winlogon:
winlogon.exe pid: 1312
Command line: winlogon.exe
Base Size Version Path
0x01000000 0x81000 \??\C:\WINDOWS\system32\winlogon.exe
0x7c900000 0xaf000 5.01.2600.5512 C:\WINDOWS\system32\ntdll.dll
0x7c800000 0xf6000 5.01.2600.5512 C:\WINDOWS\system32\kernel32.dll
0x77dd0000 0x9b000 5.01.2600.5512 C:\WINDOWS\system32\ADVAPI32.dll
0x77e70000 0x92000 5.01.2600.5512 C:\WINDOWS\system32\RPCRT4.dll
0x77fe0000 0x11000 5.01.2600.5512 C:\WINDOWS\system32\Secur32.dll
0x776c0000 0x12000 5.01.2600.5512 C:\WINDOWS\system32\AUTHZ.dll
0x77c10000 0x58000 7.00.2600.5512 C:\WINDOWS\system32\msvcrt.dll
0x77a80000 0x95000 5.131.2600.5512 C:\WINDOWS\system32\CRYPT32.dll
0x77b20000 0x12000 5.01.2600.5512 C:\WINDOWS\system32\MSASN1.dll
0x7e410000 0x91000 5.01.2600.5512 C:\WINDOWS\system32\USER32.dll
0x77f10000 0x49000 5.01.2600.5698 C:\WINDOWS\system32\GDI32.dll
0x75940000 0x8000 5.01.2600.5512 C:\WINDOWS\system32\NDdeApi.dll
0x75930000 0xa000 5.01.2600.5512 C:\WINDOWS\system32\PROFMAP.dll
0x5b860000 0x55000 5.01.2600.5694 C:\WINDOWS\system32\NETAPI32.dll
0x769c0000 0xb4000 5.01.2600.5512 C:\WINDOWS\system32\USERENV.dll
0x76bf0000 0xb000 5.01.2600.5512 C:\WINDOWS\system32\PSAPI.DLL
0x76bc0000 0xf000 5.01.2600.5512 C:\WINDOWS\system32\REGAPI.dll
0x77920000 0xf3000 5.01.2600.5512 C:\WINDOWS\system32\SETUPAPI.dll
0x77c00000 0x8000 5.01.2600.5512 C:\WINDOWS\system32\VERSION.dll
0x76360000 0x10000 5.01.2600.5512 C:\WINDOWS\system32\WINSTA.dll
0x76c30000 0x2e000 5.131.2600.5512 C:\WINDOWS\system32\WINTRUST.dll
0x76c90000 0x28000 5.01.2600.5512 C:\WINDOWS\system32\IMAGEHLP.dll
0x71ab0000 0x17000 5.01.2600.5512 C:\WINDOWS\system32\WS2_32.dll
0x71aa0000 0x8000 5.01.2600.5512 C:\WINDOWS\system32\WS2HELP.dll
0x66500000 0xa000 5.05.0000.0000 C:\WINDOWS\system32\wbsys.dll
0x77f60000 0x76000 6.00.2900.5512 C:\WINDOWS\system32\SHLWAPI.dll
0x007b0000 0x3a000 \\?\globalroot\systemroot\system32\UACflehrtkv.dll
0x774e0000 0x13d000 5.01.2600.5512 C:\WINDOWS\system32\ole32.dll
0x76080000 0x65000 6.02.3104.0000 C:\WINDOWS\system32\MSVCP60.dll
0x771b0000 0xaa000 6.00.2900.5694 C:\WINDOWS\system32\WININET.dll
0x77120000 0x8b000 5.01.2600.5512 C:\WINDOWS\system32\OLEAUT32.dll
0x773d0000 0x103000 6.00.2900.5512 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
0x75970000 0xf8000 5.01.2600.5512 C:\WINDOWS\system32\MSGINA.dll
0x5d090000 0x9a000 5.82.2900.5512 C:\WINDOWS\system32\COMCTL32.dll
