Hardware ------------------------------------------------------------------------
Machine name
BIOS
System info: Windows version, memory, disk drives, environment
CPU information
CPU info per processor
Computername and domain
Printers

Network -------------------------------------------------------------------------
Network interfaces
Listening ports
Network routes
Hosts file
Open shares
Local user accounts
Nameserver
NetBIOS Connections
NetBIOS Names Registration
NetBIOS Cache Name Table

Software ------------------------------------------------------------------------
DLLs
File association
Win.ini
Installed programs
Installed services



---------------------------------------------------------------------------------
Back to top

Machine name

host1

Back to top

BIOS

BIOS version:  VIA694 - 42302e31 Award Medallion BIOS v6.00PG
BIOS date: 02/08/02

Back to top

System info: Windows version, memory, disk drives, environment

Win/DOS32 System-Info - Version 1.06 - (c) by ROSE SWE, Ralph Roth



----=[ System ]=--------------------------------------------------------------

  OS Version        : 5.1  (WinNT),  Platform ID: 2

  Process ID        : $0240

  ANSI loaded       : FALSE

  Console window is : 1912 x 0,  16 colours

  Paste to Clipboard: TRUE

  Comspec           : C:\WINDOWS\system32\command.com

  StdIn redirected  : TRUE

  StdOut redirected : TRUE

  StdErr redirected : FALSE

  INSert State      : FALSE

  CAPS Lock State   : FALSE

  Enhanced Keyboard : TRUE

  Current Codepage  : 850

  Free Avail Memory : 460.519.352

  Used Memory       : 1.900 (System: 2.096)

  Free for Program  : 460.505.088

  Memory commited   : 16.384

  Time in mSec      : 77.180.281

  Current Date      : 06.02.2003



----=[ Disk Drives ]=---------------------------------------------------------

  C: volume label  HP_PAVILION

  Boot Drive Is    C:   (HP_PAVILION)

  Drive (C)       NTFS - Size  55.966.676 - Free  46.139.184 - HP_PAVILION

  Drive (D)     CD-ROM - Size     388.616 - Free           0 - NEW

  Drive (E)     CD-ROM - Size      38.380 - Free           0 - NEW



----=[ System Settings ]=-----------------------------------------------------

  CurrencyString     €

  CurrencyFormat     2

  NegCurrFormat      11

  ThousandSeparator  .

  DecimalSeparator   ,

  CurrencyDecimals   2

  DateSeparator      -

  ShortDateFormat    d-M-yyyy

  LongDateFormat     dddd d MMMM yyyy

  TimeSeparator      :

  TimeAMString       

  TimePMString       

  ShortTimeFormat    h:mm

  LongTimeFormat     h:mm:ss

  ShortMonthNames  Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec 

  LongMonthNames   January February March April May June July August September October November December 

  ShortDayNames    Sun Mon Tue Wed Thu Fri Sat 

  LongDayNames     Sunday Monday Tuesday Wednesday Thursday Friday Saturday 



----=[ List of all environment variables ]=-----------------------------------

  1: =C:=C:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter

  2: ALLUSERSPROFILE=C:\Documents and Settings\All Users

  3: APPDATA=C:\Documents and Settings\Eigenaar\Application Data

  4: CLIENTNAME=Console

  5: COMMONPROGRAMFILES=C:\Program Files\Common Files

  6: COMPUTERNAME=HOST1

  7: COMSPEC=C:\WINDOWS\system32\cmd.exe

  8: HOMEDRIVE=C:

  9: HOMEPATH=\Documents and Settings\Eigenaar

 10: HOSTNAME=HOST1

 11: HOSTTYPE=i686

 12: LOGONSERVER=\\HOST1

 13: MACHTYPE=i686-pc-cygwin

 14: NUMBER_OF_PROCESSORS=1

 15: OS=Windows_NT

 16: OSTYPE=cygwin

 17: PATH=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\PROGRA~1\Borland\Delphi6\Bin;C:\PROGRA~1\Borland\Delphi6\Projects\Bpl;C:\PROGRA~1\ULTRAE~1

 18: PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH

 19: PROCESSOR_ARCHITECTURE=x86

 20: PROCESSOR_IDENTIFIER=x86 Family 6 Model 6 Stepping 2, AuthenticAMD

 21: PROCESSOR_LEVEL=6

 22: PROCESSOR_REVISION=0602

 23: PROGRAMFILES=C:\Program Files

 24: PROMPT=$P$G

 25: PWD=/cygdrive/c/Documents and Settings/Eigenaar/Bureaublad/Murdoc development/Versie 0.3/Windows documenter

 26: SESSIONNAME=Console

 27: SHELL=/bin/bash

 28: SHLVL=1

 29: SYSTEMDRIVE=C:

 30: SYSTEMROOT=C:\WINDOWS

 31: TEMP=C:\DOCUME~1\Eigenaar\LOCALS~1\Temp

 32: TERM=cygwin

 33: TMP=C:\DOCUME~1\Eigenaar\LOCALS~1\Temp

 34: USERDOMAIN=HOST1

 35: USERNAME=Eigenaar

 36: USERPROFILE=C:\Documents and Settings\Eigenaar

 37: WINDIR=C:\WINDOWS

 38: _=./sysinfo




Back to top

CPU information

CPU info for AMD unknown processor

Vendor    : AMD

Vendor Id : AuthenticAMD

Type      : Primary processor

Family    : 7

Model     : 6

Stepping  : 2

Number    : 0000-0000-0000-0000-0000-0000

Clock     : 1596.17 Mhz

Rating    : 1600 Mhz



- Floating point unit

- Virtual mode extensions

- Debugging extensions

- Page size extension

- Time Stamp Counter

- Model specific registers

- Physical Address Extensions

- Machine Check Exception

- CMPXCHG8B Instruction supported

- On-chip APIC hardware supported

- Fast System Call

- Memory Type Range Registers

- Page Global Enable

- Machine Check Architecture

- Conditional Move instruction supported

- Page Attribute Table

- 36-bit Page size extension

- MMX(tm) Architecture supported

- Fast Floating point save and restore

- MMX+ Architecture supported

- Extended 3dNow! Architecture supported

- 3dNow! Architecture supported

- CPUid instruction supported


Back to top

CPU info per processor

Processor number 0
Type: x86 Family 6 Model 6 Stepping 2
Vendor: AuthenticAMD



Back to top

DLLs



ListDLLs V2.23 - DLL lister for Win9x/NT

Copyright (C) 1997-2000 Mark Russinovich

http://www.sysinternals.com



------------------------------------------------------------------------------

System pid: 4

Command line: 

------------------------------------------------------------------------------

smss.exe pid: 404

Command line: \SystemRoot\System32\smss.exe



  Base        Size      Version	        Path

  0x48580000  0xe000                    \SystemRoot\System32\smss.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

------------------------------------------------------------------------------

csrss.exe pid: 460

Command line: C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16



  Base        Size      Version	        Path

  0x4a680000  0x4000                    \??\C:\WINDOWS\system32\csrss.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x75ae0000  0xa000    5.01.2600.1106  C:\WINDOWS\system32\CSRSRV.dll

  0x75af0000  0xe000    5.01.2600.1106  C:\WINDOWS\system32\basesrv.dll

  0x75b00000  0x46000   5.01.2600.1106  C:\WINDOWS\system32\winsrv.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\KERNEL32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x75e30000  0xa7000   5.01.2600.1106  C:\WINDOWS\System32\sxs.dll

------------------------------------------------------------------------------

winlogon.exe pid: 484

Command line: winlogon.exe



  Base        Size      Version	        Path

  0x01000000  0x83000                   \??\C:\WINDOWS\system32\winlogon.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x758e0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\NDdeApi.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\system32\Secur32.dll

  0x76300000  0xf000    5.01.2600.1106  C:\WINDOWS\system32\WINSTA.dll

  0x758d0000  0xa000    5.01.2600.0000  C:\WINDOWS\system32\PROFMAP.dll

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\system32\NETAPI32.dll

  0x76b70000  0xe000    5.01.2600.1106  C:\WINDOWS\system32\REGAPI.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\system32\WS2HELP.dll

  0x76c80000  0x10000   5.01.2600.0000  C:\WINDOWS\system32\AUTHZ.dll

  0x76bb0000  0xb000    5.01.2600.1106  C:\WINDOWS\system32\PSAPI.DLL

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\system32\SETUPAPI.dll

  0x75910000  0xf2000   5.01.2600.1106  C:\WINDOWS\System32\MSGINA.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\COMCTL32.dll

  0x1f7b0000  0x31000   3.520.9030.0000  C:\WINDOWS\System32\ODBC32.dll

  0x76350000  0x46000   6.00.2800.1106  C:\WINDOWS\system32\comdlg32.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x1f850000  0x18000   3.520.7713.0000  C:\WINDOWS\System32\odbcint.dll

  0x76b80000  0x20000   6.00.2800.1106  C:\WINDOWS\System32\SHSVCS.dll

  0x76b60000  0x4000    5.01.2600.0000  C:\WINDOWS\system32\sfc.dll

  0x76c20000  0x29000   5.01.2600.1106  C:\WINDOWS\System32\sfc_os.dll

  0x76bf0000  0x2b000   5.131.2600.0000  C:\WINDOWS\System32\WINTRUST.dll

  0x008c0000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x76c50000  0x22000   5.01.2600.1106  C:\WINDOWS\system32\IMAGEHLP.dll

  0x72360000  0x1a000   5.01.2600.0000  C:\WINDOWS\System32\WINSCARD.DLL

  0x76f10000  0x8000    5.01.2600.1106  C:\WINDOWS\System32\WTSAPI32.dll

  0x75e30000  0xa7000   5.01.2600.1106  C:\WINDOWS\System32\sxs.dll

  0x5b190000  0x34000   6.00.2800.1106  C:\WINDOWS\System32\uxtheme.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x765a0000  0x1b000   5.01.2600.0000  C:\WINDOWS\system32\cscdll.dll

  0x758f0000  0x1a000   5.01.2600.1106  C:\WINDOWS\system32\WlNotify.dll

  0x72f70000  0x23000   5.01.2600.1106  C:\WINDOWS\System32\WINSPOOL.DRV

  0x71aa0000  0x11000   5.01.2600.0000  C:\WINDOWS\system32\MPR.dll

  0x0ffd0000  0x23000   5.01.2600.1029  C:\WINDOWS\System32\rsaenh.dll

  0x71b80000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\SAMLIB.dll

  0x765c0000  0x50000   5.01.2600.1106  C:\WINDOWS\System32\cscui.dll

  0x76ca0000  0x1f000   5.01.2600.1106  C:\WINDOWS\System32\NTMARTA.DLL

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x76cd0000  0x1d000   5.01.2600.1106  C:\WINDOWS\system32\msv1_0.dll

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\System32\COMRes.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\System32\CLBCATQ.DLL

