hello. first of all, i had spybot and registry cleaner both on my computer and removed those. thanks for telling that those could be my problem. we will see. then i dl'ed the suggested dl (i can't remember what it was called) and ccp'ed the results. which were: ================================================== Process Name : A2GUARD.EXE ProcessID : 0xFFE443A9 Priority : Normal Product Name : a-squared Anti-Malware Version : 2.0.0.695 Description : a-squared Guard Company : Emsi Software GmbH Window Title : File Size : 1,585,152 File Created Date : 9/16/06 4:28:37 AM File Modified Date : 8/8/06 4:50:40 PM Filename : C:\MY DOCUMENTS\A-SQUARED ANTI-MALWARE\A2GUARD.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 16 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : AVGAMSVR.EXE ProcessID : 0xFFE213ED Priority : Normal Product Name : AVG Anti-Virus System Version : 7,1,0,365 Description : AVG Alert Manager Company : GRISOFT, s.r.o. Window Title : File Size : 336,896 File Created Date : 12/10/05 6:13:55 PM File Modified Date : 12/10/05 6:13:56 PM Filename : C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 2 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : AVGCC.EXE ProcessID : 0xFFE29E11 Priority : Normal Product Name : AVG Anti-Virus System Version : 7,1,0,405 Description : AVG Control Center Company : GRISOFT, s.r.o. Window Title : File Size : 369,664 File Created Date : 8/3/06 8:36:34 PM File Modified Date : 8/10/06 3:50:42 PM Filename : C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 20 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : AVGEMC.EXE ProcessID : 0xFFE2770D Priority : Normal Product Name : AVG Anti-Virus System Version : 7,1,0,400 Description : AVG E-Mail Scanner Company : GRISOFT, s.r.o. Window Title : File Size : 281,088 File Created Date : 8/3/06 8:40:28 PM File Modified Date : 8/10/06 3:50:46 PM Filename : C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 3 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : CAISSDT.EXE ProcessID : 0xFFE39045 Priority : Normal Product Name : Computer Associates Dashboard Tray Version : Version 2.0.1.1 Description : CA ISS Dashboard Tray Company : Computer Associates International, Inc. Window Title : File Size : 165,416 File Created Date : 9/15/06 10:03:53 PM File Modified Date : 4/21/06 6:42:24 PM Filename : C:\PROGRAM FILES\CA\ETRUST INTERNET SECURITY SUITE\CAISSDT.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : CPROCESS.EXE ProcessID : 0xFFEC7289 Priority : Normal Product Name : CurrProcess Version : 1.11 Description : CurrProcess Company : NirSoft Window Title : CurrProcess File Size : 35,840 File Created Date : 7/14/05 11:46:34 AM File Modified Date : 7/14/05 11:46:34 AM Filename : C:\UNZIPPED\CPROCESS[1]\CPROCESS.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 2 Hidden Windows : 4 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : DDHELP.EXE ProcessID : 0xFFE4D811 Priority : Real-Time Product Name : Microsoft® DirectX for Windows® Version : 4.09.00.0900 Description : Microsoft DirectX Helper Company : Microsoft Corporation Window Title : File Size : 32,768 File Created Date : 1/4/06 9:06:25 AM File Modified Date : 12/12/02 4:14:32 AM Filename : C:\WINDOWS\SYSTEM\DDHELP.EXE Base Address : 0x01000000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : ENCMONTR.EXE ProcessID : 0xFFE0FFD9 Priority : Normal Product Name : EncMontr Application Version : 1, 0, 0, 1 Description : EncMontr Application Company : Encompass, Inc. Window Title : File Size : 106,496 File Created Date : 6/15/99 10:30:32 PM File Modified Date : 5/28/99 7:08:36 PM Filename : C:\PROGRAM FILES\ENCOMPASS\ENCMONTR.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 3 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : EXPLORER.EXE ProcessID : 0xFFE1DFA5 Priority : Normal Product Name : Microsoft® Windows NT® Operating System Version : 4.72.3110.1 Description : Windows Explorer Company : Microsoft Corporation Window Title : cprocess[1] File Size : 180,224 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\EXPLORER.