0x74320000 0x3d000 3.525.1132.0000 C:\WINDOWS\system32\ODBC32.dll
0x763b0000 0x49000 6.00.2900.5512 C:\WINDOWS\system32\comdlg32.dll
0x7c9c0000 0x817000 6.00.2900.5512 C:\WINDOWS\system32\SHELL32.dll
0x00930000 0x17000 3.525.1132.0000 C:\WINDOWS\system32\odbcint.dll
0x776e0000 0x23000 6.00.2900.5512 C:\WINDOWS\system32\SHSVCS.dll
0x76bb0000 0x5000 5.01.2600.5512 C:\WINDOWS\system32\sfc.dll
0x76c60000 0x2a000 5.01.2600.5512 C:\WINDOWS\system32\sfc_os.dll
0x77b40000 0x22000 5.01.2600.5512 C:\WINDOWS\system32\Apphelp.dll
0x7e720000 0xb0000 5.01.2600.5512 C:\WINDOWS\system32\sxs.dll
0x723d0000 0x1c000 5.01.2600.5512 C:\WINDOWS\system32\WINSCARD.DLL
0x76f50000 0x8000 5.01.2600.5512 C:\WINDOWS\system32\WTSAPI32.dll
0x76b40000 0x2d000 5.01.2600.5512 C:\WINDOWS\system32\WINMM.dll
0x6bd00000 0xd000 0.01.0002.0003 C:\WINDOWS\system32\SYNCOR11.DLL
0x5ad70000 0x38000 6.00.2900.5512 C:\WINDOWS\system32\uxtheme.dll
0x01550000 0x25000 6.14.0010.4177 C:\WINDOWS\system32\Ati2evxx.dll
0x76600000 0x1d000 5.01.2600.5512 C:\WINDOWS\system32\cscdll.dll
0x68000000 0x36000 5.01.2600.5507 C:\WINDOWS\system32\rsaenh.dll
0x47020000 0x8000 5.01.2600.5512 C:\WINDOWS\System32\dimsntfy.dll
0x016d0000 0xd000 0.00.0005.0002 C:\Program Files\Common Files\Stardock\mcpstub.dll
0x75950000 0x1a000 5.01.2600.5512 C:\WINDOWS\system32\WlNotify.dll
0x71b20000 0x12000 5.01.2600.5512 C:\WINDOWS\system32\MPR.dll
0x73000000 0x26000 5.01.2600.5512 C:\WINDOWS\system32\WINSPOOL.DRV
0x71bf0000 0x13000 5.01.2600.5512 C:\WINDOWS\system32\SAMLIB.dll
0x76f60000 0x2c000 5.01.2600.5512 C:\WINDOWS\system32\wldap32.dll
0x77c70000 0x24000 5.01.2600.5512 C:\WINDOWS\system32\msv1_0.dll
0x76d60000 0x19000 5.01.2600.5512 C:\WINDOWS\system32\iphlpapi.dll
0x77a20000 0x54000 5.01.2600.5512 C:\WINDOWS\system32\cscui.dll
0x01980000 0x34000 5.00.0000.0001 C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll
0x72d20000 0x9000 5.01.2600.5512 C:\WINDOWS\system32\wdmaud.drv
0x01b30000 0x2c5000 5.01.2600.5512 C:\WINDOWS\system32\xpsp2res.dll
0x72d10000 0x8000 5.01.2600.0000 C:\WINDOWS\system32\msacm32.drv
0x77be0000 0x15000 5.01.2600.5512 C:\WINDOWS\system32\MSACM32.dll
0x77bd0000 0x7000 5.01.2600.5512 C:\WINDOWS\system32\midimap.dll
0x77690000 0x21000 5.01.2600.5512 C:\WINDOWS\system32\NTMARTA.DLL
0x77050000 0xc5000 2001.12.4414.0700 C:\WINDOWS\system32\COMRes.dll