  0x72c90000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\wdmaud.drv

  0x72c80000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\msacm32.drv

  0x77bb0000  0x14000   5.01.2600.0000  C:\WINDOWS\System32\MSACM32.dll

  0x77ba0000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\midimap.dll

  0x75ee0000  0x1e000   5.01.2600.1106  C:\WINDOWS\system32\Apphelp.dll

------------------------------------------------------------------------------

services.exe pid: 528

Command line: C:\WINDOWS\system32\services.exe



  Base        Size      Version	        Path

  0x01000000  0x1b000   5.01.2600.0000  C:\WINDOWS\system32\services.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x75870000  0x4f000   5.01.2600.1106  C:\WINDOWS\system32\SCESRV.dll

  0x76c80000  0x10000   5.01.2600.0000  C:\WINDOWS\system32\AUTHZ.dll

  0x75850000  0x1d000   5.01.2600.1106  C:\WINDOWS\system32\umpnpmgr.dll

  0x76300000  0xf000    5.01.2600.1106  C:\WINDOWS\system32\WINSTA.dll

  0x5fbd0000  0xe000    5.01.2600.1106  C:\WINDOWS\system32\NCObjAPI.DLL

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\system32\secur32.dll

  0x75830000  0xf000    5.01.2600.1106  C:\WINDOWS\system32\eventlog.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\system32\WS2HELP.dll

  0x76bb0000  0xb000    5.01.2600.1106  C:\WINDOWS\system32\PSAPI.DLL

  0x76f10000  0x8000    5.01.2600.1106  C:\WINDOWS\system32\wtsapi32.dll

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\system32\netapi32.dll

------------------------------------------------------------------------------

lsass.exe pid: 540

Command line: C:\WINDOWS\system32\lsass.exe



  Base        Size      Version	        Path

  0x01000000  0x5000    5.01.2600.1106  C:\WINDOWS\system32\lsass.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x744a0000  0xa9000   5.01.2600.1106  C:\WINDOWS\system32\LSASRV.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\system32\Secur32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x743c0000  0x6d000   5.01.2600.0000  C:\WINDOWS\system32\SAMSRV.dll

  0x76740000  0xb000    5.01.2600.0000  C:\WINDOWS\system32\cryptdll.dll

  0x76ee0000  0x25000   5.01.2600.1106  C:\WINDOWS\system32\DNSAPI.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\system32\WS2HELP.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\system32\NETAPI32.dll

  0x71b80000  0x11000   5.01.2600.1106  C:\WINDOWS\system32\SAMLIB.dll

  0x71aa0000  0x11000   5.01.2600.0000  C:\WINDOWS\system32\MPR.dll

  0x76750000  0x13000   5.01.2600.0000  C:\WINDOWS\system32\NTDSAPI.dll

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x74330000  0xd000    5.01.2600.0000  C:\WINDOWS\system32\msprivs.dll

  0x71c80000  0x45000   5.01.2600.1106  C:\WINDOWS\system32\kerberos.dll

  0x76cd0000  0x1d000   5.01.2600.1106  C:\WINDOWS\system32\msv1_0.dll

  0x74430000  0x64000   5.01.2600.1106  C:\WINDOWS\system32\netlogon.dll

  0x76770000  0x2b000   5.01.2600.1106  C:\WINDOWS\system32\w32time.dll

  0x76020000  0x61000   6.00.8972.0000  C:\WINDOWS\system32\MSVCP60.dll

  0x76d20000  0x17000   5.01.2600.0002  C:\WINDOWS\system32\iphlpapi.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x767a0000  0x24000   5.01.2600.0000  C:\WINDOWS\system32\schannel.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x74300000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\wdigest.dll

  0x0ffd0000  0x23000   5.01.2600.1029  C:\WINDOWS\System32\rsaenh.dll

  0x74390000  0x2e000   5.01.2600.1106  C:\WINDOWS\system32\scecli.dll

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\system32\SETUPAPI.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\OLE32.DLL

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\shell32.dll

  0x00a40000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

  0x74360000  0x29000   5.01.2600.1106  C:\WINDOWS\system32\ipsecsvc.dll

  0x74550000  0xb9000   5.01.2600.1106  C:\WINDOWS\system32\oakley.DLL

  0x742f0000  0xa000    5.01.2600.0000  C:\WINDOWS\system32\WINIPSEC.DLL

  0x74320000  0x9000    5.01.2600.0000  C:\WINDOWS\system32\pstorsvc.dll

  0x719d0000  0x3c000   5.01.2600.0000  C:\WINDOWS\system32\mswsock.dll

  0x71a10000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\wshtcpip.dll

  0x0ffa0000  0x21000   5.01.2600.1029  C:\WINDOWS\System32\dssenh.dll

  0x74340000  0x17000   5.01.2600.1106  C:\WINDOWS\system32\psbase.dll

------------------------------------------------------------------------------

svchost.exe pid: 704

Command line: C:\WINDOWS\system32\svchost -k rpcss



  Base        Size      Version	        Path

  0x01000000  0x6000    5.01.2600.0000  C:\WINDOWS\system32\svchost.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x757e0000  0x43000   5.01.2600.1106  c:\windows\system32\rpcss.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x71a30000  0x15000   5.01.2600.0000  c:\windows\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  c:\windows\system32\WS2HELP.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x76f50000  0x10000   5.01.2600.1106  c:\windows\system32\Secur32.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\userenv.dll

  0x719d0000  0x3c000   5.01.2600.0000  C:\WINDOWS\system32\mswsock.dll

  0x71a10000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\wshtcpip.dll

  0x76ee0000  0x25000   5.01.2600.1106  C:\WINDOWS\system32\DNSAPI.dll

  0x76d20000  0x17000   5.01.2600.0002  C:\WINDOWS\system32\iphlpapi.dll

  0x76f70000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\winrnr.dll

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x76f80000  0x5000    5.01.2600.0000  C:\WINDOWS\system32\rasadhlp.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\system32\CLBCATQ.DLL

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\system32\COMRes.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x763a0000  0x201000  2.00.2600.1106  C:\WINDOWS\system32\msi.dll

  0x75ee0000  0x1e000   5.01.2600.1106  C:\WINDOWS\system32\Apphelp.dll

------------------------------------------------------------------------------

svchost.exe pid: 728

Command line: C:\WINDOWS\System32\svchost.exe -k netsvcs



  Base        Size      Version	        Path

  0x01000000  0x6000    5.01.2600.0000  C:\WINDOWS\System32\svchost.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x76b80000  0x20000   6.00.2800.1106  c:\windows\system32\shsvcs.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x00520000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\shell32.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

  0x76300000  0xf000    5.01.2600.1106  C:\WINDOWS\System32\WINSTA.dll

  0x76d40000  0x1b000   5.01.2600.1106  c:\windows\system32\dhcpcsvc.dll

  0x76ee0000  0x25000   5.01.2600.1106  c:\windows\system32\DNSAPI.dll

  0x71a30000  0x15000   5.01.2600.0000  c:\windows\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  c:\windows\system32\WS2HELP.dll

  0x76d20000  0x17000   5.01.2600.0002  c:\windows\system32\iphlpapi.dll

  0x76f50000  0x10000   5.01.2600.1106  c:\windows\system32\Secur32.dll

  0x5b190000  0x34000   6.00.2800.1106  C:\WINDOWS\System32\UxTheme.dll

  0x0ffd0000  0x23000   5.01.2600.1029  C:\WINDOWS\System32\rsaenh.dll

  0x76ca0000  0x1f000   5.01.2600.1106  C:\WINDOWS\System32\NTMARTA.DLL

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x71b80000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\SAMLIB.dll

  0x77c80000  0x44000   5.01.2600.1106  c:\windows\system32\wzcsvc.dll

  0x76e40000  0xd000    5.01.2600.0000  c:\windows\system32\rtutils.dll

  0x76cf0000  0x4000    5.01.2600.0000  c:\windows\system32\WMI.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x76f10000  0x8000    5.01.2600.1106  c:\windows\system32\WTSAPI32.dll

  0x69bf0000  0xff000   5.01.2600.0000  c:\windows\system32\ESENT.dll

  0x71bb0000  0x4e000   5.01.2600.1106  c:\windows\system32\NETAPI32.dll

  0x74e90000  0x1a000   5.01.2600.1106  C:\WINDOWS\System32\rastls.dll

  0x76ad0000  0x15000   3.00.9435.0000  C:\WINDOWS\System32\ATL.DLL

  0x75450000  0x7a000   5.131.2600.1106  C:\WINDOWS\System32\CRYPTUI.dll

  0x76bf0000  0x2b000   5.131.2600.0000  C:\WINDOWS\System32\WINTRUST.dll

  0x76c50000  0x22000   5.01.2600.1106  C:\WINDOWS\system32\IMAGEHLP.dll

  0x761a0000  0x99000   6.00.2800.1106  C:\WINDOWS\system32\WININET.dll

  0x76d00000  0x16000   5.01.2600.0000  C:\WINDOWS\System32\MPRAPI.dll

  0x76e00000  0x2f000   5.01.2600.0000  C:\WINDOWS\System32\ACTIVEDS.dll

  0x76dd0000  0x25000   5.01.2600.1106  C:\WINDOWS\System32\adsldpc.dll

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\System32\SETUPAPI.dll

  0x76ea0000  0x37000   5.01.2600.1106  C:\WINDOWS\System32\RASAPI32.dll

  0x76e50000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\rasman.dll

  0x76e70000  0x2b000   5.01.2600.1106  C:\WINDOWS\System32\TAPI32.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x767a0000  0x24000   5.01.2600.0000  C:\WINDOWS\System32\SCHANNEL.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x72360000  0x1a000   5.01.2600.0000  C:\WINDOWS\System32\WinSCard.dll

  0x74f80000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\raschap.dll

  0x76cd0000  0x1d000   5.01.2600.1106  C:\WINDOWS\system32\msv1_0.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\System32\CLBCATQ.DLL

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\System32\COMRes.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x75150000  0x2b000   5.01.2600.1106  c:\windows\system32\schedsvc.dll

  0x76750000  0x13000   5.01.2600.0000  c:\windows\system32\NTDSAPI.dll

  0x719d0000  0x3c000   5.01.2600.0000  C:\WINDOWS\System32\mswsock.dll

  0x71a10000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\wshtcpip.dll

  0x74ed0000  0x5000    6.00.2600.0000  C:\WINDOWS\System32\MSIDLE.DLL

  0x70de0000  0xd000    5.01.2600.1106  c:\windows\system32\audiosrv.dll

  0x750f0000  0x20000   5.01.2600.0000  c:\windows\system32\wkssvc.dll

  0x74f20000  0x10000   5.01.2600.1106  c:\windows\system32\cryptsvc.dll

  0x752d0000  0x32000   5.01.2600.1106  c:\windows\system32\certcli.dll

  0x74f00000  0x8000    5.01.2600.1106  c:\windows\system32\ersvc.dll

  0x76b20000  0x3d000   2001.12.4414.0046  c:\windows\system32\es.dll

  0x74ec0000  0xa000    5.01.2600.1106  c:\windows\pchealth\helpctr\binaries\pchsvc.dll

