==============================================
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89D99970 ] TID: 112
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88EDF598 ] TID: 140
0x80562520 Faked ServiceTable-->ctfmon.exe [ ETHREAD 0x89E3E408 ] TID: 156
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x889DCB30 ] TID: 164
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x88C96598 ] TID: 232
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x88CC0598 ] TID: 244
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x88D96598 ] TID: 248, 28842884 bytes
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x88C90598 ] TID: 260
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89E16020 ] TID: 264, 1319400 bytes
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x88D78598 ] TID: 276
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89F0EDA8 ] TID: 300
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AEADA8 ] TID: 320
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889BF2C8 ] TID: 328
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E00DA8 ] TID: 336
0x80562520 Faked ServiceTable-->hpcmpmgr.exe [ ETHREAD 0x8A17BDA8 ] TID: 416
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x89F0EB30 ] TID: 420
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x889BE3C8 ] TID: 440
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x89E3B9F0 ] TID: 448
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x88B0C570 ] TID: 464
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88A275A0 ] TID: 496
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x89E23110 ] TID: 508
0x80562520 Faked ServiceTable-->USM.exe [ ETHREAD 0x89DD4520 ] TID: 520, 5374021 bytes
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x89078DA8 ] TID: 548
0x80562520 Faked ServiceTable-->realplay.exe [ ETHREAD 0x88CE2598 ] TID: 552
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x8A1765C8 ] TID: 568
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x88EAB598 ] TID: 576
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A7C020 ] TID: 580
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E7C598 ] TID: 600
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x89DCD5A0 ] TID: 612
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x88E74598 ] TID: 620
0x80562520 Faked ServiceTable-->capFax.exe [ ETHREAD 0x88B87898 ] TID: 636
0x80562520 Faked ServiceTable-->USM.exe [ ETHREAD 0x88EED598 ] TID: 640
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x88A53808 ] TID: 656
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x88A15DA8 ] TID: 660
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x88A5FB30 ] TID: 672, 41115272 bytes
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x89E5ABC8 ] TID: 676
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x89DAE948 ] TID: 680, 8781830 bytes
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x88BAAC38 ] TID: 684
0x80562520 Faked ServiceTable-->USM.exe [ ETHREAD 0x8A1708D0 ] TID: 688, 8781831 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89DCE4C8 ] TID: 716
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A154808 ] TID: 720, 8781831 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89D99BE8 ] TID: 724
0x80562520 Faked ServiceTable-->ipmon32.exe [ ETHREAD 0x89E2F888 ] TID: 736, 8781832 bytes
0x80562520 Faked ServiceTable-->smss.exe [ ETHREAD 0x8A1098E8 ] TID: 756
0x80562520 Faked ServiceTable-->smss.exe [ ETHREAD 0x89F75590 ] TID: 760, 8781832 bytes
0x80562520 Faked ServiceTable-->smss.exe [ ETHREAD 0x89F46DA8 ] TID: 764
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E38818 ] TID: 768, 8781833 bytes
0x80562520 Faked ServiceTable-->ComcastAntiSpyService.exe [ ETHREAD 0x89DF2628 ] TID: 784
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E1AB30 ] TID: 788, 8781833 bytes
0x80562520 Faked ServiceTable-->hpcmpmgr.exe [ ETHREAD 0x89E7E358 ] TID: 796
0x80562520 Faked ServiceTable-->ComcastAntiSpyService.exe [ ETHREAD 0x88A716C0 ] TID: 812, 8781836 bytes
0x80562520 Faked ServiceTable-->csrss.exe [ ETHREAD 0x89E541C8 ] TID: 828
0x80562520 Faked ServiceTable-->csrss.exe [ ETHREAD 0x88FB35A0 ] TID: 836, 8781838 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88DB5598 ] TID: 852
0x80562520 Faked ServiceTable-->Directcd.exe [ ETHREAD 0x89E385A0 ] TID: 864, 8781839 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88D7B598 ] TID: 868
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x89E6D130 ] TID: 872, 8781839 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88ED84D0 ] TID: 876
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8A143100 ] TID: 880, 8781840 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8A2191C0 ] TID: 884
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89DC95C8 ] TID: 916, 8781849 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88E83598 ] TID: 920
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89DBEDA8 ] TID: 924, 8781851 bytes
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89DC52B8 ] TID: 928
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x88C55598 ] TID: 932, 8781851 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89DBC628 ] TID: 936
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89DBFDA8 ] TID: 940, 8781853 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88D22598 ] TID: 944
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89DEFDA8 ] TID: 948, 8781853 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88D0A598 ] TID: 952
0x80562520 Faked ServiceTable-->reader_sl.exe [ ETHREAD 0x89DE5B80 ] TID: 956, 8781857 bytes
0x80562520 Faked ServiceTable-->AppleMobileDeviceService.exe [ ETHREAD 0x889D5BC8 ] TID: 960
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89E6CDA8 ] TID: 964, 8781858 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A36630 ] TID: 976