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 4 Hidden Windows : 47 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : HIDSERV.EXE ProcessID : 0xFFE09191 Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.2222 Description : HID Audio Service Company : Microsoft Corporation Window Title : File Size : 73,728 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\HIDSERV.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : HPSYSDRV.EXE ProcessID : 0xFFE2DEB1 Priority : Normal Product Name : hpsysdrv Version : 1, 7, 0, 0 Description : hpsysdrv Company : Hewlett-Packard Company Window Title : File Size : 52,736 File Created Date : 6/15/99 10:02:33 PM File Modified Date : 5/7/98 1:04:38 PM Filename : C:\WINDOWS\SYSTEM\HPSYSDRV.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : KB891711.EXE ProcessID : 0xFFE08605 Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.2223 Description : Windows KB891711 component Company : Microsoft Corporation Window Title : File Size : 0 File Created Date : 1/4/06 8:15:12 AM File Modified Date : 3/23/05 6:54:22 PM Filename : c:\windows\SYSTEM\KB891711\KB891711.EXE Base Address : 0x00000000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : KB918547.EXE ProcessID : 0xFFE09FE5 Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.2224 Description : Windows KB918547 EXE component Company : Microsoft Corporation Window Title : File Size : 0 File Created Date : 4/24/06 6:24:20 AM File Modified Date : 4/24/06 6:24:20 AM Filename : C:\WINDOWS\SYSTEM\KB918547\KB918547.EXE Base Address : 0x00000000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : KERNEL32.DLL ProcessID : 0xFFEF997D Priority : High Product Name : Microsoft® Windows® Operating System Version : 4.10.2222 Description : Win32 Kernel core component Company : Microsoft Corporation Window Title : File Size : 471,040 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\KERNEL32.DLL Base Address : 0xBFF70000 Created On : N/A Visible Windows : 0 Hidden Windows : 0 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : KEYBDMGR.EXE ProcessID : 0xFFE429C5 Priority : Normal Product Name : Keyboard Manager Version : 3.0.6.4 Description : Keyboard Manager Company : Netropa Corp. Window Title : File Size : 47,616 File Created Date : 6/18/99 6:56:04 PM File Modified Date : 11/4/98 4:50:22 PM Filename : C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\KEYBDMGR.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : LOADQM.EXE ProcessID : 0xFFE312D5 Priority : Normal Product Name : QMgr Loader Version : 5.4.1103.3 Description : Microsoft QMgr Company : Microsoft Corporation Window Title : File Size : 7,536 File Created Date : 1/25/06 7:46:17 AM File Modified Date : 5/3/00 9:23:10 PM Filename : C:\WINDOWS\LOADQM.EXE Base Address : 0x01000000 Created On : N/A Visible Windows : 0 Hidden Windows : 3 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : MMKEYBD.EXE ProcessID : 0xFFE2FDB9 Priority : Normal Product Name : One-touch Multimedia Keyboard Version : 3.0.7.6 Description : One-touch Multimedia Keyboard Company : Netropa Corp. Window Title : File Size : 466,944 File Created Date : 6/18/99 6:56:04 PM File Modified Date : 5/5/99 4:19:20 PM Filename : C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMKEYBD.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : mmtask.tsk ProcessID : 0xFFE16B55 Priority : Normal Product Name : Microsoft Windows Version : 4.03.1998 Description : Multimedia background task support module Company : Microsoft Corporation Window Title : File Size : 0 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\mmtask.tsk Base Address : 0x00000000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : MMUSBKB2.EXE ProcessID : 0xFFE91395 Priority : Normal Product Name : USB Multimedia Keyboard Driver 2 Version : 1.0 Description : USB Multimedia Keyboard Driver 2 Company : Netropa Corporation Window Title : File Size : 40,960 File Created Date : 6/18/99 6:56:04 PM File Modified Date : 12/10/98 8:35:14 PM Filename : C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMUSBKB2.