  0x75010000  0x17000   5.01.2600.0000  c:\windows\system32\srvsvc.dll

  0x74ee0000  0xb000    5.01.2600.0000  c:\windows\system32\msgsvc.dll

  0x73c90000  0x9000    5.01.2600.0000  c:\windows\system32\seclogon.dll

  0x72260000  0xc000    5.01.2600.1106  c:\windows\system32\sens.dll

  0x75120000  0x2b000   5.01.2600.1106  c:\windows\system32\srsvc.dll

  0x74a50000  0x7000    6.00.2600.0000  c:\windows\system32\POWRPROF.dll

  0x73350000  0x3c000   5.01.2600.1106  c:\windows\system32\tapisrv.dll

  0x76bb0000  0xb000    5.01.2600.1106  c:\windows\system32\PSAPI.DLL

  0x74ff0000  0x17000   5.01.2600.1106  c:\windows\system32\trkwks.dll

  0x75e30000  0xa7000   5.01.2600.1106  C:\WINDOWS\System32\SXS.DLL

  0x72f70000  0x23000   5.01.2600.1106  C:\WINDOWS\System32\winspool.drv

  0x76770000  0x2b000   5.01.2600.1106  c:\windows\system32\w32time.dll

  0x76020000  0x61000   6.00.8972.0000  c:\windows\system32\MSVCP60.dll

  0x59b90000  0x1c000   5.01.2600.1106  c:\windows\system32\wbem\wmisvc.dll

  0x75210000  0x38000   5.01.2600.1106  c:\windows\system32\wbem\wbemcomn.dll

  0x75360000  0x68000   5.01.2600.1106  C:\WINDOWS\System32\VSSAPI.DLL

  0x72430000  0xf000    8.00.0001.0020  c:\windows\system32\mspmspsv.dll

  0x74e40000  0x6000    5.04.3630.1106  c:\windows\system32\wuauserv.dll

  0x76d60000  0x31000   5.04.3630.1106  C:\WINDOWS\System32\wuaueng.dll

  0x751e0000  0x27000   6.00.2800.1106  C:\WINDOWS\System32\ADVPACK.dll

  0x76b60000  0x4000    5.01.2600.0000  C:\WINDOWS\System32\sfc.dll

  0x76c20000  0x29000   5.01.2600.1106  C:\WINDOWS\System32\sfc_os.dll

  0x74f60000  0xf000    5.01.2600.1106  c:\windows\system32\browser.dll

  0x756c0000  0x120000  2001.12.4414.0046  C:\WINDOWS\system32\comsvcs.dll

  0x75070000  0x12000   2001.12.4414.0042  C:\WINDOWS\system32\MTXCLU.DLL

  0x71a50000  0x9000    5.01.2600.0000  C:\WINDOWS\system32\WSOCK32.dll

  0x750b0000  0x13000   2001.12.4414.0042  C:\WINDOWS\system32\colbact.DLL

  0x74f40000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\CLUSAPI.DLL

  0x75030000  0x11000   5.01.2600.0000  C:\WINDOWS\System32\RESUTILS.DLL

  0x75050000  0x17000   2001.12.4414.0042  C:\WINDOWS\System32\mtxoci.dll

  0x75250000  0x3c000   5.01.2600.1106  c:\windows\system32\termsrv.dll

  0x74ef0000  0x5000    5.01.2600.1106  c:\windows\system32\ICAAPI.dll

  0x76c80000  0x10000   5.01.2600.0000  c:\windows\system32\AUTHZ.dll

  0x75090000  0x1c000   5.01.2600.0000  c:\windows\system32\mstlsapi.dll

  0x76b70000  0xe000    5.01.2600.1106  C:\WINDOWS\System32\REGAPI.dll

  0x76da0000  0x28000   5.01.2600.1106  c:\windows\system32\netman.dll

  0x75c90000  0x195000  5.01.2600.1106  C:\WINDOWS\system32\NETSHELL.dll

  0x76bc0000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\credui.dll

  0x74fc0000  0x21000   5.01.2600.1106  C:\WINDOWS\System32\upnp.dll

  0x74e80000  0xa000    5.01.2600.1106  C:\WINDOWS\System32\SSDPAPI.dll

  0x68d40000  0x3f000   5.01.2600.1106  C:\WINDOWS\System32\hnetcfg.dll

  0x753d0000  0x78000   5.01.2600.1106  C:\WINDOWS\System32\Wbem\wbemcore.dll

  0x75290000  0x3c000   5.01.2600.1106  C:\WINDOWS\System32\Wbem\esscli.dll

  0x75620000  0x8d000   5.01.2600.1106  C:\WINDOWS\System32\Wbem\FastProx.dll

  0x74fa0000  0x1d000   5.01.2600.1106  C:\WINDOWS\System32\wbem\wmiutils.dll

  0x75180000  0x24000   5.01.2600.1106  C:\WINDOWS\System32\wbem\repdrvfs.dll

  0x59be0000  0x67000   5.01.2600.1106  C:\WINDOWS\System32\wbem\wmiprvsd.dll

  0x5fbd0000  0xe000    5.01.2600.1106  C:\WINDOWS\System32\NCObjAPI.DLL

  0x75310000  0x42000   5.01.2600.1106  C:\WINDOWS\System32\wbem\wbemess.dll

  0x75580000  0x93000   5.01.2600.1106  C:\WINDOWS\System32\netcfgx.dll

  0x76f80000  0x5000    5.01.2600.0000  C:\WINDOWS\System32\rasadhlp.dll

  0x723f0000  0x2c000   5.01.2600.1106  C:\WINDOWS\System32\rasmans.dll

  0x742f0000  0xa000    5.01.2600.0000  C:\WINDOWS\System32\WINIPSEC.DLL

  0x71ff0000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\rastapi.dll

  0x58090000  0x31000   5.01.2600.0000  C:\WINDOWS\System32\unimdm.tsp

  0x71f90000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\uniplat.dll

  0x5b490000  0x14000   5.01.2600.0000  C:\WINDOWS\System32\unimdmat.dll

  0x61ab0000  0x26000   5.01.2600.0000  C:\WINDOWS\System32\modemui.dll

  0x58110000  0xb000    5.01.2600.0000  C:\WINDOWS\System32\kmddsp.tsp

  0x580f0000  0x10000   5.01.2600.0000  C:\WINDOWS\System32\ndptsp.tsp

  0x58120000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\ipconf.tsp

  0x58140000  0x43000   5.01.2600.0000  C:\WINDOWS\System32\h323.tsp

  0x58130000  0xa000    5.01.2600.0000  C:\WINDOWS\System32\hidphone.tsp

  0x68db0000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\HID.DLL

  0x721d0000  0x32000   5.01.2600.1106  C:\WINDOWS\System32\rasppp.dll

  0x72420000  0x5000    5.01.2600.0000  C:\WINDOWS\System32\ntlsapi.dll

  0x754d0000  0xa2000   5.01.2600.1106  C:\WINDOWS\System32\RASDLG.dll

  0x036f0000  0x50000   5.01.2600.1106  C:\WINDOWS\System32\winhttp.dll

  0x5fba0000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\wbem\ncprov.dll

------------------------------------------------------------------------------

svchost.exe pid: 828

Command line: C:\WINDOWS\System32\svchost.exe -k NetworkService



  Base        Size      Version	        Path

  0x01000000  0x6000    5.01.2600.0000  C:\WINDOWS\System32\svchost.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x76720000  0xd000    5.01.2600.0000  c:\windows\system32\dnsrslvr.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x76ee0000  0x25000   5.01.2600.1106  c:\windows\system32\DNSAPI.dll

  0x71a30000  0x15000   5.01.2600.0000  c:\windows\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  c:\windows\system32\WS2HELP.dll

  0x76d20000  0x17000   5.01.2600.0002  c:\windows\system32\iphlpapi.dll

------------------------------------------------------------------------------

svchost.exe pid: 896

Command line: C:\WINDOWS\System32\svchost.exe -k LocalService



  Base        Size      Version	        Path

  0x01000000  0x6000    5.01.2600.0000  C:\WINDOWS\System32\svchost.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x74bc0000  0x6000    5.01.2600.0000  c:\windows\system32\lmhsvc.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x76d20000  0x17000   5.01.2600.0002  c:\windows\system32\iphlpapi.dll

  0x71a30000  0x15000   5.01.2600.0000  c:\windows\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  c:\windows\system32\WS2HELP.dll

  0x5aaf0000  0x14000   5.01.2600.1106  c:\windows\system32\webclnt.dll

  0x761a0000  0x99000   6.00.2800.1106  C:\WINDOWS\system32\WININET.dll

  0x005d0000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\shell32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

  0x71a50000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\wsock32.dll

  0x74b90000  0xe000    5.01.2600.1106  c:\windows\system32\ssdpsrv.dll

  0x719d0000  0x3c000   5.01.2600.0000  C:\WINDOWS\system32\mswsock.dll

  0x71a10000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\wshtcpip.dll

------------------------------------------------------------------------------

explorer.exe pid: 1020

Command line: C:\WINDOWS\Explorer.EXE



  Base        Size      Version	        Path

  0x01000000  0xf9000   6.00.2800.1106  C:\WINDOWS\Explorer.EXE

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x00260000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x75f20000  0xfc000   6.00.2800.1106  C:\WINDOWS\System32\BROWSEUI.dll

  0x76970000  0x14a000  6.00.2800.1106  C:\WINDOWS\System32\SHDOCVW.dll

  0x5b190000  0x34000   6.00.2800.1106  C:\WINDOWS\System32\UxTheme.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

  0x75ee0000  0x1e000   5.01.2600.1106  C:\WINDOWS\system32\appHelp.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\System32\CLBCATQ.DLL

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\System32\COMRes.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x765c0000  0x50000   5.01.2600.1106  C:\WINDOWS\System32\cscui.dll

  0x765a0000  0x1b000   5.01.2600.0000  C:\WINDOWS\System32\CSCDLL.dll

  0x5ba50000  0x72000   6.00.2800.1106  C:\WINDOWS\System32\themeui.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

  0x76320000  0x5000    5.01.2600.1106  C:\WINDOWS\System32\MSIMG32.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x71cd0000  0x1b000   6.00.2600.0000  C:\WINDOWS\System32\ACTXPRXY.DLL

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\System32\netapi32.dll

  0x76090000  0x7a000   6.00.2800.1106  C:\WINDOWS\System32\urlmon.dll

  0x76930000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\LINKINFO.dll

  0x76940000  0x25000   5.01.2600.1106  C:\WINDOWS\System32\ntshrui.dll

  0x76ad0000  0x15000   3.00.9435.0000  C:\WINDOWS\System32\ATL.DLL

  0x76bf0000  0x2b000   5.131.2600.0000  C:\WINDOWS\System32\WINTRUST.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x76c50000  0x22000   5.01.2600.1106  C:\WINDOWS\system32\IMAGEHLP.dll

  0x0ffd0000  0x23000   5.01.2600.1029  C:\WINDOWS\System32\rsaenh.dll

  0x10000000  0x6000    6.01.0000.0153  C:\DOCUME~1\Eigenaar\LOCALS~1\Temp\IadHide3.dll