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89DB3258 ] TID: 984, 8781858 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89FE5020 ] TID: 988
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88A1C020 ] TID: 992, 8781860 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x889CC020 ] TID: 996
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x889D2020 ] TID: 1000, 8781860 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88A82020 ] TID: 1004
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89DC42B8 ] TID: 1008, 8781865 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88E824D8 ] TID: 1012
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88D274A0 ] TID: 1016, 8781867 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x89E4F7E8 ] TID: 1024
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88EBA598 ] TID: 1028, 8781868 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88D1D5A0 ] TID: 1032
0x80562520 Faked ServiceTable-->AppleMobileDeviceService.exe [ ETHREAD 0x889D4628 ] TID: 1040, 8781870 bytes
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89E2B940 ] TID: 1044
0x80562520 Faked ServiceTable-->ComcastAntiSpyService.exe [ ETHREAD 0x89DF69F0 ] TID: 1048, 8781875 bytes
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x88D87598 ] TID: 1060
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89DC02C0 ] TID: 1068, 8781887 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89DE5020 ] TID: 1072
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89E4AAD0 ] TID: 1076
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89DC8BD0 ] TID: 1088, 25690115 bytes
0x80562520 Faked ServiceTable-->AppleMobileDeviceService.exe [ ETHREAD 0x88B3D958 ] TID: 1092
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x88E45598 ] TID: 1096
0x80562520 Faked ServiceTable-->ComcastAntiSpyService.exe [ ETHREAD 0x89DE7DA8 ] TID: 1100, 7536761 bytes
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89F0C2A8 ] TID: 1112
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x88B38C58 ] TID: 1116
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A175A48 ] TID: 1120, 7536761 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E28860 ] TID: 1128
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88EBB598 ] TID: 1132, 8781914 bytes
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x88D9B598 ] TID: 1140, 3801155 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88DB7598 ] TID: 1160
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88EAF598 ] TID: 1164, 8781914 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88DB1598 ] TID: 1168
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88C77598 ] TID: 1172
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89D9D598 ] TID: 1176, 8781920 bytes
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x889B6828 ] TID: 1184
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x890789A0 ] TID: 1188
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88AFD808 ] TID: 1200, 8781922 bytes
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89DF59E8 ] TID: 1212
0x80562520 Faked ServiceTable-->sprtcmd.exe [ ETHREAD 0x889A0A70 ] TID: 1216
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89E22808 ] TID: 1220, 8781925 bytes
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89E22590 ] TID: 1228, 458782 bytes
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89E75CE8 ] TID: 1232
0x80562520 Faked ServiceTable-->mmtask.exe [ ETHREAD 0x89E4B2E0 ] TID: 1240, 8781928 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89FC6810 ] TID: 1248
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89F14D40 ] TID: 1260
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88F04598 ] TID: 1268, 8781933 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A1829C8 ] TID: 1272
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E3D020 ] TID: 1276
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88D99598 ] TID: 1280, 8781935 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88D18598 ] TID: 1296
0x80562520 Faked ServiceTable-->mmtask.exe [ ETHREAD 0x89DD3DA8 ] TID: 1300
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x889D4950 ] TID: 1308, 8781940 bytes
0x80562520 Faked ServiceTable-->sprtsvc.exe [ ETHREAD 0x89EF8B30 ] TID: 1316
0x80562520 Faked ServiceTable-->ipmon32.exe [ ETHREAD 0x89DEE860 ] TID: 1320
0x80562520 Faked ServiceTable-->ipmon32.exe [ ETHREAD 0x8A17C7C0 ] TID: 1324, 8781943 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88CFC598 ] TID: 1328, 3342445 bytes
0x80562520 Faked ServiceTable-->ipmon32.exe [ ETHREAD 0x8A17CA38 ] TID: 1332
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88C89598 ] TID: 1368
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E75598 ] TID: 1372
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89F22670 ] TID: 1384
0x80562520 Faked ServiceTable-->avgnt.exe [ ETHREAD 0x89DC3430 ] TID: 1396
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AE9B30 ] TID: 1404
0x80562520 Faked ServiceTable-->mmtask.exe [ ETHREAD 0x89DC37F0 ] TID: 1408
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x88A0E3D0 ] TID: 1420
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x89E2DC48 ] TID: 1424
0x80562520 Faked ServiceTable-->RIMAutoUpdate.exe [ ETHREAD 0x89E48DA8 ] TID: 1432
0x80562520 Faked ServiceTable-->explorer.exe [ ETHREAD 0x88B56808 ] TID: 1436
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E0E598 ] TID: 1440
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88DC3598 ] TID: 1444
0x80562520 Faked ServiceTable-->sprtcmd.exe [ ETHREAD 0x89DACA80 ] TID: 1448
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88DD4598 ] TID: 1460
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E09598 ] TID: 1464, 32 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88DE9598 ] TID: 1480
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88C85DA8 ] TID: 1484
0x80562520 Faked ServiceTable-->hpwuschd2.exe [ ETHREAD 0x89E4E5F0 ] TID: 1492