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : MPREXE.EXE ProcessID : 0xFFE06D69 Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.1998 Description : WIN32 Network Interface Service Process Company : Microsoft Corporation Window Title : File Size : 28,672 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\MPREXE.EXE Base Address : 0x00500000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : MSG32.EXE ProcessID : 0xFFE16A21 Priority : Real-Time Product Name : WaveStream\Endless Wave Version : 4.05.00.2112 Description : Rockwell WaveStream Message Server Company : Rockwell Corporation Window Title : File Size : 16,896 File Created Date : N/A File Modified Date : 8/26/98 8:12:16 PM Filename : C:\WINDOWS\SYSTEM\MSG32.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 0 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : MSGLOOP.EXE ProcessID : 0xFFE0DDBD Priority : Normal Product Name : WaveStream\Endless Wave Version : 4.05.00.2112 Description : Rockwell WaveStream Message Server Company : Rockwell Corporation Window Title : File Size : 0 File Created Date : N/A File Modified Date : 8/26/98 8:11:54 PM Filename : C:\WINDOWS\SYSTEM\MSGLOOP.EXE Base Address : 0x00000000 Created On : N/A Visible Windows : 0 Hidden Windows : 0 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : MSGSRV32.EXE ProcessID : 0xFFE04EE9 Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.2222 Description : Windows 32-bit VxD Message Server Company : Microsoft Corporation Window Title : File Size : 0 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\MSGSRV32.EXE Base Address : 0x00000000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : MSTASK.EXE ProcessID : 0xFFE496C5 Priority : Normal Product Name : Microsoft® Windows® Task Scheduler Version : 4.71.1972.1 Description : Task Scheduler Engine Company : Microsoft Corporation Window Title : File Size : 111,888 File Created Date : 6/18/01 4:33:20 PM File Modified Date : 6/18/01 4:33:20 PM Filename : C:\WINDOWS\SYSTEM\MSTASK.EXE Base Address : 0x01000000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : ================================================== ================================================== Process Name : OSD.EXE ProcessID : 0xFFE529D9 Priority : Normal Product Name : OSD Version : 2.42 Description : Onscreen Display Company : Netropa Corp. Window Title : File Size : 0 File Created Date : 6/18/99 6:56:04 PM File Modified Date : 1/26/99 1:32:04 PM Filename : C:\PROGRA~1\NETROPA\ONSCRE~1\OSD.EXE Base Address : 0x00000000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : PPACTIVEDETECTION.EXE ProcessID : 0xFFE3B169 Priority : Normal Product Name : eTrust PestPatrol Version : 8, 0, 0, 3 Description : eTrust PestPatrol background protection application Company : Computer Associates Window Title : File Size : 258,048 File Created Date : 4/20/06 10:17:36 PM File Modified Date : 9/15/06 10:06:28 PM Filename : C:\PROGRAM FILES\CA\ETRUST INTERNET SECURITY SUITE\ETRUST PESTPATROL ANTI-SPYWARE\PPACTIVEDETECTION.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : QTTASK.EXE ProcessID : 0xFFE3F8E9 Priority : Normal Product Name : QuickTime Version : 6.5 Description : Company : Apple Computer, Inc. Window Title : File Size : 98,304 File Created Date : 8/4/06 1:32:20 AM File Modified Date : 8/4/06 1:32:22 AM Filename : C:\WINDOWS\SYSTEM\QTTASK.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : REALSCHED.EXE ProcessID : 0xFFE36B85 Priority : Normal Product Name : RealPlayer (32-bit) Version : 0.1.0.3492 Description : RealNetworks Scheduler Company : RealNetworks, Inc. Window Title : File Size : 180,269 File Created Date : 12/13/05 12:49:18 AM File Modified Date : 12/13/05 12:49:20 AM Filename : C:\PROGRAM FILES\COMMON FILES\REAL\UPDATE_OB\REALSCHED.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : RUNDLL32.EXE ProcessID : 0xFFE32865 Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.1998 Description : Run a DLL as an App Company : Microsoft Corporation Window Title : File Size : 24,576 File Created Date : 4/24/99 2:22:00 AM File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\RUNDLL32.