA]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwLoadDriver [0xAF5A9EA8]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) Z!!!enFile [0xAF5A8294]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) Z!!!enKey [0xAF5A634A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) Z!!!enProcess [0xAF5A6C40]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) Z!!!enSection [0xAF5AA40E]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) Z!!!enThread [0xAF5A6B96]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwQueryKey [0xAF5A6A10]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwQueryMultipleValueKey [0xAF5A6714]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwQueryValueKey [0xAF5A64F2]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwQueueApcThread [0xAF5AA110]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwReplaceKey [0xAF5A5E6A]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwRequestWaitReplyPort [0xAF5A930C]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwRestoreKey [0xAF5A5FCC]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwResumeThread [0xAF5AA7C0]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSaveKey [0xAF5A5C68]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSecureConnectPort [0xAF5A8924]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSetContextThread [0xAF5A6F18]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSetSecurityObject [0xAF5A9FA2]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSetSystemInformation [0xAF5AA438]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSetValueKey [0xAF5A63A0]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSuspendProcess [0xAF5AA51C]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSuspendThread [0xAF5AA648]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwSystemDebugControl [0xAF5A9DD4]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwTerminateProcess [0xAF5A6CEA]
SSDT \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) ZwWriteVirtualMemory [0xAF5A6D5C]

Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) FsRtlCheckLockForReadAccess
Code \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab) IoIsOperationSynchronous

---- Kernel code sections - GMER 1.0.15 ----

.text ntkrnlpa.exe!FsRtlCheckLockForReadAccess 804EAF84 5 Bytes JMP AF5BD1E8 \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab)
.text ntkrnlpa.exe!IoIsOperationSynchronous 804EF912 5 Bytes JMP AF5BD5A2 \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter fre_wnet_x86/Kaspersky Lab)
.text ntkrnlpa.exe!ZwCallbackReturn + 2C40 805044DC 2 Bytes [82, 8A]
.text ntkrnlpa.exe!ZwCallbackReturn + 2C68 80504504 4 Bytes CALL 12FF9F6A
.text ntkrnlpa.exe!ZwCallbackReturn + 2DB8 80504654 2 Bytes [0E, A4] {PUSH CS; MOVSB }
.text ntkrnlpa.exe!ZwCallbackReturn + 2EE4 80504780 2 Bytes [0C, 93] {OR AL, 0x93}
.text ntkrnlpa.exe!ZwCallbackReturn + 2F0C 805047A8 2 Bytes [24, 89] {AND AL, 0x89}
.text ...

---- User code sections - GMER 1.0.15 ----

? C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe[164] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch;
.text C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe[164] USER32.dll!AlignRects + FFFA5598 7E412A78 4 Bytes [70, 11, 41, 6D] {JO 0x13; INC ECX; INSD }
? C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe[2928] C:\WINDOWS\system32\kernel32.dll time/date stamp mismatch;
.text C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe[2928] USER32.dll!AlignRects + FFFA5598 7E412A78 4 Bytes [70, 11, 41, 6D] {JO 0x13; INC ECX; INSD }

---- Kernel IAT/EAT - GMER 1.0.15 ----

IAT \SystemRoot\system32\DRIVERS\tcpip.sys[TDI.SYS!TdiRegisterDeviceObject] [B9915820] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
IAT \SystemRoot\system32\DRIVERS\netbt.sys[TDI.SYS!TdiRegisterDeviceObject] [B9915820] kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)

---- User IAT/EAT - GMER 1.0.15 ----

IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE[1208] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!SetWindowPlacement] [66603F0E] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!LoadImageW] [6602AD34] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!SendMessageW] [6602B7E6] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\Explorer.EXE [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SendMessageW] [6602B7E6] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!LoadImageW] [6602AD34] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SendMessageW] [6602B7E6] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcA] [666040F4] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!LoadImageW] [6602AD34] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SendMessageW] [6602B7E6] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!SizeofResource] [66028C6C] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!FindResourceW] [6602AC6B] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadResource] [66028D2B] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [6602878C] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!LoadStringW] [66028D30] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!LoadImageW] [6602AD34] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SendMessageW] [6602B7E6] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\Explorer.EXE[2220] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wscntfy.exe[2308] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\wuauclt.exe[2472] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcA] [666040F4] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\CTHELPER.EXE[2564] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcA] [666040F4] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\CTXFIHLP.EXE[2620] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcA] [666040F4] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\RTHDCPL.EXE[2864] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!LoadImageW] [6602AD34] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!LoadImageW] [6602AD34] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcA] [666040F4] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-4-2009 7:07 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
And the second part..


IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!LoadImageW] [6602AD34] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\RunDLL32.exe[2952] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\iTunes\iTunesHelper.exe[3000] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Java\jre6\bin\jusched.exe[3016] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe[3024] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Messenger\msmsgs.exe[3072] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\system32\ctfmon.exe[3080] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\WS2_32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\WS2HELP.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\psapi.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe[3108] @ C:\WINDOWS\system32\iphlpapi.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Program Files\Logitech\SetPoint\SetPoint.exe[3116] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\USERENV.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\Documents and Settings\Ethan Sharp\Desktop\9tc7fsl0.exe[3128] @ C:\WINDOWS\system32\USERENV.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ADVAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\RPCRT4.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\Secur32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!GetWindowPlacement] [66603F30] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHELL32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenu] [6602B77F] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!TrackPopupMenuEx] [6602B7B4] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!DeferWindowPos] [66603E28] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\SHLWAPI.dll [USER32.dll!CallWindowProcA] [666040F4] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ole32.dll [KERNEL32.dll!LoadLibraryExA] [6602B6E1] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!CallWindowProcW] [66604121] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!SetWindowLongW] [66603EA3] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\ole32.dll [USER32.dll!MoveWindow] [66603F52] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\SYSTEM32\NETAPI32.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\SYSTEM32\NETAPI32.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryW] [6602B73E] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\WININET.dll [KERNEL32.dll!LoadLibraryA] [6602B6E7] C:\Program Files\AlienGUIse\WBlind.dll (WindowBlinds/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!GetWindowRect] [66603FB5] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowPos] [66603F82] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)
IAT C:\WINDOWS\SYSTEM32\CTXFISPI.EXE[3148] @ C:\WINDOWS\system32\WININET.dll [USER32.dll!SetWindowLongA] [66603E7C] C:\Program Files\AlienGUIse\wbhelp.dll (WindowBlinds Helper DLL/Stardock.Net, Inc)