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E9D598 ] TID: 1500, 3211314 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89D03DA8 ] TID: 1508, 196611 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E6E598 ] TID: 1512, 851971 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E04598 ] TID: 1524, 41 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88D63598 ] TID: 1532
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88E48598 ] TID: 1540
0x80562520 Faked ServiceTable-->DevDtct2.exe [ ETHREAD 0x89E3F598 ] TID: 1548, 3342445 bytes
0x80562520 Faked ServiceTable-->DevDtct2.exe [ ETHREAD 0x89DE6980 ] TID: 1552, 7077954 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A10840 ] TID: 1556, 7536761 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A0FAD0 ] TID: 1560
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889ACCB0 ] TID: 1564
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88EA7598 ] TID: 1572
0x80562520 Faked ServiceTable-->jusched.exe [ ETHREAD 0x89E028D8 ] TID: 1580, 10 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88CB9598 ] TID: 1592, 64 bytes
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88DB3598 ] TID: 1596, 70 bytes
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x889D3570 ] TID: 1608
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88F02598 ] TID: 1612, 16386 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A1DDA8 ] TID: 1616
0x80562520 Faked ServiceTable-->MMDiag.exe [ ETHREAD 0x89DDFA08 ] TID: 1632, 4915316 bytes
0x80562520 Faked ServiceTable-->ComcastAntiSpy.exe [ ETHREAD 0x89DBA508 ] TID: 1636
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x889CC938 ] TID: 1640
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x889EFDA8 ] TID: 1648
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x88A10CB0 ] TID: 1652, 45 bytes
0x80562520 Faked ServiceTable-->DevDtct2.exe [ ETHREAD 0x89D92B80 ] TID: 1672, 458784 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88D6F598 ] TID: 1676
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88E60598 ] TID: 1692, 7733313 bytes
0x80562520 Faked ServiceTable-->RIMAutoUpdate.exe [ ETHREAD 0x89F5E998 ] TID: 1716
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88F59598 ] TID: 1720
0x80562520 Faked ServiceTable-->sched.exe [ ETHREAD 0x88DF6598 ] TID: 1724
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88996558 ] TID: 1736
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x89BCF9A0 ] TID: 1744
0x80562520 Faked ServiceTable-->sched.exe [ ETHREAD 0x88E66598 ] TID: 1748
0x80562520 Faked ServiceTable-->sched.exe [ ETHREAD 0x88CF7598 ] TID: 1752
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88BA4DA8 ] TID: 1804
0x80562520 Faked ServiceTable-->reader_sl.exe [ ETHREAD 0x89E42678 ] TID: 1824
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88DDF9A0 ] TID: 1828
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x89E21590 ] TID: 1832
0x80562520 Faked ServiceTable-->RIMAutoUpdate.exe [ ETHREAD 0x89E57020 ] TID: 1836
0x80562520 Faked ServiceTable-->realplay.exe [ ETHREAD 0x889F0BC8 ] TID: 1844
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x88A4A808 ] TID: 1856, 489760 bytes
0x80562520 Faked ServiceTable-->QTTask.exe [ ETHREAD 0x89F2E6E8 ] TID: 1868
0x80562520 Faked ServiceTable-->avgnt.exe [ ETHREAD 0x889B2978 ] TID: 1876, 41118080 bytes
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x89BBCDA8 ] TID: 1880
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x89F1A778 ] TID: 1884, 41265408 bytes
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89DF12F0 ] TID: 1896
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89DE2BD0 ] TID: 1900, 716608 bytes
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8A189DA8 ] TID: 1928
0x80562520 Faked ServiceTable-->QTTask.exe [ ETHREAD 0x88A829E8 ] TID: 1932
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x89D9B730 ] TID: 1936
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x8A15FB30 ] TID: 1940
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88CD6598 ] TID: 1948
0x80562520 Faked ServiceTable-->Directcd.exe [ ETHREAD 0x89F9C808 ] TID: 1952
0x80562520 Faked ServiceTable-->Directcd.exe [ ETHREAD 0x89DBA780 ] TID: 1956
0x80562520 Faked ServiceTable-->Directcd.exe [ ETHREAD 0x89DBA9F8 ] TID: 1960
0x80562520 Faked ServiceTable-->ComcastAntiSpy.exe [ ETHREAD 0x889AC618 ] TID: 1964
0x80562520 Faked ServiceTable-->ComcastAntiSpyService.exe [ ETHREAD 0x8A17B590 ] TID: 1980, 931808 bytes
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x889D4BC8 ] TID: 1992
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88C84598 ] TID: 2020, 44742752 bytes
0x80562520 Faked ServiceTable-->csrss.exe [ ETHREAD 0x88A0A7E8 ] TID: 2028
0x80562520 Faked ServiceTable-->mm_server.exe [ ETHREAD 0x89E405E0 ] TID: 2032
0x80562520 Faked ServiceTable-->sprtcmd.exe [ ETHREAD 0x89E59BC8 ] TID: 2036
0x80562520 Faked ServiceTable-->mDNSResponder.exe [ ETHREAD 0x88A74DA8 ] TID: 2052
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x89E18DA8 ] TID: 2056
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x88A9BDA8 ] TID: 2072, 44770048 bytes
0x80562520 Faked ServiceTable-->CTsvcCDA.EXE [ ETHREAD 0x89E74D48 ] TID: 2080
0x80562520 Faked ServiceTable-->CTsvcCDA.EXE [ ETHREAD 0x889D5728 ] TID: 2084, 7602254 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89DF8B30 ] TID: 2092
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89F0C9D8 ] TID: 2100
0x80562520 Faked ServiceTable-->mDNSResponder.exe [ ETHREAD 0x8899ADA8 ] TID: 2128
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88684628 ] TID: 2148
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88B39950 ] TID: 2172
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x88A9B5A0 ] TID: 2180, 3801155 bytes
0x80562520 Faked ServiceTable-->bsa.exe [ ETHREAD 0x88A3E778 ] TID: 2224
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AA3DA8 ] TID: 2248