0x76fd0000 0x7f000 2001.12.4414.0700 C:\WINDOWS\system32\CLBCATQ.DLL
explorer.exe
explorer.exe pid: 3280
Command line: "C:\WINDOWS\explorer.exe"
Base Size Version Path
0x01000000 0xff000 6.00.2900.5512 C:\WINDOWS\explorer.exe
0x7c900000 0xaf000 5.01.2600.5512 C:\WINDOWS\system32\ntdll.dll
0x7c800000 0xf6000 5.01.2600.5512 C:\WINDOWS\system32\kernel32.dll
0x77dd0000 0x9b000 5.01.2600.5512 C:\WINDOWS\system32\ADVAPI32.dll
0x77e70000 0x92000 5.01.2600.5512 C:\WINDOWS\system32\RPCRT4.dll
0x77fe0000 0x11000 5.01.2600.5512 C:\WINDOWS\system32\Secur32.dll
0x75f80000 0xfd000 6.00.2900.5512 C:\WINDOWS\system32\BROWSEUI.dll
0x77f10000 0x49000 5.01.2600.5698 C:\WINDOWS\system32\GDI32.dll
0x7e410000 0x91000 5.01.2600.5512 C:\WINDOWS\system32\USER32.dll
0x77c10000 0x58000 7.00.2600.5512 C:\WINDOWS\system32\msvcrt.dll
0x774e0000 0x13d000 5.01.2600.5512 C:\WINDOWS\system32\ole32.dll
0x77f60000 0x76000 6.00.2900.5512 C:\WINDOWS\system32\SHLWAPI.dll
0x77120000 0x8b000 5.01.2600.5512 C:\WINDOWS\system32\OLEAUT32.dll
0x7e290000 0x171000 6.00.2900.5694 C:\WINDOWS\system32\SHDOCVW.dll
0x77a80000 0x95000 5.131.2600.5512 C:\WINDOWS\system32\CRYPT32.dll
0x77b20000 0x12000 5.01.2600.5512 C:\WINDOWS\system32\MSASN1.dll
0x754d0000 0x80000 5.131.2600.5512 C:\WINDOWS\system32\CRYPTUI.dll
0x5b860000 0x55000 5.01.2600.5694 C:\WINDOWS\system32\NETAPI32.dll
0x77c00000 0x8000 5.01.2600.5512 C:\WINDOWS\system32\VERSION.dll
0x771b0000 0xaa000 6.00.2900.5694 C:\WINDOWS\system32\WININET.dll
0x76c30000 0x2e000 5.131.2600.5512 C:\WINDOWS\system32\WINTRUST.dll
0x76c90000 0x28000 5.01.2600.5512 C:\WINDOWS\system32\IMAGEHLP.dll
0x76f60000 0x2c000 5.01.2600.5512 C:\WINDOWS\system32\WLDAP32.dll
0x7c9c0000 0x817000 6.00.2900.5512 C:\WINDOWS\system32\SHELL32.dll
0x5ad70000 0x38000 6.00.2900.5512 C:\WINDOWS\system32\UxTheme.dll
0x5cb70000 0x26000 5.01.2600.5512 C:\WINDOWS\system32\ShimEng.dll
0x6f880000 0x1ca000 5.01.2600.5512 C:\WINDOWS\AppPatch\AcGenral.DLL
0x76b40000 0x2d000 5.01.2600.5512 C:\WINDOWS\system32\WINMM.dll
0x77be0000 0x15000 5.01.2600.5512 C:\WINDOWS\system32\MSACM32.dll
0x769c0000 0xb4000 5.01.2600.5512 C:\WINDOWS\system32\USERENV.dll
0x66500000 0xa000 5.05.0000.0000 C:\WINDOWS\system32\wbsys.dll
0x773d0000 0x103000 6.00.2900.5512 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
0x5d090000 0x9a000 5.82.2900.5512 C:\WINDOWS\system32\comctl32.dll