  0x01510000  0x201000  2.00.2600.1106  C:\WINDOWS\System32\msi.dll

  0x76300000  0xf000    5.01.2600.1106  C:\WINDOWS\System32\WINSTA.dll

  0x74ab0000  0x42000   6.00.2800.1106  C:\WINDOWS\System32\webcheck.dll

  0x74a80000  0x20000   5.01.2600.1106  C:\WINDOWS\System32\stobject.dll

  0x74a70000  0x9000    6.00.2600.0000  C:\WINDOWS\System32\BatMeter.dll

  0x74a50000  0x7000    6.00.2600.0000  C:\WINDOWS\System32\POWRPROF.dll

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\System32\SETUPAPI.dll

  0x76f10000  0x8000    5.01.2600.1106  C:\WINDOWS\System32\WTSAPI32.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x72c90000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\wdmaud.drv

  0x72c80000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\msacm32.drv

  0x77bb0000  0x14000   5.01.2600.0000  C:\WINDOWS\System32\MSACM32.dll

  0x77ba0000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\midimap.dll

  0x75c90000  0x195000  5.01.2600.1106  C:\WINDOWS\system32\NETSHELL.dll

  0x76bc0000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\credui.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\system32\WS2HELP.dll

  0x76d20000  0x17000   5.01.2600.0002  C:\WINDOWS\system32\iphlpapi.dll

  0x71aa0000  0x11000   5.01.2600.0000  C:\WINDOWS\system32\MPR.dll

  0x75f00000  0x6000    5.01.2600.0000  C:\WINDOWS\System32\drprov.dll

  0x71ba0000  0xd000    5.01.2600.1106  C:\WINDOWS\System32\ntlanman.dll

  0x71c60000  0x16000   5.01.2600.0000  C:\WINDOWS\System32\NETUI0.dll

  0x71c20000  0x3c000   5.01.2600.0000  C:\WINDOWS\System32\NETUI1.dll

  0x71c10000  0x6000    5.01.2600.0000  C:\WINDOWS\System32\NETRAP.dll

  0x71b80000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\SAMLIB.dll

  0x75f10000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\davclnt.dll

  0x74b00000  0x85000   5.01.2600.1106  C:\WINDOWS\System32\printui.dll

  0x72f70000  0x23000   5.01.2600.1106  C:\WINDOWS\System32\WINSPOOL.DRV

  0x76e00000  0x2f000   5.01.2600.0000  C:\WINDOWS\System32\ACTIVEDS.dll

  0x76dd0000  0x25000   5.01.2600.1106  C:\WINDOWS\System32\adsldpc.dll

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x74a60000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\CFGMGR32.dll

  0x692d0000  0x8c000   5.02.1776.1023  C:\WINDOWS\System32\fxsst.dll

  0x694f0000  0x70000   5.02.1776.1023  C:\WINDOWS\System32\FXSAPI.dll

  0x76ca0000  0x1f000   5.01.2600.1106  C:\WINDOWS\System32\NTMARTA.DLL

  0x723c0000  0x13000   6.00.2800.1106  C:\WINDOWS\System32\browselc.dll

  0x761a0000  0x99000   6.00.2800.1106  C:\WINDOWS\system32\WININET.dll

  0x75e30000  0xa7000   5.01.2600.1106  C:\WINDOWS\System32\SXS.DLL

  0x750d0000  0x13000   5.01.2600.1106  C:\WINDOWS\System32\Cabinet.dll

  0x014d0000  0x32000   3.00.0000.1132  C:\WINDOWS\System32\igfxpph.dll

  0x00f00000  0x1d000   3.00.0000.1132  C:\WINDOWS\System32\hccutils.DLL

  0x01d20000  0x8f000   3.00.0000.1132  C:\WINDOWS\System32\igfxres.dll

  0x01db0000  0x45000   3.00.0000.1132  C:\WINDOWS\System32\igfxsrvc.dll

  0x723a0000  0x19000   6.00.2600.0000  C:\WINDOWS\System32\mydocs.dll

  0x76110000  0x8c000   6.00.2600.0000  C:\WINDOWS\System32\shdoclc.dll

  0x16200000  0x6000    4.01.0000.0000  C:\PROGRA~1\WINZIP\WZSHLSTB.DLL

  0x020d0000  0xc000    1.00.0000.0001  C:\PROGRA~1\ULTRAE~1\ue32ctmn.dll

  0x76350000  0x46000   6.00.2800.1106  C:\WINDOWS\system32\comdlg32.dll

  0x76ea0000  0x37000   5.01.2600.1106  C:\WINDOWS\System32\RASAPI32.DLL

  0x76e50000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\rasman.dll

  0x76e70000  0x2b000   5.01.2600.1106  C:\WINDOWS\System32\TAPI32.dll

  0x76e40000  0xd000    5.01.2600.0000  C:\WINDOWS\System32\rtutils.dll

  0x75910000  0xf2000   5.01.2600.1106  C:\WINDOWS\System32\MSGINA.dll

  0x1f7b0000  0x31000   3.520.9030.0000  C:\WINDOWS\System32\ODBC32.dll

  0x1f850000  0x18000   3.520.7713.0000  C:\WINDOWS\System32\odbcint.dll

  0x73b10000  0x12000   5.01.2600.1106  C:\WINDOWS\System32\sti.dll

  0x00fd0000  0x8000    1.00.0000.0001  C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

  0x5cc10000  0x9000    5.01.2600.1106  C:\WINDOWS\System32\SlayerXP.dll

  0x76b60000  0x4000    5.01.2600.0000  C:\WINDOWS\System32\sfc.dll

  0x76c20000  0x29000   5.01.2600.1106  C:\WINDOWS\System32\sfc_os.dll

  0x00e20000  0x32000   5.01.2600.1106  C:\WINDOWS\System32\xpsp1res.dll

  0x6e140000  0xe000    5.131.2600.0000  C:\WINDOWS\system32\cryptext.dll

  0x75450000  0x7a000   5.131.2600.1106  C:\WINDOWS\system32\CRYPTUI.dll

  0x5dad0000  0xc000    5.01.2600.1106  C:\WINDOWS\System32\rshx32.dll

  0x76c80000  0x10000   5.01.2600.0000  C:\WINDOWS\System32\AUTHZ.dll

  0x6cd50000  0x10000   5.01.2600.0000  C:\WINDOWS\System32\docprop.dll

  0x6cd40000  0xe000    5.01.2600.1106  C:\WINDOWS\System32\docprop2.dll

------------------------------------------------------------------------------

spoolsv.exe pid: 1108

Command line: C:\WINDOWS\system32\spoolsv.exe



  Base        Size      Version	        Path

  0x01000000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\spoolsv.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x74260000  0x13000   5.01.2600.1106  C:\WINDOWS\system32\SPOOLSS.DLL

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\system32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\system32\WS2HELP.dll

  0x76ee0000  0x25000   5.01.2600.1106  C:\WINDOWS\system32\DNSAPI.dll

  0x76d20000  0x17000   5.01.2600.0002  C:\WINDOWS\system32\iphlpapi.dll

  0x76f80000  0x5000    5.01.2600.0000  C:\WINDOWS\system32\rasadhlp.dll

  0x742a0000  0x4b000   5.01.2600.1106  C:\WINDOWS\system32\localspl.dll

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\system32\Secur32.dll

  0x76c20000  0x29000   5.01.2600.1106  C:\WINDOWS\system32\sfc_os.dll

  0x76bf0000  0x2b000   5.131.2600.0000  C:\WINDOWS\system32\WINTRUST.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x76c50000  0x22000   5.01.2600.1106  C:\WINDOWS\system32\IMAGEHLP.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x72f70000  0x23000   5.01.2600.1106  C:\WINDOWS\system32\winspool.drv

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\system32\netapi32.dll

  0x74210000  0xf000    0.03.0000.0000  C:\WINDOWS\system32\cnbjmon.dll

  0x66f40000  0x19000   0.03.0000.0001  C:\WINDOWS\system32\CNMLM3m.DLL

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\COMCTL32.dll

  0x693e0000  0x8000    5.02.1776.0000  C:\WINDOWS\system32\FXSMON.DLL

  0x69400000  0x12000   5.02.1776.0000  C:\WINDOWS\system32\FXSEVENT.dll

  0x741f0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\pjlmon.dll

  0x72390000  0xd000    5.01.2600.0000  C:\WINDOWS\system32\tcpmon.dll

  0x72380000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\usbmon.dll

  0x00bf0000  0x6000    0.03.0000.0000  C:\WINDOWS\System32\spool\PRTPROCS\W32X86\CNMPD3m.DLL

  0x719d0000  0x3c000   5.01.2600.0000  C:\WINDOWS\System32\mswsock.dll

  0x76f70000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\winrnr.dll

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x74230000  0x20000   5.01.2600.1106  C:\WINDOWS\system32\win32spl.dll

  0x71c10000  0x6000    5.01.2600.0000  C:\WINDOWS\system32\NETRAP.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\system32\CLBCATQ.DLL

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\system32\COMRes.dll

  0x74280000  0x14000   5.01.2600.0000  C:\WINDOWS\system32\inetpp.dll

  0x74200000  0x4000    5.01.2600.0000  C:\WINDOWS\system32\icmp.dll

------------------------------------------------------------------------------

nvsvc32.exe pid: 1232

Command line: C:\WINDOWS\System32\nvsvc32.exe



  Base        Size      Version	        Path

  0x00400000  0x10000   5.13.0001.1570  C:\WINDOWS\System32\nvsvc32.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

------------------------------------------------------------------------------

svchost.exe pid: 1300

Command line: C:\WINDOWS\System32\svchost.exe -k imgsvc



  Base        Size      Version	        Path

  0x01000000  0x6000    5.01.2600.0000  C:\WINDOWS\System32\svchost.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x739b0000  0x51000   5.01.2600.1106  c:\windows\system32\wiaservc.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\OLE32.DLL

  0x002a0000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x74a60000  0x7000    5.01.2600.0000  c:\windows\system32\CFGMGR32.dll

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\System32\setupapi.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x73aa0000  0x13000   5.01.2600.1106  c:\windows\system32\mscms.dll

  0x72f70000  0x23000   5.01.2600.1106  c:\windows\system32\WINSPOOL.DRV

  0x76300000  0xf000    5.01.2600.1106  c:\windows\system32\WINSTA.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\System32\CLBCATQ.DLL

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\System32\COMRes.dll

  0x10000000  0x11d000  1.00.0000.0003  C:\WINDOWS\System32\SG62UUD.DLL

  0x00800000  0x6c000   1.00.0001.0000  C:\WINDOWS\System32\N124UFW.DLL

  0x5a8c0000  0x26000   5.01.2600.0000  C:\WINDOWS\System32\wiavusd.dll

  0x78190000  0x1a1000  5.01.3101.0000  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.10.0_x-ww_712befd8\gdiplus.dll

  0x76730000  0x8000    6.00.2800.1106  C:\WINDOWS\System32\SHFOLDER.dll

  0x71cd0000  0x1b000   6.00.2600.0000  C:\WINDOWS\System32\ACTXPRXY.DLL

  0x73b10000  0x12000   5.01.2600.1106  C:\WINDOWS\System32\sti.dll

------------------------------------------------------------------------------

vmware-authd.exe pid: 1332

Command line: "C:\Program Files\VMware\VMware Workstation\Programs\vmware-authd.exe"



  Base        Size      Version	        Path

  0x00400000  0x18000                   C:\Program Files\VMware\VMware Workstation\Programs\vmware-authd.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\System32\NETAPI32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\System32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\WS2HELP.dll