0x80562520 Faked ServiceTable-->bsa.exe [ ETHREAD 0x88AA33B0 ] TID: 2252
0x80562520 Faked ServiceTable-->bsa.exe [ ETHREAD 0x88682020 ] TID: 2256
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88B426D8 ] TID: 2264
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889C7020 ] TID: 2268
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8899BC70 ] TID: 2272
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A3CB38 ] TID: 2288
0x80562520 Faked ServiceTable-->bsa.exe [ ETHREAD 0x88AA3020 ] TID: 2296
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A226B8 ] TID: 2308
0x80562520 Faked ServiceTable-->EM_EXEC.EXE [ ETHREAD 0x8A16ACA8 ] TID: 2312
0x80562520 Faked ServiceTable-->IIDS.exe [ ETHREAD 0x88A007C0 ] TID: 2324
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88684020 ] TID: 2328
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A759F0 ] TID: 2344
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x88995DA8 ] TID: 2356
0x80562520 Faked ServiceTable-->IIDS.exe [ ETHREAD 0x88A26960 ] TID: 2360
0x80562520 Faked ServiceTable-->IIDS.exe [ ETHREAD 0x88A00DA8 ] TID: 2368
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88684DA8 ] TID: 2392
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AD5628 ] TID: 2408
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x88AE6020 ] TID: 2412
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x889958E0 ] TID: 2428
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x889B88A0 ] TID: 2432
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A60020 ] TID: 2452
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A9C7C0 ] TID: 2456
0x80562520 Faked ServiceTable-->IIDS.exe [ ETHREAD 0x88A5DDA8 ] TID: 2472
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x88A595E0 ] TID: 2476
0x80562520 Faked ServiceTable-->IIDS.exe [ ETHREAD 0x88A1F400 ] TID: 2480
0x80562520 Faked ServiceTable-->EM_EXEC.EXE [ ETHREAD 0x88AA2BC8 ] TID: 2484
0x80562520 Faked ServiceTable-->bsa.exe [ ETHREAD 0x89EF7640 ] TID: 2488
0x80562520 Faked ServiceTable-->sprtsvc.exe [ ETHREAD 0x89F09BC8 ] TID: 2524
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AD5DA8 ] TID: 2536
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x88A54020 ] TID: 2556
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x88A21598 ] TID: 2564
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x89E1C828 ] TID: 2572
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889FD808 ] TID: 2608
0x80562520 Faked ServiceTable-->nvsvc32.exe [ ETHREAD 0x88AA4650 ] TID: 2612
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A6A480 ] TID: 2616, 886680 bytes
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88A33830 ] TID: 2624, 548952 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A0B458 ] TID: 2628
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x889C6668 ] TID: 2640
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x88A3C020 ] TID: 2644
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A0DFDA8 ] TID: 2648
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E6A9F8 ] TID: 2652
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88ADBDA8 ] TID: 2664
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AE1DA8 ] TID: 2680
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A19A9F0 ] TID: 2684
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x886808D8 ] TID: 2688
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8A0EC3B0 ] TID: 2696
0x80562520 Faked ServiceTable-->services.exe [ ETHREAD 0x8A13F7B8 ] TID: 2700
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x889B7020 ] TID: 2704
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x889B7B30 ] TID: 2708
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x889B78B8 ] TID: 2712
0x80562520 Faked ServiceTable-->PRISMXL.SYS [ ETHREAD 0x8898FDA8 ] TID: 2724
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x886673B0 ] TID: 2748
0x80562520 Faked ServiceTable-->iTunesHelper.exe [ ETHREAD 0x889C7C10 ] TID: 2752
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x889909E8 ] TID: 2756
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88A34BC8 ] TID: 2760
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88A34770 ] TID: 2764
0x80562520 Faked ServiceTable-->PRISMXL.SYS [ ETHREAD 0x88A5DB30 ] TID: 2776
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88666BC8 ] TID: 2780
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x8867CB30 ] TID: 2796
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8867C8B8 ] TID: 2848
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8867E7D8 ] TID: 2864
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x889A3980 ] TID: 2868
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x889FDDA8 ] TID: 2884
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8898E6D0 ] TID: 2888
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x88ADDDA8 ] TID: 2896
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88A02BD8 ] TID: 2920
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x8868BB38 ] TID: 2936
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x88A60DA8 ] TID: 2948
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AD9BC8 ] TID: 2952
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x8A0EC9E8 ] TID: 2956
0x80562520 Faked ServiceTable-->wuauclt.exe [ ETHREAD 0x88A5FDA8 ] TID: 2960
0x80562520 Faked ServiceTable-->sprtsvc.exe [ ETHREAD 0x88AA1B80 ] TID: 2976
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8899D020 ] TID: 2996
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A9EB38 ] TID: 3048
0x80562520 Faked ServiceTable-->sprtcmd.exe [ ETHREAD 0x88AFBDA8 ] TID: 3092
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E117B0 ] TID: 3096
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E00B30 ] TID: 3168
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88AD9728 ] TID: 3184
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88B8C020 ] TID: 3200