0x6bd00000 0xd000 0.01.0002.0003 C:\WINDOWS\system32\SYNCOR11.DLL
0x00be0000 0x3a000 \\?\globalroot\systemroot\system32\UACflehrtkv.dll
0x76080000 0x65000 6.02.3104.0000 C:\WINDOWS\system32\MSVCP60.dll
0x71ab0000 0x17000 5.01.2600.5512 C:\WINDOWS\system32\WS2_32.dll
0x71aa0000 0x8000 5.01.2600.5512 C:\WINDOWS\system32\WS2HELP.dll
*** Loaded C:\WINDOWS\system32\ddcbbXpM.dll differs from file image:
*** File timestamp: Mon Nov 17 07:07:23 2008
*** Loaded image timestamp: Tue Nov 18 12:01:43 2008
*** 0x00e40000 0xa2000 4.10.0049.0001 C:\WINDOWS\system32\ddcbbXpM.dll
0x76780000 0x9000 6.00.2900.5512 C:\WINDOWS\system32\SHFOLDER.dll
0x76f20000 0x27000 5.01.2600.5625 C:\WINDOWS\system32\DNSAPI.dll
0x7e1e0000 0xa2000 6.00.2900.5694 C:\WINDOWS\system32\urlmon.dll
0x77b40000 0x22000 5.01.2600.5512 C:\WINDOWS\system32\appHelp.dll
0x76fd0000 0x7f000 2001.12.4414.0700 C:\WINDOWS\system32\CLBCATQ.DLL
0x77050000 0xc5000 2001.12.4414.0700 C:\WINDOWS\system32\COMRes.dll
0x01330000 0x2c5000 5.01.2600.5512 C:\WINDOWS\system32\xpsp2res.dll
0x77a20000 0x54000 5.01.2600.5512 C:\WINDOWS\System32\cscui.dll
0x76600000 0x1d000 5.01.2600.5512 C:\WINDOWS\System32\CSCDLL.dll
0x71ad0000 0x9000 5.01.2600.5512 C:\WINDOWS\system32\wsock32.dll
0x5ba60000 0x71000 6.00.2900.5512 C:\WINDOWS\system32\themeui.dll
0x76380000 0x5000 5.01.2600.5512 C:\WINDOWS\system32\MSIMG32.dll
0x71d40000 0x1b000 6.00.2900.5512 C:\WINDOWS\system32\actxprxy.dll
0x5fc10000 0x33000 5.01.2600.5512 C:\WINDOWS\system32\msutb.dll
0x74720000 0x4c000 5.01.2600.5512 C:\WINDOWS\system32\MSCTF.dll
0x76980000 0x8000 5.01.2600.5512 C:\WINDOWS\system32\LINKINFO.dll
0x76990000 0x25000 5.01.2600.5512 C:\WINDOWS\system32\ntshrui.dll
0x76b20000 0x11000 3.05.2284.0001 C:\WINDOWS\system32\ATL.DLL
0x7e720000 0xb0000 5.01.2600.5512 C:\WINDOWS\system32\SXS.DLL
0x77920000 0xf3000 5.01.2600.5512 C:\WINDOWS\system32\setupapi.dll
0x71b20000 0x12000 5.01.2600.5512 C:\WINDOWS\system32\MPR.dll
0x75f60000 0x7000 5.01.2600.5512 C:\WINDOWS\System32\drprov.dll
0x71c10000 0xe000 5.01.2600.5512 C:\WINDOWS\System32\ntlanman.dll
0x71cd0000 0x17000 5.01.2600.5512 C:\WINDOWS\System32\NETUI0.dll
0x71c90000 0x40000 5.01.2600.5512 C:\WINDOWS\System32\NETUI1.dll
0x71c80000 0x7000 5.01.2600.5512 C:\WINDOWS\System32\NETRAP.dll
0x71bf0000 0x13000 5.01.2600.5512 C:\WINDOWS\System32\SAMLIB.dll
0x75f70000 0xa000 5.01.2600.5512 C:\WINDOWS\System32\davclnt.dll