  0x71b80000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\SAMLIB.dll

  0x0ffd0000  0x23000   5.01.2600.1029  C:\WINDOWS\System32\rsaenh.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

  0x71aa0000  0x11000   5.01.2600.0000  C:\WINDOWS\system32\mpr.dll

  0x76ca0000  0x1f000   5.01.2600.1106  C:\WINDOWS\System32\NTMARTA.DLL

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x00780000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

------------------------------------------------------------------------------

VMNetDHCP.exe pid: 1364

Command line: C:\WINDOWS\System32\vmnetdhcp.exe



  Base        Size      Version	        Path

  0x00400000  0x2e000   1.00.0000.0001  C:\WINDOWS\System32\vmnetdhcp.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\System32\WS2_32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\WS2HELP.dll

------------------------------------------------------------------------------

vmnat.exe pid: 1388

Command line: C:\WINDOWS\System32\vmnat.exe



  Base        Size      Version	        Path

  0x00400000  0x1e000                   C:\WINDOWS\System32\vmnat.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\System32\WS2_32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\WS2HELP.dll

  0x719d0000  0x3c000   5.01.2600.0000  C:\WINDOWS\system32\mswsock.dll

  0x71a10000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\wshtcpip.dll

  0x76d20000  0x17000   5.01.2600.0002  C:\WINDOWS\System32\iphlpapi.dll

------------------------------------------------------------------------------

hpsysdrv.exe pid: 1572

Command line: "C:\windows\system\hpsysdrv.exe" 



  Base        Size      Version	        Path

  0x00400000  0x12000   1.07.0000.0000  C:\windows\system\hpsysdrv.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

------------------------------------------------------------------------------

KBD.EXE pid: 1608

Command line: "C:\HP\KBD\KBD.EXE" 



  Base        Size      Version	        Path

  0x63000000  0x11000   1.00.0002.0000  C:\HP\KBD\KBD.EXE

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

  0x63080000  0xe000    1.00.0002.0000  C:\HP\KBD\led.dll

  0x63190000  0x13000   1.00.0002.0000  C:\HP\KBD\USB.dll

  0x74a60000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\CFGMGR32.dll

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\System32\setupapi.dll

  0x68db0000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\HID.DLL

  0x63130000  0x10000   1.00.0002.0000  C:\HP\KBD\ps2.dll

  0x630a0000  0xe000    1.00.0002.0000  C:\HP\KBD\msg.dll

  0x63110000  0x1a000   1.00.0002.0000  C:\HP\KBD\osd.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x01150000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x63150000  0x12000   1.00.0002.0000  C:\HP\KBD\sct.dll

  0x630e0000  0x10000   1.00.0002.0000  C:\HP\KBD\onl.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x63020000  0x10000   1.00.0002.0000  C:\HP\KBD\aol.dll

  0x761a0000  0x99000   6.00.2800.1106  C:\WINDOWS\system32\WININET.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x63170000  0xf000    1.00.0002.0000  C:\HP\KBD\url.dll

  0x63040000  0x18000   1.00.0002.0000  C:\HP\KBD\cfg.dll

  0x72240000  0x5000    5.01.2600.1106  C:\WINDOWS\System32\sensapi.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\System32\CLBCATQ.DLL

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\System32\COMRes.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x630c0000  0x11000   1.00.0002.0000  C:\HP\KBD\MSIKBDIF.DLL

  0x015e0000  0x10000   7.00.2600.0000  C:\WINDOWS\System32\MSVCIRT.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

  0x76ea0000  0x37000   5.01.2600.1106  C:\WINDOWS\System32\RASAPI32.DLL

  0x76e50000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\rasman.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\System32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\WS2HELP.dll

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\System32\NETAPI32.dll

  0x76e70000  0x2b000   5.01.2600.1106  C:\WINDOWS\System32\TAPI32.dll

  0x76e40000  0xd000    5.01.2600.0000  C:\WINDOWS\System32\rtutils.dll

  0x75a10000  0xa6000   5.01.2600.1106  C:\WINDOWS\system32\USERENV.dll

  0x0ffd0000  0x23000   5.01.2600.1029  C:\WINDOWS\System32\rsaenh.dll

  0x75ee0000  0x1e000   5.01.2600.1106  C:\WINDOWS\system32\appHelp.dll

  0x76090000  0x7a000   6.00.2800.1106  C:\WINDOWS\System32\urlmon.dll

  0x71a50000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\wsock32.dll

  0x10000000  0x6000    6.01.0000.0153  C:\DOCUME~1\Eigenaar\LOCALS~1\Temp\IadHide3.dll

------------------------------------------------------------------------------

pctspk.exe pid: 1708

Command line: "C:\WINDOWS\System32\pctspk.exe" 



  Base        Size      Version	        Path

  0x00400000  0x2a000   1.00.0000.0001  C:\WINDOWS\System32\pctspk.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x76ea0000  0x37000   5.01.2600.1106  C:\WINDOWS\System32\RASAPI32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x76e50000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\rasman.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\System32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\WS2HELP.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\System32\NETAPI32.dll

  0x76e70000  0x2b000   5.01.2600.1106  C:\WINDOWS\System32\TAPI32.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x76e40000  0xd000    5.01.2600.0000  C:\WINDOWS\System32\rtutils.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x72f70000  0x23000   5.01.2600.1106  C:\WINDOWS\System32\WINSPOOL.DRV

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\COMCTL32.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

------------------------------------------------------------------------------

BackWeb-137903.exe pid: 1792

Command line: "C:\Program Files\hp center\137903\Program\BackWeb-137903.exe" -startup



  Base        Size      Version	        Path

  0x00400000  0x4000                    C:\Program Files\hp center\137903\Program\BackWeb-137903.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x00900000  0x254000  6.01.0000.0153  C:\Program Files\BackWeb\BackWeb Client\6.1.0.153\Program\BackWeb.dll

  0x10000000  0xe000                    C:\Program Files\BackWeb\BackWeb Client\6.1.0.153\Program\clntutil.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\MSVCRT.dll

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x761a0000  0x99000   6.00.2800.1106  C:\WINDOWS\system32\WININET.dll

  0x00830000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x76260000  0x8c000   5.131.2600.1106  C:\WINDOWS\system32\CRYPT32.dll

  0x76240000  0xf000    5.01.2600.0000  C:\WINDOWS\system32\MSASN1.dll

  0x008a0000  0x38000   6.01.0000.0153  C:\Program Files\BackWeb\BackWeb Client\6.1.0.153\Program\bwsec.dll

  0x71ef0000  0x8000    5.01.2600.1106  C:\WINDOWS\System32\snmpapi.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\System32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\WS2HELP.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x73d40000  0xf2000   6.00.8665.0000  C:\WINDOWS\System32\MFC42.DLL

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x76020000  0x61000   6.00.8972.0000  C:\WINDOWS\System32\MSVCP60.dll

  0x71a50000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\WSOCK32.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x61e00000  0xe000    6.00.8665.0000  C:\WINDOWS\System32\MFC42LOC.DLL

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

  0x00c10000  0x2a000   6.01.0000.0153  C:\PROGRA~1\BackWeb\BACKWE~1\610~1.153\program\EN\ClientRC.dll

  0x76f10000  0x8000    5.01.2600.1106  C:\WINDOWS\System32\wtsapi32.dll

  0x76300000  0xf000    5.01.2600.1106  C:\WINDOWS\System32\WINSTA.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

  0x76f90000  0x78000   2001.12.4414.0042  C:\WINDOWS\System32\CLBCATQ.DLL

  0x77010000  0xcd000   2001.12.4414.0042  C:\WINDOWS\System32\COMRes.dll

  0x00e60000  0x5000                    C:\Program Files\hp center\137903\Program\BWfiles-137903.dll

  0x00e70000  0x24000   6.01.0000.0153  C:\Program Files\BackWeb\BackWeb Client\6.1.0.153\Program\BWfiles.dll

  0x014c0000  0x6000    6.01.0000.0153  C:\DOCUME~1\Eigenaar\LOCALS~1\Temp\IadHide3.dll

  0x76ea0000  0x37000   5.01.2600.1106  C:\WINDOWS\System32\RASAPI32.DLL

  0x76e50000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\rasman.dll

  0x71bb0000  0x4e000   5.01.2600.1106  C:\WINDOWS\System32\NETAPI32.dll

  0x76e70000  0x2b000   5.01.2600.1106  C:\WINDOWS\System32\TAPI32.dll

  0x76e40000  0xd000    5.01.2600.0000  C:\WINDOWS\System32\rtutils.dll

  0x719d0000  0x3c000   5.01.2600.0000  C:\WINDOWS\system32\mswsock.dll

  0x71a10000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\wshtcpip.dll

  0x66b90000  0xb000    5.01.2600.0000  C:\WINDOWS\System32\inetmib1.dll

  0x76d20000  0x17000   5.01.2600.0002  C:\WINDOWS\System32\iphlpapi.dll

  0x76d00000  0x16000   5.01.2600.0000  C:\WINDOWS\System32\MPRAPI.dll

  0x76e00000  0x2f000   5.01.2600.0000  C:\WINDOWS\System32\ACTIVEDS.dll

  0x76dd0000  0x25000   5.01.2600.1106  C:\WINDOWS\System32\adsldpc.dll

  0x76f20000  0x2d000   5.01.2600.1106  C:\WINDOWS\system32\WLDAP32.dll

  0x76ad0000  0x15000   3.00.9435.0000  C:\WINDOWS\System32\ATL.DLL

  0x71b80000  0x11000   5.01.2600.1106  C:\WINDOWS\System32\SAMLIB.dll

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\System32\SETUPAPI.dll

  0x76ee0000  0x25000   5.01.2600.1106  C:\WINDOWS\System32\DNSAPI.dll

  0x76f70000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\winrnr.dll

  0x76f80000  0x5000    5.01.2600.0000  C:\WINDOWS\System32\rasadhlp.dll

  0x017a0000  0x15000   1.00.0000.0001  C:\Program Files\hp center\137903\Program\HPClientExt.dll

  0x75e30000  0xa7000   5.01.2600.1106  C:\WINDOWS\System32\SXS.DLL

------------------------------------------------------------------------------

WinCinemaMgr.exe pid: 1820

Command line: "C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe" 



  Base        Size      Version	        Path

  0x00400000  0x13000   1.00.0000.0001  C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x73d40000  0xf2000   6.00.8665.0000  C:\WINDOWS\System32\MFC42.DLL

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\MSVCRT.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x00420000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x61e00000  0xe000    6.00.8665.0000  C:\WINDOWS\System32\MFC42LOC.DLL

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

------------------------------------------------------------------------------

WinScheduler.exe pid: 1836

Command line: "C:\Program Files\InterVideo\WinDVR\WinScheduler.exe" 



  Base        Size      Version	        Path

  0x00400000  0x21000   1.08.0021.0073  C:\Program Files\InterVideo\WinDVR\WinScheduler.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x5f400000  0xf2000   6.00.8665.0000  C:\Program Files\InterVideo\WinDVR\MFC42.DLL