0x80562520 Faked ServiceTable-->ComcastAntiSpyService.exe [ ETHREAD 0x88A78020 ] TID: 3208
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x88A38950 ] TID: 3220
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89072BC8 ] TID: 3224
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889BD640 ] TID: 3252
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x886667A0 ] TID: 3296
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88666528 ] TID: 3300
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x88A29DA8 ] TID: 3304
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8898D8C0 ] TID: 3308
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88A3D528 ] TID: 3332
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x8A0EDB98 ] TID: 3360
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x88A6FBC8 ] TID: 3384, 7864368 bytes
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x88A6F3B0 ] TID: 3388
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x88A6F770 ] TID: 3412
0x80562520 Faked ServiceTable-->wdfmgr.exe [ ETHREAD 0x889F67C8 ] TID: 3416
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x88A9B958 ] TID: 3440
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889CABC8 ] TID: 3456
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x889DA5E0 ] TID: 3460
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x889DA368 ] TID: 3464
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x88A698B8 ] TID: 3468
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x88665AA8 ] TID: 3472
0x80562520 Faked ServiceTable-->alg.exe [ ETHREAD 0x88A4B788 ] TID: 3476
0x80562520 Faked ServiceTable-->spoolsv.exe [ ETHREAD 0x88B0D808 ] TID: 3488
0x80562520 Faked ServiceTable-->wdfmgr.exe [ ETHREAD 0x8A0E2DA8 ] TID: 3492
0x80562520 Faked ServiceTable-->jqs.exe [ ETHREAD 0x88B0D368 ] TID: 3504
0x80562520 Faked ServiceTable-->MotiveSB.exe [ ETHREAD 0x88A9A020 ] TID: 3560
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x8898D648 ] TID: 3576
0x80562520 Faked ServiceTable-->AdobeARM.exe [ ETHREAD 0x889B59E8 ] TID: 3580
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A9AA88 ] TID: 3588
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A6AAA0 ] TID: 3592
0x80562520 Faked ServiceTable-->lsass.exe [ ETHREAD 0x88A56638 ] TID: 3604
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889BE8B8 ] TID: 3624
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8865A338 ] TID: 3628
0x80562520 Faked ServiceTable-->winlogon.exe [ ETHREAD 0x88A0A428 ] TID: 3668, 7602254 bytes
0x80562520 Faked ServiceTable-->wdfmgr.exe [ ETHREAD 0x8A18A4E0 ] TID: 3684
0x80562520 Faked ServiceTable-->wdfmgr.exe [ ETHREAD 0x889EC020 ] TID: 3692
0x80562520 Faked ServiceTable-->wdfmgr.exe [ ETHREAD 0x8A18A908 ] TID: 3696
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88994638 ] TID: 3712
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8899D9E8 ] TID: 3716
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8899D770 ] TID: 3720
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8A14A310 ] TID: 3752
0x80562520 Faked ServiceTable-->iPodService.exe [ ETHREAD 0x889B7DA8 ] TID: 3796, 589827 bytes
0x80562520 Faked ServiceTable-->IPClient.exe [ ETHREAD 0x8A0ECDA8 ] TID: 3800
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x8898BB30 ] TID: 3840
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A06BE8 ] TID: 3860
0x80562520 Faked ServiceTable-->sprtsvc.exe [ ETHREAD 0x88B3C8A8 ] TID: 3864
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88686B00 ] TID: 3872
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x889ED9E8 ] TID: 3884
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88B8B630 ] TID: 3928, 41465288 bytes
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88A42B40 ] TID: 3932, 5439575 bytes
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88A0B020 ] TID: 3944
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x886657B0 ] TID: 3960
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x88B69818 ] TID: 3964
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x886857E8 ] TID: 3968
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88685570 ] TID: 3972
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89F8D9E8 ] TID: 3976
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x889BC670 ] TID: 3980
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x8A1497C0 ] TID: 3984
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89F8D020 ] TID: 3996
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89E7D680 ] TID: 4004
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E6A3C8 ] TID: 4008
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E1ADA8 ] TID: 4012
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x8A14B310 ] TID: 4016
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x886864C8 ] TID: 4024
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88B42BC8 ] TID: 4036
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88B8BBE0 ] TID: 4044
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89F08B30 ] TID: 4048
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89DC6450 ] TID: 4052
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x8A14A590 ] TID: 4056
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x8867BBC8 ] TID: 4060
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89F08318 ] TID: 4064
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E61020 ] TID: 4072
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x88ADABC8 ] TID: 4076
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x89DCBDA8 ] TID: 4080
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89F05640 ] TID: 4084
0x80562520 Faked ServiceTable-->svchost.exe [ ETHREAD 0x89E5FB38 ] TID: 4088, 223 bytes
0x80562520 Faked ServiceTable-->avguard.exe [ ETHREAD 0x889C3DA8 ] TID: 4092
0xF74C0000 WARNING: suspicious driver modification [atapi.sys::0x8A26139B]