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\Tcpip \Device\Ip kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
AttachedDevice \Driver\Tcpip \Device\Tcp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
AttachedDevice \Driver\Tcpip \Device\Udp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
AttachedDevice \Driver\Tcpip \Device\RawIp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)

---- Registry - GMER 1.0.15 ----

Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@DeviceNotSelectedTimeout 15
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@GDIProcessHandleQuota 10000
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@Spooler yes
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@swapdisk
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@TransmissionRetryTimeout 90
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@USERProcessHandleQuota 10000
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@AppInit_DLLs C:\WINDOWS\system32\wbsys.dll C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd.dll C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll

---- EOF - GMER 1.0.15 ----
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 16316
 
   Posted 11-5-2009 6:39 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
No rootkits ;-)
 
 
 Follow the instructions on the site. When downloaded, click on – Check for updates – Button.
Under Configuration and Preferences, click the Preferences button.
Click the
Scanning Control tab.
Under
Scanner Options make sure the following are checked:
Close browsers before scanning
Scan for tracking cookies
Terminate memory threats before quarantining.
Ignore System Restore/Volume Information on ME and XP
Please leave the others unchecked.
On the main screen, under Scan for Harmful Software click Scan your computer.
On the left check C:\Fixed Drive.
On the right, under Complete Scan, choose Perform Complete Scan.
Click Next to start the scan. Please be patient while it scans your computer.
After the scan is complete a summary box will appear. Click OK.
Make sure everything in the white box has a check next to it, then click Next.
It will quarantine what it found and if it asks if you want to reboot, click
NO.

When the scan have finished ->
Click Preferences . Click the Statistics/Logs tab .
Under
Scanner Logs , double-click SUPERAntiSpyware Scan Log .
It will open in your default text editor (such as Notepad/Wordpad).
  • Save the logfile to desktop
  • Click close and close again to exit the program.
Reboot, if needed.
Post Superantispyware log, along with new hijackthis log and tell how things are running ?


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Ethan442
New Member


Date Joined Oct 2009
Total Posts : 15
 
   Posted 11-6-2009 5:51 (GMT +1)    Quote: Search engine redirect virusAlert an admin about: Search engine redirect virus
Ok so the SAS Log:

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/06/2009 at 04:34 PM

Application Version : 4.29.1002

Core Rules Database Version : 4230
Trace Rules Database Version: 0

Scan type : Complete Scan
Total Scan Time : 01:24:05

Memory items scanned : 500
Memory threats detected : 0
Registry items scanned : 5946
Registry threats detected : 0
File items scanned : 101840
File threats detected : 8

Adware.Tracking Cookie
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@serving-sys.txt
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@ad.yieldmanager.txt
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@questionmarket.txt
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@doubleclick.txt
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@bs.serving-sys.txt
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@apmebf.txt
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@mediaplex.txt
C:\Documents and Settings\Ethan Sharp\Cookies\ethan_sharp@atdmt.txt

And the Hijackthis Log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:50:24, on 06/11/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\CTXFIHLP.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
C:\WINDOWS\SYSTEM32\CTXFISPI.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [PhotoShow Deluxe Media Manager] C:\PROGRA~1\Nero\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20061205/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {138E6DC9-722B-4F4B-B09D-95D191869696} (Bebo Uploader Control) - http://www.bebo.com/files/BeboUploader.5.1.4.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/AutoDLDivXWebPlayerInstaller.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 8471 bytes
Back to Top
 
New Topic Locked Topic Printable version of : Search engine redirect virus
28 posts in this thread.
Viewing Page :
 1  2 
 
Forum Information
Currently it is Friday, November 20, 2009 11:04 PM (GMT +1)
There are a total of 73.019 posts in 17.116 threads.
In the last 3 days there were 15 new threads and 70 reply posts. View Active Threads
Who's Online
This forum has 30329 registered members. Please welcome our newest member, prolife.
24 Guest(s), 0 Registered Member(s) are currently online.  Details
5 Latest Threads
Generic.Malware.SY.54561FF3 (0)20-11-2009 20:40:33 (DanLasko)
Www.clothinglookout.com paypal mihcael jackson t-shirts replica nike acg boots cole haan fendi shoes (0)20-11-2009 20:13:00 (clothinglookout)
Fashon juciy couture tracks!!!! gucci jackets replica timberland men boots nike air max 2009 monste (0)20-11-2009 20:08:16 (clothinglookout)
Offer discount timberland men boots fashion tiffany necklaces !!!elry coach chanel rings replica (0)20-11-2009 20:05:51 (clothinglookout)
Accept paypal louis vuitton t-shirts true religion women jeans abercrombie fitch women shirts (0)20-11-2009 19:53:44 (clothinglookout)