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\MSVCRT.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x780c0000  0x61000   6.00.8972.0000  C:\Program Files\InterVideo\WinDVR\MSVCP60.dll

  0x61e00000  0xe000    6.00.8665.0000  C:\WINDOWS\System32\MFC42LOC.DLL

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\COMCTL32.DLL

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x00910000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

------------------------------------------------------------------------------

WarTrayIcon.exe pid: 1856

Command line: "C:\Program Files\War-ftpd\WarTrayIcon.exe" 



  Base        Size      Version	        Path

  0x00400000  0xc000    1.70.0001.0003  C:\Program Files\War-ftpd\WarTrayIcon.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll

------------------------------------------------------------------------------

vmware.exe pid: 1760

Command line: "C:\Program Files\VMware\VMware Workstation\Programs\vmware.exe" -T 200 



  Base        Size      Version	        Path

  0x00400000  0x408000  2.00.0001.0000  C:\Program Files\VMware\VMware Workstation\Programs\vmware.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x10000000  0xb000                    C:\Program Files\VMware\VMware Workstation\Programs\ntwrap.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x00810000  0x172000  2.00.0001.0000  C:\Program Files\VMware\VMware Workstation\Programs\vmxUI.dll

  0x00990000  0x77f000  2.00.0001.0000  C:\Program Files\VMware\VMware Workstation\Programs\VMXMKSAX.OCX

  0x76620000  0xeb000   5.01.2600.1106  C:\WINDOWS\System32\SETUPAPI.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x71a30000  0x15000   5.01.2600.0000  C:\WINDOWS\System32\WS2_32.dll

  0x71a20000  0x8000    5.01.2600.0000  C:\WINDOWS\System32\WS2HELP.dll

  0x72210000  0x29000   5.01.2600.1106  C:\WINDOWS\System32\DINPUT.dll

  0x76af0000  0x2d000   5.01.2600.1106  C:\WINDOWS\System32\WINMM.dll

  0x73d40000  0xf2000   6.00.8665.0000  C:\WINDOWS\System32\MFC42.DLL

  0x77170000  0x121000  5.01.2600.1106  C:\WINDOWS\system32\ole32.dll

  0x770e0000  0x8b000   3.50.5016.0000  C:\WINDOWS\system32\OLEAUT32.dll

  0x77390000  0x803000  6.00.2800.1106  C:\WINDOWS\system32\SHELL32.dll

  0x00330000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\COMCTL32.dll

  0x73e80000  0x55000   5.01.2600.0000  C:\WINDOWS\System32\DSOUND.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x74a60000  0x7000    5.01.2600.0000  C:\WINDOWS\System32\CFGMGR32.dll

  0x61e00000  0xe000    6.00.8665.0000  C:\WINDOWS\System32\MFC42LOC.DLL

  0x76730000  0x8000    6.00.2800.1106  C:\WINDOWS\System32\shfolder.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

  0x01c90000  0x6000    6.01.0000.0153  C:\DOCUME~1\Eigenaar\LOCALS~1\Temp\IadHide3.dll

  0x5b190000  0x34000   6.00.2800.1106  C:\WINDOWS\System32\UxTheme.dll

  0x76350000  0x46000   6.00.2800.1106  C:\WINDOWS\system32\comdlg32.dll

  0x68db0000  0x9000    5.01.2600.0000  C:\WINDOWS\System32\HID.DLL

  0x73aa0000  0x13000   5.01.2600.1106  C:\WINDOWS\System32\mscms.dll

  0x72f70000  0x23000   5.01.2600.1106  C:\WINDOWS\System32\WINSPOOL.DRV

  0x675d0000  0x3d000   5.00.0000.0000  C:\WINDOWS\System32\icm32.dll

------------------------------------------------------------------------------

cmd.exe pid: 348

Command line: "C:\WINDOWS\SYSTEM32\cmd.exe" 



  Base        Size      Version	        Path

  0x4ad00000  0x61000   5.01.2600.0000  C:\WINDOWS\SYSTEM32\cmd.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x75ee0000  0x1e000   5.01.2600.1106  C:\WINDOWS\system32\Apphelp.dll

------------------------------------------------------------------------------

bash.exe pid: 340

Command line: bash 



  Base        Size      Version	        Path

  0x00400000  0x7e000                   C:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter\bash.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x61000000  0xc5000   1003.02.0000.0000  C:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter\cygwin1.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

------------------------------------------------------------------------------

bash.exe pid: 396

Command line: C:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter\bash.exe



  Base        Size      Version	        Path

  0x00400000  0x7e000                   C:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter\bash.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x61000000  0xc5000   1003.02.0000.0000  C:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter\cygwin1.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x76f50000  0x10000   5.01.2600.1106  C:\WINDOWS\System32\Secur32.dll

  0x75ee0000  0x1e000   5.01.2600.1106  C:\WINDOWS\system32\Apphelp.dll

------------------------------------------------------------------------------

listdlls.exe pid: 1748

Command line: "c:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter\listdlls.exe"



  Base        Size      Version	        Path

  0x00400000  0xe000    2.20.0000.0000  c:\Documents and Settings\Eigenaar\Bureaublad\Murdoc development\Versie 0.3\Windows documenter\listdlls.exe

  0x77f40000  0xad000   5.01.2600.1106  C:\WINDOWS\System32\ntdll.dll

  0x77e40000  0xf0000   5.01.2600.1106  C:\WINDOWS\system32\kernel32.dll

  0x77bd0000  0x7000    5.01.2600.0000  C:\WINDOWS\system32\VERSION.dll

  0x77da0000  0x9d000   5.01.2600.1106  C:\WINDOWS\system32\ADVAPI32.dll

  0x78000000  0x86000   5.01.2600.1106  C:\WINDOWS\system32\RPCRT4.dll

  0x76c50000  0x22000   5.01.2600.1106  C:\WINDOWS\system32\IMAGEHLP.dll

  0x77be0000  0x53000   7.00.2600.1106  C:\WINDOWS\system32\msvcrt.dll

  0x77c40000  0x40000   5.01.2600.1106  C:\WINDOWS\system32\GDI32.dll

  0x77d10000  0x8c000   5.01.2600.1106  C:\WINDOWS\system32\USER32.dll

  0x77290000  0x64000   6.00.2800.1106  C:\WINDOWS\system32\SHLWAPI.dll

  0x78090000  0xe4000   6.00.2800.1106  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\comctl32.dll