==============================================
>Files
==============================================
!-->[Hidden] C:\CABS\9522927\APPS
!-->[Hidden] C:\CABS\9522927\PRO100
!-->[Hidden] C:\CABS\9522927\PRO1000
!-->[Hidden] C:\Config.Msi
!-->[Hidden] C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch
!-->[Hidden] C:\Documents and Settings\All Users\.cookn
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Adobe\Acrobat
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Adobe\Reader
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Adobe\Updater6
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Apple
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Apple Computer
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\TEMP\AVGUARD_4d091ce1
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\UPDATE\AVUPDATE_4b3a691f
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\AVS4YOU
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Cook'n
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Resources
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Malwarebytes
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\Internet Explorer
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\MSDAIPP
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Cm
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\Office
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\PlayReady
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Microsoft\WLSetup
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\pdf995
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Research In Motion
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Sun
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\SupportSoft
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Viewpoint
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}\x86
!-->[Hidden] C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}\x86
!-->[Hidden] C:\Documents and Settings\All Users\Documents\microsoft
!-->[Hidden] C:\Documents and Settings\All Users\Documents\My Music
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\7-Zip
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Audio Related Programs
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Autodesk
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\BlackBerry
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Canon PhotoRecord
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Canon Utilities
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Comcast
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Golden Records Vinyl to CD Converter
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Google Earth
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\HP
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Intel Network Adapters
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office Tools
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Silverlight
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Musicmatch
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\MySpace
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\NCH Software Suite
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\NCH Toolbox
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Olympus DSS Player 2002
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Rootkit Unhooker LE
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Software995
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Sony Digital Voice Editor
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Sony Player Plug-in for WMP
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Utilities
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\WavePad
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\Windows Live
!-->[Hidden] C:\Documents and Settings\All Users\Start Menu\Programs\WordPerfect Office 2000
!-->[Hidden] C:\Documents and Settings\Default User\Application Data\Macromedia
!-->[Hidden] C:\Documents and Settings\Default User\Application Data\Macromedia
!-->[Hidden] C:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\Quick Launch
!-->[Hidden] C:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\Quick Launch
!-->[Hidden] C:\Documents and Settings\Default User\Local Settings\Application Data\Adobe
!-->[Hidden] C:\Documents and Settings\Default User\Local Settings\Application Data\Adobe
!-->[Hidden] C:\Documents and Settings\Guest
!-->[Hidden] C:\Documents and Settings\LocalService\Application Data\Adobe
!-->[Hidden] C:\Documents and Settings\LocalService\Application Data\Identities
!-->[Hidden] C:\Documents and Settings\LocalService\Application Data\Macromedia
!-->[Hidden] C:\Documents and Settings\LocalService\Application Data\Microsoft\Internet Explorer\Quick Launch
!-->[Hidden] C:\Documents and Settings\LocalService\Application Data\Microsoft\Internet Explorer\UserData
!-->[Hidden] C:\Documents and Settings\LocalService\Desktop
!-->[Hidden] C:\Documents and Settings\LocalService\Favorites
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Feeds
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Internet Explorer
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows Live Contacts
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows Live Mail
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows Media
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\MSHist012008032620080327
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\MSHist012010120620101207
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\MSHist012010120720101208
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\8HQGIPP7
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\9WXJJPU0
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\OVMES9LC
!-->[Hidden] C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\TYOVEJ4H
!-->[Hidden] C:\Documents and Settings\LocalService\Start Menu