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 2 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : SCHEDULER DAEMON.EXE ProcessID : 0xFFE6A9C9 Priority : Normal Product Name : GhostSurf Version : 0.10 Description : Scheduler daemon Company : Tenebril Incorporated Window Title : File Size : 86,133 File Created Date : 9/15/06 10:26:48 PM File Modified Date : 3/9/04 7:07:34 PM Filename : C:\PROGRAM FILES\SPYCATCHER 2006\SCHEDULER DAEMON.EXE Base Address : 0x60F20000 Created On : N/A Visible Windows : 0 Hidden Windows : 4 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : SMILEYSOURCE.EXE ProcessID : 0xFFE52711 Priority : Normal Product Name : SmileySource Application Version : 2, 0, 0, 1 Description : SmileySource Application Company : Window Title : File Size : 380,928 File Created Date : 5/9/06 2:52:51 PM File Modified Date : 5/9/06 2:52:52 PM Filename : C:\PROGRAM FILES\SMILEYSOURCE\SMILEYSOURCE.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 9 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : SPOOL32.EXE ProcessID : 0xFFE046C1 Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.1998 Description : Spooler Sub System Process Company : Microsoft Corporation Window Title : File Size : 45,056 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\SPOOL32.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : SYSTRAY.EXE ProcessID : 0xFFE2120D Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.2222 Description : System Tray Applet Company : Microsoft Corporation Window Title : File Size : 32,768 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\SYSTRAY.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : TASKMON.EXE ProcessID : 0xFFE2789D Priority : Normal Product Name : Microsoft® Windows® Operating System Version : 4.10.1998 Description : Task Monitor Company : Microsoft Corporation Window Title : File Size : 28,672 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\TASKMON.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : USBMMKBD.EXE ProcessID : 0xFFE2EEA9 Priority : Normal Product Name : HP USB Multimedia Keyboard/Hub HID Client Version : 1.014 Description : HP USB Multimedia Keyboard/Hub Company : Hewlett-Packard Company Window Title : File Size : 69,632 File Created Date : N/A File Modified Date : 4/8/99 8:53:36 PM Filename : C:\WINDOWS\SYSTEM\USBMMKBD.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 1 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : WMIEXE.EXE ProcessID : 0xFFE7C919 Priority : Normal Product Name : Microsoft® Windows NT® Operating System Version : 5.00.1755.1 Description : WMI service exe housing Company : Microsoft Corporation Window Title : File Size : 16,384 File Created Date : N/A File Modified Date : 4/24/99 2:22:00 AM Filename : C:\WINDOWS\SYSTEM\WMIEXE.EXE Base Address : 0x01000000 Created On : N/A Visible Windows : 0 Hidden Windows : 0 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : WZQKPICK.EXE ProcessID : 0xFFE6D7B9 Priority : Normal Product Name : WinZip Version : 1.0 (32-bit) Description : WinZip Executable Company : WinZip Computing LP Window Title : File Size : 122,880 File Created Date : 8/3/06 4:40:07 AM File Modified Date : 2/16/06 2:00:00 PM Filename : C:\PROGRAM FILES\WINZIP\WZQKPICK.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 3 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== ================================================== Process Name : YMSGR_TRAY.EXE ProcessID : 0xFFE9F809 Priority : Normal Product Name : Version : Description : Company : Window Title : File Size : 90,112 File Created Date : 6/23/06 7:13:50 PM File Modified Date : 6/16/06 6:37:08 PM Filename : C:\PROGRAM FILES\YAHOO!\MESSENGER\YMSGR_TRAY.EXE Base Address : 0x00400000 Created On : N/A Visible Windows : 0 Hidden Windows : 2 User Name : Mem Usage : 0 K Mem Usage Peak : 0 K Page Faults : 0 Pagefile Usage : 0 K Pagefile Peak Usage : 0 K File Attributes : A ================================================== it did not look this long when i ccp'ed it though. but that is the results i got. i will be watching to see if this gives anyone a clue to what is going on. thank you both for your help. robin