  0x77300000  0x8b000   5.82.2800.1106  C:\WINDOWS\system32\comctl32.dll


Back to top

File association

.323=h323file

.386=vxdfile

.aca=Agent.Character.2

.acf=Agent.Character.2

.acg=Agent.Preview.2

.acl=ACLFile

.acs=Agent.Character2.2

.acw=acwfile

.ai=

.aif=AIFFFile

.aifc=AIFFFile

.aiff=AIFFFile

.ani=anifile

.api=AcroExch.Plugin

.aps=

.ARC=WinZip

.ARJ=WinZip

.asa=aspfile

.ascx=

.asf=ASFFile

.asm=

.asmx=

.asp=aspfile

.aspx=

.asx=ASXFile

.au=AUFile

.AudioCD=AudioCD

.avi=avifile

.aw=AWFile

.B64=WinZip

.bat=batfile

.bdb=MSWorks4Database

.bfc=Briefcase

.BHX=WinZip

.bin=

.bkf=msbackupfile

.bks=MSWorks4Sheet

.blg=PerfFile

.bmp=Paint.Picture

.bpg=BorlandProjectGroup

.bsc=

.bsh=bsh_auto_file

.bwp=bwpfile

.c=c_auto_file

.cab=WinZip

.cat=CATFile

.cbo=MITrain.Document

.cda=CDAFile

.cdc=NeroCDCoverType

.cdf=ChannelFile

.cdr=Microsoft Picture It! Document

.cdx=aspfile

.cer=CERFile

.cgm=

.chk=chkfile

.chm=chm.file

.cil=ClipGalleryDownloadPackage

.class=class_auto_file

.clp=clpfile

.cmd=cmdfile

.cnf=ConferenceLink

.CNT=CNT_auto_file

.col=COLFile

.com=comfile

.comm=comm_auto_file

.commands=commands_auto_file

.cov=Voorblad

.cpe=Voorblad

.cpl=cplfile

.cpp=

.crl=CRLFile

.crt=CERFile

.css=CSSfile

.CTT=MessengerContactList

.cur=curfile

.cxx=

.dat=data-file

.db=dbfile

.dbg=

.dcr=

.dct=

.dcx=tif

.def=

.der=CERFile

.DeskLink=CLSID\{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}

.dfm=DelphiForm

.dib=Paint.Picture

.dic=txtfile

.dir=

.diz=

.dll=dllfile

.dl_=

.doc=Word.Document.8

.dochtml=wordhtmlfile

.dos=

.dot=Word.Template.8

.dothtml=wordhtmltemplate

.dpk=DelphiPackage

.dpr=DelphiProject

.drv=drvfile

.drw=Microsoft Picture It! Document

.dsn=MSDASQL

.dun=dunfile

.DVD=MyDVD.File

.dxf=Microsoft Picture It! Document

.dxr=

.elm=ELMFile

.emf=emffile

.eml=Microsoft Internet Mail Message

.eps=Microsoft Picture It! Document

.exc=txtfile

.exe=exefile

.exp=

.ex_=

.eyb=

.fdf=AcroExch.FDFDoc

.ffa=FFAFile

.ffl=FFLFile

.fft=FFTFile

.ffx=FFXFile

.fif=

.fnd=fndfile

.fnt=

.Folder=Folder

.fon=fonfile

.fpx=Microsoft Picture It! Document

.ghi=

.gif=giffile

.gra=MSGraph.Chart.8

.grp=MSProgramGroup

.gz=WinZip

.h=

.hfz=hfzfile

.hhc=

.hlp=hlpfile

.hpp=

.hqx=WinZip

.ht=htfile

.hta=htafile

.htc=

.htm=htmlfile

.html=htmlfile

.htt=HTTfile

.htw=

.htx=

.hxx=

.iad=iadfile

.icc=icmfile

.ICD=ICD_auto_file

.icm=icmfile

.ico=icofile

.idb=

.idl=

.idq=

.iii=iiifile

.ilk=

.imc=

.inc=

.inf=inffile

.ini=inifile

.ins=x-internet-signup

.inv=

.inx=

.in_=

.isp=x-internet-signup

.its=ITS File

.IVF=IVFfile

.java=

.jbf=

.jfif=pjpegfile

.job=JobObject

.jod=Microsoft.Jet.OLEDB.4.0

.jpe=jpegfile

.jpeg=jpegfile

.jpg=jpegfile

.jpz=jpzFile

.JS=JSFile

.JSE=JSEFile

.klnx=CLSID\{9E56BE60-C50F-11CF-9A2C-3EAC335E}

.latex=

.lex=LEXFile

.lib=

.LiveReg=LiveReg.SessionFile

.LiveSubscribe=LiveReg.UserProfile

.lnk=lnkfile

.local=

.log=txtfile

.lwv=LWVFile

.LZH=WinZip

.m14=

.m1v=mpegfile

.m3u=m3ufile

.man=

.manifest=

.MAPIMail=CLSID\{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}

.mdb=

.mht=mhtmlfile

.mhtml=mhtmlfile

.mid=midfile

.midi=midfile

.MIM=WinZip

.mix=Microsoft Picture It! Document

.mmc=MediaCatalog

.mmf=

.mmm=MPlayer

.mov=

.movie=

.mp2=mpegfile

.mp2v=mpegfile

.mp3=mp3file

.mpa=mpegfile

.mpe=mpegfile

.mpeg=mpegfile

.mpg=mpegfile

.mpv2=mpegfile

.msc=MSCFile

.msg=

.msi=Msi.Package

.MSOLAPRole.1=MSOLAPRole Class

.msp=Msi.Patch

.MsRcIncident=MsRcIncident

.msstyles=msstylesfile

.MSWMM=Windows.Movie.Maker

.mv=

.mydocs=CLSID\{ECF03A32-103D-11d2-854D-006008059367}

.ncb=

.nfo=MSInfo.Document

.nhf=NeroHFSType

.NLD=AcroExch.Lang

.nls=

.NMW=T126_Whiteboard

.nra=NeroAudioType

.nrb=NeroCDROMBootType

.nrd=NeroDVDVideoType

.nre=NeroCDExtraType

.nrg=NeroImageType

.nrh=NeroCDROMHybridType

.nri=NeroCDROMType

.nrm=NeroMixedModeType

.nru=NeroUDFType

.nrv=NeroVideoType

.nsc=

.nvr=

.nws=Microsoft Internet News Message

.obj=

.ocx=ocxfile

.oc_=

.odc=

.opc=OPCFile

.opx=OrgPlusWOPX.4

.otf=otffile

.p10=P10File

.p12=PFXFile

.p7b=SPCFile

.p7c=certificate_wab_auto_file

.p7m=P7MFile

.p7r=SPCFile

.p7s=P7SFile

.p951=CLSID\{9E56BE60-C50F-11CF-9A2C-929F6D5E}

.pas=DelphiUnit

.pbk=pbkfile

.pcd=Microsoft Picture It! Document

.pch=

.pct=Microsoft Picture It! Document

.pcx=Microsoft Picture It! Document

.pdb=

.pdf=AcroExch.Document

.pds=

.pdx=PDXFileType

.pfm=pfmfile

.pfx=PFXFile

.phb=PhotoBase.Document

.php3=

.pic=

.pif=piffile

.pip=PIPFile

.pko=PKOFile

.pl=pl_auto_file

.plg=

.pma=PerfFile

.pmc=PerfFile

.pml=PerfFile

.pmr=PerfFile

.pmw=PerfFile

.pnf=pnffile

.png=pngfile

.pot=

.ppi=ppifile

.pps=

.ppt=

.prf=prffile

.ps=

.psd=

.psf=psfFile

.psw=PSWFile

.qds=SavedDsQuery

.rat=ratfile

.rc=

.RDP=RDP.File

.reg=regfile

.res=

.rle=

.rmf=AcroExch.RMFFile

.rmi=midfile

.rnk=rnkfile

.rpc=

.rsp=

.rtf=Word.RTF.8

.sam=

.sbr=

.sc2=

.scf=SHCmdFile

.scp=txtfile

.scr=scrfile

.sct=scriptletfile

.sdb=appfixfile

.sed=

.sh=sh_auto_file

.sha=MITrain.Document2

.shb=DocShortcut

.shs=ShellScrap

.shtml=

.shw=

.sit=

.snd=AUFile

.spc=SPCFile

.spl=ShockwaveFlash.ShockwaveFlash

.sql=

.sr_=

.sst=CertificateStoreFile

.stf=STFFile

.stl=STLFile

.stm=

.stu=Studio.Document

.svg=Adobe.SVGCtl

.svgz=Adobe.SVGCtl

.swf=ShockwaveFlash.ShockwaveFlash

.sym=

.sys=sysfile

.sy_=

.t101=CLSID\{9E56BE60-C50F-11CF-9A2C-3EAC335E}

.tar=WinZip

.TAZ=WinZip

.tcl=TclScript

.text=

.tga=Microsoft Picture It! Document

.tgz=WinZip

.theme=themefile

.tif=TIFImage.Document

.tiff=TIFImage.Document

.tlb=

.tsp=

.tsv=

.ttc=ttcfile

.ttf=ttffile

.tuw=TUWFile

.tvpi=tvpi_auto_file

.txt=txtfile

.TZ=WinZip

.UDL=MSDASC

.uls=ulsfile

.URL=InternetShortcut

.UserProfile=LiveReg.UserProfile

.UU=WinZip

.UUE=WinZip

.VBE=VBEFile

.vbs=VBSFile

.vbx=

.vcf=vcard_wab_auto_file

.VcPref=LiveAdvisor.PreferencesFile

.vmdk=VMware.VirtualDisk

.vmss=VMware.SuspendState

.vmx=VMware.Document

.vtx=Vtx.Document

.vxd=vxdfile

.wab=wab_auto_file

.wav=soundrec

.wax=WAXFile

.wb2=

.wbk=Word.Backup.8

.wdb=MSWorks4Database

.wdm=wdm

.webpnp=webpnpFile

.WHT=Whiteboard

.wiz=Word.Wizard.8

.wk4=

.wks=MSWorks4Sheet

.wll=Word.Addin.8

.wlt=

.wm=ASFFile

.wma=WMAFile

.wmd=WMDFile

.wmf=wmffile

.wmp=WMPFile

.wms=WMSFile

.wmv=WMVFile

.wmx=ASXFile

.wmz=WMZFile

.wpd=

.wpg=Microsoft Picture It! Document

.wps=Works.Word.Document.8

.wpt=Works.Word.Document.8

.wri=wrifile

.wsb=MSWorks6Portfolio

.wsc=scriptletfile

.WSF=WSFFile

.WSH=WSHFile

.wsz=

.wtx=txtfile

.wvx=WVXFile

.x=

.xbm=

.xfdf=AcroExch.XFDFDoc

.xfm=DelphiCLXForm

.xix=

.xlb=

.xlc=

.xlr=MSWorks4Sheet

.xls=

.xlt=

.xml=xmlfile

.xsl=xslfile

.XXE=WinZip

.z=WinZip

.z01=z01_auto_file

.z96=

.zap=zapfile

.ZFSendToTarget=CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}

.zip=WinZip


Back to top

Network interfaces



Windows IP-configuratie



        Host-naam  . . . . . . . . . . . .: host1

        Primair DNS-achtervoegsel. . . . .: 

        Knooppunttype: . . . . . . . . . .: onbekend

        IP-routering ingeschakeld. . . . .: nee

        WINS-proxy ingeschakeld . . . . . : nee



Ethernet-adapter LAN-verbinding 4:



        Verbindingsspec. DNS-achtervoegsel: 

        Beschrijving . . . . . . . . . . .:

          VMware Virtual Ethernet Adapter (Network Address Translation (NAT) for VMnet8)

        Fysiek adres. . . . . . . . . . . : 00-50-56-C0-00-08

        DHCP ingeshakeld. . . . . . . . . : ja

        Autom. configuratie ingeschakeld. : ja

        IP-adres. . . . . . . . . . . . . : 192.168.206.1

        Subnetmasker. . . . . . . . . . . : 255.255.255.0

        Standaardgateway. . . . . . . . . : 

        DHCP-server . . . . . . . . . . . : 192.168.206.254

        Lease verkregen . . . . . . . . . : donderdag 6 februari 2003 21:16:58

        Lease verlopen . . . . . . . . .  : donderdag 6 februari 2003 21:46:58



Ethernet-adapter LAN-verbinding 3:



        Verbindingsspec. DNS-achtervoegsel: 

        Beschrijving . . . . . . . . . . .:

          VMware Virtual Ethernet Adapter (basic host-only support for VMnet1)

        Fysiek adres. . . . . . . . . . . : 00-50-56-C0-00-01

        DHCP ingeshakeld. . . . . . . . . : ja

        Autom. configuratie ingeschakeld. : ja

        IP-adres. . . . . . . . . . . . . : 192.168.70.1

        Subnetmasker. . . . . . . . . . . : 255.255.255.0

        Standaardgateway. . . . . . . . . : 

        DHCP-server . . . . . . . . . . . : 192.168.70.254

        Lease verkregen . . . . . . . . . : donderdag 6 februari 2003 21:16:58

        Lease verlopen . . . . . . . . .  : donderdag 6 februari 2003 21:46:58



Back to top

Listening ports



Actieve verbindingen



  Proto  Lokaal adres           Extern adres           Status

  TCP    0.0.0.0:135            0.0.0.0:0              Bezig met luisteren

  TCP    0.0.0.0:445            0.0.0.0:0              Bezig met luisteren

  TCP    0.0.0.0:1025           0.0.0.0:0              Bezig met luisteren

  TCP    0.0.0.0:1027           0.0.0.0:0              Bezig met luisteren

  TCP    0.0.0.0:1028           0.0.0.0:0              Bezig met luisteren

  TCP    0.0.0.0:5000           0.0.0.0:0              Bezig met luisteren

  TCP    192.168.70.1:139       0.0.0.0:0              Bezig met luisteren

  TCP    192.168.206.1:139      0.0.0.0:0              Bezig met luisteren

  UDP    0.0.0.0:135            *:*                    

  UDP    0.0.0.0:445            *:*                    

  UDP    0.0.0.0:500            *:*                    

  UDP    0.0.0.0:1026           *:*                    

  UDP    0.0.0.0:9370           *:*                    

  UDP    127.0.0.1:123          *:*                    

  UDP    127.0.0.1:1900         *:*                    

  UDP    192.168.70.1:123       *:*                    

  UDP    192.168.70.1:137       *:*                    

  UDP    192.168.70.1:138       *:*                    

  UDP    192.168.70.1:1900      *:*                    

  UDP    192.168.206.1:123      *:*                    

  UDP    192.168.206.1:137      *:*                    

  UDP    192.168.206.1:138      *:*                    

  UDP    192.168.206.1:1900     *:*                    


Back to top

Network routes



Back to top

Hosts file

# Copyright (c) 1993-1999 Microsoft Corp.

#

# Dit is een voorbeeld HOSTS-bestand dat wordt gebruikt door Microsoft TCP/IP for Windows.

#

# Dit bestand bevat de toewijzingen van IP-adressen naar hostnamen. Elke vermelding

# moet op een afzonderlijke regel staan. Het IP-adres dient in de eerste kolom te worden

# geplaatst, gevolgd door de bijbehorende hostnaam. Het IP-adres en de hostnaam dienen 

# gescheiden te zijn door ten minste één spatie.

#

# Daarnaast kunnen opmerkingen (zoals deze) worden toegevoegd op extra

# regels of gevolgd door de computernaam, voorafgegaan door een #.

#

# Bijvoorbeeld:

#

#      102.54.94.97     rhino.acme.com          # bronserver

#       38.25.63.10     x.acme.com              # x clienthost



127.0.0.1       localhost


Back to top

Open shares



Share-naam   Netwerkbron                     Opmerking



-------------------------------------------------------------------------------

IPC$                                         Externe IPC                       

De opdracht is voltooid.