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Apple Computer
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\67.15.218.106\syndicate\bighealthtree
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\admin.brightcove.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\ak.c.ooyala.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\cdn.gigya.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\cdn.visiblemeasures.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\cdn2.telemetryverification.net
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\convoad.technoratimedia.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\convoad.technoratimedia.net
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\core.videoegg.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\flash.quantserve.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\games-fe14.gamesville.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\i2.current.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\is1.j.tv2n.net
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\media.scanscout.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\media1.break.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\player.onescreen.net\1.6
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\player.videopublishing.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\s.ytimg.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\secure-us.imrworldwide.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\static.scanscout.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\static2.filmannex.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\ui.mevio.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\vdassets.bitgravity.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\vizu.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\vox-static.liverail.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\
www.babelgum.com\player!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\
www.mevio.com!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\
www.ooyala.com!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\WWXNXMSA\
www.womenshealthbase.com!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#admin.brightcove.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ak.c.ooyala.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn.gigya.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn.visiblemeasures.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn1.telemetryverification.net
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn2.telemetryverification.net
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#convoad.technoratimedia.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#core.videoegg.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#flash.quantserve.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#i2.current.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#is1.j.tv2n.net
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media.scanscout.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#media1.break.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#player.videopublishing.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s.ytimg.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#secure-us.imrworldwide.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.scanscout.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static2.filmannex.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ui.mevio.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vdassets.bitgravity.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vizu.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vox-static.liverail.com
!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#
www.babelgum.com!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#
www.mevio.com!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#
www.ooyala.com!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#
www.womenshealthbase.com!-->[Hidden] C:\Documents and Settings\NetworkService\Application Data\Microsoft\Internet Explorer\Quick Launch
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@3199033383.pub.ezanga[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@77.79.13[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@abmr[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@ad.yieldmanager[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@admonkey.dapper[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@adnxs[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@amgdgt[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@b3.mookie1[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@bestofyoutube.mevio[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@bighealthtree[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@bluekai[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@content.yieldmanager[3].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@crux.mevio[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@demr.opt.fimserve[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@displaymarketplace[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@exelator[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@fimserve[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@kontera[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@mathtag[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@mevio[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@mmismm[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@mybloglog[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@opt.fimserve[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@p-td[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@questionmarket[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@qydjuk[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@sharethis[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@shefinds[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@technoratimedia[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@tribalfusion[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@turn[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@vindicosuite[2].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@voicefive[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@