Back to top

Local user accounts



Gebruikersaccounts voor \\HOST1



-------------------------------------------------------------------------------

__vmware_user__          Administrator            Eigenaar                 

Gast                     HelpAssistant            SUPPORT_388945a0         

SUPPORT_fddfa904         

De opdracht is voltooid.




Back to top

Win.ini

; for 16-bit app support

[fonts]

[extensions]

[mci extensions]

[files]

[Mail]

MAPI=1

[MCI Extensions.BAK]

aif=MPEGVideo

aifc=MPEGVideo

aiff=MPEGVideo

asf=MPEGVideo2

asx=MPEGVideo2

au=MPEGVideo

ivf=MPEGVideo2

m1v=MPEGVideo

m3u=MPEGVideo2

mp2=MPEGVideo

mp2v=MPEGVideo

mp3=MPEGVideo2

mpa=MPEGVideo

mpe=MPEGVideo

mpeg=MPEGVideo

mpg=MPEGVideo

mpv2=MPEGVideo

snd=MPEGVideo

wax=MPEGVideo2

wm=MPEGVideo2

wma=MPEGVideo2

wmp=MPEGVideo2

wmv=MPEGVideo2

wmx=MPEGVideo2

wvx=MPEGVideo2

[VideoShareProducer2.0]

Installed=Yes

Ver=i

[Tera Term Pro]

Path=C:\PROGRAM FILES\TTERMPRO


Back to top

Nameserver



Back to top

NetBIOS Connections

    

LAN-verbinding 4:

IP-adres van knooppunt: [192.168.206.1] Scope-ID: []





    Geen verbindingen


    

LAN-verbinding 3:

IP-adres van knooppunt: [192.168.70.1] Scope-ID: []





    Geen verbindingen




Back to top

NetBIOS Names Registration




    Statistieken voor NetBIOS-naamomzetting en -registratie


-----------------------------------------------------------





    Omgezet door broadcast        = 0


    Omgezet door naamserver       = 0





    Geregistreerd door broadcast  = 12


    Geregistreerd door naamserver = 0




Back to top

NetBIOS Cache Name Table

    

LAN-verbinding 4:

IP-adres van knooppunt: [192.168.206.1] Scope-ID: []





    Geen namen in de cache


    

LAN-verbinding 3:

IP-adres van knooppunt: [192.168.70.1] Scope-ID: []





    Geen namen in de cache




Back to top

Computername and domain

Computernaam                                    \\HOST1

Volledige computernaam                          host1

Gebruikersnaam                                  Eigenaar



Werkstation actief op                           

	NetbiosSmb (000000000000)

	NetBT_Tcpip_{97B91090-E058-4455-BD67-F8E61E746680} (005056C00001)

	NetBT_Tcpip_{01F83E01-5EB5-41D0-A4B6-A823A99C7700} (005056C00008)



Softwareversie                                  Windows 2002



Werkstationdomein                               MSHOME

Domein-DNS-naam van werkstation                 (null)

Aanmeldingsdomein                               HOST1



Time-out voor openen van COM (sec)              0

Aantal verzonden bytes                          16

Time-out voor verzenden van COM (msec)          250

De opdracht is voltooid.




Back to top

Printers

Name: Canon S520
Description:
Location:
Port: USB001
Sharename:


Name: Fax
Description:
Location:
Port: SHRFAX:
Sharename:



Back to top

Installed programs


Adobe Acrobat 5.0
ArcSoft PhotoStudio 2000
Borland Delphi 6
Canon S520
Canon ScanGear Toolbox 3.0
Creative PCI Audio Drivers
Eenvoudige internetaanmelding
FoneSync
HSP56 World MicroModem Drivers
Intel® Create & Share® Software
InterVideo WinDVD
InterVideo WinDVR
KBD
LeechFTP
LiveReg (Symantec Corporation)
Microsoft Picture It! Photo 2001
Microsoft Word 2000 SR-1
Microsoft Word in Works Suite-invoegtoepassing
Microsoft Works 2001 Setup starten
Microsoft Works 6.0
NVIDIA Windows 2000/XP Display Drivers
Nero - Burning Rom (Web installer)
OmniPage Pro 9.0
PS2
S3 Savage4 Family Display Switch2 Utility
Scan Manager 5.2
Studio
Tcl 8.0.5 for Windows
Tera Term Pro
UltraEdit-32 Uninstall
VIA USB Filter Driver (S3) alpha
VMware Workstation
Ward170-I386
WebFldrs XP
Works Suite OS Pack
Works Synchronisatie
hp center
iCD CoolBeLa (Dutch)

Back to top

Installed services

Type BOOT:
----------
Intel AGP Bus Filter 
AMD AGP Bus Filter Driver 
Standaard IDE/ESDI-vasteschijfcontroller 
Stuurprogramma voor Volumebeheer 
IntelIde 
PnP ISA/EISA Bus-stuurprogramma 
Koppelpuntbeheer 
Mup 
NDIS-systeemstuurprogramma 
Texas Instruments OHCI Compliant IEEE 1394 Host Controller 
Partitiebeheer 
VIA AGP Bus Filter 
ViaIde 
W2K Vmodem 
W2K Vpctcom 
W2K Vvoice 

Type SYSTEM:
------------
Cd-rom-stuurprogramma 
Stuurprogramma voor i8042-toetsenbord en PS/2-muispoort 
IPSEC-stuurprogramma 
Stuurprogramma voor verschillende toetsenbordtypen 
Stuurprogramma voor muistypen 
MRXSMB 
NetBIOS-interface 
NetBT 
Stuurprogramma voor processor 
Stuurprogramma voor Automatische verbinding voor RAS 
Rdbss 
Stuurprogramma voor afspeelfilter van digitale cd-audio 
Stuurprogramma voor seriële poort 
Microsoft Software Synthesizer (WDM) 
Stuurprogramma voor TCP/IP-protocol 
Stuurprogramma voor terminal-apparaat 
Grafische VGA-adapter. 
Microsoft WDM Virtual Wave Driver (WDM) 

Type AUTOMATIC:
---------------
Omgeving voor AFD-netwerkondersteuning 
Windows Audio 
Computer Browser 
Services voor cryptografie 
DHCP Client 
DNS Client 
Service voor het rapporteren van fouten 
Event Log 
Fax 
Help en ondersteuning 
Server 
Workstation 
TCP/IP NetBIOS Helper 
Messenger 
NVIDIA Driver Helper Service 
Plug and Play 
IPSEC-services 
Protected Storage 
Remote Procedure Call (RPC) 
Security Accounts Manager 
Task Scheduler 
Secondary Logon 
System Event Notification 
Shell Hardware Detection 
Print Spooler 
System Restore-service 
Windows Image Acquisition (WIA) 
Thema's 
Distributed Link Tracking Client 
Uploadbeheer 
VMware Authorization Service 
VMware DHCP Service 
VMware NAT Service 
Windows Time 
WebClient 
Windows Management Instrumentation 
Serienummer van draagbare media 
Automatische updates 
Wireless Zero Configuration-service 

Type MANUAL:
------------
Intel(r) 82801 Audio Driver Install Service (WDM) 
Microsoft Kernel akoestische echo-opheffing 
Service for Avance AC97 Audio (WDM) 
Alerter 
Application Layer Gateway-service 
Application Management 
1394 ARP-clientprotocol 
Stuurprogramma voor RAS asyncrone media 
ATM ARP-client-protocol 
Audiostub-stuurprogramma 
Intelligente achtergrondsoverdrachtservice 
Philips Proteus (7134) WDM Video Capture 
Closed Caption-decoder 
Indexing-service 
ClipBook 
COM+-systeemtoepassing 
Crystal WDM Audio Codec Driver 
Logical Disk Manager Administrative-service 
Logical Disk Manager 
Microsoft Kernel DLS-synthesizer 
Microsoft Kernel DRM-audiodecoder 
Creative AudioPCI (ES1371,ES1373) (WDM) 
COM+-gebeurtenissysteem 
Compatibiliteit voor Snelle gebruikerswisseling 
Stuurprogramma voor diskettestationcontroller 
Stuurprogramma voor diskettestation 
Spelpoort-enumerator 
Algemene pakketclassificeerder 
Intel(r) PC Camera CS120 
COM-service voor IMAPI cd-branders 
IP Traffic Filter Driver 
IP in IP Tunnel Driver 
IP Network Address Translator 
IR Enumerator-service 
Microsoft Kernel Wave-audiomixer 
NetMeeting Remote Desktop Sharing 
WebDav-client-redirector 
Distributed Transaction Coordinator 
Windows Installer 
Microsoft Streaming Service-proxy 
Microsoft Streaming Clock-proxy 
Microsoft Streaming Kwaliteitsbeheer Proxy 
Microsoft Streaming Tee/Sink-to-Sink-conversieprogramma 
Microsoft MPU-401 MIDI UART-stuurprogramma 
NABTS/FEC VBI Codec 
Microsoft TV/Video-verbinding 
RAS NDIS TAPI-stuurprogramma 
I/O-protocol van NDIS-gebruikermodus 
RAS NDIS WAN-stuurprogramma 
NDIS-proxy 
Network DDE DSDM 
Net Logon 
Network Connections 
1394-stuurprogramma 
Network Location Awareness (NLA) 
NT LM Security Support Provider 
Verwisselbare opslag 
IPX Traffic Filter Driver 
IPX Traffic Forwarder Driver 
Stuurprogramma voor parallelle poort 
Padus ASPI Shell 
WAN-minipoort (PPTP) 
PS2 
QoS-pakketplanner 
Stuurprogramma voor Directe parallelle verbinding 
W2K Pctel Serial Device Driver 
WAN-minipoort (L2TP) 
Verbindingsbeheer voor RAS 
PPPOE-RAS-stuurprogramma 
Direct Parallel 
Helpsessiebeheer voor Extern bureaublad 
Remote Procedure Call (RPC) Locator 
QoS RSVP 
NT-stuurprogramma voor Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter 
Sound Blaster PCI128 Driver (WDM) 
Smart Card Helper 
Smart Card 
Secdrv 
Serenum Filter-stuurprogramma 
Internet Connection Firewall (ICF) / Internet Connection Sharing (ICS) 
BDA Slip De-Framer 
Microsoft Kernel-audiosplitsing 
SSDP Discovery-service 
BDA IPSink 
Software Bus-stuurprogramma 
MS Software Shadow Copy Provider 
Microsoft Kernel-systeemaudioapparaat 
Performance Logs and Alerts 
Telephony 
Terminal Services 
Microcode Update-stuurprogramma 
Universele Plug en Play-apparaathost 
Uninterruptible Power Supply 
Stuurprogramma voor Microsoft USB Standaard-hub 
Microsoft USB PRINTER Class 
Stuurprogramma voor USB-scanner 
Microsoft USB Universal Host Controller Miniport Driver 
VIA USB Filter 
VIA AC'97 Audio-controller (WDM) 
VMware Virtual Ethernet Adapter Driver 
Volume Shadow Copy 
RAS IP ARP-stuurprogramma 
WMI-prestatieadapter 
World Standard Teletext-codec 

Type DISABLED:
--------------
Apparaattoegang via menselijke interface 
Remote Access Auto Connection Manager 
Routing and Remote Access