www.shefinds[1].txt!-->[Hidden] C:\Documents and Settings\NetworkService\Cookies\system@yahoo[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple Computer
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Silverlight
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\63WLBL3K\avatar[1].png
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\63WLBL3K\basandroid-us-e[1].png
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\63WLBL3K\beacon[4].js
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\63WLBL3K\Green_Tea_Breast_Cancer__30sec__787[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\63WLBL3K\health[1].xml
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\63WLBL3K\meviounderground-us-e[1].png
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\0840a10f83d9aeb30792b3315acc5fd6a31b6b67[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\1103[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\1472e5c6d464938d113b1a1f7ae5cbfb1de0f6ba[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\167600[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\278ce2b539717632359538c00a911f15ba51d0af[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\72ae762005a228beaa4cb42f1feddd88bcd1df38[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\81ffed493b5cf37b6e942659a2a17e5962691f37[1].jpg
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\avatar[1].png
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\checkBrowser[2].htm
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\70K5GHS6\ht_landing[1].txt
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\9I63Y800
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\DUY5OV07\kvvchoiceselect%3Dtrue%3B%3B%3Bkvtakeover%3Dtrue;loc=100;noperf=1;target=_blank;cc=2;sub1=1784397;sub2=1784399;sub3=1784401;sub4=1784398;misc=368367014[1]]
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\GK8VSLM7\10%2F12%2F08%2Fcharlize-theron-lists%3Bkvmn%3D93305284%3Bkvtid%3D16g0muh1efmphu%3Bkvseg%3D99999%3A50212%3A50224%3Bnodecode%3Dyes%3Blink%3D;ord=905585851[1]5
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\IME3XSMF
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\JOTZ6SHY
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\LYNSQMW4
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UICZL9JY\kvvchoiceselect%3Dtrue%3B%3B%3Bkvtakeover%3Dtrue;loc=100;noperf=1;target=_blank;cc=2;sub1=1784397;sub2=1784399;sub3=1784401;sub4=1784398;misc=194263596[1]50
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UICZL9JY\TtwtCKIFFhqFlVuBq930w7n8TUTJu43g_JeS27vXNV3LoQ4BMCf_6lYvtF8XkUcTFY7nAvxa8AYJODSe2EIt8FgiKOaJkhW-V4Lgu-qX2T4yF-s39qPib4n7RiOP0hLjkWh1ZtbJJOvl3DE5_xpJ[1].htm8
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\ZF66FNN8\npl=y;kvcmsid%3D19751868%3Bkvpg=housingwatch%2F2010%2F12%2F08%2Fcharlize-theron-lists;kvmn=93305285;target=_blank;aduho=480;grp=905598734;misc=905598734[1]4
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\ZF66FNN8\npl=y;kvcmsid%3D19751868%3Bkvpg=housingwatch%2F2010%2F12%2F08%2Fcharlize-theron-lists;kvmn=93306712;target=_blank;aduho=480;grp=905598734;misc=905598734[1]4
!-->[Hidden] C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\ZF66FNN8\ue%3Bkvvchoiceselect%3Dtrue%3B%3B%3Bkvtakeover%3Dtrue;loc=100;noperf=1;target=_blank;cc=2;sub1=394427;sub2=394426;sub3=394424;sub4=394425;misc=766984872[1]4
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\Acrobat\6.0\Messages
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\Acrobat\7.0
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\Acrobat\9.0\Forms
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\Acrobat\9.0\Security
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\Acrobat\9.0\Synchronizer
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\AIR\Updater
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\ESD
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\Flash Player
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\Linguistics
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Adobe\LogTransport2
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Apple Computer\Logs
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Apple Computer\MobileSync
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Apple Computer\Preferences
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Apple Computer\SyncServices
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Autodesk
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\AVS4YOU
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\CallingID
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\comcasttb
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Google
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Help
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\HpUpdate
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Macromedia
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Malwarebytes
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Microsoft\AddIns
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Microsoft\Clip Organizer
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Microsoft\CLR Security Config
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Microsoft\CryptnetUrlCache
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Microsoft\Excel
!-->[Hidden] C:\Documents and Settings\Owner\Application Data\Microsoft\Forms